Re: [hybi] #3: Origin-based security model

"hybi issue tracker" <trac@tools.ietf.org> Tue, 18 May 2010 17:54 UTC

Return-Path: <trac@tools.ietf.org>
X-Original-To: hybi@core3.amsl.com
Delivered-To: hybi@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 6A1B33A6858 for <hybi@core3.amsl.com>; Tue, 18 May 2010 10:54:33 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.37
X-Spam-Level:
X-Spam-Status: No, score=-102.37 tagged_above=-999 required=5 tests=[AWL=0.230, BAYES_00=-2.599, NO_RELAYS=-0.001, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 9aHrJmVH3KQz for <hybi@core3.amsl.com>; Tue, 18 May 2010 10:54:32 -0700 (PDT)
Received: from zinfandel.tools.ietf.org (unknown [IPv6:2001:1890:1112:1::2a]) by core3.amsl.com (Postfix) with ESMTP id AABFA3A6846 for <hybi@ietf.org>; Tue, 18 May 2010 10:54:32 -0700 (PDT)
Received: from localhost ([::1] helo=zinfandel.tools.ietf.org) by zinfandel.tools.ietf.org with esmtp (Exim 4.71) (envelope-from <trac@tools.ietf.org>) id 1OEQzm-0005KN-F6; Tue, 18 May 2010 10:54:22 -0700
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 8bit
From: hybi issue tracker <trac@tools.ietf.org>
X-Trac-Version: 0.11.7
Precedence: bulk
Auto-Submitted: auto-generated
X-Mailer: Trac 0.11.7, by Edgewall Software
To: ietf@adambarth.com, julian.reschke@gmx.de
X-Trac-Project: hybi
Date: Tue, 18 May 2010 17:54:22 -0000
X-URL: http://tools.ietf.org/hybi/
X-Trac-Ticket-URL: https://svn.tools.ietf.org/wg/hybi/trac/ticket/3#comment:4
Message-ID: <077.658545474ed283d8bdd4f8f43d15a48c@tools.ietf.org>
References: <068.ff12b710957526e5ff68a6e40306af50@tools.ietf.org>
X-Trac-Ticket-ID: 3
In-Reply-To: <068.ff12b710957526e5ff68a6e40306af50@tools.ietf.org>
X-SA-Exim-Connect-IP: ::1
X-SA-Exim-Rcpt-To: ietf@adambarth.com, julian.reschke@gmx.de, hybi@ietf.org
X-SA-Exim-Mail-From: trac@tools.ietf.org
X-SA-Exim-Scanned: No (on zinfandel.tools.ietf.org); SAEximRunCond expanded to false
Cc: hybi@ietf.org
Subject: Re: [hybi] #3: Origin-based security model
X-BeenThere: hybi@ietf.org
X-Mailman-Version: 2.1.9
List-Id: Server-Initiated HTTP <hybi.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/hybi>, <mailto:hybi-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/hybi>
List-Post: <mailto:hybi@ietf.org>
List-Help: <mailto:hybi-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/hybi>, <mailto:hybi-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 18 May 2010 17:54:33 -0000

#3: Origin-based security model
-------------------------------------------+--------------------------------
 Reporter:  salvatore.loreto@…             |       Owner:     
     Type:  task                           |      Status:  new
 Priority:  minor                          |   Milestone:     
Component:  websocket-requirements         |     Version:     
 Severity:  -                              |    Keywords:     
-------------------------------------------+--------------------------------

Comment(by julian.reschke@…):

 I think we actually agree. That draft defines certain constructs than can
 be used to define a "same-origin" policy. But It's not defining it itself.

-- 
Ticket URL: <https://svn.tools.ietf.org/wg/hybi/trac/ticket/3#comment:4>
hybi <http://tools.ietf.org/hybi/>
The Hypertext-Bidirectional (HyBi) working group will seek
standardization of one approach to maintain bidirectional
communications between the HTTP client, server and intermediate
entities, which will provide more efficiency compared to the current
use of hanging requests.