OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

wss message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]


Subject: WSS TC Minutes 2006-08-22 (no roll call)


WSS TC Minutes 2006-08-22

New Action items:

ACTION 2006-08-22-01 Paul Cotton will check if any of the proposed errata for 1.1 specs applies to 1.0.

ACTION 2006-08-22-02 Ron will update the SAML token profile 1.1 by Aug 25 to deal with the outstanding public comment.

ACTION 2006-08-22-03 Editors to provide errata documents with list of changes and a red-lined version of the original specification by Fri Aug 25.

ACTION 2006-08-22-04 TC to review revised documents between Fri Aug 25 and Wed Aug 30 when the adoption ballots will start.

ACTION 2006-08-22-05 Chairs to start two electronic ballots on the revised errata documents to adopt them as CDs and to indicate they don't contain substantive changes starting on Wed Aug 30 ending on Fri Sep 8.

ACTION 2006-08.22-06 If the electronic errata ballots pass then Chairs to start the 15 day public review period for the errata.

ACTION 2006-08-22-07 Chairs to cancel Tue Sep 5 meeting.

1. Roll call

Quorum of 15 of 30 voting members was achieved.

<to be supplied>

2. Approve last minutes

Aug 8 minutes:
http://lists.oasis-open.org/archives/wss/200608/msg00016.html

Adopted unanimously.

Action items from Aug 08:

ACTION 2006-08-08-01 Chris to drive the TC discussion of which URI is
being used for the X509 token.
DONE.

ACTION 2006-08-08-02 Tony Nadalin to investigate the history of the key
derivation section in the errata and to post the history to the TC email
list.
Status: Pending.  See issue 461.

ACTION 2006-08-08-03 Editors to produce 1.1 errata documents and revised
1.1 documents showing the errata changes by Aug 15.
DONE.

3. Issues list

http://www.oasis-open.org/apps/org/workgroup/wss/download.php/19774/OASIS%20Web%20Services%20Security%20Issues%20List%2090.htm

a) Open issues

Issue 455

ACTION 2006-08-08-01 Chris to drive the TC discussion of which URI is being used for the X509 token.
DONE.
Tony pointed out that the TC interop documents used the WSS Core base URI.
http://lists.oasis-open.org/archives/wss/200608/msg00014.html

"So a proposal would be to remove the #x509v3 table entry at line 1399 of wss-v1.1-spec-os-SOAPMessageSecurity and then change the example in same document at lines 1514, 1915 and 1927 to use a custom token or if we want the core to be pointing to a profile then to http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-x509-token-profile-1.0#X509v3.";

Adopted unanimously (use the forward reference to the X509 Profile).

Change status to Pending.  Assigned to Editors.

Issue 461

See:
http://lists.oasis-open.org/archives/wss/200607/msg00000.html

ACTION 2006-08-08-02 Tony Nadalin to investigate the history of the key derivation section in the errata and to post the history to the TC email list.
Status: Tony did the research but did not post it.  Between Jul and Sept 2004 the TC processed Issue 282 and the results got folded into the 1.0 errata at that time.

Mike M moved to remove the Key Derivation section from the WSS 1.0 Errata.  Seconded by Paul.

Adopted unanimously.

Change status to Pending.  Assigned to Editors.

b) Pending issues

Issue 456 applies to Kerberos.
Issue 457 applies to X509.

The meeting agreed to remove the x509v1 row from Table 2 in the X509 Token profile 1.1 errata on line 177 as previously agreed at the Aug 8 meeting.

Issue 458 applies to X509
Issue 459 applies to WSS 1.1 Core
Issue 460 applies to X509
Issue 462 applies to SwA
Issue 463 applies to SAML and SwA

The editors have provided the following errata docs:

SWA Profile 1.1 errata:
http://www.oasis-open.org/apps/org/workgroup/wss/download.php/19824/wss-v1.1-spec-draft-SwAProfile-errata.pdf
WSS 1.1 Core errata:
http://www.oasis-open.org/apps/org/workgroup/wss/download.php/19753/wss-v1.1-spec-errata-SOAPMessageSecurity.pdf
X509 Token profile 1.1 errata:
http://www.oasis-open.org/apps/org/workgroup/wss/download.php/19754/wss-v1.1-spec-errata-x509TokenProfile.pdf
Kerberos Token profile 1.1 errata:
http://www.oasis-open.org/apps/org/workgroup/wss/download.php/19755/wss-v1.1-spec-errata-KerberosTokenProfile.pdf
SAML token profile 1.1 errata:
http://www.oasis-open.org/apps/org/workgroup/wss/download.php/19849/wss-v1.1-spec-os-SAMLTokenProfile-with-errata.pdf

ACTION 2006-08-22-01 Paul Cotton will check if any of the proposed errata for 1.1 specs applies to 1.0.

c) Outstanding issues

Outstanding public comment on SAML token profile
http://lists.oasis-open.org/archives/wss/200603/msg00027.html

Ron raised this public comment which he felt had been dropped and failed to be processed.  Ron proposed that something should be added to the Security Considerations to the SAML token profile 1.1.  No objection to adding non-normative text to the SAML token profile 1.1.

ACTION 2006-08-22-02 Ron will update the SAML token profile 1.1 by Aug 25 to deal with the outstanding public comment.

4. Next steps

Frederick provided info on the new errata process:
http://lists.oasis-open.org/archives/wss/200608/msg00029.html

ACTION 2006-08-22-03 Editors to provide errata documents with list of changes and a red-lined version of the original specification by Fri Aug 25.

ACTION 2006-08-22-04 TC to review revised documents between Fri Aug 25 and Wed Aug 30 when the adoption ballots will start.

ACTION 2006-08-22-05 Chairs to start two electronic ballots on the revised errata documents to adopt them as CDs and to indicate they don't contain substantive changes starting on Wed Aug 30 ending on Fri Sep 8.

ACTION 2006-08.22-06 If the electronic errata ballots pass then Chairs to start the 15 day public review period for the errata.

ACTION 2006-08-22-07 Chairs to cancel Tue Sep 5 meeting.

Next anticipated meeting is Tue Sep 19.  This meeting will likely be during the errata public review period.

5. Any other business

None.

6. Adjournment

The meeting adjourned at 11:05 ET.

/paulc

Paul Cotton, Microsoft Canada
17 Eleanor Drive, Ottawa, Ontario K2E 6A3
Tel: (613) 225-5445 Fax: (425) 936-7329
mailto:Paul.Cotton@microsoft.com


[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]