aboutsummaryrefslogtreecommitdiffstats
path: root/source/tac/cy24audit.rst
blob: d8f556eddd4bde5907e816128725cfc1dc6618e4 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
CY24 Technical Audit
======================

The CTI TAC will conduct an annual technical audit of the services
provided to ensure that the services in use continue to meet the
technical requirements of the community.

The audit will cover:

  * Reviewing that services cover the current requirements, including any security requirements.

  * Reviewing that the services are being provided using FOSS.

  * Reviewing the cost of all services currently being provided.

If prices have increased or services are not being provided by FOSS
that will be noted in the public report and actions will be taken
by the TAC to discuss these with the community and current service
provider.

Service Audit
=============

* Video conferencing services

    * Service uses `BBB <https://github.com/bigbluebutton/bigbluebutton>`_
      which is FOSS and LGPL-3.0 licensed.

It was raised by Ian Kelling that the current BigBlueButton conference service
currently has a `dependency on the non-free MongoDB <https://lore.kernel.org/cti-tac/87v846a1zi.fsf@fsf.org/>`_.
The upstream BigBlueButton developers intend to remove the dependency on this
non-free component, but that work has not yet completed. As part of the CY24
audit we should discuss what actions CTI will take regarding this issue since
we require that all services should be implemented with free software. The
best outcome would be to remove the dependency on MongoDB, but that needs to
be discussed with the broader FOSS community to see if we can help prioritize
or support that work.

-----------------

* :ref:`genindex`

* :ref:`search`