- From: Frederick Hirsch <frederick.hirsch@nokia.com>
- Date: Fri, 7 Nov 2008 11:08:31 -0500
- To: XMLSec WG Public List <public-xmlsec@w3.org>
- Cc: Frederick Hirsch <frederick.hirsch@nokia.com>
- Message-Id: <17A1E2DF-D3D1-4DD2-BFAB-94814804E4B5@nokia.com>
Agenda: W3C XML Security WG (XMLSec)
Teleconference 11 November 2008
Distributed Meeting #11
10-12:00 am Eastern Time
Information on meeting times in various time zones:
http://www.w3.org/2008/xmlsec/Group/Overview.html#phone
Zakim Bridge:
+1.617.761.6200 conference code 965732# ('XMLSEC')
IRC Chat:
irc.w3.org (port 6665), #xmlsec
Web-based IRC (member-only):
<http://cgi.w3.org/member-bin/irc/irc.cgi>
Please note that attendance of XMLSEC WG teleconferences is restricted
to registered WG participants and persons invited by the chair.
Chair: Frederick Hirsch
Regrets: Thomas Roessler
see http://www.w3.org/2008/xmlsec/Group/Overview.html#upcoming-meetings
1) Administrivia: scribe confirmation, next meeting, other
1a) Magnus Nyström is scheduled to scribe
The current scribe list is at the end of this message, will rotate
through this list.
Scribe Instructions:
http://www.w3.org/2007/xmlsec/Group/Scribe-Instructions.html
1b) Meeting planning: weekly meetings
This WG meets weekly on Tuesdays 10-12 Eastern unless a meeting is
cancelled.
Upcoming meeting information is available on the WG Administrative page:
http://www.w3.org/2008/xmlsec/Group/Overview.html#upcoming-meetings
25 November, 23 December, 30 December 2008 Teleconferences have been
cancelled
Next meeting 18 November, Ed Simon is scheduled to scribe.
1c) Liaisons and Coordination
See status at members page
http://www.w3.org/2008/xmlsec/Group/Overview.html#coordination
Added WS-Federation, JSR 105/106. Updated links to OASIS Public Pages
(Frederick)
1d) Best Practices publication
Potentially delayed to 14 November.
2) Minutes Approval
2a) (Updated) Minutes from F2F 20-21 October 2008 for approval:
Please review the minutes which incorporate corrections from Frederick
http://www.w3.org/2008/10/20-xmlsec-minutes
http://www.w3.org/2008/10/21-xmlsec-minutes
2b) Minutes from 4 November 2008 for approval:
http://www.w3.org/2008/11/04-xmlsec-minutes
3) v1.1 Roadmap
Review and comments on v1.1 Roadmap
http://www.w3.org/2008/xmlsec/Drafts/roadmap/roadmap.html
Comments
- Only Recommend for ECC (not MUST), to avoid IPR issues?, SHA2 a
MUST...
"SHA2 + RSA" and "EC-based signature algorithms",
- Transform simplification should be on v2.0 roadmap, not 1.1
4) Algorithms for v1.1
4a) Algorithm draft
4b) DTDs
New Issue: Requirement for DTD definition for XML Signature in v1.1,
v.next
http://lists.w3.org/Archives/Public/public-xmlsec/2008Nov/0008.html
(Frederick)
5) Requirements
5a) Certificates and DER encoding
"certificates SHOULD be DER encoded ... and implementations MAY issue
an error if an encoding other than DER is encountered"
http://lists.w3.org/Archives/Public/public-xmlsec/2008Nov/0009.html
(Konrad)
DER required for Cert extensions, but CA chooses encoding
http://lists.w3.org/Archives/Public/public-xmlsec/2008Nov/0010.html
(Magnus)
important to note CA is third party and chooses encoding, so do not
mandate DER
http://lists.w3.org/Archives/Public/public-xmlsec/2008Nov/0011.html
(John Wray)
5b) Long Term Signatures
http://lists.w3.org/Archives/Public/public-xmlsec/2008Nov/0006.html
(Juan Carlos)
5c) Derived Data
http://lists.w3.org/Archives/Public/public-xmlsec/2008Nov/0007.html
(Konrad)
5d) Derived Key Types
http://lists.w3.org/Archives/Public/public-xmlsec/2008Aug/0064.html
(Analysis, Magnus)
6) Best Practices
6a) Comments from Juan Carlos
http://www.w3.org/2008/xmlsec/Drafts/best-practices/comments-bhill-jcc.html
(Edited document)
http://lists.w3.org/Archives/Public/public-xmlsec/2008Oct/0020.html
(Frederick)
http://lists.w3.org/Archives/Public/public-xmlsec/2008Oct/0030.html
(Juan Carlos)
6b) Example file and empty XPath (ISSUE-69)
http://lists.w3.org/Archives/Public/public-xmlsec/2008Nov/0005.html
6c) Key length, SHA best practice
http://lists.w3.org/Archives/Public/public-xmlsec/2008Nov/0003.html
7) v.next
7a) Profiling XPath for XML Schema
http://lists.w3.org/Archives/Public/public-xmlsec/2008Nov/0002.html
(from Norm Walsh, Frederick)
7b) XSL Streaming
Members only
http://lists.w3.org/Archives/Member/member-xmlsec/2008Nov/0010.html
7c) XPointer element scheme
http://www.w3.org/TR/xptr-element/ (Recommendation) (Konrad)
7d) Transform Primitives
ACTION-51: Provide proposal on list regarding transform primitives
(draft)
http://lists.w3.org/Archives/Public/public-xmlsec/2008Oct/0000.html (1
Oct, Konrad)
7e) Backward compatibility (Konrad)
streaming with v1
http://lists.w3.org/Archives/Public/public-xmlsec/2008Jul/0045.html
http://tools.ietf.org/html/rfc3986#section-5.1.2
7f) Namespace undeclarations
http://lists.w3.org/Archives/Member/member-xmlsec/2008Sep/0041.html
(Konrad)
8) Action Item Review
8a) Close Pending actions
[pending review] ACTION-66: Frederick Hirsch to Follow up with xsl to
get documents related to serialization - due 2008-09-23 [on WG-
Coordination]
http://www.w3.org/2008/xmlsec/track/actions/66
8b) Open Action Review
Open actions are listed in Tracker at http://www.w3.org/2008/xmlsec/track/actions/open
Procedure for closing actions: http://www.w3.org/2007/xmlsec/Group/Overview.html#closing-actions
Please review open action list and update your actions appropriately:
http://www.w3.org/2008/xmlsec/actions-open.html
9) Other Business
10) Adjourn
Scribing list (to be updated)
----------------
Magnus Nyström, EMC ()
Leonard Rosenthol, Adobe ()
Anil Saldhana, Red Hat ()
Ed Simon, Invited Expert ()
John Wray, IBM ()
Konrad Lanz, IAIK (16 July F2F am)
Hal Lockhart, Oracle (16 July F2F pm)
Scott Cantor, invited expert (29 July 2008)
Sean Mullan, Sun (12 August 2008)
Pratik Datta, Oracle (19 August 2008)
Subramanian Chidambaram, Nokia (26 August)
Brian LaMacchia, Microsoft (2 September 2008)
Bradley Hill, Invited Expert (9 September 2008)
Juan Carlos Cruellas, Universitat Politècnica de Catalunya (16
September 2008)
Gerald Edgar, Boeing (7 October 2008)
Chris Solc, Adobe (20 October 2008 F2F am)
Robert Miller, MITRE (20 October 2008 F2F pm)
Bruce Rich, IBM (17 July F2F am, 21 October 2008 F2F am)
Kelvin Yiu, Microsoft (21 October 2008 F2F, pm)
Shivaram Mysore, Invited Expert (11 November 2008)
regards, Frederick
Frederick Hirsch, Nokia
Chair XML Security WG
Received on Friday, 7 November 2008 16:09:47 UTC