diff options
author | Andrew Arnott <andrewarnott@gmail.com> | 2010-07-15 22:17:09 -0700 |
---|---|---|
committer | Andrew Arnott <andrewarnott@gmail.com> | 2010-07-15 22:17:09 -0700 |
commit | b6538d4e180424d418624fbf4ec46d6f4f0374e9 (patch) | |
tree | 869fc48e65c7e59a1b606efc2f18950758c28897 /src/DotNetOpenAuth.Test/Messaging/CollectionAssert.cs | |
parent | e85b35afa0000ae2542f9cce97320446163eab62 (diff) | |
download | DotNetOpenAuth-b6538d4e180424d418624fbf4ec46d6f4f0374e9.zip DotNetOpenAuth-b6538d4e180424d418624fbf4ec46d6f4f0374e9.tar.gz DotNetOpenAuth-b6538d4e180424d418624fbf4ec46d6f4f0374e9.tar.bz2 |
Fixed message expiration check to also disallow post-dated timestamps.
This is a security mitigation for those who are trying to brute force a message signature, and might otherwise give themselves a huge time window by setting a nonce date far into the future.
Diffstat (limited to 'src/DotNetOpenAuth.Test/Messaging/CollectionAssert.cs')
0 files changed, 0 insertions, 0 deletions