← Prev in month ← Prev in thread
Next in thread → Next in month →

A browser/POST question...

From
Philpott, Robert <>
Date
2003-05-01T00:53:24+00:00
ID
Thread
A browser/POST question...
In the browser/artifact profile, we now say that ConfirmationData
SHOULD NOT be supplied.  But in Browser/POST, we say nothing about ConfirmationData. 
I looked back through the mail archive, but couldn't find a conclusive
statement.  For consistency and completeness of the B&P spec, I think
we should provide a normative statement about it.  I've assumed MUST
NOT applies, but then I haven't thought about it a lot.  So is ConfirmationData
a "MUST NOT", "SHOULD NOT", "MAY", or
something else? 

 

Thanks!

Rob Philpott 

RSA Security Inc. 

The Most Trusted Name in e-Security 

Tel: 781-515-7115 

Mobile: 617-510-0893 

Fax: 781-515-7020 

mailto:
← Prev in month ← Prev in thread
Next in thread → Next in month →