ietf-rats-wg / architecture

RATS Architecture
Other
16 stars 10 forks source link

RD AD review: what is record maintenance #354

Closed mcr closed 2 years ago

mcr commented 2 years ago
** Section 2.1
   Network operators want a trustworthy report ... for purposes such as    inventory,
   audit, anomaly detection, record maintenance and/or trending reports
   (logging).

-- This seems like a list of unlike things - inventory and audit are activities.  Anomaly detection and trending reports are a technique for multiple purposes - is this better captured with a term like security operations?

-- What is "record maintenance"?  Isn't that the same as inventory or asset management?
henkbirkholz commented 2 years ago

I liked the list of specific things, but I agree with your assessment that these were rather unlike things and could have been phrased better. New proposal for now captured in https://github.com/ietf-rats-wg/architecture/pull/353/commits/63ccfed3fa2e2ae6b89de33841f631a2244d9e74:

Network operators want trustworthy reports that include identity
and version information about the hardware and software on the
machines attached to their network. Examples of reports include
purposes, such as inventory summaries, audit results, anomaly
notifications, typically including the maintenance of log records or
trend reports.