[kitten] Internet Draft: SASL for HTTP

Rick van Rein <rick@openfortress.nl> Thu, 03 February 2022 16:21 UTC

Return-Path: <vanrein@vanrein.org>
X-Original-To: kitten@ietfa.amsl.com
Delivered-To: kitten@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id AC70A3A0D11 for <kitten@ietfa.amsl.com>; Thu, 3 Feb 2022 08:21:34 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.649
X-Spam-Level:
X-Spam-Status: No, score=-1.649 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HEADER_FROM_DIFFERENT_DOMAINS=0.25, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=kpnmail.nl
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id YHX9F7agPNPH for <kitten@ietfa.amsl.com>; Thu, 3 Feb 2022 08:21:28 -0800 (PST)
Received: from ewsoutbound.kpnmail.nl (ewsoutbound.kpnmail.nl [195.121.94.170]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 709123A0D0B for <kitten@ietf.org>; Thu, 3 Feb 2022 08:21:25 -0800 (PST)
X-KPN-MessageId: 4feed829-850d-11ec-8147-005056ab378f
Received: from smtp.kpnmail.nl (unknown [10.31.155.40]) by ewsoutbound.so.kpn.org (Halon) with ESMTPS id 4feed829-850d-11ec-8147-005056ab378f; Thu, 03 Feb 2022 17:21:16 +0100 (CET)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=kpnmail.nl; s=kpnmail01; h=content-type:mime-version:message-id:subject:to:from:date; bh=B+S9QtcF9L7fbA7U/OB6Q3DilfQlhpaNuR1say2zfE8=; b=pnRo3zP1yIHcohrGOFxSqcX+XsA0587hX2CbNKbKkIorFR1E1tpSr8d5AsJ+zKKsljK8+W/3gMkGp /61RWxvRAHKEevNOrFRQtTtQxeTQyL3dpWXxc2GqvMo1FpD3KO0NHXe9GJBEp4efIt9bZkkRCa7Slo kl1RLWwQ3XfVKaX0=
X-KPN-VerifiedSender: No
X-CMASSUN: 33|3Nb2PBJLYeiv/8cca5NDy38V905/1pfd5dDudDQ/tqLkCB/k1K0AcMpfAX2ibmb ERg3F0HiclX+LJ9v5iL72Aw==
X-Originating-IP: 83.161.146.46
Received: from fame.vanrein.org (phantom.vanrein.org [83.161.146.46]) by smtp.xs4all.nl (Halon) with ESMTPSA id 53913f68-850d-11ec-a73f-005056ab7584; Thu, 03 Feb 2022 17:21:22 +0100 (CET)
Received: by fame.vanrein.org (Postfix, from userid 1000) id 658732D0AE; Thu, 3 Feb 2022 16:21:22 +0000 (UTC)
Date: Thu, 03 Feb 2022 16:21:22 +0000
From: Rick van Rein <rick@openfortress.nl>
To: kitten@ietf.org
Cc: Henri Manson <henri@mansoft.nl>
Message-ID: <20220203162122.GA342@openfortress.nl>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Disposition: inline
User-Agent: Mutt/1.5.20 (2009-06-14)
Archived-At: <https://mailarchive.ietf.org/arch/msg/kitten/DhmgyxWtMrrpuSk3HJPzw-y2pik>
Subject: [kitten] Internet Draft: SASL for HTTP
X-BeenThere: kitten@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Common Authentication Technologies - Next Generation <kitten.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/kitten>, <mailto:kitten-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/kitten/>
List-Post: <mailto:kitten@ietf.org>
List-Help: <mailto:kitten-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/kitten>, <mailto:kitten-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 03 Feb 2022 16:21:35 -0000

Hello Kitten,

We are finishing our implementation work on HTTP-SASL and have
co-written the following specification.  This may be used with
the Diameter relay for SASL, posted a few days ago.

Before putting this before the HTTP WG, I would like to give
Kitten a chance to respond.

Earlier work to embed SASL into HTTP stranded on the need to
keep state on the server; we have added an "s2s" field that
can be used to store the full authentication state.

As before, this is written as Independent proposal, but if it
becomes a WG document then that is fine too.

Thanks,
 -Rick

----- Forwarded message from internet-drafts@ietf.org -----

Date: Thu, 03 Feb 2022 07:55:46 -0800
From: internet-drafts@ietf.org
To: Rick van Rein <rick@openfortress.nl>
Subject: New Version Notification for draft-vanrein-httpauth-sasl-06.txt


A new version of I-D, draft-vanrein-httpauth-sasl-06.txt
has been successfully submitted by Rick van Rein and posted to the
IETF repository.

Name:		draft-vanrein-httpauth-sasl
Revision:	06
Title:		HTTP Authentication with SASL
Document date:	2022-02-03
Group:		Individual Submission
Pages:		14
URL:            https://www.ietf.org/archive/id/draft-vanrein-httpauth-sasl-06.txt
Status:         https://datatracker.ietf.org/doc/draft-vanrein-httpauth-sasl/
Htmlized:       https://datatracker.ietf.org/doc/html/draft-vanrein-httpauth-sasl
Diff:           https://www.ietf.org/rfcdiff?url2=draft-vanrein-httpauth-sasl-06

Abstract:
   Most application-level protocols standardise their authentication
   exchanges under the SASL framework.  HTTP has taken another course,
   and often ends up replicating the work to allow individual
   mechanisms.  This specification adopts full SASL authentication into
   HTTP.

                                                                                  


The IETF Secretariat



----- End forwarded message -----