LUL - S1739
|Publication Date:||1 October 2016|
This standard applies to all information technology and data owned by TfL or operated and supported by third parties for or on behalf of TfL. This includes:
a) user devices, including 'thick' and 'thin' desktop computers, portable devices such as laptops and mobile devices such as tablet computers and smartphones
b) servers (physical and virtual), including file servers, application servers, web servers, database servers and any servers that manage network connections.
c) network infrastructure and security components, including devices managing connections (switches, routers), devices for protecting the networks and systems (IDS/IPS) or devices managing network connections (firewalls, load balancers).
The purpose of this standard is to detail the requirements for applying securityrelated updates ('security patches') in order to help secure TfL systems and applications in line with the secure builds and configurations policy.