Zero Trust Architecture (ZTA) Expert Group

ZTA Expert Group Meeting Minutes 4/12

  • 1.  ZTA Expert Group Meeting Minutes 4/12

    Posted Apr 13, 2022 09:32:00 PM

    Hello all,

    Thank you for the thoughtful discussion yesterday. The meeting minutes have been updated and can be found here: https://drive.google.com/drive/folders/1fc9g7vUEuDA3qLDLk-0xoH12e_ZHRkA8 

    The recording for this meeting and future meetings can be found in the Library of the ZTA SME Circle group, along with the agendas/ meeting minutes, and other relevant ZTA artifacts, such as the charter. The Circle group is invite-only, so if you do not have access to this group, please let us know ASAP and we can get that resolved. 

    All Modules for the ZTA Training as well as the ZTA Glossary can be found here: https://drive.google.com/drive/folders/1RRq8MTFh19NCxw8bf5FH8Qito31mEC3F?usp=sharing

    Note: The SDP_Architecture_Guide pdf is attached below and please find the SDP Spec 2 link below. Please read both artifacts as well as modules 1-5 to get a good concept of the ZTA/SDP training.

    SDP Spec v2 Publishedcan be found here:https://cloudsecurityalliance.org/artifacts/software-defined-perimeter-zero-trust-specification-v2/

    ZTA/ZT/SDP Resources Folderhttps://drive.google.com/drive/folders/10MWGbKutdSLYcCkC1IAMSJVO6apBXp4R?usp=sharing

    Here is the quiz question tutorial videohttps://drive.google.com/file/d/1YVaos2pSlWMjVR3xRmZpjgIqsMf4dOtG/view?usp=sharing

    As a reminder, we are trying to finalize the sections in module 4, for those who volunteered (thank you) to be a lead author in a given section please:

    1. Review your given section
    2. Address the open comments in the section
    3. Reply to comments if you do not agree and state why, if you choose not to address feedback
    4. When addressing comments please directly edit (using suggestion mode) the document and provide suggested text
    5. Provide any additional text needed for your section to make it final
    6. Identify if any text should be moved to another section
    7. Make sure we are using the most current graphic (if applicable)

    Action Points (APs): 

    1. 4.1- SDP Components

      1. Cory was assigned to finalize this section by 4/19.

    2. 4.1.1- Initiating Host

      1. CT, would you please provide the suggested text in order to resolve the open comments. Please let us know what comments you agree with/don't, and why. Also, if you agree with a comment please address it by suggesting modified text. by 4/19

    3. 4.1.1- Gateway

      1. Mark McGloin was assigned to finalize this section by 4/26.

    4. 4.1.3- Controller

      1. Michael Herndon was assigned to finalize this section by 4/19.

    5. 4.2.1.1- SDP Communication Flows

      1. Shruti was assigned to finalize this section and its subsections (4.2.1.1, 4.2.1.2, 4.2.1.3) by 4/19.

    6. 4.2.1.2 Access Requests Using SPA

      1. Leon was assigned to work on the missing diagram in this section by 4/19.

    7. 4.2.2- SDP Setup & Onboarding

      1. Heinrich will continue working on this section by 4/19.

        1. Rewrite this section and the following sections (4.2.2.1, 4.2.2.2, 4.2.2.2.1, 4.2.2.3). 

        2. Do we need to add any sections, such as Access Phase?

      2. Michael Roza  was assigned to help with finding the onboarding workflow and gave it to Henirich by 4/19.

    8. 4.2.2.4- Impact of IAM on User Experience

      1. Michael Herdon, would you please keep working on this section by 4/19.

    9. 4.4- Consideration

      1. Rich lee, would you continue working on unit 4 and restructuring it by 4/19.

        1. Please keep in mind M5 is supposed to be about planning and implementation not M4

    10. Assigned to all, call for Module 3 quiz questions

      1. Quiz question folder so you all can see each other's questions/ see examples

        1. Quiz question audit

        2. Item form

        3. Item guidelines@

        4. video tutorial for QQ



    ------------------------------
    Reza Safari
    Training administration intern
    CSA
    ------------------------------