[Bug 27271] Normatively require https for all ancestor origins when requiring https at all

https://www.w3.org/Bugs/Public/show_bug.cgi?id=27271

Mike West <mkwst@google.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
              Flags|needinfo?(mkwst@google.com) |

--- Comment #13 from Mike West <mkwst@google.com> ---
Yes. The "secure contexts" spec intends to check ancestors. bz has some issues
with the current way we're doing that (see
https://lists.w3.org/Archives/Public/public-webappsec/2015Jul/0012.html, for
instance), but I think we'll work those out.

-- 
You are receiving this mail because:
You are the QA Contact for the bug.

Received on Thursday, 9 July 2015 03:57:40 UTC