Re: [webauthn] Tighten security scope by port

What is the reason to allow viewing `example.com` and `www.example.com` as the same domain, but not `example.com` and `example.com:1234`? The former two might not even resolve to the same address in DNS, but the latter two always will, right?

-- 
GitHub Notification of comment by emlun
Please view or discuss this issue at https://github.com/w3c/webauthn/issues/873#issuecomment-383873709 using your GitHub account

Received on Tuesday, 24 April 2018 09:54:00 UTC