2021-06-17 GSWG Plenary Meeting Notes
Meeting Date
Jun 17, 2021
Attendees
@Drummond Reed
@Kalyan Kulkarni
@Steven Milstein
@Steve Magennis
@sankarshan
@Victor Syntez
@Paul Knowles
@Karl Kneis
@Carly
regrets from @Scott Perry (who was able to attend the final 10 mins)
regrets from @Daniel Bachenheimer the DIACC/TFEC call is in conflict
Main Goal of this Meeting:
Review the status of the proposed list of deliverables
Agenda
Time | Item | Lead | Notes |
5 min |
| Chairs |
|
5 mins | NEWS: general community updates relevant to the GSWG | All |
|
20 min | Deliverables proposed by @Scott Perry as Working Group Approved Deliverables | Group |
|
10 mins | Deliverables in Process as reported by @Scott Perry | Group |
|
5 mins | Report on other deliverables from @Scott Perry | Group |
|
5 mins | Report on other deliverables | @Drummond Reed |
|
5 mins | Planning for Upcoming Meetings | Chairs |
|
Recording
Notes
Welcome
Linux Foundation antitrust policy
Introduction of new members
Agenda review
News — general community updates relevant to the GSWG
Drummond congratulated Mary on her presentation last week to the Hyperledger Global Forum
Karl would like to invite Mary to make that presentation to the Ecosystem Foundry Working Group
@Thomas Cox shared that @Savita Farooqui is chairing a subgroup under IEEE P2145 on governance frameworks across various areas
Savita extended an invitation to anyone here who would like to participate
Karl would like to invite Savita to make an Ecosystem Foundry Working Group presentation
Paul suggested an invitation to Philippe Page
Deliverables proposed by @Scott Perry as Working Group Approved Deliverables
ToIP Risk Assessment Worksheet (RAW) Template – The Worksheet should be voted as an Excel document (See attachment) but can be shown to the WG in Google Sheet format. https://docs.google.com/spreadsheets/d/1p0wlOAOgf5Ntq07EZ1Gmw0EtjADgbiXK/edit#gid=857415086
ToIP Risk Assessment Companion Guide – all comments and edits have been resolved. Here is the link: https://docs.google.com/document/d/1SNHqhO8EVWcM-Icqm5_tnADrMwrYrRsy5wQAbL3w1oI/edit#
@sankarshan is a member of the Trust Assurance Task Force who was able to speak to these two deliverables
The first one is a template for describing and assessing risks
The second one is a written guide that explains how to use the worksheet
Together the two of these deliverables enable a governing authority to tackle the problem of risk assessment
He explained that the Worksheet is designed to run in Excel, but is available in Google sheets format
Drummond did the call for consensus. There were no objections.
DECISION: The ToIP Risk Assessment Worksheet (RAW) Template and the ToIP Risk Assessment Companion Guide are approved as Working Group Approved Deliverables.
Deliverables in Process as reported by @Scott Perry
ToIP Governance Metamodel Specification – Scott would like us to approve this as a Working Group Approved Deliverable but it depends on the timing of the Companion Guide.
Karl asked about other related industry standards that we could look to for feedback – he mentioned TOGAF (The Open Group Architectural Framework)
as a certification body
Kantara is another possible body to ask for feedback, particularly for enterprise feedback
Scott brought up the need for passing ISO certification requirements, but we need to finalize the metamodel first
Savita mentioned the IEEE P2145 blockchain governance work and the governance framework matrix
Also Paul mentioned https://www.trustregistry.org
ToIP Governance Metamodel Companion Guide (GMCG) – The document has been edited by Victor, Sankarshan and a few others. @Drummond Reed still needs to complete his review. Karen has started her deep scrub and should coordinate with @Drummond Reed on the timing of when she needs to complete her review. This document should be ready for GSWG approval at the next Plenary in four weeks’ time: https://docs.google.com/document/d/1oRJicF_FH1RdUoQgpYVl5-d0gJUYBeNfkBZboozj8eg/edit#heading=h.g0ovbls9bf67
ToIP Trust Assurance and Certification (TAC) Controlled Document Template – I have completed a first draft and will be presenting it to the Trust Assurance Task Force on Friday. https://docs.google.com/document/d/1_5cSBGzsWTAQ8UOnMB7sadjWS6UnwKCQEmYjJF5RFwU/edit#. I was not sure we specified this as a Working Draft so it needs to be entered and approved by the GSWG as a working draft
ToIP Trust Assurance Companion Guide - I am working feverishly to complete a first draft and will be presenting it to the Trust Assurance Task Force on Friday. Here is the link: https://docs.google.com/document/d/1Vy8KoM7nm8p5gFOYu1YiTBtsXrtagtomN2nTC12eCAM/edit#. This document repurposes the ToIP Trust Assurance Primer which was approved as a working draft.
Report on other deliverables from @Scott Perry
ToIP Trust Assurance Criteria Matrix Template – This has been approved as a working draft but I have not done much except for obtaining the Sovrin Criteria Matrix as a model to sanitize.
ToIP Trust Assurance Criteria Matrix Companion Guide – This has been approved as a working draft but has not been started. I should have a draft in two weeks.
Report on other deliverables
ToIP Governance Architecture TSS — @Drummond Reed
Design Principles for the ToIP Stack — @Drummond Reed & @Victor Syntez
Planning for next meeting: July 1 Special Topic call
Proposal: full one-hour review of the ToIP Governance Metamodel and its Companion
Review of decisions and action items