Re: A primer on cross-origin information leaks

On 5/21/18 2:27 PM, John Wilander wrote:


> The wildcard notation differs in meaning across specs. In the case of
> wildcard certs I believe an asterisk only matches one segment, i.e.
> * <> only matches a single subdomain, not
> subdomains of subdomains.

That's what Jeff Hodges and I specified in RFC 6125, anyway...


