User Tools

Site Tools


eg-app-fw

This is an old revision of the document!


Application Framework and Security Expert Group

The Application Framework and Security Expert Group is responsible for the requirements, architecture and design of the following topics within AGL.

  • Application lifecycle (install, run, remove, applications)
  • SDK and application developer experience both in security and APIs
  • Network and vehicle firewalls in conjunction with the Connectivity EG
  • Software Update and secure update
  • Diagnostic log and trace
  • Secure boot
  • Security framework (SELinux, SMACK, AppArmor, etc.), policies, and strategy for the distribution

Members

FIXME Identify Team Lead for coordinating team meetings and representation to the SAT

  • Jose Bollo - Renesas / IoT.bzh
  • Jens Bocklage - Mentor
  • Alex Vaduva - Mentor
  • Ryota Okube - Toyota
  • Risto Avila - Qt Company
  • Ned Miljevic - Wind River
  • Tadeo Tanikawa - Panasonic

Roadmap

  • Current Status
  • Goals for upcoming releases
  • Requirements Spec updates?

Activities

NICHOLS, PAUL W (to Organizers): Can you make me the presenter?

NICHOLS, PAUL W (to All): Application Security access should be defined by registration, policy management, and onboarding/deployment process, IMHO

Bocklage, Jens (to All): +1

Vaduva, Jan-Alexandru (to All): +1

NICHOLS, PAUL W (to All): I agree with the security specs documentation and defining precisely the areas of concern AGL is going to be covering. For instance security around device integration (hardware and software) as well as BUS access protection is becoming increasingly important to OEMs. This is especially true since more network channels and access points are exposed in order to provide many of the services the Connected Car is going to be required to support (for instance, core Telematics,Infotainment, Wi-Fi and beackseat devices). Part of this protection is OS specific, but part of this is going to be incumbant on the Cellualr providers.

Bocklage, Jens (to All): so how do we manage to keep the security approach/component exchangeable? Do we need a fixed API?

Ryota Okubi (to All): I think it is too early to mix application framework and security framework. because security is very wide. security scope is not defined in AGL yet. so we need to discuss.

NICHOLS, PAUL W (to All): +1 with Ryota

Bocklage, Jens (to All): and maybe we do have enough members in this group now to split it (into App manager and security)? Can we assign people to app manager and/or security in this expert group?

Ryota Okubi (to All): I agree with Tanibata-san.

eg-app-fw.1455890706.txt.gz · Last modified: 2016/02/19 14:05 by wminer