Websec WG IETF 84 Agenda Alexey, Yoav, Tobias July 2012 Note Well Any submission to the IETF intended by the Contributor for publication as all.

Download Report

Transcript Websec WG IETF 84 Agenda Alexey, Yoav, Tobias July 2012 Note Well Any submission to the IETF intended by the Contributor for publication as all.

Websec WG
IETF 84
Agenda
Alexey, Yoav, Tobias
July 2012
1
Note Well
Any submission to the IETF intended by the Contributor for publication as all or
part of an IETF Internet-Draft or RFC and any statement made within the context
of an IETF activity is considered an "IETF Contribution". Such statements include
oral statements in IETF sessions, as well as written and electronic communications
made at any time or place, which are addressed to:
the
IETF plenary session,
any IETF working group or portion thereof,
the IESG or any member thereof on behalf of the IESG,
the IAB or any member thereof on behalf of the IAB,
any IETF mailing list, including the IETF list itself,
any working group or design team list, or any other list
functioning under IETF auspices,
the RFC Editor or the Internet-Drafts function
All IETF Contributions are subject to the rules of RFC 3978 (updated by RFC 4748) and RFC 3979 (updated
by RFC 4879).
Statements made outside of an IETF session, mailing list or other function, that are clearly not intended to be
input to an IETF activity, group or function, are not IETF Contributions in the context of this notice.
Please consult RFC 3978 (and RFC 4748) for details.
A participant in any IETF activity is deemed to accept all IETF rules of process, as documented in Best
Current Practices RFCs and IESG Statements.
A participant in any IETF activity acknowledges that written, audio and video records of meetings may be
made and may be available to the public.
3
AGENDA
1.
2.
3.
4.
5.
6.
7.
Administrativia - 5 minutes

Note takers, Jabber Scribes, Blue sheets
HSTS (draft-ietf-websec-strict-transport-sec-11) - 10 mins
draft-ietf-websec-key-pinning-02
- 20 mins
Document Status / Issue discussion
draft-ietf-websec-x-frame-options-00
- 5 mins
draft-ietf-websec-frame-options-00
- 25 mins
Document Status / Issue discussion, discussion of future
policy conveyance for framing/embedding options for
HTTP resources
draft-hodges-websec-framework-reqs-02
- 15 mins
AOB
- 5 mins
4
1. Administrativia




Blue sheets
Note taker?
Jabber Scribe / Relay?
Webex
5
1b. Status of WG - Drafts





Origin: draft-ietf-websec-origin Released as RFC6454 –
well done!
HSTS passed WGLC, now in IETF LC
cert pinning update to draft-ietf-websec-key-pinning-02
draft-hodges-websec-framework-reqs-02
Mime-Sniffing draft-ietf-websec-mime-sniff-03




Expired in Nov 2011 (!)
draft-hodges-websec-framework-reqs-02
draft-ietf-websec-x-frame-options-00 (adopted from draftgondrom-x-frame-options)
draft-ietf-websec-frame-options-00 (adopted from draftgondrom-frame-options)
6
8. Other topics / open mike

Discuss, Comments, Questions, …
7
Thank you
8