REVIEW-80: Globus Connect v.5.4 Custom Domains - Design/Security Review

Overview

XSEDE is preparing to deploy Globus Connect Server Version 5.4 in production. We are conducting a design and security risk review for the Globus Connect Server Version 5.4 Custom Domain feature to ensure that it addresses XSEDE and SP requirements to use XSEDE accepted certificates with GCS.

Review Summary

  • Questions about acceptable CA issuers and signatures answered
  • Requested clarifications about the wildcard certificate domain in 4.1 and 4.2

Review Output Documents (Final)

Released Globus Connect Server Domain Guide

Review Input Documents

Globus documentation:

Review Criteria

  • Does the customer certificates and domains design satisfy XSEDE and SP security requirements?
  • Does the guide adequately describe SP custom domain procedures?

Schedule

Current Date: 2021-04-22
Current Status: Developer Feedback (Design and Security Review)
Target Date Actual Date Activity Milestone
  2021-01-08 Review launch date
2021-01-22 2021-04-20 Written feedback due (Reviewers)
2021-01-29 Written response date (Review Material Developers)
2021-02-01 Final approval due and completion date (Reviewers)
Review Created: 2021-01-07 4:56 pm
Review Last Updated: 2021-04-20 8:02 am

 

Reviewers

If you are a reviewer, please login to sign or withdraw from this review.

Required

  • John-Paul Navarro
    VIEWED: 2021-04-20 08:02
  • Derek Simmel

Optional

  • Eric Blau
    VIEWED: 2021-01-22 14:34
    SIGNED: 2021-01-22 14:34
  • Freddy Rojas
  • Scott Sakai
    VIEWED: 2021-01-22 16:20
    SIGNED: 2021-01-22 16:20
  • Alexander Withers

Review Material Developers

Lee Liming

Review Facilitator

John-Paul Navarro

 

Please post your comments using the "New topic" or "Post reply" buttons in the forum below.