14:07:36 #startmeeting Security Group 18-11 14:07:36 Meeting started Wed Nov 18 14:07:36 2015 UTC. The chair is LukeHinds. Information about MeetBot at http://wiki.debian.org/MeetBot. 14:07:36 Useful Commands: #action #agreed #help #info #idea #link #topic. 14:07:36 The meeting name has been set to 'security_group_18_11' 14:07:57 ok, so we have a new git / gerrit set up for the security guide 14:08:10 suggest you * have a go at getting set up 14:08:23 don't worry about messing anything up, now is the time to learn 14:08:23 will do that 14:08:36 so one topic is the guide 14:08:41 anyone have anything else? 14:09:25 any info from the summit? 14:11:22 Is there any deadline for this guide? 14:11:34 we should try for the next release 14:11:38 but we are not tied to it yet 14:11:42 lets see how we get on. 14:12:02 I have been looking a little at Networking/Neutron Security 14:12:20 keep going Sona, I need to collect my kid, but will drop back in! 14:13:53 can you summarize what you found, Sona? 14:14:03 ok, Please go and take care of your kid :) 14:14:26 I have been looking here: http://docs.openstack.org/developer/neutron/devref/security_group_api.html 14:14:38 & http://docs.rackspace.com/rpc/api/v10/bk-rpc-guide/content/networking-security.html 14:16:31 & http://docs.openstack.org/security-guide/networking/services-security-best-practices.html 14:17:08 ok 14:17:23 we could probably link some of these pages from our guide 14:19:24 yes, I suppose network security heading is the place for these 14:25:36 I could dig into security for virtualization/hypervisor 14:26:48 containers for instance 14:27:54 in CSA virtualization wg there is a document for review 14:28:21 #link https://cloudsecurityalliance.org/document/network-functions-virtualization-position-paper/ 14:28:42 ok, I will check this 14:29:17 It seems that some people believe containers have better performance but security is downside 14:29:18 http://www.itworld.com/article/2920349/security/for-containers-security-is-problem-1.html 14:29:46 container security is much debated, I have not found any authoritative statements so it is an interesting area 14:32:42 if there is any interest in containers security, I can dig into that area more otherwise I will just keep to Network security :) 14:33:44 feel free to dig in! 14:34:02 I am more looking into auditing and security logging 14:34:12 for the time being at least 14:34:25 ok :) 14:35:07 we can flesh out the ToC of the security guide with headings and subheadings 14:37:00 for security management we may get some content and references from Moon project 14:39:24 Ari, What "security management" are you referring to? 14:41:12 managing security capabilities of NFVI 14:41:17 as in 14:41:21 #link https://wiki.opnfv.org/moon 14:42:51 i see 14:51:26 I guess we don't have much to discuss 14:52:45 let's continue with the security guide at own pace and check where we are next week 15:05:13 I have to leave now 15:05:14 bye 16:03:35 hi all - thanks for holding fort, will read over history 16:03:40 #endmeeting