Presentation is loading. Please wait.

Presentation is loading. Please wait.

Agenda Tobias Gondrom March 2011 Websec WG IETF 80 1.

Similar presentations


Presentation on theme: "Agenda Tobias Gondrom March 2011 Websec WG IETF 80 1."— Presentation transcript:

1 Agenda Tobias Gondrom March 2011 Websec WG IETF 80 1

2 WebsecWG Welcome to Websec WG meeting at IETF 80 in Prague Web page: charter, current documents http://datatracker.ietf.org/wg/websec/charter/ http://datatracker.ietf.org/wg/websec/charter/ Mailing List: websec@ietf.orgwebsec@ietf.org To Subscribe: https://www.ietf.org/mailman/listinfo/websec https://www.ietf.org/mailman/listinfo/websec Jabber: websec@jabber.ietf.orgwebsec@jabber.ietf.org Audio: http://ietf80streaming.dnsalias.net/ietf/ietf804.m3uhttp://ietf80streaming.dnsalias.net/ietf/ietf804.m3u Chair: Tobias Gondrom (tobias.gondrom@gondrom.org) Area Director: Peter Saint-Andre (stpeter@stpeter.im) 2

3 Note Well Any submission to the IETF intended by the Contributor for publication as all or part of an IETF Internet-Draft or RFC and any statement made within the context of an IETF activity is considered an "IETF Contribution". Such statements include oral statements in IETF sessions, as well as written and electronic communications made at any time or place, which are addressed to: the IETF plenary session, any IETF working group or portion thereof, the IESG or any member thereof on behalf of the IESG, the IAB or any member thereof on behalf of the IAB, any IETF mailing list, including the IETF list itself, any working group or design team list, or any other list functioning under IETF auspices, the RFC Editor or the Internet-Drafts function All IETF Contributions are subject to the rules of RFC 3978 (updated by RFC 4748) and RFC 3979 (updated by RFC 4879). Statements made outside of an IETF session, mailing list or other function, that are clearly not intended to be input to an IETF activity, group or function, are not IETF Contributions in the context of this notice. Please consult RFC 3978 (and RFC 4748) for details. A participant in any IETF activity is deemed to accept all IETF rules of process, as documented in Best Current Practices RFCs and IESG Statements. A participant in any IETF activity acknowledges that written, audio and video records of meetings may be made and may be available to the public. 3

4 AGENDA 1. Administrativia – 3 mins Note takers, Jabber Scribes, Blue sheets 2. WG Status, draft status, misc - Tobias - 10 min Sniffing, Origin & Principles of the Same-Origin Policy 3. draft-hodges-websec-framework-reqs-00 - Jeff 10 min + discuss 10 min 4. draft-hodges-strict-transport-sec-01 - Jeff 10 min 5. Do-Not-Track - Alissa 10 min + discuss 10 min 6. Frame-Options - Tobias 10 min + discuss 5 min 7. Admin - call for consensus for adoption of drafts, reviewers of current IDs to progress - 10 min 8. other topics / open mike - 10 min 4

5 2. Status of WG - Drafts Sniffing: draft-ietf-websec-mime-sniff-02 Please take time to review Reference draft-masinter-web-info-02? Media Types for Fonts (not in registry/sniffing)? Going into Last Call? Origin: draft-ietf-websec-origin-00, draft- abarth-principles-of-origin-00 Merge both IDs? Reviewers? 5

6 AGENDA 1. Administrativia – 3 mins Note takers, Jabber Scribes, Blue sheets 2. WG Status, draft status, misc - Tobias - 10 min Sniffing, Origin & Principles of the Same-Origin Policy 3. draft-hodges-websec-framework-reqs-00 - Jeff 10 min + discuss 10 min 4. draft-hodges-strict-transport-sec-01 - Jeff 10 min 5. Do-Not-Track - Alissa 10 min + discuss 10 min 6. Frame-Options - Tobias 10 min + discuss 5 min 7. Admin - call for consensus for adoption of drafts, reviewers of current IDs to progress - 10 min 8. other topics / open mike - 10 min 6

7 7. Admin - Milestones Achieved milestones Media Type Sniffing Web Origin Concept Strict Transport Security HTTP Application Security Problem Statement and Requirements Next milestones: Media Type Sniffing - LC Web Origin Concept - LC Strict Transport Security – LC when? HTTP Application Security Problem Statement and Requirements – LC when? Possible re-chartering 7

8 7. Admin - Possible future things on the radar CSP Header: CSP is done in W3C Web App Sec, but CSP header should be done in websec Volunteer editors Frame-options? … other topics? 8

9 7. Admin – reviewers, progress, adoption Call for reviewers Shall we progress to LC on drafts Opinions on adoption of new drafts Call for volunteer for co-chair 9

10 8. Other topics / open mike Discuss, Comments, Questions, … 10

11 Thank you 11


Download ppt "Agenda Tobias Gondrom March 2011 Websec WG IETF 80 1."

Similar presentations


Ads by Google