|
|
| About site: Security/Policy - Make Your Web Site P3P Compliant |
Return to Computers also Computers |
| About site: http://www.w3.org/P3P/details.html |
Title: Security/Policy - Make Your Web Site P3P Compliant How to create and publish your company's platform for privacy performance policy, a W3C initiative, in 6 steps. |
|
|
|
|
Animato Jan-Eric Nystrom's homepage, contains resources on traditional animation, stop-motion animation, claymation, film and photography.
| Linux_and_BSD,_Open_Source_Giants Succinct, clear, non-technical introduction to Linux and BSD, focus: how they are relevant to business.
| CoverYourASP Features a collection of articles and tutorials. Source code can be downloaded for each article.
| RFC_3016 RTP Payload Format for MPEG-4 Audio/Visual Streams. Y. Kikuchi, T. Nomura, S. Fukunaga, Y. Matsui, H. Kimata. November 2000.
| Clipboard_Genie Clipboard manager with hotkeys, data from the clipboard can be sent over the network to another PC running the program.
| OpenSSL_Certificate_Cookbook Instructions to make a CA with OpenSSL, Apache, and Perl.
|
|
| Alexa statistic for http://www.w3.org/P3P/details.html |
Please visit: http://www.w3.org/P3P/details.html
|
| Related sites for http://www.w3.org/P3P/details.html |
| Lean_Programming Part 2 of 2: W. Edwards Deming's Total Quality Management still rings true for software; rules for lean coding. Dr. Dobb's. (June 29, 2001) | | RFC_1088 Standard for the Transmission of IP Datagrams Over NetBIOS Networks. L.J. McLaughlin. February 1989. | | WxRuby Ruby bindings to the wxWindows cross-platform toolkit; documents, references, Wiki, downloads. [Open source] | | Terayon_Communication_Systems,_Inc_ Develops, markets and sells cable modem systems which enable operators to cost-effectively deploy reliable two-way broadband access services. | | Daycare_Works An online daycare administration suite. Tracks children, statements, calendars and more. | | GNU_Make Freeware - A make program featuring pattern-matched viewpaths, parallel threads, multiple platforms, conditional directives, makefile regeneration, and an advanced Make description language. | | FireToImp Fireworkz to Impression file converter. | | Resources_for_DHCP FAQ, Internet drafts, RFCs, links. | | Project_Cool_Developer_Zone__HTML_Basics Covers the basic tags by topic areas, using an analytical and formula type approach. | | XSL_Transformations_(XSLT)_in_Mozilla Information about Mozilla's native XSLT processor. Includes a FAQ and a list of known bugs. | | Photo_Host_Simple Simple to use image host, just select the file and click Upload. | | BeBits Napster client for BeOS. | | Blamcast Articles about Drupal CMS | | 4_Info_4 Web design and hosting, located in Connecticut, United States. | | Flyer_Web_Design Offers web development solutions that includes PHP, ASP, Javascript, MySQL databases, and Flash animations. Based in Dayton, Ohio. | | Aguawebs Lists web development services and portfolio of client sites. Located in NSW, Australia. | | Booth,_Margot Web design and development with experience in web, print, and illustration. | | Adobe_Dreamweaver_ Extremely powerful site building tool. Support for DHTML and CSS, with ready-to-use JavaScript actions. Site-management tools. 30 day evaluation copy available for download. | | Visual_Component_Framework C++ framework created to provide platform GUI framework, features such as Java and Java's Swing, and Borland's Visual Component Library. [Open source, BSD License] | | ArabChat HTML based chat for Arab communities. English language available. |
|
This is websites2007.org cache of m/ as retrieved on 2008.10.11 websites2007.org's cache is the snapshot that we took of the page as we crawled the web. The page may have changed since that time.
|
More information on using P3P  Make Your Web Site P3P CompliantHow to Create and Publish Your Company's P3P Policy (in 6 Easy Steps)1. Create a written privacy policy for your company or organization. Youmay want to consult the P3P Guiding PrinciplesDocument for resources and helpful hints. If you already have a policy,you will probably want to review it with its authors who wrote it. Make sureto note all of the data you collect, what you do with that data, who hasaccess to it, and for how long you keep it. These pieces of your policy willlater be read into a P3P generator that will create a machine-readable versionof your policy.2. At this point, you should decide what policies apply to whatpages on the site. Many companies have more than one P3P policy depending onhow many different data collection techniques and purposes for differentpages. This way, a user will know exactly how their data will be used for agiven page or form. Of course, a user can always reference the written policyto see the overall practices of the site, but specifying practices for certaindirectories or pages often will make browsing more seamless for the averageuser.Many company's websites are made up of several different pieces, each ofwhich may collect information differently, or not at all. Each differentsection will likely have a privacy policy that is slightly different from thepolicies of other parts of your site. When creating your P3P policy, you canchoose to have one general P3P policy that attempts to describe all of thevarious data collecting components of your site. However, constructingmultiple P3P policies, one for each part of your site where you have differentpolicies or you collect vastly different kinds of information, will make youroverall privacy policy easier to understand for both you and your customers.You should realize that your human-readable policy will still be available tousers so you will still have the opportunity to present an overall policy forsite.When preparing to create your machine-readable P3P policy file, you mustunderstand how many different privacy policies are in effect on your site andunder what conditions each applies. P3P policies, like their human-readablecounterparts, can apply to a single directory or file, or to all files anddirectories except one or more that you specify. Additionally, you candifferentiate between policies for a single page or group of pages based onwhat operations are being performed (e.g. PUT, DELETE, GET).The P3P 1.0 Specification describes the privacy policies of an examplecompany, CatalogExample. This company applies one policy to those users whosimply browse their site and another to those who purchase products. Fromthe "browse" group, CatalogExample collects information about their computerand what pages they visit. This information is used by the company and theiragents for administrative purposes "to improve our site." Those users whopurchase products from CatalogExample must give them more detailed data (e.g.name, address, financial information). This information is used to completethe purchase and ship the product. The user has the option to storeinformation for later reuse and has access to his/her information to makeupdates and corrections. The two distinct data collection procedures andtheir unique applications convinced CatalogExample that they should use atleast two P3P policies.3. Next, select a P3P Policy generator to use. The following generators arecurrently available: IBM P3P Policy Editor PrivacyBot.com IAjapan's Privacy Policy Wizard (japanese version) P3PEdit Customer Paradigm's P3P Privacy Policy CreationTake your company's existing privacy policy, or the one that you've justwritten, and use it to guide you through the generation process. Print outthe current P3P Specificationavailable from the W3C P3P site. You will need to note the followingfeatures: Entity - who you are and how a user can contact you Disclosure - where your written policy is on your site Assurances - what third party or law insures that you are doing what you say you are Data Collection and Purpose - what Data Elements are you collecting and how are you using them.P3P Policy generators are software applications that assist you in creatingand, eventually publishing, your company's P3P Policy, or policies. There arecurrently three generators available, IBM P3P Policy Editor, PrivacyBot.com,and YOUpowered's Consumer Trust. These are changing along with the P3Pspecifications to remain up-to-date. The generators take you through each partof the P3P policy as you enter the necessary information. Be sure to fill inall fields so that the policy is correctly and fully formatted; browsers donot read or accept incorrectly formatted XML files. Other generators areexpected soon.After printing out the current P3P Specification from the W3C P3P site,take your companies privacy policy, or policies, and identify the followingfeatures: Entity - who you are and how a user can contact you Disclosure - where your written, human-readable policy is located on your site Assurances - what third party or law insures that you are doing what you say you are Paramount to your pledge of privacy protection is your ability to respond to disputes from users. P3P allows you to designate one or more resolution methods (customer service, independent organization such as a seal program, court, or applicable law). It is helpful if you have a reference of some sort (URI or certificate) that can be used for verification. You can also specify methods of remedy; one or more from correction of the violation, financial compensation, or a remedy based on the applicable, referenced law. Data Collection and Purpose - what Data Elements are you collecting and how are you using themThere are currently fourteen predefined data categories, and "other", inP3P. Data types for collected information should be categorized by one ofthese fifteen options. Be as specific as possible when listing the types ofdata collected. Before you choose "other" it is important that you checkagain to make sure that it does not fit into one of the 14 defined categories.The data collected must also be classified into one or more of six specifiedpurposes that let users know how you are using the data that you've collected.You must further designate one or more of six possible recipient options todescribe who has access to the data. Finally, you have to state for how longthe information is being retained -- there are five options ranging from noretention to indefinite retention.4. Enter the necessary information into the P3P generator. Make sure youfill in all necessary fields and descriptions (P3P files include severalhuman-readable components so that users can quickly find out importantinformation such as a contact address in the Entity field). Common P3Pgenerators will have an error-checking function that will alert you to omittedor incorrectly entered information. Save this file as policy1.xml. If youhave multiple P3P policies (for sites with various, specific privacypolicies), number them accordingly (policy2.xml, policy3.xml, and so on).Once you have finished filling in all of the necessary pieces ofinformation and descriptions, use the error-checking function that yourgenerator likely has; it will alert you to omissions and incorrectly enteredinformation. Check that you've entered human-readable descriptions whereveryou are given the option to. These longhand descriptions will make yourmachine-readable policy more useful to consumers and easier for you to debug.If you determined that your site needs multiple privacy policies andaccompanying P3P policies, be sure to save them separately and number themaccordingly (policy1.xml, policy2.xml, etc.).5. The generator should also create a policy reference file for you. Thisfile will instruct web browsers where to look for the P3P policy on any givenpage. You should save this file as p3p.xml. You should then upload both theP3P policy file(s) and the policy reference file to your server's rootdirectory.The policy reference file, usually saved as p3p.xml, tells web browserswhere to find the P3P policy that applies to any given page on your site. Asmentioned earlier, you are able to include and exclude pages and wholedirectories when creating your privacy policies, as long as all pages anddirectories are ultimately accounted for. The following XML code is anexample policy reference file (Example 2.2) from the P3P 1.0Specification.<META xmlns="http://www.w3.org/2001/09/P3Pv1"> <POLICY-REFERENCES> <POLICY-REF about="/P3P/Policy3.xml"> <INCLUDE>/cgi-bin/</INCLUDE> <INCLUDE>/servlet/</INCLUDE> <EXCLUDE>/sevlet/unknown</EXCLUDE> </POLICY-REF> <POLICY-REF about="/P3P/Policy2.xml"> <INCLUDE>/catalog/</INCLUDE> </POLICY-REF> <POLICY-REF about="/P3P/Policy1.xml"> <INCLUDE>/*</INCLUDE> <EXCLUDE>/sevlet/unknown</EXCLUDE> </POLICY-REF> </POLICY-REFERENCES></META>In this example, Policy1.xml refers to all files excluding those under the"catalog", "cgi-bin", and "servlet" directories. Policy2.xml refers to allfiles under the "catalog" directory. The remaining directories, "cgi-bin" and"servlet", are covered under Policy3.xml with the exception of the "servlet"subdirectory "unknown". There is no P3P policy referenced to"servlet/unknown" and this should be noted in the human-readable privacypolicy.The policy reference file contains the includes and excludes, and any morespecific task classifications, that web browsers will use to navigate your P3Ppolicies and apply the correct policy to each page. The generator shouldcreate this file for you. Once created, take the policy reference file(p3p.xml) and your P3P policy file(s) (policy1.xml, policy2.xml, etc.) andupload them to your server's root directory.6. The final step is making sure that you've done everything correctly. Youcan simply go to http://www.w3.org/P3P/validator.html and enter anyURL on your site and it will tell you if there are any errors. If there areerrors, you may want to go back to Step 3. When you are finished with thisprocess, you will be asked if you wish to be listed on our list of web sites using P3P.Note: The P3P specification will likely change over the next fewmonths. As a result, you may have to update the P3P policy that you arecreating now.Copyright©1997-2000 W3C (MIT, INRIA, Keio ), All Rights Reserved. W3C liability,trademark,documentuse and softwarelicensing rules apply. Your interactions with this site are in accordancewith our publicand Memberprivacy statements.last revised $Date: 2002/05/08 04:26:06 $ by $Author: koike $ |
|
| |
How | to | create | and | publish | your | company's | platform | for | privacy | performance | policy, | a | W3C | initiative, | in | 6 | | steps. |
|
http://www.w3.org/P3P/details.html
Make Your Web Site P3P Compliant 2008 October
dvd rental
dvd
How to create and publish your company's platform for privacy performance policy, a W3C initiative, in 6 steps.
Rules
|
© 2008 Internet Explorer 5+ or Netscape 6+
|
|
Recommended Sites: 1.
Arts -
Business -
Computers -
Games -
Health -
Home -
Kids and Teens -
News -
Recreation -
Reference -
Regional -
Science -
Shopping -
Society -
Sports -
World
Miss Gallery
- Top Anime Hentai
- DVD rental by mail
- Credit Counseling - Loan - Remortgage - Cheap Car Insurance - Loans
|