13:05:16 RRSAgent has joined #wot-sec 13:05:16 logging to http://www.w3.org/2017/08/23-wot-sec-irc 13:05:18 present+ Kaz_Ashimura, Elena_Reshetova, Michael_Koster, Soumya_Kanti_Datta, Tomoaki_Mizushima, Zoltan_Kis 13:05:26 present+ Michael_McCool, Barry_Leiba 13:05:33 Meeting: WoT IG - Security 13:05:36 soumya has joined #wot-sec 13:07:31 zakim, pick a scribe 13:07:31 Not knowing who is chairing or who scribed recently, I propose Michael_McCool 13:07:39 zakim, pick a scribe 13:07:39 Not knowing who is chairing or who scribed recently, I propose Zoltan_Kis 13:07:59 zakim, pick a scribe 13:07:59 Not knowing who is chairing or who scribed recently, I propose Elena_Reshetova 13:08:40 scribenick: elena 13:09:29 McCool: agenda, change security task force meeting to Monday 3pm finland time? 13:09:42 no objections, meeting time changed 13:10:21 McCool: next agenda item, first draft for overall arch. and TD document security sections 13:10:30 McCool: next wednesday is fist deadline 13:10:55 McCool: monday is a final time for changes, after goes to review 13:12:00 McCool: another item overal direction, general things go to architecture document, td doc only to have specifics 13:12:25 elena: yes, PR was made to mccool's repo with the TD 13:12:47 next we are discussion PR that elena did with changes in TD security section 13:13:59 naka has joined #wot-sec 13:14:16 i|change security|topic: Logistics| 13:14:59 i|next agenda item|topic: Documents status| 13:15:26 s/next wednesday/next wednesday, Aug. 30,/ 13:16:45 s/discussion/discussing/ 13:16:48 pr would be accepted to mccool repo, he would cleanup etc 13:18:12 elena: it would be nice to cross reference to threat model 13:18:29 elena: when writing security sections in different docs 13:22:18 McCool: insert link to threat model in TD security section 13:23:35 elena: use of secure transport should move to general architecture doc section 13:24:05 https://github.com/mmccool/wot-architecture/tree/security 13:24:10 McCool: what pieces from generic practice document should be moved to the security architecture or TD sections? 13:26:13 q+ 13:26:21 McCool: will do a first pass on generic arch. document security section, elena will take second pass 13:27:01 q? 13:27:17 https://github.com/w3c/wotwg/pull/5#issuecomment-32374263 13:27:42 kaz: what is procedure from url above? 13:28:04 https://services.w3.org/htmldiff?doc1=https%3A%2F%2Fw3c.github.io%2Fwot-scripting-api%2F&doc2=https%3A%2F%2Fraw.githubusercontent.com%2Fdanielpeintner%2Fwot-scripting-api%2Fmaster%2Findex.html htmldiff 13:28:28 we will do html diff according to above 13:29:21 zkis, could McCool merge the PR above from Zoltan? 13:29:21 kaz: Zoltan was proposing a procedure (pullrequest 5) and everybody is encouraged to use htmldiff 13:29:27 https://github.com/w3c/wotwg/pull/5 13:29:58 resolution: will be merged 13:30:46 q? 13:30:48 ack k 13:35:42 McCool: access token currently for entire TD and not for individual entries 13:35:55 elena: this is not good and won't scale in general 13:36:25 present+ Katsuyoshi_Naka 13:37:33 McCool: we will need to double check this and discuss further 13:38:19 McCool: minimize application functionality should go to general architecture 13:38:57 -> https://github.com/mmccool/wot-thing-description/pull/1 pullrequest for wot-thing-description on McCool's repo 13:39:26 McCool: testing should also be moved into general document 13:40:02 McCool: WoT API needs to be added to terminology list for further discussion 13:42:12 question: what should be extracted from general consideration document security section? 13:42:24 elena: will take a pass on thinking and moving stuff 13:42:55 -> http://w3c.github.io/wot/current-practices/wot-practices.html WoT Best Practices document 13:43:18 McCool will create first PR, elena will do a next pass 13:43:23 s/general consideration/the WoT Current Practices/ 13:43:48 everyone should read it and say their objections if any or recommendations 13:44:36 McCool: what are the best available practices and reference to them? 13:45:22 McCool will update the list of references from set that people recommended over email 13:46:18 rrsagent, draft minutes 13:46:18 I have made the request to generate http://www.w3.org/2017/08/23-wot-sec-minutes.html kaz 13:47:28 McCool: we need to submit proposal for workshop for S&P IEEE workshop by 20 of september 13:47:48 anyone wants to volunteer? 13:48:08 -> https://www.ieee-security.org/TC/SP2018/workshops.html IEEE workshop page 13:48:47 McCool will try to do the first pass on it 13:48:54 others need to review 13:49:14 we should discuss it during next meeting 13:49:58 s|workshops|cfworkshops| 13:50:00 McCool: will ask around who else wants to participate in workshop/share costs 13:51:06 McCool: workshop probably is one day and asking people to submit short papers 13:52:50 kaz: we will need to talk about it during next chairs meeting 13:54:41 another option to consider is NDSS workshop in February 13:54:55 but deadline is august 31st, so very soon 13:55:20 next meeting is next monday 13:55:34 rrsagent, make log public 13:55:40 rrsagent, draft minutes 13:55:40 I have made the request to generate http://www.w3.org/2017/08/23-wot-sec-minutes.html kaz 13:55:53 barryleiba has left #wot-sec