"reputation"? Re: Some major edits just checked in.
6.4 and accessibility
ACTION-345 OPEN Begin designing lo-fi user study for Browser Lockdown Maritza Johnson 2008-02-28
ACTION-355: Describe algorithms commonly used to create display names of certificates
ACTION-371: Stab at ISSUE-124
ACTION-386: Use TLS for Login Pages
ACTION-388: Rewrite Self-Signed Certificate Material
ACTION-393: Rerwite trust indicators in content text.
ACTION-399
ACTION-401: Larry as Lo-Fi prototype for 6.1.1
ACTION-405: Clarify material on crossing the content-chrome boundary
ACTION-406: Petname burden
ACTION-409: Revise "MUST include applicable DNS name" based on discussion
Additional Security Context Information: "why trusted?"
Agenda: WSC WG distributed meeting, Wednesday, 2008-03-05
Agenda: WSC WG distributed meeting, Wednesday, 2008-03-26
Agenda: WSC WG weekly 2008-03-19
audio logotypes
Authoring practices on mixed content and unsafe redirects.
Can XQuery/XPath contribute to attack vectors?
Conformance model in section 7 (Re: New editor's draft shuffles sections.)
consistency observation re absence of trustworthy information (Re: Discussion of 6.1 for LC June)
Discussion of 6.1 for LC June
- Stephen Farrell (Wednesday, 26 March)
- Johnathan Nightingale (Wednesday, 26 March)
- Thomas Roessler (Wednesday, 26 March)
- Johnathan Nightingale (Wednesday, 26 March)
- Thomas Roessler (Wednesday, 26 March)
- Stephen Farrell (Wednesday, 26 March)
- Thomas Roessler (Wednesday, 26 March)
- Stephen Farrell (Wednesday, 26 March)
- Thomas Roessler (Wednesday, 26 March)
- Johnathan Nightingale (Wednesday, 26 March)
- Thomas Roessler (Tuesday, 25 March)
- Stephen Farrell (Friday, 21 March)
- Thomas Roessler (Friday, 21 March)
- Mary Ellen Zurko (Friday, 21 March)
- Thomas Roessler (Friday, 14 March)
- Thomas Roessler (Saturday, 8 March)
- Johnathan Nightingale (Friday, 7 March)
- Mary Ellen Zurko (Friday, 7 March)
ISSUE-104 Some information in certificates is not trustworthy
ISSUE-110 POST triggered via JavaScript
ISSUE-112 Conformance models for usability?
ISSUE-116 ReconfigureChrome Should users be able to reconfigure primary chrome?
ISSUE-118 Interaction glossary?
ISSUE-128 Strong / weak algorithms?
ISSUE-133 Plugin Problems How do our definition of Web Page and the Robustiness section interact?
ISSUE-137 - Require Identity Signal whenever URLs are displayed
ISSUE-141: More history that may be part of additional security context information [wsc-xit]
ISSUE-182: We have lost the "secure page" definition [wsc-xit]
ISSUE-186 (Petname option): Give petname as an option in identity signal [wsc-xit]
ISSUE-187 (PinnedCerts): Be clear on just what pinned certificates are and are not [wsc-xit]
ISSUE-188 (props): xit needs an acknowlegements section [wsc-xit]
- Anil Saldhana (Friday, 28 March)
- Thomas Roessler (Tuesday, 25 March)
- Serge Egelman (Monday, 24 March)
- Serge Egelman (Monday, 24 March)
- Johnathan Nightingale (Monday, 24 March)
- Stephen Farrell (Saturday, 22 March)
- Anil Saldhana (Friday, 21 March)
- michael.mccormick@wellsfargo.com (Friday, 14 March)
- Mary Ellen Zurko (Friday, 14 March)
- Johnathan Nightingale (Friday, 14 March)
- Anil Saldhana (Friday, 14 March)
- Web Security Context Working Group Issue Tracker (Friday, 14 March)
ISSUE-189 (SharedSecretWithWhom): shared secret from UA of web site? [wsc-xit]
ISSUE-4 How applicable is baseline information to content retrieved by FTP?
ISSUE-41 limited guidance on presentation OK (public comment)
Logotypes in identity signal and additional context information sections
low cost UT on some aspect of LC June
Meeting record: 2008-03-19
Meeting record: WSC WG weekly 2008-02-27
Meeting record: WSC WG weekly 2008-03-05
meta-topic on a tool produced while editing for this WG
New editor's draft shuffles sections.
New secure browser developed
Nomenclature fixes around self-signed certificates
Not yet a proposal: error conditions (ACTION-390)
petname definition for ACTION-391
petname implementation recommendation proposal
- Timothy Hahn (Friday, 21 March)
- Close, Tyler J. (Wednesday, 19 March)
- Timothy Hahn (Wednesday, 19 March)
- Dan Schutzer (Wednesday, 19 March)
- Serge Egelman (Wednesday, 19 March)
- Close, Tyler J. (Wednesday, 19 March)
- Stephen Farrell (Wednesday, 19 March)
- Rachna Dhamija (Wednesday, 19 March)
- Stephen Farrell (Wednesday, 19 March)
- Close, Tyler J. (Wednesday, 19 March)
- Rachna Dhamija (Wednesday, 19 March)
- Close, Tyler J. (Friday, 14 March)
petnames and bookmarks (Was: petname implementation recommendation proposal)
process topics (re: petname implementation recommendation proposal)
Reminder to dial in - Monthly FSTC Security SCOM Speakers for March 13th, 1pm - 2pm: 512-225-3050, pc 803903#]
Secure chrome
Should EV signalling be in place if the user granted an exception?
Single site browsers
Some major edits just checked in.
Some major edits just checked in. - SSC
Some major edits just checked in. - tls errors
Some studies on the visibility of EV sites.
- Rachna Dhamija (Sunday, 9 March)
- Hallam-Baker, Phillip (Friday, 7 March)
- Mary Ellen Zurko (Friday, 7 March)
- Hallam-Baker, Phillip (Thursday, 6 March)
- Serge Egelman (Thursday, 6 March)
- Hallam-Baker, Phillip (Thursday, 6 March)
- Hallam-Baker, Phillip (Wednesday, 5 March)
- Serge Egelman (Wednesday, 5 March)
- Hallam-Baker, Phillip (Wednesday, 5 March)
- Mike Beltzner (Wednesday, 5 March)
- Hallam-Baker, Phillip (Wednesday, 5 March)
Summary of FSTC Security Meeting
URL disambiguation
- Stephen Farrell (Tuesday, 4 March)
- michael.mccormick@wellsfargo.com (Tuesday, 4 March)
- Ian Fette (Tuesday, 4 March)
- michael.mccormick@wellsfargo.com (Tuesday, 4 March)
- Stephen Farrell (Tuesday, 4 March)
- Stephen Farrell (Tuesday, 4 March)
- michael.mccormick@wellsfargo.com (Tuesday, 4 March)
- Stephen Farrell (Tuesday, 4 March)
- michael.mccormick@wellsfargo.com (Tuesday, 4 March)
- michael.mccormick@wellsfargo.com (Tuesday, 4 March)
- Anil Saldhana (Tuesday, 4 March)
- Ian Fette (Tuesday, 4 March)
- michael.mccormick@wellsfargo.com (Tuesday, 4 March)
USB smart buttons
WSC Open Action Items
wsc-usecases published as Note
Last message date: Friday, 28 March 2008 23:27:21 UTC