- From: Martin Thomson <martin.thomson@gmail.com>
- Date: Fri, 6 Mar 2015 11:23:16 -0800
- To: Bob Briscoe <bob.briscoe@bt.com>
- Cc: Mike Belshe <mbelshe@chromium.org>, "fenix@google.com" <fenix@google.com>, HTTP Working Group <ietf-http-wg@w3.org>
On 6 March 2015 at 11:05, Bob Briscoe <bob.briscoe@bt.com> wrote: > Why does padding have to be filled with zeros? There are good cryptographic > reasons for not requiring this. Remember POODLE, I think that the opposite is true. Also c.f. IND-CCA (and IND-CCA2).
Received on Friday, 6 March 2015 19:23:43 UTC