IRTF
====
Update:
EGI IR Site Checklist (see attached pdf), any comment? (Toby)
EGI IR flowchar update?
Wiki page update: https://wiki.egi.eu/wiki/EGI_CSIRT:Incident_reporting
Plan for 2011:
- To develop and improve our operational procedure
Critical vulnerability handling by end of Jan.
Internal procedure by end of March?
- Milestone MS412 update incident response operational Security Procedure or produce newly idetified procedure at PM15 (Aug. 2011)
- To improve sites' patch management
- RTIR in operation by ??
Security monitoring
===================
Update:
Security dashboard and integration
Pakit and Nagios development
Plan for 2011:
- Security Dashboard, prototype by end of June and first release by end of December (or September, before EGITF2011)?
- Processing of security monitoring data and automatic alerting
What and when?
- Nagios & Pakiti development (statistics, etc.)
What and when?
- site-level support (e.g. guides on centralized syslog, etc.)
Security drill
==============
Update
preparation for SSC4 NGI run - Spanish NGI, when to start?
Other development work?
Plan for 2011:
- SSC4 run in NGIs
Number of NGIs going to be challenges in 2011?
How long will it take to complete SSC4 across EGI?
- SSC across NGIs, by end of June 2011
will address the Incident-Coordination-Capabilities of EGI-CSIRT itself, in particular the *collaboration* among the CERT-Teams (EGI-CSIRT, Site-CSIRTS, ATLAS-CERT) in a simulated incident affecting many sites at once.
- SSC4 framework (SSC-Monitor) improvement by end of June 2011
* test-incident-status monitoring: stability/reliability (activity of the malware/user access management at the sites (banning/unbanning)
* automate evaluation of the sites security operations and reporting
- Other SSC4 frame improvements by end of December 2011
* Integrate other Experiment Job-submission frameworks (CMS)
* Evaluate SSCs addressing particaluarities of VMs (StratusLab)
Security training & dissemination
=================================
Update:
Plan for 2011:
Manage EGI Wikis and mailing lists
To organise security training at next EGI technical forum