#4: Clarify that HSTS policy applies to entire host (all ports)
Clarify and make more explicit that HSTS policy applies to entire host
(all ports).
Also include security rationale, e.g. Secure-flagged cookie eavesdropping,
XSS vulns, etc.
--
-------------------------------------------+--------------------------------
Reporter: jeff.hodges@… | Owner: =JeffH
Type: defect | Status: new
Priority: major | Milestone:
Component: strict-transport-sec | Version:
Severity: Active WG Document | Keywords:
-------------------------------------------+--------------------------------
Ticket URL: <http://trac.tools.ietf.org/wg/websec/trac/ticket/4>
websec <http://tools.ietf.org/websec/>
_______________________________________________
websec mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/websec