2026-03-03 - ACCESS EC Meeting Agenda & Summary
Attendees:
RAMPS/Allocations: Bruno Abreu (v), Nathan Tolbert
MATCH/Support: Shelley Knuth (v), Alana Romanella, Jim Griffioen
CONECT/Operations: Tim Boerner (v), Leslie Froeschl
MMS/Metrics: Tom Furlani (v), Joe White
RP: Eric Adams (v), Virginia Trueheart
EAB: Chuck Pavloski
OpenCI/ACO: John Towns (v), Amit Majumdar, Misha Shah, Lisa Kaczmarczyk, Shannon Bradley
NSF: Sharon Geva, Ed Walker
Speakers:
Parking Lot
No Meeting on Mar 10, 2026
Decisions made during the meeting:
Use Decision Macro - Tool (under Insert Elements in the toolbar)
- Approved: Policy NSF request regarding restricting users from non-authorized countries - ready to implement as long as we move to remove users who have non institutional emails now
Agenda
Consent Agenda - Updates for the team that should be completed/read offline
If possible, please fill in this info prior to the meeting - thank you!
Consent Agenda - @Tom Furlani (5 mins)
Approval of summaries from prior EC meeting - https://access-ci.atlassian.net/wiki/spaces/ACP/pages/1987149825
approved
Informational Items
Link to ACCESS swag shop - https://dixon-graphics.com/access-ci/shop/home
Allocations - @Bruno Abreu
no updates
Support - @Shelley Knuth /Alana/Jim
AI workshop that happens in June - registration open for a few more days - over 400 applications and 20+ proposals to speak - may need to have a virtual option for this one
deadline 3/9/2026
Tool Development
Operations Tim/Leslie
no updates
Metrics @Tom Furlani @Joseph White
no updates
RP Forum @Eric Adams (RCAC) @Virginia Trueheart
already covered in the meetings
with all of the unknows trusting we can work together to work it out
they will have responses to the international requirements
EAB @Chuck P
Waiting on report from EAB Chair from the ACCESS Meeting on Feb 17, 2026
Need to filter down old issues ASAP in order bring closure to them https://access-ci.atlassian.net/browse/ATT-219
report as needed back to the EC Leads
ACO @John Towns
wrapping up quarterly and EAB meetings
NSF - Sharon and Ed -
no updates
Standing Committee Updates - EC Liaison - (Chuck lead)
https://docs.google.com/document/d/1pNfsXwr7640_7zk03mJu2jDUqDAsG37fOezlqNYcX0E/edit?usp=sharing -
Communications Standing Committee
no report
Cybersecurity Standing Committee
Did not meet since last EC meeting; nothing to report.
Evaluation Standing Committee
no report
Infrastructure Standing Committee
no report
Ticketing Standing Committee
no report
Web Presence Standing Committee
no report
Data Architecture WG (Proposed)
no report
Milestone Review: (Link Below)
EC Meeting To Do / Follow Ups: (Link Below)
Reminders
don't forget to review Engagement Tracker and Risk Register Review
create a ticket if you have anyone onboarding or offboarding and need access permissions set properly
Additional Agenda Items
Update on NSF request regarding restricting users from non-authorized countries (Bruno, Nathan)
Nathan and I will go over the plan with you all today. Here's what we have so far if you want to check it out:
Asked NSF for clarification - they said it was up to us - but they have no flexibility to what they provided
Any international user that needs to be added moving forward - it will be done by Allocations - it cannot be done by a PI
NSF wants to know beforehand - they want to know why they want the allocation
We need to build the framework
Amit - if the machine has a user outside of ACCESS user that is wrong
all user management HAS to come thru ACCESS
RP has to have their own screening progress but it still has to be screened through ACCESS
AUP language needs to be updated - Cybersecurity Guidance Council
Tom - if someone applies for an allocation and they have an international users
we have to request name, email and affil, justification and ACCESS ID
then a request comes to ACCESS team
and they review
What if someone changes institution
had a US institution and then moves
We need to catch those - need to put them in the document
will need to catch on renewals - they will need to be caught
Tom - how will you define someone as a visiting researcher
they have an illinois account
but is actually an international user
definition - exclusively international
John - there are a bunch of international people who have an illinois email that last a long time
Bruno - yes this is an identified risk
John - how do we prevent an RP from adding a user - just telling them to not do that might not work
Nathan - we can yell at them but we have no way to prevent them
John - we will have unknown user records - Sharon should keep this on their radar
Virginia - at TACC we make PIs responsible for those who are on their account - and they don’t have a way to shut off a subset of allocations on discretionary accounts
John - letting Sharon and Ed know that this is something they need to know
Tom - it will not look good if we say we can’t control it - the RP did it - from the US government’s position you guys are ultimately responsible - why should we fund you if you can’t control your systems
We need to have a system that is as iron clad as we can
Eric - this was brought up in the RP forum a lot - Bob brought this up there as well - RPs have the same responsibilities - Access does not have systems - ACSS monies paid for the systems - ACCESS doesn’t have the control - but if we do find out we can turn off access but this is a dangerous path to go down - Regardless of what ACCESS does the RP does have to take their own steps
Amit - PIs did get email from Bob C - they have to follow requirements which were sent by Sharon and Bob - both ACCESS users and discretionary users
Tom - so when a PI wants to add a user - it gets vetted twice
Amit - yes - and the discretionary ones are only vetted once but they should go thru a similar vetting process
Consistent definition of active users between RPs and ACCESS - the only way we can guarantee that is if we collaborate - the user list should agree between both sides
John - safety check - if you get an unrecognized user what happens -
Joe - if they find unknown mappings - they should be able to identify some of them - they only get post usage from some sites (like sdsc)
Virginia - they have started running a nightly audit to find mismatches to send to ACCESS
Tom - last week we talked about working from the same list
Bruno - it is not feasible to get a single list - what RPs are being told and what ACCESS is being told is slightly different - ACCESS is being told to create a whole international framework - not just a manage people on a certain list
Virginia - NSF was to disallow gmail accounts
Nathan - for old ones we have not removed people - new requirement is annual recertification for international - we are thinking of doing for all and then they won’t be able to use gmail
Sharon - you can’t verify anything with a gmail these days
Nathan - removed or correct the profiles
Bruno - people can still add international users until the next review cycle? should we stop this before the review?
Shelley - agrees with Tom - if there was an article in the news paper about this - could we defend it? Concerned if we are using email and only checking it 1x a year this could cause a problem - this does not correct the problem - ACCESS will be in a heap of trouble
Tom - we have corrected some of the problem - but we need to do more now
Bruno - we have over 700 people who are international that we can disable right now - is that what we want to do - is this good user support?
Per Joe looks like ~1300 users who have run ACCESS jobs in the last year who have a gmail, hotmail aol, or yahoo address
Plus the ones that don’t match a known institution
Shelley - we can probably do it better than just flipping a switch
Virginia - at TACC they took 2 weeks and publicized it all over - for the most part they only had 10 tickets with issues immediately - they reminded everyone - with preemptive communication it is not as bad as it could be
Nathan - it does make sense to just deactivate now
Tom - it is not owed to them to have access - we just need them to verify and follow the rules - just trying to protect the program
John - agree - we just need to rip the bandaid off
Thank you to Bruno Nathan Virginia and Eric
Previously it was just countries of concern - now it is all international
Bruno - we have to have approval to run plan as it stands
Tom - as long as we are turning off gmail and things now yes
all the rest yes
EAB Meeting review and any next steps (Chuck)
raw meeting notes: https://docs.google.com/document/d/1X_nTv84tI7af0suIQw0SNLRPcQ1T7ognN9m1zJPopII/edit?usp=sharing
waiting for report from Nitin (has until March 17th)
report is then shared with EC with specific action items highlighted
action items are then added to the https://access-ci.atlassian.net/browse/ATT-219
What are we planning for PEARC?
Tom was looking into PEARC sponsor Level - ATT-215
Support for PEARC26. The support of our exhibitors helps drive our conference forward. The Exhibitor Sign-up sheet is at
https://forms.gle/NCxFG64tfJBbjKM2ASupposed to be in Minneapolis - there is some angst
Standing Committee Reports
are there any? - not this week - Chuck
Discussed offline - FYI
Process for new people questions
It looks like there are two people who were possibly new in August and September of 2025. Shannon sees request for access to JSM. Do they have access now?
This is why the proposed - make a ticket and assign it to Shannon would help so much. I don’t remember getting notified of these.
RESPONSE FROM TICKETING SYSTEM TEAM: We denied these requests. Any requests for ticket handling access by any ACCESS team or RP should be submitted as a ticket at https://support.access-ci.org/help-ticket. Shannon should NOT be approving JSM access. The ticketing team handles these requests 1) to allow us to vet requests and ensure the person indeed should have JSM access, and 2) to ensure we grant the person correct permissions to the correct ticket queue(s).
Next Meeting: Mar 17, 2026
LINKS
Program Milestones
EC Meeting Task Tracking + Quarterly and Annual Meetings To Do Follow Ups
Reference:
Risk Register:
Project Change Request: