Re: [webappsec] POLL: Getting CSP 1.1 to LCWD

On Sat, Oct 5, 2013 at 3:33 AM, Bjoern Hoehrmann <derhoermi@gmx.net> wrote:

> * Brad Hill wrote:
> >We can always remove non-normative text at any point, provided there is
> >consensus.  We can continue to work towards consensus on whether to keep
> >the current non-normative language in Section 3.3, but that approach does
> >not necessitate any changes to this poll, which is only about closing the
> >spec to new features, requirements and normative behavior.
>
> The text in question is a normative requirement. Doing otherwise has
> a potential for causing harm and so it has to be a requirement, too.
>

It is a normative recommendation (SHOULD NOT), not a normative requirement
(SHALL NOT).


> --
> Björn Höhrmann · mailto:bjoern@hoehrmann.de · http://bjoern.hoehrmann.de
> Am Badedeich 7 · Telefon: +49(0)160/4415681 · http://www.bjoernsworld.de
> 25899 Dagebüll · PGP Pub. KeyID: 0xA4357E78 · http://www.websitedev.de/
>
>

Received on Saturday, 5 October 2013 17:11:20 UTC