OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

xri message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]


Subject: RE: [xri] XRD feedback from Scott


Joseph Anthony Pasquale Holsten wrote on 2009-05-27:
> +1 Maybe rename the standard to agree with the meaning of discovery
> document (Simple Open Extensible Resource Discovery Descriptor Format
> Markup Language, pick any 7±2), or just call them resource description
> documents? Though that sounds confusingly similar to RDF.

I did, umm, ask that question...doesn't RDF already do this kind of stuff?

> I'm more worried about the security of this. On a signed doc, I'll
> have a much easier time invalidating your assertions by messing with
> this unsigned header. Since a doc past it's internal <Expires/> date
> is absolutely stale, why not say Expires: MUST match or MUST NOT be
> present. Seems like there might be caching considerations too.

Yes, that's a good point, but by saying it has to match, you end up creating
a condition that has to be tested in the implementation, so I think it's
simpler just to ignore the HTTP layer there.

-- Scott




[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]