public-wsc-wg@w3.org from January 2008 by thread

ยป Even SSL Gmail can get sidejacked | Zero Day | ZDNet.com Yngve Nysaeter Pettersen (Thursday, 31 January)

ACTION-381: ISSUE-130 (consistent across devices) done Thomas Roessler (Thursday, 31 January)

ACTION-380: Text for ISSUE-131 Thomas Roessler (Thursday, 31 January)

Please review ACTION-367 results Thomas Roessler (Wednesday, 30 January)

ACTION-360: Mez's editorial nits; petnames in identity signal? Thomas Roessler (Wednesday, 30 January)

weekly call on 30 January Timothy Hahn (Tuesday, 29 January)

Agenda: WSC WG weekly 2008-01-30 Thomas Roessler (Tuesday, 29 January)

Regrets for Jan-30 call Hal Lockhart (Tuesday, 29 January)

ACTION-334: Propose language on Bookmarks API Anil Saldhana (Saturday, 26 January)

Re: IE Favorites Feature May Allow Phishing Anil Saldhana (Saturday, 26 January)

ACTION-373 Poll al G about shoulder surfing attacks in context of assistive technologies Mary Ellen Zurko (Friday, 25 January)

Meeting record: WSC WG weekly 2008-01-16 Thomas Roessler (Wednesday, 23 January)

ACTION-377: Hook for UIs in seciton 7.8 Thomas Roessler (Wednesday, 23 January)

ACTION-374 - proposed re-written text for 6.3, Page Security Score Timothy Hahn (Wednesday, 23 January)

How to write a good issue Mary Ellen Zurko (Wednesday, 23 January)

Troubles with KCM Thomas Roessler (Wednesday, 23 January)

Agenda: WSC WG distributed meeting, Wednesday, 2008-01-23 Mary Ellen Zurko (Tuesday, 22 January)

Open Issues added to xit Anil Saldhana (Tuesday, 22 January)

WSC-XIT review Rachna Dhamija (Monday, 21 January)

call for demos for the f2f Mary Ellen Zurko (Friday, 18 January)

wsc-xit next steps Mary Ellen Zurko (Friday, 18 January)

WSC Open Action Items Mary Ellen Zurko (Friday, 18 January)

Form editor question Stephen Farrell (Friday, 18 January)

ISSUE-181: Should there be an authoring practice suggesting http/https URI space consistency [wsc-xit] Web Security Context Working Group Issue Tracker (Thursday, 17 January)

ACTION-369: webarch implications of 7.2 Thomas Roessler (Thursday, 17 January)

ACTION-356: picture-in-picture attacks Thomas Roessler (Thursday, 17 January)

ACTION-317: Different notions of KCM in different parts of the document Thomas Roessler (Thursday, 17 January)

ACTION-372: Proposed replacement for 7.6 Thomas Roessler (Thursday, 17 January)

ACTION-357: less conspicuous hovering effects Thomas Roessler (Thursday, 17 January)

Re: ACTION-344, ISSUE-120: Proposed normative material on audio logotypes Mary Ellen Zurko (Wednesday, 16 January)

Meeting record: WSC WG weekly 2008-01-09 Thomas Roessler (Wednesday, 16 January)

WSC WG distributed meeting, Wednesday, 2008-01-16 William Eburn (Wednesday, 16 January)

Agenda: WSC WG distributed meeting, Wednesday, 2008-01-16 Mary Ellen Zurko (Tuesday, 15 January)

ISSUE-180 (wsc-xit spelling mistakes ): wsc-xit spelling mistakes (public comment) [wsc-xit] Web Security Context Working Group Issue Tracker (Monday, 14 January)

ISSUE-179 (wsc-xit comment section 10.2.3): general comment section 10.2.3 (public comment) [wsc-xit] Web Security Context Working Group Issue Tracker (Monday, 14 January)

ISSUE-178 (wsc-xit comment section 10.2.2): general comment section 10.2.2 conceptual model (public comment) [wsc-xit] Web Security Context Working Group Issue Tracker (Monday, 14 January)

ISSUE-177 (wsc-xit comment section 6.5 tls/ssl pt2): general comment section 6.5 tls/ssl pt2 (public comment) [wsc-xit] Web Security Context Working Group Issue Tracker (Monday, 14 January)

ISSUE-176 (wsc-xit comment section 6.5 tls/ssl): general comment section 6.5 tls/ssl processing (public comment) [wsc-xit] Web Security Context Working Group Issue Tracker (Monday, 14 January)

ISSUE-175 (wsc-xit comment section 6.5): general comment section 6.5 table and bullet list (public comment) [wsc-xit] Web Security Context Working Group Issue Tracker (Monday, 14 January)

ISSUE-174 (5.4 wsc-xit comments): review wsc-xit - general comments section 5.4 (public comment) [wsc-xit] Web Security Context Working Group Issue Tracker (Monday, 14 January)

Fw: A review of Web Security Context's Scope and Use Cases -- Last Call Mary Ellen Zurko (Monday, 14 January)

Meeting record: WSC WG weekly 2007-12-19 Thomas Roessler (Friday, 11 January)

WSC Open Action Items Mary Ellen Zurko (Friday, 11 January)

Re: ACTION-362 OPEN review wsc-xit William Eburn 2008-01-01 Mary Ellen Zurko (Friday, 11 January)

Re: ACTION-361 OPEN review wsc-xit Phillip Hallam-Baker 2008-01-01 Mary Ellen Zurko (Friday, 11 January)

Re: ACTION-343 OPEN Begin examining some of the recommendations, write down the underlying assumptions for success, then list any prior studies that have already examined those assumptions, and possibly how to test the untested assumptions Serge Egelman 2007-12-21 User Studies Mary Ellen Zurko (Friday, 11 January)

Re: ACTION-336 OPEN Propose material for ISSUE-106 Stephen Farrell 2007-12-21 Mary Ellen Zurko (Friday, 11 January)

RE: ACTION-214 solicit commentary on Threat Trees from MITRE INFOSEC community Bill Doyle Mary Ellen Zurko (Friday, 11 January)

FW: Is the padlock a page security score? Robert Yonaitis (Thursday, 10 January)

Is the padlock a page security score? Mary Ellen Zurko (Thursday, 10 January)

May f2f plans - query on joint meeting with CABForum Mary Ellen Zurko (Tuesday, 8 January)

Agenda: WSC WG distributed meeting, Wednesday, 2008-01-09 Mary Ellen Zurko (Tuesday, 8 January)

ACTION-353: Convert Mozilla FPWD review notes into issues Johnathan Nightingale (Monday, 7 January)

ISSUE-173: 8.1.1 Requires user testing for the purposes of conformance [wsc-xit] Web Security Context Working Group Issue Tracker (Monday, 7 January)

ISSUE-172: 7.9 Normative text assumes a service we don't otherwise mention or expect to exist [wsc-xit] Web Security Context Working Group Issue Tracker (Monday, 7 January)

ISSUE-171: 7.8 Is unclear about data retention requirements [wsc-xit] Web Security Context Working Group Issue Tracker (Monday, 7 January)

ISSUE-170: 6.3 Seems more like extension/experimentation than standardization [wsc-xit] Web Security Context Working Group Issue Tracker (Monday, 7 January)

ISSUE-169: Section 5.5.3 creates a burden on browsers to remember past certificates Web Security Context Working Group Issue Tracker (Monday, 7 January)

ISSUE-168: Section 5.5.2 might be over-restrictive, especially on first-visit-redirect [wsc-xit] Web Security Context Working Group Issue Tracker (Monday, 7 January)

ISSUE-167: Should Section 5.3.1 specify normative details for a theoretical technology? Web Security Context Working Group Issue Tracker (Monday, 7 January)

ISSUE-166: Consider dropping section 5.2 in favour of "standard" matching algo, if appropriate. Web Security Context Working Group Issue Tracker (Monday, 7 January)

Re: ISSUE-127: Safe Form Bar: Separate MITM handling? [Techniques] Mary Ellen Zurko (Friday, 4 January)

WSC Open Action Items Mary Ellen Zurko (Friday, 4 January)

Re: ACTION-345 OPEN Begin designing lo-fi user study for Browser Lockdown Maritza Johnson 2007-11-30 Mary Ellen Zurko (Friday, 4 January)

Re: ACTION-340 OPEN Gather data about cost of TLS deployment Phillip Hallam-Baker 2007-12-10 Mary Ellen Zurko (Friday, 4 January)

wsc-xit review Close, Tyler J. (Thursday, 3 January)

ISSUE-165: Allow for (non default) configuration of notification of first time TLS interaction with a site [wsc-xit] Web Security Context Working Group Issue Tracker (Wednesday, 2 January)

ISSUE-164: SSC != CoSL [wsc-xit] Web Security Context Working Group Issue Tracker (Wednesday, 2 January)

ISSUE-163: Make (sure) 9.4 is internally consistent [wsc-xit] Web Security Context Working Group Issue Tracker (Wednesday, 2 January)

ISSUE-162: Recognize there are other forms of network security [wsc-xit] Web Security Context Working Group Issue Tracker (Wednesday, 2 January)

ISSUE-161: Be clearer about security indicator images [wsc-xit] Web Security Context Working Group Issue Tracker (Wednesday, 2 January)

ISSUE-160: Remove section 7.9 [wsc-xit] Web Security Context Working Group Issue Tracker (Wednesday, 2 January)

ISSUE-159: Merge 7.8 into 8.2 [wsc-xit] Web Security Context Working Group Issue Tracker (Wednesday, 2 January)

ISSUE-158: Abstracting and tightening editing of stored history [wsc-xit] Web Security Context Working Group Issue Tracker (Wednesday, 2 January)

ISSUE-157: Masking only MUST for passwords [wsc-xit] Web Security Context Working Group Issue Tracker (Wednesday, 2 January)

ISSUE-156: Tighten and abstract seleting the text string [wsc-xit] Web Security Context Working Group Issue Tracker (Wednesday, 2 January)

ISSUE-155: Remove references to contacts option [wsc-xit] Web Security Context Working Group Issue Tracker (Wednesday, 2 January)

ISSUE-154: Provide unique labels for each message and use them consistently as references [wsc-xit] Web Security Context Working Group Issue Tracker (Wednesday, 2 January)

ISSUE-153: Tie SWFE to secondary SCI [wsc-xit] Web Security Context Working Group Issue Tracker (Wednesday, 2 January)

ISSUE-152: Clarify the point of "distinguishing" between static and other text in messages [wsc-xit] Web Security Context Working Group Issue Tracker (Wednesday, 2 January)

ISSUE-151: Make "similar" clearer (in choosing petnames) [wsc-xit] Web Security Context Working Group Issue Tracker (Wednesday, 2 January)

ISSUE-150: Abstract how user navigates to a site for establishing a new relationship Web Security Context Working Group Issue Tracker (Wednesday, 2 January)

ISSUE-149: Condense 7.2 to its first normative directive only [wsc-xit] Web Security Context Working Group Issue Tracker (Wednesday, 2 January)

ISSUE-148: Downgrade ability to update an organization's name and address to SHOULD [wsc-xit] Web Security Context Working Group Issue Tracker (Wednesday, 2 January)

ISSUE-147: Descriptions of certificate matching rules in SWFE need explanations somewhere [wsc-xit] Web Security Context Working Group Issue Tracker (Wednesday, 2 January)

ISSUE-146: 7.1 to reference where xit talks about how identity is presented [wsc-xit] Web Security Context Working Group Issue Tracker (Wednesday, 2 January)

Re: ISSUE-142: Page Security Score does not yet have enough content behind it [wsc-xit] Timothy Hahn (Wednesday, 2 January)

Re: ISSUE-131 (Code outside browser): Executing code outside of browser in 8.3.2.3 is vague / scary [All] Anil Saldhana (Wednesday, 2 January)

Re: usecases comments Re: Comments on draft documents posted to the WSC wiki Mary Ellen Zurko (Wednesday, 2 January)

wsc-xit review Stephen Farrell (Tuesday, 1 January)

Last message date: Thursday, 31 January 2008 17:10:44 UTC