- From: Henry Story <henry.story@bblfish.net>
- Date: Thu, 30 Jan 2014 19:59:26 +0100
- To: public-webid WebID Group <public-webid@w3.org>
Hi, here's a quick log of the ping (Privacy Interest Group) teleconf today. Hopefully we'll get some more feedback to help us structure our privacy/security sections. 18:35 npdoty: bblfish: was Incubator, now working as a Community Group 18:35 fjh: is there a link for the CG, participants? 18:36 npdoty: bblfish: would like to finish, publish specs hopefully by the summer 18:36 richt: would like to bring https://2x.io/read/security-by-obscurity to the attention of this group. RE: exposing local IP addresses to web pages in WebRTC (as I mentioned earlier on this call). 18:36 fjh richt, thanks 18:37 christine: Thanks for the clarification Nick 18:37 christine: No more from me 18:38 npdoty: bblfish: would like to push this up to the next stage, five years of work altogether 18:38 npdoty: ... two specifications and an ontology 18:38 npdoty: ... Web Identity and, separately, how do you communicate with WebID over TLS 18:39 fjh: q+ to ask about web id correlation 18:39 Zakim sees bblfish, fjh on the speaker queue 18:39 npdoty: ... and then prototypes, for example, using access control for a wiki 18:39 npdoty: ... using Linked Data 18:40 npdoty: ... have added Privacy/Security Considerations sections to the two specs 18:40 npdoty: ... new since we last talked here 18:40 npdoty: ... looking for feedback on those sections 18:41 npdoty: ... authentication over TLS, rather frequently implemented/used in browsers 18:41 npdoty: ack fjh 18:41 Zakim: fjh, you wanted to ask about web id correlation 18:41 Zakim sees bblfish on the speaker queue 18:41 npdoty: q- bblfish 18:41 Zakim sees no one on the speaker queue 18:41 npdoty: fjh: what the requirements are; is there an issue here of correlation which would need obfuscation 18:42 npdoty: bblfish: WebID does make it easy to link profiles, it is meant for that specifically to support a decentralized Social Web 18:42 npdoty: ... can create p2p social networks over HTTP, reduces centralization which is advantageous, but leakage of links/URIs 18:43 npdoty: ... costs are weighed against the benefit of that decentralized social networking 18:43 yrlesru: Was this the reference to use cases and requirements? , https://dvcs.w3.org/hg/ldpwg/raw-file/default/ldp-ucr.html#maintaining-social-contact-information 18:43 npdoty: ... communicating over SSL can prevent eavesdropping 18:43 npdoty: fjh: just important to make the tradeoff clear 18:44 npdoty: tara: timeline? 18:44 fjh: thanks for clarifying the potential tradeoff between decentralization and potential for Service provider (web application) correlation based on ids 18:44 npdoty: bblfish: not a great hurry, but quick review of privacy and security sections would be helpful 18:51 bblfish: yrlesru, thanks for the pointer to the WebId use case ( catching up on IRC ) 18:52 fjh bblfish would be useful to link to use cases from specs I'll re-read those sections again in light of the teleconf. Any other feedback is welcome. Henry Social Web Architect http://bblfish.net/
Received on Thursday, 30 January 2014 18:59:58 UTC