-
Notifications
You must be signed in to change notification settings - Fork 78
[IRQ-446] Answering the need to clarify allow-listing domain procedure #3392
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[IRQ-446] Answering the need to clarify allow-listing domain procedure #3392
Conversation
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
There is a mixup in the writing : it cannot be "the user" and "your company", you have to choose
It was redacted this way before: neutral way "The user" for pre-conditions, and direct way "Your company" for procedure |
No specific reason, I agree with your recommendation Co-authored-by: Étienne M. <[email protected]>
Agree Co-authored-by: Étienne M. <[email protected]>
Agree Co-authored-by: Étienne M. <[email protected]>
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Can you also update the PR title to mention "allow-listing" rather than "whitelisting"?
Sure - you're right, sorry (my fault, I missed it also) Co-authored-by: Étienne M. <[email protected]>
Thank you, you've got sharp eyes! |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM
From: https://scalingo.atlassian.net/browse/IRQ-446
Internal procedure change: https://github.com/Scalingo/specifications/pull/486
Overview:
This commit significantly improves the documentation for accessing the SecNumCloud (osc-secnum-fr1) region by clarifying the domain whitelisting procedures and access requirements for users.
1. Enhanced user access section
Clarified Language and improved Clarity: made it clear that user accounts must be explicitly allow-listed before accessing the region
2. Refined "Pre-conditions" language
Enhanced the description for legitimate access reasons, domain verification and added requirement that company domains must already be associated with existing applications in the region.
3. Restructured access procedures
Streamlined process for users from companies with existing SecNumCloud presence
Access without whitelisted domain: Clear process for new domain requests
Domain declaration and regularization
Objectives:
Reduced Support Burden: clearer procedures reduce unclear requests - better explanation of verification requirements
Compliance documentation: better alignment with SecNumCloud security requirements