On July 17, 2005 at 17:06, Ned Freed wrote:
Repeating what I've said in previous messages:
(1) Simple mode canonicalization needs to ignore header folding. It also
probably should ignore header field name capitalization.
I agree. Simple, as it is now, violates the semantics of RFC-2822.
(2) Language needs to be added to the effect that noswp mode SHOULD be used
unless you know for sure that simple mode will work in your situation.
I believe you have suggested that simple not be the default, I'm
inclined to agree with that. The default canonicalization algorithm
should be the one that provides most chance of success (of course,
with the acceptable level of security risk) so users will gain
confidence that the system works.