Classes

\Restruct\SecurityBaseline

Name Description
SecurityPasswordValidator No description available EMPTY

\Restruct\SecurityBaseline\Controls

Name Description
SecurityBaselineController No description available EMPTY

\Restruct\SecurityBaseline\Emails

Name Description
AccountSecurityEventsNotice Class used as template to send an email notifying of updated account/security settings extends Email, replaces Member_ChangePasswordEmail EMPTY

\Restruct\SecurityBaseline\Extensions

Name Description
Logger No description available EMPTY
MemberExtension No description available EMPTY
MemberSecurityExtension No description available EMPTY
SecurityBaselineControllerExtension Class SecurityHeadersControllerExtension Based on https://github.com/guttmann/silverstripe-security-headers/ Combined with https://github.com/bepsvpt/secure-headers/blob/master/config/secure-headers.php EMPTY

\Restruct\SecurityBaseline\Models

Name Description
SecurityLog Audit Log entry (incidents & regular events) Queryable by: Actor, Object & Subject (+ date etc) NEN 7510 Audit Logging: registratie van alle activiteiten waarbij privacygevoelige informatie wordt - Aangemaakt -> onBeforeWrite (ID check) - Ingezien -> canRead? - Gekopieerd of verplaatst -> onDuplicate - Gewijzigd -> onBeforeWrite - Gewist -> onBeforeDelete Bij de registratie moet worden vastgelegd - Wanneer de activiteit plaatsvond -> Created - Wat de activiteit inhield (CRUD) -> Entry (description of event) - Wie de activiteit verrichte (persoon of systeem) -> Actor (Class+ID / Free-form - Welke informatie het betreft (documentnummer, unieke ID) -> Object - Welke patient het betreft (patient ID) -> Subject EMPTY

\Restruct\SecurityBaseline\Reports

Name Description
SecurityLogsReport Class SecurityLogsReport EMPTY

\Restruct\SecurityBaseline\Tasks

Name Description
ExpirePasswordsTask No description available EMPTY