Please find below the Minutes of Meetings and recording for the SECCOM meeting that was held on 26th of October 2021.

Jira No
SummaryDescriptionStatusSolution

TSC meeting report

Security tests below 100% were traced to two problems

  • no exception in Java 8 in versions_xfail.txt for artifact-broker - Multicloud will add exception
  • no exception for non-ssl endpoint in nonssl_endpoints.txt for sndc-callhome - SDNC will add exception

TSC approval for Istanbul RC and moved release signoff to 4 November.

Discussion of project and repo statuses

committee report



Istanbul security achievements 

Draft slides presented to SECCOM.

  • Action Item: present Logging, feature template, and SBOM to other LFN projects
ongoing

SBOM update

To be confirmed if LFN would run SBOMs, as LFN signs the ONAP code. Kenny to be addressed

Muddasar and Sean continuing to populate SBOM fields

ongoing

PTLs meeting update

Logging feedback: questions about fields; confirmation that the proposal is approved by SECCOM; need sidecar to provide metadata

ongoingWorking session on Friday to continue the discussion.

Friday's calls

We keep on using Friday's calls for topics to be discussed.

Moving bridge to zoom (ONAP13)

ongoing


OUR NEXT SECCOM MEETING CALL WILL BE HELD ON 2nd OF NOVEMBER'21. 





Recording: 

SECCOM presentation:




  • No labels