Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Remove the second SHALL in MS.DEFENDER.4.1v1 #1385

Open
3 tasks
buidav opened this issue Oct 29, 2024 · 0 comments
Open
3 tasks

Remove the second SHALL in MS.DEFENDER.4.1v1 #1385

buidav opened this issue Oct 29, 2024 · 0 comments
Assignees
Labels
baseline-document Issues relating to the text in the baseline documents themselves
Milestone

Comments

@buidav
Copy link
Collaborator

buidav commented Oct 29, 2024

💡 Summary

A custom policy SHALL be configured to protect PII and sensitive information, as defined by the agency. At a minimum, credit card numbers, U.S. Individual Taxpayer Identification Numbers (ITIN), and U.S. Social Security numbers (SSN) SHALL be blocked.

Example rewording.
`A custom policy SHALL be configured to protect PII and sensitive information, as defined by the agency, blocking at a minimum: credit card numbers, U.S. Individual Taxpayer Identification Numbers (ITIN), and U.S. Social Security numbers (SSN).

Motivation and context

The limit policies to a single RFC keyword.

Implementation notes

  • Change the baseline text.
  • Update the version number MS.DEFENDER.4.1v1 => MS.DEFENDER.4.1v2
  • Update rego?

Acceptance criteria

  • Language is updated in the baseline
  • Version of the policy is bumped
  • Code changes for the new policy version (if necessary).
@buidav buidav added the baseline-document Issues relating to the text in the baseline documents themselves label Oct 29, 2024
@schrolla schrolla added this to the Kraken milestone Oct 30, 2024
@schrolla schrolla self-assigned this Nov 6, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
baseline-document Issues relating to the text in the baseline documents themselves
Projects
None yet
Development

No branches or pull requests

2 participants