-
Notifications
You must be signed in to change notification settings - Fork 2
Open
Labels
Description
Here are my notes from today's security SIG, providing some overview of what occurred during the recurring discussion:
- Jeremy's Proposal - Everyone should review. Phillippe did.
- Who are the targets of changes?
- Producer?
- Consumer?
- Security?
- Auditor? Compliance? Regulatory?
- Why are we doing this?
- What is require?
- Where it goes?
- What are we focusing on?
- FAPI
- OAuth
- JWT
- SAML
- Industries
- Banking - Make this work.
- Healthcare - SmartOn FHIR - HumanAPI - Heart
Extensibility - Review SAML for their extensibility approach
We seem to come out of it with a focus on taking Jeremy's spec and applying to FAPI to think through all of this end to end.