Some major edits just checked in.

Hello,

I've just committed some major changes to the editor's draft:

- Relaxed Path Validation is gone (but the idea reappears in the
  error handling part).

- Pinning is generalized from self-signed certificates to
  certificate chains that chain up to an untrusted root certificate.
  Stephen, I'd appreciate review for any terminology blunders that I
  might have committed.

- Petnames are added.  This includes an addition to the identity
  signal section.  Tyler, note that I've done some editing on your
  text; in particular I've tried to make it fit better into the
  document's overall framework.

- Error conditions are enumerated and mapped to error signalling
  classes, along the lines of my previous message and Serge's
  proposal.  This part includes Johnath's language about (not)
  keeping browser status, as revised by Tim Hahn. (The result from
  ACTION-376.)
  
  The concrete choices of signalling levels here are strawmen.

- Based on Serge's earlier contribution, there is also some brief
  text about heuristics and reputation services.

  Consider this as strawman text as well.  Feel free to put fire to
  it.

This should take care of ACTION-390 and ACTION-400.  I believe that,
with this batch of edits, the larger inconsistencies are gone, and
would propose publishing another Working Draft as soon as possible,
as we're overdue with a heartbeat.

(Mez, this is an agenda request for the next meeting. ;-)

I believe that the following two editing items continue to be open,
even though they are not tracked as action items:

- updating the authoring best practices in line with the discussions
  at the face-to-face

- do whatever needs to be done as a result of ACTION-405

I expect to get these out of the way between now and the next
meeting.

  Web Security Context: Experience, Indicators, and Trust
  Editor's Draft 27 March 2008
  $Revision: 1.219 $ $Date: 2008/03/26 23:19:34 $

  http://www.w3.org/2006/WSC/drafts/rec/rewrite.html

Regards,
-- 
Thomas Roessler, W3C  <tlr@w3.org>

Received on Wednesday, 26 March 2008 23:35:59 UTC