# XML Security Working Group Teleconference ## 16 Oct 2012 [Agenda][3] See also: [IRC log][4] ## Attendees Present Frederick_Hirsch, Hal_Lockhart, Chris_Solc, Gerald_Edgar, Pratik_Datta, Scott_Cantor Regrets Chair Frederick_Hirsch Scribe fjh ## Contents * [Topics][5] 1. [Administrative, Announcements][6] 2. [Minutes Approval][7] 3. [PAG status][8] 4. [Last Call of XML Signature 1.1 and XML Encryption 1.1][9] 5. [Interop Test Report][10] 6. [Roadmap update][11] 7. [XML Security 2.0][12] 8. [Action review][13] 9. [Issue review][14] 10. [Other Business][15] 11. [Adjourn][16] * [Summary of Action Items][17] * * * Date: 16 October 2012 ScribeNick: fjh ### Administrative, Announcements Important change related to use of IRC, but not relevant if you use the web interface: [https://lists.w3.org/Archives/Member/member- xmlsec/2012Oct/0000.html][18] fjh: add to agenda, roadmap review ### Minutes Approval approve minutes from 2 October 2012 [http://lists.w3.org/Archives/Public/public- xmlsec/2012Oct/att-0002/minutes-2012-10-02.html][19] **RESOLUTION: Minutes from 2 October 2012 are approved** ### PAG status PAG has completed, report has been published Announcement: [http://lists.w3.org/Archives/Public/public- xmlsec/2012Oct/0005.html][20] Report: [http://www.w3.org/2011/xmlsec-pag/pagreport.html][21] ISSUE-91? ISSUE-91 -- ECC can't be REQUIRED -- open [http://www.w3.org/2008/xmlsec/track/issues/91][22] ISSUE-91: resolved per PAG report - [http://www.w3.org/2011/xmlsec- pag/pagreport.html][21] ISSUE-91 ECC can't be REQUIRED notes added close ISSUE-91 ISSUE-91 ECC can't be REQUIRED closed ### Last Call of XML Signature 1.1 and XML Encryption 1.1 Publication planned for 18 October fjh: trying to publish before TPAC publishing moratorium Drafts: XML Signature 1.1: [http://www.w3.org/2008/xmlsec/Drafts/xmldsig- core-11/2012-10-LC/Overview.html][23] XML Encryption 1.1: [http://www.w3.org/2008/xmlsec/Drafts/xmlenc- core-11/2012-10-LC/Overview.html][24] Functional Explanation of Changes in XML Signature 1.1: [http://www.w3.org/2008/xmlsec/Drafts/xmldsig- core1-explain/FPWD/Overview.html][25] Functional Explanation of Changes in XML Encryption 1.1: [http://www.w3.org/2008/xmlsec/Drafts/xmlenc- core1-explain/FPWD/Overview.html][26] fjh: have not yet seen response to publication request, will double check ... Last Call is for 3 weeks ### Interop Test Report fjh: I merged the XML Encryption 1.1 Test Cases material into the XML Encryption 1.1 Interop Test report, additional test cases? [http://lists.w3.org/Archives/Public/public-xmlsec/2012Oct/0006.html][27] AES-256-GCM RSA-OAEP Key Transport scantor: both part of same test, oracle test fjh: plan to update this and publish after TPAC [http://www.w3.org/2008/xmlsec/Drafts/xmlenc- core1-interop/files/oracle/][28] fjh: please review this pdatta: I'll take a look at it ### Roadmap update fjh: first we publish Last Call, should be 18 October ... exit is not end of last call, but end of exclusion period, 60 days ... brings us to 17 December ... Publishing moratorium is 14 Dec through 2 January ... thus make PR transition in January, probably 2nd week ... 4 weeks minimum AC PR review ... thus mid Feb for REC transition, which can be done by email ... thus can expect REC in March, assuming no Last Call or PR comments ... focus on Last Call and PR transition ... I'll update the roadmap on the wiki to correspond to the current reality ### XML Security 2.0 fjh: I've deferred my actions on this ... still have action to contact xml-dev ### Action review ACTION-883? ACTION-883 -- Frederick Hirsch to review C14N 20 test cases document -- due 2012-04-10 -- OPEN [http://www.w3.org/2008/xmlsec/track/actions/883][29] ACTION-916? ACTION-916 -- Frederick Hirsch to outline timeline for completing 1.1 Rec and share with XML Security WG and PAG -- due 2012-09-25 -- OPEN [http://www.w3.org/2008/xmlsec/track/actions/916][30] close ACTION-913 ACTION-913 Merge XML Encryption 1.1 test case document into XML Encryption 1.1 interop test result document, once Pratik concludes updating XML Encryption 1.1 test case document (ACTION-910) closed close ACTION-917 ACTION-917 Prepare XML Signature 1.1 and XML Encryption 1.1 for Last Call publication and make publication request closed ### Issue review ISSUE-234? ISSUE-234 -- Reference SP800-56A later in publication process if the latest version is no longer a draft -- open [http://www.w3.org/2008/xmlsec/track/issues/234][31] ISSUE-122? ISSUE-122 -- Explain peformance improvements and rationale, relationship to earlier work, document, benchmarks -- open [http://www.w3.org/2008/xmlsec/track/issues/122][32] fjh: no action assigned for this one, probably would need one ### Other Business No other business ### Adjourn ## Summary of Action Items [End of minutes] * * * Minutes formatted by David Booth's [scribe.perl][33] version 1.135 ([CVS log][34]) $Date: 2009-03-02 03:52:20 $ [1]: http://www.w3.org/Icons/w3c_home [2]: http://www.w3.org/ [3]: http://lists.w3.org/Archives/Public/public-xmlsec/2012Oct/0007.html [4]: http://www.w3.org/2012/10/16-xmlsec-irc [5]: #agenda [6]: #item01 [7]: #item02 [8]: #item03 [9]: #item04 [10]: #item05 [11]: #item06 [12]: #item07 [13]: #item08 [14]: #item09 [15]: #item10 [16]: #item11 [17]: #ActionSummary [18]: https://lists.w3.org/Archives/Member/member-xmlsec/2012Oct/0000.html [19]: http://lists.w3.org/Archives/Public/public- xmlsec/2012Oct/att-0002/minutes-2012-10-02.html [20]: http://lists.w3.org/Archives/Public/public-xmlsec/2012Oct/0005.html [21]: http://www.w3.org/2011/xmlsec-pag/pagreport.html [22]: http://www.w3.org/2008/xmlsec/track/issues/91 [23]: http://www.w3.org/2008/xmlsec/Drafts/xmldsig- core-11/2012-10-LC/Overview.html [24]: http://www.w3.org/2008/xmlsec/Drafts/xmlenc- core-11/2012-10-LC/Overview.html [25]: http://www.w3.org/2008/xmlsec/Drafts/xmldsig- core1-explain/FPWD/Overview.html [26]: http://www.w3.org/2008/xmlsec/Drafts/xmlenc- core1-explain/FPWD/Overview.html [27]: http://lists.w3.org/Archives/Public/public-xmlsec/2012Oct/0006.html [28]: http://www.w3.org/2008/xmlsec/Drafts/xmlenc- core1-interop/files/oracle/ [29]: http://www.w3.org/2008/xmlsec/track/actions/883 [30]: http://www.w3.org/2008/xmlsec/track/actions/916 [31]: http://www.w3.org/2008/xmlsec/track/issues/234 [32]: http://www.w3.org/2008/xmlsec/track/issues/122 [33]: http://dev.w3.org/cvsweb/~checkout~/2002/scribe/scribedoc.htm [34]: http://dev.w3.org/cvsweb/2002/scribe/