"Uniform Messaging, a CSRF resistant profile of CORS"

FYI, re ACTION-331, tracking the confused deputy issue in CORS work

http://lists.w3.org/Archives/Public/public-webapps/2009OctDec/0914.html

I haven't looked at the proposal closely, so I can't vouch
for the claim in the subject/title.

-- 
Dan Connolly, W3C http://www.w3.org/People/Connolly/
gpg D3C2 887B 0F92 6005 C541  0875 0F91 96DE 6E52 C29E

Received on Wednesday, 25 November 2009 04:48:03 UTC