Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

+1 from the W3C TAG #94

Closed
torgo opened this issue Mar 30, 2015 · 1 comment · Fixed by #108
Closed

+1 from the W3C TAG #94

torgo opened this issue Mar 30, 2015 · 1 comment · Fixed by #108

Comments

@torgo
Copy link

torgo commented Mar 30, 2015

The W3C Technical Architecture Group (TAG) (@w3ctag) is happy to see that the United States government is considering the requirement of encryption and authentication (through use of HTTPS) on all publicly-accessible government Web sites. Doing so will increase the security of people who interact with the government and encourage adoption of a more secure Web, as we documented in the “Securing the Web” finding.

A government requirement sends a strong message that encryption and authentication are necessary for Web security, and will encourage government vendors to embrace providing secure services. As has been noted elsewhere, the incremental cost of doing so falling; thanks to efforts like this, we expect it to continue to drop. While good government needs to be cost-conscious, it should not come at the cost of security.

We note also that where facilities are moved from an http: URL to an https: URL, a redirections should be set up so that existing links do not break. There is ongoing work within the W3C to make this transition easier, and we encourage interested parties to contribute to the WebAppSec Working Group and elsewhere.

Tim Berners-Lee, @timbl (Chair)
Daniel Appelquist, @torgo (Chair)
Peter Linss, @plinss (Chair)
Yves Lafon, @ylafon
Travis Leithead, @travisleithead
Mark Nottingham, @mnot
Alex Russell, @slightlyoff
Yan Zhu, @diracdeltas

@torgo torgo changed the title +1 from the W3C TAG +1 from the @w3ctag Mar 30, 2015
@torgo torgo changed the title +1 from the @w3ctag +1 from the W3C TAG Mar 30, 2015
@wseltzer
Copy link

wseltzer commented Apr 7, 2015

+1 It's great to see the US Government leveraging open standards to promote private and integrity-assured access to government information.
Wendy Seltzer, @wseltzer, W3C Policy Counsel and Technology & Society Domain Lead.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging a pull request may close this issue.

3 participants