Minutes: SALSA NetAuth call
20-Jul-06

*Attendees*
Kevin Amorin, Harvard U. (chair)
Rich Cropp, Penn State U.
Walt Reynolds, U. Michigan
Steve Olshansky, Internet2
Katherine Strojny, Internet2 (scribe)

*Action Items*
New: [AI] {Kevin} will email the list to ask if anyone has comments or questions about NEA for Chris and Kevin's upcoming meeting with Steve Hanna (NEA co-chair).

Carry Over:
[AI] {Chris and Kevin} will talk to Kevin Miller about how to link the NetAuth and FWNA wikis in order to facilitate development of 802.1X content.
[AI] {Chris} will talk to John Vollbrecht about starting the 802.1X document.
[AI] {Group} will collaborate to draft 802.1X deployment documents via wiki.
[AI] {Anyone} who has slides or content related to NetAuth use cases or case studies, send them to SteveO for posting on the NetAuth website.

*Discussion*
Intellectual Property Reminder: The Internet2 intellectual property policy can be found here: http://members.internet2.edu/intellectualproperty.html

Discussion included action item review, a reminder of the call for proposals for the next member meeting, an NEA update, and action item review. Minutes of the last call were approved. Discussion of 802.1X progress was left for next meeting.

Proposals are due August 31 for the Internet2 Fall Member Meeting (4-7 Dec 2006, Chicago). Kevin and Chris are looking for someone from the NetAuth group to speak on NetAuth-related topics. If interested, please contact Chris.

Kevin updated the group on Network Endpoints Assessment (NEA) activities. The NEA BoF at the IETF conference last week in Montreal was well-attended (60-70 people), and the group is drawing active interest and input from the IETF community. One topic of debate was how to handle endpoints that "lie" (for example, giving false information about patch status) during the posture assessment process. This question is outside the current NEA scope, but the concern was voiced that it should be in scope, and that NEA should support technologies for assessing endpoint truth, such as Trusted Platform Module (TPM).

Additional discussion focused 802.1X and EAP requirements, and whether other transports are provided for, such as TLS or EAP over EDP. One concrete outcome was that NEA will support a required transport in the Posture Transport (PT) protocol. NetAuth had an active role in bringing up this topic for discussion.

Kevin proposed that the NetAuth working group comment on the NEA charter during the next call. Kevin also sent a link to the meeting minutes, and welcomed NetAuth members to review and comment during the next call.

NEA is progressing toward becoming a fully-fledged IETF working group. For this to happen, approval is required from the Area Director (AD) and from the Internet Engineering Steering Group (IESG).

Prior to the next call, Chris and Kevin will be meeting with Steve Hanna, co-chair of NEA. [AI] {Kevin} will email the list to ask if anyone has comments or questions about NEA for Steve.

Action items were reviewed, and it was noted that Chris, Eric, and Kevin submitted the comments on the NEA requirements document that were agreed upon during the prior NetAuth call.

The next call is scheduled for 3-Aug-2006 at 1300 EDT. Agenda and bridge will go out to the list in advance of the call. -- Katherine Strojny Internet2, Scribe