2025-02-12 Policy Weekly Meeting

2025-02-12 Policy Weekly Meeting





Agenda Item

Requested by

Notes / Links



Agenda Item

Requested by

Notes / Links

Meeting Chair: @Ramesh Murugan Iyer 

Policy Framework Project



Review of minutes from last meeting and matters arising

@Ramesh Murugan Iyer





Policy update, Status for Paris

@Ramesh Murugan Iyer

#tsc TSC Weekly Meeting
PTL Weekly Meeting #ptl



Policy Interim Release

@Ramesh Murugan Iyer

Release completed. 



Github actions for S3p tests

@Wayne Dunican 

GHA fails due to resource limitation. Waiting on the review from Matt for increasing the resources. 

Waiting on Github billing to be available. Expected to be in March.

@Wayne Dunican - To check the deployment if the components can be minimized.



OPA PDP updates

@Deena Mukundan

https://gerrit.onap.org/r/admin/repos/policy/opa-pdp,general

opa-pdp wiki : OPA PDP

opa-pdp to release image tag to Nexus for oom charts.

Kevin has raised a request for sonatype scanning support for golang project. 

Latest response from Kevin:

Hi Murali Parthasarathy K

Hi @ksandi@contractor.linuxfoundation.org,
We are still getting the error message if we upgrade kafka to v2, request you please check.
17:47:36 /usr/bin/ld: warning: /home/jenkins/go/pkg/mod/github.com/confluentinc/confluent-kafka-go/v2@v2.8.0/kafka/librdkafka_vendor/librdkafka_glibc_linux_amd64.a(rdkafka_error.o): unsupported GNU_PROPERTY_TYPE (5) type: 0xc0010002
                Gerrit Change                :              https://gerrit.onap.org/r/c/policy/opa-pdp/+/140195
                Jenkins Job                      :              https://jenkins.onap.org/job/policy-opa-pdp-master-verify-golang/16/consoleFull



kafka client version unable to be upgraded due to gcc incompatibility in clm. – required for fixing CVEs – Raise a ticket on LF IT. – Opened again due to issues after kafka version upgrade

SECCOM's decision is to try to fix all the reported vulnerabilities for opa-pdp as the sonatype doesn't support differentiating direct and transitive dependencies at the moment. – Need to check if all the dependencies can be updated from Nexus Iq.

PAP is throwing no listener exception for opa-pdp status messages. – Needs investigation.

Issue is seen in xacml and opa. – Create a bug on policy-pap.



AOB

@Ramesh Murugan Iyer



Actions

Sonar configuration for opa-pdp - @Ramesh Murugan Iyer to send relevant info to opa-pdp team

Ticket for PAP registration issue - @Ramesh Murugan Iyer to send it to opa-pdp team for adding context of the probelm

Notes 

Attendees

Recording

Policy Framework Status Check