==================================== #opnfv-meeting: OPNFV Security Group ==================================== Meeting started by LukeHinds at 13:55:31 UTC. The full logs are available at http://ircbot.wl.linuxfoundation.org/meetings/opnfv-meeting/2015/opnfv-meeting.2015-02-18-13.55.log.html . Meeting summary --------------- * amendments to last meeting minutes (LukeHinds, 13:56:40) * LINK: https://etherpad.opnfv.org/p/opnfv-sec-meetings <- agenda (LukeHinds, 13:57:48) * LINK: https://wiki.opnfv.org/security/meetings/11022015 -< last meeting minutes (LukeHinds, 13:59:26) * AGREED: meetings ok (LukeHinds, 14:05:33) * AGREED: agenda (LukeHinds, 14:08:05) * LINK: https://etherpad.opnfv.org/p/opnfv-sec (MikeCamel, 14:15:28) * consider secure coding guidelines (MikeCamel, 14:28:03) * AGREED: we will remain on tech-discuss, but use a tag [opnfv-sec] (LukeHinds, 14:31:55) * AGREED: on advisory / vuln handling (LukeHinds, 14:36:25) * AGREED: Interwork with other security groups - with members present on all upstream groups (LukeHinds, 14:43:46) * AGREED: remove governance and risk pieces from scope (MikeCamel, 14:49:23) * AGREED: Security Guidelines - Develop / reference existing documentation on security best practices around installation, configuration, hardening. (LukeHinds, 14:51:04) * AGREED: Internal OPNFV Security Best Practices - Scope should cover both deployment / configuration etc (for internal infra), and Development (secure coding conventions etc)? (LukeHinds, 14:57:02) * AGREED: Security Change Reviews (gerrit) (LukeHinds, 14:59:15) * AGREED: Research and Development (LukeHinds, 15:01:14) * ACTION: provide more phone access numbers (investigate) (LukeHinds, 15:02:10) Meeting ended at 15:02:30 UTC. People present (lines said) --------------------------- * LukeHinds (20) * MikeCamel (16) * collabot (8) * Luke (0) * Hinds (0) Generated by `MeetBot`_ 0.1.4