12:05:23 RRSAgent has joined #wot-sec 12:05:23 logging to https://www.w3.org/2022/05/30-wot-sec-irc 12:05:31 meeting: WoT Security 12:05:47 chair: McCool 12:06:07 present+ Kaz_Ashimura, Jan_Romann, Jiye_Park, Meyyu_Hao, Michael_McCool 12:06:40 agenda: https://www.w3.org/WoT/IG/wiki/IG_Security_WebConf#30_May_2022 12:06:58 McCool has joined #wot-sec 12:08:09 scribenick: jiye 12:10:20 topic: Minutes 12:10:24 -> https://www.w3.org/2022/05/23-wot-sec-minutes.html May-23 12:10:27 (approved) 12:10:48 topic: Discovery 12:10:49 i/app/scribenick: kaz/ 12:10:55 scribenick: jiye 12:11:29 -> https://github.com/w3c/wot-discovery/pull/313 wot-discovery PR 313 - Security Bootstrapping 12:12:31 mm: we got a lot of comments from farshidtz, it would be good if we can merge PR today 12:22:17 jy: do we need to consider different protocols such as CoAP as well? 12:23:51 mm: yes, I was think about it, but it is kinda rushed. There are two options either we have CoAP with similar contents, or we allows only HTTP 12:27:52 mm: Discovery picture is not clear and order to explain is wrong in the picture, so I made a PR explaining better 12:31:10 mm: in the chapter, "Security boostrapping MUST... " should we need SHOUD here? 12:31:52 ...: if we have MUST here, when there is better mechanism, we won't be able to use it 12:32:33 jr: if you use NOSEC here then does not imply SHOULD already? 12:35:31 rrsagent, make log public 12:35:36 rrsagent, draft minutes 12:35:36 I have made the request to generate https://www.w3.org/2022/05/30-wot-sec-minutes.html kaz 12:35:39 mm: we have a sentence that if bootstrapping is not provided what happens, so SHOULD is a good idea 12:35:50 jy: agreed 12:35:52 jr: agreed 12:36:16 mm: will work a bit more on this and try to merge it today 12:37:50 jr: when is the deadline for CoAP + discovery? 12:39:47 mm: May 5, 2022 -Normative feature freeze. At least we need to make a branch and merge after that. I would like to test it in Testfest 2, June 6-10, 2022. I know you are playing with MQTT but MQTT is not feasible option. 12:40:03 ...: However, CoAP shouldn't be that difficult 12:40:31 jr: I am currently working on implementing Discovery, I will try to get it it there by next week 12:45:29 topic: Wide reviews 12:46:11 -> https://github.com/w3c/wot-architecture/labels/security-needs-resolution wot-architecture issues labeled with "security-needs-resolution" 12:46:39 -> https://github.com/w3c/wot-thing-description/labels/security-needs-resolution wot-thing-description issues labeled with "security-needs-resolution" 12:47:06 -> https://github.com/w3c/wot-discovery/labels/security-needs-resolution wot-discovery issues labeled with "security-needs-resolution" 12:48:20 https://github.com/w3c/wot-architecture/issues/770 12:51:11 -> https://github.com/w3c/wot-thing-description/issues/1497 12:51:18 https://github.com/w3c/wot-discovery/issues/303 12:53:22 mm: no objection to make assertion ? 12:53:26 jy: no objection 12:53:40 jr: it makes sense 12:55:50 jr: aren't we already discuss about it ? 12:56:08 mm: yes, we discuss about the ID rotating and tracking ..etc 12:56:44 topic: summary 12:56:56 mm: I would like to get some feedback from people about Secure bootstrapping 12:57:55 [adjourned] 12:58:04 rrsagent, make log public 12:58:09 rrsagent, draft minutes 12:58:09 I have made the request to generate https://www.w3.org/2022/05/30-wot-sec-minutes.html kaz 14:26:53 Zakim has left #wot-sec 17:40:36 zkis has joined #wot-sec 21:18:36 zkis has joined #wot-sec 21:33:36 zkis has joined #wot-sec 21:47:36 zkis_ has joined #wot-sec