I'd like to see an extension for body signing. It's pretty trivial to
do, but having it standardized somewhere so that libraries can be
written to handle it would be nice.

Alternatively, you could just use HTTPS.

Mike

On Wed, Nov 4, 2009 at 1:56 PM, Brian Eaton <[email protected]> wrote:
>
> On Wed, Nov 4, 2009 at 10:06 AM, Paul Walker <[email protected]> wrote:
>> I would like a user to be able to select a file in a HTML form and input the
>> SHA-1 hash of the file body only and have this request come across according
>> to the spec (hidden inputs would contain the necessary oauth_ parameters).
>
> Whoa.  This is a weird use case.  You're going to tell users to take
> sha1 hashes of files and paste them into HTML forms?
>
> Cheers,
> Brian
>
> >
>

--~--~---------~--~----~------------~-------~--~----~
You received this message because you are subscribed to the Google Groups 
"OAuth" group.
To post to this group, send email to [email protected]
To unsubscribe from this group, send email to [email protected]
For more options, visit this group at http://groups.google.com/group/oauth?hl=en
-~----------~----~----~----~------~----~------~--~---

Reply via email to