|
[XML-DEV Mailing List Archive Home] [By Thread] [By Date] [Recent Entries] [Reply To This Message] Re: Excellent IETF BCP on XML
miles@m... (Miles Sabin) writes: >> So is RDDL now a security risk? > >Potentially ... yes. > >How many times have we discussed the external entity thing on this list >now? Any of the issues with them apply equally here. Given that RDDL itself contains further links to resources, this probably needs some kind of direct addressing; "security" doesn't appear in the current spec. >And in fact David Megginson warned about the dangers of automagically >dereferencing namespace URIs long before RDDL came along, > > http://lists.xml.org/archives/xml-dev/200101/msg00057.html David's been way ahead of most on these issues. -- Simon St.Laurent Ring around the content, a pocket full of brackets Errors, errors, all fall down! http://simonstl.com -- http://monasticxml.org
|
PURCHASE STYLUS STUDIO ONLINE TODAY!Purchasing Stylus Studio from our online shop is Easy, Secure and Value Priced! Download The World's Best XML IDE!Accelerate XML development with our award-winning XML IDE - Download a free trial today! Subscribe in XML format
|
|||||||||

Cart








