This shows you the differences between two versions of the page.
Both sides previous revision Previous revision | |||
meetings:security:18032015 [2015/03/25 16:06] Luke Hinds |
meetings:security:18032015 [2015/03/25 16:12] (current) Luke Hinds |
||
---|---|---|---|
Line 8: | Line 8: | ||
* Juan Antonio Osorio Robles (Ericsson) | * Juan Antonio Osorio Robles (Ericsson) | ||
* Ari Pietikäinen (Ericsson) | * Ari Pietikäinen (Ericsson) | ||
- | * Brian Smith (Bell Canada) | + | * Brian Smith |
* Bryan Sullivan (AT&T) | * Bryan Sullivan (AT&T) | ||
- | * Ashutosh Dutta (AT&T) | ||
* please note, to be marked as attended, add your name to the meeting etherpad https://etherpad.opnfv.org/p/opnfv-sec-meetings | * please note, to be marked as attended, add your name to the meeting etherpad https://etherpad.opnfv.org/p/opnfv-sec-meetings | ||
Line 22: | Line 21: | ||
* Vulnerbility Management - Luke | * Vulnerbility Management - Luke | ||
* Internal Security Polices - Marcel | * Internal Security Polices - Marcel | ||
- | * Gerrit Code Review - Juan | + | * Members Elections |
+ | * IPv6 | ||
* Any other business | * Any other business | ||
Line 29: | Line 29: | ||
* **Agreed agenda** | * **Agreed agenda** | ||
* **Agreed last meetings minutes** | * **Agreed last meetings minutes** | ||
- | * **OPNFV Security Vulnerability Management** | + | * **Draft proposal for OPNFV Security Vulnerability Management** |
- | * Luke updated that he is still working on the 'in the wild' process. | + | * We should add a process for when a vulnerability is in the wild and we need to act quick. I.e. provide a mitigation and advice, and then follow up with a patch. Luke to develop and include this for review at the next meeting. |
- | * He has the opnfv added as stakeholders to the OpenStack VMT process | + | * Luke informed that opnfv had been put forward as stakeholders in the openstack VMT. |
- | * The list will be changed to osvm@lists.opnfv.org | + | |
* **Internal Security Policies** | * **Internal Security Policies** | ||
- | * Marcel provided an overview and feedback was provided. | ||
- | * Marcel will continue to develop the internal process, but asked for help if available. | ||
* **Gerrit Code Review** | * **Gerrit Code Review** | ||
- | * Juan is going to request 'security@lists.opnfv.com for the gerrit reviews' | + | * Juan is looking into getting hooks configured and will update next week. |
- | * **Ashutosh showed an interest in attestation as a research item** | + | * Marcel gave first over of work items, document will be posted to wiki and we can discuss next week as we ran out of time. |
- | * **OSVM Members** | + | * **IPV6 was suggested as an agenda** |
- | * Luke requested that members nominate themselves for OSVM. We should try for 3 members, and one TSC member. | + | * Luke will include email for all, and we can review next meeting or discuss over email /irc. |
- | * **Iben will get the tools set up (jira / git)** | + | * **Members Elections** |
- | * Luke will peform intial commits to create repository | + | * Luke gave an overview of how members / osvm team would be elected. The image will be posted to the wiki page. |
- | * Iben will also help with getting the osvm 'security report' function in place. | + | |
**Meeting Etherpads** | **Meeting Etherpads** | ||
Line 51: | Line 47: | ||
**Meetbot Log** | **Meetbot Log** | ||
- | * http://ircbot.wl.linuxfoundation.org/meetings/opnfv-sec/2015/opnfv-sec.2015-03-25-14.01.txt | + | * http://ircbot.wl.linuxfoundation.org/meetings/opnfv-sec/2015/opnfv-sec.2015-03-18-14.01.txt |