Re: [hybi] #1: HTTP Compliance

"Shelby Moore" <shelby@coolpage.com> Sun, 15 August 2010 22:17 UTC

Return-Path: <shelby@coolpage.com>
X-Original-To: hybi@core3.amsl.com
Delivered-To: hybi@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id DCA7C3A684C for <hybi@core3.amsl.com>; Sun, 15 Aug 2010 15:17:03 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.508
X-Spam-Level:
X-Spam-Status: No, score=-1.508 tagged_above=-999 required=5 tests=[AWL=0.491, BAYES_00=-2.599, J_CHICKENPOX_46=0.6]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id V4Swfo-M4z84 for <hybi@core3.amsl.com>; Sun, 15 Aug 2010 15:17:03 -0700 (PDT)
Received: from www5.webmail.pair.com (www5.webmail.pair.com [66.39.3.83]) by core3.amsl.com (Postfix) with SMTP id D44AB3A6833 for <hybi@ietf.org>; Sun, 15 Aug 2010 15:17:02 -0700 (PDT)
Received: (qmail 30494 invoked by uid 65534); 15 Aug 2010 22:17:38 -0000
Received: from 121.97.54.174 ([121.97.54.174]) (SquirrelMail authenticated user shelby@coolpage.com) by sm.webmail.pair.com with HTTP; Sun, 15 Aug 2010 18:17:38 -0400
Message-ID: <be179961800b04a84e29abd8c8201587.squirrel@sm.webmail.pair.com>
In-Reply-To: <20100815220530.GI27614@1wt.eu>
References: <20100815100717.GA27614@1wt.eu> <1c2251f66b8d01880b6943561c07d3cb.squirrel@sm.webmail.pair.com> <20100815122648.GC27614@1wt.eu> <91f61d138b8a8a80271688a0e10a685a.squirrel@sm.webmail.pair.com> <4C67EABA.1020109@gmx.de> <30e5b12387f782afa0cb1df77de847fa.squirrel@sm.webmail.pair.com> <20100815154910.GF27614@1wt.eu> <392847bd7906678afc333a9011ae9aab.squirrel@sm.webmail.pair.com> <20100815204023.GG27614@1wt.eu> <cdc1d5f265e9654085672cb82fed6ddf.squirrel@sm.webmail.pair.com> <20100815220530.GI27614@1wt.eu>
Date: Sun, 15 Aug 2010 18:17:38 -0400
From: Shelby Moore <shelby@coolpage.com>
To: Willy Tarreau <w@1wt.eu>
User-Agent: SquirrelMail/1.4.20
MIME-Version: 1.0
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: 8bit
X-Priority: 3 (Normal)
Importance: Normal
Cc: hybi@ietf.org
Subject: Re: [hybi] #1: HTTP Compliance
X-BeenThere: hybi@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
Reply-To: shelby@coolpage.com
List-Id: Server-Initiated HTTP <hybi.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/hybi>, <mailto:hybi-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/hybi>
List-Post: <mailto:hybi@ietf.org>
List-Help: <mailto:hybi-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/hybi>, <mailto:hybi-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 15 Aug 2010 22:17:04 -0000

> On Sun, Aug 15, 2010 at 05:34:22PM -0400, Shelby Moore wrote:
>> Agreed not a battle. Any way my ideas about these more abstract
>> technical
>> issues do not seem to receive much comprehension, because they fly in
>> opposition to human nature to want to be in control of something (even
>> if
>> it is an illusion).
>
> No, it's just that you're discussing general security considerations on
> this list which is specifically about implementing the WebSocket protocol
> (whether over HTTP or not). It becomes way off-topic. And we can't discuss
> HTTP's reliability and security here. At most we could discuss whether
> we agree to use it or not, and how to use it. If we have a problem with
> an aspect of HTTP that can become a risk, then it should be addressed on
> the http-bis mailing list. HyBi should not try to address HTTP concerns
> in its own corner. That's why your ideas don't receive much comprehension
> here unfortunately.

Apologies for the misunderstanding, I meant "have not in past received
much comprehension". Agreed thank you, this is not the proper forum to aim
such off topic security discussion. Concensus on HTTP Upgrade was already
declared. You and I both amicably agree with it.

The new threads on TLS and specific port+tunnel are interesting, amicable
and productive.