Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

eDelivery October 2022 OMB Report

...

Date: 28 Sep  

Reporting period: 20 Jul    to  27 Sep

Project Owner (PO): DG CNECT 

...

Project Manager (PM): Bogdan Dumitriu

Attendees: 

Maya MADRID (chair, MM) 

Bogdan DUMITRIU (BD)

Marcio SAMPAIO (MS)

Michal PILCH (MP)

Monika KOKSTAITE (MK)

 

Monika KOKSTAITE Radoslav JAKUB (RJ)

Olha KOSHCHIYENKO (OK)

Dragos SERBAN (DS)

 

Djamila BEN MILOUD 

Anna BUSDRAGHI Adrien GOHY (AG)

Kristof POPGEORGIJEV (KP)

Zsombor NAGY (ZN)

 

Radoslav JAKUB 

Adrien GOHY Todor TODOROV (TT)

Section 1: Project Management

Milestones Progress

Milestone

Title

Start Date

End Date

%

complete

completed

Status 

Status

Comments

Domibus
4
5.
1
0.
713/Jan/2117/Feb/21  100%

Status
colourGreen
titleCompleted

Postponed from the 12th to the 17th Feb | Upgrade specific libraries to lasts possible versions to address OWASP detected threats | fix double decompressing of payloads issue
2

 

TBD10%
Domibus 4.1.810/Mar/2122/Jun/21100%

Status
colour

Green

Yellow
title

Completed

in progress

(bug fix release
| CXF library upgrade

Release currently on hold due to a dependency with a upcoming release of a 3rd party library

Domibus 4.1.926/Jul/2129/Jul/21100%

Status
colourGreen
titleCompleted

- Fix migration scripts ongoing messages | Possibility to have a separate log containing all errors | 3rd Party libraries upgrade)
Domibus 5.1 RC

 

 40%
Security fix release | 3rd Party library upgrade | OWASP detected threats 

Domibus 4.2 RC

12/Nov/1921/Sep/20100%

Status
colour

Green

Yellow
title

Completed

in progress


Domibus
4
5.
2 FR22/Sep/2017/Dec/20100%

Status
colourGreen
titlecompleted

released on the 17th Dec, instead of the planned date of the 10th, due to a last minute detection of a bugDomibus 4.2.115/Jan/2123/Mar/21

100%

Status
colourGreen
titlecompleted

Postponed from the 29th Jan | Bug fix release -UUM&DS caching issue | Deletion policy extension fix | CXF library upgradeDomibus 4.2.225/Mar/21 26/May/21100%

Status
colourGreen
titlecompleted

Bug fix release | OWASP detected threats Domibus 4.2.323/Jul/2104/Aug/21100%

Status
colourGreen
titlecompleted

Bug fix releaseDomibus 4.2.423/Aug/2103/Sep/21100%

Status
colourGreen
titlecompleted

Bug fix releaseDomibus 4.2.5

13/Oct/21

29/Oct/21
1 FR

 

 

-

Status
colourGrey
titlenot started


SML 4.2 FR

 

 

100%

Status
colourGreen
titlecompleted

Bug fix release | OWASP detected threats 

SMP 5.0 RC

 

 

10%
Domibus 4.2.613/Oct/2117/Dec/21100%

Status
colour

Green

Yellow
title

completedBug fix releaseDomibus 4.2.726/Jan/2231/Jan/22100%

Status
colourGreen
titlecompleted

Libraries Upgrade | OWASP detected threats Domibus 4.2.815/Mar/2221/Mar/22100%

Status
colourGreen
titlecompleted

Bug fix release (https://ec.europa.eu/digital-building-blocks/tracker/browse/EDELIVERY-9051)Domibus 4.2.901/Apr/2204/Apr/22100%

Status
colourGreen
titlecompleted

Security fix release due to the Spring RCE library vulnerabilityDomibus 4.2.10-13/Jun/22100%

Status
colourGreen
titlecompleted

bug and security fix release (domain case insensitive issue | bug when Domibus accepts messages signed with key corresponding to a different party | Updated Wildfly version to 26.1.0 | Update several libraries to the latest version)

Domibus 4.2.11-24/Aug/22100%

Status
colourGreen
titlecompleted

Bug fix release 

Domibus 5.0 RC

14/Sep/20
14/Mar/22100%

Status
colourGreen
titlecompleted

Release to be postponed from 28/Feb/22 to a new date (see table)Domibus 5.0 FR1/Mar/22
7/Jun/22100%

Status
colourGreen
titlecompleted

Release to be postponed from 29th April to new date (see table).

Release postponed once again from the 31st May due to vulnerabilities detected in 3rd party libraries

Domibus 5.0.1

-

26/Sept/22100%

Status
colourGreen
titlecompleted

Bug fix release (Correct Split & Join issue | Provide support for UUM&DS X.509 identifiers in addition to EORI (Support for CESOP project))

Domibus 5.1 RC03/May/2213/Jan/2335%

in progress


eDelivery AS4 2.0 profile

 

 

70%

Status
colourYellow
titlein progress

main focus of this profile version is the upgrade to new cryptographic algorithms 
Upgrade conformance testing service

 

 

60%

Status
colourYellow
titlein progress


Migration to GITLab

 

Q4 20242%

Status
colourYellow
titlein progress


Migration to a new PKI service provider (CommisSign)

 

Q1 202350%

Status
colourYellow
titlein progress


Define new documentation model for the eDelivery sample implementations

 

 

0%

Status
colourGrey
titlenot started


eDelivery TO team transition to DIGIT TM2

 

 

30%

Status
colourYellow
title

ongoingDomibus 5.1 FR

16/Jan/23

13/Mar/23-

Status
titleNot Started

SML 4.1 Acceptance12/Oct/2018/Jan/21100%

Status
colourGreen
titleCompleted

Postponed from 10/Nov/20 to 18Jan/21 due to an important security enhancement that became possible due to a policy change at SNET level.

Security features and updates | Upgrade libraries to latest possible versions and fix OWASP threats

SML 4.1 Production release20/Jan/2116/Feb/21100%

Status
colourGreen
titleCompleted

SML 4.2 RC01/Jul/2215/Sep/22100%

Status
colourGreen
titleCompleted

SML 4.2 FR16/Sep/2214/Oct/2225%

in progress


ITSRM2 - SML service security plan

 

 

90%

Status
colourYellow
title

ongoing

SMP 4.2 RC

01/Oct/212/Jun/22100%

Status
colourGreen
titlecompleted

Use EU Login for SMP console | Upgrade libraries to latest possible versions and fix OWASP threats | Security features and updates (new release dates set)

Release postponed from the 27th May due to issues detected in the final testing stages

SMP 4.2 FR26/Jun/2130/Jun/22100%

Status
colourGreen
titlecompleted

eDelivery Access Point - e-TrustEx Backend Plugin 1.3 RC04/Feb/2229/Apr/22100%

Status
colourGreen
titleCompleted

 Security enhancement  | Support for Domibus 4.2.X | Bug fixes (Release postponed from the 31st March to 1st April)eDelivery Access Point - e-TrustEx Backend Plugin 1.3 FR1/May/22TBD-

Status
titleNot Started

To be released following the UAT to be conducted by the DECIDE project

eDelivery Access Point - e-TrustEx Backend Plugin 2.0 RC2/May/2218/Nov/2225%

Status
colourYellow
titleongoing

Plugin upgrade to support Domibus 5.0

eDelivery Access Point - e-TrustEx Backend Plugin 2.0 FR3/Oct/22TBD-

Status
titleNot Started

Plugin upgrade to support Domibus 5.0

Project Progress 

DOMIBUS:

  • Domibus 4.2.11 version released on the (bug fix and 3rd party libraries updates)
  • Domibus 5.0.1 version a bug fix release (Correct Split & Join issue | Provide support for UUM&DS X.509 identifiers in addition to EORI (Support for CESOP project)) released on the  
  • Domibus 5.1 RC development activities are ongoing.

SMP:

  • No activities foreseen

SML:

  • SML 4.2 RC released on the   
  • SML 4.2 FR activities are ongoing, release foreseen for the  

eDelivery Access Point - e-TrustEx Backend Plugin: 

  • eDelivery Access Point - e-TrustEx Backend Plugin 2.0 RC (Plugin upgrade to support Domibus 5.0) activities are ongoing.
  • Due to operational issues, it has been requested to equate the implementation of several RfCs by the EUSEND support team, if the confirmation from SecGen is received the work on version to 2.0 will be put on hold, and the RfCs implementation will be initiated. leading to a 1.3.4 version of the plugins.  Version 1.3.4 estimated conclusion date would be the and 2.0 would be pushed to mid-January.

eDelivery Conf testing platform:

  • PoC  in the context of the migration from the current custom build conformance testing platform to the EC GITB (generic interoperable test bed) platform concluded. 
  • Required customizations for the execution of the eDelivery AS4 conformance tests in the EC GITB implemented.
  • Migration of the existing test cases to the new EC GITB platform ongoing.
  • Recreation of the current conformance testing setup in the GITB platform expected to be concluded by the  

Section 2: Evolutive Maintenance

Change Requests

Image Removed

Release Calendar 

eDelivery 2022-2023 roadmap

Section 3: Support Office

Incident Management :

Image Removed

 In terms of created tickets and JIRA’s, we see that August 2022 is similar to July 2022. The higher number of handled and resolved tickets is due to the fact that SO worked on the backlog of tickets in August 2022.

Image Removed

in progress



Overall Project Progress 

Project team

Contractual

    • New contracts under DIGIT TM II FWC
      • All requests sent
      • First contracts were signed, majority still underway (on track for December 2022, when current contracts expire)
    • New contracts under DG COMM FWC signed for SMCO team
    • BEACON procedure launched for SMCO work in 2023

Organisational

    • Entire eDelivery team met on site on and  
    • Testing team missing two resources. One new junior candidate selected who will start on , further interviews planned
    • SMCO team now complete
    • Technical writer started on

Technical

Specifications: eDelivery AS4 Profile

    • Proof of concept for new cryptography completed, reviewed by expert, new approach validated
    • Profile update pending availability of expert

Software product: Domibus

    • Domibus 4.2.12: activities initiated. This bug fix release tackles several reported minor bugs.
    • Domibus 5.0.2: activities initiated. This bug fix release tackles several reported bugs (mostly minor, one more significant), 3rd party library upgrades and the inclusion of some minor additional features.
    • Domibus 5.1 RC: development activities are ongoing and on schedule. Support for different security certificates for signing and encryption completed.

Software product: SMP

    • SMP 5.0 RC: development activities initiated.

Software product: SML

    • SML 4.2 FR released on the .

Software product: eDelivery Conformance Testing Platform

    • Required development for the execution of the eDelivery AS4 conformance tests in the EC GITB concluded
    • Configuration customizations for the implementation of versioning for the different test suites and specifications in the platform ongoing
    • Migration of the existing Test Suites to the new EC GITB platform ongoing
    • The eDelivery Connectivity Testing Service will also be migrated to the same platform

Service: PKI Service

    • All active projects signed new GTC
    • Around 300 certificates left to migrate

Service: SML Service

    • SML 4.2 installed in the SML Service on

Onboarding & Communication

    • Once-Only Technical System confirmed as data space (and using eDelivery)
    • Meetings with OpenPeppol show renewed openness for collaboration, but no clear intention of full alignment with eDelivery standards. Follow-up discussions and participation in OpenPeppol 10-year anniversary conference to follow.
    • eDelivery-EHDS collaboration proceeding smoothly (MoU without financial contribution to be signed soon)
    • 2nd eDelivery newsletter sent, one webinar organised, social media accounts created

Compliance

    • SML Service ITSRM2 Security Plan in ARES. GovIS2 updated and implementation of security measures underway
    • Privacy policy for SML & PKI Service finalised and published

Miscellaneous

    • eDelivery software unaffected by Apache Commons Text vulnerability
    • Technical writer onboarded: preparing fundamental changes on how documentation will be handled, with the medium-term objective being to redesign the Domibus Admin Guide.
    • Meeting with eID team to discuss the EU Trust Dashboard that allows the configuration of eID nodes. This could be interesting to explore for eDelivery network management, but there is a concern about overlapping with dynamic discovery. (This tool allows admin to upload configuration/certificates to the participant nodes in a network.)

...

Section 2: Evolutive Maintenance


Change Requests

Jira
serverCEF Digital Tracker
columnIdsissuekey,summary,issuetype,created,updated,duedate,assignee,reporter,priority,status,resolution
columnskey,summary,type,created,updated,due,assignee,reporter,priority,status,resolution
maximumIssues20
jqlQuerykey in (EDELGOV-51, EDELGOV-76, EDELGOV-88)
serverId0efbb216-d112-3760-b195-d6de284e38c7

Release Calendar 

Image Added


...

Section 3: Support Office

  • Intensive support to European Parliament team using Domibus to exchange data in the legislative decision process. Issue resolved after two weeks.

Incident Management:

SMT - workload details:

Image Added

More SMT tickets were opened and handled due to the high number of requests to renew/issue PKI certificates in September 2022. There were also a lot of questions from users on how to install the new certificate with keystore and truststore.

Email interaction:

For eDelivery, received mails were related to:

  • Requests for AS4 connectivity test with Keskus, Micerium Spa
  • Conformance testing request for Descartes: added Descartes as conformant solution on AS4 solution page of Digital site
  • Requests for AS4 connectivity test with Cyprus post, Onnera
  • Conformance testing request for Descartes
  • List of Peppol participant ID’s sent to Peppol
  • GTC’s for CommisSign certificates were signed to all domains, except for the 2 following ones: SE-DIGG and TOOP. TOOP confirmed the project is end-of-life.
  • Change of SML authentication method for EESPA and DE4A
  • Questions from users: Domibus (messages not displaying in Admin console, Domibus upgrade and migration script from 4.2.0 x to 5.0 , Domibus & 5.0 installation with MySQL.1, question on Pmode, WS plugin), SML/SMP (participants registrations update, SMP certificate update, SMP 4.2 version installation, question on migration of 3000+ Peppol-Participant-IDs on the SMK to another SMP), BRIS (PKI certificate), DE4A (PKI certificates), ECDB (PKI certificate renewal, issue with keystore/truststore installation for PKI certificate), PCN (PKI certificate request), EDELGOVCY (PKI certificates), CiXP (certificate requests), EUDAMED (certificates request), IRI EUCEG (PKI certificates requests), EUCEG UDB (PKI certificates), TAPAS (scheduled archive batch does not work properly, high CPU consumption issuefake EO onboarding, dropdown wizard statistics, cron issue with Domibus 5.0)
  • There was a total of 641 1101 emails in the FMB. We have removed 63 64 emails for SML Inconsistency, 75 64 Run deck automation, 12 43 from xmatters, 30 72 emails from T-systems PKI Commissign from the count, which makes a total of 461 922 received mails for the reporting month.

Image Added

PKI:

Image RemovedImage Added

In August September 2022, 55 60 certificates were issued: 1 UDBDECIDE, 1 EUDAMEDPCN, 5 6 CiXP, 12 DE4A, 1 PCNECDB, 1 EUCEG, 1 ECDBEUDAMED, 33 BRIS - none 37 BRIS, 12 DE4A. 1 CiXP certificate was rejected.

...

Operations management:

...

SML – Availability:

Image Added

The full availability report is published on the web site of the SML Service, in the last section.

...

Operations management:

Image Removed


...