Date: Fri, 29 Mar 2024 15:26:29 +0000 (UTC) Message-ID: <1535650504.8169.1711725989833@ip-10-10-7-29.ec2.internal> Subject: Exported From Confluence MIME-Version: 1.0 Content-Type: multipart/related; boundary="----=_Part_8168_1374298183.1711725989832" ------=_Part_8168_1374298183.1711725989832 Content-Type: text/html; charset=UTF-8 Content-Transfer-Encoding: quoted-printable Content-Location: file:///C:/exported.html
&nbs= p;
Attending
New Action Items
[AI] (Emily) put new members on CTAB sympa list, provide p=
rivate CTAB wiki access and
Invite CTAB members to Slack Channel on Baseline Expectations (done)
[AI] (Emily) get the new CTAB charter into the Doc Stewardship Repository, =
with date of closing of consultation (Done: see http://doi.org/10.26869/TI.94=
.1 )
DISCUSSION
CTAB New Members &nb=
sp;
=E2=80=A2 Welcome and Introductions=E2=80=A8
=E2=80=A2 Steering will approve new slate of CTAB members at next Steering =
call=E2=80=A8
=E2=80=A2 Brett has scheduled chats with new CTAB members
Resources:
=E2=97=A6 Many webinars are available linked from bottom of Assurance wiki =
here=E2=80=A8
=E2=97=A6 https://spaces.at.inter=
net2.edu/display/InCAssurance/InCommon+Assurance+Program=E2=80=A8
=E2=97=A6 Scanning through the notes may be helpful=E2=80=A8, minutes =
of AAC/CTAB are here:=E2=80=A8
=E2=97=A6 h=
ttps://spaces.at.internet2.edu/display/InCCollaborate/InCommon+Assurance+Ad=
visory+Committee+Minutes=E2=80=A8
=E2=97=A6 Baseline Expectations Documents, linked from here: https://spaces.at.internet2.edu/display/BE/Baseline+Expe=
ctations+for+Trust+in+Federation=E2=80=A8
AI (Emily) put new CTAB members on CTAB sympa list, provide =
private CTAB WIKI access and
Invite CTAB members to Slack Channel on Baseline Expectations (done)
Overview of FICAM work
=E2=80=A2 Trust Framework program from GSA=E2=80=A8
=E2=80=A2 NIST standards 800-63 , 4 levels of assurance
=E2=80=A2 InCommon Assurance program responded to level 1 and level 2 with =
bronze and silver certification=E2=80=A8
=E2=80=A2 The AAC was formed to manage the FICAM program within InCommon,
=E2=80=A2 Compliance was sometimes seen as cumbersome; uptake was by 6 camp=
uses for bronze and silver, and there was small uptake of FICAM from =
federal agencies=E2=80=A8
=E2=80=A2 =E2=80=A8
=E2=80=A2 There is transition now to new FICAM program, but this seems to m=
iss the mark for the Higher Ed community=E2=80=A8
=E2=80=A2 A few years ago the InCommon AAC started developing more fl=
exible profiles, including an MFA profile=E2=80=A8 that led to the REFEDs M=
FA Profile https://refeds.org/profile/mfa
=E2=80=A2 Baseline Expectations is a move from =E2=80=9Cpublish what you do=
=E2=80=9D approach, to a community set of expectations approach=E2=80=A8
=E2=80=A2 It=E2=80=99s about managing risk =E2=80=A8
=E2=80=A2 REFEDs Assurance Working Group is also doing work to respond to t=
he failure of the FISMA approach https://wiki.=
refeds.org/display/GROUPS/Assurance+Working+Groupand developing a REFED=
s assurance framework. Good idea for all CTAB members to subscribe to this =
list. https://lists.refeds.org/sympa/info/refeds and&nbs=
p;https://lists.refeds.org/sympa/info/assurance =E2=80=A8
=E2=80=A2 SIRTFI https://refeds.org/sirtfi another measure to incre=
ase trust in federation=E2=80=A8
Brett: likely the old approach to assurance (silver and bronze profiles)= will be fading and CTAB will focus on the new, more flexible, more useful = profiles and on Baseline Expectations
Improving the quality of the metadata in the InCommon Federation is part= of Baseline Expectations
CTAB Charter
=E2=80=A2 Approved, ready for publishing:
[AI] (Emily) take action to get the new CTAB charter into the Doc Stewardsh=
ip Repository, with date of closing of consultation
(Done: see http://doi.org/10.26869/TI.94.1 )
Baseline Expectations Webinars
=E2=80=A2 Webinar on Jan 24, 2018 went well. Focused on impact to com=
munity of Baseline Expectations. What will IdPs and SPs need to do. Checkli=
st to start evaluating your compliance=E2=80=A8
=E2=80=A2 Slides and recording are here:=E2=80=A8
=E2=80=A2 https://spaces.at.internet2.edu/di=
splay/BE/Baseline+Expectations+for+Trust+in+Federation=E2=80=A8
=E2=80=A2 Next webinar is Feb 21, 2018 on Health Checks, and automated chec=
king on metadata in the InCommon Federation. =E2=80=A8
=E2=80=A2 Nick Roy, InCommon Operations, shared stats on current stat=
e of federation metadata, for the metadata items that can be checked automa=
tically. 7% of orgs currently meet baseline expectations=E2=80=A8
=E2=80=A2 https://www.internet2.edu/news/detail/15152/=E2=80=
=A8
=E2=80=A2 Question to decide in future: When do we want InCommon ops to mod=
ify the federation manager to generate an error if there are issues with me=
tadata not meeting Baseline Expectations?=E2=80=A8
=E2=80=A2 Third webinar March 7, 2018 will focus on legal issues - InCommon=
Participation Agreement changes. =E2=80=A8
=E2=80=A2 Baseline Expectation Roadmap https://spaces.at.intern=
et2.edu/display/BE/Baseline+Processes+Roadmap=E2=80=A8
Baseline Expectations Communications
=E2=80=A2 Wiki: https://spaces.at.internet2.=
edu/display/BE/Baseline+Expectations+for+Trust+in+Federation=E2=80=A8=
p>
PA and FOPP Legal Changes (Ann)
=E2=80=A2 Internet2 Legal made a few edits to the Participation Agreement (=
PA) and the Federation Operating Practices (FOPP)=E2=80=A8
=E2=80=A2 InCommon Docs are here:=E2=80=A8
=E2=97=A6 https://www.incommon.org/policies.html=E2=80=A8
=E2=80=A2 90 day notification period to start in March 2018=E2=80=A8
=E2=80=A2 Perhaps the end of the 90 day notice should be when when we chang=
e the federation manager.=E2=80=A8
=E2=80=A2 Provide warning prior to that=E2=80=A8
Branding issues as we update from AAC to CTAB
=E2=80=A2 email list name has been changed to CTAB, working through o=
ther items=E2=80=A8
=E2=97=A6 =
https://www.internet2.edu/communities-groups/trust-identity/incommon-assura=
nce-advisory-committee/=E2=80=A8
=E2=97=A6 https://www.incommon.org/about.html=E2=80=A8
=E2=97=A6 Change name of this AAC wiki page? https:=
//spaces.at.internet2.edu/display/InCAssurance/Assurance+Advisory+Committee=
=E2=80=A8
CTAB F2F at Internet2 2018 Global Summit in San Diego?
https://meetings.internet2.edu/2018-global-summit/
=E2=80=A2 Emily requested a one hour time slot as a placeholder=E2=80=A8
=E2=80=A2 Wed May 9, 2018 is a likely date=E2=80=A8
On Feb. 14 CTAB call, selection of co-chair will be on the agenda
Next CTAB Call: Wed. Feb. 14, 2018