"Old" TLS version mentioned in use cases draft
5/16 regrets (ACTION-208, ACTION-210)
[Agenda] Dublin registration and practicalities
Action 180 - Make pass through SharedBookmarks and other material; map testing results to status quo
ACTION 181: Summary of EV certificate discussion, prototype recommendation
Action 213: write a lightning proposal on wiki
ACTION 215: Revisit threat trees
ACTION-163 OPEN to draft "where am I" outline Rachna Dhamija 2007-04-02
ACTION-177 OPEN aggregate material on TLS user interaces across browsers, based on input from vendors Mike Beltzner 2007-04-25
ACTION-184 - summarize robustness practices in terms of limitations on sites' freedom
ACTION-186: Review process chapter of Note
ACTION-196 OPEN turn ramblings about deployment and server side into coherent written material Chuck Wade 2007-04-25
ACTION-201 Extract refined proto-recs from record of discussion about ErrorHandling and Yngve\\\\'s blog item on same topic
ACTION-205: Update PageInfo Proposal after discussion
ACTION-208: "Site Identifying Images in Chrome" display recommendation
ACTION-209: What is a secure page?
ACTION-210: "Security Protocol Error Presentation" display recommendation
Added "Empirical Approach to Understanding Privacy Valuation" to SharedBookmarks on wiki
Agenda, Wednesay, 2 May, WSC Call
Agenda, Wednesay, 23 May, WSC Call
- Thomas Roessler (Wednesday, 23 May)
- Bruno von Niman (Wednesday, 23 May)
- Thomas Roessler (Wednesday, 23 May)
- Bruno von Niman (Wednesday, 23 May)
- Thomas Roessler (Wednesday, 23 May)
- Bruno von Niman (Wednesday, 23 May)
- Dan Schutzer (Tuesday, 22 May)
- Thomas Roessler (Tuesday, 22 May)
- Bruno von Niman (Tuesday, 22 May)
- Mary Ellen Zurko (Tuesday, 22 May)
Agenda: WSC WG weekly 2007-05-16
ANEC'scomments on the “Web Security Experience, Indicators and Trust: Scope and Use Cases” working draft (March 02, 2007)
As pdf: ANEC'scomments on the “Web Security Experience, Indicators and Trust: Scope and Use Cases” working draft (March 02, 2007)
Browser GUI logic flaws
Cancelling meeting attendance; how handle comments?
conformance clauses
Conformance testing experience?
cross application context added to Futures and One Pluses section of our wiki
diffmk
Dublin logistics
dublin logistics - is this a 9:00 start time?
Editing process for Recommendations
F2f Dublin access to internet
FYI... W3C XSS
Hello from JBoss/Red Hat
Important: Dublin logistics.
Issue 12 - future proofing User Agent Security - Multi-vendor and Collaborative environments
ISSUE-18: Clarify audience of wsc-usecases
ISSUE-19: Arrangement and formatting of use cases
ISSUE-20 - proposed text for intro section of section 7
ISSUE-26 OPEN "currently deployed security information"
ISSUE-32: explain dynamic content better
ISSUE-33: Charter retains authority Review of Note
ISSUE-34: Formal studies don\'t cover disability access adequately, use experts too - (public comment)
ISSUE-36: presentation norms -- no oneSizeFitsAll (from public comments)
ISSUE-38: no safe haven in presentation space (from public comments)
ISSUE-42: Re: 3.2 Non-HTTP Web interactions (public comment)
ISSUE-43: don\\'t disable assistive technology (public comment)
ISSUE-44: beyond \'who\' (some day) (pubic comment)
ISSUE-45: full legal entity identification (is a must) (pubic comment)
ISSUE-49: trust in browser password cache needs to be better justified (pubic comment)
ISSUE-50: present web security is not good enough; even \\'though fixing that is out of scope for this deliverable (public comment)
ISSUE-51: distinguished Chrome is not the answer (public comment)
ISSUE-66: Suggested rewrite of last paragraph of 10.3
ISSUE-67: The introduction to the note should include a hyperlink to the charter.
ISSUE-69: New goal--Reduce the number of scenarios in which users\' security depends upon authenticating sites
ISSUE-6: User Interface Issues for Mobile Browsing
ISSUE-70: Scope should be defined in terms of concepts, not in terms of use cases
ISSUE-71: Change title of Section 7
ISSUE-72: Replace term \"Status Quo\" with something more specific
ISSUE-73: Proposed changes to process chapter
ISSUE-74: Dependencies on other wgs
ISSUE-75: Relation to existing standards and related work
Last Call - and wsc-usecases
Last Call - how does it work? (Re: Agenda, Wednesay, 23 May, WSC Call)
Last Call - how does it work? (Re: Agenda, Wednesay, 23 May,WSC Call)
Meeting Record: WSC WG weekly 2007-04-25
Meeting record: WSC WG weekly 2007-05-16
Minutes: WSC WG weekly 2007-05-02
Mozilla's experiments
my action items (Re: Agenda, Wednesay, 2 May, WSC Call)
My all time favorite!
Next face-to-face: October 2/3 Austin Texas
people will click on anything
Please register for next f2f
Proposed approach to conformance; structuring of requirements
Questionnaire: possible late summer face-to-face
Recommendation template (Was: Editing process for Recommendations)
- Shawn Duffy (Wednesday, 16 May)
- Close, Tyler J. (Friday, 11 May)
- michael.mccormick@wellsfargo.com (Friday, 11 May)
- Close, Tyler J. (Thursday, 10 May)
- Mary Ellen Zurko (Wednesday, 9 May)
- Thomas Roessler (Saturday, 5 May)
- Thomas Roessler (Saturday, 5 May)
- michael.mccormick@wellsfargo.com (Friday, 4 May)
- Mary Ellen Zurko (Thursday, 3 May)
- Close, Tyler J. (Wednesday, 2 May)
Recommendations Draft
Regrets - 23 May call
Regrets 5/16
Rough proposal: Contextual Password Warnings
Rough rec proposal: revisiting past decisions
Safe Web Browsing Recommendation put in template form
Scheduling meetings for first half 2008
Session Fixation Issues
SSL error anti patterns
Strawman favicon proposal from this morning
Summary of "What is a secure page?" discussion, first draft
Template updated; please adapt proposals by June 15
VeriSign offers IE7-style EV-SSL "green bar" to Firefox users
WSC WG f2f May 2007 Agenda (v 1.0)
WSC WG f2f May 2007 Agenda (v 1.1)
Last message date: Thursday, 31 May 2007 16:37:26 UTC