OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.


Help: OASIS Mailing Lists Help | MarkMail Help

security-services message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]

Subject: Draft minutes (with attendance) for SSTC meeting January 30, 2007

Dial in info: +1 865 673 6950;
Access code: 270-9441#

Eve will chair.

1. Roll Call & Agenda Review, Find volunteer minute taker

Attendance of Voting Members

  Steve Anderson BMC Software
  Abbie Barbir Nortel
  Bhavna Bhatnagar Sun Microsystems
  Conor P. Cahill Intel
  Brian Campbell Ping Identity
  Carolina Canales-Valenzuela Ericsson
  Scott Cantor Internet2
  Peter Davis NeuStar
  Heather Hinton IBM
  Frederick Hirsch Nokia
  Dana Kaufman Forum Systems
  Ari Kermaier Oracle
  Paul Madsen NTT Corporation
  Eve Maler Sun Microsystems
  Bob Morgan Internet2
  Ashish Patel France Telecom
  Rob Philpott EMC Corporation
  David Staggs Veteran's Health Admin
  Greg Whitehead Hewlett-Packard Company
  Emily Xu Sun Microsystems

Attendance of Non-Voting Members

  Jeff Hodges NeuStar

Attendance of Observers

  Alessandro Triglia OSS Nokalva

Membership Status Changes

  Willem de Pater Oracle - Membership granted 8/28/2006
  Keiron Salt BTplc - Membership granted 10/20/2006
  Colin Young BTplc - Membership granted 10/23/2006
  Nick Pope Thales eSecurity Ltd. - Membership granted 11/13/2006
  Paul Toal Capgemini - Membership granted 12/3/2006
  Rob Philpott RSA Security - Changed affiliation from RSA Security to EMC Corporation
  Eric Tiffany IEEE Industry Standards - Member deactivated 1/23/2007
  John Linn RSA Security - Member deactivated 1/29/2007
  Michael Merrill RSA Security - Member deactivated 1/29/2007
  Jim Lien RSA Security - Member deactivated 1/29/2007
  Chris Laskowski Booz Allen Hamilton - Lost voting status after 1/30/2007 call
Ari Kermaier to take minutes.

2. Approve minutes from January 16 con-call

(lacks attendance)

Hal moves to accept minutes. No objections to unanimous approval.

3. CD vote on new Simple Sign Binding


Scott moves to vote on CD status. Peter seconds.


Frederick -- Line 218 has a formatting error and a title for section 2.5.2 is needed.

Scott -- Section numbers and outline appear to be trashed, will check on fixing that.

Eve -- Any objections to unanimous approval, pending editorial fixes? None, so approved.

4. New draft

a) Identity Provider Discovery Service Protocol
http://www.oasis-open.org/apps/org/workgroup/security/download.php/22041/draft-sstc-saml-idp-discovery -01.pdf

Scott -- This is for people to take a look at and see if they want this to move forward. It's not a  SAML 2.0-specific draft (despite some references to SAML 2.0), and could apply to older versions as  well. Can be tailored to converge with related work that others are doing on this subject.

Eve -- Is this related to WS-Federation home realm discovery?

Scott -- Not specifically geared to ADFS cases, but could be adjusted to take that into account.

Eve -- Is this similar to OpenID?

Scott -- Not at all, as this assumes a centralized discovery service, not asking the user for an IdP.

Jeff -- Nominally, this is something we might want to take up.

Scott -- Also note that there's the capacity to respect the semantics of the SAML IsPassive attribute.

Eve -- If we want to take this forward, maybe have a motivating use case section.

Scott -- This could be useful, if Shibboleth is going to do it anyway, and might help people with their  deployments in other scenarios as well.

Eve -- Can Scott produce a fleshed-out version of this for consideration?

Scott -- Is there someone else who could look into aligning this draft with the WS-Fed effort?

Eve -- I'll ask someone who's familiar with that.

5. Discussion of plans for further documents for a Public Review Package

a) Simple Sign
b) Discovery Service
c) Other?

Eve -- Paul, are we just in time for a public review?

Paul -- When I created the table 3 weeks ago, I had a good sense of what was available, but he'll  reconfirm with editors this week.

Eve -- I don't know if errata package should go in this public review package, but I'll see if it can  be ready. Simple Sign is pretty much ready, so it should be simple to vote it into CD. Errata package  is not ready yet, but maybe for meeting after next. What do people think should be in a public review;  what peices are we in a rush to get out?

Jeff -- The sooner we do simple sign, the better.

Eve -- Should we just do public review individually as documents are ready?

Paul -- Isn't that a pain for Hal and Prateek?

Eve -- How about voting public review for Simple Sign, and leaving it to chairs as to whether to bundle  it with other document(s) by next meeting?

Scott -- Discovery Service needs some editorial fixes in draft.

Eve -- Should we just make fixes and then re-vote for public review next meeting, or leave today's CD  vote in place pending minor editorial fixes?

Abbie -- Move for public review for Simple Sign.

Peter -- Seconds.

Eve -- No objections to unanimous approval, so approved.

Jeff -- Do I need to replace the notices section with the new text?

Eve -- Probably. I'll check.

6. SS TC Wiki - a good idea?

Paul -- Page on saml.xml.org looks good, but who will be creating all that content.

Eve -- Why not have a table of drafts and documents on the SSTC page?

Scott -- A wiki would be easier to maintain.

Paul -- Why don't I circle back with OASIS and explain our concerns about the saml.org page and see  what they think about a wiki?

Jeff -- Wikipedia SAML page needs a lot of work.

Eve/Jeff -- Works for SAML 1.x, but needs work.

AI: Paul to update SSTC page for bare bones, and pursue with Mary et al. options for Wiki for other  info.

7. Errata status - where do we stand?

Eve -- Errata package should be ready for voting next week. Will progress as Approved Errata (as per  discussion with Mary McCrae).

8. Open AIs

#0276: status of documents drafted under the old rules but to be
finished under the new rules.
Owner: Hal Lockhart
Status: Open
Assigned: 2007-01-15
Due: ---

Eve -- Still open.

#0275: Create links for public review of documents
Owner: Paul Madsen
Status: Open
Assigned: 2007-01-15
Due: ---

Eve -- Still open.

#0271: submit a draft of an alternative approach to IdP Discovery on
behalf of Shibboleth Project
Owner: Scott Cantor
Status: Open
Assigned: 2006-12-19
Due: 2007-01-31

Eve -- Done.

#0265: Updated draft of X.509 attribute sharing deployment profile
Owner: Ari Kermaier
Status: Open
Assigned: 2006-09-25
Due: 2007-01-16

Ari -- Not finished yet, but I'll get it done for next meeting.

Eve -- Can that be included for consideration for public review?

Ari -- Yes, so I'll shoot to get that done for next week, to give people time to look at it.

Meeting adjourned by Eve at 12:55pm EST.

Ari Kermaier

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]