OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

security-services message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]


Subject: Agenda for September 30, 2003 SSTC con-call


 

Dial in info: +1 865-673-3239  #238-3466

 

  1. Agenda bashing
  2. Accept minutes from 16-Sept con-call
    1. http://lists.oasis-open.org/archives/security-services/200309/msg00076.html
  3. October 22-24 SAML V2.0 F2F #2 logistics
    1. Host?
    2. Attendance confirmation ballot
    3. Other?
  4. V2.0 charter clarification
    1. Now that we have agreed on a V2.0 goal statement, we need to update the SSTC charter (in OASIS TC process terms, it needs to be "clarified"). Specifically, our list of deliverables needs to be updated now that we've completed 1.1.
    2. Current charter is at http://www.oasis-open.org/committees/security/charter.php
    3. OASIS TC process is at http://www.oasis-open.org/committees/process.php#charter
    4. Needs recorded approval vote of 2/3 total membership (not just 2/3 of a meeting with quorum) and notification/approval of OASIS TC Administration.
  5. V2.0 Work Item review
    1. Identify and discuss the top priority items from the work list/action item list to discuss on today's con-call
    2. http://www.oasis-open.org/committees/download.php/3530/sstc-saml-scope-2.0-draft-07.doc
    3. Action items attached below
  6. Any other business?
  7. Adjourn

 

Report created 29 September 2003 08:31pm EDT

 

#0075: Attribute Reconciliation

Owner: Rebekah Lepro

Status: Open

Assigned: 16 Sep 2003

Due: ---

Comments:
Prateek Mishra 2003-09-16 14:36 GMT
Active work item - Waiting for solution proposal

XACML and SAML structure their attribute information differently. This needs to be addressed.


#0072: Authentication Context

Owner: Jeff Hodges

Status: Open

Assigned: 16 Sep 2003

Due: ---

Comments:
Prateek Mishra 2003-09-16 12:11 GMT
Main task is to approrpiately move Liberty AuthContext specification into OASIS (so it becomes a standard).

Jeff will ping Paul Madsen to see if he is interested.


#0077: Authorization Decision Reconciliation

Owner: Hal Lockhart

Status: Open

Assigned: 16 Sep 2003

Due: ---

Comments:
Prateek Mishra 2003-09-16 14:42 GMT
This includes issues of whether to make backwards-incompatible changes to the existing structure (and/or deprecate it).


#0069: Baseline Attribute Namespaces

Owner: Bob Morgan

Status: Open

Assigned: 16 Sep 2003

Due: ---

Comments:
Prateek Mishra 2003-09-16 12:01 GMT
Use-case discussed at F2F and generally supported. Waiting for solution proposal.

For example, a DSML or X.500 profile for a person's attributes expressed in SAML.


#0074: Create SAML 2.0 issues list

Owner: Eve Maler

Status: Open

Assigned: 16 Sep 2003

Due: ---

Comments:


#0065: Credentials Collector

Owner: Jeff Hodges

Status: Open

Assigned: 16 Sep 2003

Due: ---

Comments:
Prateek Mishra 2003-09-16 11:46 GMT
Waiting on use-case proposal.


#0068: Delegation and Intermediaries

Owner: Bob Morgan

Status: Open

Assigned: 16 Sep 2003

Due: ---

Comments:
Prateek Mishra 2003-09-16 11:58 GMT
Delegation and Intermediaries
Use cases that support arbitrary multi-hop delegation. Liberty WSF supports one-hop impersonation. The relationship of this to WSS needs to be sorted out. This relates to the Fidelity need for a WSRP profile. This is related to W-11. The item "multi-participant transactional workflows" was folded into this one.

Prateek Mishra 2003-09-16 11:59 GMT

WAITING for Use-Case proposal.


#0071: Enhanced Client Profiles

Owner: Frederick Hirsch

Status: Open

Assigned: 16 Sep 2003

Due: ---

Comments:
Prateek Mishra 2003-09-16 12:06 GMT
Use-case discussed at F2F. Awaiting candidate solution.


#0073: Extract enhancement requests from current issues list

Owner: Eve Maler

Status: Open

Assigned: 16 Sep 2003

Due: ---

Comments:


#0078: IssuerName Enhancement

Owner: Rebekah Lepro

Status: Open

Assigned: 16 Sep 2003

Due: ---

Comments:
Prateek Mishra 2003-09-16 14:43 GMT
XACML would like to have "datatyping" of issuers.


#0061: Kerberos Use Cases for SAML 2.0

Owner: John Hughes

Status: Open

Assigned: 15 Sep 2003

Due: ---

Comments:
Prateek Mishra 2003-09-15 19:41 GMT
John presented some Kerberos-SAML use-cases at the F2F. Next steps are to revise the materials and respond to comments. Meeting minutes describe the following next steps: (1) write up presentation to drill down details (2) also rollup to ensure that business needs are met.


#0064: Metadata and Exchange Protocol

Owner: Jahan Moreh

Status: Open

Assigned: 15 Sep 2003

Due: ---

Comments:
Prateek Mishra 2003-09-15 20:05 GMT
Means of publishing and communicating meta-data. Waiting on a solution proposal.


#0063: Profile Enhancements for Metadata

Owner: Jahan Moreh

Status: Open

Assigned: 15 Sep 2003

Due: ---

Comments:
Prateek Mishra 2003-09-15 20:07 GMT
Waiting on a solution proposal.


#0082: Promised V2.0 Changes

Owner: Eve Maler

Status: Open

Assigned: 16 Sep 2003

Due: ---

Comments:
Prateek Mishra 2003-09-16 18:23 GMT
Removing (core)
Removing (core)
Removing deprecated NameIdentifier URIs (core)
Requiring URI references to be absolute (core)
Disallowing as the only child of a SOAP (bindings)
Removing deprecated artifact URI (bindings)


#0060: Publish pointer to SAML 1.0 Session Materials

Owner: Hal Lockhart

Status: Open

Assigned: 15 Sep 2003

Due: ---

Comments:


#0070: SAML as a SASL security mechanism

Owner: Bob Morgan

Status: Open

Assigned: 16 Sep 2003

Due: ---

Comments:
Prateek Mishra 2003-09-16 12:04 GMT
Active work item -- waiting solution proposal.

Defining SAML as a SASL security mechanism.

Prateek Mishra 2003-09-16 18:09 GMT
Re-spun title of action item.


#0059: Session Support

Owner: John Kemp

Status: Open

Assigned: 15 Sep 2003

Due: ---

Comments:
Prateek Mishra 2003-09-15 19:33 GMT
Use case document was presented at the Sep 2003 F2F and will be revised based on comments given there. Once that is complete, a gap analysis between the use cases and available material in
Liberty is required. That will be followed by a solution proposal.


#0066: SSO Profile Enhancements

Owner: Prateek Mishra

Status: Open

Assigned: 16 Sep 2003

Due: ---

Comments:
Prateek Mishra 2003-09-16 11:50 GMT
Moved to Active work item after F2F discussion and presentation of use-case. Candidate solution should reference both
Liberty and SAML 1.1 draft. Need to conduct survey of "typical" data items transf. from SP to IdP.


#0062: SSO with Attribute Exchange

Owner: Prateek Mishra

Status: Open

Assigned: 15 Sep 2003

Due: ---

Comments:
Prateek Mishra 2003-09-15 19:49 GMT
High level use-case was presented at the F2F. Next steps are to specify the use-case in detail.


#0076: XACML Proposal for Policy Transport

Owner: Hal Lockhart

Status: Open

Assigned: 16 Sep 2003

Due: ---

Comments:
Prateek Mishra 2003-09-16 14:39 GMT
Waiting on a solution proposal.

XACML has asked for a SAML-based solution to transporting requests for policies and the policies themselves.


 

 

Rob Philpott
RSA Security Inc.
The Most Trusted Name in e-Security
Tel: 781-515-7115
Mobile: 617-510-0893
Fax: 781-515-7020
mailto:rphilpott@rsasecurity.com

 



[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]