Simple Authentication and Security Layer (SASL) WG IETF69 - Chicago, IL, USA Wednesday, July 25, 2007, at 0900-1130 Chairs: Tom Yu Kurt Zeilenga RESOURCES ========= Jabber logs: http://www.ietf.org/meetings/ietf-logs/sasl/2007-07-25.html Audio logs: http://limestone.uoregon.edu/ftp/pub/videolab/media/ietf69/ietf69-ch3-wed-am.mp3 ftp://limestone.uoregon.edu/pub/videolab/media/ietf69/ietf69-ch3-wed-am.mp3 Agenda slides: http://www3.ietf.org/proceedings/07jul/slides/sasl-0.pdf SASL WG Wednesday, July 25, 2007, at 09:00-11:30 Agenda bash/scribe/etc. ======================= Thanks to Tony Hansen for scribing. Document Status =============== draft-ietf-sasl-crammd5-08 - needs writeup draft-ietf-sasl-gs2-08 - needs publication request draft-ietf-sasl-rfc2831bis-12 - needs document to designate as Historic draft-cridland-sasl-hexa-00 - to merge with SCRAM draft-newman-auth-scram-04 - to merge with HEXA draft-zeilenga-sasl-yap-00 - probably to proceed as individual submission Charter Discussion: There is general agreement for charter as posted to list. Add item for document moving DIGEST-MD5 to Historic status. We will poll WG list on updated charter proposal. Persue YAP as experimental or not? As an individual, Sam Hartman would like SCRAM/HEXA or whatever DIGEST-MD5 successor to be implementable as a GSS-API mechanism. He would like to see the WG commit to this. Chris Newman comments that SASL implementors want to require that it be implementable without a GSS stack present, and GSS people want to implement without a SASL stack present. The proposal needs both GSS and SASL people to look at it to ensure it's sane from each perspective. Chris Newman and Nico Williams will help review this aspect. Regarding moving RFC 4422 to Draft, there is some discussion about looking at Sam and John Klensin's BCP concerning normative downrefs. There's a mistaken normative reference to ACAP which Kurt can fix in a minor document revision. Milestones: Document for moving DIGEST-MD5 to Historic - Alexey Aug 2007: -00 version Sep 2007: WGLC Nov 2007: to IESG Implementation Report Oct 2007: initial implementation report questionnaire Jan 2008: send out questionnaire Feb 2008: compile results Mar 2008: discuss results Apr 2008: prepare final report & submit [also submit 4422bis] rfc4422bis Oct 2007: -00 rev rfc4422 ACAP ref etc. correction - Kurt Feb 2008: WGLC 4422bis Apr 2008: submit 4422bis DIGEST-MD5 successor Oct 2007: -00 for combined DIGEST-MD5 successor Feb 2008: WGLC DIGEST-MD5 successor Apr 2008: combined DIGEST-MD5 successor to IESG