Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

As part of the work for phase 1 of the SIRTFI implementation plan (https://wiki.refeds.org/display/GROUPS/SIRTFI), SIRTFI is proposing a security contact metadata extension, with the intent that it would be adopted by REFEDS member federations in order to allow handling of security incidents between federation partners.  InCommon has been using the a metadata schema extension outlined below for several years and it has proven useful for IdP and SP operators. A recent presentation by Jim Basney at the WISE workshop gives more detail. 

Extension


The current implementation within InCommon metadata is defined in this XSD, maintained by Ian Young:  https://github.com/ukf/ukf-meta/blob/master/xml/incommon-metadata.xsd. 
The representation in metadata is on a per-entity basis, as below:

...

themeConfluence
titleSecurity Contact Metadata Extension

...

proposed extension can be found in two parts.

...


Proposal

The intention for this proposal is in two parts:

  1. To establish a REFEDS namespace for the management of Metadata Extension Schema.
  2. To accept the specific proposal for the Security Contact extension.

As the use of the a REFEDS namespace is proposed to use the REFEDS namespace for security contacts and as such the agreement of the REFEDS community is required.  A previous consultation on the full details of the SIRTFI approach has been carried out so REFEDS Participants are invited to raise OBJECTIONS to the a namespace being used for security contact data (as shown above) in this manner created and implemented as described above only.

The consultation opens on Monday 4th April 2016 and closes on Sunday 17th April 2016 at 5pm CEST.

...