Skip to content

Security 3.23 Tracking issue Sprint 1

Created by: chayim

Plan

Goals:

  1. Deploy Vault in dogfood and migrate several tokens Team Goal #2
  2. Collect dogfood stackdriver, and Cloudflare logs Team Goal #1

Availability

Sprint is from 2020-11-21 to 2020-12-05 Duration is 10 days

Chayim: 8 days - Nov 24 (conference), Dec 1 Elizabeth: 7 days - Nov 26,27 + Dec 4

Tracked issues

@unassigned

Completed

  • (🏁 34 days ago) sourcegraph/security-issues (#124) 🔒

@ElizabethStirling: 12.00d

  • Team Security Tracking: RFC249 Secret Management Tracking (#15452) 12.00d
    • (🏁 21 days ago) Buildkite secrets are located and enumerated (#15453) 1.50d
    • (🏁 22 days ago) Create and configure Hashicorp Vault for testing purposes (#15885) 4.00d
    • (🏁 12 days ago) Document security requirements for production Vault (#16249) 3.00d
    • (🏁 21 days ago) K8s deployment secrets located and moved to Vault (#16251) 2.00d
    • (🏁 12 days ago) Infrastructure secrets located and enumerated (#16252) 1.50d

Completed: 12.00d

  • (🏁 22 days ago) Create and configure Hashicorp Vault for testing purposes (#15885) 4.00d
  • (🏁 21 days ago) Buildkite secrets are located and enumerated (#15453) 1.50d
  • (🏁 21 days ago) K8s deployment secrets located and moved to Vault (#16251) 2.00d
  • (🏁 12 days ago) Infrastructure secrets located and enumerated (#16252) 1.50d
  • (🏁 12 days ago) Document security requirements for production Vault (#16249) 3.00d

@chayim: 8.00d

  • Centralize dogfood WAF logs into Elastic (#15980) 2.00d

Completed: 6.00d

  • (🏁 29 days ago) Campaigns security review (#15983) 1.00d
  • (🏁 27 days ago) Complete SOC research (#15985) 1.00d
  • (🏁 16 days ago) Determine how to centralize dogfood stackdriver logs into Elastic (#15981) 2.00d
  • (🏁 16 days ago) Test logstash nodes for dogfood log gathering (#15982) 2.00d

Legend

  • 👩 Customer issue
  • 🐛 Bug
  • 🧶 Technical debt
  • 🎩 Quality of life
  • 🛠Roadmap
  • 🕵Spike
  • 🔒 Security issue
  • :shipit: Pull Request