Re: Order of header field names in h= tag
> On 24 mrt. 2016, at 09:48, SM <sm_at_resistor.net> wrote:
>
> Hi Maarten,
> At 13:58 23-03-2016, Maarten Oelering wrote:
>> Does anyone know a reason for wanting to order field names top to bottom in "h="?
>> If they were ordered bottom to top than signing implementations would be much simpler.
>
> The latest header fields are usually inserted at the top of header block. It is better to sign the latest occurrences of the header fields if the "signer" has inserted those fields. The issue is about ordering, i.e. should the "signer" assume that the latest header field was inserted at the top or the bottom of the header block.
But the spec says that repeated header fields should be signed bottom first. So if only one instance of a header field is signed, it should be the bottom one.
If you ask me there is no option of signing just the last inserted (top) instance of a field. It can be either only the first inserted (bottom) instance, or all instances.
Maarten
Received on Thu Mar 24 2016 - 12:30:25 PST
This archive was generated by hypermail 2.3.0
: Thu Mar 24 2016 - 12:36:00 PST