Next in thread → Next in month →

WS-SX TC Minutes, Nov 28 2007

From
Marc Goodner <>
Date
2007-12-04T20:04:42+00:00
ID
Thread
WS-SX TC Minutes, Nov 28 2007
WS-SX TC Minutes, Nov 28 2007

 

Summary of new Action Items:

None

 

1. Call to order/roll call

    

Present:

Hal Lockhart      BEA
Systems, Inc.

Denis Pilipchuk   BEA Systems, Inc.

Corinna Witt      BEA
Systems, Inc.

Toshihiro Nishimura     Fujitsu
Limited*

Michael McIntosh  IBM

Anthony Nadalin   IBM

Mike Lyons  Layer 7 Technologies Inc.*

Jan Alexander     Microsoft
Corporation

Greg Carpenter    Microsoft
Corporation

Colleen Evans     Microsoft
Corporation

Vijay Gajjala     Microsoft
Corporation

Marc Goodner      Microsoft
Corporation

Chris Kaler Microsoft Corporation

Lloyd Burch Novell*

Steve Carter      Novell*

Rich Levinson     Oracle
Corporation

Ashok Malhotra    Oracle Corporation

Prateek Mishra    Oracle Corporation

Martin Raepple    SAP AG*

Tony Gullotta     SOA Software
Inc.

Don Adams   TIBCO Software Inc.

 

2. Reading/Approving minutes of last meeting (Nov
14)

http://www.oasis-open.org/archives/ws-sx/200711/msg00013.html

Adopted unanimously.

 

3. TC Logistics (10 minutes or less)

None.

 

4. Issues list

http://docs.oasis-open.org/ws-sx/issues/Issues.xml

    

a) Review of action items

 

b) Issues in Review status

 

None.

 

    

c) New issues

ER016 - SecondaryParameters element missing from
WS-Trust schema xsd

http://www.oasis-open.org/archives/ws-sx/200711/msg00011.html

Proposal amended to include removing / from
namespace as described in this message

http://www.oasis-open.org/archives/ws-sx/200711/msg00012.html

Accepted, moved to pending and assigned to editors

 

ER017 - Conflict Nonce reuse description in the
current WS-SC 1.3

http://www.oasis-open.org/archives/ws-sx/200711/msg00014.html

Concerns over whether this is editorial or if there
are cryptographic reasons for the identified discrepancies

Status changed to active

 

ER018 - ContentEncryptedElement assertion is not
defined in the ws-securitypolicy-1.2.xsd

Raised on call

Accepted, moved to pending and assigned to editors

 

 

d) Active issues

 

i141 - Support for nonce and created nested
assertion in usernametoken

New proposal: http://www.oasis-open.org/archives/ws-sx/200711/msg00017.html

 

 

Issue 152: Update policy references to 1.5 for SC,
Trust and SP

http://www.oasis-open.org/archives/ws-sx/200711/msg00003.html

Accepted, status changed to pending

 

Issue 153: Generalized Interactive Challenge for
WS-Trust

http://www.oasis-open.org/archives/ws-sx/200711/msg00007.html

Concerns that this is done as a Trust specific
mechanism, what about specialized SOAP Fault?

Challenges aren’t part of application, built
into STS

(other discussion, not captured)

Challenges already part of Trust framework, e.g.
signature challenges

Comment on why not SOAP fault, looked at but thought
reuse of STS model was better direction

 

ER012 - Review normative RFC 2119 language in
WS-Trust

In progress

 

ER013 - Review normative RFC 2119 language in
WS-SecureConversation

In progress

 

ER014 - Review normative RFC 2119 language in
WS-SecurityPolicy

In progress

 

 

f) Pending issues

i148 - Syntax of XPath for Signed, Encrypted and
Required Elements

 

i150 - Add conformance statements to new versions of
Trust/SC/SP

 

i151 - Update SP per Policy 1.5 guidelines

 

ER006 - The specification states that if [Timestamp]
is false, thenwsu:Timestamp should not be present inside <wsse:Security>
header.

 

ER015 - Change key to crucial in SC text

 

 

5. AOB

Updated examples document, changes detailed in
message.

http://www.oasis-open.org/archives/ws-sx/200711/msg00008.html

This version should be complete, no outstanding
changes

Everyone needs to review and comment so we can move
forward.

 

Public comment:

http://www.oasis-open.org/archives/ws-sx/200711/msg00002.html

Potential new errata here: Check all SP examples.

Marc to raise errata issue to track

 

6. Adjournment
Next in thread → Next in month →