2020-07-14 Security Subcommittee Meeting Notes

Please find below the Minutes of Meetings and recording for the  SECCOM meeting that was held on 14th of July 2020.

Jira No

Summary

Description

Status

Solution

Jira No

Summary

Description

Status

Solution

REQ-376

Flow matrix

  • Wiki created to collect data from PTLs.

  • 13 July PTL call: PTLs asked to complete their row of the flow matrix wiki.

ongoing



REQ-350

CII Badging Update

  • Priority 3 (PTL GO/NO GO) for Guilin.

  • Observation – bounds checking and injection prevention are part of S3P.

onging





Base Images

  • SECCOM recommends OS and language versions.

  • Ownership of base images is more on the Integration side.

  • AP: Amy will provide Morgan the developer feedback about problems with the Frankfurt Integration base images.

onging



REQ-368

Service Mesh PoC status update

  • KeyCloak patch integrated.

  • Working on OAuth proxy.

ongoing





ONAP Licensing

  • Waiting for TSC decision.







Harbor

  • AP: Fabian to present to TSC

  • AP: Eric to be consulted by Fabian.

  • AP: Amy will contact Fabian when he returns from PTO.







OUR NEXT SECCOM MEETING CALL WILL BE HELD ON 21st OF JULY'20. 

Topics proposed:

  • Testing proposal – Sylvain

  • Security Documentation – Harald







Recording: none available because of problems with LastPass