I THINK IT MAKES SENSE FOR SPECIFICATIONS THAT USE THE
ACCESS CONTROL
MECHANISM TO CAREFULLY DEFINE WHAT THE "REQUEST
URL" IS. IT'S NOT CLEAR TO
ME THAT IT BE DONE IN A GENERIC WAY WITHIN THE ACCESS
CONTROL
SPECIFICATION ITSELF. SUGGESTIONS WELCOME. LATEST VERSION OF
THE DRAFT:
HTTP://DEV.W3.ORG/CVSWEB/~CHECKOUT~/2006/WAF/ACCESS-CONTROL/
OVERVIEW.HTML?CONTENT-TYPE=TEXT/HTML;%20CHARSET=UTF-8
(THE "REQUEST URL" IS THE LOCATION OF THE OBJECT
FROM WHICH THE REQUEST TO
THE RESOURCE, TO WHICH THE ACCESS CONTROL READ POLICY
APPLIES, ORIGINATES.)
--
ANNE VAN KESTEREN
<HTTP://ANNEVANKESTEREN.NL/>
<HTTP://WWW.OPERA.COM/>
|