A couple of questions:

1) Do you have a reference to the "chrome-extension URI scheme"?  I was just trying to figure out what it was.

2) In section 6.1 where it says:
"4.  Apply the IDNA ToUnicode algorithm [RFC5891] to each component of
       the host part of the origin triple"

Should the reference be to Section 4.2 "ToUnicode" of RFC3490 http://tools.ietf.org/html/rfc3490#section-4.2, or Section 5.2 "Conversion to Unicode" of RFC 5891 http://tools.ietf.org/html/rfc5891#section-5.2?

-Chris



On 6/24/2011 1:59 PM, Adam Barth wrote:
I've posted an updated version of the origin draft:

http://www.ietf.org/id/draft-ietf-websec-origin-02.txt

The new version includes Security Considerations, IANA Considerations,
and a completed references section.  Feedback on the new Security
Considerations section would be much appreciated.

I also removed the (stub) Privacy Considerations section.  If there's
something you think should be discussed there, let me know.

Thanks,
Adam
_______________________________________________
websec mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/websec
_______________________________________________
websec mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/websec

Reply via email to