Re: [websec] #56: Specify includeSubdomains directive for HPKP

Yoav Nir <ynir@checkpoint.com> Sat, 23 March 2013 02:15 UTC

Return-Path: <ynir@checkpoint.com>
X-Original-To: websec@ietfa.amsl.com
Delivered-To: websec@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B6C1521F8E7F for <websec@ietfa.amsl.com>; Fri, 22 Mar 2013 19:15:41 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -10.461
X-Spam-Level:
X-Spam-Status: No, score=-10.461 tagged_above=-999 required=5 tests=[AWL=0.138, BAYES_00=-2.599, RCVD_IN_DNSWL_HI=-8]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id sg5Yg0Uk-URk for <websec@ietfa.amsl.com>; Fri, 22 Mar 2013 19:15:40 -0700 (PDT)
Received: from smtp.checkpoint.com (smtp.checkpoint.com [194.29.34.68]) by ietfa.amsl.com (Postfix) with ESMTP id 009B021F8E7E for <websec@ietf.org>; Fri, 22 Mar 2013 19:15:39 -0700 (PDT)
Received: from DAG-EX10.ad.checkpoint.com ([194.29.34.150]) by smtp.checkpoint.com (8.13.8/8.13.8) with ESMTP id r2N2FHVJ013790; Sat, 23 Mar 2013 04:15:17 +0200
X-CheckPoint: {514D0EDC-1-1B221DC2-2FFFF}
Received: from IL-EX10.ad.checkpoint.com ([169.254.2.54]) by DAG-EX10.ad.checkpoint.com ([169.254.3.48]) with mapi id 14.02.0342.003; Sat, 23 Mar 2013 04:15:17 +0200
From: Yoav Nir <ynir@checkpoint.com>
To: websec issue tracker <trac+websec@grenache.tools.ietf.org>
Thread-Topic: [websec] #56: Specify includeSubdomains directive for HPKP
Thread-Index: AQHOJ09S5/focKvZqky7mHmoEP/1jJiyaFkA
Date: Sat, 23 Mar 2013 02:15:17 +0000
Message-ID: <A999A0D7-AD27-40DC-BB5B-4549E25BA149@checkpoint.com>
References: <058.f40b082eeef2f8676dd01f9fbb11ca5b@trac.tools.ietf.org> <073.ab8eb5d38166047c5429d8354762a5fd@trac.tools.ietf.org>
In-Reply-To: <073.ab8eb5d38166047c5429d8354762a5fd@trac.tools.ietf.org>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [172.31.20.41]
x-kse-antivirus-interceptor-info: scan successful
x-kse-antivirus-info: Clean
Content-Type: text/plain; charset="us-ascii"
Content-ID: <81305F921DD5164B8C32F6BD9E0CC348@ad.checkpoint.com>
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
Cc: "<websec@ietf.org>" <websec@ietf.org>, "<sleevi@google.com>" <sleevi@google.com>
Subject: Re: [websec] #56: Specify includeSubdomains directive for HPKP
X-BeenThere: websec@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Web Application Security Minus Authentication and Transport <websec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/websec>, <mailto:websec-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/websec>
List-Post: <mailto:websec@ietf.org>
List-Help: <mailto:websec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/websec>, <mailto:websec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 23 Mar 2013 02:15:41 -0000

That text works for me. 

On Mar 22, 2013, at 6:47 PM, websec issue tracker <trac+websec@grenache.tools.ietf.org> wrote:

> #56: Specify includeSubdomains directive for HPKP
> 
> 
> Comment (by palmer@google.com):
> 
> I have added language to the working copy of the draft
> (https://code.google.com/p/key-pinning-draft/source/browse/draft-ietf-
> websec-key-pinning.xml) in the Security Considerations section.
> 
> -- 
> -------------------------------+--------------------------------
> Reporter:  palmer@google.com  |       Owner:  palmer@google.com
>     Type:  defect             |      Status:  assigned
> Priority:  major              |   Milestone:
> Component:  key-pinning        |     Version:
> Severity:  -                  |  Resolution:
> Keywords:  includeSubdomains  |
> -------------------------------+--------------------------------
> 
> Ticket URL: <http://tools.ietf.org/wg/websec/trac/ticket/56#comment:3>
> websec <http://tools.ietf.org/websec/>
> 
> _______________________________________________
> websec mailing list
> websec@ietf.org
> https://www.ietf.org/mailman/listinfo/websec
> 
> Email secured by Check Point