IRTF
====
- the ongoing security incident
- security incident handling procedure update
Security monitoring
===================
- Security Dashboard discussion
https://operations-portal.egi.eu/test/frontend_test.php/csiDashboard/csiDashboard
- Any new development of Pakit and Nagios?
Pakiti 3.0?
- proposal of deploying security monitoring client at sites
Security drill
==============
- Current status of SSC5
- Development of SSC5 framework and plan of SSC4 NGI run
Security training & dissemination
=================================
Security training at technical forum
-- middleware
SESSION MW-1
- glexec: deployment issue, recommandation for configuration. (Oscar)
- Communication between argus and glexec: architecture.
- setting up argus server (Can this be Valery/Andrea? Repeat?)
SESSION MW-2
- advanced security tutorial for cream ce: secure configuration, user
banning. (Someone from CREAM for this? Or Argus?)
- EMI security architecture. ( No talk, discussions ).
SESSION OPS-1
– Incident workflow and forensic tools. [ Speaker: Leif ]
– Linux rootkit and TTY hijacking [Speaker: Antonio ]
- Vulnerability handling (what to do if you find a vulnerability and How are they handled) [Linda]
SESSION OPS-2
– Advanced pakiti tutorial: what configuration if you want to
monitor all hosts of the site? Dealing with scalability issues.
[ Speaker: Daniel? Michal? Christos? ]
– SSC5 case study - Malware analysis [Speaker: Oscar]
– Using the security challenge framework. [ Speaker: Aram]