Agenda: Distributed Meeting 2009-10-13

Agenda: W3C XML Security WG (XMLSec)
Teleconference 13 October 2009
Distributed Meeting #45

10-12:00 am Eastern Time
Information on meeting times in various time zones:
http://www.w3.org/2008/xmlsec/Group/Overview.html#phone

Zakim Bridge:
+1.617.761.6200 conference code 965732# ('XMLSEC')
IRC Chat:
irc.w3.org (port 6665), #xmlsec
Web-based IRC (member-only):
<http://cgi.w3.org/member-bin/irc/irc.cgi>

Please note that attendance of XMLSEC WG teleconferences is   
restricted  to registered WG participants and persons invited by the  
chair.

Publication Status available at
http://www.w3.org/2008/xmlsec/wiki/PublicationStatus

Chair pro tem: Thomas Roesser

Regrets: Frederick Hirsch

see http://www.w3.org/2008/xmlsec/Group/Overview.html#upcoming-meetings

1) Administrivia: scribe confirmation, next meeting, other

1a)  Bruce Rich is scheduled to scribe

The current scribe list is at the end of this message, will rotate  
through this list.

Scribe Instructions:
http://www.w3.org/2007/xmlsec/Group/Scribe-Instructions.html

1b)   Meeting planning: upcoming meetings

This WG meets weekly on Tuesdays 10-12 Eastern unless a meeting is   
cancelled.

Upcoming meeting information is available on the WG Administrative page:
http://www.w3.org/2008/xmlsec/Group/Overview.html#upcoming-meetings

Next meeting:  20 October 2009, scribe TBD

Important: F2F at TPAC 5-6 November, final registration deadline 21  
October

For information, WG questionnaire, and registration information see http://www.w3.org/2008/xmlsec/Group/Overview.html#upcoming-f2f

TPAC observers accepted.
http://lists.w3.org/Archives/Member/member-xmlsec/2009Oct/0012.html

Who else plans to attend that has not registered? Please complete WG  
questionnaire

1c) Liaisons and Coordination

See status at members page
http://www.w3.org/2008/xmlsec/Group/Overview.html#coordination

EXI Status Update
http://lists.w3.org/Archives/Member/member-xmlsec/2009Oct/0009.html

1d) Announcements

Welcome, Aldrin John D'Souza (RSA/EMC)

http://lists.w3.org/Archives/Public/public-xmlsec/2009Oct/0017.html  
(Aldrin)

2) Minutes Approval

Please review minutes, also please indicate corrections in attendance.

6 October 2009 teleconference

http://www.w3.org/2009/10/06-xmlsec-minutes.html

3) Editorial Updates

3a) XML Encryption 1.1

Update to clarify 3.3.1 per ACTION-385, also explain.html and redline

http://lists.w3.org/Archives/Public/public-xmlsec/2009Oct/0018.html  
(Frederick)

3b) 2.0 FPWD Publication status

Update on publication date and status of publication.

http://lists.w3.org/Archives/Member/member-xmlsec/2009Oct/0011.html  
(Thomas)

4) Resolve remaining 1.1 Issues, Last Call

4a)  XML Signature 1.1

ISSUE-142
How to schema validate with 1.0 schema plus 1.1 schema, when a   
validator requires a single schema file (Ed)

Message sent to XML Coordination group completing ACTION-384

http://lists.w3.org/Archives/Public/public-xmlsec/2009Oct/0019.html  
(Frederick)

4b) XML Encryption 1.1

ISSUE-137 (DRAFT-HOUSLEY-KW-PAD)

Close when ACTION-377 complete.

4c) ECC ISSUE-91 (Elliptic curve)

4d) Last Call Plan

http://www.w3.org/2005/10/Process-20051014/tr#last-call

Include XML Signature 1.1, XML Encryption 1.1, XML Security Generic   
Hybrid Ciphers,  XML Signature Properties
Publish a corresponding updated XML Security Algorithms Cross- 
Reference working draft

Plan to agree on entering Last Call during F2F at TPAC with resolution  
of all issues associated with 1.1

Volunteer needed to review XML Signature 1.1 explain.html and XML  
Encryption 1.1 explain.html to make sure all changes in documents are  
captured in the explanation documents.

5) 1.1 Interop

http://www.w3.org/2008/xmlsec/wiki/Interop

Next step planning and request for volunteers to produce test cases.

Please update wiki with plans.

6) Requirements Issues

http://www.w3.org/2008/xmlsec/Drafts/xmlsec-reqs/Overview.html

6a) [OPEN] ISSUE-32 : Define metadata that needs to be conveyed with   
signature, e.g. profile information
Scott?

6b) [CLOSED] ISSUE-45 : Multiple or layered signatures
Deferred until after 2.0 per WG decision, see issue. Marked as closed  
with this reason.

6c) [OPEN] ISSUE-60 : Define requirements for XML Security and EXI usage
ACTION-388 Gerald propose text

6c) [OPEN] ISSUE-63 : Namespace requirements: undeclarations, QNames,  
use  of partial content in new contexts
ACTION-389 Gerald propose text

All, need to review Hal's paper, see http://www.w3.org/2007/xmlsec/ws/papers/09-lockhart-bea/

6e) [OPEN] ISSUE-68 : Enable generic use of randomized hashing

Need proposal for 2.0. Volunteer?

6f) [OPEN] ISSUE-131 : Is semantic equivalence robustness in  
requirements  document
ACTION-391 Gerald to see if covered in requirements documents

6g) [OPEN] ISSUE-136 : Is normalization of prefixes a goal for 2.0 c14n

Close, since we  have prefixRewrite  option in C14N 2.0. WG Resolution  
to agree to close?

6h) [OPEN] ISSUE-139 : Need to collect streaming XPath requirements
Next steps, ACTION on someone?

7) DEREncodedKeyValue

http://lists.w3.org/Archives/Public/public-xmlsec/2009Oct/0015.html  
(Sean)

http://lists.w3.org/Archives/Public/public-xmlsec/2009Oct/0016.html  
(Scott)

8) Errata

Proposal related to ACTION-297, ACTION-298 and ACTION-320
http://lists.w3.org/Archives/Public/public-xmlsec/2009Sep/0006.html   
(Konrad)

9) Action review

9a) Close Pending actions

These will be closed after the meeting unless concern raised before  
or  during meeting. Please review in advance of meeting.
ACTION-373: Frederick Hirsch to Discuss ISSUE-124 with tlr

ACTION-380: Thomas Roessler to See if xmlspec can include strikeouts  
and inserts markup

ACTION-384: Frederick Hirsch to Ask xml coordination about use of  
multiple schemas and validation

ACTION-385: Frederick Hirsch to Implement change in http://lists.w3.org/Archives/Public/public-xmlsec/2009Oct/0007.html 
  , adding "to" before "obtain"

ACTION-390: Frederick Hirsch to Consolidate ISSUE-127 and issue-60

9b) Open Action Review

Open actions are listed in Tracker at http://www.w3.org/2008/xmlsec/track/actions/open

Procedure for closing actions: http://www.w3.org/2007/xmlsec/Group/Overview.html#closing-actions

Please review open action list and update your actions appropriately:

http://www.w3.org/2008/xmlsec/actions-open.html

Status of actions to review 2.0?

10) Issue review

http://www.w3.org/2008/xmlsec/track/issues/open

11) Other Business

12) Adjourn

Scribing  list
----------------
Konrad Lanz, IAIK (24 February 2009, 16 July F2F am)
Juan Carlos Cruellas, Universitat Politècnica de Catalunya (17
February 2009, 16 September 2008)
Bruce Rich, IBM (5 May 2009)
Brian LaMacchia, Microsoft (13 May 2009 F2F am)
Pratik Datta, Oracle (13 May 2009 F2F pm)
Magnus Nyström, EMC (2 June, 2009)
Hal Lockhart, Oracle (16 June 2009,)
Shivaram Mysore, Invited Expert (23 June 2009)
Cynthia Martin, MITRE (7 July 2009)
Bradley Hill, Invited Expert (14 July 2009,)
Chris Solc, Adobe (21 July 2009)
Thomas Roessler/Ed Simon, Invited Expert (11 August 2009)
John Wray, IBM (1 Sept 2009,)
Scott Cantor, invited expert (8 Sept 2009)
Kelvin Yiu, Microsoft (22 Sept 2009)
Gerald Edgar, Boeing (29 Sept 2009)
Sean Mullan, Sun (6 October 2009, 12 May 2009 F2F am)

regards, Frederick

Frederick Hirsch, Nokia
Chair XML Security WG

Received on Friday, 9 October 2009 15:48:26 UTC