public-webauthn@w3.org from August 2017 by subject

08/02/2017 W3C Web Authentication WG Meeting Agenda

08/09/2017 W3C Web Authentication WG Meeting Agenda

08/16/2017 W3C Web Authentication WG Meeting Agenda

08/23/2017 W3C Web Authentication WG Meeting Agenda

08/30/2017 W3C Web Authentication WG Meeting Agenda

[w3c/webauthn]

[w3c/webauthn] 0683ef: add WD06

[w3c/webauthn] 080eff: add WD06 publish dir

[w3c/webauthn] 12c2d9: explanation added: why should you compare signatur...

[w3c/webauthn] 197007: Enhance descriptions of UP and UV bits as suggeste...

[w3c/webauthn] 19a7ce: Built by Travis-CI: a9fad51b4a9eb7a0eb9e2f77e403f4...

[w3c/webauthn] 1c824c: Renamed AlgorithmIdentifier to COSEAlgorithmIdenti...

[w3c/webauthn] 25889a: Added note about using intentionally short identif...

[w3c/webauthn] 36a0fe: Built by Travis-CI: 598ac413cb9df11f971d62d8d27c4c...

[w3c/webauthn] 3dc51c: explicitly level 1, fixes #475

[w3c/webauthn] 3e2ada: Add isPlatformAuthenticatorReady function to the A...

[w3c/webauthn] 479b4b: Shortened selection and attachment identifiers sen...

[w3c/webauthn] 4902a8: Register COSE Algorithm numbers for RSASSA-PKCS1-v...

[w3c/webauthn] 4b6ac4: Use consistent identifier case

[w3c/webauthn] 561fd2: Add a script to update .spec-data, and update the ...

[w3c/webauthn] 5c325a: Built by Travis-CI: 8bf3b7e7cb803e459da9dfd239e688...

[w3c/webauthn] 5fb2f8: convert switch steps to colon-denotation

[w3c/webauthn] 6b3653: ...

[w3c/webauthn] 73d446: nomalizedAlgorithm->credTypesAndPubKeyAlgs; fixup ...

[w3c/webauthn] 776a5f: Update README.md

[w3c/webauthn] 88105f: Built by Travis-CI: 73d4461c525c51e96bb03659a52388...

[w3c/webauthn] 8bf3b7: Fixed the example and other points listed in isPla...

[w3c/webauthn] 8c2bfd: add explanation: where does signature come from

[w3c/webauthn] 942026: Built by Travis-CI: 5e0dbe0dafe9e36912bf2a32c5d575...

[w3c/webauthn] 95546f: more description added

[w3c/webauthn] 9bcb9c: added RP processing rule for signature counter

[w3c/webauthn] a4f0ca: Built by Travis-CI: e1faf59f86e5903ce4063c1b68b832...

[w3c/webauthn] a9fad5: Adds requireUserVerification option in Authenticat...

[w3c/webauthn] ab2bb0: Built by Travis-CI: 4902a80ea3ef8e00db8aeaaf665a62...

[w3c/webauthn] b199b1: Built by Travis-CI: 546b0441d7ee873c2f598643375779...

[w3c/webauthn] b34da8: Built by Travis-CI: cca20d3dd8ac7713904b3ceecd2e0b...

[w3c/webauthn] b52466: Built by Travis-CI: 3e2ada84b66318320d690c49e22c22...

[w3c/webauthn] be0b62: Update index.bs

[w3c/webauthn] c4ab97: Built by Travis-CI: 561fd2cc911fabf81307150794a18b...

[w3c/webauthn] c6e1c9: Built by Travis-CI: 1c824c902e1236c2a900452a5080ee...

[w3c/webauthn] cc8550: revision and polishing of the merged isPlatformAut...

[w3c/webauthn] cca20d: Use COSE_Key and COSE Algorithm Identifiers (#514)

[w3c/webauthn] e1faf5: Restrict WebAuthn support to valid domains (#515)

[w3c/webauthn] e44a7a: add links to scribe/bot instructions

[w3c/webauthn] e8f141: added description for U2F attestation format

[w3c/webauthn] e9b8d4: nomalizedAlgorithm->credTypesAndPubKeyAlgs; fixup ...

[webauthn] #createCredential step 12 incorrectly refers to a timer

[webauthn] Add "willMakeCredentialWorkWithTheseConstraints()" method to the API

[webauthn] Add getAuthenticatorInfo to the Authenticator Model section

[webauthn] Add isPlatformAuthenticatorReady function to the API surface

[webauthn] adopt consistent terms for RP server-side and client-side components

[webauthn] Attestation Data defines ECC key X, Y parameters two ways

[webauthn] Authenticator Selection Extension - Client Processing - Clarification

[webauthn] Authnr sel aaguidlist

[webauthn] change "credential public key" to "user public key"

[webauthn] Clarify meaning of UVI

[webauthn] clarify normality of authenticator model - is it actually authenticator API ?

[webauthn] Conflicting definition of AlgorithmIdentifier

[webauthn] Consider allowing authenticators to randomise signed hashes.

[webauthn] Consider requiring canonical CBOR throughout

[webauthn] Consider using USVString instead of DOMString sometimes

[webauthn] cose key fixups

[webauthn] do not need to normalize web crypto params any longer

[webauthn] do not totally lose the term "WebAuthn Relying Party"

[webauthn] document why only "valid domain" format is allowed for "effective domain"

[webauthn] Eliminate duplicate terminology

[webauthn] Enable web developers to migrate keys from one domain to another

[webauthn] FIDO U2F Attestation Statement Format doesn't say what to do with AAGUID

[webauthn] FIDO U2F Attestation Statement Format doesn't say what to do with Counter

[webauthn] Fixed the example and other points listed in isPlatformAuthenticatorReady comment

[webauthn] fixup algs contd 3

[webauthn] further details for authenticatorCancel operation

[webauthn] impl guidelines for signature counter

[webauthn] Include Constants for COSE Algorithm Numbers

[webauthn] Internationalization self review

[webauthn] Is AlgorithmIdentifier value a string or an object?

[webauthn] leverage "credential source" term from credential management spec

[webauthn] Make create() and get() abortable

[webauthn] Make U2F Attestation Format "sig" more precise

[webauthn] Must returned extensions be mathematically proper subsets of requested extensions?

[webauthn] need description & illustrations of overall flow: authnr <--> platform API <--> RP

[webauthn] new commits pushed by AngeloKai

[webauthn] new commits pushed by equalsJeffH

[webauthn] new commits pushed by leshi

[webauthn] new commits pushed by rlin1

[webauthn] new commits pushed by selfissued

[webauthn] new commits pushed by WebAuthnBot

[webauthn] New research suggest using ED512 instead of ED256.

[webauthn] nomalizedAlgorithm->credTypesAndPubKeyAlgs

[webauthn] normalizing term(s) for authenticator-generated RP-specific public key

[webauthn] Not necessary to pass AuthenticatorSelectionCriteria members to authenticatorMakeCredential()

[webauthn] Operating System Vendor Public Key Infrastructure and Web Authentication

[webauthn] overall security considerations section or document

[webauthn] parameter lists in #createCredential and #op-make-cred do not match

[webauthn] Pre-Registration Discovery

[webauthn] Privacy across OS accounts

[webauthn] PublicKeyCredentialRequestOptions and MakeCredentialOptions could both inherit from a dictionary which has their shared members

[webauthn] rename "attestation data" to be "attested credential"

[webauthn] restrict WebAuthentication API to only top level browsing context

[webauthn] restrict webauthn support to "valid domains" ?

[webauthn] revise approach of isPlatformAuthenticatorAvailable()

[webauthn] revision and polishing of the merged isPlatformAuthenticatorAvailable PR #379

[webauthn] Should the "name" field in PublicKeyCredentialEntity be marked required?

[webauthn] Should the WebAuth API have a cancel() method?

[webauthn] Sign counter alg 507

[webauthn] Spec should not mandate behavior of server

[webauthn] undefined terms

[webauthn] Update Attestation Object figure to match the spec

[webauthn] update extensions framework to include interfacing with user agent permissions framework

[webauthn] Update README.md to include more specific instructions for spec submission

[webauthn] Use COSE_Key and COSE Algorithm Identifiers

[webauthn] What does "which has no other operations in progress" mean in practice?

All WD-06 issues and PRs are closed

All WD-06 issues and PRs are once again closed

Closed: [webauthn] Add "willMakeCredentialWorkWithTheseConstraints()" method to the API

Closed: [webauthn] Attestation Data defines ECC key X, Y parameters two ways

Closed: [webauthn] Authenticator Selection Extension - Client Processing - Clarification

Closed: [webauthn] Clarify meaning of UVI

Closed: [webauthn] clarify normality of authenticator model - is it actually authenticator API ?

Closed: [webauthn] Conflicting definition of AlgorithmIdentifier

Closed: [webauthn] do not need to normalize web crypto params any longer

Closed: [webauthn] Enable web developers to migrate keys from one domain to another

Closed: [webauthn] Is AlgorithmIdentifier value a string or an object?

Closed: [webauthn] normalizing term(s) for authenticator-generated RP-specific public key

Closed: [webauthn] Pre-Registration Discovery

Closed: [webauthn] PublicKeyCredentialRequestOptions and MakeCredentialOptions could both inherit from a dictionary which has their shared members

Closed: [webauthn] requireUserVerification option in AuthenticatorSelectionCriteria

Closed: [webauthn] restrict webauthn support to "valid domains" ?

Closed: [webauthn] revise approach of isPlatformAuthenticatorAvailable()

Closed: [webauthn] Should the "name" field in PublicKeyCredentialEntity be marked required?

Closed: [webauthn] Update Attestation Object figure to match the spec

Closed: [webauthn] update extensions framework to include interfacing with user agent permissions framework

Closed: [webauthn] Update README.md to include more specific instructions for spec submission

editorial nit wrt publishing working draft

New concall coordinates

Questions over Firefox's implementation

review comments on PR #379

review comments on PR #515

Securing Social Media and Email

Should isPlatformAuthenticatorAvailable be a method or attribute?

So-so quality of random FIDO devices

submitted review of PR #539 "Sign counter alg 507"

WD-06 is now published

Web Authentication Working Group Charter Extended

wrt WD-07 Open PR #498

Last message date: Thursday, 31 August 2017 23:35:29 UTC