CARVIEW |
Select Language
HTTP/2 200
date: Wed, 08 Oct 2025 05:10:37 GMT
content-type: text/html;charset=utf-8
content-encoding: gzip
content-location: 121.html
vary: negotiate,Accept-Encoding
tcn: choice
last-modified: Mon, 11 Oct 2010 09:35:03 GMT
cache-control: max-age=21600
expires: Wed, 08 Oct 2025 11:10:36 GMT
x-backend: www-mirrors
x-request-id: 98b321ffcbf69ac4
strict-transport-security: max-age=15552000; includeSubdomains; preload
content-security-policy: frame-ancestors 'self' https://cms.w3.org/ https://cms-dev.w3.org/; upgrade-insecure-requests
cf-cache-status: BYPASS
set-cookie: __cf_bm=eMiztrpHCTEdyQ3oHMzFYyD83jJF1CH3P.NWu8S4MrA-1759900237-1.0.1.1-Gxm7cI0lDxN_JtbWcbjBWnYXz4cvz3MSGh.T_if0uSMl3uWTe7_DUfONm8vfK4wwqzqBzkhf8etgjBK11QrLcNDcerhqHHHGLCbNg9B1yRg; path=/; expires=Wed, 08-Oct-25 05:40:37 GMT; domain=.w3.org; HttpOnly; Secure; SameSite=None
server: cloudflare
cf-ray: 98b321ffcbf69ac4-BLR
alt-svc: h3=":443"; ma=86400
ISSUE-121 - Web Security Context Working Group Tracker
Mary Ellen Zurko <mzurko@us.ibm.com>, Chair, Thomas Roessler <tlr@w3.org>, Staff Contact
Tracker (configuration for this group), originally developed by Dean Jackson, is developed and maintained by the Systems Team <w3t-sys@w3.org>.
$Id: 121.html,v 1.1 2010/10/11 09:35:04 dom Exp $
Web Security Context Working Group Issue Tracking
- Summary
- Issues:
- Actions:
- Users
- Products
- Agenda planning
- Recent activity
ISSUE-121
Safe Form Bar certificate matching issues
- State:
- CLOSED
- Product:
- wsc-xit-past-062008
- Raised by:
- Thomas Roessler
- Opened on:
- 2007-10-11
- Description:
- The safe form bar specification includes a specific matching algorithm for PKIX certificates. This algorithm should be reviewed in light of what the PKIX spec itself says.
Known issues:
- There is some material based on CN, but subjectAltName is ignored
- Two certificates are considered identical if the same key material is encapsulated
- The text uses the notion of "same certification authority", and defines that notion in terms of "both installed as trusted certificate chain roots identified by the same name in the user agent's presentation to the user", as opposed to using the certificate's isuser field. (Note contradiction to material elsewhere in the spec!)
- Certificates are considered to identify the same entity based on comparing specific attributes of the subject field.
- Related Actions Items:
ACTION-355 on Yngve Pettersen to Describe algorithms commonly used to create display names of certificates - due 2007-12-12, closed- Related emails:
- Draft Minutes for 2009-01-21 (from maritzaj@cs.columbia.edu on 2009-01-22)
- ACTION-317: Different notions of KCM in different parts of the document (from tlr@w3.org on 2008-01-17)
- Mez' review of wsc-xit (from Mary_Ellen_Zurko@notesdev.ibm.com on 2007-12-07)
- ACTION-348: cert related terminology (from stephen.farrell@cs.tcd.ie on 2007-12-05)
- Agenda: WSC WG distributed meeting, Wednesday, 2007-12-05 (from Mary_Ellen_Zurko@notesdev.ibm.com on 2007-12-04)
- ISSUE-121: Safe Form Bar certificate matching issues [Techniques] (from sysbot+tracker@w3.org on 2007-10-11)
Related notes:
https://www.w3.org/2006/WSC/drafts/rec/rewrite.html#safebar-associating
Thomas Roessler, 11 Oct 2007, 10:35:23Display change log
Mary Ellen Zurko <mzurko@us.ibm.com>, Chair, Thomas Roessler <tlr@w3.org>, Staff Contact
Tracker (configuration for this group), originally developed by Dean Jackson, is developed and maintained by the Systems Team <w3t-sys@w3.org>.
$Id: 121.html,v 1.1 2010/10/11 09:35:04 dom Exp $