Thursday, 30 November 2017
- Re: [webauthn] various issues with AppId extension
- nit: 2017/11/09-webauthn-minutes was F2F meeting, not telecon..
- [w3c/webauthn] a4c0d6: Built by Travis-CI: 2f0b13e0afa13081e2cf62f09267e1...
- [webauthn] new commits pushed by WebAuthnBot
- [w3c/webauthn]
- [w3c/webauthn] 2f0b13: fix #700 & #701: add same origin with ancestors pa...
- Re: [webauthn] fix #700 & #701: add same origin with ancestors param
- Closed: [webauthn] add sameOriginWithAncestors parameter to internal methods
- Closed: [webauthn] [[Create]] and [[DiscoverFromExternalSource]] references have inconsistent parameter lists
- [webauthn] Merged Pull Request: fix #700 & #701: add same origin with ancestors param
- [webauthn] new commits pushed by equalsJeffH
- Re: Kicking Off the Process for Publishing WD-07 Draft
- [w3c/webauthn] 1c1a11: Add UV parameter to getAssertion operation
- [webauthn] new commits pushed by emlun
- Re: [webauthn] fix #700 & #701: add same origin with ancestors param
- Kicking Off the Process for Publishing WD-07 Draft
- Re: [webauthn] fix #700 & #701: add same origin with ancestors param
Wednesday, 29 November 2017
- Re: [webauthn] fix #700 & #701: add same origin with ancestors param
- [w3c/webauthn] 7d8fde: add ref to Note wrt leveraging Feature Policy spec...
- [webauthn] new commits pushed by equalsJeffH
- Re: [webauthn] attachment is only explicitly used in create()
- [w3c/webauthn] c1c0f7: fix another sloppiness instance
- [webauthn] new commits pushed by equalsJeffH
- Re: [webauthn] Extensions need to define how their parameters convert to/from CBOR
- Re: [webauthn] Crypto algorithm agility: e.g., Specify the set of hash algorithms UAs can select between.
- Re: [webauthn] Authenticator selection extension - should makeCredential fail if no specified authenticator can be found?
- Re: [webauthn] overall security considerations section or document
- Re: [webauthn] restrict WebAuthentication API to only top level browsing context
- Re: [webauthn] fix #700 & #701: add same origin with ancestors param
- Re: [webauthn] fix #700 & #701: add same origin with ancestors param
- Re: [webauthn] Update session management for BT
- Re: [webauthn] Fix #404 - Add a Security Consideration for Cryptographic Challenges
- Re: [webauthn] overall security considerations section or document
- Re: [webauthn] credential id privacy
- Re: 11/29/2017 W3C Web Authentication WG Meeting Agenda
- Re: [webauthn] Update session management for BT
- [w3c/webauthn] 62f79e: fix cut'n'paste error, thx emlun!
- [webauthn] add sameOriginWithAncestors parameter to internal methods
- 11/29/2017 W3C Web Authentication WG Meeting Agenda
- [w3c/webauthn] c3df94: address jcjones' comments, thx!
- [webauthn] new commits pushed by equalsJeffH
Tuesday, 28 November 2017
- [webauthn] Pull Request: fix #700 & #701: add same origin with ancestors param
- [w3c/webauthn] c955f0: fix #700 add sameOriginWithAncestors parameter to ...
- [webauthn] new commits pushed by equalsJeffH
- [webauthn] [[Create]] and [[DiscoverFromExternalSource]] references have inconsistent parameter lists
- Re: [webauthn] restrict WebAuthentication API to only top level browsing context
- Re: [webauthn] Update session management for BT
Monday, 27 November 2017
- Re: [webauthn] Update session management for BT
- Re: [webauthn] Update session management for BT
- Re: [webauthn] Update session management for BT
- Re: [webauthn] Update session management for BT
- Re: [webauthn] Update session management for BT
- Re: [webauthn] Update session management for BT
- [w3c/webauthn] 7f6279: Built by Travis-CI: 416732ec746d3d2efde237dbc3a072...
- [webauthn] new commits pushed by WebAuthnBot
- [w3c/webauthn]
- [w3c/webauthn] 416732: Resolve #698 - Rename requireUserVerification (#69...
- [webauthn] Merged Pull Request: Resolve #698 - Rename requireUserVerification
- [webauthn] new commits pushed by jcjones
- Closed: [webauthn] Rename AuthenticatorSelectionCriteria.requireUserVerification to userVerification?
- Re: [webauthn] Resolve #698 - Rename requireUserVerification
- Re: [webauthn] Update session management for BT
- Re: [webauthn] Update session management for BT
Sunday, 26 November 2017
- [w3c/webauthn] a9639c: Revert "Rename userVerification to userVerificatio...
- [webauthn] new commits pushed by emlun
- Re: [webauthn] Resolve #698 - Rename requireUserVerification
- Re: [webauthn] Resolve #698 - Rename requireUserVerification
- Re: [webauthn] Resolve #698 - Rename requireUserVerification
Friday, 24 November 2017
- Re: [webauthn] Not necessary to pass AuthenticatorSelectionCriteria members to authenticatorMakeCredential()
- [w3c/webauthn] 77820d: Remove extraneous </code> end tag
- [webauthn] new commits pushed by emlun
- [w3c/webauthn] 4d774d: Rename userVerification to userVerificationRequire...
- [webauthn] new commits pushed by emlun
- [w3c/webauthn]
- [webauthn] Pull Request: Resolve #698 - Rename requireUserVerification
- [w3c/webauthn] c02e25: Resolve #698 - Rename requireUserVerification
- [webauthn] new commits pushed by jcjones
- Re: [webauthn] Rename AuthenticatorSelectionCriteria.requireUserVerification to userVerification?
Thursday, 23 November 2017
- Re: [webauthn] Rename AuthenticatorSelectionCriteria.requireUserVerification to userVerification?
- [webauthn] Rename AuthenticatorSelectionCriteria.requireUserVerification to userVerification?
Wednesday, 22 November 2017
- [w3c/webauthn] 1c1a11: Add UV parameter to getAssertion operation
- Re: [webauthn] Fix #668: Recommend RPs to verify UP and UV flags
- [webauthn] new commits pushed by emlun
- Re: [webauthn] Fix #668: Recommend RPs to verify UP and UV flags
- [w3c/webauthn] a7db15: Built by Travis-CI: 81fdc9a301f02e2324945cf9cbe052...
- [w3c/webauthn] 81fdc9: build on Adding a choice for RP to express prefere...
- [webauthn] new commits pushed by WebAuthnBot
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- [webauthn] Merged Pull Request: build on Adding a choice for RP to express preferences for attestation types
- [webauthn] new commits pushed by equalsJeffH
- Closed: [webauthn] Allow RPs to choose between "required" and "optional" attestation in credentials.create()
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Fix #668: Recommend RPs to verify UP and UV flags
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Authenticator session not possible for BLE
- Re: [webauthn] Update session management for BT
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- [w3c/webauthn] d879b7: Only exclude CredIDs matching the RPID
- [webauthn] new commits pushed by rlin1
- [w3c/webauthn]
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- [w3c/webauthn] 5b98d1: Fix initial part of step 18 of credentials.get()
- [webauthn] new commits pushed by balfanz
- [w3c/webauthn]
- [webauthn] Closed Pull Request: Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- Re: If you were looking for another reason to boycott Uber ...
- 11/22/2017 W3C Web Authentication WG Meeting Agenda
Tuesday, 21 November 2017
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Update session management for BT
- Re: [webauthn] leverage "credential source" term from credential management spec
- Closed: [webauthn] leverage "credential source" term from credential management spec
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- [w3c/webauthn] a50006: Built by Travis-CI: cc943646ae5e63c69907578bd5a2c2...
- [webauthn] new commits pushed by WebAuthnBot
- [w3c/webauthn] cc9436: fix comments in pre blocks and other linking error...
- [webauthn] new commits pushed by equalsJeffH
- [webauthn] Merged Pull Request: fix comments in pre blocks and other linking errors
- [w3c/webauthn] c42583: remove comments from <pre> blocks
- Re: Merged Pull Request: Fix issue #692
- [webauthn] Pull Request: fix comments in pre blocks and other linking errors
- [webauthn] new commits pushed by equalsJeffH
- Re: Merged Pull Request: Fix issue #692
- [w3c/webauthn]
- [w3c/webauthn] 5b98d1: Fix initial part of step 18 of credentials.get()
- Closed: [webauthn] #createCredential alg: "if options.authenticatorSelection is present..." may be incorrect
- Re: [webauthn] #createCredential alg: "if options.authenticatorSelection is present..." may be incorrect
- [webauthn] Merged Pull Request: Fix issue #692
- [webauthn] new commits pushed by emlun
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] attachment is only explicitly used in create()
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] attachment is only explicitly used in create()
- Re: [webauthn] attachment is only explicitly used in create()
- [w3c/webauthn] f17cea: address jyasskin comments, thx!
- [webauthn] new commits pushed by equalsJeffH
Monday, 20 November 2017
- [w3c/webauthn] 1c1a11: Add UV parameter to getAssertion operation
- [webauthn] new commits pushed by equalsJeffH
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] .store() is confusing
- Closed: [webauthn] .store() is confusing
- fyi: Flight rules for git
- Re: [webauthn] Update session management for BT
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Fix issue #692
- Re: [webauthn] Fix issue #692
- Re: [webauthn] #createCredential alg: "if options.authenticatorSelection is present..." may be incorrect
- Re: [webauthn] #createCredential alg: "if options.authenticatorSelection is present..." may be incorrect
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Fix issue #692
- Re: [webauthn] Fix issue #692
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Fix issue #692
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- [w3c/webauthn] 1c1a11: Add UV parameter to getAssertion operation
- [webauthn] new commits pushed by emlun
- Re: [webauthn] #createCredential alg: "if options.authenticatorSelection is present..." may be incorrect
- [w3c/webauthn] 705e3d: Fix references to |authenticatorSelection| members...
- [webauthn] new commits pushed by emlun
- [w3c/webauthn]
- [w3c/webauthn]
- [w3c/webauthn] 1c1a11: Add UV parameter to getAssertion operation
Sunday, 19 November 2017
- [webauthn] Pull Request: CDDL description of location extension
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- [w3c/webauthn] c986e9: adapt commit 825cce7 language
- [webauthn] new commits pushed by equalsJeffH
- [w3c/webauthn] 7a7f5d: actually improve #254, and fix #661
- [webauthn] new commits pushed by equalsJeffH
Saturday, 18 November 2017
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- [w3c/webauthn] f728b9: make BS happy - no comments in <pre> blocks, defin...
- [webauthn] new commits pushed by equalsJeffH
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- [w3c/webauthn] 0557e1: fix up MakePublicKeyCredentialOptions.attestation ...
- [webauthn] new commits pushed by equalsJeffH
- [w3c/webauthn] 802883: need to define 'blinding'
- [webauthn] new commits pushed by equalsJeffH
- [webauthn] define "blinding"
- Re: [webauthn] undefined terms
Friday, 17 November 2017
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- [w3c/webauthn] 825cce: Making "direct" description less ambiguous.
- [webauthn] new commits pushed by akshayku
- Re: [webauthn] build on Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] #createCredential alg: "if options.authenticatorSelection is present..." may be incorrect
- [webauthn] Pull Request: build on Adding a choice for RP to express preferences for attestation types
- [w3c/webauthn] ce46ef: Merge branch 'master' into jeffh-balfanz-patch-4
- [webauthn] new commits pushed by equalsJeffH
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- [webauthn] #createCredential alg: "if options.authenticatorSelection is present..." may be incorrect
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- [w3c/webauthn] 271106: PR 636: rename several items and remove prescripti...
- [webauthn] Merged Pull Request: New: Adding a choice for RP to express preferences for attestation types
- [webauthn] new commits pushed by christiaanbrand
- [webauthn] Pull Request: New: Adding a choice for RP to express preferences for attestation types
- 11/22/2017 W3C WebAuthn Meeting
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
Thursday, 16 November 2017
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- [w3c/webauthn]
- [w3c/webauthn]
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- RE: Proposal: Chrome privacy CA
- RE: PR #636 Review
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- [w3c/webauthn] 0e5f5a: Built by Travis-CI: 3985dd18d2d6c1d54dae21c78d2553...
- [webauthn] new commits pushed by WebAuthnBot
- [w3c/webauthn] 3985dd: Add RSASSA-PKCS1-v1_5 w/ SHA1 for TPM attestations...
- [webauthn] Merged Pull Request: Add RSASSA-PKCS1-v1_5 w/ SHA1 for TPM attestations and correct TPM signing/verification text
- [webauthn] new commits pushed by selfissued
- Closed: [webauthn] TPM Attestation Statement Format: Missing COSE Key algorithm Identifier and clarification.
- Re: [webauthn] Add RSASSA-PKCS1-v1_5 w/ SHA1 for TPM attestations and correct TPM signing/verification text
Wednesday, 15 November 2017
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- [webauthn] Pull Request: Add RSASSA-PKCS1-v1_5 w/ SHA1 for TPM attestations and correct TPM signing/verification text
- Re: [webauthn] TPM Attestation Statement Format: Missing COSE Key algorithm Identifier and clarification.
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Re: [webauthn] TPM Attestation Statement Format: Missing COSE Key algorithm Identifier and clarification.
- Re: Can anyone dial in?
- RE: Can anyone dial in?
- Re: Can anyone dial in?
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- PR #636 Review
- Can anyone dial in?
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- [w3c/webauthn] 05f4b2: Use Infra list terms in authenticatorGetAssertion
- [webauthn] new commits pushed by emlun
- [w3c/webauthn] 3d352c: Prompt for credential selection only if more than ...
- [webauthn] new commits pushed by emlun
- [w3c/webauthn] ea30a3: Fix plural
- [webauthn] new commits pushed by emlun
- [w3c/webauthn] 46d6c5: more consistency: add Get name to section 5.1.4
- [webauthn] new commits pushed by rlin1
- Re: [webauthn] TPM Attestation Statement Format: Missing COSE Key algorithm Identifier and clarification.
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
Tuesday, 14 November 2017
- [webauthn] TPM Attestation Statement Format: Missing COSE Key algorithm Identifier and clarification.
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- [w3c/webauthn] ba242b: Don't always require UV for first factor authentic...
- [webauthn] new commits pushed by emlun
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- AW: Follow-up on Privacy CA discussions.
- [w3c/webauthn] 96655e: Address review comment by @kpaulh
- [webauthn] new commits pushed by emlun
- [webauthn] Pull Request: Update session management for BT
- Re: [webauthn] Privacy concerns with blacklist/whitelist
Monday, 13 November 2017
- Re: [webauthn] Privacy concerns with blacklist/whitelist
- [w3c/webauthn] df7dc0: Clarify that the privacy consideration is a timing...
- [webauthn] new commits pushed by emlun
- Re: [webauthn] Add CDDL to every extension
- Re: [webauthn] Privacy concerns with blacklist/whitelist
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- [w3c/webauthn] 3bfbfd: Built by Travis-CI: 45541f918a8c43fe2d5c5a7ef2eb4a...
- [w3c/webauthn] 21f588: Fix #404 - Add a Security Consideration for Crypto...
- [w3c/webauthn] 07f2bc: Built by Travis-CI: b8656455896b3eb888653e464786cf...
- [webauthn] new commits pushed by WebAuthnBot
- [webauthn] new commits pushed by WebAuthnBot
- [w3c/webauthn] abf8af: Resolve #292 - Clarify that only one operation is ...
- Closed: [webauthn] What does "which has no other operations in progress" mean in practice?
- [webauthn] new commits pushed by jcjones
- [webauthn] Merged Pull Request: Resolve #292 - Clarify that only one operation is permitted per authenticator session
- Closed: [webauthn] explain challenge's security importance and use in both registration and authentication operations
- [webauthn] Merged Pull Request: Fix #404 - Add a Security Consideration for Cryptographic Challenges
- [webauthn] new commits pushed by jcjones
- Re: [webauthn] Fix #404 - Add a Security Consideration for Cryptographic Challenges
- [webauthn] Pull Request: Add privacy consideration about terminating getAssertion early
- [w3c/webauthn] 5b98d1: Fix initial part of step 18 of credentials.get()
- [webauthn] new commits pushed by emlun
- [w3c/webauthn] 7fe7dc: Fix issue #685
- [webauthn] Pull Request: Fix issue #685
- [webauthn] new commits pushed by emlun
- Re: Follow-up on Privacy CA discussions.
- [webauthn] Bug: getAssertion accidentally calls authenticatorGetAssertion in first factor mode
- 11/15/2017 W3C Web Authentication WG Meeting Agenda
Sunday, 12 November 2017
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- Re: Follow-up on Privacy CA discussions.
Saturday, 11 November 2017
- Re: Follow-up on Privacy CA discussions.
- [w3c/webauthn] 9ccb17: typos
- [webauthn] new commits pushed by balfanz
- [w3c/webauthn] 46e76b: typo
- [webauthn] new commits pushed by balfanz
- [w3c/webauthn] 9a1c34: Give authData and attestationData fields formal na...
- [webauthn] new commits pushed by balfanz
- [w3c/webauthn] aa2e87: adding client processing rules...
- [webauthn] new commits pushed by balfanz
- [w3c/webauthn] 1bd925: Added a third option
- [webauthn] new commits pushed by balfanz
- Re: Follow-up on Privacy CA discussions.
- Follow-up on Privacy CA discussions.
Friday, 10 November 2017
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- [w3c/webauthn] 2969b3: Address editorial review comments
- [webauthn] new commits pushed by emlun
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- Re: PR #672 reviewed
- PR #672 reviewed
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- RE: summary of final action items from TPAC 2017 meeting (?)
- RE: summary of final action items from TPAC 2017 meeting (?)
- Re: [webauthn] Add CDDL to every extension
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- [w3c/webauthn] a51550: Move UserVerificationRequirement subsection to las...
- [webauthn] new commits pushed by emlun
- summary of final action items from TPAC 2017 meeting (?)
- [w3c/webauthn] 038032: Remove duplicated UV step from authenticatorMakeCr...
- [webauthn] new commits pushed by emlun
- [w3c/webauthn] 4a8f02: Revert "Make authenticatorMakeCredential always us...
- [webauthn] new commits pushed by emlun
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- [w3c/webauthn] 40875f: use the registered ext ids in examples
- [webauthn] new commits pushed by emlun
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Re: [webauthn] Privacy concerns with blacklist/whitelist
- [w3c/webauthn] 2124bf: Built by Travis-CI: e09e0c3d05803018eb6f8841a16a9e...
- [webauthn] new commits pushed by WebAuthnBot
- [w3c/webauthn] 641eed: Nit: "set" -> "pair"
- [webauthn] new commits pushed by jcjones
- [webauthn] Merged Pull Request: Tiny nit: "pair of cryptographic keys" instead of "set of cryptographic keys"
- Re: [webauthn] Fix #622: Clarify PublicKeyCredentialEntity name descriptions
- [webauthn] Pull Request: Tiny nit: "pair of cryptographic keys" instead of "set of cryptographic keys"
- Re: [webauthn] Add CDDL to every extension
- Re: Proposal: Chrome privacy CA
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- Re: [webauthn] Adding a choice for RP to express preferences for attestation types
- [w3c/webauthn]
- Closed: [webauthn] CollectedClientData should include a type marker
- [w3c/webauthn] 71e282: Built by Travis-CI: cd591289dfaa8bde2ef729321c5fe9...
- [webauthn] new commits pushed by WebAuthnBot
- [w3c/webauthn] fa787d: Adding a type field to CollectedClientData
- [webauthn] Merged Pull Request: Adding a type field to CollectedClientData
- [webauthn] new commits pushed by balfanz
Thursday, 9 November 2017
- [webauthn] Pull Request: Trust Anchor Selection Criteria
- [w3c/webauthn] 59683f: Added explanation...
- [w3c/webauthn] 93f791: Built by Travis-CI: 31ddb22449a62bcb05b901234fb29a...
- [w3c/webauthn] fda862: adding RP processing rules.
- [w3c/webauthn] fa787d: Adding a type field to CollectedClientData
- [webauthn] Pull Request: Adding a type field to CollectedClientData
- [webauthn] new commits pushed by balfanz
- [w3c/webauthn]
- [w3c/webauthn] 31ddb2: Fix uvm 368 (#675)
- [w3c/webauthn] 40875f: use the registered ext ids in examples
- [webauthn] new commits pushed by rlin1
- [webauthn] Merged Pull Request: Fix uvm 368
- [w3c/webauthn] d468a7: fix #254: credman alignment: update #getAssertion ...
- [webauthn] new commits pushed by jcjones
- [webauthn] Merged Pull Request: use the registered ext ids in examples
- [webauthn] new commits pushed by emlun
- Re: [webauthn] use the registered ext ids in examples
- Re: [webauthn] CollectedClientData should include a type marker
- [w3c/webauthn] 14c273: fix proper subset tweak (#542)
- [webauthn] new commits pushed by rlin1
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Re: [webauthn] Resolve #292 - Clarify that only one operation is permitted per authenticator session
- Re: [webauthn] CollectedClientData should include a type marker
- Re: [webauthn] CollectedClientData should include a type marker
- Re: [webauthn] Fix #622: Clarify PublicKeyCredentialEntity name descriptions
- [w3c/webauthn] 5f4f3e: Fix attestation types supported for each format
- Re: [webauthn] Ask for tests for normative changes in CONTRIBUTING.md
- Re: [webauthn] Packed and U2F Attestation Statements' verifications don't differentiate between Basic and Privacy CA Attestation Types
- [w3c/webauthn] 930f86: Built by Travis-CI: 66c2ec950171b2d47d32ca5025d681...
- [webauthn] new commits pushed by WebAuthnBot
- [w3c/webauthn]
- Closed: [webauthn] 5.6. Authentication Extensions name confusing
- [w3c/webauthn] 474d02: Clarify semantics of isPlatformAuthenticatorAvaila...
- Re: [webauthn] 5.6. Authentication Extensions name confusing
- [webauthn] Merged Pull Request: Clarify semantics of isPlatformAuthenticatorAvailable
- Closed: [webauthn] clarify isPlatformAuthenticatorAvailable's semantics
- [webauthn] new commits pushed by balfanz
- Re: [webauthn] Fix #622: Clarify PublicKeyCredentialEntity name descriptions
- [w3c/webauthn] 1dd484: adding references
- [webauthn] new commits pushed by balfanz
- [webauthn] Pull Request: Fix #404 - Add a Security Consideration for Cryptographic Challenges
- [w3c/webauthn] 25a35a: changing name of method
- [webauthn] new commits pushed by balfanz
- Re: [webauthn] Fix #622: Clarify PublicKeyCredentialEntity name descriptions
- [w3c/webauthn] 474d02: Clarify semantics of isPlatformAuthenticatorAvaila...
- [webauthn] Pull Request: Clarify semantics of isPlatformAuthenticatorAvailable
- [webauthn] new commits pushed by balfanz
- Re: [webauthn] clarify isPlatformAuthenticatorAvailable's semantics
- Re: [webauthn] clarify isPlatformAuthenticatorAvailable's semantics
- [w3c/webauthn] ddde3d: Built by Travis-CI: 1194ce5b3204240561e0e075342d3e...
- Re: [webauthn] Allow hot-plugged authenticators?
- Re: [webauthn] explain challenge's security importance and use in both registration and authentication operations
- [webauthn] new commits pushed by WebAuthnBot
- Re: [webauthn] Allow hot-plugged authenticators?
- [w3c/webauthn] 1194ce: Updated authnr def (#678)
- Closed: [webauthn] Update definition of Authenticator to make it more similar to FIDO's def
- Re: [webauthn] Update definition of Authenticator to make it more similar to FIDO's def
- Re: [webauthn] Updated authnr def
- Re: [webauthn] Updated authnr def
- [webauthn] Merged Pull Request: Updated authnr def
- [webauthn] new commits pushed by rlin1
- [webauthn] Pull Request: Updated authnr def
- [w3c/webauthn] 67a1a3: updated the definition of authenticator
- [w3c/webauthn] 25bede: Built by Travis-CI: cffd22fddf9aec528e30a03548b551...
- [webauthn] new commits pushed by WebAuthnBot
- [webauthn] new commits pushed by rlin1
- Re: [webauthn] Update definition of Authenticator to make it more similar to FIDO's def
- Re: [webauthn] explain challenge's security importance and use in both registration and authentication operations
- [w3c/webauthn]
- [w3c/webauthn] 63564a: replaced authenticatio key by credential private k...
- [webauthn] Merged Pull Request: replaced authentication key by credential private key. Close #590
- [webauthn] new commits pushed by jcjones
- Closed: [webauthn] Need to remove the term "authentication key" in self attestation description
- Re: [webauthn] explain challenge's security importance and use in both registration and authentication operations
- Re: [webauthn] use the registered ext ids in examples
- Re: [webauthn] No description regarding representation of credential Id length
- [webauthn] Pull Request: use the registered ext ids in examples
- [w3c/webauthn] 40875f: use the registered ext ids in examples
- [webauthn] new commits pushed by rlin1
- Re: [webauthn] preventSilentAccess() -- what effect does calling it have?
- [w3c/webauthn] 63564a: replaced authenticatio key by credential private k...
- [w3c/webauthn] ce4fe9: Built by Travis-CI: 0e93926d7c77afd07e75002880f15b...
- [w3c/webauthn] 0e9392: Modify SafetyNet descriptive text (#643)
- [w3c/webauthn] b59da7: Fix a reference to the wrong requireUserVerificati...
- Re: [webauthn] UVM Extension Editorial Change
- [webauthn] Pull Request: Fix uvm 368
- [w3c/webauthn] 1df795: fix copy and paste error
- [webauthn] new commits pushed by rlin1
- Re: [webauthn] Credential CBOR
- Closed: [webauthn] Credential CBOR
- Re: [webauthn] Crypto algorithm agility: e.g., Specify the set of hash algorithms UAs can select between.
- [webauthn] Pull Request: Resolve #292 - Clarify that only one operation is permitted per authenticator session
- Re: [webauthn] Crypto algorithm agility: e.g., Specify the set of hash algorithms UAs can select between.
- Re: [webauthn] Refine meaning of PublicKeyCredentialType to be "signature & assertion format (and version thereof)"
- Closed: [webauthn] Refine meaning of PublicKeyCredentialType to be "signature & assertion format (and version thereof)"
- Re: [webauthn] Crypto algorithm agility: e.g., Specify the set of hash algorithms UAs can select between.
- Re: [webauthn] Privacy across OS accounts
- Re: [webauthn] define what to do if both normalizedAlgorithm and cryptoParameters are empty
- Closed: [webauthn] define what to do if both normalizedAlgorithm and cryptoParameters are empty
- Re: [webauthn] Add getAuthenticatorInfo to the Authenticator Model section
- Re: [webauthn] Add getAuthenticatorInfo to the Authenticator Model section
- Re: [webauthn] Internationalization self review
- Re: [webauthn] Privacy across Account IDs
- Re: [webauthn] Privacy concerns with blacklist/whitelist
- Re: [webauthn] credential id privacy
- Re: [webauthn] credential id privacy
- Re: [webauthn] credential id privacy
- Re: [webauthn] credential id privacy
- Re: [webauthn] credential id privacy
- Closed: [webauthn] imageURL privacy
- Closed: [webauthn] impl guidelines for signature counter
- Re: [webauthn] further details for authenticatorCancel operation
- Re: [webauthn] further details for authenticatorCancel operation
- Re: [webauthn] further details for authenticatorCancel operation
- Re: WebEx for TPAC
- Closed: [webauthn] Make create() and get() abortable
- Re: [webauthn] Make create() and get() abortable
- Closed: [webauthn] Should the WebAuth API have a cancel() method?
- Re: [webauthn] Should the WebAuth API have a cancel() method?
- Re: WebEx for TPAC
- [w3c/webauthn] 14d08c: Fix broken variable member references
- [w3c/webauthn] 931b46: Make create() and get() abortable (#544)
- [webauthn] new commits pushed by equalsJeffH
- [w3c/webauthn] 261c1f: Built by Travis-CI: d468a75b6a723867d24add0bd01bd7...
- [w3c/webauthn] d468a7: fix #254: credman alignment: update #getAssertion ...
- [webauthn] new commits pushed by WebAuthnBot
- [w3c/webauthn]
- [webauthn] new commits pushed by equalsJeffH
- Closed: [webauthn] revamped [[Create]]() method lacks origin argument
- Closed: [webauthn] There is no "current settings object" in algorithm steps that are executing in parallel
- [webauthn] Merged Pull Request: fix #254: credman alignment: update #getAssertion section a la PR #498
- Closed: [webauthn] fix #254: credman alignment: update #getAssertion section a la PR #498
- Closed: [webauthn] need to clean up "promise" language
- [w3c/webauthn] b68982: Make authenticatorMakeCredential always use UV if ...
- [webauthn] new commits pushed by emlun
- [w3c/webauthn] a2c99a: Fix list numbering accidentally broken by fc2c7b8
- [webauthn] new commits pushed by emlun
- RE: Proposal: Chrome privacy CA
- Re: Proposal: Chrome privacy CA
- 11/09/2017 W3C Web Authentication WG Meeting Agenda
- [w3c/webauthn] fc2c7b: Format |userVerification| decisions as switches
- Re: [webauthn] Make create() and get() abortable
- Re: [webauthn] fix #254: credman alignment: update #getAssertion section a la PR #498
- [w3c/webauthn] 9f5df0: Make PublicKeyCredentialEntity hierarchy required ...
- [webauthn] new commits pushed by equalsJeffH
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Re: [webauthn] fix #254: credman alignment: update #getAssertion section a la PR #498
- [w3c/webauthn] 0eeb1b: Built by Travis-CI: 931b46eece69f5d780ce4b317e3a37...
- [webauthn] new commits pushed by WebAuthnBot
Wednesday, 8 November 2017
- [w3c/webauthn] 931b46: Make create() and get() abortable (#544)
- [webauthn] new commits pushed by equalsJeffH
- [webauthn] Merged Pull Request: Make create() and get() abortable
- Re: [webauthn] Make create() and get() abortable
- [w3c/webauthn] 9f5df0: Make PublicKeyCredentialEntity hierarchy required ...
- [webauthn] new commits pushed by equalsJeffH
- Re: Fix #644: Add UV parameter to getAssertion #672
- Re: Proposal: Chrome privacy CA
- Re: [webauthn] #getAssertion alg needs to pass authenticator selection requirements to authenticatorGetAssertion operation
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Fix #644: Add UV parameter to getAssertion #672
- Comments on WebAuthn spec from W3C APA WG
- sorry for the repetition...
- Re: [webauthn] fix #254: credman alignment: update #getAssertion section a la PR #498
- Re: [webauthn] fix #254: credman alignment: update #getAssertion section a la PR #498
- Re: [webauthn] fix #254: credman alignment: update #getAssertion section a la PR #498
- Re: [webauthn] fix #254: credman alignment: update #getAssertion section a la PR #498
- Re: [webauthn] fix #254: credman alignment: update #getAssertion section a la PR #498
- spec testing infrastructure: web-platform-tests.org wpt.fyi
- W3C spec editing, testing, lifecycle info
- Re: Proposal: Chrome privacy CA
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- [w3c/webauthn] 9a3e24: Make UP and UV independent again
- [webauthn] new commits pushed by emlun
- [w3c/webauthn] 7a134d: Change requireUserVerification default to "wanted"
- [webauthn] new commits pushed by emlun
Tuesday, 7 November 2017
- Re: Proposal: Chrome privacy CA
- Re: Fix #587: Make PublicKeyCredentialEntity members required in IDL #669
Monday, 6 November 2017
Tuesday, 7 November 2017
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- Re: Proposal: Chrome privacy CA
- Re: [webauthn] Make create() and get() abortable
- [w3c/webauthn] 167730: Built by Travis-CI: 7153b55e8cd8e1bad5b5f57ee1eb7d...
- [webauthn] new commits pushed by WebAuthnBot
- [w3c/webauthn] 9f5df0: Make PublicKeyCredentialEntity hierarchy required ...
- [webauthn] Merged Pull Request: Fix #587: Make PublicKeyCredentialEntity members required in IDL
- [webauthn] new commits pushed by jcjones
- Closed: [webauthn] Nothing required in PublicKeyCredentialEntity
- Re: Proposal: Chrome privacy CA
Monday, 6 November 2017
- Re: discussion on payments and authentication?
- Re: [webauthn] Ask for tests for normative changes in CONTRIBUTING.md
- discussion on payments and authentication?
- Re: [webauthn] Ask for tests for normative changes in CONTRIBUTING.md
- Re: [webauthn] Ask for tests for normative changes in CONTRIBUTING.md
- Re: [webauthn] Ask for tests for normative changes in CONTRIBUTING.md
- Re: Proposal: Chrome privacy CA
- Re: Proposal: Chrome privacy CA
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- [w3c/webauthn] c6f07a: Remove redundant "if present" from requireUserVeri...
- [webauthn] new commits pushed by emlun
- Re: [webauthn] Fix #644: Add UV parameter to getAssertion
- [webauthn] Pull Request: Fix #644: Add UV parameter to getAssertion
- [w3c/webauthn] ef015f: Improve formulation of UP/UV requirement in authen...
- [webauthn] new commits pushed by emlun
Saturday, 4 November 2017
- [w3c/webauthn] 1c1a11: Add UV parameter to getAssertion operation
- [webauthn] new commits pushed by emlun
- Re: [webauthn] #getAssertion alg needs to pass authenticator selection requirements to authenticatorGetAssertion operation
Friday, 3 November 2017
- Re: [webauthn] Make create() and get() abortable
- Re: [webauthn] Make create() and get() abortable
- Re: [webauthn] #getAssertion alg needs to pass authenticator selection requirements to authenticatorGetAssertion operation
- Re: [webauthn] Make create() and get() abortable
- Re: [webauthn] fix #254: credman alignment: update #getAssertion section a la PR #498
- [w3c/webauthn] d879b7: Only exclude CredIDs matching the RPID
- [webauthn] new commits pushed by equalsJeffH
- [webauthn] need to clean up "promise" language
- Re: [webauthn] fix #254: credman alignment: update #getAssertion section a la PR #498
- Re: [webauthn] Fix #587: Make PublicKeyCredentialEntity members required in IDL
- [w3c/webauthn] ca6a49: Built by Travis-CI: 625bd7acf014bb1664d2b8852883d8...
- [webauthn] new commits pushed by WebAuthnBot
- Closed: [webauthn] authenticatorMakeCredential operation credential filtering
- Re: [webauthn] authenticatorMakeCredential operation credential filtering
- [w3c/webauthn] d879b7: Only exclude CredIDs matching the RPID
- [webauthn] Merged Pull Request: Only exclude CredIDs matching the RPID
- [webauthn] new commits pushed by jcjones
- Re: [webauthn] #getAssertion alg needs to pass authenticator selection requirements to authenticatorGetAssertion operation
- Re: [webauthn] #getAssertion alg needs to pass authenticator selection requirements to authenticatorGetAssertion operation
- Re: [webauthn] #getAssertion alg needs to pass authenticator selection requirements to authenticatorGetAssertion operation
- [w3c/webauthn] cac111: Un-hardcode step numbers in RP operations
- [webauthn] Pull Request: Fix #587: Make PublicKeyCredentialEntity members required in IDL
- [w3c/webauthn] 9f5df0: Make PublicKeyCredentialEntity hierarchy required ...
- [webauthn] new commits pushed by emlun
- Re: [webauthn] Nothing required in PublicKeyCredentialEntity
- Re: [webauthn] #getAssertion alg needs to pass authenticator selection requirements to authenticatorGetAssertion operation
- [webauthn] Recommend RPs to verify UP and UV flags
- Re: [webauthn] WebAuthn available to Workers? aka "silent authentication"
- [w3c/webauthn] 0418f3: Sensible limits for RP and User Entity fields. (#6...
- [w3c/webauthn] b973de: Built by Travis-CI: 0418f3eeb054b57bc541bbf57f6899...
- [webauthn] new commits pushed by akshayku
- [webauthn] new commits pushed by WebAuthnBot
- [w3c/webauthn]
- [webauthn] new commits pushed by akshayku
- Closed: [webauthn] Define sensible limits for User and RP Entity to be stored on Authenticator as part of create credential
- Re: [webauthn] Define sensible limits for User and RP Entity to be stored on Authenticator as part of create credential
- [w3c/webauthn]
- [w3c/webauthn] 0418f3: Sensible limits for RP and User Entity fields. (#6...
- [webauthn] new commits pushed by akshayku
- [webauthn] Merged Pull Request: Sensible limits for RP and User Entity fields.
- Re: [webauthn] Sensible limits for RP and User Entity fields.
- [w3c/webauthn] 7f1068: Incorporating feedback and trying to get travis/bi...
- [webauthn] new commits pushed by akshayku
- Re: [webauthn] WebAuthn available to Workers? aka "silent authentication"
- Re: [webauthn] #getAssertion alg needs to pass authenticator selection requirements to authenticatorGetAssertion operation
Thursday, 2 November 2017
- Re: [webauthn] Only exclude CredIDs matching the RPID
- Re: [webauthn] Sensible limits for RP and User Entity fields.
- Re: [webauthn] #getAssertion alg needs to pass authenticator selection requirements to authenticatorGetAssertion operation
- Re: [webauthn] WebAuthn available to Workers? aka "silent authentication"
- [w3c/webauthn] 727633: Built by Travis-CI: c647b7099dfc78dcab15998783971e...
- [webauthn] new commits pushed by WebAuthnBot
- [w3c/webauthn] c647b7: Define Public Key Credential Source and Credential...
- [webauthn] Merged Pull Request: Define Public Key Credential Source and Credential ID.
- [webauthn] new commits pushed by jyasskin
- Re: [webauthn] Define Public Key Credential Source and Credential ID.
- Re: [webauthn] Make create() and get() abortable
- Re: Proposal: Chrome privacy CA
- RE: Proposal: Chrome privacy CA
- Re: [webauthn] Nothing required in PublicKeyCredentialEntity
- Re: [webauthn] Sensible limits for RP and User Entity fields.
- [w3c/webauthn] b2c141: Incorporating Feedback
- [webauthn] new commits pushed by akshayku
- Re: [webauthn] Sensible limits for RP and User Entity fields.
- Re: [webauthn] Sensible limits for RP and User Entity fields.
Wednesday, 1 November 2017
- Re: [webauthn] Sensible limits for RP and User Entity fields.
- Re: [webauthn] Sensible limits for RP and User Entity fields.
- Re: [webauthn] Eliminate duplicate terminology
- Re: [webauthn] Sensible limits for RP and User Entity fields.
- Re: [webauthn] Define sensible limits for User and RP Entity to be stored on Authenticator as part of create credential
- Re: Proposal: Chrome privacy CA
- Re: Proposal: Chrome privacy CA
- Re: Proposal: Chrome privacy CA
- Re: [webauthn] CTAP/U2F doesn't status indicating the user cancelled the operation
- Re: [webauthn] Sensible limits for RP and User Entity fields.
- Re: [webauthn] Only exclude CredIDs matching the RPID
- Proposal: Chrome privacy CA
- Re: [webauthn] undefined terms
- Re: [webauthn] #getAssertion alg needs to pass authenticator selection requirements to authenticatorGetAssertion operation
- Re: [webauthn] Define sensible limits for User and RP Entity to be stored on Authenticator as part of create credential
- Re: [webauthn] Sensible limits for RP and User Entity fields.
- [w3c/webauthn] a44746: Trying to make travis checks happy
- [webauthn] new commits pushed by akshayku
- [webauthn] Pull Request: Sensible limits for RP and User Entity fields.
- [w3c/webauthn] 272a66: Sensible limits for RP and User Entity fields.
- [webauthn] new commits pushed by akshayku
- 11/01/2017 W3C Web Authentication WG Meeting Agenda