From 1a051c4e47a1dadfea472482639f576fe5d71c4b Mon Sep 17 00:00:00 2001 From: Micke Nordin Date: Wed, 29 Oct 2025 11:22:29 +0100 Subject: [PATCH] Require http-sig for Directory Service response Signed-off-by: Micke Nordin --- IETF-RFC.md | 3 +++ 1 file changed, 3 insertions(+) diff --git a/IETF-RFC.md b/IETF-RFC.md index 83f04e1..d467a0b 100644 --- a/IETF-RFC.md +++ b/IETF-RFC.md @@ -1294,6 +1294,9 @@ format: } ``` +A Directory Service MUST sign its responses using httpsig [RFC9421], so +clients can verify the authenticity of the response. + # Acknowledgements Our deepest thanks and appreciation go to the people who started the