- From: Mike Bishop <mbishop@evequefou.be>
- Date: Thu, 17 Jul 2025 15:05:52 +0000
- To: "draft-ietf-httpbis-optimistic-upgrade@ietf.org" <draft-ietf-httpbis-optimistic-upgrade@ietf.org>
- CC: HTTP Working Group <ietf-http-wg@w3.org>
- Message-ID: <IA0PPF726CD7A1F16DCD167D59CB6EF0B28DA51A@IA0PPF726CD7A1F.namprd22.prod.outlook.>
Hi, Ben - Thanks for this document. I've followed it with interest and reviewed it in the past, so my comments at this point are minimal. Please review the HTTP Editorial Style Guide<https://httpwg.org/admin/editors/style-guide>, particularly ensuring that you're using a consistent format to reference status codes, field names, and method names. HTTP Editorial Style Guide - httpwg.org<https://httpwg.org/admin/editors/style-guide> Example Messages If your specification has examples of HTTP messages (and it probably should), they should give enough context for readers to understand. Generally, this means showing a substantial portion of the message; e.g., not just a header field in isolation, but an entire request or response message (with a truncated body). Where appropriate, an entire exchange (request and response ... httpwg.org The metadata indicates that it updates RFC9112, but 9112 is not mentioned in the abstract and the specific change being made is not explicit in the text of the document. I assume that Section 7 is intended to update RFC9112 to impose these requirements? In Section 3.1, consider "doesn't" => "cannot". In Section 6, should TLS also be listed as an example of a fixed preamble? It's only one byte, but it gets the job done. In Section 6.1, I assume you're capitalizing "Upgrade Token," "Method," etc. because they're capitalized in the registries, but registry names are always title-cased. Where these terms are used elsewhere in RFC9110, they're not capitalized terms. While I can understand that a Security Considerations section seems superfluous in a document whose title is "Security Considerations for...", RFC2223 does require it of all RFCs. A single sentence that the entire document discusses security considerations should be sufficient. Beyond these minor comments, I think this is ready to move forward into Last Call and IESG review. Thanks for driving this work forward over the last two years. -Mike Bishop (as AD)
Received on Thursday, 17 July 2025 15:06:01 UTC