2025-03-12 Policy Weekly Meeting

2025-03-12 Policy Weekly Meeting

 

 

Agenda Item

Requested by

Notes / Links

 

Agenda Item

Requested by

Notes / Links

Meeting Chair: @Ramesh Murugan Iyer 

Policy Framework Project

 

Review of minutes from last meeting and matters arising

@Ramesh Murugan Iyer

 

 

Policy update, Status for Paris

@Ramesh Murugan Iyer

#tsc TSC Weekly Meeting
PTL Weekly Meeting #ptl

 

Github actions for S3p tests

@Wayne Dunican 

GHA fails due to resource limitation. Waiting on the review from Matt for increasing the resources. 

Waiting on Github billing to be available. Expected to be in March.

@Wayne Dunican - To check the deployment if the components can be minimized.

 

ONAP DTF 

@Ramesh Murugan Iyer

ONAP DT&F DAYs 2025 - Planning

 

Security updates

@Ramesh Murugan Iyer

Projects were asked to check vulnerabilities periodically and fix critical CVEs within a month by the TSC

 

Policy Interim release

@Wayne Dunican

Release ongoing.

 

OPA PDP updates

@Deena Mukundan

https://gerrit.onap.org/r/admin/repos/policy/opa-pdp,general

opa-pdp wiki : OPA PDP

Kevin has raised a request for sonatype scanning support for golang project. 

Request for adding Sonarqube scanner for Golang for project opa-pdp(IT-27801) – Sonar cloud config for Git hub action didn't work. Further reviews to be pushed. – Need to escalate in TSC.

SECCOM's decision is to try to fix all the reported vulnerabilities for opa-pdp as the sonatype doesn't support differentiating direct and transitive dependencies at the moment. – Need to check if all the dependencies can be updated from Nexus Iq. - May not be able to fix all the CVEs until direct dependencies are listed. Check with SECCOM for license related vulnerabilities and get exemption. (Check with Byung) – Check in TSC

Start looking in to Gold badging criteria for opa-pdp.

Need to raise reviews for bug fixes and release opa-pdp image for OOM.

 

Issue in preloading opa-pdp policy via policy-api. -Need to check manually via REST.

 

 

PAP issue on kafka topics

@Adam Kenihan

@guru raja

In progress.

 

AOB

@Ramesh Murugan Iyer

 

Actions

Notes 

Attendees

Recording

Policy Framework Status Check

failing jobs
------------

warning jobs
------------

Bugs

POLICY-5274: PAP ignores the PDP_STATUS update events from the PDPs at first timeClosed

POLICY-5233: Test the synchronization behavior between PAP and PDPs on a scaled environmentOpen