Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  • Drafts reviewed during the meeting:  KIAF-1440 SP 800-63B Service Assessment Criteria v3.1.0.xlsx and KIAF-1450 SP 800-63C Service Assessment Criteria v0.17.0.xlsx
  • Richard explained that it was adopted the multiple parties practice from the FAL2 to work into the IAL and AAL SACs, in doing so we have pulled out those criteria which relates specifically to federal agencies or might also apply to RPs, in order to take the AAL criteria to their fullest implementation responding to absolutely normative criteria.
  • He has updated all the tags because it's a substantial change. There is a new contiguous set, and the old ones will be here at least for a year or so while we transition to the new ones.
  • Changes are in red text; there have been a few changes which have affected level 2 because we've been more inclusive this time with federal agencies. 
  • I would guess it'll probably 30 to 40 new discrete criteria of AAL3.
  • It was decided to defer the approval to the next week.


Kantara comments on how SP 800-63-3 could be revised for NIST’s consideration in developing Revision 4 

...