> This is embarrassing for the whole wg for not spotting the syntax
> laxness.  And embarrassing to all the security folk.  There's a
> standard problem in security protocols about not signing any old group
> of bits you are given because the signed bits might be used in some
> other context.  So this should have been spotted much earlier.

bettr late than never.  and a good security geek did spot it.  good on
david.

randy

_______________________________________________
sidr mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/sidr

Reply via email to