Re: Requesting reviews of draft-vanrein-httpauth-sasl

Eric J Bowman <mellowmutt@zoho.com> Thu, 14 May 2020 21:48 UTC

Return-Path: <ietf-http-wg-request+bounce-httpbisa-archive-bis2juki=lists.ie@listhub.w3.org>
X-Original-To: ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com
Delivered-To: ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D333C3A0D7A for <ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com>; Thu, 14 May 2020 14:48:39 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.747
X-Spam-Level:
X-Spam-Status: No, score=-2.747 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HEADER_FROM_DIFFERENT_DOMAINS=0.25, HTML_MESSAGE=0.001, MAILING_LIST_MULTI=-1, RCVD_IN_MSPIKE_H4=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); domainkeys=pass (768-bit key) header.from=mellowmutt@zoho.com header.d=zoho.com; dkim=pass (1024-bit key) header.d=zoho.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 8JgbUtooBVX3 for <ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com>; Thu, 14 May 2020 14:48:38 -0700 (PDT)
Received: from lyra.w3.org (lyra.w3.org [128.30.52.18]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6DE643A0D4A for <httpbisa-archive-bis2Juki@lists.ietf.org>; Thu, 14 May 2020 14:48:38 -0700 (PDT)
Received: from lists by lyra.w3.org with local (Exim 4.92) (envelope-from <ietf-http-wg-request@listhub.w3.org>) id 1jZLfY-0000YB-NL for ietf-http-wg-dist@listhub.w3.org; Thu, 14 May 2020 21:45:33 +0000
Resent-Date: Thu, 14 May 2020 21:45:32 +0000
Resent-Message-Id: <E1jZLfY-0000YB-NL@lyra.w3.org>
Received: from www-data by lyra.w3.org with local (Exim 4.92) (envelope-from <mellowmutt@zoho.com>) id 1jZLfX-0000VV-FT for ietf-http-wg@listhub.w3.org; Thu, 14 May 2020 21:45:31 +0000
Received: from titan.w3.org ([128.30.52.76]) by lyra.w3.org with esmtps (TLS1.3:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.92) (envelope-from <mellowmutt@zoho.com>) id 1jZLNe-0005yi-Sj for ietf-http-wg@listhub.w3.org; Thu, 14 May 2020 21:27:02 +0000
Received: from sender4-pp-o93.zoho.com ([136.143.188.93]) by titan.w3.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_CBC_SHA1:256) (Exim 4.92) (envelope-from <mellowmutt@zoho.com>) id 1jZLNd-0006mM-1z for ietf-http-wg@w3.org; Thu, 14 May 2020 21:27:02 +0000
ARC-Seal: i=1; a=rsa-sha256; t=1589491608; cv=none; d=zohomail.com; s=zohoarc; b=g9DtaM9oCR6ykUfYGr09xUvThzE3lh19U3h3HzoIcp2ED7RqvpwpEiJV/xhTFr6ReXkY3Pr7VwIR5T/g5eAbUJ8JhKj+6i7uWDznV9zCLckL8QKoVxJxOHfdMMZsK/wdiy8Sg4o653foWATDPubu/zdgKF0aUGonNvPB2OKFkOI=
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=zohomail.com; s=zohoarc; t=1589491608; h=Content-Type:Date:From:MIME-Version:Message-ID:Subject:To; bh=SDIvJ7wrqcr9F9wWx2xCUUrUilAEua6r4CR0WJnpwqQ=; b=QN6yqtKJ3Bd5oydLRFydxz/9RxSRWJNLlM+yZlC55RthH6LEtnExhkSiBLJzbQPVMCaeSw/fy/dnRA89HPOl7aRvXQh2wFZFtce6zcwlnLAZWfa8RPLnOPtkLuDAtrMSWvOC+9UK1ZejncnZUF3wW2WKHhYtSGOosGpfPbd2C2w=
ARC-Authentication-Results: i=1; mx.zohomail.com; dkim=pass header.i=zoho.com; spf=pass smtp.mailfrom=mellowmutt@zoho.com; dmarc=pass header.from=<mellowmutt@zoho.com> header.from=<mellowmutt@zoho.com>
DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=zapps768; d=zoho.com; h=date:from:to:message-id:in-reply-to:subject:mime-version:content-type:user-agent; b=XAopJWaFh7k6xPk/uNhCIFn1khZ8eyweeQNysowV7BC8T/CAQ0tKJvd+vMXdUHtV6JFYrQ1fkOFC e5fqV1D9G5QwSKOOab+8Y0vQ88LHC95QTNwY4bPcQdMfG9WqAl+s
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; t=1589491608; s=zm2020; d=zoho.com; i=mellowmutt@zoho.com; h=Date:From:To:Message-Id:In-Reply-To:Subject:MIME-Version:Content-Type; bh=SDIvJ7wrqcr9F9wWx2xCUUrUilAEua6r4CR0WJnpwqQ=; b=exkpXFFwvUuyhNKnDKcJo1IZYxBG1JF1bqLajYbB8+Q6x2RjpimC2revNzCXoMoL IKaitreAZX5nHzOMe0Rx/TVG5p0zFBMAf9VwYVxfazofcoteCh0PpXVhEpzGuylSFmp XnebFcdMtvguTi+04+wapTqdEo1XcCT9tWl7YuT4=
Received: from mail.zoho.com by mx.zohomail.com with SMTP id 1589491606387529.132434827896; Thu, 14 May 2020 14:26:46 -0700 (PDT)
Received: from [65.117.211.248] by mail.zoho.com with HTTP;Thu, 14 May 2020 14:26:46 -0700 (PDT)
Date: Thu, 14 May 2020 14:26:46 -0700
From: Eric J Bowman <mellowmutt@zoho.com>
To: "ietf-http-wg" <ietf-http-wg@w3.org>
Message-Id: <17215152371.115bec1569788.1358878865590705287@zoho.com>
In-Reply-To:
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="----=_Part_27871_781481964.1589491606385"
Importance: Medium
User-Agent: Zoho Mail
X-Mailer: Zoho Mail
Received-SPF: pass client-ip=136.143.188.93; envelope-from=mellowmutt@zoho.com; helo=sender4-pp-o93.zoho.com
X-W3C-Hub-Spam-Status: No, score=-4.1
X-W3C-Hub-Spam-Report: BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, W3C_AA=-1, W3C_WL=-1
X-W3C-Scan-Sig: titan.w3.org 1jZLNd-0006mM-1z 66d5691716825c9469e108c09d469fcf
X-caa-id: 19f33eec27
X-Original-To: ietf-http-wg@w3.org
Subject: Re: Requesting reviews of draft-vanrein-httpauth-sasl
Archived-At: <https://www.w3.org/mid/17215152371.115bec1569788.1358878865590705287@zoho.com>
Resent-From: ietf-http-wg@w3.org
X-Mailing-List: <ietf-http-wg@w3.org> archive/latest/37623
X-Loop: ietf-http-wg@w3.org
Resent-Sender: ietf-http-wg-request@w3.org
Precedence: list
List-Id: <ietf-http-wg.w3.org>
List-Help: <https://www.w3.org/Mail/>
List-Post: <mailto:ietf-http-wg@w3.org>
List-Unsubscribe: <mailto:ietf-http-wg-request@w3.org?subject=unsubscribe>

It's been my position for years that we revisit HTTP Auth headers and such, wish I'd used SASL as an example, lol.



Conditional +1, I'm glad we're talking about this but I haven't written any code around it, but this seems like the "right way" of approaching the issues at hand.



-Eric