From: Mike Jones Sent: Wednesday, May 07, 2014 5:24 PM To: Bill Mills; Dylan Casey; Don Thibeau; Justin P. Richer; John Fontana; Erik Wahlström; George Fletcher; John Bradley; Sumana Annam; Shraddha Ladda; Bill Welch; Tarun Rochiramani; Emily Xu; Mark Dobrinic; Sascha Preibisch; Matthew Berry; Bryant Cutler; Shon Shah; Per Hägerö; Roland Hedberg; Steve Olshansky; Brian Campbell; Jin Wen; Alex Chong; Abhijit Solanki; Vivek Biswas; Dipankar Sarkar; Michael Schwartz; Ashish Jain; Dale Olds; Hannes Tschofenig; Moorthi PV; Naveen Agarwal; Breno de Medeiros; Michael Engan; Morteza Ansari; Jack Greenberg; Adam Dawes; Pamela Dingle; Nathan Dors; Paul Madsen; Bjorn Hjelm Subject: May 5, 2014 OpenID Foundation Workshop Notes
Attendees: Bill Bills, Yahoo! Dylan Casey, Yahoo! Don Thibeau, OpenID Foundation Mike Jones, Microsoft Justin Richer, MITRE John Fontana, Ping Identity Erik Wahlström, Nexus George Fletcher, AOL John Bradley, Ping Identity Sumana Annam, Centrify Shraddha Ladda, VMWare Bill Welch, VMWare Tarun Rochiramani, VMWare Emily Xu, VMWare Mark Dobrinic, Cozmanova Sascha Preibisch, CA Technologies Matthew Berry, Amazon Web Services Bryant Cutler, Amazon Web Services Shon Shah, Amazon Web Services Per Hägerö, Nexus Roland Hedberg, Umeå University Steve Olshansky, Internet Society Brian Campbell, Ping Identity Jin Wen, McKesson Alex Chong, Verizon Abhijit Solanki, Symantec Vivek Biswas, Cisco Dipankar Sarkar, Cisco Mike Schwartz, Gluu Ashish Jain, VMWare Dale Olds, VMWare Hannes Tschofenig, ARM Moorthi PV, Indo-Mars Naveen Agarwal, Google Breno de Medeiros, Google Michael Engan, T-Mobile Morteza Ansari, Cisco Jack Greenberg, Google Adam Dawes, Google Pamela Dingle, Ping Identity Nathan Dawes, University of Washington Paul Madsen, Ping Identity Bjorn Hjelm, Verizon The following presentations were given during the May 5, 2014 OpenID Workshop: * OpenID Connect Overview<http://wiki.openid.net/w/file/80030063/OpenID_Connect_Overview_May_5_2014.pdf> - Michael B. Jones * OpenID Connect at Deutsche Telekom<http://wiki.openid.net/w/file/80030087/oidc_dt_iiw_20140504.pdf> - Torsten Lodderstedt * Account Chooser Overview<http://wiki.openid.net/w/file/80030114/OIDF%20AccountChooser%20Overview.pdf> - Adam Dawes * Native Applications Working Group<http://wiki.openid.net/w/file/80030147/OIDF_NAPPS_Overview_May052014.pdf> - Paul Madsen * Improving the quality of standards by doing continuous interoperability testing<http://wiki.openid.net/w/file/80030162/OIDCtest-140505.pdf> - Roland Hedberg The reports of a purported "Covert Redirect" vulnerability were also discussed. Participants were directed to the responses by Symantec<http://www.symantec.com/connect/blogs/covert-redirect-flaw-oauth-not-next-heartbleed> and John Fontana<http://www.zdnet.com/covert-redirect-mostly-hype-and-certainly-no-heartbleed-7000029039/>. ________________________________ The notes are also posted at http://wiki.openid.net/w/page/80030213/May%205%2C%202014%20OpenID%20Workshop.
_______________________________________________ board mailing list [email protected] http://lists.openid.net/mailman/listinfo/openid-board
