public-webauthn@w3.org from April 2019 by subject

04/03/2019 W3C Web Authentication WG Meeting Agenda

04/17/2019 W3C Web Authentication WG Meeting Agenda

04/24/2019 W3C Web Authentication WG Meeting Agenda

[w3c/webauthn]

[w3c/webauthn] 07b58d: Point out that isUVPAA example ends if isUVPAA ret...

[w3c/webauthn] 12cd06: Accept suggestions from @equalsJeffH

[w3c/webauthn] 1392e5: Built by Travis-CI: 49fe1bb791362c271b95573924aad7...

[w3c/webauthn] 175d9f: Clarify user identification in RP assertion verifi...

[w3c/webauthn] 191e67: Linked attestation statement format term in Sectio...

[w3c/webauthn] 25edba: Built by Travis-CI: 5d11e6255b85665d9faa8763e1de8c...

[w3c/webauthn] 2a2547: Address review comments by @selfissued

[w3c/webauthn] 34d410: Built by Travis-CI: 2a68f5484246ddd44bb98c9a25568f...

[w3c/webauthn] 42530c: Built by Travis-CI: 5d11e6255b85665d9faa8763e1de8c...

[w3c/webauthn] 486eb7: Note that appid should be set to the previously us...

[w3c/webauthn] 61067a: Built by Travis-CI: 49fe1bb791362c271b95573924aad7...

[w3c/webauthn] 63640b: Fixed various links, including new TR link

[w3c/webauthn] 7fe7c1: Address review comments by @selfissued

[w3c/webauthn] 88695f: Allow authenticators to do None instead of Self at...

[w3c/webauthn] a946a0: Created linkable definition for WebAuthn Extension...

[w3c/webauthn] b89403: Revert change to new TR link

[w3c/webauthn] cdf508: Built by Travis-CI: 2a68f5484246ddd44bb98c9a25568f...

[w3c/webauthn] de1b96: Built by Travis-CI: d76ddf59892c12087b18399b89bb95...

[w3c/webauthn] f1b55b: Update isUVPAA() scenario to agree with spec

[w3c/webauthn] fa8810: Built by Travis-CI: d76ddf59892c12087b18399b89bb95...

[webauthn] add notion of "enterprise" attestation (#1147)

[webauthn] Add some embellishments to @equalsJeffH's suggestions (#1203)

[webauthn] Added TPM verification clarifications (#966)

[webauthn] Allow authenticators to do None instead of Self attestation (#1182)

[webauthn] Authenticators that do not recognize any handles shouldn't just be dropped on the floor (#863)

[webauthn] Clarify 127.0.0.1 in spec (#1204)

[webauthn] Closed Pull Request: remove "required" from PublicKeyCredentialDescriptor.id

[webauthn] Created linkable definition for WebAuthn Extensions and linked to it … (#1193)

[webauthn] explicitly mention running over TLS in WebAuthn API intro (#1201)

[webauthn] finish up on "provide transport info during registration" (#1188)

[webauthn] Fixed various links, including new TR link (#1161)

[webauthn] How do I use a smart phone as an authenticator when the web application is running on a laptop/desktop? (#954)

[webauthn] How to get supported client extension (#1199)

[webauthn] Indicate resident key credential "preferred" during registration and find out what the authenticator offered (#991)

[webauthn] Initial proposal for modifications to resident key credential requirements (#1191)

[webauthn] Integrate with Feature Policy or Permissions and define appropriate identifier value for WebAuthn (#911)

[webauthn] Linked attestation statement format term in Section 8.1 to its defini… (#1192)

[webauthn] Merged Pull Request: Allow authenticators to do None instead of Self attestation

[webauthn] Merged Pull Request: Created linkable definition for WebAuthn Extensions and linked to it …

[webauthn] Merged Pull Request: Fixed various links, including new TR link

[webauthn] Merged Pull Request: Linked attestation statement format term in Section 8.1 to its defini…

[webauthn] Merged Pull Request: Revert change to new TR link

[webauthn] Merged Pull Request: Update isUVPAA() scenario to agree with spec

[webauthn] new commits pushed by emlun

[webauthn] new commits pushed by equalsJeffH

[webauthn] new commits pushed by WebAuthnBot

[webauthn] No way to verify requireResidentKey during registration step at RP side (#1060)

[webauthn] Pull Request: Add considerations for string truncation.

[webauthn] Pull Request: Add some embellishments to @equalsJeffH's suggestions

[webauthn] Q: Regarding Security Concerns Surrounding WebAuthn: Don't Implement ECDAA (Yet) (#1196)

[webauthn] Re-focus resident key descriptions on allowCredentials aspect (#1197)

[webauthn] remove "required" from PublicKeyCredentialDescriptor.id (#500)

[webauthn] remove "required" on ScopedCredentialDescriptor.id (#245)

[webauthn] Revert change to new TR link (#1186)

[webauthn] Rewrite security consideration on attestation and MitM attacks (#1095)

[webauthn] Standardising support for software authenticators (#1175)

[webauthn] Supported features detection from the browser (#1202)

[webauthn] truncation to 64-byte upper limit doesn't mention character boundaries (#973)

[webauthn] Underspecified RP ID length (#1198)

[webauthn] Update Authenticator Definition (#1195)

[webauthn] Update isUVPAA() scenario to agree with spec (#1184)

[webauthn] Update name, displayname and icon for RP and user (#1200)

Closed: [webauthn] Consistency between scenario "Registration specifically with UVPA" and former removal of confirmation prompt for isUVPAA() (#1178)

Closed: [webauthn] Create linkable definition for "WebAuthn Extension(s)" (#1180)

Closed: [webauthn] link "attestation statement format" term in Section 8.1 to its definition (#1179)

Closed: [webauthn] MUST authenticators still perform self attestation? (#978)

Closed: [webauthn] remove "required" on ScopedCredentialDescriptor.id (#245)

Closed: [webauthn] Underspecified RP ID length (#1198)

extension support in the wild?

how to handle multiple domains

Reminder that the W3C WebAuthn call is at 12:00PM PDT now, the time slot has moved from a 10:00AM PDT slot

tools for extracting lists of issues and PRs from github repos

TPAC 2019

VCWG Data Model Specification in CR

Web Payment Security Interest Group Launched

Last message date: Tuesday, 30 April 2019 22:49:42 UTC