IRC log of wot-sp on 2015-09-03

Timestamps are in UTC.

13:05:32 [RRSAgent]
RRSAgent has joined #wot-sp
13:05:32 [RRSAgent]
logging to http://www.w3.org/2015/09/03-wot-sp-irc
13:05:56 [dsr]
meeting: Security and Privacy task force
13:06:01 [dsr]
chair: Oliver
13:06:59 [dsr]
agenda: https://lists.w3.org/Archives/Public/public-wot-ig/2015Sep/0001.html
13:07:28 [dsr]
scribenick: dsr
13:07:52 [dsr]
Topic: Feedback on kick-starting the discussion of "Things Discovery
13:07:56 [arne]
arne has joined #wot-sp
13:08:48 [dsr]
present: Oliver, Dave, Arne, Carsten, Claes, Dan, Yingying
13:09:59 [dsr]
Oliver summarises where we are in respect to authorisation for discovery, see https://www.w3.org/WoT/IG/wiki/Things_Discovery_Authorization
13:11:03 [dsr]
We have a draft problem statement
13:12:04 [dsr]
Oliver intoduces the section on the state of the art
13:14:28 [dsr]
… and the IT security perspective
13:14:59 [dsr]
We need to elaborate with further details
13:15:58 [dsr]
Oliver invites comments from the people on the call
13:16:45 [dsr]
The most important point it is that we can easily formulate the problem statement, but the rest will be harder.
13:17:35 [dsr]
Carsten: the act of discovery discloses privacy related info, and hence can require authorisation
13:19:11 [dsr]
We have discovery involving other parties, and also cold discovery …
13:19:48 [Darshak]
Darshak has joined #wot-sp
13:20:19 [dsr]
Oliver: my suggestion is to invite volunteers to assist with rewriting/extending the wiki text
13:20:33 [dsr]
Carsten volunteers to help
13:21:07 [dsr]
Oliver: the problem statement should be short
13:21:10 [Darshak]
present+Darshak Thakore
13:21:43 [dsr]
Oliver: I would suggest that the discovery task force take the lead on this
13:22:42 [dsr]
Oliver asks if Carsten can make his input on the wiki within one week
13:23:15 [dsr]
Carsten: we could also help with filling in the security perspective based on our experience in the IETF
13:24:13 [dsr]
Topic: Status and next steps for SP
13:24:31 [dsr]
s/SP/SP Landscape/
13:24:42 [dsr]
see: https://www.w3.org/WoT/IG/wiki/Design-Time_Security%26Privacy_Means#Mechanisms
13:25:17 [dsr]
Please take a look and provide any feedback you may have
13:25:47 [dsr]
I did some restructuring
13:26:41 [dsr]
The old version was perhaps too bottom up. We now start with the main findings and then add details by way of explanations.
13:27:50 [dsr]
The text in the table is in some cases a little long
13:28:42 [dsr]
… or is missing
13:31:12 [dsr]
I would like you to review the mechanisms and to see if there are missing technologies that should be added here. Right now we have around 17 mechanisms
13:31:48 [dsr]
s/mechanisms/technologies/
13:33:27 [dsr]
Oliver asks for feedback within the next 2 weeks if at all possible.
13:33:54 [dsr]
Has anybody had a chance to look at this so far? [no]
13:35:09 [dsr]
He distinguishes classic, new and future technologies on the basis of existing standards and the time they were introduced
13:36:11 [dsr]
s/time/date/
13:37:26 [dsr]
We have less clear understanding of new technologies, so need to get back to the authors to clarify things as needed
13:38:37 [dsr]
My aim is to have a full review in two weeks or so
13:39:06 [dsr]
Oliver asks for comments from people on the call [none]
13:39:21 [dsr]
Topic: Status and next steps for SP Requirements
13:39:34 [dsr]
See https://www.w3.org/WoT/IG/wiki/Security%26Privacy_Requirements_Catalogue
13:41:52 [dsr]
I am in touch with the other task forces to seek input on use cases with security requirements.
13:42:46 [dsr]
Oliver: my aim is to finalise our report at the next face to face (in Sapporo)
13:43:04 [dsr]
Who plans to attend?
13:43:09 [dsr]
Carsten: yes
13:43:13 [dsr]
Dave: yes
13:44:33 [dsr]
Dave reminds people to register for TPAC see http://www.w3.org/2015/10/TPAC/
13:44:54 [dsr]
Oliver: any other business for today? [none]
13:45:01 [dsr]
rrsagent, set logs public
13:45:14 [dsr]
rrsagent, make minutes
13:45:14 [RRSAgent]
I have made the request to generate http://www.w3.org/2015/09/03-wot-sp-minutes.html dsr
15:43:16 [cabo]
cabo has joined #wot-sp
16:41:45 [cabo]
cabo has joined #wot-sp
18:17:40 [cabo]
cabo has joined #wot-sp
19:22:02 [cabo]
cabo has joined #wot-sp