W3C

– DRAFT –
WoT Security

31 January 2022

Attendees

Present
Jiye_Park, Kaz_Ashimura, Michael_McCool, Philipp_Blum, Tomoaki_Mizushima
Regrets
-
Chair
McCool
Scribe
citrullin

Meeting minutes

Minutes review

<kaz> Jan-24

McCool: There is a gap in the spec. We need to address this.

https://github.com/w3c/wot-discovery/issues/263

Remove md5

https://github.com/w3c/wot-thing-description/issues/1362

Philipp: I am not against it. Just thinking about adding a warning in the validation or something like that.

mm adds a comment to the issue

Kaz: These topics should be discussed in a wider review.

McCool: That's true. We should add the missing links now.

McCool: We can keep it open and get some feedback. For now I add some missing problems.

Security and Privacy Considerations

https://github.com/w3c/wot-discovery/pull/264

McCool: query tracking is different from location tracking. More like attaching queries to specific users.

McCool: my suggestion is to keep it open for now.

McCool: It might be better to reorder them to make the importance of each point more clearer.

McCool: Please have a look and add your comments.

architecture

McCool: The topic is closed, but the issue is not resolved. So, I reopened it.

https://github.com/w3c/wot-architecture/pull/679

McCool: a lot of those diagrams add these bubbles "trusted environment", but it doesn't describe what it is.

McCool: I added some changes in the PR to address this.

<kaz> [adjourned]

Minutes manually created (not a transcript), formatted by scribe.perl version 185 (Thu Dec 2 18:51:55 2021 UTC).