W3C

XML Security Working Group Teleconference

28 Sep 2010

Agenda

See also: IRC log

Attendees

Present
Frederick_Hirsch, Chris_Solc, Shivaram_Mysore, Meiko_Jensen, Magnus_Nystrom, Cynthia_Martin, Pratik_Datta, Ed_Simon, Brian_LaMacchia, Gerald_Edgar
Regrets
Sean_Mullan, Thomas_Roessler, Bruce_Rich
Chair
Frederick_Hirsch
Scribe
shivaram

Contents


<trackbot> Date: 28 September 2010

<fjh> ScribeNick: shivaram

Administrative

<fjh> TPAC registration and planning

<fjh> Please complete WG questionnaire: http://www.w3.org/2002/09/wbs/42458/tpac2010xmlsec/

<fjh> If attending remember to complete TPAC registration (separate from WG questionnaire)

<fjh> http://www.w3.org/2002/09/wbs/35125/TPAC2010reg/

Elliptic Curve Status

<fjh> WG members expressed dismay at the length of time, almost a year, since the process to resolve ISSUE-91 started, and expressed the desire to obtain results

<fjh> WG members noted that W3 can issue formal request for disclosure at CR stage

<fjh> question - we might not need to create a PAG in order to make this request

<fjh> ACTION: tlr to answer whether W3 can make formal request for IPR disclosure without creating a PAG, and if so, does this happen when entering CR or earlier [recorded in http://www.w3.org/2010/09/28-xmlsec-minutes.html#action01]

<trackbot> Created ACTION-672 - Answer whether W3 can make formal request for IPR disclosure without creating a PAG, and if so, does this happen when entering CR or earlier [on Thomas Roessler - due 2010-10-05].

<fjh> ACTION: tlr to outline process for starting a PAG and share with WG [recorded in http://www.w3.org/2010/09/28-xmlsec-minutes.html#action02]

<trackbot> Created ACTION-673 - Outline process for starting a PAG and share with WG [on Thomas Roessler - due 2010-10-05].

<fjh> scantor: whatever specs the WG produces should be implementable by open source community

<fjh> gerald: an approach is to make ECC mandatory since algorithms are needed

Gerald-E: as a user we build products for a life time where we need to maintain longterm data security

Minutes approval

<fjh> Approve 21 September 2010 minutes

<fjh> http://www.w3.org/2010/09/21-xmlsec-minutes.html

<fjh> Proposed RESOLUTION: Minutes from 21 September 2010 approved.

RESOLUTION: Minutes from 21 September 2010 approved

Editorial Updates

<fjh> Updated public papers portion of web site

<fjh> http://lists.w3.org/Archives/Member/member-xmlsec/2010Sep/0012.html (Frederick)

<fjh> 3b) Updated "XML Security RELAX NG Schemas" to include RNG as well as RNC forms

<fjh> http://lists.w3.org/Archives/Public/public-xmlsec/2010Sep/0057.html (Frederick)

Revised X509SerialNumber Proposal, ACTION-665

<fjh> http://lists.w3.org/Archives/Public/public-xmlsec/2010Sep/0052.html

scantor: fixed editorial issues. Added paragraph on use of KeyInfo for trust establisment
... changed alg info

RESOLUTION: group accepts scantor's proposal, to change both 1.1 and 2.0 specifications

add scantor's proposed text to 2.0 spec

<fjh> ACTION: scantor to update 1.1 with change for X509SerialNumber [recorded in http://www.w3.org/2010/09/28-xmlsec-minutes.html#action03]

<trackbot> Created ACTION-674 - Update 1.1 with change for X509SerialNumber [on Scott Cantor - due 2010-10-05].

<fjh> ACTION-660?

<trackbot> ACTION-660 -- Scott Cantor to propose changes to C14N2 to support enveloped signature -- due 2010-09-14 -- OPEN

<trackbot> http://www.w3.org/2008/xmlsec/track/actions/660

scantor to double check ACTION-660

<fjh> ACTION-638?

<trackbot> ACTION-638 -- Scott Cantor to make proposal for ISSUE-210, see also http://lists.w3.org/Archives/Public/public-xmlsec/2010Aug/0043.html (uncomplicate section) -- due 2010-08-31 -- OPEN

<trackbot> http://www.w3.org/2008/xmlsec/track/actions/638

<Gerald-E> I will have to send regrets for the face-to-face

<Gerald-E> thanks all..

Summary of Action Items

[NEW] ACTION: scantor to update 1.1 with change for X509SerialNumber [recorded in http://www.w3.org/2010/09/28-xmlsec-minutes.html#action03]
[NEW] ACTION: tlr to answer whether W3 can make formal request for IPR disclosure without creating a PAG, and if so, does this happen when entering CR or earlier [recorded in http://www.w3.org/2010/09/28-xmlsec-minutes.html#action01]
[NEW] ACTION: tlr to outline process for starting a PAG and share with WG [recorded in http://www.w3.org/2010/09/28-xmlsec-minutes.html#action02]
 
[End of minutes]

Minutes formatted by David Booth's scribe.perl version 1.135 (CVS log)
$Date: 2010/10/20 13:16:10 $