ISSUE-207: Update wording of best practice in 2.2.2 since empty result could be intentional, e.g. sign element even if missing. text to modify "In this case there is XPath transform, which evaluates to zero or false for every node, so it ends up selecting nothing. So even though the signature seems to sign the Approval, it actually doesn't. The application should reject this document."

ISSUE-207: Update wording of best practice in 2.2.2 since empty result could be intentional, e.g. sign element even if missing. text to modify "In this case there is XPath transform, which evaluates to zero or false for every node, so it ends up selecting nothing. So even though the signature seems to sign the Approval, it actually doesn't. The application should reject this document."

http://www.w3.org/2008/xmlsec/track/issues/207

Raised by: 
On product: 

Received on Tuesday, 29 June 2010 14:46:05 UTC