W3C

– DRAFT –
WoT Discovery

28 March 2022

Attendees

Present
Christian_Glomb, Jan_Romann, Kaz_Ashimura, Kunihiko_Toumura, Michael_McCool, Tomoaki_Mizushima
Regrets
-
Chair
McCool
Scribe
glomb

Meeting minutes

Minutes

<kaz> Mar-21

Minutes from last meeting - approved

PRs

PR 286

PR 286 - Add Amplification DDOS Security Consideration and Mitigations

Is about DDOS

Reviewed by security TF, merged

PR 292

PR 292 - PR for adding assertion of discovery @context

Just one slight change - merged (not the best, but one solution)

PR 288

PR 288 - WIP: Implementation Report

Several unmet assertions which might be easily implementable

McCool: Need to distinguish between manual and automatic tests

<kaz> 2022.03.Online/Discovery/Results

Two subdirectories automatic/ and manual/

Schedule

McCool: Normative feature freeze date already passed -> move to mid April and test again in July

<kaz> wg-2021-extension-plan.md

<McCool> wot PR 1015 - Update Schedule for Discovery

<McCool> please comment on the PR if there are change requests

Issues

Issue 291

Issue 291 - Needed new assertion for discovery @context

Merged with https://github.com/w3c/wot-discovery/pull/292, but probably editor's note should be added

Issue will remain open

Issue 285

Issue 285 - Security Consideration for Amplification Attacks closed

Issue 283

Issue 283 - Organize Testing

McCool: (adds comments)

<kaz> McCool's comments

Issue 281

Issue 281 - Assert use of UTF-8

Normative change, still open

Issue 280

Issue 280 - Capture Answers to Internationalization Questionnaire

Should be turned into a PR

Issue 279

Issue 279 - Validation section internationalization

(still under discussion)

Issue 272

Issue 272 - Consumer Process for Discovery

Closed

Issue 271

Issue 271 - Add a Directory to a Directory

(still under discussion)

Issue 254

Issue 254 - Review Security and Privacy Considerations

Propose to be closed

Issue 265

Issue 265 - Reconsider/Refine Self-Discovery Security Assertions

Issue 263

Issue 263 - Profile needs a simple self descriptive mechanism without huge implementation demands

McCool: Looks like it is mostly done

(propose closing)

Issue 262

Issue 262 - @context for Directory is not working

Fixed and marked as "propose closing"

Issue 293

Issue 293 - Upgrade Security and Privacy Considerations to Normative Sections

Example: "Introduction mech. should not respond to multicast"

Or "denial of service" section

Are "should" assertions and could be manually tested

mmccool will formulate a PR for this.

<kaz> McCool's comments for Issue 293

New issue https://github.com/w3c/wot-discovery/issues/294 - Move up Thing Model above Considerations sections

<kaz> [adjourned]

Minutes manually created (not a transcript), formatted by scribe.perl version 185 (Thu Dec 2 18:51:55 2021 UTC).