Skip to main content

Notice: this Wiki will be going read only early in 2024 and edits will no longer be possible. Please see: https://gitlab.eclipse.org/eclipsefdn/helpdesk/-/wikis/Wiki-shutdown-plan for the plan.

Jump to: navigation, search

Difference between revisions of "10.5.2006 Online Meeting"

(11:10 IdAS (Jim Sermersheim) 40 min)
(12:10 Token Issuer/STS (Mike McIntosh) 40 min)
Line 50: Line 50:
  
 
* http://www.eclipse.org/higgins/org.eclipse.higgins.docs/sts JavaDoc*
 
* http://www.eclipse.org/higgins/org.eclipse.higgins.docs/sts JavaDoc*
 +
 +
How Does an STS Extension get Attribute Values to Place into Claims?
 +
STS @ Subject
 +
Push With RST
 +
Token Exchange - STS Framework creates a DigitalSubject/Context?
 +
Pull From Subject IdAS
 +
Based on DigitalSubject/Context?
 +
STS @ IdP
 +
Push with RST
 +
Token Exchange - STS Framework creates a DigitalSubject/Context?
 +
Pull From Subject IdAS
 +
Based on DigitalSubject/Context?
 +
Pull From IdP IdAS
 +
Based on DigitalSubject/Context?
 +
STS @ RP
 +
Same as STS @ IdP?
  
 
===Break (1-1:30pm) 30 min ===
 
===Break (1-1:30pm) 30 min ===

Revision as of 11:55, 5 October 2006

Time: 10:30 - 6:30 ET

Rough notes on an agenda; not necessarily in order:

10:30-10:40 Introductions & Administrivia

  • Get synced up on whatever online conferencing tech we want to use (e.g. to project PPTs, etc).

10:40 HBX & ISS (Jan Camenish) 30 min

  • policy language (discussion & collection of requirements). need language to specify token-request,i.e., to specify what information the user needs to supply to get access to some resource. Language format, homegrown, use RDF so that it maps into data model. Similar language to request tokens from issuer. Elements that need to be expressed:
    • type of i-card
    • attribute
    • issuer
    • recipient
    • in encrypted form (under what key)
    • in committed form
    • arbitrary statement over attributes (e.g., age < 18)
    • logical formulas over terms (AND, OR)
    • backing of statement (self-signed, passport checked, .....)
    • data handling policy (privacy policy stating things like purpose, retention time etc)
  • HBX for graphical i-card selection (c.f. paper [1],demo [2])
    • where do pictures do come from (include in certs?)
    • issue with many HBXes..

11:10 IdAS (Jim Sermersheim) 40 min

  • SPARQL (Examine and discuss sample queries).
    • Does it meet out needs? Is it user-friendly?
    • Alternate filter interface
  • Other IdAS TODOs
    • Idas_Architectural_Todo
      • Provider/Context configuration and policy.
        • Common examples of config/policy.
        • Do we want to promote a commol look/feel?
        • Need to pass policy to IContext. We're currently passing as metadata -- does this feel right?
      • Address Metadata on Context issue
      • Nested Providers
        • What do we need (APIs and/or config) to achieve this?
    • Idas_Implementation_Todo
    • Idas_Documentation_Todo
  • Unit tests (proposed directory and test structure).

11:50 LDAP schema (Tom Doman) 20 min

  • Higgins ontology review.
  • Review of Novell's LDAP schema output.
  • Outstanding LDAP issues (Summary).

12:10 Token Issuer/STS (Mike McIntosh) 40 min

How Does an STS Extension get Attribute Values to Place into Claims? STS @ Subject Push With RST Token Exchange - STS Framework creates a DigitalSubject/Context? Pull From Subject IdAS Based on DigitalSubject/Context? STS @ IdP Push with RST Token Exchange - STS Framework creates a DigitalSubject/Context? Pull From Subject IdAS Based on DigitalSubject/Context? Pull From IdP IdAS Based on DigitalSubject/Context? STS @ RP Same as STS @ IdP?

Break (1-1:30pm) 30 min

1:30 IdAS Registry API (Greg Byrd) 15 min

1:45 Project Overview (Paul Trevithick) 30 min

  • Review of Higgins 1.0 Component Inventory (where we need to be)
    • (Regarding automated build) People need .jar and javadoc versioned and packaged. (Jim added this)
  • Review Milestone 0.6 (where we'll be at the end of November)
  • How can we fill in some of the gaps?

Higgins & Microsoft/OSP (Mary Ruddy) 20 min

  • Current status, open issues, next steps

Higgins & OSIS (Dale Olds) 20 min

Higgins & Identity Schemas (Paul Trevithick) 15 min

  • Review http://identityschemas.org
  • Mention who's involved
  • First telephone meeting Friday 2-3pm ET (email joaquin@acm.org for details)
    • 1-620-782-8800 (Kansas)
    • 7243627#

HBX Service Discovery Proposal (Andy Dale) 20 min

Back to the top