TSC 2021-12-16
BRIDGE: https://zoom.us/j/661303200?pwd=TFdRd0c2MTJUem8xa252UGJHTE1Mdz09
Passcode: 209247
We will start our meetings by mentioning the project's Antitrust Policy, which you can find linked from the LF and project websites. The policy is important where multiple companies, including potential industry competitors, are participating in meetings. Please review and if you have any questions, please contact your company legal counsel. Members of the LF may contact Andrew Updegrove at the firm Gesmer Updegrove LLP, which provides legal counsel to the LF.
Attended | Proxy (w/ @name) | Gov. Holiday | Did Not Attend |
|---|
Attendance is taken purely upon #info in Zoom Chat
@Alla.Goldner | AMDOCS | @Fernando Oliveira | Verizon | |
@Andreas Geißler - proxy: @Michał Jagiełło | DT | @Magnus Buhrgard (Unlicensed) proxy @Liam Fallon | Ericsson | |
@Bin Yang | WindRiver | @N.K. Shankaranarayanan | STL | |
@Former user (Deleted) - proxy: @Martin Vezeau | Bell Canada | @Ranny Haiby | Samsung | |
@cl664y@att.com | AT&T | @Seshu Kumar Mudiganti | Huawei | |
@Dong Wang | China Telecom | @Timo Perala | Nokia | |
@Eric Debeau | Orange | @Yuanhong Deng | China Mobile |
Agenda Items | Presented By | Presos/Notes/Links/ |
|---|---|---|
Subcommittee UpdatesArch, Lab, Modeling, Seccom, Requirements | log4j bug - CVE-2021-44228 Message from Catherine Proposal:
#AGREED the TSC approves remediating log4j as the top priority for the ONAP community requiring immediate action to correct in both Istanbul and master branches. https://lf-onap.atlassian.net/browse/INT-2039 @Krzysztof Opasiak will file a CVE on ONAP's behalf (as soon as the list of projects are all confirmed at a minimum - it is not required since we are fixing them SECCOM to present the action plan to the next PTL call on 12/20 SECCOM will create the JIRA tickets for the impacted projects in order to solve it as part of the Istanbul maintenance release and the Jakarta release. They will track to completion, supported by our release manager, @David McBride and the Integration Team (through the Docker Scan) | |
Release Status | @David McBride | #AGREED The log4j vulnerability will mandate an Istanbul maintenance release. The maintenance release should be limited to log4j remediation only. @cl664y@att.com - no changes to Jakarta release schedule due to focus on log4j issue for now. Continue to monitor progress on the issue and re-evaluate as we approach M2 in January. |
RelEng/Infrastructure | @Jessica Gonzalez |
|
PTL Updates |
| |
LFN Cross-Organization UpdatesMAC, SPC, TAC, EUAG, LFN Board | @Ranny Haiby | @Brandon Wick upload a PDF of the slides presented by Brandon today to these minutes Dec 16, 2021 ONAP Marketing update 121621.pptx
|
Task Force Updates | CNF Task Force will resume their activities on January 4th, 2022 Enterprise Task Force will resume their activities on January 5th, 2022 | |
TSC Activities and Deadlines | @cl664y@att.com |
|
Upcoming Events & Housekeeping | @Kenny Paul (Deactivated) |
|
Zoom Chat Log
Zoom auto-transcript service - These are often translated incorrectly and can be misleading. They are NOT Authoritative! Information as to why .
They are included here as a time stamp cross-reference for the recording only! The notes above this line and the actual recordings are authoritative.