Skip to content

Commit

Permalink
Deployed 1234500 with MkDocs version: 1.6.0
Browse files Browse the repository at this point in the history
  • Loading branch information
Unknown committed Aug 19, 2024
1 parent 1cb9aaa commit 1469a05
Show file tree
Hide file tree
Showing 2 changed files with 7 additions and 5 deletions.
2 changes: 1 addition & 1 deletion search/search_index.json

Large diffs are not rendered by default.

10 changes: 6 additions & 4 deletions services/virtualmachines/policies/index.html
Original file line number Diff line number Diff line change
Expand Up @@ -2361,10 +2361,12 @@ <h2 id="patching-of-user-vms">Patching of User VMs</h2>
<p>The EIDF team updates and patches the hypervisors and the cloud management software as part of the EIDF Maintenance sessions. It is the responsibility of project PIs to keep the VMs in their projects up to date. VMs running the Ubuntu and Rocky operating systems automatically install security patches and alert users at log-on (via SSH) to reboot as necessary for the changes to take effect. They also encourage users to update packages.</p>
<h2 id="customer-run-outward-facing-web-services">Customer-run outward facing web services</h2>
<p>PIs can apply to run an outward-facing service; that is a webservice on port 443, running on a project-owned VM. The policy requires the customer to accept the following conditions:</p>
<p>Agreement that the customer will automatically apply security patches, run regular maintenance, and have named contacts who can act should we require it.
Agreement that should EPCC detect any problematic behaviour (of users or code), we reserve the right to remove web access.
Agreement that the customer understands all access is filtered and gated by EPCC’s Firewalls and NGINX (or other equivalent software) server such that there is no direct exposure to the internet of their application.
Agreement that the customer owns the data, has permission to expose it, and that it will not bring UoE into disrepute.</p>
<ul>
<li>Agreement that the customer will automatically apply security patches, run regular maintenance, and have named contacts who can act should we require it.</li>
<li>Agreement that should EPCC detect any problematic behaviour (of users or code), we reserve the right to remove web access.</li>
<li>Agreement that the customer understands all access is filtered and gated by EPCC’s Firewalls and NGINX (or other equivalent software) server such that there is no direct exposure to the internet of their application.</li>
<li>Agreement that the customer owns the data, has permission to expose it, and that it will not bring UoE into disrepute.</li>
</ul>
<p>Pis can apply for such a service on application and also at any time by contacing the EIDF Service Desk.</p>


Expand Down

0 comments on commit 1469a05

Please sign in to comment.