-
Notifications
You must be signed in to change notification settings - Fork 10
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
R24.03 Trace-X - Release Checks #506
Comments
Hello @vialkoje Documentation: Docu Thank you very much |
@kelaja please update the status based on the following information:
fyi @jzbmw |
@wjost, |
For Release R24.03 we do not support Targus-Release auf GXDCH. Hence „Gaia-X compliance“ is still on the level of R23.12. I confirm this release is GAIA-X compliant. |
Interoperability checksPreparation for Business Hour 19.2.2024 17:30 - 18:15 |
Threat Modeling Analysis passed@pablosec @scherersebastian |
Data Sovereignty checks performed@vialkoje @cwBMW |
Date: 14.2.2024 Static Application Security Testing (SAST) scans passed
Dynamic Application Security Testing (DAST) tests passedBackendSecret Scans passedSoftware Composition Analysis (SCA) passedVeraCode@klaudiaZF @ZFLokesh @RoKrish14 @Tim.herres
Container Scans passed
Infrastructure as Code (IaC) scans passed |
proposed mitigation for all three medium findings |
SCA: Approved |
My first round of checks have been completed here. I've opened 2 small issues that needs fixing before I approve the QG. |
Expert Approval granted - documents existing and looking consistent |
INT test performed/documented. |
As the PO i assure that in this minor release there have not been changes regarding interoperability to a earlier version |
Secret scans pending |
Hello @DnlZF |
Secret scans: approved |
I'm done with the QG checks, all issues have been fixed, I approve it. |
Hello @jjeroch , |
Security Assessment Process (Threat Modeling Analysis) approved. No significant changes detected since last release. Documentation of the assessment will be moved out to the GitHub repositories of the Products before the next release. |
DAST: Approved For below approval, based on discussion with @ds-mmaul and @ds-mwesener - |
pre-conditions all fulfilled; |
Release Info
Please provide information on what you want to be included in the Eclipse Tractus-X release.
If you are not owner of this issue, please provide the information as comment to the issue.
Version to be included in Eclipse Tractus-X release:
Helm Chart Version:
1.3.28
App Version:
10.3.0
Leading product repository:
Compliance Verifications
This issue tracks all compliance related checks, that need to be performed for a product release in Eclipse Tractus-X.
Documentation
Security Checks
General Checks
Test Results
Helpful Links
The text was updated successfully, but these errors were encountered: