🚂 RailGuruji
Information security and cyber lawसूचना सुरक्षा और साइबर कानून6 / 6

Government IT policiesसरकारी आईटी नीतियाँ

Updated अद्यतन 07 Oct 2026
This chapterयह अध्याय asked in 2 exams2 परीक्षाओं में पूछा गया
1
THE NIC PASSWORD POLICYएनआईसी पासवर्ड नीति
  • You are responsible for all activity under your user ID, and you must not let others use it
  • Change user-level passwords at least once every THREE MONTHS, and never reuse an old one
  • Never share a password, not even with a personal assistant, and never send it by e-mail or phone
  • Use a different password for each system, and never use the 'remember password' feature
  • A password set by the administrator must be changed at first login
  • Developers store only the HASH of a password, and never send it in clear text
So you change it every three months, and you never share it.
  • अपनी यूजर आईडी की हर गतिविधि के लिए आप उत्तरदायी हैं, और आपको दूसरों को उसका उपयोग नहीं करने देना चाहिए
  • उपयोगकर्ता-स्तर के पासवर्ड कम से कम हर तीन महीने में बदलें, और पुराना पासवर्ड कभी दोबारा न लें
  • पासवर्ड कभी साझा न करें, निजी सहायक के साथ भी नहीं, और उसे ई-मेल या फोन से कभी न भेजें
  • हर प्रणाली के लिए अलग पासवर्ड रखें, और 'पासवर्ड याद रखें' सुविधा कभी न लें
  • प्रशासक द्वारा बनाया पासवर्ड पहले लॉगिन पर बदलना होगा
  • डेवलपर केवल पासवर्ड का हैश संग्रहीत करते हैं, और उसे कभी सादे पाठ में नहीं भेजते
अर्थात् आप इसे हर तीन महीने में बदलते हैं, और कभी साझा नहीं करते।
2
BUILDING A STRONG PASSWORDमजबूत पासवर्ड बनाना
The policy sets the rules for every user-level and system-level password.
  • It must have MORE THAN EIGHT characters
  • It mixes upper and lower case letters, digits and punctuation, such as ! @ # $
  • It must not be a dictionary word, slang, or a name of family, pets or friends
  • It must not derive from your user ID, such as username123, or from birthdays and phone numbers
  • It must not be a pattern such as qwerty or 123321, nor any of these with a digit added
The policy suggests a PASS-PHRASE of several words, or an acronym from a song or poem. So a strong password is long, mixed, and personal to no one.
नीति हर उपयोगकर्ता-स्तर और प्रणाली-स्तर के पासवर्ड के नियम तय करती है।
  • इसमें आठ से अधिक अक्षर होने चाहिए
  • यह बड़े और छोटे अक्षर, अंक और विराम चिह्न, जैसे ! @ # $, मिलाता है
  • यह शब्दकोश का शब्द, बोलचाल का शब्द, या परिवार, पालतू पशु या मित्रों का नाम नहीं होना चाहिए
  • यह आपकी यूजर आईडी से बना, जैसे username123, या जन्मदिन और फोन नंबरों पर आधारित नहीं होना चाहिए
  • यह qwerty या 123321 जैसा पैटर्न, या अंक जोड़कर इनमें से कोई, नहीं होना चाहिए
नीति कई शब्दों का पास-फ्रेज, या किसी गीत या कविता से बना संक्षिप्त रूप सुझाती है। अर्थात् मजबूत पासवर्ड लंबा, मिश्रित, और किसी व्यक्तिगत जानकारी से मुक्त होता है।
3
GIGW, THE GUIDELINES FOR INDIAN GOVERNMENT WEBSITESजीआईजीडब्ल्यू, भारतीय सरकारी वेबसाइटों के दिशानिर्देश
  • NIC framed the first version in 2009; DARPG adopted it, and it entered the Manual of Office Procedure
  • A revised version, with NIC, added guidelines for MOBILE APPS
  • The aim is the UUU trilogy: USABLE, USER-CENTRIC and UNIVERSALLY ACCESSIBLE
  • GIGW is the basis for WEBSITE QUALITY CERTIFICATION by STQC, an organisation of MeitY
  • It draws on ISO 23026, W3C's WCAG 2.0, the Rights of Persons with Disabilities Act 2016, and the IT Act
  • Government websites must use the GOV.IN or NIC.IN domain; NIC is the exclusive registrar for gov.in
So GIGW makes your department's site usable, user-centric and universally accessible.
  • एनआईसी ने पहला संस्करण 2009 में बनाया; डीएआरपीजी ने उसे अपनाया, और वह कार्यालय प्रक्रिया नियमावली में शामिल हुआ
  • एनआईसी के साथ बने संशोधित संस्करण ने मोबाइल ऐप के दिशानिर्देश जोड़े
  • लक्ष्य यूयूयू त्रयी है: यूजेबल, यूजर-सेंट्रिक और यूनिवर्सली एक्सेसिबल
  • जीआईजीडब्ल्यू इलेक्ट्रॉनिकी मंत्रालय के संगठन एसटीक्यूसी द्वारा वेबसाइट गुणवत्ता प्रमाणन का आधार है
  • यह आईएसओ 23026, डब्ल्यू3सी के डब्ल्यूसीएजी 2.0, दिव्यांगजन अधिकार अधिनियम 2016, और आईटी अधिनियम पर आधारित है
  • सरकारी वेबसाइटों को gov.in या nic.in डोमेन ही लेना होगा; gov.in का एकमात्र रजिस्ट्रार एनआईसी है
अर्थात् जीआईजीडब्ल्यू आपके विभाग की साइट को उपयोगी, उपयोगकर्ता-केंद्रित और सर्वसुलभ बनाता है।
4
SOCIAL MEDIA IN GOVERNMENTसरकार में सोशल मीडिया
The MeitY framework and guidelines govern how a department uses Twitter, Facebook, YouTube and similar platforms.
  • Create and run every account in an OFFICIAL capacity only
  • Social media demands 24x7 interaction, so set response norms and a dedicated team to monitor and respond
  • Keep your responses on social media congruent with those in traditional media
  • Follow the IT Act, 2000 and the RTI Act
  • Use it to seek citizens' feedback, explain policy, build the brand, and spread awareness of national plans
Under the 2021 IT Rules, large messaging platforms must identify the FIRST ORIGINATOR of a message for serious offences. So official accounts speak for the department, around the clock.
इलेक्ट्रॉनिकी मंत्रालय का ढाँचा और दिशानिर्देश तय करते हैं कि विभाग ट्विटर, फेसबुक, यूट्यूब और ऐसे मंचों का उपयोग कैसे करे।
  • हर खाता केवल आधिकारिक हैसियत में बनाएँ और चलाएँ
  • सोशल मीडिया 24x7 संवाद माँगता है, इसलिए उत्तर के मानक और निगरानी तथा उत्तर के लिए समर्पित दल रखें
  • सोशल मीडिया पर आपके उत्तर पारंपरिक मीडिया के उत्तरों से मेल खाएँ
  • आईटी अधिनियम, 2000 और आरटीआई अधिनियम का पालन करें
  • इसका उपयोग नागरिकों की प्रतिक्रिया लेने, नीति समझाने, छवि बनाने, और राष्ट्रीय योजनाओं की जागरूकता फैलाने में करें
2021 के आईटी नियमों के अंतर्गत बड़े संदेश मंचों को गंभीर अपराधों में संदेश के प्रथम प्रवर्तक की पहचान करनी होगी। अर्थात् आधिकारिक खाते चौबीसों घंटे विभाग की ओर से बोलते हैं।
5
THE DIGITAL INDIA WEBSITE POLICIESडिजिटल इंडिया वेबसाइट नीतियाँ
The Digital India portal publishes the policies that a government site carries.
  • COPYRIGHT: you may reproduce its material free, after permission, accurately, and with the source acknowledged
  • The permission does not extend to material whose copyright belongs to a third party
  • HYPERLINKING: a link to another site is not an endorsement of it
  • Others may link to the portal without permission, but its pages must not load inside their frames
  • PRIVACY: the site captures no personal information automatically, and says why it asks for any
So a link is not an endorsement, and framing is not allowed.
डिजिटल इंडिया पोर्टल वे नीतियाँ प्रकाशित करता है जो सरकारी साइट रखती है।
  • कॉपीराइट: आप इसकी सामग्री अनुमति लेकर, सटीक रूप में, और स्रोत का उल्लेख करके निःशुल्क पुनः प्रकाशित कर सकते हैं
  • यह अनुमति उस सामग्री पर लागू नहीं होती जिसका कॉपीराइट किसी तीसरे पक्ष का है
  • हाइपरलिंकिंग: किसी अन्य साइट का लिंक उसका समर्थन नहीं है
  • अन्य लोग बिना अनुमति पोर्टल से लिंक कर सकते हैं, पर उसके पेज उनके फ्रेम में नहीं खुलने चाहिए
  • निजता: साइट कोई व्यक्तिगत जानकारी स्वतः नहीं लेती, और जो माँगती है उसका कारण बताती है
अर्थात् लिंक समर्थन नहीं है, और फ्रेमिंग की अनुमति नहीं है।
Report an error on this pageइस पेज में गलती बताएँ
Read it — now test yourself. पढ़ लिया — अब खुद को परखें। Take the free Mock CBTफ्री Mock CBT दें