Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

April 12 at Noon ET
+1-734-615-7474 PREFERRED
+1-866-411-0013
0195240#
Agenda: Updates to AIs and finish off first pass through of matrix.
Determine if there's sufficient attendance to hold April 19 call. 

Action Items

- Michael to update the table to reflect LDAP (SSL/TLS), Kerberos and protected channels guidance by citing it once in the matrix and using footnotes where later applicable. 
- ALL
- Jeff W will update 4.2.5.2.
- Brian will update 4.2.5.1.

Parking Lot

- Do we want to compare Kerberos5 with MS AD Kerb?
- Should review the matrix with an eye to our two use cases highlighted in the scoping doc: AD as a verifier and AD as a provisioned copy of the credentials but not acting as the IdP's verifier. - Brian will update 4.2.5.1.
- All - Do we want to compare Kerberos5 with MS AD Kerb?
- Jeff W will update 4.2.5.2

Cookbook Todo List

Add guidance about methods to prevent transient password exposure.

...

David's AM Abstract - InC AM process is meant to address alternative ways of meeting the specific criterion of the IAP, so --- one can't submit a general AM that covers multiple criteria. Need an AM proposal for the specific item, but we can introduce this notion of checking for non-compliant behavior and acting on it in a timely manner when it is found as a general strategy

Michael's updates re: LDAP (SSL/TLS), Kerberos and protected channels - This information will be duplicated across the table. How should we document it? Add it a footnote to the cell in which it first cell appears and then refer to it with the footnotefootnote in subsequent cells. M to update the table to reflect this approach for these topics.  

...