XSEDE Capability Delivery Plan for "SPI-06: Emergency account suspension"

Use Case SPI-06: Emergency account suspension

Area: Community Building
URLs: Public, Review

Executive Summary: While responding to an account compromise, an XSEDE operational security team member needs to temporarily prevent a specific XSEDE user account from being used on XSEDE resources and services.

URLs: Public
First CDP: 2017-05-03
Current CDP: 2019-01-31
Current Implementation Status: 
Issues Remaining: 

Provide ability for an XSEDE operational security team member to issue a suspend request on one or more XSEDE usernames.

Provide ability for an XSEDE operational security team member to track the status of a suspend request for one or more XSEDE usernames for each resource and service where accounts exist.

Significant Revisions:
This capability is currently supported by the following 1 components:
Component User facing? Component’s role in the capability
XSEDE Ticket System yes According to the XSEDE Security Playbook (http://hdl.handle.net/2142/89759), XSEDE Security Operations currently manages/tracks account suspensions and other incident response activities via the XSEDE Ticket System.