W3C home > Mailing lists > Public > ietf-http-wg-old@w3.org > January to April 1997

Re: errata for cookie spec

From: Rodent of Unusual Size <coar@decus.org>
Date: Wed, 5 Feb 1997 19:56:22 -0500
Message-Id: <97020519562276@decus.org>
To: HTTP-WG%cuckoo.hpl.hp.com@hplb.hpl.hp.com, Coar@topaz.decus.org
rom the fingers of Benjamin Franz flowed the following:
>
>Section 7.1 also needs to mention that a user who has chosen to
>automatically refuse cookies should have the option to do so
>*silently*. Having to manually refuse each cookie for every image and
>page on a site results in the acceptance of cookies just to make the damn
>browser shut up about them. This is a security issue.

    That certainly would make *me* happy.  I'd actually like a third
    option: silent [non]acceptance based upon server/domain.  I routinely
    refuse doubleclick's cookies, and would like to have that automatic
    henceforth, but there are some servers from which I always accept
    cookies - and I'd still like the option of accepting them from other
    locations on a case-by-case basis.

    But it's unclear to me whether this is within the scope here..

    #ken    :-)}
    Ken Coar
    Process Software Corporation
Received on Wednesday, 5 February 1997 17:24:54 EST

This archive was generated by hypermail pre-2.1.9 : Wednesday, 24 September 2003 06:32:26 EDT