From 421567c202030a51bc5bf36d1c841b8f69a06720 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 01:18:54 +0000 Subject: [PATCH 01/52] update README.md. Signed-off-by: xujian --- README.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/README.md b/README.md index ca6071f..a61a37e 100644 --- a/README.md +++ b/README.md @@ -3,7 +3,7 @@ ## 安全设计基线 安全设计基线修订方式:由安全委员会相关人员定期收集社区开发中总结、反馈的修订内容,组织openKylin社区安全设计专家团队对修订内容进行评估,通过后才能修订。 * [安全设计流程]() -![安全设计流程](./baseline/security-design-steps.png) +![安全设计流程](./baseline/security-design-flow.md) * [安全设计原则]() * [安全设计规范]() -- Gitee From f396fe14213465a7862faaa6c9644dafd0ff40c6 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 01:24:21 +0000 Subject: [PATCH 02/52] update README.md. Signed-off-by: xujian --- README.md | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/README.md b/README.md index a61a37e..4ed0d2f 100644 --- a/README.md +++ b/README.md @@ -3,7 +3,9 @@ ## 安全设计基线 安全设计基线修订方式:由安全委员会相关人员定期收集社区开发中总结、反馈的修订内容,组织openKylin社区安全设计专家团队对修订内容进行评估,通过后才能修订。 * [安全设计流程]() -![安全设计流程](./baseline/security-design-flow.md) + +[安全设计流程](./baseline/security-design-flow.md) + * [安全设计原则]() * [安全设计规范]() -- Gitee From 23a5333cc42c15255ee29e695661613a670250fe Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 01:25:44 +0000 Subject: [PATCH 03/52] update README.md. Signed-off-by: xujian --- README.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/README.md b/README.md index 4ed0d2f..d312ac3 100644 --- a/README.md +++ b/README.md @@ -4,7 +4,7 @@ 安全设计基线修订方式:由安全委员会相关人员定期收集社区开发中总结、反馈的修订内容,组织openKylin社区安全设计专家团队对修订内容进行评估,通过后才能修订。 * [安全设计流程]() -[安全设计流程](./baseline/security-design-flow.md) +![安全设计流程](./baseline/security-design-flow.md) * [安全设计原则]() * [安全设计规范]() -- Gitee From 87b80e04bbad21e18d4b221b77c51884356f72a8 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 01:28:49 +0000 Subject: [PATCH 04/52] add baseline/security-design-standard.md. Signed-off-by: xujian --- baseline/security-design-standard.md | 1 + 1 file changed, 1 insertion(+) create mode 100644 baseline/security-design-standard.md diff --git a/baseline/security-design-standard.md b/baseline/security-design-standard.md new file mode 100644 index 0000000..5fa2f8a --- /dev/null +++ b/baseline/security-design-standard.md @@ -0,0 +1 @@ +# 安全设计规范 \ No newline at end of file -- Gitee From 72a5ed58ef0a9eaabf130ed2dbc441d563e50cd1 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 01:29:12 +0000 Subject: [PATCH 05/52] update README.md. Signed-off-by: xujian --- README.md | 9 +++------ 1 file changed, 3 insertions(+), 6 deletions(-) diff --git a/README.md b/README.md index d312ac3..865d362 100644 --- a/README.md +++ b/README.md @@ -2,12 +2,9 @@ ## 安全设计基线 安全设计基线修订方式:由安全委员会相关人员定期收集社区开发中总结、反馈的修订内容,组织openKylin社区安全设计专家团队对修订内容进行评估,通过后才能修订。 -* [安全设计流程]() - -![安全设计流程](./baseline/security-design-flow.md) - -* [安全设计原则]() -* [安全设计规范]() +* [安全设计流程](./baseline/security-design-flow.md) +* [安全设计原则](./baseline/security-design-principle.md) +* [安全设计规范](./baseline/security-design-standard.md) ## 安全设计工具 -- Gitee From c5e46e6a073d00913cd6656abdcd3fc3f1303424 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 01:40:05 +0000 Subject: [PATCH 06/52] =?UTF-8?q?=E6=96=B0=E5=BB=BA=20tools?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- tools/.keep | 0 1 file changed, 0 insertions(+), 0 deletions(-) create mode 100644 tools/.keep diff --git a/tools/.keep b/tools/.keep new file mode 100644 index 0000000..e69de29 -- Gitee From b17bbd92c7faaa48f2d9174c2f1b77cbed6652a6 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 01:41:41 +0000 Subject: [PATCH 07/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 16 ++++++++++++++++ 1 file changed, 16 insertions(+) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 6b1ea91..4827d0f 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -1,2 +1,18 @@ # 安全设计流程 + +st=>start: Start:>http://www.google.com[blank] +e=>end:>http://www.google.com +op1=>operation: My Operation +sub1=>subroutine: My Subroutine +cond=>condition: Yes +or No?:>http://www.google.com +io=>inputoutput: catch something... +para=>parallel: parallel tasks + +st->op1->cond +cond(yes)->io->e +cond(no)->para +para(path1, bottom)->sub1(right)->op1 +para(path2, top)->op1 + ![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee From e7fa91de6846f7a09df44277f9487e9c163464d0 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 01:42:42 +0000 Subject: [PATCH 08/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 19 ++++--------------- 1 file changed, 4 insertions(+), 15 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 4827d0f..2f4dfb3 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -1,18 +1,7 @@ # 安全设计流程 - -st=>start: Start:>http://www.google.com[blank] -e=>end:>http://www.google.com -op1=>operation: My Operation -sub1=>subroutine: My Subroutine -cond=>condition: Yes -or No?:>http://www.google.com -io=>inputoutput: catch something... -para=>parallel: parallel tasks - -st->op1->cond -cond(yes)->io->e -cond(no)->para -para(path1, bottom)->sub1(right)->op1 -para(path2, top)->op1 +​~~~mermaid +graph TD +A --> B +​~~~ ![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee From b40c6ac0645dc07a2f354ff3745b3c8577d60918 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 01:43:44 +0000 Subject: [PATCH 09/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 7 +++---- 1 file changed, 3 insertions(+), 4 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 2f4dfb3..96d1c2b 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -1,7 +1,6 @@ # 安全设计流程 -​~~~mermaid -graph TD -A --> B -​~~~ +```mermaid +graph TB + 1[开始] --> 2[结束] ![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee From 17820792b6c3da938ef6a1b7055c3d6b1653cbb1 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 01:44:00 +0000 Subject: [PATCH 10/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 96d1c2b..f21302a 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -2,5 +2,5 @@ ```mermaid graph TB 1[开始] --> 2[结束] - +``` ![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee From 48d942c218f7bcabf46401a9e59b1e634bc87be2 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 01:49:33 +0000 Subject: [PATCH 11/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 13 ++++++++++--- 1 file changed, 10 insertions(+), 3 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index f21302a..d8adcbb 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -1,6 +1,13 @@ # 安全设计流程 -```mermaid -graph TB - 1[开始] --> 2[结束] + ``` +flowst=>start: +开始框op=>operation: +处理框cond=>condition: +判断框(是或否?)sub1=>subroutine: +子流程io=>inputoutput: +输入输出框e=>end: +结束框st->op->condcond(yes)->io->econd(no)->sub1(right)->op +``` + ![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee From cabad5d0e528092af8e04a4e3ed9222a339141ea Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 01:49:57 +0000 Subject: [PATCH 12/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 10 +--------- 1 file changed, 1 insertion(+), 9 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index d8adcbb..323ff26 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -1,13 +1,5 @@ # 安全设计流程 -``` -flowst=>start: -开始框op=>operation: -处理框cond=>condition: -判断框(是或否?)sub1=>subroutine: -子流程io=>inputoutput: -输入输出框e=>end: -结束框st->op->condcond(yes)->io->econd(no)->sub1(right)->op -``` +```flowst=>start:开始框op=>operation:处理框cond=>condition:判断框(是或否?)sub1=>subroutine:子流程io=>inputoutput:输入输出框e=>end:结束框st->op->condcond(yes)->io->econd(no)->sub1(right)->op``` ![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee From 07bedb487df7d6ef49640b12a6e257d9ef8dc28e Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 01:53:04 +0000 Subject: [PATCH 13/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 8 +++++++- 1 file changed, 7 insertions(+), 1 deletion(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 323ff26..2805849 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -1,5 +1,11 @@ # 安全设计流程 -```flowst=>start:开始框op=>operation:处理框cond=>condition:判断框(是或否?)sub1=>subroutine:子流程io=>inputoutput:输入输出框e=>end:结束框st->op->condcond(yes)->io->econd(no)->sub1(right)->op``` +​~~~mermaid +flowchart LR +A[Hard] -->|Text| B(Round) +B --> C{Decision} +C -->|One| D[Result 1] +C -->|Two| E[Result 2] +​~~~ ![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee From c0c228d194409efac7d3caf90eb04433cab306dd Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 01:53:28 +0000 Subject: [PATCH 14/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 2805849..fe312d6 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -1,11 +1,11 @@ # 安全设计流程 -​~~~mermaid +’’’mermaid flowchart LR A[Hard] -->|Text| B(Round) B --> C{Decision} C -->|One| D[Result 1] C -->|Two| E[Result 2] -​~~~ +‘‘‘ ![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee From c13258a23d4641b5738d4802fd261292baac6b81 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 01:54:04 +0000 Subject: [PATCH 15/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 11 ++++------- 1 file changed, 4 insertions(+), 7 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index fe312d6..f667fd6 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -1,11 +1,8 @@ # 安全设计流程 -’’’mermaid -flowchart LR -A[Hard] -->|Text| B(Round) -B --> C{Decision} -C -->|One| D[Result 1] -C -->|Two| E[Result 2] -‘‘‘ +​~~~mermaid +graph LR + A --> B +​~~~ ![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee From 2ff5c784dd4549fd9c2d6dbf07c2d459c85cd77d Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 01:54:56 +0000 Subject: [PATCH 16/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 5 ++--- 1 file changed, 2 insertions(+), 3 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index f667fd6..4720736 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -1,8 +1,7 @@ # 安全设计流程 - -​~~~mermaid +```mermaid graph LR A --> B -​~~~ +``` ![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee From 7eb8171d3db6c811904568b1db502656f0db84e4 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 01:55:22 +0000 Subject: [PATCH 17/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 8 ++++++-- 1 file changed, 6 insertions(+), 2 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 4720736..375be72 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -1,7 +1,11 @@ # 安全设计流程 ```mermaid -graph LR - A --> B + +flowchart LR +A[Hard] -->|Text| B(Round) +B --> C{Decision} +C -->|One| D[Result 1] +C -->|Two| E[Result 2] ``` ![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee From 829cf6f4151c890ce5b5d403373aa0fb0c55900d Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 01:58:12 +0000 Subject: [PATCH 18/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 375be72..d77b78e 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -1,8 +1,7 @@ # 安全设计流程 ```mermaid - flowchart LR -A[Hard] -->|Text| B(Round) +A[安全需求分析] -->|可信策略实施| B(Round) B --> C{Decision} C -->|One| D[Result 1] C -->|Two| E[Result 2] -- Gitee From 43e63e0ccdc5a8f7cf76b373c87c134c6d87e0b9 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 01:59:10 +0000 Subject: [PATCH 19/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index d77b78e..899882b 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -1,7 +1,7 @@ # 安全设计流程 ```mermaid flowchart LR -A[安全需求分析] -->|可信策略实施| B(Round) +A[安全需求分析] -->|可信策略实施| B[可信策略实施] B --> C{Decision} C -->|One| D[Result 1] C -->|Two| E[Result 2] -- Gitee From 1bda5bda941ff045f3227dd501c7082c4bb80d4f Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 02:00:40 +0000 Subject: [PATCH 20/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 1 + 1 file changed, 1 insertion(+) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 899882b..82413fa 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -2,6 +2,7 @@ ```mermaid flowchart LR A[安全需求分析] -->|可信策略实施| B[可信策略实施] +A1[项目创始人]--> B[可信策略实施] B --> C{Decision} C -->|One| D[Result 1] C -->|Two| E[Result 2] -- Gitee From 67f50a4de0658de86a2076045e4c1afb9e5f18f8 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 02:01:04 +0000 Subject: [PATCH 21/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 1 + 1 file changed, 1 insertion(+) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 82413fa..9836407 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -2,6 +2,7 @@ ```mermaid flowchart LR A[安全需求分析] -->|可信策略实施| B[可信策略实施] +flowchart TD A1[项目创始人]--> B[可信策略实施] B --> C{Decision} C -->|One| D[Result 1] -- Gitee From eedad4c7683263af721057ce9087fd4327b4a99c Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 02:01:21 +0000 Subject: [PATCH 22/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 9836407..99700e1 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -1,8 +1,7 @@ # 安全设计流程 ```mermaid -flowchart LR -A[安全需求分析] -->|可信策略实施| B[可信策略实施] flowchart TD +A[安全需求分析] -->|可信策略实施| B[可信策略实施] A1[项目创始人]--> B[可信策略实施] B --> C{Decision} C -->|One| D[Result 1] -- Gitee From e15e088d11c56c6225cb67e3beeaccc406a8814a Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 02:06:40 +0000 Subject: [PATCH 23/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 99700e1..b5b7408 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -1,11 +1,11 @@ # 安全设计流程 ```mermaid -flowchart TD -A[安全需求分析] -->|可信策略实施| B[可信策略实施] -A1[项目创始人]--> B[可信策略实施] -B --> C{Decision} -C -->|One| D[Result 1] -C -->|Two| E[Result 2] +flowchart LR +A[项目创始人] -->|使用| B[安全设计基线]-->|设计|--> C[安全设计文档]--C{安全门禁评审} + + +C -->|评审未通过| B[Result 1] +C -->|通过| D[开源项目创建成功] ``` ![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee From 02672adfb3e73d1e6799ea189f20a121fe435930 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 02:07:34 +0000 Subject: [PATCH 24/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index b5b7408..a0ba0cc 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -1,11 +1,11 @@ # 安全设计流程 ```mermaid flowchart LR -A[项目创始人] -->|使用| B[安全设计基线]-->|设计|--> C[安全设计文档]--C{安全门禁评审} - - -C -->|评审未通过| B[Result 1] -C -->|通过| D[开源项目创建成功] +A[项目创始人] -->|使用| B[安全设计基线] +B-->|设计|--> C[安全设计文档] +C-->D{安全门禁评审} +D -->|评审未通过| B[Result 1] +D -->|通过| E[开源项目创建成功] ``` ![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee From 4ea9e7bd3fb481a5d724aeafdfd19654636895fb Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 02:07:53 +0000 Subject: [PATCH 25/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index a0ba0cc..4e67d49 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -2,10 +2,10 @@ ```mermaid flowchart LR A[项目创始人] -->|使用| B[安全设计基线] +``` + B-->|设计|--> C[安全设计文档] C-->D{安全门禁评审} D -->|评审未通过| B[Result 1] D -->|通过| E[开源项目创建成功] -``` - ![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee From 1e31b6fa31b0a5b7503b5001ee6c82b949580ea5 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 02:08:18 +0000 Subject: [PATCH 26/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 4e67d49..64ae223 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -2,9 +2,10 @@ ```mermaid flowchart LR A[项目创始人] -->|使用| B[安全设计基线] +B-->|设计|C[安全设计文档] ``` -B-->|设计|--> C[安全设计文档] + C-->D{安全门禁评审} D -->|评审未通过| B[Result 1] D -->|通过| E[开源项目创建成功] -- Gitee From 6994d0ca4050a503bcaa231dae816c3985dc443c Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 02:09:11 +0000 Subject: [PATCH 27/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 64ae223..d17436d 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -1,12 +1,12 @@ # 安全设计流程 ```mermaid flowchart LR -A[项目创始人] -->|使用| B[安全设计基线] -B-->|设计|C[安全设计文档] +A[项目创始人] --> B[使用安全设计基线] +B-->C[设计安全设计文档] +C-->D{提交安全门禁评审} ``` -C-->D{安全门禁评审} D -->|评审未通过| B[Result 1] D -->|通过| E[开源项目创建成功] ![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee From 6b999e70f5b3a2b883f925f67f001b55eef6491a Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 02:09:35 +0000 Subject: [PATCH 28/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index d17436d..84ef87e 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -4,9 +4,10 @@ flowchart LR A[项目创始人] --> B[使用安全设计基线] B-->C[设计安全设计文档] C-->D{提交安全门禁评审} +D -->|评审未通过| B +D -->|通过| E[开源项目创建成功] ``` -D -->|评审未通过| B[Result 1] -D -->|通过| E[开源项目创建成功] + ![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee From a7bbe4b2a2f5dee4bf08333545c7d9cdf3b9cf89 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 02:10:07 +0000 Subject: [PATCH 29/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 84ef87e..68755d1 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -3,7 +3,7 @@ flowchart LR A[项目创始人] --> B[使用安全设计基线] B-->C[设计安全设计文档] -C-->D{提交安全门禁评审} +C-->D{提交安全门设计禁} D -->|评审未通过| B D -->|通过| E[开源项目创建成功] ``` -- Gitee From 832f0f0394450f6a2f4b834b99d4a43639cf232b Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 02:10:22 +0000 Subject: [PATCH 30/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 68755d1..1ca3500 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -5,7 +5,7 @@ A[项目创始人] --> B[使用安全设计基线] B-->C[设计安全设计文档] C-->D{提交安全门设计禁} D -->|评审未通过| B -D -->|通过| E[开源项目创建成功] +D -->|评审通过| E[开源项目创建成功] ``` -- Gitee From f0a8cf77619f8d5340232ab5d081625c7b32f318 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 02:14:17 +0000 Subject: [PATCH 31/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 12 +++++++++++- 1 file changed, 11 insertions(+), 1 deletion(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 1ca3500..6d75cb6 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -1,13 +1,23 @@ # 安全设计流程 +## 开源项目创建流程 ```mermaid flowchart LR A[项目创始人] --> B[使用安全设计基线] B-->C[设计安全设计文档] -C-->D{提交安全门设计禁} +C-->D{提交安全设计门禁} D -->|评审未通过| B D -->|评审通过| E[开源项目创建成功] ``` +## 设计文档修订流程 +```mermaid +flowchart LR +A[社区开发者] --> B[使用安全设计基线] +B-->C[修改安全设计文档] +C-->D{提交maintainer} +D -->|评审未通过| B +D -->|评审通过| E[文档修订成功] +``` ![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee From 0e135bc4c2dc344880ae2da44f578b9ff11aff13 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 02:16:16 +0000 Subject: [PATCH 32/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 6d75cb6..aa7f091 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -18,6 +18,12 @@ C-->D{提交maintainer} D -->|评审未通过| B D -->|评审通过| E[文档修订成功] ``` +## 安全设计总体过程 +```mermaid +flowchart LR +A[安全实施策略] --> B[安全总体设计文档] +B-->C[安全详细设计文档] +``` ![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee From ec890ee7ae4ad1b1beebe3d6c61d61dcd2799302 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 02:19:17 +0000 Subject: [PATCH 33/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index aa7f091..ff6516e 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -22,8 +22,9 @@ D -->|评审通过| E[文档修订成功] ```mermaid flowchart LR -A[安全实施策略] --> B[安全总体设计文档] -B-->C[安全详细设计文档] +A[安全实施策略] --> B[安全总体设计] +B-->C[安全详细设计] +C-->D[安全设计文档评审] ``` ![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee From 0e0242625528ebbe21442abdc2b9e16697fe2984 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 02:53:49 +0000 Subject: [PATCH 34/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 9 +++++++++ 1 file changed, 9 insertions(+) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index ff6516e..6e0fe29 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -26,5 +26,14 @@ A[安全实施策略] --> B[安全总体设计] B-->C[安全详细设计] C-->D[安全设计文档评审] ``` +## 安全实施策略 + + +## 安全总体设计 + + +## 安全详细设计 + + ![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee From 7892fb328efd2e1c82d456cf499a2e747d8058c8 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 03:00:47 +0000 Subject: [PATCH 35/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 6e0fe29..3ee5119 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -28,6 +28,11 @@ C-->D[安全设计文档评审] ``` ## 安全实施策略 +flowchart LR +A[安全设计规范、安全设计原则、产品领域模型、威胁建模分析模型] -->[输入] B[安全实施策略] +B-->C[安全能力目标、关键安全需求分析、关键安全需求架构图] +``` + ## 安全总体设计 -- Gitee From 1e2fa09b9266428220042423652eb1272e202c86 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 03:01:10 +0000 Subject: [PATCH 36/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 3ee5119..73b91e7 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -27,7 +27,7 @@ B-->C[安全详细设计] C-->D[安全设计文档评审] ``` ## 安全实施策略 - +```mermaid flowchart LR A[安全设计规范、安全设计原则、产品领域模型、威胁建模分析模型] -->[输入] B[安全实施策略] B-->C[安全能力目标、关键安全需求分析、关键安全需求架构图] -- Gitee From c211f45bc9f8e8729c688454572ff4f956a368cb Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 03:01:35 +0000 Subject: [PATCH 37/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 73b91e7..3ca98b5 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -29,7 +29,7 @@ C-->D[安全设计文档评审] ## 安全实施策略 ```mermaid flowchart LR -A[安全设计规范、安全设计原则、产品领域模型、威胁建模分析模型] -->[输入] B[安全实施策略] +A[安全设计规范、安全设计原则、产品领域模型、威胁建模分析模型] -->|输入| B[安全实施策略] B-->C[安全能力目标、关键安全需求分析、关键安全需求架构图] ``` -- Gitee From 1ab274fa70b7af2367afb52be83a4ef4760cd73e Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 03:02:53 +0000 Subject: [PATCH 38/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 1 - 1 file changed, 1 deletion(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 3ca98b5..5eeb3cf 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -33,7 +33,6 @@ A[安全设计规范、安全设计原则、产品领域模型、威胁建模分 B-->C[安全能力目标、关键安全需求分析、关键安全需求架构图] ``` - ## 安全总体设计 -- Gitee From e18c43289a4b07d26f2462419d566aa5bc53ade0 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 03:03:23 +0000 Subject: [PATCH 39/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 5eeb3cf..ecdd56a 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -30,9 +30,9 @@ C-->D[安全设计文档评审] ```mermaid flowchart LR A[安全设计规范、安全设计原则、产品领域模型、威胁建模分析模型] -->|输入| B[安全实施策略] -B-->C[安全能力目标、关键安全需求分析、关键安全需求架构图] ``` +B-->C[安全能力目标、关键安全需求分析、关键安全需求架构图] ## 安全总体设计 -- Gitee From fe4fecdc3b9f83915a5396305b9b875da8b9009e Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 03:03:41 +0000 Subject: [PATCH 40/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index ecdd56a..9a852a6 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -29,9 +29,9 @@ C-->D[安全设计文档评审] ## 安全实施策略 ```mermaid flowchart LR -A[安全设计规范、安全设计原则、产品领域模型、威胁建模分析模型] -->|输入| B[安全实施策略] +A[安全设计规范] -->|输入| B[安全实施策略] ``` - +、安全设计原则、产品领域模型、威胁建模分析模型 B-->C[安全能力目标、关键安全需求分析、关键安全需求架构图] ## 安全总体设计 -- Gitee From 1f6a04200fbf1ba62fd72c0437d43fce66154ae7 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 03:04:07 +0000 Subject: [PATCH 41/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 9a852a6..3144f56 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -29,7 +29,7 @@ C-->D[安全设计文档评审] ## 安全实施策略 ```mermaid flowchart LR -A[安全设计规范] -->|输入| B[安全实施策略] +A[安全设计规范/安全设计原则] -->|输入| B[安全实施策略] ``` 、安全设计原则、产品领域模型、威胁建模分析模型 B-->C[安全能力目标、关键安全需求分析、关键安全需求架构图] -- Gitee From 344e168d844aba37d5166ab6ac49a079fd1f285e Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 03:04:25 +0000 Subject: [PATCH 42/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 3144f56..1e98a8f 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -29,7 +29,7 @@ C-->D[安全设计文档评审] ## 安全实施策略 ```mermaid flowchart LR -A[安全设计规范/安全设计原则] -->|输入| B[安全实施策略] +A[安全设计规范、安全设计原则] -->|输入| B[安全实施策略] ``` 、安全设计原则、产品领域模型、威胁建模分析模型 B-->C[安全能力目标、关键安全需求分析、关键安全需求架构图] -- Gitee From 49321a21f80546e957ab70eaca3cf96123048e9f Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 03:04:42 +0000 Subject: [PATCH 43/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 1e98a8f..ce8d7d5 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -29,7 +29,8 @@ C-->D[安全设计文档评审] ## 安全实施策略 ```mermaid flowchart LR -A[安全设计规范、安全设计原则] -->|输入| B[安全实施策略] +A[安全设计规范 +安全设计原则] -->|输入| B[安全实施策略] ``` 、安全设计原则、产品领域模型、威胁建模分析模型 B-->C[安全能力目标、关键安全需求分析、关键安全需求架构图] -- Gitee From 61b56669117f4e88a6c362aeb17c0cb2195696fd Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 03:05:52 +0000 Subject: [PATCH 44/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index ce8d7d5..b2ee721 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -28,12 +28,12 @@ C-->D[安全设计文档评审] ``` ## 安全实施策略 ```mermaid -flowchart LR -A[安全设计规范 -安全设计原则] -->|输入| B[安全实施策略] +flowchart TD +A[安全设计规范/安全设计原则/产品领域模型/] -->|输入| B[安全实施策略] +B-->|输出| C[安全能力目标/关键安全需求分析/关键安全需求架构图] ``` -、安全设计原则、产品领域模型、威胁建模分析模型 -B-->C[安全能力目标、关键安全需求分析、关键安全需求架构图] + + ## 安全总体设计 -- Gitee From a17e40ec6ebf3fbe2bbf320d3288f8114ad5370f Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 03:06:23 +0000 Subject: [PATCH 45/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index b2ee721..91e2005 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -29,7 +29,7 @@ C-->D[安全设计文档评审] ## 安全实施策略 ```mermaid flowchart TD -A[安全设计规范/安全设计原则/产品领域模型/] -->|输入| B[安全实施策略] +A[安全设计规范/安全设计原则/产品领域模型] -->|输入| B[安全实施策略] B-->|输出| C[安全能力目标/关键安全需求分析/关键安全需求架构图] ``` -- Gitee From c438f983e5686b0b457d9bfe8f32d43aaf7a2502 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 03:06:53 +0000 Subject: [PATCH 46/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 91e2005..4128660 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -29,7 +29,7 @@ C-->D[安全设计文档评审] ## 安全实施策略 ```mermaid flowchart TD -A[安全设计规范/安全设计原则/产品领域模型] -->|输入| B[安全实施策略] +A[安全设计规范/安全设计原则/产品领域模型/威胁建模分析模型] -->|输入| B[安全实施策略] B-->|输出| C[安全能力目标/关键安全需求分析/关键安全需求架构图] ``` -- Gitee From d9fe77f28041f9d73acd89e0ae6e3cea96acec16 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 03:11:41 +0000 Subject: [PATCH 47/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 6 +++++- 1 file changed, 5 insertions(+), 1 deletion(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 4128660..b5e7964 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -35,7 +35,11 @@ B-->|输出| C[安全能力目标/关键安全需求分析/关键安全需求架 ## 安全总体设计 - +```mermaid +flowchart TD +A[安全设计规范/安全设计原则/威胁建模分析模型/失效模式效应分析模型/产品安全红线] -->|输入| B[安全总体设计] +B-->|输出| C[总体设计说明书/总体设计威胁建模分析表/总体设计失效模式效应分析表/安全设计检视表] +``` ## 安全详细设计 -- Gitee From fcbc8ffd5afc01e08c93d19f9dcd27f2d58a64a2 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 03:15:48 +0000 Subject: [PATCH 48/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index b5e7964..98fdc0b 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -29,7 +29,7 @@ C-->D[安全设计文档评审] ## 安全实施策略 ```mermaid flowchart TD -A[安全设计规范/安全设计原则/产品领域模型/威胁建模分析模型] -->|输入| B[安全实施策略] +A[安全设计规范
安全设计原则/产品领域模型/威胁建模分析模型] -->|输入| B[安全实施策略] B-->|输出| C[安全能力目标/关键安全需求分析/关键安全需求架构图] ``` -- Gitee From 807dba2820ae9725df480bd13eca00a420fbac53 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 03:17:40 +0000 Subject: [PATCH 49/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 98fdc0b..e4efcbb 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -29,16 +29,16 @@ C-->D[安全设计文档评审] ## 安全实施策略 ```mermaid flowchart TD -A[安全设计规范
安全设计原则/产品领域模型/威胁建模分析模型] -->|输入| B[安全实施策略] -B-->|输出| C[安全能力目标/关键安全需求分析/关键安全需求架构图] +A[安全设计规范
安全设计原则
产品领域模型
威胁建模分析模型] -->|输入| B[安全实施策略] +B-->|输出| C[安全能力目标
关键安全需求分析
关键安全需求架构图] ``` ## 安全总体设计 ```mermaid flowchart TD -A[安全设计规范/安全设计原则/威胁建模分析模型/失效模式效应分析模型/产品安全红线] -->|输入| B[安全总体设计] -B-->|输出| C[总体设计说明书/总体设计威胁建模分析表/总体设计失效模式效应分析表/安全设计检视表] +A[安全设计规范
安全设计原则
威胁建模分析模型
失效模式效应分析模型
产品安全红线] -->|输入| B[安全总体设计] +B-->|输出| C[总体设计说明书
总体设计威胁建模分析表
总体设计失效模式效应分析表
安全设计检视表] ``` ## 安全详细设计 -- Gitee From f26a0a62bd74157f0a9f26e5f74c589493eb5136 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 03:18:06 +0000 Subject: [PATCH 50/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index e4efcbb..55100c2 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -28,7 +28,7 @@ C-->D[安全设计文档评审] ``` ## 安全实施策略 ```mermaid -flowchart TD +flowchart LR A[安全设计规范
安全设计原则
产品领域模型
威胁建模分析模型] -->|输入| B[安全实施策略] B-->|输出| C[安全能力目标
关键安全需求分析
关键安全需求架构图] ``` @@ -36,7 +36,7 @@ B-->|输出| C[安全能力目标
关键安全需求分析
关键安全需 ## 安全总体设计 ```mermaid -flowchart TD +flowchart LR A[安全设计规范
安全设计原则
威胁建模分析模型
失效模式效应分析模型
产品安全红线] -->|输入| B[安全总体设计] B-->|输出| C[总体设计说明书
总体设计威胁建模分析表
总体设计失效模式效应分析表
安全设计检视表] ``` -- Gitee From ce1b7170fe7069103dcb20fb03908481c2b0444f Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 03:22:20 +0000 Subject: [PATCH 51/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 7 ++++++- 1 file changed, 6 insertions(+), 1 deletion(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index 55100c2..f702488 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -38,10 +38,15 @@ B-->|输出| C[安全能力目标
关键安全需求分析
关键安全需 ```mermaid flowchart LR A[安全设计规范
安全设计原则
威胁建模分析模型
失效模式效应分析模型
产品安全红线] -->|输入| B[安全总体设计] -B-->|输出| C[总体设计说明书
总体设计威胁建模分析表
总体设计失效模式效应分析表
安全设计检视表] +B-->|输出| C[总体设计说明书
总体设计威胁建模分析表
总体设计失效模式效应分析表
总体设计安全检视表] ``` ## 安全详细设计 +```mermaid +flowchart LR +A[安全设计规范
安全设计原则
威胁建模分析模型
失效模式效应分析模型
产品安全红线] -->|输入| B[安全详细设计] +B-->|输出| C[详细设计说明书
详细设计威胁建模分析表
详细设计失效模式效应分析表
详细设计安全检视表] +``` -- Gitee From 1e51b55a6e2977557cc8cf08572e37aafae6b0b7 Mon Sep 17 00:00:00 2001 From: xujian Date: Tue, 25 Oct 2022 03:22:54 +0000 Subject: [PATCH 52/52] update baseline/security-design-flow.md. Signed-off-by: xujian --- baseline/security-design-flow.md | 4 ---- 1 file changed, 4 deletions(-) diff --git a/baseline/security-design-flow.md b/baseline/security-design-flow.md index f702488..b5848cc 100644 --- a/baseline/security-design-flow.md +++ b/baseline/security-design-flow.md @@ -47,7 +47,3 @@ flowchart LR A[安全设计规范
安全设计原则
威胁建模分析模型
失效模式效应分析模型
产品安全红线] -->|输入| B[安全详细设计] B-->|输出| C[详细设计说明书
详细设计威胁建模分析表
详细设计失效模式效应分析表
详细设计安全检视表] ``` - - - -![安全设计步棸](./security-design-steps.png) \ No newline at end of file -- Gitee