EGI CSIRT team monthly meeting (17 Jun 2010)
Chaired by: Ma, Mingchao
Agenda:
https://www.egi.eu/indico/conferenceDisplay.py?confId=61
Presents:
Croatia NGI: Emir Imamagic
Czech NGI: Michal Prochazka
Portugal NGI: Nuno Dias
Italy NGI: Riccardo Brunetti; Giuseppe Misurelli
Sweden NGI: Leif Nixon
Poland NGI: Adam Smutnicki
Greece NGI: Christos Triantafyllidis
The Netherlands NGI: Sven Gabriel
Germany NGI: Ursula Epting
UK NGI: Mingchao Ma
France NGI: Dorine Fouossong
Apologises:
Switzerland NGI: Serge Droz
==================
Minutes taker and Project update
==================
EGI CSIRT team was presented as part of SA1 activity. There is a EGI deliverable "operational security procedure" related to EGI-CSIRT activity ; the deadline is the end of july.
Operational security procedures are:
- Incident response procedure. Leif is preparing a new release.
- Vulnerability assessment procedure. was defined by linda; changes will be in order to take in account the new communication channels.
France NGI is responsible to make sure that internal reviews are took in account and that this EGI deliverable will be done in time.
For more informations on these meetings, you can browse links given below on the agenda.
==================
Group activities update and forward planning
==================
IRTF
As we will no longer be able to use the CERN phone conference system
after the end of June, we will need to change our weekly meetings to
some other system. This will in all likelihood be EVO.
* Monitoring
The nagios box for security monitoring is not checking only the EGI sites but all the sites that are registered in GOCDB. And that includes sites in Canada, Australia etc which clearly are not members of EGI. Mingchao said that he has already asked if we need to monitor these sites too but didn't get any reply yet so for now we keep them.
Migration of pakiti server from CERN will be done this month. There will be two new features in pakiti.
Giussepe asked if we can have notifications from the security nagios box to the NGI security officers (or a mailing list per NGIs that request it) via mail.
* Dissemination
At the next EGI technical forum, there will be a joint EGI CSIRT and software vulnerability group training session.
Sites feedbacks are appreciate to prepare this training.
* security drills
There is only one site left for the SSC4 launch on Tier1.
Sven is going to start the evaluation report. He will also plan a second round challenge for sites liking to have a second go.
==================
update from team members
==================
Each participant presented himself.
==================
EGI technical forum conference planning
==================
There will be a F2F meeting at the EGI technical on 13 september 2010 . This will be a good opportunity to meet each other.
Feedbacks will be appreciated to help preparing the training event.
==================
AOB
==================
** Group calendar
There is an IRTF DC rota google calendar.
If you didn't received an invitation send a request to dorine.fouossong@clermont.in2p3.fr .
** Next meeting
Next date: 15th July, 14:30-15:30 CET on EVO.
There are minutes attached to this event.
Show them.