Token Trust & Traceability WG

Europe/Zurich
Description

Fortnightly for the risk assessment season.

 

Zoom Meeting ID
64974356171
Host
Matthew Steven Doidge
Useful links
Join via phone
Zoom URL

https://codimd.web.cern.ch/Qqngg7njTmaaDPYBWHa6Ig#

 

# TTT 14/4/26 
Attending: Matt, Linda, Donald, TomD, DaveK
Apologies: 


## Last meeting, actions
-- finish off the document

## RA document
 - polish off the RA document
 
 -- No reference section, instead inline hyperlinks. Is this enough?
 
 -- the straight "download as pdf" version from google looks good to my eyes (attached to agenda)
 
 -- Luna's comments met?
 
 -- note the "abrupt" ending, whilst it is perhaps only an aesthetic issue do we want to have a wrap up paragraph/section, even if it's just repeating section 3.
 
 
 
 ## CHEP "RA methodology" talk
  -- does Tom need anything from us yet?
  
  Tom wants to check how what slide template to use, reckon to keep it generic. Will start on this in anger soon, but time still on our side.
  
  
  
## Where to next?

--CA discussion.
--acceptable use policy document. Would be good to keep it general to apply to other communities
--can ask LiamA to assist. 
--DK notes ongoing program of work, bring in line with AARC pdk v2. TTT could take care of the token trust policies.
--SKA policies too...

--something for after CHEP 
--go to 1 meeting a month for the summer.

---some discussion of certificates. host certificates as client certificates, etc.

"Acceptable Authentication Assurance" policy.

No written policy documents.

Ongoing Risk Assessment maintenance too..


## Actions
-- side action on Matt to check and update if needed https://twiki.cern.ch/twiki/bin/view/LCG/TokenTrustTraceability 

- note reference to GUT group, how's that going?
- -otherwise looks okay.

## AOB, next meeting

Next in phase meeting would be 15.00 CEST on Tuesday 28th April

There are minutes attached to this event. Show them.
    • 15:00 15:05
      Actions, Since Last Meeting 5m
    • 15:05 15:30
      Discussion: Risk Analysis 25m

      Inspiration may be taken from these assessments from EGEE and WLCG done many years ago:

      Work through the Workflows added by Maarten to the document, and review the scoring methodology.

      Continue discussion from the list.

    • 15:30 15:55
      Discussion 25m

      Probably just continuing the above.

      https://github.com/TTT-WG/TTT-WG/issues

    • 15:55 16:00
      AOB, next meeting 5m

      Meeting again on the 31st?