HTTP 2.0 and a Faster, more Mobile-friendly web

Henrik Frystyk Nielsen <henrikn@microsoft.com> Sun, 29 July 2012 20:17 UTC

Return-Path: <ietf-http-wg-request@listhub.w3.org>
X-Original-To: ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com
Delivered-To: ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 36FDF21F855F for <ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com>; Sun, 29 Jul 2012 13:17:37 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -9.998
X-Spam-Level:
X-Spam-Status: No, score=-9.998 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, HTML_MESSAGE=0.001, J_CHICKENPOX_57=0.6, RCVD_IN_DNSWL_HI=-8]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id br7QtXNhGhPJ for <ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com>; Sun, 29 Jul 2012 13:17:32 -0700 (PDT)
Received: from frink.w3.org (frink.w3.org [128.30.52.56]) by ietfa.amsl.com (Postfix) with ESMTP id C634721F847A for <httpbisa-archive-bis2Juki@lists.ietf.org>; Sun, 29 Jul 2012 13:17:31 -0700 (PDT)
Received: from lists by frink.w3.org with local (Exim 4.72) (envelope-from <ietf-http-wg-request@listhub.w3.org>) id 1SvZuO-0003Rz-CC for ietf-http-wg-dist@listhub.w3.org; Sun, 29 Jul 2012 20:16:12 +0000
Resent-Date: Sun, 29 Jul 2012 20:16:12 +0000
Resent-Message-Id: <E1SvZuO-0003Rz-CC@frink.w3.org>
Received: from maggie.w3.org ([128.30.52.39]) by frink.w3.org with esmtp (Exim 4.72) (envelope-from <henrikn@microsoft.com>) id 1SvZu9-0003Qo-3T for ietf-http-wg@listhub.w3.org; Sun, 29 Jul 2012 20:15:57 +0000
Received: from va3ehsobe002.messaging.microsoft.com ([216.32.180.12] helo=va3outboundpool.messaging.microsoft.com) by maggie.w3.org with esmtps (TLS1.0:RSA_AES_128_CBC_SHA1:16) (Exim 4.72) (envelope-from <henrikn@microsoft.com>) id 1SvZu5-0003ZG-8M for ietf-http-wg@w3.org; Sun, 29 Jul 2012 20:15:57 +0000
Received: from mail173-va3-R.bigfish.com (10.7.14.250) by VA3EHSOBE007.bigfish.com (10.7.40.11) with Microsoft SMTP Server id 14.1.225.23; Sun, 29 Jul 2012 20:15:26 +0000
Received: from mail173-va3 (localhost [127.0.0.1]) by mail173-va3-R.bigfish.com (Postfix) with ESMTP id 79AE816033B for <ietf-http-wg@w3.org>; Sun, 29 Jul 2012 20:15:26 +0000 (UTC)
X-Forefront-Antispam-Report: CIP:131.107.125.8; KIP:(null); UIP:(null); IPV:NLI; H:TK5EX14HUBC103.redmond.corp.microsoft.com; RD:none; EFVD:NLI
X-SpamScore: -23
X-BigFish: VS-23(zzc85fhzz1202hzz1033IL8275bh8275dh186Mz2fh2a8h683h839hd24hf0ah107ah9a9j)
Received-SPF: pass (mail173-va3: domain of microsoft.com designates 131.107.125.8 as permitted sender) client-ip=131.107.125.8; envelope-from=henrikn@microsoft.com; helo=TK5EX14HUBC103.redmond.corp.microsoft.com ; icrosoft.com ;
X-Forefront-Antispam-Report-Untrusted: CIP:157.56.240.21; KIP:(null); UIP:(null); (null); H:BL2PRD0310HT005.namprd03.prod.outlook.com; R:internal; EFV:INT
Received: from mail173-va3 (localhost.localdomain [127.0.0.1]) by mail173-va3 (MessageSwitch) id 1343592905137296_20889; Sun, 29 Jul 2012 20:15:05 +0000 (UTC)
Received: from VA3EHSMHS006.bigfish.com (unknown [10.7.14.252]) by mail173-va3.bigfish.com (Postfix) with ESMTP id 14B723E004B for <ietf-http-wg@w3.org>; Sun, 29 Jul 2012 20:15:05 +0000 (UTC)
Received: from TK5EX14HUBC103.redmond.corp.microsoft.com (131.107.125.8) by VA3EHSMHS006.bigfish.com (10.7.99.16) with Microsoft SMTP Server (TLS) id 14.1.225.23; Sun, 29 Jul 2012 20:15:05 +0000
Received: from co1outboundpool.messaging.microsoft.com (157.54.51.81) by mail.microsoft.com (157.54.86.9) with Microsoft SMTP Server (TLS) id 14.2.309.3; Sun, 29 Jul 2012 20:15:02 +0000
Received: from mail36-co1-R.bigfish.com (10.243.78.235) by CO1EHSOBE013.bigfish.com (10.243.66.76) with Microsoft SMTP Server id 14.1.225.23; Sun, 29 Jul 2012 20:15:02 +0000
Received: from mail36-co1 (localhost [127.0.0.1]) by mail36-co1-R.bigfish.com (Postfix) with ESMTP id A18925802DF for <ietf-http-wg@w3.org.FOPE.CONNECTOR.OVERRIDE>; Sun, 29 Jul 2012 20:15:02 +0000 (UTC)
X-Forefront-Antispam-Report-Untrusted: SFV:NSPM; SFS:(42186003)(16406001)(33646001)(5343635001)(5343655001)(31966006)(24736002); DIR:INB; ; LANG:en;
Received: from mail36-co1 (localhost.localdomain [127.0.0.1]) by mail36-co1 (MessageSwitch) id 1343592900412505_5115; Sun, 29 Jul 2012 20:15:00 +0000 (UTC)
Received: from CO1EHSMHS006.bigfish.com (unknown [10.243.78.229]) by mail36-co1.bigfish.com (Postfix) with ESMTP id 61291340044 for <ietf-http-wg@w3.org>; Sun, 29 Jul 2012 20:15:00 +0000 (UTC)
Received: from BL2PRD0310HT005.namprd03.prod.outlook.com (157.56.240.21) by CO1EHSMHS006.bigfish.com (10.243.66.16) with Microsoft SMTP Server (TLS) id 14.1.225.23; Sun, 29 Jul 2012 20:14:58 +0000
Received: from CH1PR03MB624.namprd03.prod.outlook.com (10.255.156.171) by BL2PRD0310HT005.namprd03.prod.outlook.com (10.255.97.40) with Microsoft SMTP Server (TLS) id 14.16.175.8; Sun, 29 Jul 2012 20:14:38 +0000
Received: from CH1PR03MB622.namprd03.prod.outlook.com (10.255.156.169) by CH1PR03MB624.namprd03.prod.outlook.com (10.255.156.171) with Microsoft SMTP Server (TLS) id 15.0.466.11; Sun, 29 Jul 2012 20:14:16 +0000
Received: from CH1PR03MB622.namprd03.prod.outlook.com ([169.254.5.138]) by CH1PR03MB622.namprd03.prod.outlook.com ([169.254.5.188]) with mapi id 15.00.0466.010; Sun, 29 Jul 2012 20:14:03 +0000
From: Henrik Frystyk Nielsen <henrikn@microsoft.com>
To: "ietf-http-wg@w3.org" <ietf-http-wg@w3.org>
CC: Gabriel Montenegro <Gabriel.Montenegro@microsoft.com>, Rob Trace <Rob.Trace@microsoft.com>, "Adalberto Foresti (MS OPEN TECH)" <aforesti@microsoft.com>
Thread-Topic: HTTP 2.0 and a Faster, more Mobile-friendly web
Thread-Index: Ac1twDu90zT1bxFVThKcLTb5G5f71Q==
Date: Sun, 29 Jul 2012 20:14:02 +0000
Message-ID: <723b83d47f93417290cca860e2925703@CH1PR03MB622.namprd03.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.255.156.154]
x-forefront-prvs: 0557CBAD84
Content-Type: multipart/alternative; boundary="_000_723b83d47f93417290cca860e2925703CH1PR03MB622namprd03pro_"
MIME-Version: 1.0
X-OrganizationHeadersPreserved: CH1PR03MB624.namprd03.prod.outlook.com
X-FOPE-CONNECTOR: Id%0$Dn%*$RO%0$TLS%0$FQDN%$TlsDn%
X-FOPE-CONNECTOR: Id%59$Dn%W3.ORG$RO%2$TLS%6$FQDN%131.107.125.5$TlsDn%
X-CrossPremisesHeadersPromoted: TK5EX14HUBC103.redmond.corp.microsoft.com
X-CrossPremisesHeadersFiltered: TK5EX14HUBC103.redmond.corp.microsoft.com
X-OriginatorOrg: microsoft.com
Received-SPF: pass client-ip=216.32.180.12; envelope-from=henrikn@microsoft.com; helo=va3outboundpool.messaging.microsoft.com
X-W3C-Hub-Spam-Status: No, score=-2.6
X-W3C-Hub-Spam-Report: BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01
X-W3C-Scan-Sig: maggie.w3.org 1SvZu5-0003ZG-8M 06c3a56fe3e4d31dc31f840a722f240f
X-Original-To: ietf-http-wg@w3.org
Subject: HTTP 2.0 and a Faster, more Mobile-friendly web
Archived-At: <http://www.w3.org/mid/723b83d47f93417290cca860e2925703@CH1PR03MB622.namprd03.prod.outlook.com>
Resent-From: ietf-http-wg@w3.org
X-Mailing-List: <ietf-http-wg@w3.org> archive/latest/14807
X-Loop: ietf-http-wg@w3.org
Resent-Sender: ietf-http-wg-request@w3.org
Precedence: list
List-Id: <ietf-http-wg.w3.org>
List-Help: <http://www.w3.org/Mail/>
List-Post: <mailto:ietf-http-wg@w3.org>
List-Unsubscribe: <mailto:ietf-http-wg-request@w3.org?subject=unsubscribe>

Dear All,



We remain committed to the HTTP/2.0 standards process and look forward to seeing many of you this week at the IETF meeting in Vancouver to continue the discussion.  In the spirit of open discussion, we wanted to share some observations in advance of the meeting and share the latest progress from prototyping and testing.



There are currently three different proposals that the group is working through:



   * SPDY (http://tools.ietf.org/html/draft-mbelshe-httpbis-spdy),

   * HTTP Speed+Mobility (http://tools.ietf.org/html/draft-montenegro-httpbis-speed-mobility),

   * Network-Friendly HTTP Upgrade (http://tools.ietf.org/html/draft-tarreau-httpbis-network-friendly).



The good news is that everyone involved wants to make the Web faster, more scalable, more secure, and more mobile-friendly, and each proposal has benefits in different areas that the discussion can choose from.



--- A Genuinely Faster Web ---



The SPDY proposal has been great for raising awareness of Web performance. It takes a "clean slate" approach to improving HTTP.



To compare the performance of SPDY with HTTP/1.1 we have run tests comparing download times of several public web sites using a controlled tested study. The test uses publically available software run with mostly default configurations while applying all the currently available optimizations to HTTP/1.1. You can find a preliminary report on the test results here: http://research.microsoft.com/apps/pubs/?id=170059. The results mirror other data (http://www.guypo.com/technical/not-as-spdy-as-you-thought) that indicate mixed results with SPDY performance.



Our results indicate almost equal performance between SPDY and HTTP/1.1 when one applies all the known optimizations to HTTP/1.1. SPDY's performance improvements are not consistent and significant. We will continue our testing, and we welcome others to publish their results so that HTTP/2.0 can choose the best changes and deliver the best possible performance and scalability improvements compared to HTTP/1.1.





--- Taking the Best from Each ---



Speed is one of several areas of improvement. Currently, there's no clear consensus that any one of the proposals is the clear choice or even starting point for HTTP/2.0 (based on our reading the Expressions of Interest and discussions on this mailing list. A good example of this is the vigorous discussion around mandating TLS encryption (http://tools.ietf.org/html/rfc5246) for HTTP/2.0.



We think a good approach for HTTP/2.0 is to take the best solution for each of these areas from each of the proposals.  This approach helps us focus the discussion for each area of the protocol. Of course, this approach would still allow the standard to benefit from the extensive knowledge gained from implementing existing proposals.



We believe that the group can converge on consensus in the following areas, based on our reading of the Expressions of Interest, by starting from the different proposals.



------------------|------------------

Area              | Opinion that

                  | seems to prevail

------------------|------------------

1. Compression    | SPDY or Friendly

------------------|------------------

2. Multiplexing   | SPDY

------------------|------------------

3. Mandatory TLS  | Speed+Mobility

------------------|------------------

4. Negotiation    | Friendly or

                  |   Speed+Mobility

------------------|------------------

5. Client Pull/   | Speed+Mobility

      Server Push |

------------------|------------------

6. Flow Control   | SPDY

------------------|------------------

7. WebSockets     | Speed+Mobility

------------------|------------------



Below, we discuss each HTTP/2.0 element and the current consensus that appears to be forming within the Working Group.



1. Compression



Compression is simple to conceptualize and implement, and it is important. Proxies and other boxes in the middle on today's Web often face problems with it. The HTTP/2.0 discussion has been rich but with little consensus.

Though some studies suggest that SPDY's header compression approach shows promise, other studies show this compression to be prohibitively onerous for intermediary devices. More information here would help us make sure we're making the Web faster and better.



Also, an entire segment of implementers are not interested in compression as defined in SPDY.  That's a challenge because the latest strawman for the working group charter (http://lists.w3.org/Archives/Public/ietf-http-wg/2012JulSep/0784.html) states that the "resulting specification(s) are expected to be meet these goals for common existing deployments of HTTP; in particular, ... intermediation (by proxies, corporate firewalls, 'reverse' proxies and Content Delivery Networks)."



We think the SPDY or Friendly proposals is a good starting point for progress.



2. Multiplexing



All three proposals define similar multiplexing models. We haven't had substantial discussion on the differences. This lack of discussion suggests that there is rough consensus around the SPDY framing for multiplexing.



We think that the SPDY proposal is a good starting point here and best captures the current consensus.



3. Mandating Always On TLS



There is definitely no consensus to mandate TLS for all Web communication, but some major implementers have stated they will not to adopt HTTP/2.0 unless the working group supports a "TLS is mandatory" position. A very preliminary note from the chair (http://lists.w3.org/Archives/Public/ietf-http-wg/2012JulSep/0601.html) states that there is a lack of consensus for mandating TLS.



We think the Speed+Mobility proposal is a good starting point here as it provides options to turn TLS on (or not).



4. Negotiation



Only two of the proposals actually discuss how different endpoints agree to use HTTP/2.0.



(The SPDY proposal does not specify a negotiation method. Current prototype implementations use the TLS-NPN (http://tools.ietf.org/html/draft-agl-tls-nextprotoneg) extension.  While the other proposals use HTTP Upgrade to negotiate HTTP/2.0, some parties have expressed non-support for this method as well.)



We think either of the Friendly or Speed+Mobility proposals is a good starting point because they are the only ones that have any language in this respect.



5. Client Pull and Server Push



There are tradeoffs between a server push model and a client pull model. The main question is how to improve performance while respecting bandwidth and client caches.



Server Push has not had the same level of implementation and experimentation as the other features in SPDY. More information here would help us make sure we're making the Web faster and better.



We think the Speed+Mobility proposal is a good starting point here, suggesting that this issue may be better served in a separate document rather than tied to the core HTTP/2.0 protocol.



6. Flow Control



There has only been limited discussion in the HTTPbis working group on flow control. Flow Control offers a lot of opportunity make the Web faster as well as to break it; for example, implementations need to figure out how to optimize for opposing goals (like throughput and responsiveness) at the same time.



The current version of the SPDY proposal specifies a flow control message with many settings are that are not well-defined. The Speed+Mobilty proposal has a simplified flow control model based on certain assumptions. More experimentation and information here would help us make sure we're making the Web faster and better.



We think that the SPDY proposal is a good starting point here.



7. WebSockets



We see support  for aligning HTTP/2.0 with a future version of WebSockets, as suggested in the introduction of the Speed+Mobility proposal.





--- Moving forward ---



We're excited for the Web to get faster, more stable, and more capable, and HTTP/2.0 is an important part of that.



We believe that bringing together the best elements of the current SPDY, HTTP Speed+Mobility, and Network-Friendly HTTP Upgrade proposals is the best approach to make that happen.



Based on the discussions on the HTTPbis mailing list, we've suggested which proposals make the most sense to start from for each of the areas that HTTP/2.0 is addressing. Each of these areas needs more prototyping and experimentation and data. We're looking forward to the discussion this week.



Sincerely,



Henrik Frystyk Nielsen

Principal Architect, Microsoft Open Technologies, Inc.



Gabriel Montenegro

Principal Software Development Engineer, Microsoft Corporation



Rob Trace

Senior Program Manager Lead, Microsoft Corporation



Adalberto Foresti

Senior Program Manager, Microsoft Open Technologies, Inc.