Re: [httpapi] [dispatch] HTTP profile negotiation -- implementation evidence (was: HTTP profile negotiation - httpapi?)
Darrel Miller <Darrel.Miller@microsoft.com> Sat, 20 March 2021 21:43 UTC
Return-Path: <Darrel.Miller@microsoft.com>
X-Original-To: httpapi@ietfa.amsl.com
Delivered-To: httpapi@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B23DC3A2B2E; Sat, 20 Mar 2021 14:43:37 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.349
X-Spam-Level:
X-Spam-Status: No, score=-2.349 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.248, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=microsoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id F525iyGwE0ce; Sat, 20 Mar 2021 14:43:35 -0700 (PDT)
Received: from NAM06-BL2-obe.outbound.protection.outlook.com (mail-eopbgr650133.outbound.protection.outlook.com [40.107.65.133]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5A8753A2B2D; Sat, 20 Mar 2021 14:43:35 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=JXnlJGAiFtVWfttSYzzDWc2KiAXZRdGelJR3UXEg/IV0EEI2XA1wnguJ7cquIT3yDSuU4dHuXQ+qEjzI4Rr2OYI1T0MzcxRVlZPJ5uhsOSKRWMcrhRLr5Yl2YoK1ZMTaAa1wHPr0Vx3Bnrn7Q2PInatrVGkYiOVB2A0JUO8zGrEbWxGK12vv2fNkMD++yKrfnrUqAYy76gWNE17b1sFx49iYPtuF/uf9NzK48NIpno9rpIUmD2FqSppvKPXaP2DwsxOqQsmzwsT9q0Lb/zaC9Ymh0/QBak7wT5ZKZ/XXI7NjV15flzcrmsT/Df3w/jaLx4yVDxnawUvvcy+lYpXSvA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=AkfXsBfrSlr7EIDvNKiW1H+zMsXkckXUq18IrweZ6iw=; b=KvZQMx5tAqJUkWnGfTHp0FnOghYEpFy4JborPXd0ufe6f7GR2rLIKnAYHHhoAO4VaVjLIS6XkruoY01/YIKBGfvG7W/vhWwqbJyQMR0sah/BAPKMNyMPfzA4xc3iw81eADxp6lSR8suqJFycqXfSf7Aa/grxakajX94vDJ7/Bm1iYhsi0+yMBXRLmPvzBoelwDPI9U3bYlZr+rPAuJj4S/s/VC7bxXTGN8kKyrInswGYwXS3xIpdM/fU6ffIpjN0vP3z2SrjTKr3e+IKUD+AVBq8hCLouVF3BfCJN1hSL23azLw3UR9uSxaYe08j9MeXk0BnuGLtFtRz/s6nVwGULg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=microsoft.com; dmarc=pass action=none header.from=microsoft.com; dkim=pass header.d=microsoft.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=AkfXsBfrSlr7EIDvNKiW1H+zMsXkckXUq18IrweZ6iw=; b=TvWJD08AXku/Du0GuM1i6nmLYgc98KasVXQc25xPxyeuQ/0mBm0x3Cvi9dADNNUIHOQSKaUHLXmRQXPxgh3aF8te66bJKb+c90bCBURHOHj1H7DN9Gu8YOBvJmXF5p6kstAsWdNRiBYoD5uwzZ7YwfvzSikVsoSaCmZxMI4LImE=
Received: from MW2PR00MB0395.namprd00.prod.outlook.com (2603:10b6:302:9::31) by MW2PR00MB0315.namprd00.prod.outlook.com (2603:10b6:302:9::10) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3996.0; Sat, 20 Mar 2021 21:43:23 +0000
Received: from MW2PR00MB0395.namprd00.prod.outlook.com ([fe80::e8c2:4fd2:53ce:14df]) by MW2PR00MB0395.namprd00.prod.outlook.com ([fe80::e8c2:4fd2:53ce:14df%7]) with mapi id 15.20.4006.000; Sat, 20 Mar 2021 21:43:22 +0000
From: Darrel Miller <Darrel.Miller@microsoft.com>
To: "lars.svensson@web.de" <lars.svensson@web.de>, "Kirsty.p@ncsc.gov.uk" <Kirsty.p@ncsc.gov.uk>, "dispatch@ietf.org" <dispatch@ietf.org>
CC: "httpapi@ietf.org" <httpapi@ietf.org>, "Ruben Verborgh (UGent-imec)" <ruben.verborgh@ugent.be>, "hvdsomp@gmail.com" <hvdsomp@gmail.com>
Thread-Topic: [dispatch] HTTP profile negotiation -- implementation evidence (was: HTTP profile negotiation - httpapi?)
Thread-Index: AQHXFmrqDUbrjVzksUme1Hqxd46kuaqNa5H/
Date: Sat, 20 Mar 2021 21:43:22 +0000
Message-ID: <MW2PR00MB03957DE17FAC759997528C4BF0679@MW2PR00MB0395.namprd00.prod.outlook.com>
References: <LO2P123MB359947EBC226255D113DA544D7919@LO2P123MB3599.GBRP123.PROD.OUTLOOK.COM>, <trinity-899918bc-922f-431a-aecf-ce98fc018ced-1615462562074@3c-app-webde-bap04>
In-Reply-To: <trinity-899918bc-922f-431a-aecf-ce98fc018ced-1615462562074@3c-app-webde-bap04>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Enabled=True; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SiteId=72f988bf-86f1-41af-91ab-2d7cd011db47; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SetDate=2021-03-20T21:43:22.121Z; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Name=General; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_ContentBits=0; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Method=Standard;
authentication-results: web.de; dkim=none (message not signed) header.d=none;web.de; dmarc=none action=none header.from=microsoft.com;
x-originating-ip: [76.69.165.249]
x-ms-publictraffictype: Email
x-ms-office365-filtering-ht: Tenant
x-ms-office365-filtering-correlation-id: 23eeab3b-1121-4360-5d73-08d8ebe92f80
x-ms-traffictypediagnostic: MW2PR00MB0315:
x-ld-processed: 72f988bf-86f1-41af-91ab-2d7cd011db47,ExtAddr
x-microsoft-antispam-prvs: <MW2PR00MB0315A2F33ECD913D5D2F940EF0679@MW2PR00MB0315.namprd00.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:8882;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:MW2PR00MB0395.namprd00.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(396003)(376002)(366004)(39860400002)(136003)(346002)(478600001)(82950400001)(33656002)(86362001)(71200400001)(2906002)(66476007)(55016002)(66556008)(10290500003)(6506007)(9686003)(19627405001)(91956017)(64756008)(4326008)(186003)(52536014)(110136005)(8990500004)(54906003)(26005)(8676002)(66946007)(8936002)(38100700001)(316002)(76116006)(5660300002)(66446008)(7696005)(82960400001); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata: GNFUUuw7HPObdZL2qw0ea5QAq4R9md32BMVDa4OxfkxlMF/UlF82h64GeC+FltYW9aQSvD1c68OdGoY7nf2uo2nNS7/a04FC7fS3Us3JOzlOmPH/Hi9XzfPTf2rxsfjpE8kzm/Ni9RhK0h0WLVRsWv9CYSpfmVqsVF0nLSffcwK3e3xVINV7qxXMEdPXz5EOniq/83qy8sQHoJYjjjj56G5HDzHEW22ZLRIOF7pW7XOjyvMwxmhakhLavszD8d2j2qkom2pBhOEl3H6FSwd2f65au8yYfugmDbd+PBopR8B8ULmPm9VUZrOLh/C5xxtFIp+9z6urZOcfInoP3yI8kVkKXe4DsfPbLN+Tupl5O7c+ffEd9grX6vp6yyWdEdMQNHLq8YKe+XqdgxOJr7FLuGYJzuctgSJUXaSbEAxVSlBHlyfH01tY9s3ZwkqOYbucg+rXa+Oi3wLSbSOmjdJIjd9C+CJrweqRw3lH8wL1m4w2mIWTlCrBNPAAzds5I9uHJY2pMe1UnxPTjZJ7K4G8kxFp/c9qGdEj3iNCvrgNo8+ne28hVu0JXBktjfetfQH4Ah1ch6g0gY+YdalmmR0G3eDdEFwp/Vi/2zoZU46TrYayWMgoMMINcJBSLXpCLdJIisTgxz85bQLwaK6uBP6QyVO7YM6IVOdbWXt8CdJZq1jsKV1fN6wGETho6Xmy66T3MVvWXnsuzi30ULWLNNg+n6A333v29RETYKlpfXK3CP+QFLTXKaH0Gq6k1toEL/ZcyyFGpRxXiFJ9I2z9nwJILkA9aVvNUWXPq4Gf+jpbtLNVH0Hvsa4NcSj88jpF1RZbavGMlwy92MPgK3uElJPnicLOCoegIi11SmsrSLJuTu5P8fijlDSU0JoddpOJ7PnsPycBK2EJJA+/gwSHah7dDrM7hndnuaJHOijyFyPrKHRaYnRDOYViies5fGVLBs++4dQMFeyDWPtmB08WzE72eV9tQLS/s05irehvbQsQ4v9u4B9Hrd267E3PcDadtG5Hi314P3ftkoVzxzfhJe5n/K4Crw6TzJZU3WGe6S4yYS92ClC94xQ1L8IwQEQiABPdjq6iyHDK/5AjcfFj+jRBPLmiuN+DmqKRdb5QFaOZ6Qkp1Ke/u9hN///TY4zbEXSmWw9z3VaY4pdJJvs8ADU+RvLCtB3L3Tjyp/TJMQEmMpJbJ16G6vyN/MQZMg9MpXXLlQEAxwCDDpT47BWoupfnJGAkDjV3cHKsD7Neend4K23xHKe0/fVVT6q8TcxrmfeNLu9W5CTtGmvo7MFzq7nLLD0o4H+Pjy2tE+fdrTXap7E=
x-ms-exchange-transport-forked: True
Content-Type: multipart/alternative; boundary="_000_MW2PR00MB03957DE17FAC759997528C4BF0679MW2PR00MB0395namp_"
MIME-Version: 1.0
X-OriginatorOrg: microsoft.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: MW2PR00MB0395.namprd00.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 23eeab3b-1121-4360-5d73-08d8ebe92f80
X-MS-Exchange-CrossTenant-originalarrivaltime: 20 Mar 2021 21:43:22.8524 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 72f988bf-86f1-41af-91ab-2d7cd011db47
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: 9s/JnivqfHoH38OYNhMt59AqiO066QjreZ+uoq0sQa2h+yR7H+WaXpfLVOExA6ZFZ6u0Q8PU5vGkstoNvDc5hw==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: MW2PR00MB0315
Archived-At: <https://mailarchive.ietf.org/arch/msg/httpapi/kOKySI6HZ2XY6FBQssSZkI1R5vw>
Subject: Re: [httpapi] [dispatch] HTTP profile negotiation -- implementation evidence (was: HTTP profile negotiation - httpapi?)
X-BeenThere: httpapi@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Building Blocks for HTTP APIs <httpapi.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/httpapi>, <mailto:httpapi-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/httpapi/>
List-Post: <mailto:httpapi@ietf.org>
List-Help: <mailto:httpapi-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/httpapi>, <mailto:httpapi-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 20 Mar 2021 21:43:38 -0000
First off, as a co-chair of the HTTPAPI working group, apologies for not being present in the dispatch meeting. Speaking as an individual, my concern with this proposal is that while I do understand the value that this proposal brings, my experience is that the vast majority of API practitioners do not care. Trying to sell the value of self-descriptive HTTP responses has mostly fallen on deaf ears for the last 15 years, and I don't see anything that is changing that sentiment. The notion of using profile to further qualify a media type is something that a number of people in the industry have tried to promote for years and it has gained very little traction. I don't believe standardization of negotiation and discovery will change that. Fundamentally, most API practitioners don't see the negative system impact of coupling a resource identifier with response semantics. When they call GET /customer and they get application/json back they don't see a problem with assuming the properties of that payload contain customer information. Sure, it violates REST's self-descriptive constraint, but try convincing an API developer to care. I spent many years trying unsuccessfully. The popularity of API description formats is evidence that devs don't care about the coupling introduced by connecting response semantics with resource identifiers. In the dispatch meeting, the assertion was made that profiles enable versioning. But so does changing the resource identifier, which is the common practice today. I have zero technical objections to the principles presented in the RFC, in fact I support them. But I strongly believe that history has demonstrated that they will not get mainstream adoption and hence I am reluctant to support the httpapi working group spending time on the standardization effort. Perhaps I am wrong to think that success of adoption should be a criterion for standardization. Maybe if some segment of the community will benefit, then that meets the bar. I'm fairly new to the process of WGs so I am open to guidance here. Thanks, Darrel
- [httpapi] HTTP profile negotiation - httpapi? Kirsty P
- Re: [httpapi] [dispatch] HTTP profile negotiation… Salz, Rich
- [httpapi] HTTP profile negotiation -- implementat… Lars G. Svensson
- Re: [httpapi] [dispatch] HTTP profile negotiation… Darrel Miller
- Re: [httpapi] [dispatch] HTTP profile negotiation… Mike Amundsen