[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]
Subject: RE: [xri] XRD feedback from Scott
Joseph Anthony Pasquale Holsten wrote on 2009-05-27: > +1 Maybe rename the standard to agree with the meaning of discovery > document (Simple Open Extensible Resource Discovery Descriptor Format > Markup Language, pick any 7±2), or just call them resource description > documents? Though that sounds confusingly similar to RDF. I did, umm, ask that question...doesn't RDF already do this kind of stuff? > I'm more worried about the security of this. On a signed doc, I'll > have a much easier time invalidating your assertions by messing with > this unsigned header. Since a doc past it's internal <Expires/> date > is absolutely stale, why not say Expires: MUST match or MUST NOT be > present. Seems like there might be caching considerations too. Yes, that's a good point, but by saying it has to match, you end up creating a condition that has to be tested in the implementation, so I think it's simpler just to ignore the HTTP layer there. -- Scott
[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]