Re: Artart last call review of draft-ietf-httpbis-message-signatures-16

On 07.03.2023 18:39, Justin Richer wrote:
> ...
>> 2.1.1 - use of ;bs - the term “known by the application to cause
>> problems with
>> canonicalization” is handwaving. Step 3 of this algorithm seems to
>> assume that
>> all field values have an unique ASCII representation; is this assumption
>> warranted?
>>
>
> For the algorithm to be applied, yes, there needs to be a stable set of
> bytes to encode. If that doesn’t exist, then you can’t use this. If
> there’s a better source for the “bytes of the field value” from HTTP
> semantics, I’d happily refer to that rather than lean on ASCII.
> ...

FWIW, this is <https://github.com/httpwg/http-extensions/issues/2415>.

Best regards, Julian

Received on Wednesday, 8 March 2023 07:57:12 UTC