Re: [http-auth] Working Group Last Call for draft-ietf-httpauth-basicauth-update-03.txt

Julian Reschke <julian.reschke@gmx.de> Wed, 03 December 2014 20:40 UTC

Return-Path: <julian.reschke@gmx.de>
X-Original-To: http-auth@ietfa.amsl.com
Delivered-To: http-auth@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 057421A1E0E for <http-auth@ietfa.amsl.com>; Wed, 3 Dec 2014 12:40:57 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, FREEMAIL_FROM=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id d5xzWT8J-1D9 for <http-auth@ietfa.amsl.com>; Wed, 3 Dec 2014 12:40:55 -0800 (PST)
Received: from mout.gmx.net (mout.gmx.net [212.227.15.18]) (using TLSv1.2 with cipher DHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5C7361A86EE for <http-auth@ietf.org>; Wed, 3 Dec 2014 12:40:55 -0800 (PST)
Received: from [192.168.2.160] ([93.217.101.31]) by mail.gmx.com (mrgmx001) with ESMTPSA (Nemesis) id 0LzskF-1XzrWX3yXT-014ygB; Wed, 03 Dec 2014 21:40:47 +0100
Message-ID: <547F754D.4070303@gmx.de>
Date: Wed, 03 Dec 2014 21:40:45 +0100
From: Julian Reschke <julian.reschke@gmx.de>
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:31.0) Gecko/20100101 Thunderbird/31.3.0
MIME-Version: 1.0
To: Yoav Nir <ynir.ietf@gmail.com>
References: <20141202111608.27803.85751.idtracker@ietfa.amsl.com> <60D2DF51-5CD9-4A55-8031-4F974C0F8DF9@gmail.com> <61D95DD7-42F3-4483-8C72-E29C16180C56@apple.com> <547F3958.4020005@gmx.de> <1EB23215-FEFE-48D1-B634-04E6485A899F@apple.com> <547F468A.2000209@gmx.de> <85038266-014D-4528-A7AF-2201AB146835@gmail.com> <547F61B3.5020206@gmx.de> <0506394F-FF36-4A8B-BD32-7F75718A3F35@gmail.com>
In-Reply-To: <0506394F-FF36-4A8B-BD32-7F75718A3F35@gmail.com>
Content-Type: text/plain; charset="windows-1252"; format="flowed"
Content-Transfer-Encoding: 8bit
X-Provags-ID: V03:K0:iwuAS2toTKUzglIqRMVHtB7EqXZ94DyPcF5ubo0XTwFF8RuHB9Y 7cjPJ5HxWbtvP1yIScA0nUR0FhdrrNmsakB4RehokGEK7EDtX6vTdjAFx1/j5n2D0m5aIIz Yk9YvgBBgJZQLL1V6aSnJElsZQYDBChLVDxHrhoZ0FeZ5EDdTLhKSI4HmWIVdon5xggtRrA /sQEuwPkVo6IFinAHA9TQ==
X-UI-Out-Filterresults: notjunk:1;
Archived-At: http://mailarchive.ietf.org/arch/msg/http-auth/3fooQnyioYr42YQFwX97vPG-RRQ
Cc: IETF HTTP Auth <http-auth@ietf.org>
Subject: Re: [http-auth] Working Group Last Call for draft-ietf-httpauth-basicauth-update-03.txt
X-BeenThere: http-auth@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: HTTP authentication methods <http-auth.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/http-auth>, <mailto:http-auth-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/http-auth/>
List-Post: <mailto:http-auth@ietf.org>
List-Help: <mailto:http-auth-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/http-auth>, <mailto:http-auth-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 03 Dec 2014 20:40:57 -0000

On 2014-12-03 20:43, Yoav Nir wrote:
>
>> On Dec 3, 2014, at 9:17 PM, Julian Reschke <julian.reschke@gmx.de> wrote:
>>
>> On 2014-12-03 20:05, Yoav Nir wrote:
>>> [no hats]
>>>
>>> Sure we can. This is a new specification. Some implementations will keep implementing the old, obsolete spec. This is no different from clients and servers continuing to use TLS 1.0 and 1.1 now that 1.2 has obsoleted them.
>>
>> It's certainly very different from the way httpbis has revised RFC 2616, and my assumption was that we're doing the same thing here.
>
> So for those servers that don’t send the charset parameter, what is changed from RFC 2616?

Nothing. But I heard you say to require to send the charset parameter.

Best regards, Julian