ping teleconf

Hi, 

  here's a quick log of the ping (Privacy Interest Group) teleconf today.
Hopefully we'll get some more feedback to help us structure our privacy/security sections.


18:35 npdoty: bblfish: was Incubator, now working as a Community Group
18:35 fjh: is there a link for the CG, participants?
18:36 npdoty: bblfish: would like to finish, publish specs hopefully by the summer
18:36 richt: would like to bring https://2x.io/read/security-by-obscurity to the attention of this group. RE: exposing local IP addresses to web pages in WebRTC (as I mentioned earlier on this call).
18:36 fjh richt, thanks
18:37 christine: Thanks for the clarification Nick
18:37 christine: No more from me
18:38 npdoty: bblfish: would like to push this up to the next stage, five years of work altogether
18:38 npdoty: ... two specifications and an ontology
18:38 npdoty: ... Web Identity and, separately, how do you communicate with WebID over TLS
18:39 fjh: q+ to ask about web id correlation
18:39 Zakim sees bblfish, fjh on the speaker queue
18:39 npdoty: ... and then prototypes, for example, using access control for a wiki
18:39 npdoty: ... using Linked Data
18:40 npdoty: ... have added Privacy/Security Considerations sections to the two specs
18:40 npdoty: ... new since we last talked here
18:40 npdoty: ... looking for feedback on those sections
18:41 npdoty: ... authentication over TLS, rather frequently implemented/used in browsers
18:41 npdoty: ack fjh
18:41 Zakim: fjh, you wanted to ask about web id correlation
18:41 Zakim sees bblfish on the speaker queue
18:41 npdoty: q- bblfish
18:41 Zakim sees no one on the speaker queue
18:41 npdoty: fjh: what the requirements are; is there an issue here of correlation which would need obfuscation
18:42 npdoty: bblfish: WebID does make it easy to link profiles, it is meant for that specifically to support a decentralized Social Web
18:42 npdoty: ... can create p2p social networks over HTTP, reduces centralization which is advantageous, but leakage of links/URIs
18:43 npdoty: ... costs are weighed against the benefit of that decentralized social networking
18:43 yrlesru: Was this the reference to use cases and requirements? , https://dvcs.w3.org/hg/ldpwg/raw-file/default/ldp-ucr.html#maintaining-social-contact-information
18:43 npdoty: ... communicating over SSL can prevent eavesdropping
18:43 npdoty: fjh: just important to make the tradeoff clear
18:44 npdoty: tara: timeline?
18:44 fjh: thanks for clarifying the potential tradeoff between decentralization and potential for Service provider (web application) correlation based on ids
18:44 npdoty: bblfish: not a great hurry, but quick review of privacy and security sections would be helpful
18:51 bblfish: yrlesru, thanks for the pointer to the WebId use case ( catching up on IRC )
18:52 fjh bblfish would be useful to link to use cases from specs


I'll re-read those sections again in light of the teleconf. Any other feedback is welcome.



Henry

Social Web Architect
http://bblfish.net/

Received on Thursday, 30 January 2014 18:59:58 UTC