请输入您要查询的百科知识:

 

词条 RFPolicy
释义

  1. External links

The RFPolicy states a method of contacting vendors about security vulnerabilities found in their products. It was originally written by hacker and security consultant Rain Forest Puppy.[1]

The policy gives the vendor five working days to respond to the reporter of the bug. If the vendor fails to contact the reporter in those five days, the issue is recommended to be disclosed to the general community. The reporter should help the vendor reproduce the bug and work out a fix. The reporter should delay notifying the general community about the bug if the vendor provides feasible reasons for requiring so.

If the vendor fails to respond or shuts down communication with the reporter of the problem in more than five working days, the reporter should disclose the issue to the general community. When issuing an alert or fix, the vendor should give the reporter proper credits about reporting the bug.

1. ^[https://web.archive.org/web/20120105001011/http://www.pcworld.com/article/63944/three_minutes_with_rain_forest_puppy.html Three Minutes with Rain Forest Puppy] - PC World, 29 Sep 2001

External links

  • [https://dl.packetstormsecurity.net/papers/general/rfpolicy-2.0.txt RFPolicy v2.0]
{{comp-sci-stub}}

2 : Computer security|Software bugs

随便看

 

开放百科全书收录14589846条英语、德语、日语等多语种百科知识,基本涵盖了大多数领域的百科知识,是一部内容自由、开放的电子版国际百科全书。

 

Copyright © 2023 OENC.NET All Rights Reserved
京ICP备2021023879号 更新时间:2024/11/10 11:49:53