Difference between revisions of "EGI-InSPIRE:Sa1 2013-09-17"

From EGIWiki
Jump to: navigation, search
(SA1.2 Security)
(SA1.2 Security)
Line 25: Line 25:
 
* SVG - another new Torque vulnerability being assessed
 
* SVG - another new Torque vulnerability being assessed
 
* SVG - two advisories issued -  [EGI-SVG-2013-5266] (Moderate risk BDII) and [EGI-SVG-2013-5615] (Moderate risk APEL)
 
* SVG - two advisories issued -  [EGI-SVG-2013-5266] (Moderate risk BDII) and [EGI-SVG-2013-5615] (Moderate risk APEL)
 +
** two low risk advisories issued too
 
* prepare for and deliver training at EGI TF
 
* prepare for and deliver training at EGI TF
 
** NGI SSC, audit/logging, security forensics
 
** NGI SSC, audit/logging, security forensics

Revision as of 15:51, 17 September 2013

Main EGI.eu operations services Support Documentation Tools Activities Performance Technology Catch-all Services Resource Allocation Security


Inspire reports menu: Home SA1 weekly Reports SA1 Task QR Reports NGI QR Reports NGI QR User support Reports


Progress of SA1 issues

Nothing new to report.

Milestones/Deliverables

SA1.1 Activity Management

MEETINGS

ACTIVITIES

SA1.2 Security

  • a very busy week handling security incidents, vulnerabilities and preparing for and attending EGI Technical Forum
  • two security incidents being handled. {EGI-20130823] and [EGI-20130909]
  • handling two vulnerabilities CVE-2013-2094 and EGI-SVG-2013-5890
  • SVG - another new Torque vulnerability being assessed
  • SVG - two advisories issued - [EGI-SVG-2013-5266] (Moderate risk BDII) and [EGI-SVG-2013-5615] (Moderate risk APEL)
    • two low risk advisories issued too
  • prepare for and deliver training at EGI TF
    • NGI SSC, audit/logging, security forensics
  • prepare for security session on Wednesday at EGI TF
  • attend OGF security sessions
  • lead and give talks at AAI workshop at EGI TF
  • Full report of CREAM vulnerability assessment received from UAB.
  • Final reminder on comments on Compromised certificate/Emergency suspension document.

SA1.3 Staged rollout

  • Participation in TF2013

SA1.3 Integration

SA1.4 Central tools

SA1.5 Accounting

Repository

Portal

SA1.6 Helpdesk

  • Ticket monitoring
  • weekly phone conference for discussing the shopping list
  • Implementing and testing feature requests for next GGUS release
  • Preparing slides for the TF in Madrid

SA1.7 Support

Software Support

SA1.8 Availability and core services

Documentation

Meetings