User Tools

Site Tools


openchain:written_minutes_2019-03-18

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Next revision
Previous revision
openchain:written_minutes_2019-03-18 [2019/03/19 02:01]
shanecoughlan added minutes
openchain:written_minutes_2019-03-18 [2019/03/19 02:06] (current)
shanecoughlan updated formatting
Line 1: Line 1:
 == Attendees == == Attendees ==
    
-Shane Coughlan +  * Shane Coughlan 
-Hiro Fukuchi  +  ​* ​Hiro Fukuchi  
-Justin Cappos +  ​* ​Justin Cappos 
-Yoshi Kobayashi +  ​* ​Yoshi Kobayashi 
-Jim Hutchinson  +  ​* ​Jim Hutchinson  
-Nobuo Imada +  ​* ​Nobuo Imada 
-Nathan Kumagai +  ​* ​Nathan Kumagai 
-Mark Gisi +  ​* ​Mark Gisi 
-Santiago Torres Arias +  ​* ​Santiago Torres Arias 
-Kate Stewart +  ​* ​Kate Stewart 
-Endo San+  ​* ​Endo San
  
 == Project Update == == Project Update ==
  
-• Fujitsu has been announced as the latest Platinum Member. +  * Fujitsu has been announced as the latest Platinum Member. 
-• We had a great workshop at the Leadership Summit on March 13th: +  ​* ​We had a great workshop at the Leadership Summit on March 13th: 
-tl;dr: OpenChain is going to ISO - Mark Gisi is finalizing the ISO spec (2.0) • Our new conformance web app is now live in English and Japanese:+  ​* ​tl;dr: OpenChain is going to ISO - Mark Gisi is finalizing the ISO spec (2.0) 
 +  * Our new conformance web app is now live in English and Japanese:
 https://​certification.openchainproject.org/​ https://​certification.openchainproject.org/​
-• OpenChain will co-host an event in Shenzhen on March 22nd.+  * OpenChain will co-host an event in Shenzhen on March 22nd.
  
 == Case Study: In-Toto == == Case Study: In-Toto ==
  
- In-Toto - a New York University Project +In-Toto - a New York University Project 
-• Over to our guest speaker, Justin Cappos +  ​* ​Over to our guest speaker, Justin Cappos 
-• What is In-Toto? +  ​* ​What is In-Toto? 
-• How can In-Toto support OpenChain Conformance?​+  ​* ​How can In-Toto support OpenChain Conformance?​
  
-in-toto is a general technique for software supply chain enforcement +  * in-toto is a general technique for software supply chain enforcement 
-Cryptographic verification,​ tamper resistant, provenance, repudiation +  ​* ​Cryptographic verification,​ tamper resistant, provenance, repudiation 
-Used in many large software companies +  ​* ​Used in many large software companies 
-We are particularly interested in adding license compliance checking +  ​* ​We are particularly interested in adding license compliance checking 
-Try out in-toto! +  ​* ​Try out in-toto! https://​in-toto.io
-https://​in-toto.io+
  
 Slides here: Slides here:
 +https://​www.slideshare.net/​ShaneCoughlan3/​intoto-openchain-presentation-03182019
  
 == Onboarding Work Team == == Onboarding Work Team ==
  
-• Finalizing the Path to Conformance,​ a document that will become a page on the website. +  * Finalizing the Path to Conformance,​ a document that will become a page on the website. 
-• This document is nearly ready and will be featured front and center on the website:+  ​* ​This document is nearly ready and will be featured front and center on the website:
 https://​docs.google.com/​document/​d/​1ySsqu-XoivV5FrNQOEVdpgfI7Q_ltrkBrD ncayMoy4o/​edit https://​docs.google.com/​document/​d/​1ySsqu-XoivV5FrNQOEVdpgfI7Q_ltrkBrD ncayMoy4o/​edit
  
Line 47: Line 48:
 == Specification Work Team == == Specification Work Team ==
    
-• The latest draft of the next version of OpenChain Specification can be found here:+  * The latest draft of the next version of OpenChain Specification can be found here:
 https://​wiki.linuxfoundation.org/​_media/​openchain/​openchainspec-2.0.draft.p df https://​wiki.linuxfoundation.org/​_media/​openchain/​openchainspec-2.0.draft.p df
-• A marked up version can be found here: https://​wiki.linuxfoundation.org/​_media/​openchain/​OpenChainSpec-2.0.draft. MarkUp.pdf +  * A marked up version can be found here: https://​wiki.linuxfoundation.org/​_media/​openchain/​OpenChainSpec-2.0.draft. MarkUp.pdf 
-• Recent updates can be found in yellow and blue highlights.+  ​* ​Recent updates can be found in yellow and blue highlights.
    
 Remaining Steps: Remaining Steps:
-• Continue to discuss recently received feedback and work through remaining outstanding issues listed on the spec’s github account: https://​github.com/​OpenChain-Project/​Specification/​issues +  * Continue to discuss recently received feedback and work through remaining outstanding issues listed on the spec’s github account: https://​github.com/​OpenChain-Project/​Specification/​issues 
-• The wider public comments stage has commenced and will concluded on March 22nd +  ​* ​The wider public comments stage has commenced and will concluded on March 22nd 
-• The draft freeze period will begin on March 23rd+  ​* ​The draft freeze period will begin on March 23rd
    
 == Conclusion == == Conclusion ==
  
-The project is moving well towards both greater ease of supply chain adoption and formal standardization. The next couple of weeks will see some key services and documents released. The most important deadline is that comments on the Specification update close on *22nd March*+  * The project is moving well towards both greater ease of supply chain adoption and formal standardization. ​ 
 +  * The next couple of weeks will see some key services and documents released. ​ 
 +  * The most important deadline is that comments on the Specification update close on *22nd March*
openchain/written_minutes_2019-03-18.1552960915.txt.gz · Last modified: 2019/03/19 02:01 by shanecoughlan