2019-11-07 Cloud Service Certification Project Meeting

2019-11-07 Cloud Service Certification Project Meeting

Meeting minutes status: Approved

Table of Contents

Date/Time

2019-11-07

Attendees

 

Name

Organisation

Github ID (optional)

Name

Organisation

Github ID (optional)

@Jason Nelson

JP Morgan

git-hub-forwork1

@Tosha Ellison

FINOS

toshaellison

@Colin Eberhardt (He/Him)

Scott Logic

ColinEberhardt

Freddie Leadsom 

Deutsche Bank

 

Jamil Mina 

Red Hat

 

@Tony Chau

UBS

 

Tim Hooley 

Red Hat

 

@James McLeod (Unlicensed)

FINOS

mcleo-d

Anthony Golia 

Red Hat

 

Bruno Domingues 

Intel

 

Outstanding Action Items

<insert a {Task report} macro here, configured with the group's task page>

Agenda

Time

Item

Who

Notes from the Meeting

Time

Item

Who

Notes from the Meeting

5 min

Convene & roll call

 

Bruno Domingues from Intel and Jamil Mina from RedHat joined the call for the first time.

5 min

Review action items from previous meetings (see above)

 

Approved 2019-10-24 Cloud Service Certification Project Meeting minutes.

10min

Prototype implementation of compliance checks

Colin Eberhardt

Colin shared a prototype implementation that developers within Scot Logic built to show the potential automation of various compliance checks. 

The group reviewed the prototype implementation of Dynamo DB compliance test 2.5 which can be found at https://github.com/ScottLogic/finos-cloud-services-certification/blob/master/src/main/java/com/scottlogic/compliance/dynamodb/SecureTransportCheck.java#L3

This implementation works as a runtime check and leverages the AWS config service but the core code elements could be used in other tooling if that was more appropriate. Perhaps even Cloud Custodian.

Some organizations have moved away from the AWS config services because they found that the polling interval left gaps.

15 min

Review progress on S3 artifact production and next steps.

Jason Nelson

Jason is working on producing BDD tests that can be added into the repo.

James volunteered to convert some of the existing word documents into markdown. (Reminder that the aim is to have all artifacts in markdown or other suitably collaborative format.)

As mentioned previously the group is actively seeking contributors to work on producing artifacts for other services.

5 min

AOB & adjourn

 

 

Decisions Made

Action Items

Capture any actions that were identified here, and make sure they are also captured on the group's task page during, or immediately after, the meeting