Release 4.7 Review Sep 8th 2016
Sprint Resource Pages For past sprint, visit: NHINProgress/Sprint+191+Progress+Summary NHINProgress/Sprint+191+Progress+Summary For next sprint, visit: NHINProgress/Sprint+192+Progress+Summary NHINProgress/Sprint+192+Progress+Summary For complete information on the CONNECT 4.7 visit: CONNECT4/CONNECT CONNECT4/CONNECT+4.7 2
CONNECT (September ) Upgrade to Hibernate 5.1 Final from (CONN-1642) –As a CONNECT adopter (VA), I want CONNECT to be upgraded to the latest version of Hibernate so that my implementation is compliant with VA requirements and for security reasons. Update regression/automated environment to WildFly (CONN-1652) –As a CONNECT Developer, I want to migrate the automated test environment and regression test suites from GlassFish server to the WildFly since GlassFish is no longer supported Bug fixes – Event Logging Partner/Community support –FIPS support/WildFly –Forums 3
CONNECT Hibernate upgrade Upgrade to Hibernate 5.1 Final from (CONN-1642) –Research, considerations and design are here - NNECTWIKI/Hibernate+Upgrade+from GA+to Final NNECTWIKI/Hibernate+Upgrade+from GA+to Final –Updated Hibernate jars (updates include pom files, hibernate mapping and configuration files, java source code and junit test updates) –Updated deploy scripts for WebLogic, JBoss and WildFly and provided instructions for WebSphere and completed testing on supported application servers 1 –Fixed SonarQube and Fortify issue found 1 Although Glassfish is no longer a supported server with the release of CONNECT 4.7, however Hibernate upgrade was tested on Glassfish server as community courtesy and configuration required for Glassfish are detailed in CONNECT wiki 4
55 Application Servers Configuration Required CONNECTSystem Administration Module (SAM) WildFly Final No 1 No Jboss 7.1.1No WebLogic No WebSphere No Yes 2 1 Hibernate Upgrade is seamless and all the necessary configurations are part of ear and war 2 Prior to 4.7 System Administration Module deployment on WebSphere require some configuration through WebSphere Admin Console. With Hibernate upgrade in 4.7, one new configuration and some dependent jars are introduced to System Administration Module. More information on this is available at CONNECT Hibernate upgrade Application Server specific configurations associated with Hibernate upgrade (CONN-1642)
CONNECT 4.7 – Infrastructure updates Updating regression/automation environment to WildFly (CONN-1652) –Implemented WildFly plug-in to Maven Leverages existing configuration and minimal impact on codebase. No additional JUnit tests as compared to Arquillian. Easy to upgrade versions of WildFly –JMX configuration and integration into CI complete –Jenkins/CI and regression scripts updated –Implementation documentation updated: – –FIPS implemented successfully on WildFly-8.2.1:
CONNECT Security/scans Security scans –SonarQube - All critical and blocker issues addressed Integrated GitHub plugin to detect code quality before merging any pull request (PR). –Fortify - All Critical, High, Medium and Low Cat1 issues addressed –System Administration Module (SAM): Upgraded from SHA1 to SHA2-512 Addressed Session Fixation Implemented Http Header Injection security
Release 4.7 Documentation Release 4.7 –Release Notes CONNECT4/4.7+Release+Noteshttps://connectopensource.atlassian.net/wiki/display/ CONNECT4/4.7+Release+Notes –Release Testing CONNECT4/4.7+Test+Plan+and+Release+Testinghttps://connectopensource.atlassian.net/wiki/display/ CONNECT4/4.7+Test+Plan+and+Release+Testing –Installation Documentation CONNECT4/Installing+CONNECT+4.7https://connectopensource.atlassian.net/wiki/display/ CONNECT4/Installing+CONNECT+4.7
Other support tasks last sprint Connectopensource.org migration – Research on TLS issue (CONN-1683)– – play/CONNECTWIKI/NIST+TLS+Protocol+Upgrade+ Requirementshttps://connectopensource.atlassian.net/wiki/dis play/CONNECTWIKI/NIST+TLS+Protocol+Upgrade+ Requirements
Questions or Discussions? 10
Sprint Proposed Themes Development / Community Support Sprint 192 themes –Release demo –Update CONNECT_integration branch –Review security scans Support OP&P 11 CONN
CONNECT 4.7 (Released Sep6 2016) Release Notes – Binaries – Installation Documentation – Release Testing Documentation – Source Code – 12
Stay Connected, Communicate and Collaborate Find out more about FHA CONNECT on the ONC website: Schedule a meeting with me or send me your thoughts at: Subscribe, watch, Federal Health Architecture 13