[Fiware-i2nd] Review of Security chapter contents

jeanpierre.lerouzic at orange.com jeanpierre.lerouzic at orange.com
Fri Aug 24 14:20:13 CEST 2012


Hi Pier, all,

I made a quick reading at the three wiki pages that were assigned to me.
Please understand that I have a security background both internal to Orange and in EU projects. In general I like this topic, it's very logical and ask the practionner quite interesting questions about the meaning of things.
The field is well understood, there are standards such as ISO27000, ISO<https://en.wikipedia.org/wiki/International_Organization_for_Standardization>/IEC<https://en.wikipedia.org/wiki/International_Electrotechnical_Commission> 15408,  FIPS 140<https://en.wikipedia.org/wiki/FIPS_140-2>.  I have seen no reference to those or BTW other  standards in these three pages except:

·         ISO/IEC 13335 which is an obsolete standard based on thousands of security recipes. ISO27001 is newer, cleaner and much more consistent standard.

·         ISO 8601 which is about date and time representation

I can't see how those pages are related to the topics that are usual in security, in addition they use sometime a strange vocabulary and are awfully written.
In fact I don't understand what those pages means and how it's related to Fiware.
It has certainly not the level of quality that I would accept at Orange. It's a bit embarrassing not only for me but also for Fiware.

I can produce a fake review but I would prefer not be involved in that case.
Another suggestion would be a kind request to the author to write those pages in a comprehensive style aiming at the layman, because after all if I understand correctly those pages are public.

Any suggestions?

Jean-Pierre

De : Garino Pierangelo [mailto:pierangelo.garino at telecomitalia.it]
Envoyé : vendredi 24 août 2012 12:04
À : Woods, Chris; Frank Schulze; Kay.Haensge at telekom.de; Hans Einsiedler (Hans.Einsiedler at telekom.de); LE ROUZIC Jean-Pierre RD-MAPS
Cc : fiware-i2nd at lists.fi-ware.eu
Objet : Review of Security chapter contents

Dear All,

As some of you already know, we have been assigned the review of one of the chapter descriptions on the public wiki FI-WARE. As I2ND we are assigned to review the  Security chapter pages.

We'd like to have a first feedback by Monday 27th, so I have attempted to split the workload among those of us who should be available in these days (according to the
I2ND Holiday Unavailabilities<https://forge.fi-ware.eu/plugins/mediawiki/wiki/i2nd/index.php/WP7_holiday_table> table in the I2ND wiki), so as to minimize the effort.

In order to ease the task, I have also prepared a shared doc to contain the comments generated during the review, you find it at the link: https://docs.google.com/document/d/1dtvvQGv3seX2fCZRaGTR6Q4JsApjiDTWgZ9QUkLY910/

The columns 'Reviewer' of the two tables assign the revision of the link in the 'Section' column to some of us, those names highlighted are proposals. Please check the rows you are assigned, and let me know if there are reasons you cannot do this review, we'll try to rearrange the review to somebody else.

All other people in the team please check (and let me know if they volunteer) for people who might be out of office, so that we can complete the review in time, thanks.

Hope everything is clear, in case you have doubts please let me know asap.

Thanks and BR
Pier





------------------------------------------------------------------
Telecom Italia
Pierangelo Garino
Innovation & Industry Relations - Research & Prototyping
Via G. Reiss Romoli 274, I-10148 TORINO
Tel: +39 011 228 7142

Questo messaggio e i suoi allegati sono indirizzati esclusivamente alle persone indicate. La diffusione, copia o qualsiasi altra azione derivante dalla conoscenza di queste informazioni sono rigorosamente vietate. Qualora abbiate ricevuto questo documento per errore siete cortesemente pregati di darne immediata comunicazione al mittente e di provvedere alla sua distruzione, Grazie.

This e-mail and any attachments is confidential and may contain privileged information intended for the addressee(s) only. Dissemination, copying, printing or use by anybody else is unauthorised. If you are not the intended recipient, please delete this message and any attachments and advise the sender by return e-mail, Thanks.
[rispetta l'ambiente]Rispetta l'ambiente. Non stampare questa mail se non è necessario.



_________________________________________________________________________________________________________________________

Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc
pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler
a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration,
France Telecom - Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci.

This message and its attachments may contain confidential or privileged information that may be protected by law;
they should not be distributed, used or copied without authorisation.
If you have received this email in error, please notify the sender and delete this message and its attachments.
As emails may be altered, France Telecom - Orange is not liable for messages that have been modified, changed or falsified.
Thank you.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.fiware.org/private/old-fiware-i2nd/attachments/20120824/89fc6d9e/attachment.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: image001.gif
Type: image/gif
Size: 677 bytes
Desc: image001.gif
URL: <https://lists.fiware.org/private/old-fiware-i2nd/attachments/20120824/89fc6d9e/attachment.gif>


More information about the Old-Fiware-i2nd mailing list

You can get more information about our cookies and privacy policies clicking on the following links: Privacy policy   Cookies policy