W3C

XML Security Working Group Teleconference

02 Aug 2011

Agenda

See also: IRC log

Attendees

Present
Frederick_Hirsch, Cynthia_Martin, Ed_Simon, Chris_Solc, Hal_Lockhart, Gerald_Edgar, Pratik_Datta, Scott_Cantor, Bruce_Rich
Regrets
Thomas_Roessler
Chair
Frederick_Hirsch
Scribe
csolc

Contents


<trackbot> Date: 02 August 2011

Administrative

<fjh> ScribeNick: csolc

<fjh> Publication moratoria for 2H2011, http://lists.w3.org/Archives/Member/member-xmlsec/2011Jul/0006.html

Minutes Approval

<fjh> http://lists.w3.org/Archives/Public/public-xmlsec/2011Jun/att-0058/minutes-2011-06-28.html

<fjh> Proposed RESOLUTION: Minutes from 28 June are approved.

RESOLUTION: Minutes from 28 June 2011 are approved

XML Security 1.1

<fjh> http://www.w3.org/2006/02/lc-comments-tracker/42458/CR-xmldsig-core1-20110303/2502

<fjh> http://lists.w3.org/Archives/Public/public-xmlsec/2011Jun/0063.html (Sean)

<fjh> http://lists.w3.org/Archives/Public/public-xmlsec/2011Jun/0064.html (Scott)

<fjh> http://www.w3.org/2008/xmlsec/Drafts/xmldsig-core-11/Overview.html#sec-RetrievalMethod

<fjh> change in section 4.5, paragraph 2

<fjh> If KeyInfo is omitted, the recipient is expected to be able to identify the key based on application context. Multiple declarations within KeyInfo refer to the same key. While applications may define and use any mechanism they choose through inclusion of elements from a different namespace, compliant versions must implement KeyValue (section 4.5.2 The KeyValue Element) and should implement RetrievalMethod (section 4.5.3 The RetrievalMethod Element).

<fjh> proposed RESOLUTION: change RetrievalMethod to KeyInfoReference in paragraph 2 section 4.5 and update section reference, for Signature 1.1 and 2.0

RESOLUTION: change RetrievalMethod to KeyInfoReference in paragraph 2 section 4.5 and update section reference, for Signature 1.1 and 2.0

<fjh> ACTION: fjh to update SIgnature 1.1 and 2.0 with change of SHOULD in 4.5 [recorded in http://www.w3.org/2011/08/02-xmlsec-minutes.html#action01]

<trackbot> Created ACTION-816 - Update SIgnature 1.1 and 2.0 with change of SHOULD in 4.5 [on Frederick Hirsch - due 2011-08-09].

<fjh> anything more to do with http://lists.w3.org/Archives/Public/public-xmlsec/2011Jun/0063.html

Updated XML Signature Best Practices editors draft

http://lists.w3.org/Archives/Public/public-xmlsec/2011Jul/0007.html http://lists.w3.org/Archives/Public/public-xmlsec/2011Jul/0013.html

RESOLUTION: Publish an updated best practices document for XML Signature Aug 9 2011

<fjh> ACTION: fjh to prepare and submit best practices draft for publication [recorded in http://www.w3.org/2011/08/02-xmlsec-minutes.html#action02]

<trackbot> Created ACTION-817 - Prepare and submit best practices draft for publication [on Frederick Hirsch - due 2011-08-09].

Update of XML Signature 1.1 to reference Best Practices in introduction, LC-2504

<fjh> Update of XML Signature 1.1 to reference Best Practices in introduction, LC-2504

http://lists.w3.org/Archives/Public/public-xmlsec/2011Jul/0014.html

1.1 Test Case review

http://lists.w3.org/Archives/Public/public-xmlsec/2011Jul/0009.html (Gerald)

Gerald is asking for the group to add comments on the 1.1 Test cases.

Comments on the 1.1 Test cases should be sent to the list.

<fjh> ACTION: fjh to check in test cases document distributed by Gerald [recorded in http://www.w3.org/2011/08/02-xmlsec-minutes.html#action03]

<trackbot> Created ACTION-818 - Check in test cases document distributed by Gerald [on Frederick Hirsch - due 2011-08-09].

XML Security 2.0

Update of XML Signature 2.0 to reference Best Practices in introduction, LC-2507

http://lists.w3.org/Archives/Public/public-xmlsec/2011Jul/0015.html (Frederick)

<fjh> http://lists.w3.org/Archives/Public/public-xmlsec/2011Aug/0000.html

<fjh> use "attributes in the XML namespace" for section 11.3

<fjh> http://www.w3.org/2008/xmlsec/Drafts/xmldsig-core-20/#sec-NamespaceContext

<fjh> ACTION: pdatta to update 2.0 11.3 text, including changes discussed in email http://lists.w3.org/Archives/Public/public-xmlsec/2011Aug/0000.html [recorded in http://www.w3.org/2011/08/02-xmlsec-minutes.html#action04]

<trackbot> Created ACTION-819 - Update 2.0 11.3 text, including changes discussed in email http://lists.w3.org/Archives/Public/public-xmlsec/2011Aug/0000.html [on Pratik Datta - due 2011-08-09].

<fjh> LC-2506, http://www.w3.org/2006/02/lc-comments-tracker/42458/WD-xmldsig-core2-20110421/2506?cid=2506

<fjh> need to track down what specific change is needed here

<fjh> ACTION-699?

<trackbot> ACTION-699 -- Cynthia Martin to update interop wiki with suite B organization -- due 2010-11-08 -- OPEN

<trackbot> http://www.w3.org/2008/xmlsec/track/actions/699

Summary of Action Items

[NEW] ACTION: fjh to check in test cases document distributed by Gerald [recorded in http://www.w3.org/2011/08/02-xmlsec-minutes.html#action03]
[NEW] ACTION: fjh to prepare and submit best practices draft for publication [recorded in http://www.w3.org/2011/08/02-xmlsec-minutes.html#action02]
[NEW] ACTION: fjh to update SIgnature 1.1 and 2.0 with change of SHOULD in 4.5 [recorded in http://www.w3.org/2011/08/02-xmlsec-minutes.html#action01]
[NEW] ACTION: pdatta to update 2.0 11.3 text, including changes discussed in email http://lists.w3.org/Archives/Public/public-xmlsec/2011Aug/0000.html [recorded in http://www.w3.org/2011/08/02-xmlsec-minutes.html#action04]
 
[End of minutes]

Minutes formatted by David Booth's scribe.perl version 1.135 (CVS log)
$Date: 2009-03-02 03:52:20 $