- From: Joseph Reagle <reagle@w3.org>
- Date: Tue, 4 Feb 2003 13:50:42 -0500
- To: "Hallam-Baker, Phillip" <pbaker@verisign.com>, stephen.farrell@baltimore.ie
- Cc: www-xkms@w3.org
On Tuesday 04 February 2003 12:52, Hallam-Baker, Phillip wrote: > As a minimum RequestID becomes optional. Otherwise RequestID is in the > context that is signed and so the response has to be dynamic - which is > not suprising since that it the whole point of RequestID Do those with better memory remember why we made it required in the first place? Was it satisfying some requirement with respect to security or correspondence within the asynchronous/multi-stage query/response?
Received on Tuesday, 4 February 2003 13:50:46 UTC