Hi,

I'm interested in seeing
https://tools.ietf.org/html/draft-west-let-localhost-be-localhost-03
move from draft status to become a standard. In particular, it would
allow browsers to start treating "localhost" as a secure context, which
would reduce attempts by application developers to abuse the public Web
PKI in order to issue certificates for localhost, which harms security. See:

https://groups.google.com/d/msg/mozilla.dev.security.policy/T6emeoE-lCU/-k-A2dEdAQAJ
https://groups.google.com/d/msg/mozilla.dev.security.policy/eV89JXcsBC0/wsj5zpbbAQAJ

What further steps are needed to move this draft along, and how can I help?

Thanks,
Jacob

_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to