Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

This deliverable is due in month 20 of the AARC project. 

 

document provides homogeneous, scalable security incident response procedures to ease collaboration in the event of a security incident impacting multiple, distinct organisations. This capability has been identified by Research Communities as a prerequisite for the widespread adoption of federated identity management. To support the procedures, this document contains background information on the concepts and processes required for security incident response in a federated environment.

The It is expected that the Sirtfi framework will form the basis of such a procedure. Feedback will be sought from the AARC Project and the REFEDS community.; the Sirtfi mechanism and consultation model are (briefly) recapitulated in this document, and the same model will be used to obtain a global rough consensus on security incident response for federated incidents.

The document contains a detailed proposal for coordinated response: this model should be considered as the basis for discussion in the REFEDS Sirtfi group. It is based on experience with handling actual incidents, and as such contains detailed recommendations. Yet it is also meant to be open for discussion as the global community participates in the endeavour.