Re: [websec] I-D Action: draft-nir-websec-extended-origin-00.txt

2012-03-04 Thread Yoav Nir
Hi Tobias, Replies inline. On Mar 3, 2012, at 6:07 PM, Tobias Gondrom wrote: Hello Yoav, thank you for the interesting draft. hat=individual I have a few points as feedback: - the 3-tupel of origin consists of real parameters (protocol, URL, port), while the introduction of the 4th

Re: [websec] I-D Action: draft-nir-websec-extended-origin-00.txt

2012-02-26 Thread Adam Barth
2012/2/26 Yoav Nir y...@checkpoint.com: On Feb 24, 2012, at 1:35 AM, Manger, James H wrote:  The scheme that you propose (a.sslvpn.example.com, b.sslvpn.example.com, etc.) really does work. In fact, the product that my company makes offers this as an option. Good to hear.  Sadly, our

Re: [websec] I-D Action: draft-nir-websec-extended-origin-00.txt

2012-02-23 Thread Manger, James H
The scheme that you propose (a.sslvpn.example.comhttp://a.sslvpn.example.com, b.sslvpn.example.comhttp://b.sslvpn.example.com, etc.) really does work. In fact, the product that my company makes offers this as an option. Good to hear. Sadly, our customers don't like it, hence the other