Re: Straw-man charter for http-bis

Keith Moore <moore@cs.utk.edu> Fri, 01 June 2007 18:56 UTC

Return-path: <discuss-bounces@apps.ietf.org>
Received: from [127.0.0.1] (helo=stiedprmman1.va.neustar.com) by megatron.ietf.org with esmtp (Exim 4.43) id 1HuCIf-0002Cz-NV; Fri, 01 Jun 2007 14:56:37 -0400
Received: from discuss by megatron.ietf.org with local (Exim 4.43) id 1HuCIe-0002Cr-Cp for discuss-confirm+ok@megatron.ietf.org; Fri, 01 Jun 2007 14:56:36 -0400
Received: from [10.91.34.44] (helo=ietf-mx.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1HuCIe-0002Cj-39 for discuss@apps.ietf.org; Fri, 01 Jun 2007 14:56:36 -0400
Received: from shu.cs.utk.edu ([160.36.56.39]) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1HuCIc-0003Pi-Se for discuss@apps.ietf.org; Fri, 01 Jun 2007 14:56:36 -0400
Received: from localhost (localhost [127.0.0.1]) by shu.cs.utk.edu (Postfix) with ESMTP id 2AB4C1EE18A; Fri, 1 Jun 2007 14:56:33 -0400 (EDT)
X-Virus-Scanned: by amavisd-new with ClamAV and SpamAssasin at cs.utk.edu
Received: from shu.cs.utk.edu ([127.0.0.1]) by localhost (bes.cs.utk.edu [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id LLx73cEWAlVv; Fri, 1 Jun 2007 14:55:52 -0400 (EDT)
Received: from lust.indecency.org (user-119b1dm.biz.mindspring.com [66.149.133.182]) by shu.cs.utk.edu (Postfix) with ESMTP id 3BC7F1EE179; Fri, 1 Jun 2007 14:55:46 -0400 (EDT)
Message-ID: <46606BB0.1050608@cs.utk.edu>
Date: Fri, 01 Jun 2007 14:55:44 -0400
From: Keith Moore <moore@cs.utk.edu>
User-Agent: Thunderbird 2.0.0.0 (Macintosh/20070326)
MIME-Version: 1.0
To: Stefan Eissing <stefan.eissing@greenbytes.de>
Subject: Re: Straw-man charter for http-bis
References: <BA772834-227A-4C1B-9534-070C50DF05B3@mnot.net> <392C98BA-E7B8-44ED-964B-82FC48162924@mnot.net> <1358AF2C-F967-46D6-B291-BC65126CCDF6@gbiv.com> <8FBD37BC-E635-485D-A368-22D9DE332498@mnot.net> <DAC34319-CB4D-48B6-A53F-66345790F0FA@gbiv.com> <68fba5c50705311804w2d39ea88o985d9b6a8aa33220@mail.gmail.com> <6C26C1C5-B99B-41EA-989A-F86DCF8489FC@mnot.net> <4C044C0E-C6B8-4816-9243-FAB72DA5F24F@gbiv.com> <7E09FD13-FA92-474F-B394-C732393EF354@mnot.net> <68fba5c50706010809r3632445cj24305edadc36340f@mail.gmail.com> <46604F92.4020404@cs.utk.edu> <2EE82D2A-CFEB-4F61-9C33-802C75483AE6@greenbytes.de>
In-Reply-To: <2EE82D2A-CFEB-4F61-9C33-802C75483AE6@greenbytes.de>
X-Enigmail-Version: 0.95.0
OpenPGP: id=E1473978
Content-Type: text/plain; charset=ISO-8859-1
Content-Transfer-Encoding: 7bit
X-Spam-Score: 0.1 (/)
X-Scan-Signature: 30ac594df0e66ffa5a93eb4c48bcb014
Cc: Apps Discuss <discuss@apps.ietf.org>, Mark Nottingham <mnot@mnot.net>, "Roy T. Fielding" <fielding@gbiv.com>, "ietf-http-wg@w3.org Group" <ietf-http-wg@w3.org>, Robert Sayre <sayrer@gmail.com>
X-BeenThere: discuss@apps.ietf.org
X-Mailman-Version: 2.1.5
Precedence: list
List-Id: general discussion of application-layer protocols <discuss.apps.ietf.org>
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/discuss>, <mailto:discuss-request@apps.ietf.org?subject=unsubscribe>
List-Post: <mailto:discuss@apps.ietf.org>
List-Help: <mailto:discuss-request@apps.ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/discuss>, <mailto:discuss-request@apps.ietf.org?subject=subscribe>
Errors-To: discuss-bounces@apps.ietf.org

> Taking a step back, what needs attention from the best of minds is
> 2617. Let's face it: http authentication is awkward and compared to
> the rest of the protocol it feels like a child's toy, sitting in the
> glove compartment of a BMW.
very much agree.  HTTP authentication as it currently exists is nearly
useless, and forms-and-cookie authentication (at least as it tends to be
implemented) isn't sufficient.