You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
According to 3.1.4.3, step 13.1, sources with hosts *.example.org and *.sub.example.org are not similar. So their intersection is empty. However, CSP host-part matching algorithm prescribes that *.example.org matches subdomains of any level of .example.org. So for consistency reasons I think that the intersection of *.example.org and *.sub.example.org should rather be *.sub.example.org.
The text was updated successfully, but these errors were encountered:
According to
3.1.4.3
, step13.1
, sources with hosts*.example.org
and*.sub.example.org
are not similar. So their intersection is empty. However, CSP host-part matching algorithm prescribes that*.example.org
matches subdomains of any level of.example.org
. So for consistency reasons I think that the intersection of*.example.org
and*.sub.example.org
should rather be*.sub.example.org
.The text was updated successfully, but these errors were encountered: