Status Updates of work items (FOD/SecEventProcessing/CT)
Status of DDoS Detection/Mitigation WG
F2F-Meeting-Planning
Review Open Action Points from last VC(s)
AOB
Discussion items
Time
Item
Who
Notes
FOD
Evangelos has cloned fod test machine for testing newest version in github
Some firewall issues have to be fixed
DDoS D/M
DDoS D/M Survey
Evangelos added GN-specific questions to survey
Missing: missing question for role of filling person and contact address
-> Now question numbering has to be fixed
GARR: exists official GN procedure for approval of surveys?
-> ask Evangelos about it/ to find about it
Sharing of DDoS D/M Products/Approaches/Scenarios
Albert and Silvia/Nino are planning to do provide some information about FOD in Surfnet/Washing machine in Surfnet and Radware Solution, respectively
RepShield
eduGAIN login:
from development point-of-view ready,
but still organizational actions necessary: Vaclav will contact a colleague of him in order to either connect with existing test federation in CESNET (connected with eduGAIN) or directly with eduGAIN
Search function:
not only by IP address, but now also prefixes and hostnames are supported
Work on blacklist support:
currently in progress
some extensions regarding regular update/download of blacklist are currently developed
Used Code repository on github:
currently private
in future when more advanced, make it public
Security Testbed
NEMEA:
currently a vagarant (VM management software) image for NEMEA image exists, but it is not up-to-date, as CESNET now internally uses rpm for NEMEA deployment
-> if someone is interested in a recent vagrant image (e.g. for Security Testbed), an update of the image could be performed
CT
CT Server:
Bug fixes to enable external log installation (Software plausible) by DFNCert
DFNCert installation works planned for early Oct, but already started to install a test version
already in Contact with DFNCert: review installation/operation instructions, file bug reports
-> very helpful for finalizing config/instructions for installing/running log servers across organization boundaries
plan to have CT server v1.0 for final DFNCert installation
Gossip Standardization:
plan to get out gossip draft as last call for the IETF meeting until November in Seoul
plan/in progress to have a proof-of-concept for this new standard: adapt curl to work with openssl 1.1 (for CT support)