Next in thread →
Next in month →
WS-SX TC Minutes, Nov 28 2007
WS-SX TC Minutes, Nov 28 2007 Summary of new Action Items: None 1. Call to order/roll call Present: Hal Lockhart BEA Systems, Inc. Denis Pilipchuk BEA Systems, Inc. Corinna Witt BEA Systems, Inc. Toshihiro Nishimura Fujitsu Limited* Michael McIntosh IBM Anthony Nadalin IBM Mike Lyons Layer 7 Technologies Inc.* Jan Alexander Microsoft Corporation Greg Carpenter Microsoft Corporation Colleen Evans Microsoft Corporation Vijay Gajjala Microsoft Corporation Marc Goodner Microsoft Corporation Chris Kaler Microsoft Corporation Lloyd Burch Novell* Steve Carter Novell* Rich Levinson Oracle Corporation Ashok Malhotra Oracle Corporation Prateek Mishra Oracle Corporation Martin Raepple SAP AG* Tony Gullotta SOA Software Inc. Don Adams TIBCO Software Inc. 2. Reading/Approving minutes of last meeting (Nov 14) http://www.oasis-open.org/archives/ws-sx/200711/msg00013.html Adopted unanimously. 3. TC Logistics (10 minutes or less) None. 4. Issues list http://docs.oasis-open.org/ws-sx/issues/Issues.xml a) Review of action items b) Issues in Review status None. c) New issues ER016 - SecondaryParameters element missing from WS-Trust schema xsd http://www.oasis-open.org/archives/ws-sx/200711/msg00011.html Proposal amended to include removing / from namespace as described in this message http://www.oasis-open.org/archives/ws-sx/200711/msg00012.html Accepted, moved to pending and assigned to editors ER017 - Conflict Nonce reuse description in the current WS-SC 1.3 http://www.oasis-open.org/archives/ws-sx/200711/msg00014.html Concerns over whether this is editorial or if there are cryptographic reasons for the identified discrepancies Status changed to active ER018 - ContentEncryptedElement assertion is not defined in the ws-securitypolicy-1.2.xsd Raised on call Accepted, moved to pending and assigned to editors d) Active issues i141 - Support for nonce and created nested assertion in usernametoken New proposal: http://www.oasis-open.org/archives/ws-sx/200711/msg00017.html Issue 152: Update policy references to 1.5 for SC, Trust and SP http://www.oasis-open.org/archives/ws-sx/200711/msg00003.html Accepted, status changed to pending Issue 153: Generalized Interactive Challenge for WS-Trust http://www.oasis-open.org/archives/ws-sx/200711/msg00007.html Concerns that this is done as a Trust specific mechanism, what about specialized SOAP Fault? Challenges aren’t part of application, built into STS (other discussion, not captured) Challenges already part of Trust framework, e.g. signature challenges Comment on why not SOAP fault, looked at but thought reuse of STS model was better direction ER012 - Review normative RFC 2119 language in WS-Trust In progress ER013 - Review normative RFC 2119 language in WS-SecureConversation In progress ER014 - Review normative RFC 2119 language in WS-SecurityPolicy In progress f) Pending issues i148 - Syntax of XPath for Signed, Encrypted and Required Elements i150 - Add conformance statements to new versions of Trust/SC/SP i151 - Update SP per Policy 1.5 guidelines ER006 - The specification states that if [Timestamp] is false, thenwsu:Timestamp should not be present inside <wsse:Security> header. ER015 - Change key to crucial in SC text 5. AOB Updated examples document, changes detailed in message. http://www.oasis-open.org/archives/ws-sx/200711/msg00008.html This version should be complete, no outstanding changes Everyone needs to review and comment so we can move forward. Public comment: http://www.oasis-open.org/archives/ws-sx/200711/msg00002.html Potential new errata here: Check all SP examples. Marc to raise errata issue to track 6. Adjournment
Next in thread →
Next in month →