Open tfpauly opened 1 month ago
My understanding is that in the cases where there is no interaction, just a chunked response after a request completes, there isn't any new impact of a malicious replay by a relay (assuming the request is idempotent).
In the interactive case, agreed that more analysis would be good.
https://github.com/ietf-wg-ohai/draft-ohai-chunked-ohttp/pull/25#pullrequestreview-2370940482
From @martinthomson 's comment: