Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Image AddedImage AddedThis is a wiki page that captures the intent and planned/ongoing actions for the support of security coordination in ONAP.

...

The ONAP security work is split into two parts.  The management of identified vulnerabilities, which is handled by the vulnerability management sub-committee and the coordination and identification of necessary security related activities which is handled by the security sub-committee.

Vulnerability management

...

Vulnerability management covers how to handle the reception of an identified vulnerability through to solution and communication of the vulnerability.  The process is initiated by the reception of an email to onap-security@lists.onap.org.  The vulnerability management procedures can be found here: ONAP Vulnerability Management.The vulnerability management procedures are executed on by the vulnerability management sub-committee

Release Vulnerabilities

This lists the vulnerabilities reported for each Release.

ONAP security sub-committee

...

The ONAP security sub-committee meeting logistics are:

...

JIRA project for issue prioritizationhttps://jira.onap.org/projects/SECCOM/

Next Call:

Jira
serverONAP JIRA
columnskey,summary,type,created,updated,due,assignee,reporter,priority,status,resolution
maximumIssues20
jqlQueryproject=seccom and priority=highest and (Resolution = "Not Done" or Resolution = Unresolved)
serverId425b2b0a-557c-3c0c-b515-579789cceedb

2nd Week:

Jira
serverONAP JIRA
columnskey,summary,type,created,updated,due,assignee,reporter,priority,status,resolution
maximumIssues20
jqlQueryproject=seccom and priority=high and status!="done"
serverId425b2b0a-557c-3c0c-b515-579789cceedb

Backlog (items to be done):

Jira
serverONAP JIRA
columnskey,summary,type,created,updated,due,assignee,reporter,priority,status,resolution
maximumIssues20
jqlQueryproject=seccom and priority!=highest and priority !=high and status!="done"
serverId425b2b0a-557c-3c0c-b515-579789cceedb




If you want to be involved, please contact Stephen.terrill@ericsson.com  Pawel Pawlak or Amy Zwarico

Note: if you would like to change the contents of this site, please contact Stephen Terrillcontact Pawel Pawlak or Amy Zwarico.