WGLC issue for p7: "strength"

2.1 Challenge and Response - "The user agent MUST choose to use one of the challenges with the strongest auth-scheme it understands..." What does "strongest" mean here? Should we have an index of auth scheme strength as a registry field? This may seem like nit-picking, but we place a MUST against it.

--
Mark Nottingham   http://www.mnot.net/

Received on Friday, 16 March 2012 08:53:48 UTC