Project Development Meeting (IF-2.33 1000-1130) - Agenda 2016-03-16

  1. Summary of last meeting (2015-03-02):
    1. Lightweight Talks: (these are twenty minutes to half an hour)
      • Pilot service for Yubikey two-factor authentication - Ian
        • where to go from here discussion, see blog article.
        • privacy implications seem to be only downside of using cloud as it otherwise seems secure enough
        • pragmatically we should use cloud in the first instance and evolve to our own provision if/when necessary, agreed by all
        • it is no harder to multiple servers for our own infrastructure for robustness than one, effort is all in LCFGifying the first one
        • we could use secure postgresql replication for backend
        • we would need to do manual key admin for reprogramming new keys and db entry with our own service
        • adding second factor will affect cosign login (weblogin) experience for all - (re)consider current page style with this in mind
    2. Project Completion:
    3. Actions (actions will be dropped from here if added to the relevant project home page)
      • [timc] Add "security of configuration peer review" to standard project deliverables.
      • SL7 server platform
        • Amend to add another target date for when all servers should be upgraded to SL7 by (current target date is for when all servers should be capable of being upgraded to SL7).
        • MPU to clarify what has been done (including related headers) so far in apacheconf project. We will need to use the new apacheconf component on SL7.
  2. Project Completion:
  3. Lightweight Talks: (these are twenty minutes to half an hour)
  4. AOCB

