Files
i2p.www/pots/research.pot

783 lines
22 KiB
Plaintext
Raw Normal View History

2014-02-02 23:39:36 +00:00
# Translations template for I2P.
2022-08-21 11:36:36 -04:00
# Copyright (C) 2022 ORGANIZATION
2014-02-02 23:39:36 +00:00
# This file is distributed under the same license as the I2P project.
2022-08-21 11:36:36 -04:00
# FIRST AUTHOR <EMAIL@ADDRESS>, 2022.
2014-02-02 23:39:36 +00:00
#
#, fuzzy
msgid ""
msgstr ""
"Project-Id-Version: I2P website\n"
"Report-Msgid-Bugs-To: http://trac.i2p2.de\n"
2022-08-21 11:36:36 -04:00
"POT-Creation-Date: 2022-08-21 15:33+0000\n"
2014-02-02 23:39:36 +00:00
"PO-Revision-Date: YEAR-MO-DA HO:MI+ZONE\n"
"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n"
"Language-Team: LANGUAGE <LL@li.org>\n"
"MIME-Version: 1.0\n"
"Content-Type: text/plain; charset=utf-8\n"
"Content-Transfer-Encoding: 8bit\n"
"Generated-By: Babel 1.3\n"
#: i2p2www/pages/site/research/index.html:2
msgid "Academic Research"
msgstr ""
2016-04-02 00:12:52 +00:00
#: i2p2www/pages/site/research/index.html:3
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/questions.html:3
msgid "May 2018"
2016-04-02 00:12:52 +00:00
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/index.html:6
msgid "Introduction"
2014-02-02 23:39:36 +00:00
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/index.html:8
msgid "Research on the I2P Network"
msgstr ""
#: i2p2www/pages/site/research/index.html:10
2016-04-02 00:12:52 +00:00
msgid ""
2018-06-24 14:48:14 +00:00
"I2P is a very unique project that unfortunately has not received the "
"wider\n"
"academic attention it deserves. To date, most research focus on anonymous"
" and\n"
"onion-routing technology has been around Tor, and while those papers "
"benefit us\n"
"as well, there is a great need for I2P-focused research. This plays a key"
" role\n"
"in both maintaining the security and integrity of the network, as well as"
2016-04-02 00:12:52 +00:00
"\n"
2018-06-24 14:48:14 +00:00
"opening doors for more impactful future development."
2016-04-02 00:12:52 +00:00
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/index.html:19
2014-02-02 23:39:36 +00:00
#, python-format
msgid ""
"\n"
"There is a large research community investigating a wide range of aspects"
" of\n"
"anonymity. For a current and comprehensive list of relevant papers, see "
"the\n"
"<a href=\"%(anonbib)s\">Free Haven Anonymity Bibliography</a>.\n"
"I2P benefits from much of the research into Tor and onion routing, but "
"there is\n"
"little dedicated research interest into the theory behind I2P, and the "
"choices\n"
"and tradeoffs that the network makes. This presents a unique opportunity "
"for\n"
"original research.\n"
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/index.html:29
2014-02-02 23:39:36 +00:00
#, python-format
msgid ""
"A list of known published papers about I2P is available <a "
"href=\"%(papers)s\">here</a>."
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/index.html:34
2016-04-02 00:12:52 +00:00
msgid ""
"\n"
2018-06-24 14:48:14 +00:00
"This page aims to outline the most needed fields of research, notes to\n"
"potential researchers, our general safety guidelines as well as an "
"expanding\n"
"list of open questions that you can begin on at any time.\n"
2016-04-02 00:12:52 +00:00
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/index.html:40
msgid "Notes to Researchers:"
msgstr ""
#: i2p2www/pages/site/research/index.html:42
msgid "Defensive Research"
2014-02-02 23:39:36 +00:00
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/index.html:44
2014-02-02 23:39:36 +00:00
msgid ""
2018-06-24 14:48:14 +00:00
"While all research on the I2P network is beneficial and appreciated, "
"there are\n"
"certain areas which are more in need than others - most so in defensive\n"
"research. Most people enjoy coming up with fun ways to launch offensives\n"
"against anonymous software, and this is further reinforced by the "
"incentives in\n"
"academic institutions. While we know it is often not the first choice for"
"\n"
"researchers, We would certainly appreciate any and all work towards ways "
"to\n"
"fortify the network!"
2014-02-02 23:39:36 +00:00
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/index.html:54
msgid "Offensive and Analytic Tests"
msgstr ""
#: i2p2www/pages/site/research/index.html:56
#, python-format
2014-02-02 23:39:36 +00:00
msgid ""
2018-06-24 14:48:14 +00:00
"If you've decided on a research topic that aims to hands-on investigate "
"the I2P\n"
"network or solve a problem of large proportions we ask you to "
"<b>please</b> \n"
"<a href=\"%(contact)s\">communicate your ideas</a> to the development "
"team, the\n"
"sooner the better. I2P is under constant development and a significant "
"amount\n"
"of roadmapping occurs, therefore your problem may have already been "
"identified\n"
"and flagged for update or patch. In the unlikely event you are conducting"
"\n"
"testing that overlaps with / would be of interest to another research "
"project\n"
"already in motion, we are also able to make you aware of this (with their"
"\n"
"permission, of course), and possibly open the door for collaboration. "
"There is\n"
"also a chance that the test itself may significantly harm the network or\n"
"regular users, and the team may have ideas or suggestions to mitigate "
"that risk\n"
"and increase the safety of your testing."
2014-02-02 23:39:36 +00:00
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/index.html:71
msgid "Research Ethics &amp; Testing the Network"
msgstr ""
#: i2p2www/pages/site/research/index.html:73
msgid "General Guidelines"
msgstr ""
#: i2p2www/pages/site/research/index.html:75
msgid ""
"<ol>\n"
" <li>\n"
" Consider the benefits and risks - is there any doubt that the "
"research\n"
" provides more value than danger?\n"
" </li>\n"
" <li>\n"
" If the research can be done on a test network then that is the "
"preferred\n"
" method\n"
" </li>\n"
" <li>\n"
" If you must operate on the live network, the safest route is only\n"
" collecting data about yourself\n"
" </li>\n"
" <li>\n"
" If you need 'bigger data', It is recommended to first see if you can "
"use\n"
" data sets from previous experiments or other third party resources is"
"\n"
" recommended\n"
" </li>\n"
" <li>\n"
" If you must collect data on the live network, ensure it is safe for\n"
" publication and collect as little as possible\n"
" </li>\n"
" <li>\n"
" After testing and before publish, review that all data which is to be"
"\n"
" published publicly is <b><i>not</i></b> intended to be private by the"
"\n"
" originator\n"
" </li>\n"
"</ol>"
msgstr ""
#: i2p2www/pages/site/research/index.html:106
msgid "Using a Test Network to Attack I2P"
msgstr ""
#: i2p2www/pages/site/research/index.html:108
2014-02-02 23:39:36 +00:00
msgid ""
2018-06-24 14:48:14 +00:00
"I2P can be run as a separate test network by controlling the locations "
"that a\n"
"new router reseeds from so that it only finds other test routers.\n"
"\n"
"The standard mode of operation is to have one JVM per router instance; "
"hence\n"
"running multiple copies of I2P on a single machine is inadvisable, both "
"due to\n"
"the potential resource drain and the certain port conflicts. To better\n"
"facilitate setting up small test networks, I2P has a multirouter mode "
"which\n"
"enables multiple distinct routers to be run in the same JVM.\n"
"\n"
2014-02-02 23:39:36 +00:00
"MultiRouter can be started from the i2p base directory by running the "
2018-06-24 14:48:14 +00:00
"below\n"
"command."
2014-02-02 23:39:36 +00:00
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/index.html:124
2014-02-02 23:39:36 +00:00
msgid ""
"Additionally, I2P can be started in a virtual network mode. This mode "
2018-06-24 14:48:14 +00:00
"disables\n"
"all transports, allowing the router to be tested in isolation without "
"network\n"
"traffic. To enable this mode, add <code>i2p.vmCommSystem=true</code> to "
"the\n"
"router.config before starting."
2014-02-02 23:39:36 +00:00
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/index.html:131
msgid "Testing on the Live I2P Network"
2014-02-02 23:39:36 +00:00
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/index.html:133
2014-02-02 23:39:36 +00:00
#, python-format
msgid ""
2018-06-24 14:48:14 +00:00
"As stated above in the researcher notes, please <a "
"href=\"%(contact)s\">contact\n"
" us</a> before you commence your testing. While we do not discourage\n"
"researchers from responsibly testing their ideas on the live network, if "
"an\n"
"attack becomes apparent and we don't have any line of communication then "
"we\n"
"will end up taking countermeasures which could interfere with the test."
2014-02-02 23:39:36 +00:00
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/index.html:141
2016-04-02 00:12:52 +00:00
msgid "Router Family Configuration"
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/index.html:143
2016-04-02 00:12:52 +00:00
msgid ""
2018-06-24 14:48:14 +00:00
"As of release 0.9.25, I2P supports a router family configuration. This "
"provides\n"
"researchers who run multiple routers with the means to publicly identify "
"those\n"
"routers. In turn, this helps the I2P project understand that these "
"routers are\n"
"not running an attack on the network. It also will prevent other routers "
"from\n"
"including multiple routers of the family in a single tunnel, which could "
"lead\n"
"to deanonymization. Routers that appear to be colluding but do not have a"
"\n"
"declared family may be assumed to be an attack on the network, and may be"
"\n"
"blocked. The best way to ensure the success of your research project is "
"to work\n"
"with us directly."
2016-04-02 00:12:52 +00:00
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/index.html:155
2016-04-02 00:12:52 +00:00
msgid ""
"A router family shares a private key so that participation in the family "
2018-06-24 14:48:14 +00:00
"cannot\n"
"be spoofed. To configure a router family, click on the 'I2P Internals' "
"link in\n"
"the router console, and then on the 'Family' tab. Follow the instructions"
" there\n"
"to generate the private key for the first router in the family. Then, "
"export\n"
"the key from that router, and import it to other members of the family."
2016-04-02 00:12:52 +00:00
msgstr ""
2014-02-02 23:39:36 +00:00
#: i2p2www/pages/site/research/questions.html:2
msgid "Open research questions"
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/questions.html:5
2014-02-02 23:39:36 +00:00
msgid "Network database"
msgstr ""
#: i2p2www/pages/site/research/questions.html:6
2018-06-24 14:48:14 +00:00
msgid "Floodfills"
msgstr ""
#: i2p2www/pages/site/research/questions.html:19
2014-07-26 02:43:47 +00:00
msgid "Transports"
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/questions.html:31
2014-02-23 03:35:23 +00:00
msgid "Tunnels and Destinations"
2014-02-02 23:39:36 +00:00
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/questions.html:33
2014-02-23 03:35:23 +00:00
msgid "Peer selection"
2014-02-02 23:39:36 +00:00
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/questions.html:46
2014-02-02 23:39:36 +00:00
msgid "Unidirectional tunnels"
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/questions.html:52
2014-02-02 23:39:36 +00:00
msgid "Multihoming"
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/questions.html:59
2014-02-23 03:35:23 +00:00
msgid "Message routing"
msgstr ""
2018-06-24 14:48:14 +00:00
#: i2p2www/pages/site/research/questions.html:66
msgid "Anonymity"
msgstr ""
#: i2p2www/pages/site/research/questions.html:75
msgid "Network Related"
msgstr ""
2017-04-01 23:56:34 +00:00
#: i2p2www/pages/site/research/vrp.html:2
msgid "Vulnerability Response Process"
msgstr ""
#: i2p2www/pages/site/research/vrp.html:6
msgid ""
"\n"
"This process is subject to change. Please refer to this page for the "
"current VRP."
msgstr ""
#: i2p2www/pages/site/research/vrp.html:10
2020-11-16 12:08:25 -05:00
msgid "This page was last updated in June 2020."
2017-04-01 23:56:34 +00:00
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:12
msgid ""
"Researchers: while you research/hack, we ask that you refrain from the "
"following: - Performing active exploits or Denial of Service attacks on "
"the\n"
"i2p network - Performing social engineering on i2p development team "
"members - Performing any physical or electronic attempts against i2p "
"property and/or data\n"
"centers"
2017-04-01 23:56:34 +00:00
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:15
msgid ""
"As i2p is an open-source community, many volunteers and development team "
2021-04-26 10:54:42 -04:00
"members run their own I2P Sites as well as public (“non-private "
"internet”) domains. These\n"
2020-11-16 12:08:25 -05:00
"sites/servers are NOT in the scope of the vulnerability assessment / "
"response process, only the underlying code of i2p is."
2017-04-01 23:56:34 +00:00
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:18
msgid "Point of Contact for Security Issues"
msgstr ""
#: i2p2www/pages/site/research/vrp.html:22
msgid "Security Response Team"
msgstr ""
#: i2p2www/pages/site/research/vrp.html:24
msgid ""
"Echelon is the trusted security point-of-contact. He forwards e-mails to "
"team members as appropriate."
2017-04-01 23:56:34 +00:00
msgstr ""
#: i2p2www/pages/site/research/vrp.html:28
2020-11-16 12:08:25 -05:00
msgid "Incident Response"
2017-04-01 23:56:34 +00:00
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:31
msgid "Researcher submits report via:"
2017-04-01 23:56:34 +00:00
msgstr ""
#: i2p2www/pages/site/research/vrp.html:37
msgid ""
"Response Team designates a Response Manager who is in charge of the "
"particular\n"
"report based on availability and/or knowledge-set."
msgstr ""
#: i2p2www/pages/site/research/vrp.html:42
#, python-format
msgid ""
2020-11-16 12:08:25 -05:00
"In no more than %(limit)s working days, Response Team should\n"
2017-04-01 23:56:34 +00:00
"respond to researcher using only encrypted methods."
msgstr ""
#: i2p2www/pages/site/research/vrp.html:47
msgid ""
"Response Manager makes inquiries to satisfy any needed information and to"
"\n"
"confirm if submission is indeed a vulnerability."
msgstr ""
#: i2p2www/pages/site/research/vrp.html:52
msgid "If submission proves to be vulnerable, proceed."
msgstr ""
#: i2p2www/pages/site/research/vrp.html:55
msgid "If not vulnerable:"
msgstr ""
#: i2p2www/pages/site/research/vrp.html:59
msgid ""
"Response Manager responds with reasons why submission is not a "
"vulnerability."
msgstr ""
#: i2p2www/pages/site/research/vrp.html:62
msgid ""
"Response Manager moves discussion to a new or existing ticket on public "
"Trac if necessary."
msgstr ""
#: i2p2www/pages/site/research/vrp.html:70
msgid ""
"\n"
"Establish severity of vulnerability:\n"
" "
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:75
2017-04-01 23:56:34 +00:00
msgid ""
2020-11-16 12:08:25 -05:00
"Affects network as a whole, has potential to break entire network or is "
2017-04-01 23:56:34 +00:00
"on a scale of great catastrophe."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:79
msgid "Affects individual routers, or must be carefully exploited."
2017-04-01 23:56:34 +00:00
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:83
2017-04-01 23:56:34 +00:00
msgid "Is not easily exploitable."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:89
2017-04-01 23:56:34 +00:00
msgid "Respond according to the severity of the vulnerability:"
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:93
2017-04-01 23:56:34 +00:00
#, python-format
msgid ""
"HIGH severities must be notified on website and news feed within "
"%(limit)s\n"
"working days of classification."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:98
2017-04-01 23:56:34 +00:00
msgid "The notification should list appropriate steps for users to take, if any."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:101
2017-04-01 23:56:34 +00:00
msgid ""
"The notification must not include any details that could suggest an "
"exploitation\n"
"path."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:105
2017-04-01 23:56:34 +00:00
msgid "The latter takes precedence over the former."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:109
2017-04-01 23:56:34 +00:00
msgid "MEDIUM and HIGH severities will require a Point Release."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:112
2017-04-01 23:56:34 +00:00
msgid "LOW severities will be addressed in the next Regular Release."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:118
2017-04-01 23:56:34 +00:00
msgid "Response Team applies appropriate patch(es)."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:122
2017-04-01 23:56:34 +00:00
msgid ""
2020-11-16 12:08:25 -05:00
"Response Manager works on a patch LOCALLY, patches are shared by the "
"response team via PGP-encrypted e-mail until such a time as it is safe to"
" expose to the public."
2017-04-01 23:56:34 +00:00
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:125
2017-04-01 23:56:34 +00:00
msgid "Patches are reviewed with the researcher."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:128
2017-04-01 23:56:34 +00:00
msgid ""
"Any messages associated with PUBLIC commits during the time of review "
"should not\n"
"make reference to the security nature of the PRIVATE branch or its "
"commits."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:132
2017-04-01 23:56:34 +00:00
msgid "Vulnerability announcement is drafted."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:136
2017-04-01 23:56:34 +00:00
msgid "Include severity of vulnerability."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:139
2017-04-01 23:56:34 +00:00
msgid "Include systems/apps effected."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:142
2017-04-01 23:56:34 +00:00
msgid "Include solutions (if any) if patch cannot be applied."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:146
2017-04-01 23:56:34 +00:00
msgid "Release date is discussed."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:152
2017-04-01 23:56:34 +00:00
msgid ""
"At release date, Response Team coordinates with developers to finalize "
"update:"
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:156
2017-04-01 23:56:34 +00:00
msgid "Response Manager propagates the \"hotfix branch\" to trunk."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:159
2017-04-01 23:56:34 +00:00
msgid ""
"Response Manager includes vulnerability announcement draft in release "
"notes."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:162
msgid ""
"Proceed with the Point or Regular Release. At this time, it is not "
"possible to release an in-network update for only one operating system or"
"\n"
"\t\tarchitecture. In order that all affected products can be released as "
"quickly as possible, the person responsible\n"
"\t\tfor that software should be able to perform necessary release "
"processes in a timely manner. Importantly this should include\n"
"\t\tconsideration for package maintainers in Debian, Ubuntu and F-Droid."
2017-04-01 23:56:34 +00:00
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:172
2017-04-01 23:56:34 +00:00
msgid "Post-release Disclosure Process"
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:175
2017-04-01 23:56:34 +00:00
#, python-format
msgid "Response Team has %(limit)s days to fulfill all points within section III."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:179
2017-04-01 23:56:34 +00:00
msgid "If the Incident Response process in section III is successfully completed:"
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:183
2017-04-01 23:56:34 +00:00
msgid ""
"Response Manager contacts researcher and asks if researcher wishes for "
"credit."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:186
2017-04-01 23:56:34 +00:00
msgid "Finalize vulnerability announcement draft and include the following:"
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:190
2017-04-01 23:56:34 +00:00
msgid "Project name and URL."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:193
2017-04-01 23:56:34 +00:00
msgid "Versions known to be affected."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:196
2017-04-01 23:56:34 +00:00
msgid ""
"Versions known to be not affected (for example, the vulnerable code was "
"introduced in a recent version, and older versions are therefore "
"unaffected)."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:199
2017-04-01 23:56:34 +00:00
msgid "Versions not checked."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:202
2017-04-01 23:56:34 +00:00
msgid "Type of vulnerability and its impact."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:205
2017-04-01 23:56:34 +00:00
msgid "If already obtained or applicable, a CVE-ID."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:208
2017-04-01 23:56:34 +00:00
msgid "The planned, coordinated release date."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:211
2017-04-01 23:56:34 +00:00
msgid ""
"Mitigating factors (for example, the vulnerability is only exposed in "
"uncommon, non-default configurations)."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:214
2017-04-01 23:56:34 +00:00
msgid ""
"Workarounds (configuration changes users can make to reduce their "
"exposure to the vulnerability)."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:217
2017-04-01 23:56:34 +00:00
msgid "If applicable, credits to the original reporter."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:222
2017-04-01 23:56:34 +00:00
msgid "Release finalized vulnerability announcement on website and in news feed."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:230
2017-04-01 23:56:34 +00:00
msgid ""
"For HIGH severities, release finalized vulnerability announcement on "
"well-known mailing lists:"
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:238
2017-04-01 23:56:34 +00:00
msgid "If applicable, developers request a CVE-ID."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:242
2017-04-01 23:56:34 +00:00
msgid ""
"The commit that applied the fix is made reference too in a future commit "
"and includes a CVE-ID."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:250
2017-04-01 23:56:34 +00:00
msgid ""
"If the Incident Response process in section III is *not* successfully "
"completed:"
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:254
2017-04-01 23:56:34 +00:00
msgid ""
"Response Team and developers organize an IRC meeting to discuss why/what "
"points\n"
"in section III were not resolved and how the team can resolve them in the"
"\n"
"future."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:259
2017-04-01 23:56:34 +00:00
msgid ""
"Any developer meetings immediately following the incident should include "
"points\n"
"made in section V."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:263
2017-04-01 23:56:34 +00:00
msgid ""
"If disputes arise about whether or when to disclose information about a\n"
"vulnerability, the Response Team will publicly discuss the issue via IRC "
"and\n"
"attempt to reach consensus."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:268
2017-04-01 23:56:34 +00:00
#, python-format
msgid ""
"If consensus on a timely disclosure is not met (no later than %(limit)s "
"days),\n"
"the researcher (after %(limit)s days) has every right to expose the\n"
"vulnerability to the public."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:277
2017-04-01 23:56:34 +00:00
msgid "Incident Analysis"
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:280
2017-04-01 23:56:34 +00:00
msgid "Isolate codebase"
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:282
#: i2p2www/pages/site/research/vrp.html:302
2017-04-01 23:56:34 +00:00
msgid "Response Team and developers should coordinate to work on the following:"
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:286
2017-04-01 23:56:34 +00:00
msgid "Problematic implementation of classes/libraries/functions, etc."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:289
2017-04-01 23:56:34 +00:00
msgid "Focus on apps/distro packaging, etc."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:292
2017-04-01 23:56:34 +00:00
msgid "Operator/config error, etc."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:300
2017-04-01 23:56:34 +00:00
msgid "Auditing"
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:306
2017-04-01 23:56:34 +00:00
msgid "Auditing of problem area(s) as discussed in point 1."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:309
2017-04-01 23:56:34 +00:00
msgid "Generate internal reports and store for future reference."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:312
2017-04-01 23:56:34 +00:00
msgid ""
"If results are not sensitive, share with the public via IRC or public "
"Trac."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:320
2017-04-01 23:56:34 +00:00
#, python-format
msgid ""
"Response Team has %(limit)s days following completion of section III to "
"ensure\n"
"completion of section V."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:326
2017-04-01 23:56:34 +00:00
msgid "Resolutions"
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:328
2017-04-01 23:56:34 +00:00
msgid ""
"Any further questions or resolutions regarding the incident(s) between "
"the\n"
"researcher and response + development team after public disclosure can be"
"\n"
"addressed via the following:"
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:341
2017-04-01 23:56:34 +00:00
msgid "Continuous Improvement"
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:344
2017-04-01 23:56:34 +00:00
msgid ""
"Response Team and developers should hold annual meetings to review the "
"previous\n"
"year's incidents."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:349
2017-04-01 23:56:34 +00:00
msgid ""
"Response Team or designated person(s) should give a brief presentation, "
"including:"
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:353
2017-04-01 23:56:34 +00:00
msgid "Areas of I2P affected by the incidents."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:356
2017-04-01 23:56:34 +00:00
msgid "Any network downtime or monetary cost (if any) of the incidents."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:359
2017-04-01 23:56:34 +00:00
msgid "Ways in which the incidents could have been avoided (if any)."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:362
2017-04-01 23:56:34 +00:00
msgid "How effective this process was in dealing with the incidents."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:368
2017-04-01 23:56:34 +00:00
msgid "After the presentation, Response Team and developers should discuss:"
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:372
2017-04-01 23:56:34 +00:00
msgid "Potential changes to development processes to reduce future incidents."
msgstr ""
2020-11-16 12:08:25 -05:00
#: i2p2www/pages/site/research/vrp.html:375
2017-04-01 23:56:34 +00:00
msgid "Potential changes to this process to improve future responses."
msgstr ""