Newsgroups: php.internals Path: news.php.net Xref: news.php.net php.internals:99963 Return-Path: Mailing-List: contact internals-help@lists.php.net; run by ezmlm Delivered-To: mailing list internals@lists.php.net Received: (qmail 46400 invoked from network); 20 Jul 2017 08:10:20 -0000 Received: from unknown (HELO lists.php.net) (127.0.0.1) by localhost with SMTP; 20 Jul 2017 08:10:20 -0000 Authentication-Results: pb1.pair.com smtp.mail=f.bosch@genkgo.nl; spf=pass; sender-id=pass Authentication-Results: pb1.pair.com header.from=f.bosch@genkgo.nl; sender-id=pass Received-SPF: pass (pb1.pair.com: domain genkgo.nl designates 46.21.156.38 as permitted sender) X-PHP-List-Original-Sender: f.bosch@genkgo.nl X-Host-Fingerprint: 46.21.156.38 mail.genkgo.net Received: from [46.21.156.38] ([46.21.156.38:56398] helo=mail.genkgo.net) by pb1.pair.com (ecelerity 2.1.1.9-wez r(12769M)) with ESMTP id 07/44-02884-96560795 for ; Thu, 20 Jul 2017 04:10:18 -0400 DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=genkgo.nl; s=x; h=Content-Type:In-Reply-To:MIME-Version:Date:Message-ID:From:References :To:Subject:Sender:Reply-To:Cc:Content-Transfer-Encoding:Content-ID: Content-Description:Resent-Date:Resent-From:Resent-Sender:Resent-To:Resent-Cc :Resent-Message-ID:List-Id:List-Help:List-Unsubscribe:List-Subscribe: List-Post:List-Owner:List-Archive; bh=5xbmp6XgdFQwZrbTgtdGZFH7EbshQBQILAHwqBq+KOA=; b=fGZ5bMW2DLJQQZfQixxmKY/5fu 8v+TuTn22SA4AgFHcRovcUESjPajLkaYPbP588HVC+r6PLuYkIt6hhcsUEoeGZ16k9nZwcf6LxUzB t0AjOQZu/4wFwfX9qMezdBKfkcfrQbw2eLpf3VbcjZUWf7V8KnQmz8rOXhMiVkYKbyyLAYd4sTKX7 Yu2+RSPL6ycmChlNaIWtB0DrMJeGwEr7T5gEB4cqoqsrp0n/LNQxWHDixad5DG3eTfAtX142aAl1O VwT5gJ1kUluPwxpdjlKqJ1wbH35BFcrLmeWzXKxlq4Y/0SzUHTz7UNZ64/lu6qO8IWHpRJQ1NaQ+H 2rMByxtw==; Received: from [188.213.225.106] (helo=[192.168.15.254]) by mail.genkgo.net with esmtpsa (TLSv1.2:ECDHE-RSA-AES128-GCM-SHA256:128) (Exim 4.87) (envelope-from ) id 1dY6XH-0000OX-3V for internals@lists.php.net; Thu, 20 Jul 2017 10:10:15 +0200 To: "internals@lists.php.net" References: <14052ebf-efea-cb43-39e0-bdc30e493ff3@genkgo.nl> <08f6d5f1-a7e7-90a3-1b6a-ac353498cef8@genkgo.nl> Message-ID: <4a30e3b3-d149-f76c-23fc-79a09a80b044@genkgo.nl> Date: Thu, 20 Jul 2017 10:10:14 +0200 User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:52.0) Gecko/20100101 Thunderbird/52.2.1 MIME-Version: 1.0 In-Reply-To: Content-Type: multipart/alternative; boundary="------------6187F0618ECA009A2D0B42D2" Content-Language: nl-NL X-Antivirus-Scanner: Clean mail though you should still use an Antivirus Subject: Re: [PHP-DEV] [RFC] samesite cookie implementation From: f.bosch@genkgo.nl (Frederik Bosch | Genkgo) --------------6187F0618ECA009A2D0B42D2 Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: 7bit LS, All concerns that have been put forward are updated in the RFC document. See https://wiki.php.net/rfc/same-site-cookie. I am going to start the voting on August 1, 2017. Exactly two weeks after I posted the RFC on the internals list. If new concerns are put forward in the meanwhile, I will of course update the RFC. Best, Frederik On 19-07-17 17:06, Andrey Andreev wrote: > Hi, > > Not realizing I was looking at EOL dates, I (unintentionally) provided > some wrong info yesterday: > > On Tue, Jul 18, 2017 at 5:13 PM, Andrey Andreev wrote: >> - HttpOnly was released with PHP 5.2.0 in January 2011 - just 3 months prior >> to IETF RFC 6265 (April 2011) becoming a standards track. > PHP 5.2 was of course released way back, in 2006. My apologies for that. > > Cheers, > Andrey. -- Frederik Bosch Partner Genkgo logo Mail: f.bosch@genkgo.nl Web: support.genkgo.com Entrada 123 Amsterdam +31 208 943 931 Genkgo B.V. staat geregistreerd bij de Kamer van Koophandel onder nummer 56501153 --------------6187F0618ECA009A2D0B42D2--