Agenda: Distributed Meeting 2009-08-11

Agenda: W3C XML Security WG (XMLSec)
Teleconference 11 August 2009
Distributed Meeting #39

10-12:00 am Eastern Time
Information on meeting times in various time zones:
http://www.w3.org/2008/xmlsec/Group/Overview.html#phone

Zakim Bridge:
+1.617.761.6200 conference code 965732# ('XMLSEC')
IRC Chat:
irc.w3.org (port 6665), #xmlsec
Web-based IRC (member-only):
<http://cgi.w3.org/member-bin/irc/irc.cgi>

Please note that attendance of XMLSEC WG teleconferences is  
restricted  to registered WG participants and persons invited by the  
chair.

Publication Status available at
http://www.w3.org/2008/xmlsec/wiki/PublicationStatus

Chair: Frederick Hirsch

Regrets: none

see http://www.w3.org/2008/xmlsec/Group/Overview.html#upcoming-meetings

1) Administrivia: scribe confirmation, next meeting, other

1a)  Thomas Roessler is scheduled to scribe

The current scribe list is at the end of this message, will rotate  
through this list.

Scribe Instructions:
http://www.w3.org/2007/xmlsec/Group/Scribe-Instructions.html

1b)   Meeting planning: upcoming meetings

This WG meets weekly on Tuesdays 10-12 Eastern unless a meeting is   
cancelled.

Upcoming meeting information is available on the WG Administrative page:
http://www.w3.org/2008/xmlsec/Group/Overview.html#upcoming-meetings

18 and 25 August meetings are cancelled.

Next meeting:  1 September 2009 , scribe John Wray

TPAC registration open
TPAC Overview: http://www.w3.org/2009/11/TPAC/overview.html

Please register: http://www.w3.org/2002/09/wbs/35125/TPAC09/
Note registration fee increases after 21 September 2009.

XML Security Thursday and Friday 5-6 November as originally planned.

http://lists.w3.org/Archives/Public/public-xmlsec/2009Aug/0002.html

1c) Liaisons and Coordination

See status at members page
http://www.w3.org/2008/xmlsec/Group/Overview.html#coordination

1d) Announcements

None

2) Minutes Approval

Please review minutes, also please indicate corrections in attendance.

28 July 2009 teleconference

http://www.w3.org/2009/07/28-xmlsec-minutes.html

3) 1.1 Publication and Errata update

Please remember to send note to public list when completing editing,  
indicating what has changed and associated action. Please mark  action  
as pending as well and update the explain.html document for  XML   
Signature 1.1 or XML Encryption 1.1.

3a) 1.1 Documents published

http://lists.w3.org/Archives/Public/public-xmlsec/2009Jul/0072.html

http://www.w3.org/News/2009#item136 (permalink to announcement)

	• XML Signature Best Practices.  http://www.w3.org/TR/2009/WD-xmldsig-bestpractices-20090730/
This Working Draft describes best practices related to improving  
security and mitigating attacks, yet others are for best practices in  
the practical use of XML Signature, such as signing XML that doesn't  
use namespaces, for example.
	• XML Signature Syntax and Processing Version 1.1. http://www.w3.org/TR/2009/WD-xmldsig-core1-20090730/
This Working Draft updates the signature specification.

	• XML Signature Transform Simplification: Requirements and Design.  http://www.w3.org/TR/2009/WD-xmldsig-simplify-20090730/
This Working Draft outlines a proposed simplification of the XML  
Signature Transform mechanism, intended to enhance security,  
performance, streamability and to ease adoption.

	• W3C XML Encryption Syntax and Processing Version 1.1. http://www.w3.org/TR/2009/WD-xmlenc-core1-20090730/
This Working Draft updates the encryption specification.

	• XML Security Generic Hybrid Ciphers. http://www.w3.org/TR/2009/WD-xmlsec-generic-hybrid-20090730/
This First Public Working Draft augments XML Encryption Version 1.1 by  
defining algorithms, XML types and elements necessary to enable use of  
generic hybrid ciphers in XML Security applications.

	• XML Security Algorithm Cross-Reference. http://www.w3.org/TR/2009/WD-xmlsec-algorithms-20090730/
This Group Note collects the various known URIs for encryption  
algorithms (at the time of its publication) and indicates which  
specifications define them.
3b) Exclusive C14N Errata Update

http://lists.w3.org/Archives/Public/public-xmlsec/2009Aug/0001.html  
(Thomas)

4) Editorial Updates

Some edits to the documents for publication remain to be applied to  
the editors drafts.

5) C14N 2.0 comment discussion

http://www.w3.org/2008/xmlsec/Drafts/c14n-20/

Please review and comment on public mailing list.

6) XML Signature 2.0  comment discussion

http://www.w3.org/2008/xmlsec/Drafts/xmldsig-core-20/

Please review and comment on public mailing list.

7a) ECKeyValue

http://www.w3.org/2008/xmlsec/Drafts/xmldsig-core-11/Overview.htm#sec-ECKeyValue

7b) Algorithm implementation requirements

http://www.w3.org/2008/xmlsec/Drafts/xmldsig-core-11/Overview.htm#sec-AlgID

8a) Proposed changes to C14N11

http://lists.w3.org/Archives/Public/public-xmlsec/2009Jul/0067.html  
(Ed SImon)

8b) Proposed changes to XML Signature 1.1

http://lists.w3.org/Archives/Public/public-xmlsec/2009Jul/0067.html  
(Ed Simon)

http://lists.w3.org/Archives/Public/public-xmlsec/2009Jul/0069.html  
(Frederick)

9) Issue review

9a) Issues to consider closing

ISSUE-32, "Define metadata that needs to be conveyed with signature"

http://lists.w3.org/Archives/Public/public-xmlsec/2009Jul/0064.html  
(Gerald)

Does this require Action?

10) Action review

10a) Close Pending actions

These will be closed after the meeting unless concern raised before   
or  during meeting. Please review in advance of meeting.
ACTION-341: Thomas Roessler to Update exc-c14n errata

ACTION-342: Thomas Roessler to Post updated exc-c14n schema

ACTION-343: Thomas Roessler to Provide link to updated schema in  
exclusive c14n document

10b) Open Action Review

Open actions are listed in Tracker at http://www.w3.org/2008/xmlsec/track/actions/open

Procedure for closing actions: http://www.w3.org/2007/xmlsec/Group/Overview.html#closing-actions

Please review open action list and update your actions appropriately:

http://www.w3.org/2008/xmlsec/actions-open.html

11) Other Business

12) Adjourn

Scribing  list
----------------
Konrad Lanz, IAIK (24 February 2009, 16 July F2F am)
Juan Carlos Cruellas, Universitat Politècnica de Catalunya (17  
February 2009, 16 September 2008)
Ed Simon, Invited Expert (31 March 2009)
John Wray, IBM (21 April 2009)
Kelvin Yiu, Microsoft (28 April 2009)
Bruce Rich, IBM (5 May 2009)
Sean Mullan, Sun (12 May 2009 F2F am)
Gerald Edgar, Boeing (12 May 2009 F2F pm, 7 April 2009)
Brian LaMacchia, Microsoft (13 May 2009 F2F am)
Pratik Datta, Oracle (13 May 2009 F2F pm)
Magnus Nyström, EMC (2 June, 2009, 24 March 2009)
Hal Lockhart, Oracle (16 June 2009, 9 December 2008)
Shivaram Mysore, Invited Expert (23 June 2009,  F2F 14 January 2009, pm)
Cynthia Martin, MITRE (7 July 2009, 9 June 2009)
Bradley Hill, Invited Expert (14 July 2009, 27 January 2009)
Chris Solc, Adobe (21 July 2009, 3 March 2009)
Scott Cantor, invited expert (28 July 2009, 24 March 2009)

regards, Frederick

Frederick Hirsch, Nokia
Chair XML Security WG

Received on Monday, 10 August 2009 17:37:53 UTC