IAWG Meeting Minutes 2013-07-18

Kantara Initiative Identity Assurance WG Teleconference

Meeting Minutes - Approved 1 August 2013

 

Date and Time

Agenda

  1. Administration:
    1. Roll Call
    2. Agenda Confirmation
    3. Minutes approval: IAWG Meeting Minutes 2013-07-11
    4. Action Item Review
    5. Staff reports and updates
    6. LC reports and updates
    7. Call for Tweet-worthy items to feed (@KantaraNews or #kantara)
  2. Discussion
    1. Alignment with SP 800-63-2 - Discussion 
    2. Roadmap review
    3. IAF Ticket #527461 - AAS Process Clarification
  3. AOB
    1. Time permitting, discuss 2 items raised on-list: AL2_CM_CTR#028 and AL2_CM_CTR#025
  4. Adjourn

 Attendees

Link to IAWG Roster

As of 1 July 2013, quorum is 5 of 9

Meeting achieved quorum

 

Voting

  • Myisha Frazier-McElveen
  • Andrew Hughes
  • Rich Furr
  • Richard Wilsher
  • Bill Braithwaite

Non-Voting

  • Terry Gold
  • Ken Dagg

Staff

  • Not present

Apologies

  • None

Notes & Minutes

Administration 

Minutes Approval

IAWG Meeting Minutes 2013-07-11

Motion to approve minutes of 2013/7/11: Bill Braithwaite
Seconded: Rich Furr
Discussion: None
Motion Passed

Action Item Review

See running table below

Staff Updates

  • Director's Corner Link
    • August 8-9 meeting planned in Portland/Vancouver, WA - Kantara strategy and internal operations. Please contact Joni for details.
LC Updates
  • Discussed update on Cloud Identity Summit
    • UMA group getting lots of traction
Participant updates

Discussion

Alignment with SP 800-63 - Discussion

Discussion of 6.3.1.1.2.c (RAF32)

Discussion of 5.3.1.3.9 (RAF16)

  • IAF Ticket required: Examination of how credentials could be used at registration time to achieve higher AL requirements. e.g. Register with an LOA2 credential at an IDP and also provide additional information to get to LOA3 at that IDP. Suggest that this is a recognized practice with some IDP but is not explicitly permitted in SP800-63-2. Analysis needed to determine if SAC need to be changed.

Wilsher and Furr will discuss Disposition of other comments in separate meetings.

Roadmap review

Defer to future meeting 

IAWG Roadmap - 2013

 

IAF Ticket Review

Defer to future meeting 

IAF Ticket #527461 (13 June 2013)
New ticket #527461 created.
-------------------

The process below does not clearly state if the ARB must vote to accept 
an application and list it as registered applicant or if the application 
can be accepted by the secretariat upon performance of review that the 
application is not a wast of time (so far out of scope or not aligned 
with mission).

I apologize for the line numbers but the below, I believe, references 
the section where the clarification is needed.

Could you please ensure this is entered as a change request for the AAS 
officially?

Thank you!

Quoting from AAS v3-0:
6.7 Specific Evaluation Steps 651
The Secretariat will validate the initial Application submission up to 
and including Part I clause 652 4.1, step 9. 653 Where the Application 
is for a Full Service Approval, the Secretariat will ensure that the 
overlay 654 of the collective criteria covered by the combination of 
the Applicant