Paul Hoffman wrote:
The latter. In IETF documents, there should be a section that tells you how to do security, and another section that shows the bigger picture about security (such as known threats, other interesting security work, and so on).
I can tell this isn't worth arguing about :) I've withdrawn the pace and notified Sam.
cheers Bill
