- From: Kingsley Idehen <kidehen@openlinksw.com>
- Date: Wed, 18 Jul 2012 16:04:38 -0400
- To: public-webid@w3.org
Received on Wednesday, 18 July 2012 20:04:28 UTC
On 7/18/12 3:21 PM, Melvin Carvalho wrote:
> Access-Control-Allow-Origin: *
Means CORS is COARSE. Nuff said, re. fine-grained controls for any kind
of federated network.
Henry: I suggest we crack on over here with a fine-grained CORS
enhancement based on WebID and its identity verification protocol.
It should ultimately be a modern header such as:
Access-Control-Allow-Origin-Identity: {WebID} .
or
Access-Control-Allow-Origin: {WebID}
or
Access-Control-Allow-AgentID: {WebID} .
--
Regards,
Kingsley Idehen
Founder & CEO
OpenLink Software
Company Web: http://www.openlinksw.com
Personal Weblog: http://www.openlinksw.com/blog/~kidehen
Twitter/Identi.ca handle: @kidehen
Google+ Profile: https://plus.google.com/112399767740508618350/about
LinkedIn Profile: http://www.linkedin.com/in/kidehen
Received on Wednesday, 18 July 2012 20:04:28 UTC