Security and Trust WG Tracker

From Direct Project
Jump to navigation Jump to search

Action Items
#
Date
Action
Status
Owner
Due Date
1
4/1/2010
Rename group as Security & Trust Workgroup
Complete
Arien

2
4/1/2010
Rewrite framing information
Open
Arien and Jonathan Gershater

3
4/8/2010
Framing Issue for next meeting to be written up on the Wiki: how do we potentially simplify the trust framework with a single certificate (rather than one for individual/organization and one for HSP? (Sean Nolan)
Open
Sean Nolan
4/15/2010
4
4/8/2010
Framing Issue for next meeting to be written up on the Wiki: How can we assure trust at an organizational level rather than an endpoint level and also ensure that no one can hijack that trust ? (John Moehrke)
Open
John Moehrke
4/15/2010
5
4/8/2010
Framing Issue for next meeting to be written up on the Wiki: What level of trust are we talking about – system level, organizational level, user level or it doesn’t matter? (Vassil Peytchev)
Open
Vassil Peytchev
4/15/2010
6
4/8/2010
Framing Issue for next meeting to be written up on the Wiki: Do we have the need to have explicit negative trust or can that be handled in the current proposal? (Erik Horstkotte)
Open
Erik Horstkotte
4/15/2010
7
4/8/2010
Write up our approach to security & trust and when we get to a level of agreement we need to kick it back for consideration at the policy level (Brett Peterson)
Open
Arien Malec
4/15/2010
8
4/15/2010
John Davis will investigate our use of government ASTM Use Cases ($44 for standard) look at how this can be used for the WG
Open
John Davis
4/22/2010
9
4/15/2010
Pete Palmer will provide information about the Kantara initiative on the Wiki
Open
Pete Palmer
4/22/2010
10
4/15/2010
Umesh and Sean are going to write this idea of “chain of trust” on the Wiki. They will explore re-cert an existing address and frame up as key issue to discuss for next time
Open
Microsoft Team
4/22/2010
11
4/15/2010
Create a definitive statement on trust enablement for NHIN Direct for Workgroup consensus and Implementation Group consensus by the 5/6 meeting. Statement should cover the level of trust, the handling of different roles, etc…
Open
Fred Trotter & Sean Nolan
4/22/2010
12
4/29/2010
Group will read and comment on Basic Trust Model: //http://nhindirect.org/Basic+Trust+Model//
Open
All
5/6/2010






Key Decisions



#
Date
Decision



1
4/1/2010
Jonathan Gershater will be leader



2
4/1/2010
Assume pre-existing responsibility and appropriate decision that it is appropriate to send data and the question is only about modality (e.g., electronic vs. paper)



3
4/8/2010
Group agreed with the overall model proposed by Sean Nolan and Umesh Madan http://nhindirect.org/message/view/Security+and+Trust+Workgroup/22524411, subject to continued discussion about what level the trust model and associated certificates reside in (individual/endpoint, organization, HSP)