2023-03-28 Security Subcommittee Meeting Notes

Please find below the Minutes of Meetings and recording for the SECCOM meeting that was held on 28th of March 2023.

Jira No

Summary

Description

Status

Solution

Jira No

Summary

Description

Status

Solution



Security Questionnaire for CPS

We reviewed updated responses from CPS team.

ongoing

CPS team to make final adjustments.



Wrapping up the unmaintained repo task force – Amy: link

We wait till M4 for TSC presentation







Security test cases review 

https://logs.onap.org/onap-integration/weekly/onap-weekly-dt-oom-kohn/2023-02/25_04-42/

-CI/CD pipeline aspects - infrastructure ans security test cases to be further elaborated

-Objective is to identify opportunity for improvement to reduce risk of unwanted behavior and software build pipeline.

-Improve automated test coverage for Security tests at integration stage.



We move this topic to next week agenda.



PTL meeting (March 27th)

-New dates (1 week delay) for M3 (March 30th) and M4 (April 20th)







TSC meeting (March 23rd)









SBOM global implementation in ONAP

-Ticket was opened by Muddasar to LF IT - Signed SBOM implementation for all ONAP project at Global level (IT-25341)







SECCOM MEETING CALL WILL BE HELD ON 4th April 2023. 

CPS Security updated questionnaire review by SECCOM - final round with CPS team.











Recordings: 

2023-03-28_SECCOM_week.mp4

SECCOM presentation:

2023-03-28 ONAP Security Meeting - AgendaAndMinutes.pptx