Re: [OAUTH-WG] Security area review

Eran Hammer-Lahav <eran@hueniverse.com> Mon, 08 August 2011 06:00 UTC

Return-Path: <eran@hueniverse.com>
X-Original-To: oauth@ietfa.amsl.com
Delivered-To: oauth@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id BD78221F89A7 for <oauth@ietfa.amsl.com>; Sun, 7 Aug 2011 23:00:20 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.556
X-Spam-Level:
X-Spam-Status: No, score=-2.556 tagged_above=-999 required=5 tests=[AWL=0.043, BAYES_00=-2.599]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id HZBUzHvgrW5K for <oauth@ietfa.amsl.com>; Sun, 7 Aug 2011 23:00:20 -0700 (PDT)
Received: from p3plex1out02.prod.phx3.secureserver.net (p3plex1out02.prod.phx3.secureserver.net [72.167.180.18]) by ietfa.amsl.com (Postfix) with SMTP id 4AE8321F883A for <oauth@ietf.org>; Sun, 7 Aug 2011 23:00:20 -0700 (PDT)
Received: (qmail 21867 invoked from network); 8 Aug 2011 06:00:45 -0000
Received: from unknown (HELO smtp.ex1.secureserver.net) (72.167.180.20) by p3plex1out02.prod.phx3.secureserver.net with SMTP; 8 Aug 2011 06:00:45 -0000
Received: from P3PW5EX1MB01.EX1.SECURESERVER.NET ([10.6.135.19]) by P3PW5EX1HT002.EX1.SECURESERVER.NET ([72.167.180.20]) with mapi; Sun, 7 Aug 2011 23:00:45 -0700
From: Eran Hammer-Lahav <eran@hueniverse.com>
To: Barry Leiba <barryleiba@computer.org>
Date: Sun, 07 Aug 2011 22:59:41 -0700
Thread-Topic: [OAUTH-WG] Security area review
Thread-Index: AcxVe0Y3uRtlVaojRieexc0s+ZDEcAAFF24A
Message-ID: <90C41DD21FB7C64BB94121FBBC2E72345024864B07@P3PW5EX1MB01.EX1.SECURESERVER.NET>
References: <90C41DD21FB7C64BB94121FBBC2E72345024864A96@P3PW5EX1MB01.EX1.SECURESERVER.NET> <CAC4RtVBV-Pcv9NL_aHPFvU5s9f=W0-Hzuh3tAXD3TGf+j6nbXw@mail.gmail.com>
In-Reply-To: <CAC4RtVBV-Pcv9NL_aHPFvU5s9f=W0-Hzuh3tAXD3TGf+j6nbXw@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
acceptlanguage: en-US
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
Cc: OAuth WG <oauth@ietf.org>
Subject: Re: [OAUTH-WG] Security area review
X-BeenThere: oauth@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: OAUTH WG <oauth.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/oauth>, <mailto:oauth-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/oauth>
List-Post: <mailto:oauth@ietf.org>
List-Help: <mailto:oauth-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/oauth>, <mailto:oauth-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 08 Aug 2011 06:00:20 -0000

Thanks.

But this still puzzles me. After two years in the application area where IMO this working clearly belongs, we were moved to the security area under the premise of increased review and engagement from the security area.

EHL

> -----Original Message-----
> From: barryleiba.mailing.lists@gmail.com
> [mailto:barryleiba.mailing.lists@gmail.com] On Behalf Of Barry Leiba
> Sent: Sunday, August 07, 2011 8:29 PM
> To: Eran Hammer-Lahav
> Cc: OAuth WG
> Subject: Re: [OAUTH-WG] Security area review
> 
> > Did the chairs issue a last call request to anyone in the security
> > area? I thought the whole point of moving this working group from apps
> > to security was to increase the review and participation of that area.
> > So far I have seen absolutely nothing to indicate any such
> > contribution. I would like to know what actual actions are being taken to
> turn this promise into reality.
> 
> There'll be a security directorate review when we send the doc to the IESG.  I
> can certainly ask Sam to schedule a review now, instead of waiting, and I'll do
> that.
> 
> Barry, as chair