Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  • Identified: a risk that has been identified, but has not yet been analyzed / assessed yet 
  • Assessed: an identified risk which currently has no risk response plan 
  • Planned: an identified risk with a risk response plan
  • In-Process: a risk where the risk response is being executed 
  • Closed: a risk that occurred and is transferred to an issue or the risk was solved/avoided
  • Not occurred: a risk that was identified but that did not occur 
  • Rejected: created and kept for tracking purposes but considered not to be used yet


Risk IDProject Team or person identifying the riskIdentification DateRisk (Description and potential impact)Team or component impacted by the risk

Mitigation Plan

(Action to prevent the risk to materialize)


Contingency Plan - Response Plan

(Action in case of the risk materialized)

Probability of occurrence (probability of the risk materialized)

High/Medium/Low

Impact

High/Medium/Low

Status
1OOF

 

Problem with removing GPLv3 components from OSDF docker imageOSDFPossible ways of solving the problem are documented here. OSDF Image optimizationRaise an exception for this release and continue to work on itMediumMediumIdentified
2Policy

 

Problems resulting from upgrade of jetty-serverPolicy, oparentRequest update to oparent sooner rather than later so that impact may be assessedRaise an exception for this release and continue to work on itLowHighIdentified
3Policy

 

Problems resulting from upgrade of CDS jarsPolicy, CDSBe proactive with CDS team
MediumLowIdentified
4Policy

 

TSOCA Control Loops are dependent on migration of DCAE kubernetesPolicy, DCAEBe proactive with DCAE team
MediumMediumIdentifier
5AAI

 

Lack of resources to deliver 

Image AddedREQ-439 - CONTINUATION OF PACKAGES UPGRADES IN DIRECT DEPENDENCIES 

AAIMake best efforts to resolve the security findingsRaise an exception for this release and continue to work on itMediumLowIdentified
6AAI

 

Janusgraph does not support Java 11

Image AddedREQ-438 - COMPLETION OF JAVA LANGUAGE UPDATE (v8 → v11)

AAINot much we can doRaise an exception for this release and hope janusgraph supports java 11 in the coming releaseHighLowIdentified