> There are many lessons to be learned from this: that a bearer token that is > repeated many times is not a good idea; that the trust model in the web is > not great; but also that blindly compressing content with no regard to its > structure and sources is dangerous and reveals information about the > cleartext. A security protocol should not do that.
This is a great note, and excellent explanation. -- Senior Architect, Akamai Technologies IM: richs...@jabber.at Twitter: RichSalz _______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls