summaryrefslogtreecommitdiffstats
path: root/docs/release-notes.rst
diff options
context:
space:
mode:
authorGildas Lanilis <gildas.lanilis@huawei.com>2018-05-30 10:53:20 -0700
committerGildas Lanilis <gildas.lanilis@huawei.com>2018-05-30 10:53:20 -0700
commitc214bd16b66c078406244512f6e82519a6209b5c (patch)
tree8b898b20309132bd4f0ab1216eb092e108ca1066 /docs/release-notes.rst
parentad037500fc1bdca2546b996418381577deb1c1a3 (diff)
Document Security section of the Release Notes
Change-Id: I977b1501d5e2b4abc74a5b1b3d49860115a33f61 Issue-ID: DOC-271 Signed-off-by: Gildas Lanilis <gildas.lanilis@huawei.com>
Diffstat (limited to 'docs/release-notes.rst')
-rw-r--r--docs/release-notes.rst16
1 files changed, 5 insertions, 11 deletions
diff --git a/docs/release-notes.rst b/docs/release-notes.rst
index 916627f..6cf1aa7 100644
--- a/docs/release-notes.rst
+++ b/docs/release-notes.rst
@@ -36,20 +36,14 @@ Version: 1.1.0
**Security Notes**
-ONAP has adopted the `CII Best Practice Badge Program <https://bestpractices.coreinfrastructure.org/en>`_. The goal of the Beijing release is for all ONAP projects to be close to achieving a CII Passing badge.
+VNFSDK code has been formally scanned during build time using NexusIQ and all Critical vulnerabilities have been addressed, items that remain open have been assessed for risk and determined to be false positive. The VNFSDK open Critical security vulnerabilities and their risk assessment have been documented as part of the `project <https://wiki.onap.org/pages/viewpage.action?pageId=28377592>`_.
-VNFSDK code has been formally scanned during build time using NexusIQ and all Critical vulnerabilities found in these scans are closed. The 'VNFSDK security vulnerabilities and their workarounds <https://bestpractices.coreinfrastructure.org/en/projects/1588>'_ have been documented as part of the project.
-
-***Quick Links***
- - `VNFSDK project page <https://wiki.onap.org/display/DW/VNF+SDK+Project>'_
-
- - `Badging information for VNFSDK <https://bestpractices.coreinfrastructure.org/en/projects/1588>'_
-
- - `Project Vulnerability Review Table for VNFSDK <https://wiki.onap.org/pages/viewpage.action?pageId=28377592>'_
+Quick Links:
+ - `VNFSDK project page <https://wiki.onap.org/display/DW/VNF+SDK+Project>`_
- - `Badging Requirements <https://github.com/coreinfrastructure/best-practices-badge#core-infrastructure-initiative-best-practices-badge>'_
+ - `Passing Badge information for VNFSDK <https://bestpractices.coreinfrastructure.org/en/projects/1588>`_
- - `Badging Status for all ONAP projects <https://bestpractices.coreinfrastructure.org/en/projects?q=onap>'_
+ - `Project Vulnerability Review Table for VNFSDK <https://wiki.onap.org/pages/viewpage.action?pageId=28377592>`_
**Upgrade Notes**
* Updated to use Swagger for APIs