Security Chapter Demo Sprint meeting Sprint 5 2

  • Slides: 9
Download presentation
Security Chapter Demo Sprint meeting – Sprint 5. 2. 2 Cyril Dangerville (TS), Chapter

Security Chapter Demo Sprint meeting – Sprint 5. 2. 2 Cyril Dangerville (TS), Chapter Architect, Authorization PDP GE owner Alvaro Alonso (DIT-UPM), Id. M & PEP Proxy GE owner March 7, 2016

Context of Security Chapter • Discontinued 3 GEs out of 6, but delivered in

Context of Security Chapter • Discontinued 3 GEs out of 6, but delivered in R 4 and published in the catalogue – Cyber Security (TS): deprecated, no support – Trustworthy Factory (TCS): deprecated, no support • Remaining GEs for R 5: – Identity Management (UPM) – Authorization PDP (TS) – PEP Proxy (UPM) – Privacy (ZHAW): incubated (support only) • Deliverable submitted on JIRA: D 17. 1. 2 Contribution to FIWARE Reference Architecture

Authorization PDP - Auth. ZForce (TS) Achieved in 5. 2. 2 • Completed full

Authorization PDP - Auth. ZForce (TS) Achieved in 5. 2. 2 • Completed full XACML 3. 0 Core compliance (mandatory features) with support of Extended Indeterminate (type of PDP decision like Permit, Deny and Not. Applicable) – Change to Deny-Overrides and Permit-Overrides policy/rule combining algorithms – Change to Policy and Rule evaluation • A few “optional” features remain but not used so far, e. g. XPath functions

Authorization PDP - Auth. ZForce (TS) Planned for 5. 2. 3 – Extensibility •

Authorization PDP - Auth. ZForce (TS) Planned for 5. 2. 3 – Extensibility • Extensibility – Pluggable XACML Datatypes for specific needs • Ability to extend Authzforce at runtime with your own non-standard datatypes, including structures such as XML types – Pluggable XACML Functions for specific needs • Ability to extend Authzforce at runtime with your own non-standard functions • Github badges and Webhook for repo mirroring to FIWARE github • Readthedocs FIWARE style

PEP Proxy - Achieved in 5. 2. 2 • • Express 4 compatibility Cosmos

PEP Proxy - Achieved in 5. 2. 2 • • Express 4 compatibility Cosmos GE Headers compatibility (chunked responses) • Bug fixing – AZF domains creation

PEP Proxy - Planned for 5. 2. 3 • Authorization Caching • Github badges

PEP Proxy - Planned for 5. 2. 3 • Authorization Caching • Github badges and Webhook • Readthedocs FIWARE style • Bug fixing

Key. Rock - Achieved in 5. 2. 2 • Started Gravatar integration in Account

Key. Rock - Achieved in 5. 2. 2 • Started Gravatar integration in Account – Gravatar type configuration • Horizon pagination – Responses filtering • Provided new release – Github – Cloud Portal image • Deploy Keystone in High Availability • Bug fixing – AZF domains creation

Key. Rock - Planned for 5. 2. 3 • Finish Gravatar Integration • Security

Key. Rock - Planned for 5. 2. 3 • Finish Gravatar Integration • Security improvements – Password strength • Delete old regions from FIWARE Lab • Github badges and Webhook • Readthedocs FIWARE style • Bug fixing

Security Chapter – THANKS! – Demo

Security Chapter – THANKS! – Demo