13:02:07 RRSAgent has joined #wot-sec 13:02:07 logging to https://www.w3.org/2021/02/22-wot-sec-irc 13:02:15 Meeting: WoT Security 13:02:20 regrets: Oliver 13:02:35 present+ Kaz_Ashimura, Michael_McCool, Elena_Reshetova 13:02:39 citrullin has joined #wot-sec 13:02:41 McCool has joined #wot-sec 13:02:42 chair: McCool 13:02:45 elena has joined #wot-sec 13:05:23 present+ Cristiano_Aguzzi, Philipp_Blum 13:06:47 present+ Tomoaki_Mizushima 13:06:52 Agenda: https://www.w3.org/WoT/IG/wiki/IG_Security_WebConf#22_February_2021 13:07:21 scribenick: citrullin 13:07:43 mc: Checking minutes from last time. 13:08:32 i|Checking|-> https://www.w3.org/2021/02/15-wot-sec-minutes.html Feb-15| 13:09:32 Philipp: Doesn't make it sense to have the discussion about MCUs etc. in Architecture. 13:09:44 mc: Yes, that is part of it. 13:10:18 Any objections for the minutes? 13:10:21 No objections 13:10:46 mc: Any quick updates? 13:10:48 None 13:11:04 https://github.com/w3c/wot-thing-description/pull/1058 13:11:19 topic: Add Json pointer assertion 13:12:55 -> https://github.com/w3c/wot-thing-description/pull/1058 wot-thing-description PR 1058 - Add JSON pointer assertion to definition of body sec location 13:13:49 -> https://pr-preview.s3.amazonaws.com/mmccool/wot-thing-description/pull/1058.html#securityscheme 5.3.3.1 SecurityScheme 13:16:54 mc: Any comments? 13:16:56 chris: This is a good solution. 13:18:00 chris: Can you add "type": "object"? 13:18:08 mc adds it to the PR 13:18:56 mc: Any other comments? 13:19:40 chris: It should be a common practice to use the same place for the key. 13:20:03 mc: I thought about that. It is a 10% case. 13:20:10 s/chris:/cris:/g 13:21:53 mc: We have to leave it the way it is for backwards compatibility. 13:25:19 topic: Proofs and Proofs of Chains 13:25:38 mc: Next big topic for us is probably Proofs and Proofs of Chains. 13:26:39 Philipp: I added a PR for this topic. The security hardware. 13:28:09 -> https://github.com/w3c/wot-security/issues/166 Issue 166 13:29:15 -> https://github.com/w3c/wot-security/pull/199 PR 199 13:29:42 s/PR 199/PR 199 - Add crypto hardware survey in /background/ 13:30:21 Philipp: Should I add a link to references in the Readme or in the table? 13:30:33 mc: Should be enough to add it in the Readme. 13:31:39 mc adds some comments in the PR. 13:33:02 s/Issue 166/Issue 166 - Add integrity protection (proof section) to TDs/ 13:36:53 mc: I am going replicate the ld-proofs community proposal and add a list of crypto functions available for it. 13:37:11 ld proofs -> https://w3c-ccg.github.io/ld-proofs/#linked-data-signatures 13:38:21 mc: YANG defined names for the crypto functions. It would be reasonable to use it. 13:38:25 YANG -> https://tools.ietf.org/html/draft-ietf-netconf-crypto-types-12 13:39:20 rrsagent, make log public 13:39:30 rrsagent, draft minutes 13:39:30 I have made the request to generate https://www.w3.org/2021/02/22-wot-sec-minutes.html kaz 13:40:09 mc adds comment to 166 -> https://github.com/w3c/wot-security/issues/166 13:45:12 mc: Anyone else having comments about signing? 13:45:17 No responses 13:45:21 rrsagent, draft minutes 13:45:21 I have made the request to generate https://www.w3.org/2021/02/22-wot-sec-minutes.html kaz 13:45:37 rrsagent, draft minutes 13:45:37 I have made the request to generate https://www.w3.org/2021/02/22-wot-sec-minutes.html kaz 13:48:16 topic: Consider security issues in Discovery 13:48:31 Consider security issues in Discovery -> https://github.com/w3c/wot-security/issues/196 13:52:14 i/topic: Consider/topic: Issue 196 - Consider/ 13:52:28 mc is going through the PR he created 13:53:21 Security and Privacy Considerations -> https://github.com/w3c/wot-discovery/pull/113 13:53:34 rrsagent, draft minutes 13:53:34 I have made the request to generate https://www.w3.org/2021/02/22-wot-sec-minutes.html kaz 13:54:38 -> ool/wot-discovery/pull/113.html#security-considerations 7. Security and Privacy Considerations from the preview of the above PR 113 13:55:58 mc: I think this is a work in progress. 13:56:20 https://github.com/w3c/wot-discovery/pull/113 13:56:29 mc: Any comments? 13:58:18 No comments. mac adds some thoughts as a comment he had while going through it. 14:00:48 mc: Any other topics? 14:00:54 No answers 14:01:14 [adjourned] 14:01:18 rrsagent, draft minutes 14:01:18 I have made the request to generate https://www.w3.org/2021/02/22-wot-sec-minutes.html kaz 14:44:53 zkis2 has joined #wot-sec 15:35:23 Zakim has left #wot-sec