[mdx] Small change proposed to draft-young-md-query-saml-07

Tom Scavo trscavo at gmail.com
Wed Nov 8 14:41:35 PST 2017


On Wed, Nov 8, 2017 at 4:06 PM, Cantor, Scott <cantor.2 at osu.edu> wrote:
> On 11/8/17, 3:59 PM, "Tom Scavo" <trscavo at gmail.com> wrote:
>
>> 2. Extract the 20-byte SourceID value
>
> It in fact is not strictly 20 bytes, as you noted

If I said that, I lied, since the SourceID is 20 bytes by definition.

> and we currently blindly send any SourceID we find in the {SHA1} bucket.

I would say that's a problem. If you do that, how can a responder
detect malformed identifiers with the {sha1} syntax?

Tom


More information about the mdx mailing list