[websec] #14: Effective Request URI definition issues

"websec issue tracker" <trac+websec@trac.tools.ietf.org> Wed, 14 September 2011 21:42 UTC

Return-Path: <trac+websec@trac.tools.ietf.org>
X-Original-To: websec@ietfa.amsl.com
Delivered-To: websec@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D7D6221F8CB8 for <websec@ietfa.amsl.com>; Wed, 14 Sep 2011 14:42:27 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.6
X-Spam-Level:
X-Spam-Status: No, score=-102.6 tagged_above=-999 required=5 tests=[AWL=-0.000, BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id vDtcys3bmnEh for <websec@ietfa.amsl.com>; Wed, 14 Sep 2011 14:42:17 -0700 (PDT)
Received: from gamay.tools.ietf.org (gamay.tools.ietf.org [208.66.40.242]) by ietfa.amsl.com (Postfix) with ESMTP id B3D4A21F8CA4 for <websec@ietf.org>; Wed, 14 Sep 2011 14:42:17 -0700 (PDT)
Received: from localhost ([::1] helo=gamay.tools.ietf.org) by gamay.tools.ietf.org with esmtp (Exim 4.76) (envelope-from <trac+websec@trac.tools.ietf.org>) id 1R3xFk-0007QI-Kh; Wed, 14 Sep 2011 17:44:20 -0400
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 8bit
From: websec issue tracker <trac+websec@trac.tools.ietf.org>
X-Trac-Version: 0.11.7
Precedence: bulk
Auto-Submitted: auto-generated
X-Mailer: Trac 0.11.7, by Edgewall Software
To: draft-ietf-websec-strict-transport-sec@tools.ietf.org, jeff.hodges@kingsmountain.com
X-Trac-Project: websec
Date: Wed, 14 Sep 2011 21:44:20 -0000
X-URL: http://tools.ietf.org/websec/
X-Trac-Ticket-URL: http://trac.tools.ietf.org/wg/websec/trac/ticket/14
Message-ID: <070.b5593d5ae1f599f191177a5e921f48e4@trac.tools.ietf.org>
X-Trac-Ticket-ID: 14
X-SA-Exim-Connect-IP: ::1
X-SA-Exim-Rcpt-To: draft-ietf-websec-strict-transport-sec@tools.ietf.org, jeff.hodges@kingsmountain.com, websec@ietf.org
X-SA-Exim-Mail-From: trac+websec@trac.tools.ietf.org
X-SA-Exim-Scanned: No (on gamay.tools.ietf.org); SAEximRunCond expanded to false
Resent-To:
Resent-Message-Id: <20110914214217.B3D4A21F8CA4@ietfa.amsl.com>
Resent-Date: Wed, 14 Sep 2011 14:42:17 -0700
Resent-From: trac+websec@trac.tools.ietf.org
Cc: websec@ietf.org
Subject: [websec] #14: Effective Request URI definition issues
X-BeenThere: websec@ietf.org
X-Mailman-Version: 2.1.12
List-Id: Web Application Security Minus Authentication and Transport <websec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/websec>, <mailto:websec-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/websec>
List-Post: <mailto:websec@ietf.org>
List-Help: <mailto:websec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/websec>, <mailto:websec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 14 Sep 2011 21:42:28 -0000

#14: Effective Request URI definition issues

 https://www.ietf.org/mail-archive/web/websec/current/msg00473.html:

 On 2011-08-06 01:34, =JeffH wrote:

     ...
     12. Removed any and all dependencies on
     [I-D.draft-ietf-httpbis-p1-messaging-15], instead depending
     on [RFC2616] only. Fixes issue ticket #12
     <http://trac.tools.ietf.org/wg/websec/trac/ticket/12>.
     ...

 Not sure this is a good idea.

 The current text copies a known bug from draft-ietf-
 httpbis-p1-messaging-15 (see
 <http://trac.tools.ietf.org/wg/httpbis/trac/changeset/1340>).  [ the HTTP
 method in the example should
 OPTIONS rather than GET ]

 Also, the ABNF claims it's based on RFC 2616's definitions, but mentions
 RFC 3986 in ABNF comments. This needs to be checked.

-- 
-------------------------------------------+--------------------------------
 Reporter:  jeff.hodges@…                  |       Owner:  draft-ietf-websec-strict-transport-sec@…             
     Type:  defect                         |      Status:  new                                                  
 Priority:  minor                          |   Milestone:                                                       
Component:  strict-transport-sec           |     Version:  2.0                                                  
 Severity:  -                              |    Keywords:                                                       
-------------------------------------------+--------------------------------

Ticket URL: <http://trac.tools.ietf.org/wg/websec/trac/ticket/14>
websec <http://tools.ietf.org/websec/>