OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

security-services message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]


Subject: Minutes from SSTC Meeting (9 May 2023)


Minutes from SSTC Meeting (Tuesday 9 May 2023)


(a) Roll Call:

Scott Cantor
Derek Fu
Thomas Hardjono

Quorum was not achieved.


(b) Notetaker:  Thomas


(c) Discussion:  W3C privacy WG & Browser related work 

-- Some members of the SSTC noted that there has been some discussions around the W3C privacy work and the changes to browsers being proposed by some Browser Vendors.

-- Third-party cookies may affect browsers and privacy, but generally speaking cookies do not affect SAML-based SSO.  However, changes to how cookies are handled in browsers *may* affect SAML Logout processes (difficult to say without knowing the exact changes to be proposed to cookies/browsers).

-- So far it seems that only Higher-Education deployments of SAML2.0 have indicated concern about the potential technical issues with changes to cookies/browsers. However, this may also impact commercial products.

-- The thought is that the SSTC should send a friendly note to the relevant W3C group, indicating some concern about potential breakages to the deployments of SAML2.0.

-- Scott agreed to craft some text and to post it to the SSTC mail-list for approval to then send to the W3C.




[End of Minutes]






[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]