Skip to main content

Minutes IETF106: sacm
minutes-106-sacm-00

Meeting Minutes Security Automation and Continuous Monitoring (sacm) WG
Date and time 2019-11-19 02:00
Title Minutes IETF106: sacm
State Active
Other versions plain text
Last updated 2019-12-09

minutes-106-sacm-00
SACM            19-Nov-2019

ROLIE Software Descriptor
=========================
(https://datatracker.ietf.org/doc/draft-ietf-sacm-rolie-softwaredescriptor/)

This draft has completed WGLC and the chairs will progress this draft to IESG.

CoSWID
======
(https://datatracker.ietf.org/doc/draft-ietf-sacm-coswid/)

Went through extensive WGLC and had extensive cleanup of the document 
overall.

One issue was raised during WGLC - related to the signing of the information 
contained in a CoSWID document, should  CWT signing be used or the mechanism 
proposed in the CoSWID draft.  The working group discussed some technical
reasons about the signing mechanisms of CBOR objects and why CoSWID is 
designed the way it is vs. the perceived developer simplicity of using a
possibly more common mechanism that may be more familiar to more programmers.

Finishing conversation on the mailing list for resolution.

Final text expected for progression during first week of December 2019.

Terminology
===========
()

No updates, still working with WG on architecture updates and design team
work to ensure final resolution of outstanding terminology issues is in
alignment with final designs.


Architecture
============
(https://datatracker.ietf.org/doc/draft-ietf-sacm-arch/)

The configuration workflow is well documented in the draft and more feedback
would be appreciated.

Document authors will lead design group meetings to explore and progress the 
architecture and implementation guidance work.  The WG chairs will provide any
telecom infrastructure and tech needs to support meetings.

Information Model (inacio draft)
==================
(https://datatracker.ietf.org/doc/draft-inacio-sacm-infomodel/)

Real progress blocked until some more complete prototyping and architecture 
draft progress.  Working with other WG members to define an implementation 
guidance document with respect to XMPP-Grid for use within SACM.  This 
implementation guidance may or may NOT need to be published in the end, but
having a working implementation draft will let implementors prototype and
test implementations and resolve technical issues.


Milestones
==========

WG Chairs to work with AD to resolve outstanding milestones: YANG Push, 
EPPC Transfer, and ROLIE config checklist.

Chairs will schedule a virtual interim meeting for Mid-January.

Chris Inacio
Karen O'Donoghue