Wiki
Clone wikifapi / FAPI_Meeting_Notes_2024-02-08_Pacific
FAPI WG Agenda & Meeting Notes (2024-02-08)
Date & Time: 2024-02-09 00:00 UTC Location: https://zoom.us/j/97456084642?pwd=bTRFVzk4ZmlRK1M3bEprRlN5c3JFZz09
Agenda
The meeting was called to order at 00:00 UTC.
1. Roll Call (Anoop)
- Attendees: Mark, Dima, Nat, Ralph, Anoop
- Regrets:
2. Events Update
2.1. OpenID Foundation Workshop (Mike)
April 15 @ Google. Accepted for a session for FAPI2
2.2. Authenticate 2024
Call for speakers is open from now until March 4, 2024
2.3. IETF 119
https://www.ietf.org/how/meetings/119/ March 16-22, 2024. Brisbane, Australia - Brisbane Convention Centre
3. Liaison/Ext Org
3.1. Security Analysis (Marcus)
Next phase of security analysis
Shared Signals and Grant Management
- Mark was brought up question to the working group. They're looking at the next stage of security analysis to be done. Question is around "Grant management specification, in terms of who is Point of contact - Dima volunteered for this. Other question was brought up was if we are expecting any changes to specs.
- It was agreed on the call that at the moments there are not many implementers and we exhausted the spec with no open issues at this time.
- Risk if we pick work now and if any potential changes comes up as more implementations picks up. Not a huge risk. it will be bring to Gail attention.
4. Issues
- Issue 458 : https://bitbucket.org/openid/fapi/wiki/FAPI_Meeting_Notes_2024-02-07_Atlantic#rst-header-pr-458-attempt-to-clarify-and-improve-mtls-everywhere-interoperability
- Two separate discussion and good to rename it.
- some ecosystems. Actually, most of the existing of open banking style of ecosystems. chose to use MTLS.
Together with private key jobs most of some, anyway. so they they the assumption that a lot of spec writers made that it will be one or another, but the reality both are used. and there are some implications to how we write. The specs to take care of that. and the ecosystems need some guidance going forward. So that's a broader issue. * * * Joseph raised from components testing use of MTLS endpoint aliases. if we need to do anything in conformance suite. AUCDR is using both. There is confusion in group on this and might need clarity. Dima will type the response for Brazil ask as well and check with Joseph on this.
Dima will update language and close this ticket
6. Next Call
Next call will be an Pacific Call. Next Pacific call will be in two weeks (2-22-2024 @ 5pm PST) UTC - 2-23-2024 1:00 AM.
Updated