[webauthn] Must returned extensions be mathematically proper subsets of requested extensions?
submitted review of PR #539 "Sign counter alg 507"
Re: [webauthn] restrict WebAuthentication API to only top level browsing context
[webauthn] change "credential public key" to "user public key"
Re: [webauthn] Spec should not mandate behavior of server
Re: [webauthn] Internationalization self review
[w3c/webauthn] 8c2bfd: add explanation: where does signature come from
[webauthn] new commits pushed by rlin1
[w3c/webauthn] 12c2d9: explanation added: why should you compare signatur...
[webauthn] new commits pushed by rlin1
08/30/2017 W3C Web Authentication WG Meeting Agenda
Re: [webauthn] Sign counter alg 507
- Re: [webauthn] Sign counter alg 507
- Re: [webauthn] Sign counter alg 507
- Re: [webauthn] Sign counter alg 507
- Re: [webauthn] Sign counter alg 507
- Re: [webauthn] Sign counter alg 507
Re: [webauthn] Consider requiring canonical CBOR throughout
- Re: [webauthn] Consider requiring canonical CBOR throughout
- Re: [webauthn] Consider requiring canonical CBOR throughout
- Re: [webauthn] Consider requiring canonical CBOR throughout
- Re: [webauthn] Consider requiring canonical CBOR throughout
- Re: [webauthn] Consider requiring canonical CBOR throughout
- Re: [webauthn] Consider requiring canonical CBOR throughout
[w3c/webauthn] 9bcb9c: added RP processing rule for signature counter
[webauthn] new commits pushed by rlin1
Re: [webauthn] Consider allowing authenticators to randomise signed hashes.
[w3c/webauthn] 6b3653: ...
[webauthn] new commits pushed by rlin1
[w3c/webauthn] 95546f: more description added
[webauthn] new commits pushed by rlin1
[w3c/webauthn] e8f141: added description for U2F attestation format
[webauthn] new commits pushed by rlin1
[w3c/webauthn]
[webauthn] new commits pushed by rlin1
[w3c/webauthn] 3dc51c: explicitly level 1, fixes #475
[webauthn] new commits pushed by rlin1
Re: [webauthn] Authnr sel aaguidlist
[webauthn] Should the "name" field in PublicKeyCredentialEntity be marked required?
- Re: [webauthn] Should the "name" field in PublicKeyCredentialEntity be marked required?
- Re: [webauthn] Should the "name" field in PublicKeyCredentialEntity be marked required?
- Closed: [webauthn] Should the "name" field in PublicKeyCredentialEntity be marked required?
- Re: [webauthn] Should the "name" field in PublicKeyCredentialEntity be marked required?
[w3c/webauthn] 5fb2f8: convert switch steps to colon-denotation
[webauthn] new commits pushed by equalsJeffH
Re: [webauthn] leverage "credential source" term from credential management spec
Re: [webauthn] Eliminate duplicate terminology
Closed: [webauthn] clarify normality of authenticator model - is it actually authenticator API ?
Re: [webauthn] Consider using USVString instead of DOMString sometimes
Closed: [webauthn] Clarify meaning of UVI
Closed: [webauthn] update extensions framework to include interfacing with user agent permissions framework
Re: [webauthn] further details for authenticatorCancel operation
Re: [webauthn] New research suggest using ED512 instead of ED256.
Re: [webauthn] Privacy across OS accounts
Re: [webauthn] Authenticator Selection Extension - Client Processing - Clarification
Closed: [webauthn] Authenticator Selection Extension - Client Processing - Clarification
Closed: [webauthn] normalizing term(s) for authenticator-generated RP-specific public key
wrt WD-07 Open PR #498
08/23/2017 W3C Web Authentication WG Meeting Agenda
[webauthn] Make create() and get() abortable
- Re: [webauthn] Make create() and get() abortable
- Re: [webauthn] Make create() and get() abortable
- Re: [webauthn] Make create() and get() abortable
[w3c/webauthn] 73d446: nomalizedAlgorithm->credTypesAndPubKeyAlgs; fixup ...
[webauthn] parameter lists in #createCredential and #op-make-cred do not match
[w3c/webauthn]
[webauthn] new commits pushed by equalsJeffH
[webauthn] #createCredential step 12 incorrectly refers to a timer
So-so quality of random FIDO devices
Re: [webauthn] undefined terms
Re: [webauthn] FIDO U2F Attestation Statement Format doesn't say what to do with AAGUID
Re: [webauthn] adopt consistent terms for RP server-side and client-side components
- Re: [webauthn] adopt consistent terms for RP server-side and client-side components
- Re: [webauthn] adopt consistent terms for RP server-side and client-side components
Re: [webauthn] normalizing term(s) for authenticator-generated RP-specific public key
Re: [webauthn] need description & illustrations of overall flow: authnr <--> platform API <--> RP
Re: [webauthn] impl guidelines for signature counter
Closed: [webauthn] Enable web developers to migrate keys from one domain to another
Re: [webauthn] What does "which has no other operations in progress" mean in practice?
- Re: [webauthn] What does "which has no other operations in progress" mean in practice?
- Re: [webauthn] What does "which has no other operations in progress" mean in practice?
Re: [webauthn] rename "attestation data" to be "attested credential"
Re: [webauthn] FIDO U2F Attestation Statement Format doesn't say what to do with Counter
- Re: [webauthn] FIDO U2F Attestation Statement Format doesn't say what to do with Counter
- Re: [webauthn] FIDO U2F Attestation Statement Format doesn't say what to do with Counter
- Re: [webauthn] FIDO U2F Attestation Statement Format doesn't say what to do with Counter
- Re: [webauthn] FIDO U2F Attestation Statement Format doesn't say what to do with Counter
- Re: [webauthn] FIDO U2F Attestation Statement Format doesn't say what to do with Counter
Re: [webauthn] Add getAuthenticatorInfo to the Authenticator Model section
08/16/2017 W3C Web Authentication WG Meeting Agenda
Closed: [webauthn] Attestation Data defines ECC key X, Y parameters two ways
Re: [webauthn] Attestation Data defines ECC key X, Y parameters two ways
Closed: [webauthn] Pre-Registration Discovery
Re: [webauthn] Pre-Registration Discovery
Closed: [webauthn] Update README.md to include more specific instructions for spec submission
Re: [webauthn] Update README.md to include more specific instructions for spec submission
editorial nit wrt publishing working draft
[w3c/webauthn] 942026: Built by Travis-CI: 5e0dbe0dafe9e36912bf2a32c5d575...
[webauthn] new commits pushed by WebAuthnBot
[w3c/webauthn] 776a5f: Update README.md
[webauthn] new commits pushed by AngeloKai
WD-06 is now published
[w3c/webauthn] 36a0fe: Built by Travis-CI: 598ac413cb9df11f971d62d8d27c4c...
[webauthn] new commits pushed by WebAuthnBot
[w3c/webauthn] 0683ef: add WD06
[webauthn] new commits pushed by AngeloKai
[w3c/webauthn] b199b1: Built by Travis-CI: 546b0441d7ee873c2f598643375779...
[webauthn] new commits pushed by WebAuthnBot
[webauthn] new commits pushed by AngeloKai
[w3c/webauthn] 080eff: add WD06 publish dir
Re: [webauthn] update extensions framework to include interfacing with user agent permissions framework
Re: [webauthn] do not totally lose the term "WebAuthn Relying Party"
Re: [webauthn] clarify normality of authenticator model - is it actually authenticator API ?
All WD-06 issues and PRs are once again closed
[w3c/webauthn] 5c325a: Built by Travis-CI: 8bf3b7e7cb803e459da9dfd239e688...
[webauthn] new commits pushed by WebAuthnBot
[w3c/webauthn] 8bf3b7: Fixed the example and other points listed in isPla...
[webauthn] new commits pushed by selfissued
[w3c/webauthn] c6e1c9: Built by Travis-CI: 1c824c902e1236c2a900452a5080ee...
[webauthn] new commits pushed by WebAuthnBot
[w3c/webauthn] 1c824c: Renamed AlgorithmIdentifier to COSEAlgorithmIdenti...
[webauthn] new commits pushed by selfissued
[w3c/webauthn] ab2bb0: Built by Travis-CI: 4902a80ea3ef8e00db8aeaaf665a62...
[webauthn] new commits pushed by WebAuthnBot
[w3c/webauthn] 4902a8: Register COSE Algorithm numbers for RSASSA-PKCS1-v...
[webauthn] new commits pushed by selfissued
[webauthn] Make U2F Attestation Format "sig" more precise
[webauthn] Include Constants for COSE Algorithm Numbers
Re: [webauthn] revision and polishing of the merged isPlatformAuthenticatorAvailable PR #379
Re: [webauthn] Fixed the example and other points listed in isPlatformAuthenticatorReady comment
[w3c/webauthn] cc8550: revision and polishing of the merged isPlatformAut...
[webauthn] new commits pushed by equalsJeffH
[webauthn] revise approach of isPlatformAuthenticatorAvailable()
- Re: [webauthn] revise approach of isPlatformAuthenticatorAvailable()
- Closed: [webauthn] revise approach of isPlatformAuthenticatorAvailable()
Web Authentication Working Group Charter Extended
[webauthn] Conflicting definition of AlgorithmIdentifier
- Re: [webauthn] Conflicting definition of AlgorithmIdentifier
- Closed: [webauthn] Conflicting definition of AlgorithmIdentifier
- Re: [webauthn] Conflicting definition of AlgorithmIdentifier
Re: [webauthn] Clarify meaning of UVI
- Re: [webauthn] Clarify meaning of UVI
- Re: [webauthn] Clarify meaning of UVI
- Re: [webauthn] Clarify meaning of UVI
[webauthn] Not necessary to pass AuthenticatorSelectionCriteria members to authenticatorMakeCredential()
- Re: [webauthn] Not necessary to pass AuthenticatorSelectionCriteria members to authenticatorMakeCredential()
- Re: [webauthn] Not necessary to pass AuthenticatorSelectionCriteria members to authenticatorMakeCredential()
- Re: [webauthn] Not necessary to pass AuthenticatorSelectionCriteria members to authenticatorMakeCredential()
08/09/2017 W3C Web Authentication WG Meeting Agenda
Re: [webauthn] Should the WebAuth API have a cancel() method?
- Re: [webauthn] Should the WebAuth API have a cancel() method?
- Re: [webauthn] Should the WebAuth API have a cancel() method?
- Re: [webauthn] Should the WebAuth API have a cancel() method?
Re: [webauthn] Enable web developers to migrate keys from one domain to another
- Re: [webauthn] Enable web developers to migrate keys from one domain to another
- Re: [webauthn] Enable web developers to migrate keys from one domain to another
- Re: [webauthn] Enable web developers to migrate keys from one domain to another
- Re: [webauthn] Enable web developers to migrate keys from one domain to another
[w3c/webauthn] 88105f: Built by Travis-CI: 73d4461c525c51e96bb03659a52388...
[webauthn] new commits pushed by WebAuthnBot
[w3c/webauthn] 73d446: nomalizedAlgorithm->credTypesAndPubKeyAlgs; fixup ...
[webauthn] new commits pushed by selfissued
Re: [webauthn] nomalizedAlgorithm->credTypesAndPubKeyAlgs
Re: [webauthn] overall security considerations section or document
[w3c/webauthn] e9b8d4: nomalizedAlgorithm->credTypesAndPubKeyAlgs; fixup ...
[webauthn] new commits pushed by equalsJeffH
Questions over Firefox's implementation
- Re: Questions over Firefox's implementation
- Re: Questions over Firefox's implementation
- Re: Questions over Firefox's implementation
[w3c/webauthn] e44a7a: add links to scribe/bot instructions
[webauthn] new commits pushed by equalsJeffH
[webauthn] Operating System Vendor Public Key Infrastructure and Web Authentication
- Re: [webauthn] Operating System Vendor Public Key Infrastructure and Web Authentication
- Re: [webauthn] Operating System Vendor Public Key Infrastructure and Web Authentication
[webauthn] do not need to normalize web crypto params any longer
[w3c/webauthn] b34da8: Built by Travis-CI: cca20d3dd8ac7713904b3ceecd2e0b...
[webauthn] new commits pushed by WebAuthnBot
All WD-06 issues and PRs are closed
Closed: [webauthn] Is AlgorithmIdentifier value a string or an object?
Re: [webauthn] Is AlgorithmIdentifier value a string or an object?
[w3c/webauthn] cca20d: Use COSE_Key and COSE Algorithm Identifiers (#514)
[webauthn] new commits pushed by selfissued
Re: [webauthn] cose key fixups
Should isPlatformAuthenticatorAvailable be a method or attribute?
[webauthn] Update Attestation Object figure to match the spec
- Re: [webauthn] Update Attestation Object figure to match the spec
- Re: [webauthn] Update Attestation Object figure to match the spec
- Re: [webauthn] Update Attestation Object figure to match the spec
- Closed: [webauthn] Update Attestation Object figure to match the spec
Re: [webauthn] Use COSE_Key and COSE Algorithm Identifiers
- Re: [webauthn] Use COSE_Key and COSE Algorithm Identifiers
- Re: [webauthn] Use COSE_Key and COSE Algorithm Identifiers
[w3c/webauthn] a4f0ca: Built by Travis-CI: e1faf59f86e5903ce4063c1b68b832...
[webauthn] new commits pushed by WebAuthnBot
[w3c/webauthn] e1faf5: Restrict WebAuthn support to valid domains (#515)
[webauthn] new commits pushed by selfissued
Closed: [webauthn] restrict webauthn support to "valid domains" ?
review comments on PR #515
[webauthn] document why only "valid domain" format is allowed for "effective domain"
Securing Social Media and Email
Re: [webauthn] restrict webauthn support to "valid domains" ?
[w3c/webauthn] b52466: Built by Travis-CI: 3e2ada84b66318320d690c49e22c22...
[webauthn] new commits pushed by WebAuthnBot
Closed: [webauthn] Add "willMakeCredentialWorkWithTheseConstraints()" method to the API
Re: [webauthn] Add "willMakeCredentialWorkWithTheseConstraints()" method to the API
[w3c/webauthn] 3e2ada: Add isPlatformAuthenticatorReady function to the A...
[webauthn] new commits pushed by selfissued
[w3c/webauthn] 19a7ce: Built by Travis-CI: a9fad51b4a9eb7a0eb9e2f77e403f4...
[webauthn] new commits pushed by WebAuthnBot
[w3c/webauthn] a9fad5: Adds requireUserVerification option in Authenticat...
[webauthn] new commits pushed by selfissued
Closed: [webauthn] requireUserVerification option in AuthenticatorSelectionCriteria
[w3c/webauthn] c4ab97: Built by Travis-CI: 561fd2cc911fabf81307150794a18b...
[webauthn] new commits pushed by WebAuthnBot
[w3c/webauthn] 561fd2: Add a script to update .spec-data, and update the ...
[webauthn] new commits pushed by selfissued
[w3c/webauthn] 25889a: Added note about using intentionally short identif...
[webauthn] new commits pushed by selfissued
[w3c/webauthn] 4b6ac4: Use consistent identifier case
[webauthn] new commits pushed by selfissued
[w3c/webauthn] 479b4b: Shortened selection and attachment identifiers sen...
[webauthn] new commits pushed by selfissued
[w3c/webauthn] 197007: Enhance descriptions of UP and UV bits as suggeste...
[webauthn] new commits pushed by selfissued
New concall coordinates
Closed: [webauthn] PublicKeyCredentialRequestOptions and MakeCredentialOptions could both inherit from a dictionary which has their shared members
review comments on PR #379
Re: [webauthn] fixup algs contd 3
Re: [webauthn] PublicKeyCredentialRequestOptions and MakeCredentialOptions could both inherit from a dictionary which has their shared members
08/02/2017 W3C Web Authentication WG Meeting Agenda
[w3c/webauthn] be0b62: Update index.bs
[webauthn] new commits pushed by leshi
Re: [webauthn] Add isPlatformAuthenticatorReady function to the API surface
- Re: [webauthn] Add isPlatformAuthenticatorReady function to the API surface
- Re: [webauthn] Add isPlatformAuthenticatorReady function to the API surface
- Re: [webauthn] Add isPlatformAuthenticatorReady function to the API surface
- Re: [webauthn] Add isPlatformAuthenticatorReady function to the API surface
- Re: [webauthn] Add isPlatformAuthenticatorReady function to the API surface
- Re: [webauthn] Add isPlatformAuthenticatorReady function to the API surface
- Re: [webauthn] Add isPlatformAuthenticatorReady function to the API surface
- Re: [webauthn] Add isPlatformAuthenticatorReady function to the API surface
- Re: [webauthn] Add isPlatformAuthenticatorReady function to the API surface