You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to ICF.WG.Schemas
Attendees
Uppili Srinivasan
Ian Hummel
John Bradley
Bob Morgan
Mike Jones
Paul Trevithick
Drummond Reed
Discussion
1. Recap username, password claims discussion from last week
MJ: I really can't endorse the one card per site approach. I'd have, for example, 400+ cards!
DR: What's the next step here?
PT: Do we need to decide between the two design issues in this working group?
MJ: Not necessarily. This WG could simply state that the un/pw claim must supported by a card such that the released claim value must be RP-specific (and may not be released to other RPs).
JB: My big concern in all this is that we don't have a model for how local apps (including a password manager app) connect to [auth to] the selector
US: We've discussed a number of usage scenarios. Sometimes we're discussing proxy functionality. Sometimes we're talking about a managed card. We need to sort out all of these different scenarios.
2. OpenID
JB: I'm not yet ready to make a proposal. Waiting for an implementation to drive this.
3. Credit Card claims
MJ: We might be putting some payment claim proposals forward in the near future.
4. GSA
BM: Has a colleague now highly placed within the GSA and is concerned about the proliferation of attribute/claim definitions across the industry and across technologies. He's looking for advice and input on this topic. He's thinking about questions like, "should the government perhaps run a schema registry?"
PT: I've dusted off the http://identityschemas.org wiki and copied over all of Mark Wahl's old notes from the old wiki.
A number of committee members expressed an interest in working towards an "attribute/claim non-proliferation treaty" :)