- From: Web Security Context Working Group Issue Tracker <sysbot+tracker@w3.org>
- Date: Tue, 13 May 2008 13:32:18 +0000 (GMT)
- To: public-wsc-wg@w3.org
ISSUE-201: Status recording for revocation checks? [wsc-xit] http://www.w3.org/2006/WSC/track/issues/ Raised by: Thomas Roessler On product: wsc-xit http://www.w3.org/2006/WSC/drafts/rec/rewrite.html#sec-tlserrors Current text: When certificate status checks are attempted, but fail due to network errors or related error conditions, the following applies: 1. If a certificate check was successfully performed before, or if an Augmented Assurance Certificate is used, then error signalling of level danger (6.4.4 Danger Messages) MUST be used. 2. Otherwise, error signalling of level warning (6.4.3 Warning/Caution Messages ) SHOULD be used. We do not currently understand how that interacts with the text about keeping state to deal with previously-validated-cert showing sites. (Sorry for this not being a good issue, but we're in the middle of a discussion.)
Received on Tuesday, 13 May 2008 13:32:53 UTC