COSE and JOSE Registrations for WebAuthn Algorithms

Slides:



Advertisements
Similar presentations
Public Key Infrastructure and Applications
Advertisements

1 Content-Aware Device Benchmarking Methodology/Terminology (draft-hamilton-bmwg-ca-bench-meth-06) (draft-hamilton-bmwg-ca-bench-term-00) BMWG Meeting.
FIPS 201 Framework: Special Pubs ,76,78 Jim Dray HSPD-12 Workshop May 4/5, 2005.
Resource Certificate Profile Geoff Huston, George Michaelson, Rob Loomans APNIC IETF 67.
OSPF WG – IETF 68 - Prague OSPF WG Document Candidates Acee Lindem/Redback Networks.
ABFAB Architecture Jim Schaad August Cellars. Previous Updates -01 – Resolved a number of review comments in the tracker -02 – Expanded Section 2 – Architecture.
Proposed Documents for JOSE: JSON Web Signature (JWS) JSON Web Encryption (JWE) JSON Web Key (JWK) Mike Jones Standards Architect – Microsoft IETF 82 –
Get Started in 4 Easy Steps!
CMS Interoperability Matrix Jim Schaad Soaring Hawk Security.
Update: Security Work at W3C Thomas Roessler, W3C (channelled by:
XML Signature Prabath Siriwardena Director, Security Architecture.
Dynamic Symmetric Key Provisioning Protocol (DSKPP) Mingliang Pei Salah Machani IETF68 KeyProv WG Prague.
COSE Overview Jim Schaad August Cellars. Willing Changes No crypto compatibility Use of CBOR idioms Partial change of naming schemes.
Websec WG (apps area) (Tobias Gondrom) Web page: charter, current documents
Security Policy Update LCG GDB Prague, 4 Apr 2007 David Kelsey CCLRC/RAL
1 Diameter SIP application draft-ietf-aaa-diameter-sip-app-03.txt 60 th IETF meeting August 3 rd, 2004 Status.
Certificate Requests to HIP Jani Pellikka 80 th IETF Mar 27 th – Apr 1 st 2011 Prague, Czech Republic.
Security Using PGP - Prajakta Bahekar. Importance of Security is one of the most widely used network service on Computer Currently .
Project Status Report Arts Camp Producers: Alex & Shaharouk.
Getting started with VendorVision Getting started with VendorVision Congratulations on using VendorVision! To get started, go to the VendorVision.
ANSI X9.44 and IETF TLS Russ Housley and Burt Kaliski RSA Laboratories November 2002.
IETF DMM WG Mobility Exposure and Selection WT Status and Next Steps Danny Moses/Alper Yegin, on behalf of the WT IETF 94.
Agenda Marc Blanchet and Chris Weber July 2011 IRI WG IETF 81 1.
Public Key Infrastructure Using X.509 (PKIX) Working Group March 20,
Subject Identification Method August, 2004 Tim Polk, NIST.
Agenda Tobias Gondrom March 2011 Websec WG IETF 80 1.
Secure Instant Messenger in Android Name: Shamik Roy Chowdhury.
Presentation Title.
Presentation Title.
Identity Standards Architect, Microsoft
RSA Laboratories’ PKCS Series - a Tutorial
Authenticated Identity
Transmission of IPv6 Packets over IEEE OCB Networks
GRE-in-UDP Encapsulation
TICTOC BOF IETF-70 Dec 4, 2007 TICTOC-70 1.
IS-IS WG IS-IS Cryptographic Authentication Requirements
Improving Security of Real-time Communications
OAuth Assertion Documents
Board of Trustees Report Tim Denton, Chair
S/MIME Working Group Agenda and Status
TURN-Lite: A Lightweight TURN Architecture and Specification (draft-wang-tram-turnlite-03) Aijun Wang (China Telecom) Bing Liu (Speaker) (Huawei) IETF.
Donald E. Eastlake 3rd TSIG SHA etc. Donald E. Eastlake 3rd March.
Agenda OAuth WG IETF 87 July, 2013.
July 14th, to 1130 hours Vienna, Austria
OpenID Connect Working Group
Poll-Based SET Token Delivery Using HTTP
A few recent days in the news…
Resource Certificate Profile
Files [Computing] Computing.
Spec Text Motion Date: Authors: July 2018 Month Year
Group 1 Group 1 Group 1 Group 1 word word word word word word word word word word word word word word word word word word word word word word word.
How do I register and log in to the WBT?
STIR WG IETF-102 PASSPorT Extension for Resource-Priority Authorization (draft-ietf-stir-rph-06) July 18, 2018 Ray P. Singh, Martin Dolly, Subir Das, and.
Device Registration and Multi-Factor Authentication
Jim Schaad August Cellars
Presentation Title Your information.
JSON Object Signing and Encryption (JOSE) Working Group
OpenID Enhanced Authentication Profile (EAP) Working Group
OpenID Enhanced Authentication Profile (EAP) Working Group
Rifaat Shekh-Yusef IETF105, OAuth WG, Montreal, Canada 26 July 2019
Extended BFD draft-mirmin-bfd-extended
Audio/Video Transport Payloads Working Group
Diameter ABFAB Application
Authentication and Authorization for Constrained Environments (ACE)
EVPN control plane for Geneve draft-boutros-bess-evpn-geneve-03
draft-ietf-pim-drlb-08
Proposal for Nendica Study Item: New Managed LAN
OpenID Enhanced Authentication Profile (EAP) Working Group
RFC 3272bis Design Team Status and Apologies
E. Bellagamba, Ericsson P. Sköldström, Acreo D. Ward, Juniper
Presentation transcript:

COSE and JOSE Registrations for WebAuthn Algorithms * COSE and JOSE Registrations for WebAuthn Algorithms draft-ietf-cose-webauthn-algorithms Mike Jones IETF 105, Montreal July 26, 2019

Spec Overview Registers algorithm identifiers for additional algorithms used by W3C Web Authentication (WebAuthn) standard 4 RSA signing algorithms – already provisionally registered Signing with secp256k1 curve – not yet registered Draft fulfills this charter deliverable “4. Define the algorithms needed for W3C Web Authentication for COSE using draft-jones-webauthn-cose-algorithms and draft-jones-webauthn-secp256k1 as a starting point (Informational).” WebAuthn standard https://www.w3.org/TR/2019/REC-webauthn-1-20190304/

What’s Happened Since Prague? Working group adoption Title change to COSE and JOSE Registrations for WebAuthn Algorithms Addressed review comments received From John Mattsson, Matt Palmer, Jim Schaad Normative changes Changed the JOSE curve identifier from “P-256K” to “secp256k1” Specified that secp256k1 signing is done using the SHA-256 hash function

Next Steps Time for Working Group Last Call?