Agenda - Distributed Meeting 14 August 2012

Agenda: W3C XML Security WG Distributed Meeting 14 August  2012 Distributed Meeting

Logistics details and links to information at the bottom of this email.

1) Administrivia: Scribe confirmation, Agenda review,  Liaisons, Announcements.

XML-Security for C++, V1.7.0 has been released (AES-GCM, RSA_OAEP, bug fixes) : http://lists.w3.org/Archives/Public/public-xmlsec/2012Jul/0033.html (Scott)

2) Minutes Approval

Approve minutes, 24 July 2012

http://lists.w3.org/Archives/Public/public-xmlsec/2012Jul/att-0032/minutes-2012-07-24.html

Proposed RESOLUTION: Minutes from 24 July 2012 are approved.

3) PAG Update

Update on PAG status

4) Editorial update

4a) Update all editors drafts to ReSpec v3, added comment to xenc-schema.xsd for xenc:MGF

schema note: http://lists.w3.org/Archives/Public/public-xmlsec/2012Aug/0006.html

styling change, http://lists.w3.org/Archives/Public/public-xmlsec/2012Aug/0004.html

proposed RESOLUTION: Updated styling of editors drafts is acceptable to WG, e.g. XML Signature 1.1 

proposed RESOLUTION: WG approves addition of  xenc:MGF comment to xenc-schema.xsd

4b) Added SHA-224 digest method to XML Signature 1.1 and 2.0.

http://lists.w3.org/Archives/Public/public-xmlsec/2012Aug/0009.html

proposed RESOLUTION: WG agrees to addition of SHA-224 to XML Signature 1.1 and XML Signature 2.0

5) Interop

5a) Updated XML Encryption 1.1 Test Report document - review comments?

http://lists.w3.org/Archives/Public/public-xmlsec/2012Aug/0000.html

proposed RESOLUTION:  WG agrees to update "XML Encryption 1.1 Test Report" to mark SHA-384, AES-128-GCM, and RSA-OAEP Key Transport as completed.

5b) HMACOutputLength minimum length test

ACTION-888: Pratik Datta to Distribute test case and result for testing XML Signature 1.1 HMACOutputLength minimum length

done, see http://lists.w3.org/Archives/Public/public-xmlsec/2012Aug/0007.html

5c) SHA-224 test vectors

See http://lists.w3.org/Archives/Public/public-xmlsec/2012Aug/0007.html (Pratik)

Confirm additional test (Scott)

5d) Items planned to be removed from XML Signature 1.1 at end of August: ECDSA-SHA224, HMAC-SHA224, RSAwithSHA224, X509Data OCSPResponse, X509Digest; KeyInfo DEREncodedKeyValue, KeyInfoReference, HMACOutputLength

Items planned to be removed from XML Encryption 1.1 at end of August: AES-128/192/256-pad Symmetric Key Wrap, Key Agreement (ECDH, DH)

6) Roadmap

Plan to return to Last Call to remove features or update at-risk sections, http://lists.w3.org/Archives/Public/public-xmlsec/2012Aug/0005.html (Thomas)

7)  Additional XML Encryption 1.1 security considerations

Next steps

8) Open Action and Issue review

8a) Open Actions

ACTION-238: Thomas Roessler to Draft proposal to add identifiers for ECDSA-RIPEMD, RSA-WHIRLPOOL, ECDSA-WHIRLPOOL to XML Security Algorithms Cross-Reference (follow up to ACTION-222)

ACTION-717: Pratik Datta to Document the Performance improvements with 2.0

ACTION-883: Frederick Hirsch to Review C14N 20 test cases document

8b) Close Pending actions

These will be closed after the meeting unless concern raised before  or  during meeting. Please review in advance of meeting.

ACTION-888: Pratik Datta to Distribute test case and result for testing XML Signature 1.1 HMACOutputLength minimum length

8c) Issue review

[OPEN] ISSUE-91 : ECC can't be REQUIRED ; on [XML Security - General] 
/2008/xmlsec/track/issues/91 

[OPEN] ISSUE-122 : Explain peformance improvements and rationale, relationship to earlier work, document, benchmarks ; on [XML Signature 2.0] 
/2008/xmlsec/track/issues/122 

9) Other Business

10) Adjourn

Logistics Info:

10-12:00 am Eastern Time
Information on meeting times in various time zones:
http://www.w3.org/2008/xmlsec/Group/Overview.html#phone

Zakim Bridge:
+1.617.761.6200 conference code 965732# ('XMLSEC')

IRC Chat: irc.w3.org (port 6665), #xmlsec

Web-based IRC (member-only): <http://irc.w3.org/?channels=xmlsec>

Please note that attendance of XMLSEC WG teleconferences is  restricted  to registered WG participants and persons invited by the chair.

Scribe Instructions: <http://www.w3.org/2007/xmlsec/Group/Scribe-Instructions.html

Liaison information: <http://www.w3.org/2008/xmlsec/Group/Overview.html#coordination

Publication Status available at <http://www.w3.org/2008/xmlsec/wiki/PublicationStatus

Roadmap at <http://www.w3.org/2008/xmlsec/wiki/Roadmap>
---

regards, Frederick

Frederick Hirsch, Nokia
Chair XML Security WG

Received on Monday, 13 August 2012 20:14:45 UTC