FoD v1.5 = FoD with new functionalities: rule range specification, current rule behavior statistic graphs, multi-tenant rule control REST-API
FoD v1.6 = FoD with automated rule proposal from RepShield
FoD v1.5 pilot installation
Puppet Engineer Michael Haller is progressing with setting up Puppet for installing FoD v1.5 (including python support environment) so that full automated installation/maintenance of v1.5 will be in place
Other FoD v1.5 pilot preparations
Existing user documentation (as presentation document) has to be updated; Evangelos will distribute it to the mailing list;
Excel sheet for pilot acceptance criteria has to be reviewed and finalized
Pilot evaluation survey which was of used for FoD v1.1 has to be reviewed and updated for v1.5
Finally, Evangelos will prepare an introduction mail for designated pilot users
FoD v1.5 production service documents
Now for the future production phase of FoD v1.5 (and all further versions) all necessary PLM documents have to be prepared, e.g. CBA, service description, service design plan
Especially for the operative documents this will be done in close cooperation of Evangelos
Evangelos will check the service template to get acquainted with it
FoD v1.6 (with RepShield) development/testing/pilot:
Evangelos provided new VM with more disk space and CentOS 7 to Václav to install Warden/RepShield for FoD v1.6 pilot; Václav started already to install it
Evangelos also installed test version of FlowMon for FoD v1.6 pilot which will run the Warden connector
DDoS Detection/Mitigation (D/M) WG
GARR DDoS D/M PoC
GARR is progressing with DDoS D/M PoC based on FlowMon
T6 will have to also investigate how the proposal by GARR can be extended/adapted to be usable also for other NRENs or even how it can be applied more in a Multi-Domain manner.
So, Silvia/Nino will think about this and as a first step add a section to their PoC proposal document about this
FlowMonfor DDoS detection
GARR is interested in FlowMon for DDoS detection
=> Evangelos will provide some information, e.g. in about 2 weeks the combined GÉANT DDoS D/M PoC Demo with FlowMon DDoS Defender and A10 should be ready
Certificate Transparency (CT)
Reference documentation for CT server v1.0 is progressing
part of it, i.e. coverage of config options is generated in automated manner (as ascii doc)
some description parts (e.g. of the config options) are already filled manually
=> Linus/Magnus will provide a draft of it
CT server development
Improvement of key management, especially for HSM updates/failovers (short downtimes)
New CT log server in NORDUnet supposed to be official productive GEANT service in future
More automation involving NORDUnet/SUNET NoC has been put in place
Deliverable M8.4 "CT Production Service"
A draft for the deliverable which is due for review at end of September has been created by Ivana