On 04/09/2011 01:52 AM, From Adam Barth:
^^^^ There's significant interest in this feature from chrome-security as well.
There is however a very limited benefit and would only prevent a particular type of failure if at all. The enforcement for it would have to be baked into the client software and adherence by CAs would have to be required by policy. I don't see that happening at the moment, specially because the benefit is fairly small for the hassle.
-- Regards Signer: Eddy Nigg, StartCom Ltd. XMPP: [email protected] Blog: http://blog.startcom.org/ Twitter: http://twitter.com/eddy_nigg _______________________________________________ dev-security mailing list [email protected] https://lists.mozilla.org/listinfo/dev-security
