Re: [http-auth] Quick review of draft-ietf-httpauth-rest-auth-01

Julian Reschke <julian.reschke@gmx.de> Fri, 08 November 2013 08:52 UTC

Return-Path: <julian.reschke@gmx.de>
X-Original-To: http-auth@ietfa.amsl.com
Delivered-To: http-auth@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 82C0721E81FC for <http-auth@ietfa.amsl.com>; Fri, 8 Nov 2013 00:52:26 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -104.216
X-Spam-Level:
X-Spam-Status: No, score=-104.216 tagged_above=-999 required=5 tests=[AWL=-1.617, BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id vxxYkveX2hS7 for <http-auth@ietfa.amsl.com>; Fri, 8 Nov 2013 00:52:11 -0800 (PST)
Received: from mout.gmx.net (mout.gmx.net [212.227.15.19]) by ietfa.amsl.com (Postfix) with ESMTP id 099A221E80B5 for <http-auth@ietf.org>; Fri, 8 Nov 2013 00:52:10 -0800 (PST)
Received: from [31.133.151.131] ([31.133.151.131]) by mail.gmx.com (mrgmx001) with ESMTPSA (Nemesis) id 0MNqfr-1VYxIR41sZ-007XdV for <http-auth@ietf.org>; Fri, 08 Nov 2013 09:52:09 +0100
Message-ID: <527CA639.40408@gmx.de>
Date: Fri, 08 Nov 2013 00:52:09 -0800
From: Julian Reschke <julian.reschke@gmx.de>
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.1.0
MIME-Version: 1.0
To: Nico Williams <nico@cryptonector.com>, Ilari Liusvaara <ilari.liusvaara@elisanet.fi>
References: <20131106162924.GB8185@LK-Perkele-VII> <20131108064831.GW18713@localhost>
In-Reply-To: <20131108064831.GW18713@localhost>
Content-Type: text/plain; charset="ISO-8859-1"; format="flowed"
Content-Transfer-Encoding: 7bit
X-Provags-ID: V03:K0:bd+wy2mLD444WJduw/AcOqbyuyTjo4Rahq0qvuWU3z71gd+G4B/ cBO5wgDbF38/Itjwd2LBv8l90uhdrbwKmcGpCm4fN9eajqCABAqxHx+FYvfROp+sp+tHCEz wgoKAo9/ypCU0hIWBSpznfd1JsHjphFUpfYFvEa2KO/R9m+/NbF1BaDv+IYc3ZgHROTDI19 fk8NSOw9cv1RIGsSMYcNw==
Cc: http-auth@ietf.org
Subject: Re: [http-auth] Quick review of draft-ietf-httpauth-rest-auth-01
X-BeenThere: http-auth@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: HTTP authentication methods <http-auth.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/http-auth>, <mailto:http-auth-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/http-auth>
List-Post: <mailto:http-auth@ietf.org>
List-Help: <mailto:http-auth-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/http-auth>, <mailto:http-auth-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 08 Nov 2013 08:52:26 -0000

On 2013-11-07 22:48, Nico Williams wrote:
> On Wed, Nov 06, 2013 at 06:29:24PM +0200, Ilari Liusvaara wrote:
>
> Thanks for the detailed review!
>
>>> 1.  Introduction
>>>
>>>     We propose a pattern for HTTP [RFC2616] [TODO: add reference to
>>>     HTTP/2.0 as well?] authentication mechanisms that, by being
>>>     "RESTful", obtains these goals naturally.
>>
>> Reference for HTTP/2.0 would be draft-ietf-httpbis-http2
>
> Yeah, when I wrote that text I'd no idea what the schedule for HTTP/2.0
> was going to be.

Exactly how is HTTP/2.0 relevant here?