Skip to content
This repository has been archived by the owner on Apr 5, 2024. It is now read-only.

Commit

Permalink
Merge pull request #135 from SevereOverfl0w/patch-1
Browse files Browse the repository at this point in the history
Fix a typo in Readme
  • Loading branch information
Eran Hammer committed Jan 14, 2015
2 parents 348f25b + babcd6d commit dc620dc
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion README.md
Expand Up @@ -602,7 +602,7 @@ but with the additional security of delegated credentials.

When calculating a hash or MAC, a static prefix (tag) is added. The prefix is used to prevent MAC values from being
used or reused for a purpose other than what they were created for (i.e. prevents switching MAC values between a request,
response, and a bewit use cases). It also protects against expliots created after a potential change in how the protocol
response, and a bewit use cases). It also protects against exploits created after a potential change in how the protocol
creates the normalized string. For example, if a future version would switch the order of nonce and timestamp, it
can create an exploit opportunity for cases where the nonce is similar in format to a timestamp.

Expand Down

0 comments on commit dc620dc

Please sign in to comment.