08/02/2017 W3C Web Authentication WG Meeting Agenda
08/09/2017 W3C Web Authentication WG Meeting Agenda
08/16/2017 W3C Web Authentication WG Meeting Agenda
08/23/2017 W3C Web Authentication WG Meeting Agenda
08/30/2017 W3C Web Authentication WG Meeting Agenda
[w3c/webauthn]
[w3c/webauthn] 0683ef: add WD06
[w3c/webauthn] 080eff: add WD06 publish dir
[w3c/webauthn] 12c2d9: explanation added: why should you compare signatur...
[w3c/webauthn] 197007: Enhance descriptions of UP and UV bits as suggeste...
[w3c/webauthn] 19a7ce: Built by Travis-CI: a9fad51b4a9eb7a0eb9e2f77e403f4...
[w3c/webauthn] 1c824c: Renamed AlgorithmIdentifier to COSEAlgorithmIdenti...
[w3c/webauthn] 25889a: Added note about using intentionally short identif...
[w3c/webauthn] 36a0fe: Built by Travis-CI: 598ac413cb9df11f971d62d8d27c4c...
[w3c/webauthn] 3dc51c: explicitly level 1, fixes #475
[w3c/webauthn] 3e2ada: Add isPlatformAuthenticatorReady function to the A...
[w3c/webauthn] 479b4b: Shortened selection and attachment identifiers sen...
[w3c/webauthn] 4902a8: Register COSE Algorithm numbers for RSASSA-PKCS1-v...
[w3c/webauthn] 4b6ac4: Use consistent identifier case
[w3c/webauthn] 561fd2: Add a script to update .spec-data, and update the ...
[w3c/webauthn] 5c325a: Built by Travis-CI: 8bf3b7e7cb803e459da9dfd239e688...
[w3c/webauthn] 5fb2f8: convert switch steps to colon-denotation
[w3c/webauthn] 6b3653: ...
[w3c/webauthn] 73d446: nomalizedAlgorithm->credTypesAndPubKeyAlgs; fixup ...
[w3c/webauthn] 776a5f: Update README.md
[w3c/webauthn] 88105f: Built by Travis-CI: 73d4461c525c51e96bb03659a52388...
[w3c/webauthn] 8bf3b7: Fixed the example and other points listed in isPla...
[w3c/webauthn] 8c2bfd: add explanation: where does signature come from
[w3c/webauthn] 942026: Built by Travis-CI: 5e0dbe0dafe9e36912bf2a32c5d575...
[w3c/webauthn] 95546f: more description added
[w3c/webauthn] 9bcb9c: added RP processing rule for signature counter
[w3c/webauthn] a4f0ca: Built by Travis-CI: e1faf59f86e5903ce4063c1b68b832...
[w3c/webauthn] a9fad5: Adds requireUserVerification option in Authenticat...
[w3c/webauthn] ab2bb0: Built by Travis-CI: 4902a80ea3ef8e00db8aeaaf665a62...
[w3c/webauthn] b199b1: Built by Travis-CI: 546b0441d7ee873c2f598643375779...
[w3c/webauthn] b34da8: Built by Travis-CI: cca20d3dd8ac7713904b3ceecd2e0b...
[w3c/webauthn] b52466: Built by Travis-CI: 3e2ada84b66318320d690c49e22c22...
[w3c/webauthn] be0b62: Update index.bs
[w3c/webauthn] c4ab97: Built by Travis-CI: 561fd2cc911fabf81307150794a18b...
[w3c/webauthn] c6e1c9: Built by Travis-CI: 1c824c902e1236c2a900452a5080ee...
[w3c/webauthn] cc8550: revision and polishing of the merged isPlatformAut...
[w3c/webauthn] cca20d: Use COSE_Key and COSE Algorithm Identifiers (#514)
[w3c/webauthn] e1faf5: Restrict WebAuthn support to valid domains (#515)
[w3c/webauthn] e44a7a: add links to scribe/bot instructions
[w3c/webauthn] e8f141: added description for U2F attestation format
[w3c/webauthn] e9b8d4: nomalizedAlgorithm->credTypesAndPubKeyAlgs; fixup ...
[webauthn] #createCredential step 12 incorrectly refers to a timer
[webauthn] Add "willMakeCredentialWorkWithTheseConstraints()" method to the API
[webauthn] Add getAuthenticatorInfo to the Authenticator Model section
[webauthn] Add isPlatformAuthenticatorReady function to the API surface
- Mike Jones via GitHub (Wednesday, 9 August)
- =JeffH via GitHub (Wednesday, 9 August)
- Mike Jones via GitHub (Wednesday, 9 August)
- =JeffH via GitHub (Wednesday, 9 August)
- balfanz via GitHub (Friday, 4 August)
- Mike Jones via GitHub (Friday, 4 August)
- kpaulh via GitHub (Friday, 4 August)
- Angelo Liao via GitHub (Thursday, 3 August)
- Mike West via GitHub (Tuesday, 1 August)
- =JeffH via GitHub (Tuesday, 1 August)
[webauthn] adopt consistent terms for RP server-side and client-side components
[webauthn] Attestation Data defines ECC key X, Y parameters two ways
[webauthn] Authenticator Selection Extension - Client Processing - Clarification
[webauthn] Authnr sel aaguidlist
[webauthn] change "credential public key" to "user public key"
[webauthn] Clarify meaning of UVI
[webauthn] clarify normality of authenticator model - is it actually authenticator API ?
[webauthn] Conflicting definition of AlgorithmIdentifier
[webauthn] Consider allowing authenticators to randomise signed hashes.
[webauthn] Consider requiring canonical CBOR throughout
[webauthn] Consider using USVString instead of DOMString sometimes
[webauthn] cose key fixups
[webauthn] do not need to normalize web crypto params any longer
[webauthn] do not totally lose the term "WebAuthn Relying Party"
[webauthn] document why only "valid domain" format is allowed for "effective domain"
[webauthn] Eliminate duplicate terminology
[webauthn] Enable web developers to migrate keys from one domain to another
[webauthn] FIDO U2F Attestation Statement Format doesn't say what to do with AAGUID
[webauthn] FIDO U2F Attestation Statement Format doesn't say what to do with Counter
[webauthn] Fixed the example and other points listed in isPlatformAuthenticatorReady comment
[webauthn] fixup algs contd 3
[webauthn] further details for authenticatorCancel operation
[webauthn] impl guidelines for signature counter
[webauthn] Include Constants for COSE Algorithm Numbers
[webauthn] Internationalization self review
[webauthn] Is AlgorithmIdentifier value a string or an object?
[webauthn] leverage "credential source" term from credential management spec
[webauthn] Make create() and get() abortable
[webauthn] Make U2F Attestation Format "sig" more precise
[webauthn] Must returned extensions be mathematically proper subsets of requested extensions?
[webauthn] need description & illustrations of overall flow: authnr <--> platform API <--> RP
[webauthn] new commits pushed by AngeloKai
[webauthn] new commits pushed by equalsJeffH
[webauthn] new commits pushed by leshi
[webauthn] new commits pushed by rlin1
[webauthn] new commits pushed by selfissued
- Mike Jones via GitHub (Wednesday, 9 August)
- Mike Jones via GitHub (Wednesday, 9 August)
- Mike Jones via GitHub (Wednesday, 9 August)
- Mike Jones via GitHub (Monday, 7 August)
- Mike Jones via GitHub (Friday, 4 August)
- Mike Jones via GitHub (Thursday, 3 August)
- Mike Jones via GitHub (Wednesday, 2 August)
- Mike Jones via GitHub (Wednesday, 2 August)
- Mike Jones via GitHub (Wednesday, 2 August)
- Mike Jones via GitHub (Wednesday, 2 August)
- Mike Jones via GitHub (Wednesday, 2 August)
- Mike Jones via GitHub (Wednesday, 2 August)
- Mike Jones via GitHub (Wednesday, 2 August)
[webauthn] new commits pushed by WebAuthnBot
- WebAuthnBot via GitHub (Friday, 11 August)
- WebAuthnBot via GitHub (Friday, 11 August)
- WebAuthnBot via GitHub (Friday, 11 August)
- WebAuthnBot via GitHub (Wednesday, 9 August)
- WebAuthnBot via GitHub (Wednesday, 9 August)
- WebAuthnBot via GitHub (Wednesday, 9 August)
- WebAuthnBot via GitHub (Monday, 7 August)
- WebAuthnBot via GitHub (Friday, 4 August)
- WebAuthnBot via GitHub (Thursday, 3 August)
- WebAuthnBot via GitHub (Wednesday, 2 August)
- WebAuthnBot via GitHub (Wednesday, 2 August)
- WebAuthnBot via GitHub (Wednesday, 2 August)
[webauthn] New research suggest using ED512 instead of ED256.
[webauthn] nomalizedAlgorithm->credTypesAndPubKeyAlgs
[webauthn] normalizing term(s) for authenticator-generated RP-specific public key
[webauthn] Not necessary to pass AuthenticatorSelectionCriteria members to authenticatorMakeCredential()
[webauthn] Operating System Vendor Public Key Infrastructure and Web Authentication
[webauthn] overall security considerations section or document
[webauthn] parameter lists in #createCredential and #op-make-cred do not match
[webauthn] Pre-Registration Discovery
[webauthn] Privacy across OS accounts
[webauthn] PublicKeyCredentialRequestOptions and MakeCredentialOptions could both inherit from a dictionary which has their shared members
[webauthn] rename "attestation data" to be "attested credential"
[webauthn] restrict WebAuthentication API to only top level browsing context
[webauthn] restrict webauthn support to "valid domains" ?
[webauthn] revise approach of isPlatformAuthenticatorAvailable()
[webauthn] revision and polishing of the merged isPlatformAuthenticatorAvailable PR #379
[webauthn] Should the "name" field in PublicKeyCredentialEntity be marked required?
[webauthn] Should the WebAuth API have a cancel() method?
[webauthn] Sign counter alg 507
[webauthn] Spec should not mandate behavior of server
[webauthn] undefined terms
[webauthn] Update Attestation Object figure to match the spec
[webauthn] update extensions framework to include interfacing with user agent permissions framework
[webauthn] Update README.md to include more specific instructions for spec submission
[webauthn] Use COSE_Key and COSE Algorithm Identifiers
[webauthn] What does "which has no other operations in progress" mean in practice?
All WD-06 issues and PRs are closed
All WD-06 issues and PRs are once again closed
Closed: [webauthn] Add "willMakeCredentialWorkWithTheseConstraints()" method to the API
Closed: [webauthn] Attestation Data defines ECC key X, Y parameters two ways
Closed: [webauthn] Authenticator Selection Extension - Client Processing - Clarification
Closed: [webauthn] Clarify meaning of UVI
Closed: [webauthn] clarify normality of authenticator model - is it actually authenticator API ?
Closed: [webauthn] Conflicting definition of AlgorithmIdentifier
Closed: [webauthn] do not need to normalize web crypto params any longer
Closed: [webauthn] Enable web developers to migrate keys from one domain to another
Closed: [webauthn] Is AlgorithmIdentifier value a string or an object?
Closed: [webauthn] normalizing term(s) for authenticator-generated RP-specific public key
Closed: [webauthn] Pre-Registration Discovery
Closed: [webauthn] PublicKeyCredentialRequestOptions and MakeCredentialOptions could both inherit from a dictionary which has their shared members
Closed: [webauthn] requireUserVerification option in AuthenticatorSelectionCriteria
Closed: [webauthn] restrict webauthn support to "valid domains" ?
Closed: [webauthn] revise approach of isPlatformAuthenticatorAvailable()
Closed: [webauthn] Should the "name" field in PublicKeyCredentialEntity be marked required?
Closed: [webauthn] Update Attestation Object figure to match the spec
Closed: [webauthn] update extensions framework to include interfacing with user agent permissions framework
Closed: [webauthn] Update README.md to include more specific instructions for spec submission
editorial nit wrt publishing working draft
New concall coordinates
Questions over Firefox's implementation
review comments on PR #379
review comments on PR #515
Securing Social Media and Email
Should isPlatformAuthenticatorAvailable be a method or attribute?
So-so quality of random FIDO devices
submitted review of PR #539 "Sign counter alg 507"
WD-06 is now published
Web Authentication Working Group Charter Extended
wrt WD-07 Open PR #498
Last message date: Thursday, 31 August 2017 23:35:29 UTC