Re: [apps-discuss] I-D Action: draft-nottingham-http-browser-hints-02.txt

Mykyta Yevstifeyev <evnikita2@gmail.com> Wed, 31 August 2011 14:37 UTC

Return-Path: <evnikita2@gmail.com>
X-Original-To: apps-discuss@ietfa.amsl.com
Delivered-To: apps-discuss@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5E31A21F8AFC for <apps-discuss@ietfa.amsl.com>; Wed, 31 Aug 2011 07:37:56 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.472
X-Spam-Level:
X-Spam-Status: No, score=-3.472 tagged_above=-999 required=5 tests=[AWL=0.127, BAYES_00=-2.599, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id MJbYTc8oZjnX for <apps-discuss@ietfa.amsl.com>; Wed, 31 Aug 2011 07:37:55 -0700 (PDT)
Received: from mail-bw0-f44.google.com (mail-bw0-f44.google.com [209.85.214.44]) by ietfa.amsl.com (Postfix) with ESMTP id 4BEBB21F8AC3 for <apps-discuss@ietf.org>; Wed, 31 Aug 2011 07:37:55 -0700 (PDT)
Received: by bkar4 with SMTP id r4so1108273bka.31 for <apps-discuss@ietf.org>; Wed, 31 Aug 2011 07:39:25 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=message-id:date:from:user-agent:mime-version:to:cc:subject :references:in-reply-to:content-type:content-transfer-encoding; bh=XkjlC1als5JOvtDgL29jhVCZx6Vm3ldL5QW6zeRJ2JY=; b=LcFph9+9PmoaocLmELK5kGSj/kQLB9qGseUwxps7Lql8yFQVro6Bk0PrGkGisNAGRo NnHH3rHHU8EZLzzmi0v8sx1/Mv9u4ZypsBq4/Kq6DpWgXf8SP+ZPz7vi/WzxwPu+iQAv RxzhFEms3XhhxQD0wv1P0YgAgXEeT3bm2vSZ8=
Received: by 10.204.143.82 with SMTP id t18mr306699bku.174.1314801564850; Wed, 31 Aug 2011 07:39:24 -0700 (PDT)
Received: from [127.0.0.1] ([195.191.104.224]) by mx.google.com with ESMTPS id v27sm208029bkt.15.2011.08.31.07.39.22 (version=SSLv3 cipher=OTHER); Wed, 31 Aug 2011 07:39:23 -0700 (PDT)
Message-ID: <4E5E47BB.3010403@gmail.com>
Date: Wed, 31 Aug 2011 17:39:55 +0300
From: Mykyta Yevstifeyev <evnikita2@gmail.com>
User-Agent: Mozilla/5.0 (Windows NT 5.1; rv:6.0) Gecko/20110812 Thunderbird/6.0
MIME-Version: 1.0
To: Mark Nottingham <mnot@mnot.net>
References: <20110531062229.28776.82429.idtracker@ietfa.amsl.com> <0CE9268E-5802-4B0A-B643-F580E7F048B5@mnot.net> <4E5BB162.6010101@gmail.com> <D42B156C-33BD-4F8F-8958-A2E7900E055D@mnot.net>
In-Reply-To: <D42B156C-33BD-4F8F-8958-A2E7900E055D@mnot.net>
Content-Type: text/plain; charset="ISO-8859-1"; format="flowed"
Content-Transfer-Encoding: 7bit
Cc: apps-discuss@ietf.org
Subject: Re: [apps-discuss] I-D Action: draft-nottingham-http-browser-hints-02.txt
X-BeenThere: apps-discuss@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: General discussion of application-layer protocols <apps-discuss.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/apps-discuss>, <mailto:apps-discuss-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/apps-discuss>
List-Post: <mailto:apps-discuss@ietf.org>
List-Help: <mailto:apps-discuss-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/apps-discuss>, <mailto:apps-discuss-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 31 Aug 2011 14:37:56 -0000

30.08.2011 4:03, Mark Nottingham wrote:
> I didn't go in this direction because it *seems* to conflict with the STS effort in websec. Maybe someone from over there could comment?

I understand that HSTS is only useful when site declares that HTTPS must 
be used any time when connecting to it.  Specific areas/resources may 
not be declared to be so (If I'm wrong, correct me).

Anyway, an alternative is never a bad thing.

Mykyta Yevstifeyev

>
> Cheers,
>
> s
> On 30/08/2011, at 1:33 AM, Mykyta Yevstifeyev wrote:
>
>> Proposal for a new hint:
>>
>>> 5.8.  https
>>>
>>>     o  Browser Hint Name: https
>>>     o  Description: When true, this hint indicates the user agent may
>>>        use HTTPS and, correspondigly, 'https' URI scheme [RFC2818] with
>>>        the specific areas (resources) of the site.
>>>     o  Value Type: prefixlist
>>>     o  Contact: /somebody/
>> Mykyta Yevstifeyev
>>
>> 31.05.2011 9:28, Mark Nottingham wrote:
>>> FYI. Diffs at:
>>>    http://tools.ietf.org/rfcdiff?url2=draft-nottingham-http-browser-hints-02
>>>
>>> Changelog:
>>>    - removed Ref header and rearranged referer-based hints
>>>    - added 'prefixlist' value type
>>>    - changed omit-cookies from list of cookie names to prefixlist
>>>    - added caching advice for 404s
>>>
>>> Feedback appreciated, as always.
>>>
>>>
>>>
>>> Begin forwarded message:
>>>
>>>> From: internet-drafts@ietf.org
>>>> Date: 31 May 2011 4:22:29 PM AEST
>>>> To: i-d-announce@ietf.org
>>>> Subject: I-D Action: draft-nottingham-http-browser-hints-02.txt
>>>> Reply-To: internet-drafts@ietf.org
>>>>
>>>> A New Internet-Draft is available from the on-line Internet-Drafts directories.
>>>>
>>>> 	Title           : HTTP Browser Hints
>>>> 	Author(s)       : Mark Nottingham
>>>> 	Filename        : draft-nottingham-http-browser-hints-02.txt
>>>> 	Pages           : 9
>>>> 	Date            : 2011-05-30
>>>>
>>>>    Over time, Web browsers have adapted how they use HTTP based upon
>>>>    common server configurations and behaviours.  While this is necessary
>>>>    in the common case, it can be detrimental for performance and
>>>>    interoperability.
>>>>
>>>>    This document establishes a mechanism whereby origin servers can make
>>>>    available hints for browsers about their preferences and
>>>>    capabilities, without imposing overhead on their interactions or
>>>>    requiring support for them.
>>>>
>>>>    This is intended to allow browsers to safely optimise connections to
>>>>    servers.
>>>>
>>>>
>>>> A URL for this Internet-Draft is:
>>>> http://www.ietf.org/internet-drafts/draft-nottingham-http-browser-hints-02.txt
>>>>
>>>> Internet-Drafts are also available by anonymous FTP at:
>>>> ftp://ftp.ietf.org/internet-drafts/
>>>>
>>>> This Internet-Draft can be retrieved at:
>>>> ftp://ftp.ietf.org/internet-drafts/draft-nottingham-http-browser-hints-02.txt
>>>> _______________________________________________
>>>> I-D-Announce mailing list
>>>> I-D-Announce@ietf.org
>>>> https://www.ietf.org/mailman/listinfo/i-d-announce
>>>> Internet-Draft directories: http://www.ietf.org/shadow.html
>>>> or ftp://ftp.ietf.org/ietf/1shadow-sites.txt
>>> --
>>> Mark Nottingham   http://www.mnot.net/
>>>
>>>
>>>
>>> _______________________________________________
>>> apps-discuss mailing list
>>> apps-discuss@ietf.org
>>> https://www.ietf.org/mailman/listinfo/apps-discuss
>>>
>> _______________________________________________
>> apps-discuss mailing list
>> apps-discuss@ietf.org
>> https://www.ietf.org/mailman/listinfo/apps-discuss
> --
> Mark Nottingham   http://www.mnot.net/
>
>
>
>