Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Presentation by Fabian. Kiali tool was used to present graph of connections.

Between Network and Authorization policies synchronization is needed and we will start with Authorization Policy.

Jira No
SummaryDescriptionStatusSolution

Zoom invitation changesWill have to be password protected by 27th of SeptemberTo provide updated invitations for SECCOM meetings.SECCOM electionsPlease validate your company representative status to be able to vote as requested by Kenny in his e-mail.donePlease check this siteTo know when elections are scheduled.

Guilin M4 status update 

To be provided by SECCOM requirements leaders - requirementsongoingTSC update

Release manager for Maintenance release is wanted as David has no capacity for that.

M4 status - half of the tickets was closed.

SECCOM is not one of the pain points based on PTLs survey!

HELMv2 EoL

M4 deadline shifted to next TSC on 17th of September.

Meeting with David last Friday for Correlation of Guilin Issues to Release Requirements and Component Commitments

Requirements under review:

  • Upgrades on java (REQ-351)
  • Upgrades on Python (REQ-373)
  • Ensuring HTTPS runs (REQ-231)
  • Non running as root (REQ-362)
  • Limits on amount of resources that are consumed by a container - part of CIS Benchmak (REQ-356REQ-357)

There are tests built for the pipeline for all of above. If not meeting those requirements, exception process must be issued, so integration team could white list it and not block the tests.

Krzysztof presented on the last PTL call how to remove Python2 interpreter. 




PTL update

Maintenance release – too much proces.

Issue with Windriver lab

HELMv2 EoL – Krzysztof - https://helm.sh/blog/helm-v2-deprecation-timeline/

Amount of work to validate charts compatibility to be evaluated based on Intern from Samsung.

HELM recommended version to be updated under SECCOM Wiki.

To present the Helm v2 retirement to the PTLs on Monday 14th of September, and then to the TSC on 17th of September. 

Last SECCOM actions review

Keep requirements moving on.

Architectural changes for Istambul release.

ONAP and Service Mesh Authorization ProxyFabian will contact Sylvain to create service account and authorization policy.LFN involvement for Harbor supportWe need to replace Nexus with Harbor.Ticket was opened to LFN

- next step – TSC meeting, suggestion to migrate in RC0. Impact only on OOM.




TSC update

Need to present the table and how we are going to handle it.

Need to present HELMv2 EoL.


To synch up with Morgan, on who is going to fill-out the table with exceptions.

Amy to check for availability.


Last SECCOM actions review

Ticket was opened to LFN IT (Nexus replacement with Harbor) but no response yet.

Fabian has service account and authorization policy.




E-mail was sent to Seshu (for Flow matrix update for SO), but no response received so far. 




Sylvain need to modofy the code to give achance to install ONAP with or without Service Mesh.


Open Networking & Edge Summit North America 2020
September 28 & 29, 2020 (Virtual Event)


Samuli and Amy will present a topic at ONES - presentation  to be shared with SECCOM 

LFN Fall Technical Meetings October 13 - 15, 2020

Topics from SECCOM: Service Mesh and packges upgrades.


Fabian to share outputs from Service Mesh and flow matrix.

Flow matrix must be top Priority for Honolulu release and its lack shall be blocking. 

To review the logs to collect flow matrix inputs! For external one we must get the info from PTLs, for internal we can get info from Service Mesh Kiali.


CII BadgingSession to be organized by Tony  at the PTLs call just after M4 is completed.
To review Silver level questions for nomination for PTLs work in Honolulu release.

Redhat presentation for ONAP container registryTo be shared with SECCOM distribution list.


MVP for ONAPFor the definition it could be based on exception fields.
Check list shall be defined and discussed.

Service account - updateOne service account can be shared with several pods.


OUR NEXT SECCOM MEETING CALL WILL BE HELD ON 22nd OF SEPTEMBER'20. 

MVP check list.

CII Silver level questions




Recording

View file
name2020-09-15_SECCOM_week.mp4
height150


SECCOM presentation

View file
name2020-09-15 ONAP Security Meeting - AgendaAndMinutes.pptx
height150