Re: [httpslocal/usecases] Collect relevant IETF specs and drafts (#7)

@chrisn Thanks a lot! Of course, that analysis report looks very useful to us, and we should read "Privacy" and "Security" sections carefully.

> Regarding authentication and authorization, are you thinking of things like OAuth 2.0 (and in particular the Device Flow?

Maybe, yes. We are thinking about mechanism to issue appropriate TLS certificates for such devices. So, authenticating and authorizing the devices properly would be necessary so that the devices could have their certificates safely and a web application could access the devices via HTTPS.

@dajiaji what do you think about that?

-- 
You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub:
https://github.com/httpslocal/usecases/issues/7#issuecomment-320207269

Received on Friday, 4 August 2017 09:47:48 UTC