APPC Dublin M1 Security Checklist



This checklist is expected to be completed for the project to pass the M1 Release Planning Milestone.

M1 Release Planning Milestone definition

Usage

  1. Use the "Copy" and "Move" options (available under the ..., top right of this page) to duplicate this template into your project wiki.

  2. Fill out the Yes/No column

  3. Provide link to evidence (when necessary)



Practice Area

Checkpoint

Yes/No

Evidence - Comment

How to?

Practice Area

Checkpoint

Yes/No

Evidence - Comment

How to?

Security

Has the Release Security/Vulnerability table been filled out in the protected Security Vulnerabilities wiki space?

Yes

R4 APPC Security/Vulnerability - Full Content

R4 APPC Security/Vulnerability - Full Content

Have known vulnerabilities (critical and severe) to address/remove in the release been identified with JIRA ticket?

Yes

JIRA tickets exist for vulnerabilities or the project indicates that there will be no vulnerability library replacement.

Create JIRA tickets

Has the project committed to the release CII badging level?

Yes

Project plans that include

See https://www.coreinfrastructure.org/programs/badge-program/

or CII Badging Program

Has the project created their project CII questionnaire and completed the ONAP level CII requirements

Yes

https://bestpractices.coreinfrastructure.org/en/projects/1579

questionnaire fill in but don't plan to meet Dublin ONAP requirement.

See CII Badging Program

If the project uses java, has the project integrated with the oparent.pom?

No

Depends on OpenDayLight