Paul C. Bryan wrote:
...
1. Payload would need to be embedded in the data element of the
signature, so we'd be duplicating payload to support digital signatures.

Would not just hash of the payload be enough?

Igor
_______________________________________________
OAuth mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/oauth

Reply via email to