> There are many lessons to be learned from this: that a bearer token that is
> repeated many times is not a good idea; that the trust model in the web is
> not great; but also that blindly compressing content with no regard to its
> structure and sources is dangerous and reveals information about the
> cleartext.  A security protocol should not do that.

This is a great note, and excellent explanation.

--  
Senior Architect, Akamai Technologies
IM: richs...@jabber.at Twitter: RichSalz


_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls

Reply via email to