Also, @metromoxie has implemented a pass at https://tools.ietf.org/html/draft-west-leave-secure-cookies-alone …. We might still tweak the eviction rules, but secure now means secure.
@mikewest @metromoxie Is it not possible to simply say that you should never delete a secure cookie to make room for a non-secure cookie?
-
-
@BRIAN_____: Yes. That's what we want to say. That's what I think the spec says. I'm pretty sure that's what@metromoxie implemented. :) -
@mikewest@metromoxie "before removing any non-expired secure cookie" != "without ever removing any non-expired secure cookie". -
@BRIAN_____: They're equivalent, right? Eviction happens when inserting a cookie exceeds a limit, and we evict non-secure first.@metromoxie
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.