Websec WG (apps area) (Tobias Gondrom) Web page: charter, current documents

Slides:



Advertisements
Similar presentations
Advanced IM Capabilities Hisham Khartabil. draft-rosenberg-simple- messaging-requirements- 01.txt Found on jdrosen.net or softarmor.com (in the morge)
Advertisements

IETF-79 Clouds Meeting Bhumip Khasnabish Pearl Room, Shangri-La Hotel, Beijing, China.
Internet Printing Protocol Extensions BOF IETF46 in Washington, DC November 9, 1999.
Routing Security Capabilities draft-zhao-opsec-routing-capabilities-02.txt OPSEC WG, IETF #66.
Agenda Tobias Gondrom July 2011 Websec WG IETF 81 1.
Hannes Tschofenig, Blaine Cook (IETF#79, Beijing).
(draft-gondrom-frame-options-01) David Ross, Tobias Gondrom July 2011 Frame-Options 1.
LTANS WG Meeting July 30, IETF 78 – Maastricht Tobias Gondrom Carl Wallace.
What are the key improvements in web content management?
Update: Security Work at W3C Thomas Roessler, W3C (channelled by:
(draft-ietf-websec-frame-options-00 and draft-ietf-websec-x-frame-options-00) David Ross, Tobias Gondrom July 2012 Frame-Options 1.
2005/08/31ACS WG - Data transport with SOAP message 1 Data transport with SOAP message There is a W3C note proposing the SOAP with attachment: –
Dynamic Symmetric Key Provisioning Protocol (DSKPP) Mingliang Pei Salah Machani IETF68 KeyProv WG Prague.
MASS / DKIM BOF IETF – Paris 4 Août 2005 dkim.org  mipassoc.org/mass IETF – Paris 4 Août 2005 dkim.org  mipassoc.org/mass MIPA.
Austin Askren- computer apps I You can make different things. Make your animals talk or can record your own voice You can make your own animals and.
PMIPv6 multicast handover optimization by the Subscription Information Acquisition through the LMA (SIAL) Luis M. Contreras Telefónica I+D Carlos J. Bernardos.
1 82 nd IETF meeting NETCONF over WebSocket ( ) Tomoyuki Iijima, (Hitachi) Hiroyasu Kimura,
Shibboleth: An Introduction
Real-time Flow Management 2 BOF: Remote Packet Capture Extensions Jürgen Quittek NEC Europe Ltd, Heidelberg, Germany Georg Carle GMD.
Hannes Tschofenig, Blaine Cook. 6/4/2016 IETF #77, SAAG 2 The Problem.
Solving a System of Equations by SUBSTITUTION. GOAL: I want to find what x equals, and what y equals. Using substitution, I can say that x = __ and y.
University of Central Florida The Postman Always Rings Twice: Attacking & Defending postMessage in HTML5 Websites Ankur Verma University of Central Florida,
WebAppSec WG Update TPAC 2015 Brad Hill. Scope Expansion had 3 Rec-track documents under active development Content Security Policy User Interface.
Security WG: Report of the Spring 2012 Meeting European Space Operations Centre Darmstadt, Germany 19 April, 2012 Howard Weiss NASA/JPL/SPARTA
WoT Outreach: joint slide set Outreach slide set aims to increase the awareness of W3C’s WoT work # Comments Arne: Abgrenzung zu anderen Initiativen.
Secure Multipart Internet Mail (S/MIME) Working Group Tuesday, July 24, 2007 Afternoon Session III
Long-term Archive and Notary Services (LTANS) Working Group Charter Review.
P roblem S olving I nnovator Solving Tomorrows Problems Today Saving with a Backup insures that the work that has been done in the PSI can be recovered.
Source Page US:official&tbm=isch&tbnid=Mli6kxZ3HfiCRM:&imgrefurl=
Public Key Infrastructure Using X.509 (PKIX) Working Group March 20,
HTTPbis BOF IETF 69, Chicago BOF Chairs: Mark Nottingham Alexey Melnikov Mailing List: Jabber:
Notary Services (Tobias Gondrom on behalf of ) Andreas U. Schmidt Fraunhofer Institute fo Secure Telecooperation (SIT) Darmstadt, Germany.
Long-term Archive and Notary Services (LTANS) Working Group.
1 The World Wide Web Architectural Overview Static Web Documents Dynamic Web Documents HTTP – The HyperText Transfer Protocol Performance Enhancements.
(draft-gondrom-frame-options-01) David Ross, Tobias Gondrom March 2011 Frame-Options 1.
Agenda Tobias Gondrom March 2011 Websec WG IETF 80 1.
Long-term Archive and Notary Services (LTANS) Working Group.
SPPP Transport Session Peering Provisioning Protocol draft-ietf-drinks-sppp-over-soap-04.
Security WG: Report of the Fall 2003 Meeting October 28, 2003 Howard Weiss, NASA/JPL/SPARTA.
ColdFusion: Code Security Best Practices Presented at CCFUG Mar 2016 By Denard Springle.
Путешествуй со мной и узнаешь, где я сегодня побывал.
The trusted network. Stamp of guarantee. Policies proposals (of European and National character): to the executive, legislative and judicial powers 3.
Web Authorization Protocol WG Hannes Tschofenig, Derek Atkins.
Jaime Pérez June EQUAL group (Terena) –No activity during the past months. Plasma WG (IETF) –Already produced a draft: draft-freeman-message-access-control-req-01.txt.
Cloud-Computing Cloud Web-Blog Software Application Download Software.
Agenda Alexey, Yoav, Tobias July 2012
OGSA-WG Basic Profile Session #1 Security
TICTOC BOF IETF-70 Dec 4, 2007 TICTOC-70 1.
August 1, 2005 Carl Wallace & Tobias Gondrom
Introducción a Word Web Apps
IETF80, Prague Diameter Maintenance and Extensions (DIME) WG
1. Open any Office 2016 app, such as Word, and create a new document.
Page 1. Page 2 Page 3 Page 4 Page 5 Page 6 Page 7.
Key Dates-Odd Days April 26th-Lottery April 28th-Draft & Work Day
draft-ipdvb-sec-01.txt ULE Security Requirements
Agenda Why context-aware apps and Web Services?
IS 4506 Server Configuration (HTTP Server)
IETF status of XML Security
Web Authentication and other security services
SharePoint Cheap Thrills Workshop
Los Angeles, California
Guidelines for the implementation of Regulation (EC) No 91/2003 of the European Parliament and of the Council on Rail transport statistics version 6.0.
OpenID Enhanced Authentication Profile (EAP) Working Group
Rifaat Shekh-Yusef IETF105, OAuth WG, Montreal, Canada 26 July 2019

COSE and JOSE Registrations for WebAuthn Algorithms
Access Node Control Protocol (ANCP)
OSPF WG Supporting Authentication Trailer for OSPFv3
CAS Products Update AACP Admissions Workshop 2019.
Quick Troubleshoots Outlook Problem
Presentation transcript:

Websec WG (apps area) (Tobias Gondrom) Web page: charter, current documents BOF in Maastricht, 1 st meeting in Beijing, 2 nd in Prague about Improving Web Security (not: http authentication and underlying transport) 1

Websec WG (apps area) draft-ietf-websec-mime-sniff-02 (Mime-type sniffing algorithm) draft-ietf-websec-origin-00 (determine origin by scheme:URI:port, merge with abarth-principles-of-origin-00) draft-ietf-websec-strict-transport-sec-01 (http header) draft-hodges-websec-framework-reqs-00 draft-mayer-do-not-track-00 (not a WG document, http header “DNT”) draft draft-gondrom-frame-options-01 (enhancing and making X-Frame-Options http header standard) 2

Websec WG - Outlook Active discussions of all drafts new draft-hodges-websec-framework-reqs-00 CSP Header: CSP is done in W3C Web App Sec, but CSP header should be done in websec Adopt Frame-options? (Do-Not-Track will be discusses at a W3C workshop end of April, open where draft/topic will be worked on) 3