Co-authored-by: Alexandre Aubin <alex.aubin@mailoo.org>
This commit is contained in:
ljf (zamentur) 2021-08-14 17:24:42 +02:00
parent 8a04ede38a
commit 234a6593bc

View file

@ -5,11 +5,11 @@ Because great powers imply great responsibilities, I commit myself as YunoHost a
## Security ## Security
The reliability and security of the project's services is the responsibility of everybody. Below are some rules meant to prevent security breaches / leaks on the infrastructure: The reliability and security of the project's services is the responsibility of everybody. Below are some rules meant to prevent security breaches / leaks on the infrastructure:
* do not save project password in a non-free browser or without master password; * never save project passwords in a non-free browser or without a master password;
* do not use ssh keys without passwords to access the infrastructure (except for exceptions discussed collectively); * always protect personal private SSH keys with strong passwords;
* get into the habit of locking your machines where the keys are located when you leave them; * always lock machines where keys are located before leaving them unattended;
* do not let people without access, plant third party devices in your machine(s); * always encrypt personal machines where personal SSH keys are stored;
* encrypt the machines used to access the infra ; * never let any random people plant third party devices in your machine(s);
## Ethics / practice ## Ethics / practice