Notes for PMA Meeting on August 20th, 2015 Present at Meeting

advertisement
Notes for PMA Meeting on August 20th, 2015
Present at Meeting: John Krallman, Angel Carter, Mike Anderson, Russ Fenn, Susan Brooker-Gross, William
Dougherty, Karen Herrington, Trung Nguyen (Jerry), Mary Dunker, Pat Rodgers, Brian Broniak, and Tommy
Regan
1) Replacement for three members
a. Russell Fenn was nominated and present –Approved by acclamation, Discussion ensued
regarding several other potential members. The chair was tasked with contacting the
nominated individuals to see if they were willing to serve.
i. (Subsequent to the meeting and after gauging interest, an e-mail vote was taken. Marc
Debonis and Claire Gilbert were elected to fill the other two open positions.)
2) Results from GlobalSign’s CAB Forum Self-Audit
a. Proposed GQSCA CPS changes- should be review annually
Minor changes-mainly the version of the Baseline Requirements and adding the new SHA256 certificate.
i. Changes in version 0.10 (publication date: 6/18/2015) with respect to new SHA-256 CA
1. 1.0 Introduction-Change to version 1.3.0 of the Baseline Requirements
1.1.1 Certificate Naming-Add the new SHA-256 Virginia Tech Global Qualified Server
CA serial number
2 CA serial number
6.1.5 Key Sizes-Add SHA-256
7.1.33 Algorithm Object Identifiers-Add SHA256 with RSA Encryption
**Motion and a Second to accept changes - Motion Passed
b. Current contract with GlobalSign will be up in November - renew or get a new contract?
i. We need to renew this year, but decision needs to be made for next year.
3) Overview of HSM (Hardware) migration (key migration process document)
Walk through of the Keys migration process by Mike Anderson – see the Key Migration
Process Document that was sent out with the agenda. The old system is out of support and
cannot be upgraded.
Migrate the keys first - new key chart was updated adding the following key holders:
William Dougherty, Brian Broniack to be black key holders
The new keys and process to migrate from the old system to the new system was explained
by Mike Anderson.
a. Request approval to move ahead with two Key Ceremonies
Date?-TBD as schedules permit. Key holders asked to make calendars available for ease
of scheduling these key ceremonies.
b. Discuss and agree to production date- this should be held as soon as possible.
1/ Randy Marchany and an auditor
2/ Root CA with 3 0f 6 black key holders (ask an auditor if they should be present).
3/final date to turn in all keys
**Motion to adjourn-Seconded
Download