# XML Security Working Group Teleconference ## 27 Sep 2011 [Agenda][3] See also: [IRC log][4] ## Attendees Present Frederick_Hirsch, Hal_Lockhart, Cynthia_Martin, Pratik_Datta Regrets Scott_Cantor, Magnus_Nystrom, Bruce_Rich, Ed_Simon, Shivaram_Mysore Chair Frederick_Hirsch Scribe fjh ## Contents * [Topics][5] 1. [Administrative][6] 2. [Minutes][7] 3. [XML Encryption 1.1][8] 4. [XML Signature 2.0][9] 5. [Other Business][10] 6. [Adjourn][11] * [Summary of Action Items][12] * * * Date: 27 September 2011 ScribeNick: fjh ### Administrative ### Minutes [http://lists.w3.org/Archives/Public/public- xmlsec/2011Sep/att-0044/minutes-2011-09-13.html][13] **RESOLUTION: Minutes from 13 September 2011 are approved.** ### XML Encryption 1.1 fjh: OAEP and SHA-1 question [http://lists.w3.org/Archives/Public/public-xmlsec/2011Sep/0045.html][14] cynthia: this one will require more research fjh: OAEP and SHA-1 question, can someone offer to help on this one? ... ConcatKDF and salt/nonce [http://lists.w3.org/Archives/Public/public-xmlsec/2011Sep/0049.html][15] pdatta: noticed this during coding, how to get randomness ... we copied from NIST, no provision to add randomness there ... so randomness must be incorporated somehow hal: should ask on NIST feedback via email, listed on NIST site fjh: pdatta you might want to ask on NIST list and cc our public list ... I asked magnus offline about this, by email cynthia: NIST has implemented a lot of this pdatta: hal, can you please share the address The NIST reference also includes vendors that support NIST, btw ### XML Signature 2.0 LC-2488 updates [http://lists.w3.org/Archives/Public/public-xmlsec/2011Sep/0046.html][16] Additional editorial feedback on proposal - [http://lists.w3.org/Archives/Public/public-xmlsec/2011Sep/0051.html][17] pdatta: this is for 2.0? fjh: yes, we should first make change for 2.0, then see about also doing it in 1.1 pdatta: will make the editorial changes to 2.0 ### Other Business cynthia: checking on possible interop involvement fjh: a PAG resolution might help the WG proceed with testing ### Adjourn ## Summary of Action Items [End of minutes] * * * Minutes formatted by David Booth's [scribe.perl][18] version 1.135 ([CVS log][19]) $Date: 2009-03-02 03:52:20 $ [1]: http://www.w3.org/Icons/w3c_home [2]: http://www.w3.org/ [3]: http://lists.w3.org/Archives/Public/public-xmlsec/2011Sep/0053.html [4]: http://www.w3.org/2011/09/27-xmlsec-irc [5]: #agenda [6]: #item01 [7]: #item02 [8]: #item03 [9]: #item04 [10]: #item05 [11]: #item06 [12]: #ActionSummary [13]: http://lists.w3.org/Archives/Public/public- xmlsec/2011Sep/att-0044/minutes-2011-09-13.html [14]: http://lists.w3.org/Archives/Public/public-xmlsec/2011Sep/0045.html [15]: http://lists.w3.org/Archives/Public/public-xmlsec/2011Sep/0049.html [16]: http://lists.w3.org/Archives/Public/public-xmlsec/2011Sep/0046.html [17]: http://lists.w3.org/Archives/Public/public-xmlsec/2011Sep/0051.html [18]: http://dev.w3.org/cvsweb/~checkout~/2002/scribe/scribedoc.htm [19]: http://dev.w3.org/cvsweb/2002/scribe/