Comment 6 for bug 1431015

Revision history for this message
Henry Nash (henry-nash) wrote :

I agree with Dolphm - the design is that either you need a domain-scoped token or you need to explicitly provide a domain as a parameter.....both of which will, of course, be checked against policy