Re: Questions (errata?) about caching authenticated responses [#174]

Use the 2nd form and save the extra words to make sure "Cache-Control: 
private" is clear if it isn't already.

On Tue, 8 Jun 2010, Mark Nottingham wrote:

> Well, most of the proposal is defining what 'explicitly given otherwise' means (and noting the consequences)...
> 
> Which is more clear?
> 
> > Shared caches MUST NOT use a cached response to a request with an Authorization [ref] header to satisfy any subsequent request unless a cache directive that allows such responses to be stored is present in the response.
> 
> or 
> 
> """
> Requests with Authoration [ref] headers MUST have the same effect as Cache-Control: private [ref] on the response.
> """

Received on Tuesday, 8 June 2010 05:37:06 UTC