Re: Straw-man charter for http-bis -- call for errata/clarifications to 2617

Cyrus Daboo <cyrus@daboo.name> Thu, 31 May 2007 21:16 UTC

Return-path: <discuss-bounces@apps.ietf.org>
Received: from [127.0.0.1] (helo=stiedprmman1.va.neustar.com) by megatron.ietf.org with esmtp (Exim 4.43) id 1Hts0g-00035B-7j; Thu, 31 May 2007 17:16:42 -0400
Received: from discuss by megatron.ietf.org with local (Exim 4.43) id 1Hts0e-000356-Lq for discuss-confirm+ok@megatron.ietf.org; Thu, 31 May 2007 17:16:40 -0400
Received: from [10.91.34.44] (helo=ietf-mx.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1Hts0e-00034y-CG for discuss@apps.ietf.org; Thu, 31 May 2007 17:16:40 -0400
Received: from piper.mulberrymail.com ([151.201.22.177] helo=mulberrymail.com) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1Hts0d-0003O8-05 for discuss@apps.ietf.org; Thu, 31 May 2007 17:16:40 -0400
Received: from caldav.corp.apple.com ([17.101.32.44]) (authenticated bits=0) by mulberrymail.com (8.13.6/8.13.6) with ESMTP id l4VLG7vA026639 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO); Thu, 31 May 2007 17:16:17 -0400
Date: Thu, 31 May 2007 17:16:02 -0400
From: Cyrus Daboo <cyrus@daboo.name>
To: Henrik Nordstrom <henrik@henriknordstrom.net>
Subject: Re: Straw-man charter for http-bis -- call for errata/clarifications to 2617
Message-ID: <BE9343000CA9252766BBCA03@caldav.corp.apple.com>
In-Reply-To: <1180637848.4471.11.camel@henriknordstrom.net>
References: <BA772834-227A-4C1B-9534-070C50DF05B3@mnot.net> <392C98BA-E7B8-44ED-964B-82FC48162924@mnot.net> <p06240843c2833f4d7f2f@10.20.30.108> <465D9142.9050506@gmx.de> <465D987F.5070906@cisco.com> <C1E6F3CB-49C6-4C0F-955A-3D69D26987C6@mnot.net> <000c01c7a318$7bc243e0$7346cba0$@org> <E21FCD3A-D51A-4C06-B46D-3EA3ED54592B@mnot.net> <68fba5c50705302228v7f8ab278y50cf38c9f971f0a3@mail.gmail.com> <AF50DDD797FD9753B3C31D92@ninevah.local> <1180637848.4471.11.camel@henriknordstrom.net>
X-Mailer: Mulberry/4.1.0a1 (Mac OS X)
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii; format=flowed
Content-Transfer-Encoding: 7bit
Content-Disposition: inline
X-Spam-Status: No, score=0.0 required=5.0 tests=none autolearn=disabled version=3.1.1
X-Spam-Checker-Version: SpamAssassin 3.1.1 (2006-03-10) on piper.mulberrymail.com
X-Spam-Score: 0.0 (/)
X-Scan-Signature: 856eb5f76e7a34990d1d457d8e8e5b7f
Cc: Eliot Lear <lear@cisco.com>, Larry Masinter <LMM@acm.org>, Robert Sayre <sayrer@gmail.com>, Apps Discuss <discuss@apps.ietf.org>, Mark Nottingham <mnot@mnot.net>, ietf-http-wg@w3.org, Paul Hoffman <phoffman@imc.org>
X-BeenThere: discuss@apps.ietf.org
X-Mailman-Version: 2.1.5
Precedence: list
List-Id: general discussion of application-layer protocols <discuss.apps.ietf.org>
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/discuss>, <mailto:discuss-request@apps.ietf.org?subject=unsubscribe>
List-Post: <mailto:discuss@apps.ietf.org>
List-Help: <mailto:discuss-request@apps.ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/discuss>, <mailto:discuss-request@apps.ietf.org?subject=subscribe>
Errors-To: discuss-bounces@apps.ietf.org

Hi Henrik,

--On May 31, 2007 8:57:28 PM +0200 Henrik Nordstrom 
<henrik@henriknordstrom.net> wrote:

>> (form-based, cookie-based etc). We then have separate documents for each
>> of  the http-based schemes basic and digest - and we should add
>> Kerberos/SPNEGO  to that too.
>
> Note: Both Kerberos & SPNEGO both break the foundations laid out by
> RFC2616 and 2617, tying authentication to connections and not messages.

Well there is already RFC4559 and some folks in the security area were 
working on tidying that up a bit more for a proposed standard.

-- 
Cyrus Daboo