W3C home > Mailing lists > Public > ietf-http-wg-old@w3.org > September to December 1997

Re: Regarding Authentication

From: Ross Patterson <Ross_Patterson@ns.reston.vmd.sterling.com>
Date: Thu, 20 Nov 97 14:32:22 EST
Message-Id: <199711201940.AA23781@reston.vmd.sterling.com>
To: http-wg%cuckoo.hpl.hp.com@hplb.hpl.hp.com
X-Mailing-List: <http-wg@cuckoo.hpl.hp.com> archive/latest/4770
Sambasiva Rao <sams@wipinfo.soft.net> writes:

>Few issues related to Authentication  are as following :
>1> In the authentication credentials field defined as following
>       credentials  = basic-credentials
>                       |auth-scheme #auth-param
>       in RFC2068.
>       a> Does this mean the server must produce parse error if the client
>sends two or more scheme credentials ?

Yes, that's what it means.  There is no provision in HTTP 1.1 for
multiple sets of credentials on an Authorization header.  By extension,
that also means that there is no provision multiple Authorization headers
in a request.

Ross Patterson
Sterling Software, Inc.
VM Software Division
Received on Thursday, 20 November 1997 11:40:26 UTC

This archive was generated by hypermail 2.3.1 : Wednesday, 7 January 2015 14:40:21 UTC