...
That the information is processed and needed response actions are carried out is the responsibility of the entity and the hosting federation.
Constituency
eduGAIN CSIRT provides incident response coordination for the entities organized in the federations participating in eduGAIN.
Service Description
Members of eduGAIN CSIRT provide or assist in providing the following services:
- Incident coordination on the interfederation and inter organization level.
- maintaining and testing of a communication infrastructure that allows for a timely information flow among the affected entities.
- if requested, and appropriate, support in incident resolution (forensics)
Service Level Description
...
The eduGAIN CSIRT shall proactively communicate with recognized peer organizations regarding suspected and conirmed security incidents that could affect such peers. It shall maintain a reference to the operating policies and practices of such peer infrastructures and participate in their processes and the evolution thereof.
Communication Channels
Channel | Reference |
---|---|
eduGAIN CSIRT email list | edugain-support-sec-team@lists.geant.org |
Report of abuse | abuse@edugain.org |
eduGAIN CSIRT wiki & meeting minutes | https://wiki.geant.org/display/eduGAIN/eduGAIN+Security |
Telephone | |
Instant messaging channels | Signal group, keybase.io: edugain_sec |
Related material and references
Name | Location |
---|---|
Policy developent Kit | https://aarc-project.eu/policies/policy-development-kit/ |
Incident Response Handbook | https://wiki.geant.org/download/attachments/218464365/eduGAIN%20Security%20Incident%20Response%20Handbook-v1-eSG-feedback.pdf?version=2&modificationDate=1612805091663&api=v2 |
Incident Response Procedures | |
Communication Flow | |
Reporting
eduGAIN CSIRT provides input about current operational security activities to Federation Operators group and eSG on request.
...