[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [KEYPROV] Keyprov Conference Call Meeting Minutes, 28th April 2009
- To: "Pei, Mingliang" <mpei at verisign.com>, "Tschofenig, Hannes (NSN - FI/Espoo)" <hannes.tschofenig at nsn.com>, "KEYPROV" <keyprov at ietf.org>, <SMachani at DIVERSINET.COM>
- Subject: Re: [KEYPROV] Keyprov Conference Call Meeting Minutes, 28th April 2009
- From: "Philip Hoyer" <phoyer at actividentity.com>
- Date: Wed, 13 May 2009 15:55:04 +0200
- Delivered-to: keyprov at core3.amsl.com
- In-reply-to: <3E5A2F1AD44F5E49A74F79AB47C0C0C9013442E5 at mou1wnexmb10.vcorp.ad.vrsn.com>
- List-archive: <http://www.ietf.org/mail-archive/web/keyprov>
- List-help: <mailto:keyprov-request@ietf.org?subject=help>
- List-id: "Provisioning of Symmetric Keys \(keyprov\)" <keyprov.ietf.org>
- List-post: <mailto:keyprov@ietf.org>
- List-subscribe: <https://www.ietf.org/mailman/listinfo/keyprov>, <mailto:keyprov-request@ietf.org?subject=subscribe>
- List-unsubscribe: <https://www.ietf.org/mailman/listinfo/keyprov>, <mailto:keyprov-request@ietf.org?subject=unsubscribe>
- References: <3D3C75174CB95F42AD6BCC56E5555B45014D5472 at FIESEXC015.nsn-intra.net> <3E5A2F1AD44F5E49A74F79AB47C0C0C9013442E5 at mou1wnexmb10.vcorp.ad.vrsn.com>
- Thread-index: AcnIRRNxU5sWbgfnSi6ENeBHhwK3wwGcfSkAAUar9JA=
- Thread-topic: [KEYPROV] Keyprov Conference Call Meeting Minutes, 28th April 2009
Ladies and Gentlemen,
Not to put a spanner in the works but just having looked at PKCS#11 it
uses the term Mechanism (Algorithm) Parameters and not attributes.
I personally prefer AlgorithmParameters instead of AlgorithmAttributes
Not adamant just wanted to have an opinion from you.
Also coming back to the old chestnut of Ids
We currently have 3 identifiers in the schema:
KeyContainer.Id of type xsID
Key.Id of type xs:string
CryptomoduleInf.Id of type xs:string.
I remember earlier discussion of wanting to distinguish between Ids as
refeences to XML documents (KkeyContainer.Id) and Ids that have meaning
outside of the document (Key.Id and CryptoModuleInfo.Id).
Should we keep them all as 'Id'? or should we change KeyContainer.Id to
KeyContaner.ID?
Xmlenc uses 'Id' even if of type xs:ID...
Philip
-----Original Message-----
From: keyprov-bounces at ietf.org [mailto:keyprov-bounces at ietf.org] On
Behalf Of Pei, Mingliang
Sent: Thursday, May 07, 2009 3:00 AM
To: Tschofenig, Hannes (NSN - FI/Espoo); KEYPROV
Subject: Re: [KEYPROV] Keyprov Conference Call Meeting Minutes,28th
April 2009
Updated PSKC schema file attached:
1. DerivedKeyType is commented out, and we are going to point PBE key
type to W3C version in the doc.
2. AlgorithmParameters is renamed to AlgorithmAttributes per early
discussion
3. xml:id is pulled back for IDs of the type "xs:ID". It was suggested
earlier and added in one version but didn't get in the file.
The version is based on the last version pskc_04052009.xsd. Please
review, and let me know if there are questions. Thanks,
- Ming
> -----Original Message-----
> From: keyprov-bounces at ietf.org
> [mailto:keyprov-bounces at ietf.org] On Behalf Of Tschofenig,
> Hannes (NSN - FI/Espoo)
> Sent: Tuesday, April 28, 2009 11:36 PM
> To: KEYPROV
> Subject: [KEYPROV] Keyprov Conference Call Meeting Minutes,
> 28th April 2009
>
> Participants:
>
> - Ming Pei
> - Andrea Doherty
> - Salah Machani
> - Hannes Tschofenig
> - Phillip Hallam-Baker
>
> Discussion
>
> Terminology changes to the PSKC being incorporated by Hannes.
> Pasi provided further feedback for the terminology changes
> distributed by Philip.
>
> Tentatively we will go for the following wording proposal:
>
> s/KeyAlgorithm/KeyType
> s/KeyType/KeyObject
>
> PSKC open issues so far:
>
> * Figure 1 needs to be updated based on the drawing from
> the IETF meeting.
> * Some examples require update, namely those with
> cryptographically computed values.
> * Review comments sent to the mailing list need to get reflected.
> * Ming to provide info about MAC key definition and schema in PSKC
> * Ming to provide info about encryption key in PSKC
> * Ming believe that cryptographic module needs an id.
> Andrea believes that we don't need one as agreed during the meeting.
> Ming wants to provide some text.
> * Ming to provide text about derived key using the
> recently published
> document by Magnus.
>
> DSKPP
>
> Ming summarized his recent comment about DSKPP sent to the
> mailing list. Andrea was not too happy about re-opening old
> issues. Phillip said that we should introduce a feature
> freeze in 2 weeks. Andrea suggested that new features should
> be deferred to a new DSKPP version or to an extension.
>
> Andrea will respond to Ming on the list to postpone the
> stateless / stateful issue.
> Andrea will look at the other raised issues and will
> provide a response.
>
> _______________________________________________
> KEYPROV mailing list
> KEYPROV at ietf.org
> https://www.ietf.org/mailman/listinfo/keyprov
>