Re: EARL security/privacy concerns

Carlos Iglesias schrieb:
> However there is some information in the "HTTP Vocabulary in RDF" that is clearly sensitive. My first thoughts are for the "authorization" property which contains the userid and password, specially in "Basic Authentication" that relies just on a base64 encoded string.

Because it is the same in the HTTP protocol itself, I don't see the need 
for additionally encrypting it for EARL.
-- 
Johannes Koch - Competence Center BIKA
Fraunhofer Institute for Applied Information Technology (FIT.LIFE)
Schloss Birlinghoven, D-53757 Sankt Augustin, Germany
Phone: +49-2241-142628    Fax: +49-2241-142065

Received on Thursday, 26 October 2006 07:44:24 UTC