This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "GPC/Meetings/2012-21-12"

From OWASP
Jump to: navigation, search
(Created page with "__TOC__ = Project Division Updates = *'''[https://docs.google.com/a/owasp.org/spreadsheet/ccc?key=0AllOCxlYdf1AdFdaYXJ6SDFXNXBaemNwbnNHN3N5RVE#gid=16 Project Numbers]''' **Ac...")
 
 
(4 intermediate revisions by the same user not shown)
Line 3: Line 3:
  
 
*'''[https://docs.google.com/a/owasp.org/spreadsheet/ccc?key=0AllOCxlYdf1AdFdaYXJ6SDFXNXBaemNwbnNHN3N5RVE#gid=16 Project Numbers]'''
 
*'''[https://docs.google.com/a/owasp.org/spreadsheet/ccc?key=0AllOCxlYdf1AdFdaYXJ6SDFXNXBaemNwbnNHN3N5RVE#gid=16 Project Numbers]'''
**Active Projects: 119
+
**Active Projects: 121
 
**Inactive Projects: 67
 
**Inactive Projects: 67
  
 
*'''[https://docs.google.com/a/owasp.org/spreadsheet/ccc?key=0Amvv_7Gz8Z7TdHZfWGhHZ0Z4UFFwZU42djBXcVVLSlE#gid=0 Pending Project Applications]'''
 
*'''[https://docs.google.com/a/owasp.org/spreadsheet/ccc?key=0Amvv_7Gz8Z7TdHZfWGhHZ0Z4UFFwZU42djBXcVVLSlE#gid=0 Pending Project Applications]'''
**CISO Survey
+
**O-Saft
**Application Security Guide For CISOs
 
**Medical Warehouse
 
  
 
==Currently Working On==   
 
==Currently Working On==   
  
 
*'''SourceForge Update'''
 
*'''SourceForge Update'''
**I have reached out to Audrey, our Geeknet representative, and asked if she has received payment from us.  
+
**Audrey has replied.
**I have also asked her to confirm if our account is in fact closed.  
+
**She has not received payment.
**I am still waiting to hear back from her.
+
**I confirmed with Alison that payment was made in the beginning of December.
 +
**I have sent Audrey the payment details, and I am waiting to hear back from her now.
 +
**Our account with SourceForge is now closed.
  
 
*'''OWASP Licenses Update'''
 
*'''OWASP Licenses Update'''
 
**This is the final draft of the letter: [https://docs.google.com/a/owasp.org/document/d/1n3xEFUfUqd2qJ2udRn3itKtDMBnOYA9dvsIGAnFIEZM/edit Letter.]
 
**This is the final draft of the letter: [https://docs.google.com/a/owasp.org/document/d/1n3xEFUfUqd2qJ2udRn3itKtDMBnOYA9dvsIGAnFIEZM/edit Letter.]
**I have sent this to the projects with licensing issues.
+
**Dr. Gottlieb has responded with a change in license. I have made the necessary changes on our records.
**I am still waiting to hear back from all of them.
+
**The other two project leaders have not responded.  
 +
**I will reach out to them before the day ends.  
  
 
*'''AppSec APAC 2013: Planning'''
 
*'''AppSec APAC 2013: Planning'''
**We have not received any applications for participation in the AppSec APAC OSS.
+
**I have now closed down the 'Call for Entries' for the Open Source Showcase.
**Sarah and I discussed the possibility of doing away with this particular event module, and focus on getting speakers for the OWASP Track instead. I agreed.  
+
**We received no applicants for the OSS.
**We decided to wait until Wednesday of next week to take the banners down. This will give those interested in applying, a bit more time.  
+
**The Project Track has 4 interested applicants.  
**We asked the local team what projects they are interested in having at their conference.
+
**We are in the process of sorting out logistics for these potential speakers.  
**They gave us a list, and we are in the process of getting those project representatives to apply for the OWASP Track.
 
  
*'''Project Support Volunteer Role Development'''
+
*'''CTF at our Global AppSec Conferences'''
**The roles have now been allocated for each volunteer that has expressed interest in working with OWASP.  
+
**I spoke with Steven van der Baan about developing a CTF event module for OWASP AppSec Conferences.
**I will have a meeting with the successful candidates regarding their project support duties, next week.
+
**We agreed that South Korea would have to pass for this year, but that we should aim for having CTF at AppSec USA, Europe, and Latin America.
**I will send more information to the other volunteers about the different ways they can support the Guidebook projects during their development.
+
**Steven can get time off for USA and Europe.  
 +
**Steven will need funding for hotel and travel expenses. (I will check with the foundation to see if we can do this).
 +
**The CTF module is scalable and Steven agreed to help us teach other volunteers how to run the event if he can't make it.
 +
**There is a possibility we can combine the University Challenge module with CTF. I will touch base with Martin after the holidays to see if this is possible.
 +
**Next Steps: We will begin developing a way to teach back up volunteers how to run CTF Steven's absence.  
  
 
*'''New Project Web Page'''
 
*'''New Project Web Page'''
**The new web page development is almost complete.
+
**The new Project Page design is now complete.
**The only information missing is the Assessment Criteria and Project Terminology.
+
**Please review the page, and note down any comments, changes, etc.  
**Please see below for my proposal on the Assessment Criteria.
+
**I plan to make this live towards the beginning of January.  
  
 
*'''Assessment Criteria, Lifecycle, and Graduation Processes'''
 
*'''Assessment Criteria, Lifecycle, and Graduation Processes'''
**I have sent my proposal to all GPC members.  
+
**I have not received feedback since the last GPC meeting.  
**Lets discuss this today.
+
**Please review when you get the opportunity, and provide feedback.
**Process form development: Proposal Completed
+
**If there is no feedback, I will assume that the proposal has no objections.
**Project Stage Benefits: Proposal Completed
 
**Project Graduation Process & Criteria: Proposal Completed
 
**Project Deliverable/Release Review Criteria: Proposal Completed
 
**Project Migration Process: Proposal Completed
 
  
 
*'''Daily Project based queries and requests'''
 
*'''Daily Project based queries and requests'''
Line 61: Line 61:
  
 
==More Funding Potential==
 
==More Funding Potential==
#Guidebooks Grant Payment: We have submitted the forms, and are waiting to hear back from Deb.  
+
#Guidebooks Grant Payment: We are still waiting to hear back from Deb regarding payment.
#ESAPI Grant Proposal: The proposal has passed the first round of reviews. It is now at the peer review stage with 6 other applications.
+
#ESAPI Grant Proposal: The proposal has passed the first round of reviews. It is now at the peer review stage with 6 other applications. I suspect we will hear back from the DHS after the holidays.
#We have now begun the process of grant writing for the ModSecurity Project.  
+
#Ryan and I have agreed on a project plan for the ModSecurity Project.  
#Ryan and I are still developing the project plan.  
+
#I have begun the grant writing process.
 
#This will be for a $30,000 grant proposal.
 
#This will be for a $30,000 grant proposal.
  
 
==Attendees==
 
==Attendees==
  
*Samantha Groves
+
*Meeting is cancelled today as most of us are already on holiday.
*Nishi Kumar
 
*Keith Turpin
 
*Kate Hartman
 
*Jason Li
 
  
==Announcements==
 
 
#Geeknet: Audrey from Geeknet has not gotten back to me. I reached out to her to make sure she has received payment. I will reach out to her again come next week.
 
#AppSec APAC Planning: We might have to do away with the OSS at AppSec APAC 2013. There have been no applicants for this event module. We are focusing on the Projects Track, and reaching out to speakers for this.
 
#Project Support Volunteer Role: I have selected the candidates for these roles. They have agreed, and I am meeting with them next week to discuss their roles.
 
#New Project Web Page: This is mostly complete. The only information that is missing is the Assessment Criteria Page information, and the Project Terminology Information. Please edit away.
 
#Assessment Criteria, Lifecycle, and Graduation Processes: Please have a look at the attached document and send feedback, suggestions, concerns, solutions, etc.
 
#Presentation Comments: Keith suggested we make a template for each lifecycle stage. This will ensure the reader is fully aware what stage the project is in within the OWASP Project Lifecycle. I agree, this is a great idea.
 
#We need to very clearly outline what level of usability a project will be expected to be in at each stage.
 
#Project Benefits Comments: It was suggested that we move the technical writing support and graphic design support benefits to the Labs stage as opposed to having this benefits for Incubator projects.
 
#Additional Incubator Benefit: Recognition and visibility of being associated with the OWASP Brand.
 
  
 
[[Category:GPC_Meetings]]
 
[[Category:GPC_Meetings]]
 
[[Category:GPC_Meetings/2012]]
 
[[Category:GPC_Meetings/2012]]

Latest revision as of 17:27, 21 December 2012

Project Division Updates

Currently Working On

  • SourceForge Update
    • Audrey has replied.
    • She has not received payment.
    • I confirmed with Alison that payment was made in the beginning of December.
    • I have sent Audrey the payment details, and I am waiting to hear back from her now.
    • Our account with SourceForge is now closed.
  • OWASP Licenses Update
    • This is the final draft of the letter: Letter.
    • Dr. Gottlieb has responded with a change in license. I have made the necessary changes on our records.
    • The other two project leaders have not responded.
    • I will reach out to them before the day ends.
  • AppSec APAC 2013: Planning
    • I have now closed down the 'Call for Entries' for the Open Source Showcase.
    • We received no applicants for the OSS.
    • The Project Track has 4 interested applicants.
    • We are in the process of sorting out logistics for these potential speakers.
  • CTF at our Global AppSec Conferences
    • I spoke with Steven van der Baan about developing a CTF event module for OWASP AppSec Conferences.
    • We agreed that South Korea would have to pass for this year, but that we should aim for having CTF at AppSec USA, Europe, and Latin America.
    • Steven can get time off for USA and Europe.
    • Steven will need funding for hotel and travel expenses. (I will check with the foundation to see if we can do this).
    • The CTF module is scalable and Steven agreed to help us teach other volunteers how to run the event if he can't make it.
    • There is a possibility we can combine the University Challenge module with CTF. I will touch base with Martin after the holidays to see if this is possible.
    • Next Steps: We will begin developing a way to teach back up volunteers how to run CTF Steven's absence.
  • New Project Web Page
    • The new Project Page design is now complete.
    • Please review the page, and note down any comments, changes, etc.
    • I plan to make this live towards the beginning of January.
  • Assessment Criteria, Lifecycle, and Graduation Processes
    • I have not received feedback since the last GPC meeting.
    • Please review when you get the opportunity, and provide feedback.
    • If there is no feedback, I will assume that the proposal has no objections.
  • Daily Project based queries and requests
    • This has not changed much since I began the post: questions are very similar in nature.
    • Global AppSec questions.
    • Funding queries.
    • Travel availability.
    • Project based administrative help.
    • Project status information.
    • Several project donations questions.
    • OWASP LinkedIn Updates.
    • What's happening with projects, questions.

More Funding Potential

  1. Guidebooks Grant Payment: We are still waiting to hear back from Deb regarding payment.
  2. ESAPI Grant Proposal: The proposal has passed the first round of reviews. It is now at the peer review stage with 6 other applications. I suspect we will hear back from the DHS after the holidays.
  3. Ryan and I have agreed on a project plan for the ModSecurity Project.
  4. I have begun the grant writing process.
  5. This will be for a $30,000 grant proposal.

Attendees

  • Meeting is cancelled today as most of us are already on holiday.