W3C home > Mailing lists > Public > ietf-http-wg@w3.org > October to December 2011

Feedback on draft-sigurdsson-anti-ddos-http-throttling

From: Mark Nottingham <mnot@mnot.net>
Date: Mon, 10 Oct 2011 14:41:30 +1100
Message-Id: <97CAAE9A-42F5-4B45-9D8E-C590D9EA6881@mnot.net>
Cc: Adam Barth <w3c@adambarth.com>, HTTP Working Group <ietf-http-wg@w3.org>
To: joi@google.com
Hi Joi,

I just noticed your draft <http://www.ietf.org/id/draft-sigurdsson-anti-ddos-http-throttling-00.txt> and had a quick look through it.

One thing that stood out was your re-definition of the Retry-After HTTP header; modifying the semantics of an existing header is generally not a good idea (as doing so dilutes interop). If it does need changing, that needs to be done in consultation with the entire community, not unilaterally.

I'd suggest you define a different header; if you really need to use Retry-After, please engage with the HTTPbis WG (CC:ed).

Also, you'll need to register whatever headers you define; see RFC3864.

Regards,


--
Mark Nottingham   http://www.mnot.net/
Received on Monday, 10 October 2011 03:42:11 GMT

This archive was generated by hypermail 2.2.0+W3C-0.50 : Friday, 27 April 2012 06:51:48 GMT