W3C home > Mailing lists > Public > public-xmlsec@w3.org > September 2009

Re: some comments on Signature 2.0

From: <pratik.datta@oracle.com>
Date: Mon, 28 Sep 2009 16:10:18 -0700
Message-ID: <4AC1425A.9000509@oracle.com>
To: Frederick Hirsch <frederick.hirsch@nokia.com>
CC: XMLSec WG Public List <public-xmlsec@w3.org>
I made the following changes
1) Put in authors and editors - however the role="author" doesn't seem 
to make any difference
2) Removed the <URI> element under the <Selection> Changed all the 
examples to go back to Reference@URI
3) Changed the stylesheet for Note to be not green
4) Changed the section 4.4.3.5 subset of XPath for performance. Instead 
of putting in the differences in this spec, I just put in a link to that 
http://www.w3.org/2008/xmlsec/Drafts/proposals/Streamable-XPath-subset.html
5) Added section 4.5  "This section will be derived from XML Signature 
1.1 but has not yet been added. Please refer to XML Signature 1.1 
[XMLDSIG11]. Note the Transforms inside the RetrievalMethod is deprecated"

http://www.w3.org/2008/xmlsec/Drafts/xmldsig-core-20/Overview.html

Pratik

On 9/28/2009 8:51 AM, pratik.datta@oracle.com wrote:
> Frederick,
> I am making these changes now, But I am getting some problems with 
> xmlspec.
> The Signature 1.1 spec has a separate lists of Authors and Editors. 
> But the xmlspec format allows only one list. Should I just put them 
> all in one list for now?
> Also I wanted to put in the proposed XPath subset, but that requires 
> me to have styles for "inserted" text and "deleted" text. I am not 
> sure how to put that in xmlspec, Is there any way to insert raw html 
> in xmlspec files?
>
> Pratik
>
> On 9/25/2009 2:16 PM, Frederick Hirsch wrote:
>> As discussed on last call, for sections that are not yet pulled in, 
>> add Editors Note that
>> "This section will be derived from XML Signature, Second Edition but 
>> has not yet been added. Please refer to XML Signature Second Edition" 
>> or if there will be changes, indicate the intent.
>>
>> Substantive comment
>>
>> Is now the time to change the dsig 2.0 namespace from
>>
>> "http://www.w3.org/2008/xmlsec/experimental"
>>
>> to
>>
>> "http://www.w3.org/2010/xmlsec/xmldsig2#"
>>
>> Changes in 1.3 and examples.
>>
>> We should add a clear Editorial Note that this URI is still subject 
>> to change.
>>
>> Suggest replacing dsig20: with dsig2: for consistency with shortname
>>
>> Editorial comments
>>
>> General
>>
>> Change style sheet for comments (currently in green) to be less 
>> intrusive in section 3.1.2 and 3.2.1
>>
>> 1. Cover
>>
>> Given the convention to list editors of previous versions should 
>> probably add 2nd edition editors here, also note which editors were 
>> for previous versions
>>
>> 2. Introduction
>>
>> replace
>> "The Transform model has completely changed in 2.0, see 10 
>> Differences from 1.x version for a list of changes from Signature 1.x."
>>
>> with
>>
>> "XML Signature 2.0 includes a new transform model designed to address 
>> requirements including performance, simplicity and streamability.  
>> This model is significantly different than in XML Signature 1.x, see 
>> [list of changes]. XML Signature 2.0 is designed to be backward 
>> compatible, however, enabling the XML Signature 1.x model to be used 
>> where necessary. Details of this model are documented in XML 
>> Signature, Second Edition."
>>
>> 2.1.1
>>
>> Change http://www.w3.org/2008/xmlsec/experimental#newTransformModel to
>> http://www.w3.org/2010/xmlsec/xmldsig2#xform
>>
>> Validation
>>
>> In html element, put en as value in lang="" xml:lang=""
>> there are others as well, try ,validate at end of URL for document
>>
>> Broken links (I believe we fixed the FIPS links in 1.1)
>>
>>  Lines: 1737, 1739 
>> http://csrc.nist.gov/publications/fips/fips186-2/fips186-2-change1.pdf
>>  Line: 1518 
>> http://www.w3.org/2008/xmlsec/Drafts/xmldsig-core-11/xmldsig-core-schema.xsd 
>>
>> Lines: 1742, 1745 
>> http://csrc.nist.gov/publications/drafts/fips_186-3/Draft_FIPS-186-3%20_November2008.pdf 
>>
>>
>>
>> regards, Frederick
>>
>> Frederick Hirsch
>> Nokia
>>
>>
>>
>>
>
Received on Monday, 28 September 2009 23:11:20 GMT

This archive was generated by hypermail 2.2.0+W3C-0.50 : Monday, 7 December 2009 10:43:59 GMT