On Mon, Oct 14, 2013, at 13:29, Robin Berjon wrote: > On 14/10/2013 12:48 , James Graham wrote: > > Hmm, well I don't have a concrete objection except that it feels very > > dubious to start passing a private key around, even if we are never > > going to use the domain for any other purpose. I would at least like > > someone who understand this stuff better than me to say that it's an OK > > idea before I agree to it :) > > Yeah, I agree it feels very dubious though I can't really think of an > attack either. Let me prod some proper paranoids to see what they reckon. Just CC webappsec? -- Odin Hørthe Omdal odinho@opera.comReceived on Tuesday, 15 October 2013 15:39:19 UTC
This archive was generated by hypermail 2.4.0 : Friday, 17 January 2020 17:34:10 UTC