explicitly authenticated proxy: new draft

Salvatore Loreto <salvatore.loreto@ericsson.com> Mon, 05 May 2014 06:54 UTC

Return-Path: <ietf-http-wg-request@listhub.w3.org>
X-Original-To: ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com
Delivered-To: ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5C8871A0273 for <ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com>; Sun, 4 May 2014 23:54:25 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.553
X-Spam-Level:
X-Spam-Status: No, score=-7.553 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_HI=-5, RP_MATCHES_RCVD=-0.651, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id H8w7xeqrAh6n for <ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com>; Sun, 4 May 2014 23:54:23 -0700 (PDT)
Received: from frink.w3.org (frink.w3.org [128.30.52.56]) by ietfa.amsl.com (Postfix) with ESMTP id A36E01A0019 for <httpbisa-archive-bis2Juki@lists.ietf.org>; Sun, 4 May 2014 23:54:22 -0700 (PDT)
Received: from lists by frink.w3.org with local (Exim 4.72) (envelope-from <ietf-http-wg-request@listhub.w3.org>) id 1WhCj8-0001vq-8m for ietf-http-wg-dist@listhub.w3.org; Mon, 05 May 2014 06:50:14 +0000
Resent-Date: Mon, 05 May 2014 06:50:14 +0000
Resent-Message-Id: <E1WhCj8-0001vq-8m@frink.w3.org>
Received: from maggie.w3.org ([128.30.52.39]) by frink.w3.org with esmtp (Exim 4.72) (envelope-from <salvatore.loreto@ericsson.com>) id 1WhCit-0000QP-95 for ietf-http-wg@listhub.w3.org; Mon, 05 May 2014 06:49:59 +0000
Received: from sessmg22.ericsson.net ([193.180.251.58]) by maggie.w3.org with esmtps (TLS1.0:DHE_RSA_AES_256_CBC_SHA1:32) (Exim 4.72) (envelope-from <salvatore.loreto@ericsson.com>) id 1WhCis-0008Pm-Es for ietf-http-wg@w3.org; Mon, 05 May 2014 06:49:59 +0000
X-AuditID: c1b4fb3a-f79106d0000013ca-72-5367347fed22
Received: from ESESSHC003.ericsson.se (Unknown_Domain [153.88.253.124]) by sessmg22.ericsson.net (Symantec Mail Security) with SMTP id 13.2D.05066.F7437635; Mon, 5 May 2014 08:49:35 +0200 (CEST)
Received: from ESESSMB109.ericsson.se ([169.254.9.25]) by ESESSHC003.ericsson.se ([153.88.183.27]) with mapi id 14.03.0174.001; Mon, 5 May 2014 08:49:34 +0200
From: Salvatore Loreto <salvatore.loreto@ericsson.com>
To: "ietf-http-wg@w3.org" <ietf-http-wg@w3.org>
Thread-Topic: explicitly authenticated proxy: new draft
Thread-Index: AQHPaC4sDNA/yLd9lk+UTL7xpzf7tA==
Date: Mon, 05 May 2014 06:49:34 +0000
Message-ID: <91DEC006-177D-4624-8194-7B02BD221B92@ericsson.com>
References: <20140505064315.1441.11209.idtracker@ietfa.amsl.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [153.88.183.148]
Content-Type: text/plain; charset="us-ascii"
Content-ID: <304F0C8612F6454D9D1D9E520769F3CE@ericsson.com>
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFnrMLMWRmVeSWpSXmKPExsUyM+JvjW69SXqwwYcHWhaHW2YxOTB6HJ23 nzWAMYrLJiU1J7MstUjfLoEr48vyN6wFq7kq5n36zt7AeIyji5GTQ0LARGJ+72c2CFtM4sK9 9UA2F4eQwFFGifcfGqCcRYwS7w7uZQapYhMwk3j+cAuYLSKgL/HozFFWEFtYwEji+MpzjF2M HEBxc4mFm5MgSvQkZvVtASthEVCROHzqA1grr4C9xKlt81hAbCEBB4kTnXfAbEagI76fWsME YjMLiEvcejKfCeI4AYkle84zQ9iiEi8f/2OFsJUkGpc8YYWo15FYsPsTG4RtLTF53gooW1ti 2cLXUHsFJU7OfMIygVF0FpIVs5C0z0LSPgtJ+ywk7QsYWVcxihanFhfnphsZ6aUWZSYXF+fn 6eWllmxiBMbKwS2/rXYwHnzueIhRgINRiYe3+EtksBBrYllxZe4hRmkOFiVx3kmL3IOFBNIT S1KzU1MLUovii0pzUosPMTJxcEo1MOZd9ojTdZw++8gfnyOCli668nXLdZbFzDGfqpW2ov4B S9TiC8xp0m/mZ7PPjVmjdoV5bunWeenH/js+aUo490yxy4FL7wf7w8X7rq4LMph1gu+BxfYA ib0HOlee9WIraGO6ELJxX9HZ9TkyvR3xmvJ8Tw5IiTjP2hDezJ2fH/f1sNGsbfeYBJRYijMS DbWYi4oTAZSRuBp2AgAA
Received-SPF: pass client-ip=193.180.251.58; envelope-from=salvatore.loreto@ericsson.com; helo=sessmg22.ericsson.net
X-W3C-Hub-Spam-Status: No, score=-4.1
X-W3C-Hub-Spam-Report: AWL=-2.167, BAYES_00=-1.9, SPF_PASS=-0.001
X-W3C-Scan-Sig: maggie.w3.org 1WhCis-0008Pm-Es 57520adc60a495a229e50e534cb1ad7a
X-Original-To: ietf-http-wg@w3.org
Subject: explicitly authenticated proxy: new draft
Archived-At: <http://www.w3.org/mid/91DEC006-177D-4624-8194-7B02BD221B92@ericsson.com>
Resent-From: ietf-http-wg@w3.org
X-Mailing-List: <ietf-http-wg@w3.org> archive/latest/23590
X-Loop: ietf-http-wg@w3.org
Resent-Sender: ietf-http-wg-request@w3.org
Precedence: list
List-Id: <ietf-http-wg.w3.org>
List-Help: <http://www.w3.org/Mail/>
List-Post: <mailto:ietf-http-wg@w3.org>
List-Unsubscribe: <mailto:ietf-http-wg-request@w3.org?subject=unsubscribe>

we have produced a new draft that proposes the definition of an Explicitly Authenticated
Proxy as intermediary of normally unprotected "http://" URI scheme requests and responses of HTTP2 traffic.

The Explicitly Authenticated Proxy is defined as a message forwarding agent that  is selected, with explicit user's consent, 
and configured by the user agent to receive exclusively "http" URI scheme requests and attempt 
to satisfy those requests on behalf of the user agent.  
A client is connected to an Explicitly Authenticated Proxy through an authenticated TLS secured connection.

The document describes also a method for a user agent to automatically discover and authenticate, 
and for an user to provide consent for an Explicitly Authenticated Proxy. 
This enables proxies communication to be encrypted and authenticated, explicitly acknowledged by the
user agent and visible to the server end point.


URL:            http://www.ietf.org/internet-drafts/draft-loreto-httpbis-explicitly-auth-proxy-00.txt
Status:         https://datatracker.ietf.org/doc/draft-loreto-httpbis-explicitly-auth-proxy/
Htmlized:       http://tools.ietf.org/html/draft-loreto-httpbis-explicitly-auth-proxy-00


comments, suggestions and feedback are welcome

br
Salvatore