W3C

XML Security Specifications Maintenance Working Group Teleconference

10 Jun 2008

Agenda

See also: IRC log

Attendees

Present
John_Wray, Frederick_Hirsch, Thomas_Roessler, Sean_Mullan, Rob_Miller, Pratik_Datta, Konrad_Lanz, Juan_Carlos_Cruellas, Donald_Eastlake, Shivaram_Mysore, Ed_SImon, Bruce_Rich
Regrets
Chair
Frederick Hirsch
Scribe
John Wray

Contents


 

 

<trackbot> Date: 10 June 2008

Administrivia

Minutes from 2008-06-03

<jwray> RESOLUTION: Minutes from 2008-06-03 approved.

Upcoming XML Security WG

<jwray> If not already joined WG, contact your rep ASAP

instructions - http://www.w3.org/2004/01/pp-impl/42458/instructions

f2f 16-17 july

logistics - http://www.w3.org/2008/xmlsec/Group/barcelona.html

XML Signature, Syntax and Processing (Second Edition) Proposed Edited Recommendation

When published test document and XML Signature Rec should reference each other

XML Signature, Second Edition RFC

<scribe> In process, WG should review when available

Donald has obtained support from IETF area director

Relax NG Schema Update

Thomas will provide heads-up on IETF liaison call

Tim Polk at NIST is security area director in IETF

<tlr> Don: Tim Polk at NIST is willing to sponsor; security area director; Lisa D is App Area Director; could be either one.

<tlr> ... different areas are not sharply divided ...

<tlr> ... don't know if they can simultaneously sponsor ...

<tlr> tlr: happy for Tim to be sponsoring AD

RNG Schema

Norm Walsh noted a correction to the schema

http://lists.w3.org/Archives/Public/public-xmlsec-maintwg/2008Jun/0010.html

<jwray> ACTION: Thomas to re-run tests with updated RNG compact schema [recorded in http://www.w3.org/2008/06/10-xmlsec-minutes.html#action02]

<trackbot> Created ACTION-166 - Re-run tests with updated RNG compact schema [on Thomas Roessler - due 2008-06-17].

Best Practices

<klanz2> http://www.w3.org/2007/xmlsec/Drafts/xmldsig-bestpractices/

<jwray> pratik: 2 sets of changes: First re-org doc into implementors & apps sections and adds rationale. Second addresses timestamps.

<klanz2> move to next WG ...

<klanz2> http://www.w3.org/2007/xmlsec/Drafts/xmldsig-bestpractices/#timestamps

<klanz2> This one ?

yes

<klanz2> jcc: Time stamps as in the link above are from a trusted third party

<klanz2> the time source is trusted ...

jcc: signed times issued by trusted third parties - more than signature is important

<klanz2> Time Stamping Authoriities issue them

<klanz2> Some Sources : http://webapp.etsi.org/workprogram/Report_WorkItem.asp?WKI_ID=17661

<klanz2> RFC 3161

<jwray> ACTION: jcc to propose change to timestamp text to address requirement for trusted third parties. [recorded in http://www.w3.org/2008/06/10-xmlsec-minutes.html#action03]

<trackbot> Created ACTION-167 - Propose change to timestamp text to address requirement for trusted third parties. [on Juan Carlos Cruellas - due 2008-06-17].

Action item review

<jwray> ACTION-150 close

<tlr> trackbot, close ACTION-150

<trackbot> ACTION-150 Identifiers Registry: distribute a draft regarding identifiers registry closed

information item, no action required by WG

<tlr> +1 to closing ;-)

<jwray> trackbot, close ACTION-153

<trackbot> ACTION-153 Test Case Document: Make the publication of test case document happen closed

action-158 open

<jwray> trackbot, close ACTION-159

<trackbot> ACTION-159 Best Practices: Draft proposal for best practices document re signed streaming content in current XML Sig syntax closed

<jwray> Action 159 to be deferred to next WG

<trackbot> Sorry, couldn't find user - 159

This will be discussed in the new XML Security WG

<tlr> ACTION: thomas to install tracker instance for upcoming WG - due 2008-07-01 [recorded in http://www.w3.org/2008/06/10-xmlsec-minutes.html#action04]

<trackbot> Created ACTION-168 - install tracker instance for upcoming WG [on Thomas Roessler - due 2008-07-01].

<tlr> ACTION-159: deferred to next WG

<trackbot> ACTION-159 Best Practices: Draft proposal for best practices document re signed streaming content in current XML Sig syntax notes added

<jwray> trackbot, close ACTION-162

<trackbot> ACTION-162 Best Practices: Reorganize best practices document for implementers, validators and signers, incorporate Pratik's proposed changes provided on list closed

<scribe> Completed, see http://lists.w3.org/Archives/Public/public-xmlsec-maintwg/2008Jun/0008.html

<jwray> trackbot, close ACTION-163

<trackbot> ACTION-163 Best Practices: Add additional text re DSS and XAdES to best practices document closed

<scribe> completed , see http://lists.w3.org/Archives/Public/public-xmlsec-maintwg/2008Jun/0011.html

<jwray> trackbot, close ACTION-164

<trackbot> ACTION-164 WG Coordination: XMLHttpRequest review closed

AOB

<jwray> fjh Next WG will have to use more rigorous process (e.g. tool to track issues list).

<klanz2> can we set anchors in the minutes to point/include to relevant discussion ...

<klanz2> yes

http://www.w3.org/2007/xmlsec/Group/Scribe-Instructions.html

klanz2: need scribing cheat sheet as part of irc window

<tlr> ACTION: thomas to produce updated cheat sheet [recorded in http://www.w3.org/2008/06/10-xmlsec-minutes.html#action05]

<trackbot> Created ACTION-169 - Produce updated cheat sheet [on Thomas Roessler - due 2008-06-17].

asking for suggestions regarding tools and process for upcoming wg. Note that we should be more rigorous on issue tracking.

<klanz2> thanks

should have means to anchor resolutions and topics in minutes more easily with link anchor

Summary of Action Items

[NEW] ACTION: jcc to propose change to timestamp text to address requirement for trusted third parties. [recorded in http://www.w3.org/2008/06/10-xmlsec-minutes.html#action03]
[NEW] ACTION: thomas to install tracker instance for upcoming WG - due 2008-07-01 [recorded in http://www.w3.org/2008/06/10-xmlsec-minutes.html#action04]
[NEW] ACTION: thomas to produce updated cheat sheet [recorded in http://www.w3.org/2008/06/10-xmlsec-minutes.html#action05]
[NEW] ACTION: Thomas to re-run tests with updated RNG compact schema [recorded in http://www.w3.org/2008/06/10-xmlsec-minutes.html#action02]
 
[End of minutes]

Minutes formatted by David Booth's scribe.perl version 1.133 (CVS log)
$Date: 2008/06/17 13:05:21 $