Jira No | Summary | Description | Status | Solution | ||||||||
Zoom invitation changes | Will have to be password protected by 27th of September | To provide updated invitations for SECCOM meetings. | ||||||||||
SECCOM elections | Please validate your company representative status to be able to vote as requested by Kenny in his e-mail. | ongoing | Please check this site. | Service Mesh PoC update by Krzysztof | Slowly but moving forward: we are ready in therms of Service Mesh itself. We know the design, we know that it work sat least for test appliction. What is left: to put that together with ONAP components. All depends how much ONAP community wouldlike to go into this direction. Instead of PoC naming aarchitectural change could be considered. Mostly it is about the authentication. Impact of architectural change into operators using now extensively AAF. Cert Initializer moved away from the projects to OOM and switch available to either use it or Service Mesh. | It might be that operators could need a more time to support Service Mesh architectural change = Istambul release. Reach Architecture Subcommittee and TSC. List of project is critical to represent who is going to do the work. | ||||||
Guilin M4 status update | To be provided by SECCOM requirements leaders - requirements | ongoing | ||||||||||
TSC update | Release manager for Maintenance release is wanted as David has no capacity for that. M4 status - half of the tickets was closed. SECCOM is not one of the pain points based on PTLs survey! | |||||||||||
HELMv2 EoL | https://helm.sh/blog/helm-v2-deprecation-timeline/ Amount of work to validate charts copmatibility compatibility to be evaluated based on Intern from Samsung. | Charts to be tested for their compatibilty with version 3. Krzysztof plans to first discuss it on OOM call. | Open Networking & Edge Summit North America 2020 |
| LFN Fall Technical Meetings October 13 - 15, 2020 |
Topics from SECCOM: Service Mesh and packges upgrades. | Fabian to share outputs from Service Mesh and flow matrix. | Guilin priorities | For secrets management some support from the community.- patches coming to fix hardcoded passwords. For no root access at least 3 components working to eliminte this issue. For All config files inside the main container should be ReadOnly - one project working hard on it. Automated security testing - still to be checked for status. MVP requirement is in the backlog. SIEM inegration for ONAP logs collection Some updates appreciated from Krzysztof. CII Badging - session planned on the PTLs call. in 2+ weeksHELM recommended version to be updated under SECCOM Wiki. To present the Helm v2 retirement to the PTLs on Monday 14th of September, and then to the TSC on 17th of September. | |||
Last SECCOM actions review | Keep requirements moving on. Architectural changes for Istambul release. | |||||||||||
ONAP and Service Mesh Authorization Proxy | Presentation by Fabian. Kiali tool was used to present graph of connections.
Between Network and Authorization policies synchronization is needed and we will start with Authorization Policy. | Fabian will contact Sylvain to create service account and authorization policy. | ||||||||||
LFN involvement for Harbor support | We need to replace Nexus with Harbor. | Ticket was opened to LFN. | ||||||||||