Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

The name of the group is eduGAIN Computer Security Incident Response Team (CSIRT)

Definitions


Word/TermDefinition
IdP
SP
Federation
Federation Operator
CSIRT
entity
eduGAIN
eSGeduGAIN Steering Group, the governing body of eduGAIN


Purpose and Responsibilities

...

  • Wherever possible, the Group will arrive at proposed draft recommendations documents and/or advice by clear consensus, as determined by the Chair

  •  A voting process will only start if consensus cannot be reached after two consecutive group meetings or if at least one third of voting members of the Group call for a vote

  •  A decision is adopted if more than 50% of the voting members present cast their vote for thethe  proposed decision

  •  If the group’s recommendations are adopted by majority vote, minority positions will be recorded and reported

...

  • The group, by majority decision, may refer matters for decision to the Director on issues

...

  • where a consensus cannot be achieved.

Peer Organizations

The eduGAIN CSIRT shall proactively communicate with recognized peer organizations regarding suspected and conirmed security incidents that could affect such peers. It shall maintain a reference to the operating policies and practices of such peer infrastructures and participate in their processes and the evolution thereof.

Communication Channels

ChannelReference
eduGAIN CSIRT email listedugain-support-sec-team@lists.geant.org
Report of abuseabuse@edugain.org
eduGAIN CSIRT wiki & meeting minuteshttps://wiki.geant.org/display/eduGAIN/eduGAIN+Security
Telephone
Instant messaging channelsSignal group, keybase.io: edugain_sec


Reporting

eduGAIN CSIRT provides input about current operational security activities to Federation Operators group and eSG on request.




Authority