OASIS eXtensible Access Control Markup Language (XACML) TC

Proposed Agenda for 4 November 2010 TC Meeting

  • 1.  Proposed Agenda for 4 November 2010 TC Meeting

    Posted 11-04-2010 03:29
    Time: 13:00 EDT  --> TIME CHANGE NOTE:
      US will not have changed to Daylight Savings Time by tomorrow's meeting,
      whereas the EU will have adjusted then. This will affect the time of 
      this meeting only for non-US members.
    
    Tel: 513-241-0892 Access Code: 65998
    
    Proposed Agenda for 4 November 2010 XACML TC Meeting:
    
    13:00 - 13:05 Roll Call & Approve Minutes:
    
    Approve Minutes:
     21 October 2010 TC Meeting 
      http://lists.oasis-open.org/archives/xacml/201010/msg00011.html
    
    Administrivia
     New Oasis TC Proceedings and Definitions (15 Oct 2010)
     (same as last meeting: left in place for visibility, reference)
      http://www.oasis-open.org/committees/process-2010-07-28.php
    
     XACML v3 Status
      1 attestation received to date
    
    Issues (carried over from last meeting)
     HL7 examples
      There has been a request for clarification with HL7 documents and
      examples:
      http://lists.oasis-open.org/archives/xacml/201010/msg00004.html
    
     PIP directive ("Telling the PIP where to pull from")
      David Chadwick has raised the concept of additional processing
      associated with PDP <-> PIP interaction:
       http://lists.oasis-open.org/archives/xacml/201010/msg00005.html
      additional discussion since last mtg:
       paul:  http://lists.oasis-open.org/archives/xacml/201010/msg00006.html
       david: http://lists.oasis-open.org/archives/xacml/201010/msg00007.html
       david: http://lists.oasis-open.org/archives/xacml/201010/msg00009.html
       rich:  http://lists.oasis-open.org/archives/xacml/201010/msg00013.html
       david: http://lists.oasis-open.org/archives/xacml/201010/msg00015.html
    
    Guest Presentation (continued)
     This presentation will have discussion continued from last meeting.
    
     The pres slides have been uploaded to XACML TC Repository here:
      http://www.oasis-open.org/committees/document.php?document_id=39960
    
     Primelife Project (same background para as last mtg)
      Greg Neven of IBM Research, Zurich will be presenting on overview of
      the Primelife Project with proposals of how XACML and SAML may be
      able to address various requirements associated with this work. A
      presentation from the W3C-sponsored Workshop on Access Control that
      Greg gave may be found here for background reference, a paper entitled:
    
      "Credential-Based Access Control Extensions to XACML"
       http://www.w3.org/2009/policy-ws/papers/Neven.pdf
    
     Discussion points from last meeting copied from minutes to here for
      reference:
    
     *********
     "Discussion: Paul noted that there have been some ontological
      discussions on Attributes that may be applicable to this solution.
      Mike Davis voiced interest in exploring this direction as well. 
    
      H17 noted that they developing simple hierarchical ontologies using
      OWL to the healthcare space.
    
      Tony raised a question on how anonymized Predicates may be assigned
      to a Subject without compromising anonymity.
    
      David Chadwick offered that a solution he is working with relies upon
      a localized PIP to address credential validation. Greg noted that
      this is for Attribute values only and not Predicates.
    
      Paul suggested that the proposed insertion of Conditions into a SAML
      assertion is a concern because they are not the these are not the same
      logical data types." 
     *********
    
      follow-up emails:
      "Attribute Assertions in XACML request"
       paul:  http://lists.oasis-open.org/archives/xacml/201010/msg00012.html
       greg:  http://lists.oasis-open.org/archives/xacml/201011/msg00001.html