W3C home > Mailing lists > Public > ietf-http-wg@w3.org > October to December 2006

Re: security requirements (was: Updating RFC 2617 (HTTP Digest) to use UTF-8)

From: Robert Sayre <sayrer@gmail.com>
Date: Sat, 4 Nov 2006 15:53:11 -0500
Message-ID: <68fba5c50611041253tc5b32bejc92d2613c1b7cb62@mail.gmail.com>
To: "David Morris" <dwm@xpasc.com>
Cc: ietf-http-wg@w3.org

On 11/4/06, David Morris <dwm@xpasc.com> wrote:
> But in the end it doesn't matter,

I don't think that's an assumption that can be made, if we are to
envision a world where people actually use HTTP authentication instead
of cookies and forms. For instance, servers may wish to redirect
HTTP/1.1 clients.


Robert Sayre
Received on Saturday, 4 November 2006 20:53:20 UTC

This archive was generated by hypermail 2.3.1 : Monday, 9 September 2019 17:47:10 UTC