Difference between revisions of "SAC Meeting 2017-05-20"

From OSGeo
Jump to navigation Jump to search
m (Neteler moved page SAC:May2016 to SAC Meeting 2017-05-20: sortable name)
 
(14 intermediate revisions by 2 users not shown)
Line 8: Line 8:
 
== Current ==
 
== Current ==
  
* SSL certificate Update
+
* SSL certificate Update (Alex)
* [[SAC:Budget|Budget]] Report
+
** We bought a 3 yr DV.
 +
** Do we want a 5 yr OV instead
 +
** Reverse Chain file propagation?
 +
* Trac Spam Report (Sandro)
 +
* [[SAC:Budget|Budget]] Report (Alex)
 
** What we've spent the last few years.
 
** What we've spent the last few years.
 
** Upcoming costs
 
** Upcoming costs
 
** What's left
 
** What's left
* Hardware Migration
 
** Finish moving things off OSGeo4 and retire
 
*** Adhoc - Mapserver Demo, SpatailReference.org, ?
 
*** QGIS VM - run's their bugtracker (up for retirement)
 
** Virtualization, Docker, or some other Sandbox
 
** Plan for replacing OSGeo3 next year
 
 
* Versioning Configuration files
 
* Versioning Configuration files
 
* Clean up wiki pages  
 
* Clean up wiki pages  
Line 27: Line 25:
 
** Configuration
 
** Configuration
 
** [[SAC:Budget|Budget]]
 
** [[SAC:Budget|Budget]]
* Expand download area capacity ( TODO: Link OSUOSL discussion on dedicated download cluster service )
+
** Add timezones to SAC member list
 +
* Hardware Migration
 +
** Virtualization, Docker, or some other Container
 +
** Finish moving things off OSGeo4 and retire
 +
*** Adhoc - Mapserver Demo, SpatailReference.org, ?
 +
*** QGIS VM - run's their bugtracker (up for retirement)
 +
* Expand download area capacity  
 +
** TODO: Link OSUOSL discussion on dedicated download cluster service
 +
** Or, grow disk
 +
** Or, migrate & grow
 +
* Annual OSUOSL Donations - Always in the budget, but we don't always send for some reason.
 +
* Meeting Schedule
  
== Future ==
+
== Ideas & Proposals ==
  
 
* Paid Proposal System - Formalize a method for proposing tasks that require payment to make it happen in a timely manner.
 
* Paid Proposal System - Formalize a method for proposing tasks that require payment to make it happen in a timely manner.
Line 35: Line 44:
 
** Method for soliciting vendors to fulfill tasks
 
** Method for soliciting vendors to fulfill tasks
 
** Method for approving bids that minimizes conflict of interest (SAC members may sometimes bid)
 
** Method for approving bids that minimizes conflict of interest (SAC members may sometimes bid)
 +
* Budget
 +
** Ask the board to split the budget into 2 sections, anticipated(planned) expenses and un-anticipated?
 +
** Aniticpated
 +
*** Certificate, DNS Renewals
 +
*** Planned hardware
 +
*** Un-anticipated
 +
**** Hardware failure replacement
 +
**** Emergency assistance
 +
** Alternate: Materials vs. Person Time
 +
** Based on historical recommend level of funding
 +
*** Alex suggests $15,000/yr
 
* LDAP
 
* LDAP
 
** Merging LDAP/Wiki logins
 
** Merging LDAP/Wiki logins
 
** LDAP user facing password reset (via email tokens)
 
** LDAP user facing password reset (via email tokens)
 
** Implementing OpenID so github, launchpad, google etc, work with OSGeo IDs
 
** Implementing OpenID so github, launchpad, google etc, work with OSGeo IDs
* OWASP security implementation
 
* Anti spam measures, and automated detection
 
 
* HTTPS option for all hosted sites
 
* HTTPS option for all hosted sites
 
** Using letsencrypt certificates
 
** Using letsencrypt certificates
 
** Target foss4g archives 1st
 
** Target foss4g archives 1st
 +
* Plan for replacing OSGeo3 next year
 +
* OWASP security implementation
 +
* Anti spam measures, and automated detection
  
 
== Funding sysadmin work ==
 
== Funding sysadmin work ==
Line 50: Line 71:
 
It was suggested:
 
It was suggested:
  
* Nominate an emergency response retainer
+
* Paid project supervision
* Set up a Time and Material contract
+
* Nominate an emergency response retainer
* Set up a Proposal and Bid system
+
* Set up a Time and Material contract
** Create a Wishlist (Once established people submit ideas to be added)
+
* Set up a Proposal and Bid system
** Vote on Priority of Items
+
** Create a Wishlist (Once established people submit ideas to be added)
** For top items decide if it's internal or external (bid) & timeline
+
** Vote on Priority of Items
** For external create a proposal and request bids
+
** For top items decide if it's internal or external (bid) & timeline
*** Vote on bids
+
** For external create a proposal and request bids
** Continually fund items up to a ceiling per year (if any budget left near end of year add to cap)
+
*** Vote on bids
** Repeat
+
** Continually fund items up to a ceiling per year (if any budget left near end of year add to cap)
 +
** Repeat
  
 
Questions:
 
Questions:
Line 69: Line 91:
 
  * How do we balance having external contractors do work without having to grant full privileged access?
 
  * How do we balance having external contractors do work without having to grant full privileged access?
  
 +
= Tasks =
 +
 +
Things people agreed to do.
 +
 +
* what - who
  
 
[[Category:Infrastructure]]
 
[[Category:Infrastructure]]
 +
[[Category:SAC Meetings]]

Latest revision as of 07:18, 22 October 2017

Agenda

Please list the meeting topics, and link to relevant SAC tickets when possible. Meeting will be for assigning tasks, updating status, and voting. Majority of discussions should happen on the mailing list and IRC in before and after meetings. Estimated 30-60 minutes.

Time and Date set via email list poll. http://www.timeanddate.com/worldclock/meetingdetails.html?year=2016&month=5&day=20&hour=16&min=0&sec=0&p1=217&p2=37&p3=248&p4=914

Current

  • SSL certificate Update (Alex)
    • We bought a 3 yr DV.
    • Do we want a 5 yr OV instead
    • Reverse Chain file propagation?
  • Trac Spam Report (Sandro)
  • Budget Report (Alex)
    • What we've spent the last few years.
    • Upcoming costs
    • What's left
  • Versioning Configuration files
  • Clean up wiki pages
  • Hardware Migration
    • Virtualization, Docker, or some other Container
    • Finish moving things off OSGeo4 and retire
      • Adhoc - Mapserver Demo, SpatailReference.org, ?
      • QGIS VM - run's their bugtracker (up for retirement)
  • Expand download area capacity
    • TODO: Link OSUOSL discussion on dedicated download cluster service
    • Or, grow disk
    • Or, migrate & grow
  • Annual OSUOSL Donations - Always in the budget, but we don't always send for some reason.
  • Meeting Schedule

Ideas & Proposals

  • Paid Proposal System - Formalize a method for proposing tasks that require payment to make it happen in a timely manner.
    • Method for taking proposals on tasks
    • Method for soliciting vendors to fulfill tasks
    • Method for approving bids that minimizes conflict of interest (SAC members may sometimes bid)
  • Budget
    • Ask the board to split the budget into 2 sections, anticipated(planned) expenses and un-anticipated?
    • Aniticpated
      • Certificate, DNS Renewals
      • Planned hardware
      • Un-anticipated
        • Hardware failure replacement
        • Emergency assistance
    • Alternate: Materials vs. Person Time
    • Based on historical recommend level of funding
      • Alex suggests $15,000/yr
  • LDAP
    • Merging LDAP/Wiki logins
    • LDAP user facing password reset (via email tokens)
    • Implementing OpenID so github, launchpad, google etc, work with OSGeo IDs
  • HTTPS option for all hosted sites
    • Using letsencrypt certificates
    • Target foss4g archives 1st
  • Plan for replacing OSGeo3 next year
  • OWASP security implementation
  • Anti spam measures, and automated detection

Funding sysadmin work

The SAC Chair (Alex Mandel) suggested to write down possible handling of payed sysadmin work. It was suggested:

  • Paid project supervision
  • Nominate an emergency response retainer
  • Set up a Time and Material contract
  • Set up a Proposal and Bid system
    • Create a Wishlist (Once established people submit ideas to be added)
    • Vote on Priority of Items
    • For top items decide if it's internal or external (bid) & timeline
    • For external create a proposal and request bids
      • Vote on bids
    • Continually fund items up to a ceiling per year (if any budget left near end of year add to cap)
    • Repeat

Questions:

* How do we solicit bids ?
   strk> a call for interest on SAC list (priority line), on discuss list if needed (second choice)
* How much to reserve for such contract ?
   strk> current budget seems too low to allow for a new contract, so I think we should be asking for more
* How do we balance having external contractors do work without having to grant full privileged access?

Tasks

Things people agreed to do.

  • what - who