Re: Follow-up on draft-ietf-netconf-http-client-server

Kent Watsen <kent+ietf@watsen.net> Thu, 23 July 2020 21:26 UTC

Return-Path: <ietf-http-wg-request+bounce-httpbisa-archive-bis2juki=lists.ie@listhub.w3.org>
X-Original-To: ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com
Delivered-To: ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 28CE43A0E25 for <ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com>; Thu, 23 Jul 2020 14:26:55 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.918
X-Spam-Level:
X-Spam-Status: No, score=-2.918 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HEADER_FROM_DIFFERENT_DOMAINS=0.001, HTML_MESSAGE=0.001, MAILING_LIST_MULTI=-1, RCVD_IN_MSPIKE_H4=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=amazonses.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id HYjNuTnfNudm for <ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com>; Thu, 23 Jul 2020 14:26:53 -0700 (PDT)
Received: from lyra.w3.org (lyra.w3.org [128.30.52.18]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 828FA3A0E09 for <httpbisa-archive-bis2Juki@lists.ietf.org>; Thu, 23 Jul 2020 14:26:53 -0700 (PDT)
Received: from lists by lyra.w3.org with local (Exim 4.92) (envelope-from <ietf-http-wg-request@listhub.w3.org>) id 1jyihP-0007vi-Jb for ietf-http-wg-dist@listhub.w3.org; Thu, 23 Jul 2020 21:24:19 +0000
Resent-Date: Thu, 23 Jul 2020 21:24:19 +0000
Resent-Message-Id: <E1jyihP-0007vi-Jb@lyra.w3.org>
Received: from mimas.w3.org ([128.30.52.79]) by lyra.w3.org with esmtps (TLS1.3:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.92) (envelope-from <010001737d8fd2a0-48a56328-5a22-4a27-afb7-1729d16e0fe5-000000@amazonses.watsen.net>) id 1jyihN-0007ux-5e for ietf-http-wg@listhub.w3.org; Thu, 23 Jul 2020 21:24:17 +0000
Received: from a48-110.smtp-out.amazonses.com ([54.240.48.110]) by mimas.w3.org with esmtps (TLS1.2:ECDHE_RSA_AES_128_CBC_SHA1:128) (Exim 4.92) (envelope-from <010001737d8fd2a0-48a56328-5a22-4a27-afb7-1729d16e0fe5-000000@amazonses.watsen.net>) id 1jyihL-0003Gh-Ir for ietf-http-wg@w3.org; Thu, 23 Jul 2020 21:24:16 +0000
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/simple; s=224i4yxa5dv7c2xz3womw6peuasteono; d=amazonses.com; t=1595539444; h=From:Message-Id:Content-Type:Mime-Version:Subject:Date:In-Reply-To:Cc:To:References:Feedback-ID; bh=3UQ1FTkd5ykjcaePAFCG+ODn3TF5af+yfh5d8Aa17mo=; b=SclY2bQkgWsf2eAHjopno4spY8jpzsHUVd3pK0sRymb92QGkh7+2glTyoU1KiJww VP0KhJUrb0uraIo0ThIrceamg0GlNiGJvycU8X1Y1JQuCHKD64QFuI6DJ03+drym0CS HEFyH37Q6BeipqPUZzPBoSoRMa3yEDazo7kFeOZk=
From: Kent Watsen <kent+ietf@watsen.net>
Message-ID: <010001737d8fd2a0-48a56328-5a22-4a27-afb7-1729d16e0fe5-000000@email.amazonses.com>
Content-Type: multipart/alternative; boundary="Apple-Mail=_15B34A26-61E8-4CA2-A550-BC90F7D3543D"
Mime-Version: 1.0 (Mac OS X Mail 13.4 \(3608.80.23.2.2\))
Date: Thu, 23 Jul 2020 21:24:04 +0000
In-Reply-To: <CAHbrMsDNwZN64Y7Tfp0e0JQOSfArk5LeUTC8JqBeatiBVFJN0g@mail.gmail.com>
Cc: HTTP Working Group <ietf-http-wg@w3.org>, "netconf-chairs@ietf.org" <netconf-chairs@ietf.org>
To: Ben Schwartz <bemasc@google.com>
References: <01000173723f6de8-d6359eb6-d80e-46fa-86a3-e9fe794f74b6-000000@email.amazonses.com> <010001737c434b23-44eb8c59-f98a-4c3d-8cf3-b991994f2e23-000000@email.amazonses.com> <CAHbrMsDNwZN64Y7Tfp0e0JQOSfArk5LeUTC8JqBeatiBVFJN0g@mail.gmail.com>
X-Mailer: Apple Mail (2.3608.80.23.2.2)
X-SES-Outgoing: 2020.07.23-54.240.48.110
Feedback-ID: 1.us-east-1.DKmIRZFhhsBhtmFMNikgwZUWVrODEw9qVcPhqJEI2DA=:AmazonSES
Received-SPF: none client-ip=54.240.48.110; envelope-from=010001737d8fd2a0-48a56328-5a22-4a27-afb7-1729d16e0fe5-000000@amazonses.watsen.net; helo=a48-110.smtp-out.amazonses.com
X-W3C-Hub-Spam-Status: No, score=-3.9
X-W3C-Hub-Spam-Report: BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H5=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, W3C_AA=-1, W3C_WL=-1
X-W3C-Scan-Sig: mimas.w3.org 1jyihL-0003Gh-Ir d277056df1b90f768e943ab893f0c55c
X-Original-To: ietf-http-wg@w3.org
Subject: Re: Follow-up on draft-ietf-netconf-http-client-server
Archived-At: <https://www.w3.org/mid/010001737d8fd2a0-48a56328-5a22-4a27-afb7-1729d16e0fe5-000000@email.amazonses.com>
Resent-From: ietf-http-wg@w3.org
X-Mailing-List: <ietf-http-wg@w3.org> archive/latest/37911
X-Loop: ietf-http-wg@w3.org
Resent-Sender: ietf-http-wg-request@w3.org
Precedence: list
List-Id: <ietf-http-wg.w3.org>
List-Help: <https://www.w3.org/Mail/>
List-Post: <mailto:ietf-http-wg@w3.org>
List-Unsubscribe: <mailto:ietf-http-wg-request@w3.org?subject=unsubscribe>

Thanks Ben!

Noted: client-auth not always mandatory for web proxies.

Cheers,
Kent


> On Jul 23, 2020, at 2:06 PM, Ben Schwartz <bemasc@google.com> wrote:
> 
> --00000000000070ddee05ab1fb7ab
> Content-Type: text/plain; charset="UTF-8"
> Content-Transfer-Encoding: quoted-printable
> 
> No, it's entirely common to operate a Web Proxy that does not require or
> perform any HTTP or TLS client authentication.  Typically, this is because
> authorization is implicit from the network topology, and the proxy is only
> reachable by authorized users.
> 
> On Thu, Jul 23, 2020 at 11:24 AM Kent Watsen <kent+ietf@watsen.net <mailto:kent+ietf@watsen.net>> wrote:
> 
>> 
>> TL;DR;  Is client-auth to a web proxy mandatory?
>> 
>> Thanks,
>> Kent
>> 
>> 
>> On Jul 21, 2020, at 12:40 PM, Kent Watsen <kent+ietf@watsen.net> wrote:
>> 
>> Thank you all for your earlier comments regarding
>> draft-ietf-netconf-http-client-server
>> <https://tools.ietf.org/html/draft-ietf-netconf-http-client-server <https://tools.ietf.org/html/draft-ietf-netconf-http-client-server>>.
>> 
>> The draft is now almost ready for WGLC (which will be CC-ed here as well)=
> ,
>> but there remains one item for which your guidance is needed (see bottom)=