Inventory quartet and initial leases
This commit is contained in:
24
20-identity/templates/lease.md
Normal file
24
20-identity/templates/lease.md
Normal file
@@ -0,0 +1,24 @@
|
||||
# Lease: <device-or-system>
|
||||
|
||||
## Grant
|
||||
|
||||
- Lease type:
|
||||
- Issued to role:
|
||||
- Issued at (UTC):
|
||||
- Expires at (UTC):
|
||||
- Revoked at (UTC):
|
||||
|
||||
## Scope
|
||||
|
||||
- What this lease permits:
|
||||
- What it explicitly forbids:
|
||||
|
||||
## Rotation / revocation
|
||||
|
||||
- Revocation procedure:
|
||||
- Post-revoke verification:
|
||||
|
||||
## Evidence
|
||||
|
||||
What you record when granting/rotating/revoking (timestamps, IDs, logs).
|
||||
|
||||
Reference in New Issue
Block a user