W3C home > Mailing lists > Public > public-usable-authentication@w3.org > October 2010

Re: WSC-UI: use cases for cert pinning

From: =JeffH <Jeff.Hodges@KingsMountain.com>
Date: Wed, 20 Oct 2010 15:30:52 -0700
Message-ID: <4CBF6D9C.6020006@KingsMountain.com>
To: public-usable-authentication@w3.org, Thomas Roessler <tlr@w3.org>
 >> In other words, is it your conscious intention in WSC-UI to limit
 >> employment of cert pinning to only the discussed use cases, or were the
 >> other use cases overlooked?
 >
 > I don't recall that we discussed the other use cases in detail around
 > pinning.
 >
 > Note, though, that "pinning" refers to recording state about security
 > decisions and re-using it later on; there is separate language about the
 > ability to override a warning, even in the case of an identity mismatch.

Ok, thanks for the info.

=JeffH
Received on Wednesday, 20 October 2010 22:31:21 UTC

This archive was generated by hypermail 2.3.1 : Tuesday, 6 January 2015 19:53:17 UTC