...
April 12 at Noon ET
+1-734-615-7474 PREFERRED
+1-866-411-0013
0195240#
Agenda: Updates to AIs and finish off first pass through of matrix.
Determine if there's sufficient attendance to hold April 19 call.
Action Items
- Michael to update the table to reflect LDAP (SSL/TLS), Kerberos and protected channels guidance by citing it once in the matrix and using footnotes where later applicable.
- ALL
- Jeff W will update 4.2.5.2.
- Brian will update 4.2.5.1.
Parking Lot
- Do we want to compare Kerberos5 with MS AD Kerb?
- Should review the matrix with an eye to our two use cases highlighted in the scoping doc: AD as a verifier and AD as a provisioned copy of the credentials but not acting as the IdP's verifier. - Brian will update 4.2.5.1.
- All - Do we want to compare Kerberos5 with MS AD Kerb?
- Jeff W will update 4.2.5.2
Cookbook Todo List
Add guidance about methods to prevent transient password exposure.
...
David's AM Abstract - InC AM process is meant to address alternative ways of meeting the specific criterion of the IAP, so --- one can't submit a general AM that covers multiple criteria. Need an AM proposal for the specific item, but we can introduce this notion of checking for non-compliant behavior and acting on it in a timely manner when it is found as a general strategy.
Michael's updates re: LDAP (SSL/TLS), Kerberos and protected channels - This information will be duplicated across the table. How should we document it? Add it a footnote to the cell in which it first cell appears and then refer to it with the footnotefootnote in subsequent cells. M to update the table to reflect this approach for these topics.
...