Does curl validate the ":authority" header of HTTP/2 PUSH_PROMISE frames or is this left as an "exercise" to implementers? The RFC says it MUST be validated, so maybe that's already done by default? Does anyone know?
Thanks for the help, Nicolas
------------------------------------------------------------------- Unsubscribe: https://cool.haxx.se/list/listinfo/curl-library Etiquette: https://curl.haxx.se/mail/etiquette.html