Markdown Version | Session Recording

Session Date/Time: 11 Nov 2021 12:00

gnap

Summary

The gnap session focused on the latest updates to the GNAP Core Protocol (draft-ietf-gnap-core-protocol-08), including significant additions to trust, security, and privacy considerations. Discussions also covered a formal security analysis that identified potential attacks and proposed mitigations. The editors outlined their roadmap for addressing open issues, including key rotation, mandatory-to-implement features, extensions, and the future of JOSE key-proofing mechanisms. The session concluded with a presentation by Denis Pinkas, who raised several concerns with the current draft, particularly regarding Attribute-Based Access Control, trust relationships, and client instance key protection, proposing a modified model.

Key Discussion Points

Decisions and Action Items

Next Steps