2025-02-06 Meeting notes
Date
Feb 6, 2025
Attendees
Name | Present | Planned Absences |
|---|---|---|
@Craig McNally | Yes |
|
@Julian Ladisch | Yes | 2025-02-13 |
@Axel Dörrer |
|
|
@Ryan Berger (Deactivated) | Yes |
|
@Chris Rutledge |
|
|
@Jakub Skoczen |
|
|
@John Coburn | Yes |
|
@Skott Klebe |
|
|
@Kevin Day | Yes |
|
@Jens Heinrich |
| 2/6 |
@Tom Gorman |
| 2/6 |
Discussion items
Time | Item | Who | Notes |
|---|---|---|---|
0 min | Okapi Debian Package https://folio-org.atlassian.net/browse/FOLIO-3896 | Team |
NOTE: With Ramsons GA coming soon, I bubbled this up from the topic backlog so we don't forget about it. |
1 min | Team | Martin (PTF) responded that they do not use this. It can be archived. What are the next steps? Are we asking PTF to archive? Is this something we will act on? DevOps? | |
5 min | Team | Looks like the PR was merged. Anything else we need to do here?
| |
0 min | Jira Group and Security Level review | Team | From Craig in slack:
Today:
|
* | Anything Urgent? Under Review Filter: https://folio-org.atlassian.net/issues/?jql=filter%3D12879+ | Team | Previous:
Today:
|
Topic Backlog | |||
Time permitting | Advice for handling of sensitive banking information | Team | From slack conversation, I think I've gathered the following:
Let's review and discuss before providing this feedback to Raman. @Axel Dörrer also suggested that defining classes of sensitivity could help teams determine which techniques are applicable in various situations. I agree having some general guidelines on this would be helpful.
It would probably help to provide concrete examples of data in each class. This can be a longer term effort, we don't need to sort out all the details today.
Today: @Axel Dörrer to do a first draft as a base for further discussions |
| Status on pentesting works within Network traffic control group | @Axel Dörrer | Due to some absences on different reasons the group stalled. Axel will try to reactivate the group. |
Action items