SALSA NetAuth Conference Call January 20, 2005

*Action Items*
New
[AI] {Kevin} will send information about the Joint Techs meeting to the WG – DONE!
[AI] {Kevin} will incorporate WG comments into the next draft of the Futures document and submit it to group.

Carry Over
[AI] {Chris} to talk to Rodney about Effective Practices security workshop.
[AI] {Chris} will solicit from the WG contributions about NetAuth vendor solutions currently being used.
[AI] {Mike} will provide a brief summary of ESnet collaborative trust domain commonalities.
[AI] {Individuals} will via the list send proposed topics for both the Spring I2 member meeting and Joint Techs in response to the call for proposal to the group.
[AI] {Individuals} will send in case studies for potential use in the Strategies document.
[AI] {Individuals} will send slides appropriate to dealing with unmanaged computers to Jack Suess.
[AI] {Group} will review slides posted for EDUCAUSE regional group meeting. [AI] {Eric and Phil} will send comments not yet included in the Strategies document to the list.
[AI] {Eric and Kevin} will develop the first draft of the Futures document during winter break.
[AI] {Group} will review information to be used as the appendix for the Strategies document.
[AI] {Chris} will find editors to help with the appendix of the Strategies document.
[AI] {Chris} will add a change log to the Strategies document.
[AI] {Chris and Mark} will develop the NetAuth approach to NAT devices as a discussion topic for submission to the Effective Practices WG.
[AI] {Chris} will assemble a program committee for a NetAuth workshop. Participants will possibly include NetAuth WG members, EDUCAUSE and vendors.
[AI] {Chris} will provide an update to the group on the next call about the workshop program committee.
[AI] {Group} via the list will send suggestions for use cases augmenting the Strategies document.
[AI] {Chris} will follow up with Rodney to discuss case studies that can be used to augment the WG’s documents.
[AI] {SteveO} will submit the Strategies document to the Internet2 document library once it is considered draft three.

*Participants*
Eric Gauthier, Boston University (stand in chair)
Mike Helm, ESnet
Rodney Peterson, EDUCAUSE
Kevin Amorin, Harvard University
Mike Griego, University of Texas – Dallas
Robert Lowe, Lawrence University
Mark Poepping, Carnegie Mellon University
Kevin Miller, Duke University
Robert Brentrup, Dartmouth College
Terrie Clark, Internet2 (scribe)
Steve Olshansky, Internet2
Charles Yun, Internet2

*Discussion*

The group discussed the initial draft of the Futures document. The document will contain an agreed upon definition of policy applied to network access. A key determinant for policy is that is should be documented and then applied to network access. The document will also discuss enforcement of existing policy issues. The document will also define general, administrative, federated authentication, security, QoS and managing network policy requirements. These requirements will be used as a basis for determining architecture solutions. It was also discussed that the research community’s requirements might be different than the higher-ed community’s requirements. The documents will also include information on integrating legacy systems into a NetAuth architecture. Specific approaches will be addressed as examples. The group will further discuss the amount of detail required for implementation. The group will also determine a set of features required for each NetAuth component along with a list of available products/components and the products performance relative to the required features.

Federated Wireless NetAuth (FWNA) update - The Federated Wireless NetAuth (FWNA) subgroup will hold a BoF at the Joint Techs meeting in Salt Lake City, Utah. The subgroup will solicit interest in their efforts from the EDUCAUSE Wireless LAN Security list. The subgroup has created a separate mailing list. Currently the subgroup is implementing a RADIUS server to be used for authentication over 802.1x.

EDUCAUSE has been soliciting responses for their security and regional conferences. These responses might also serve as case studies for the Strategies document. The group will discuss applicability of these case studies to the Strategies document and the WG’s plan to integrate these case studies by the end of February.

The next call is Thursday, February 3, 2005 at 12:00 PM ET. An agenda will the call in number will be sent out to the WG via the list prior to the call.