OpenDNSSEC > Meetings > Agenda > 2009-06-02
Date: Tuesday 2 June
Time: 14:00-15:00 CEST
Please call in to the conferencing service provided by Nominet. No SIP is available.
These are the international phone numbers:
| UK | 08702407821 |
| UK toll free | 08081005145 |
| SE | 0858536827 |
| SE toll free | 0200110476 |
| NL | 0202013852 |
| NL toll free | 08000223422 |
Contact Roy/Stephen if you want numbers in other countries.
The passcode for the participants is: 4227104
Jabber: xmpp:opendnssec@conference.kirei.se
***************
0. Who will write minutes?
1. Agree on the agenda
- Any changes to the agenda?
2. Discussion about each component
- What has been done since last time?
- What to be done in the nearest future?
- How much time is needed?
- What are potential blocking factors and/or dependencies?
- Install guide / user guide
3. HSM compliancy tool
- Updates from Rick
4. System integration
- Status
5. Are we near an alpha version?
6. What functionality are we missing?
- Comments from the mailing list:
- A "Watchdog" process that checks that everything is running.
This is something that should be running from the time the system is booted. If any process is missing, it logs an emergency message. Is something like this needed? - Emergency messages
This leads on the from the last one. Some messages should be immediately notified to the operator (e.g. the Kasp Auditor notifying the operator that the signed zone file has failed one or more tests). How do we do this? Although some sites will use programs like Nagios and do their own monitoring, others may want a system that comes "out of the box". The easiest way seems to be some form of email notification - should we supply the framework? (e.g. http://www.johnandcailin.com/blog/john/how-setup-real-time-email-notification-critical-syslog-events ) - HSM PIN
How do we enter the PIN for the HSM? The requirements suggest it should be entered just once at startup - how is the user prompted to do this? If the token has CKF_PROTECTED_AUTHENTICATION_PATH? CKA_ALWAYS_AUTHENTICATE set on an object? - AXFR in/out
What part of the system is responsible for extracting an AXFR from an upstream nameserver into the input zone file, and what part is responsible for loading it into the local nameserver for the downstream AXFR?
7. What do we want to do next / implement?
- Are we missing any features for the first release?
8. PivotalTracker
- http://www.pivotaltracker.com
- What do you think about this?
- Can we use it to organize our future work?
9. System testing
- Status on writing tests
10. Next meeting
11. Other questions
