Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Date

Attendees

Goals

  • Status Updates of work items (FOD/RepShield), especially:
        • FoD v1.5 transition to production
          • rpm update
          • mailing list fod@lists.geant.org
              • future support mail contact
              • update of service template
        • FoD v1.6 pilot
            • extended FoD rule concept
            • new Warden connector installation
            • CentOS
  • Review Open Action Points from last VC(s)
  • Code on Github Issue solved (Tomas/Vaclav)
  • GDPR compliance
  • AOB
      • PSNC FoD Installation Issue
      • ACONET FoD edugain issue

Discussion items

TimeItemWhoNotes

Firewall On Demand (FoD)
  • (info page for FoD development https://wiki.geant.org/pages/viewpage.action?pageId=63965046)
  • FoD v1.5 = FoD with new functionalities: rule range specification, current rule behaviour statistic graphs, multi-tenant rule control REST-API
  • FoD v1.6 = FoD with automated rule proposal from RepShield
  • New support mailing list fod@lists.geant.org: David will ask Tryfon/Tobi to announce it
  • FoD v1.5 transition to production
  • FoD v1.6 development
      • Tomáš is in progress of extending extended rule format regarding UI: creation of extended rule with only 1 source prefix works again; listing of rules also with multiple prefixes works
      • David is in progress of testing and updating code for getting NETCONF to work with new extended rule format: simple creation and deletion of rules and their associated routes work; but more testing needed
      • OS of fod-test-lab server will be updated to newer CentOS version
      • Evangelos will check status of ACONET's issue of accessing FoD in combination with IPv6/edugain
      • David will ask about status of configuration issues for new FoD installation at PSNC

RepShield/NERD
  • Back-end rewritten to handle more data and to be more efficient
  • Further security information sharing source (NISP) integrated

Holiday

Next VC

In 2 weeks: 05.09.2018, 14:15-15:15 CE(S)T

Action items

  •  David: ask Tryfon/Toby to announce new support mailing list fod@lists.geant.org
  •  Evangelos: check status of ACONET's issue of accessing FoD in combination with IPv6/edugain
  •  David: ask about status of configuration issues for new FoD installation at PSNC
  •  Tomáš/David: continue to work on FoD v1.6 improved rule design
  •  David: test DDos testing tool provided by Tomáš
  •  Silvia, Ivana, Nino, David: agree on index for white paper about GARR DDoS Testing results/experience
  •  all: next regular T6 VC: 05.09.2018, 14:15-15:15 CE(S)T