* WGs marked with an * asterisk has had at least one new draft made available during the last 5 days

Ticket #288 (closed design: fixed)

Opened 4 years ago

Last modified 3 years ago

Considering messages in isolation

Reported by: mnot@pobox.com Owned by: julian.reschke@gmx.de
Priority: normal Milestone: 15
Component: p1-messaging Severity: Active WG Document
Keywords: Cc:
Origin:

Description

We need to explicitly require each and every HTTP message on the wire to be considered in isolation.

E.g., it's reported that some load balancers can be configured to route the message based upon only the first message's Host header per connection.

Likewise, some broken authentication schemes rely on keeping state between messages in a connection.

Change History

comment:1 Changed 4 years ago by mnot@pobox.com

Probably appropriate in the section on persistent connections (or at least link from there).

comment:2 Changed 4 years ago by mnot@pobox.com

Add to new message orientation section (see #283) or just to 2.2 Client/Server? messaging:

Recipients MUST consider every message in a connection in isolation; because HTTP is a stateless protocol, it cannot be assumed that two requests on the same connection are from the same client or share any other common attributes.

comment:3 Changed 3 years ago by mnot@pobox.com

  • Milestone changed from unassigned to 15

comment:4 Changed 3 years ago by julian.reschke@gmx.de

  • Owner set to julian.reschke@gmx.de
  • Status changed from new to assigned

comment:5 Changed 3 years ago by julian.reschke@gmx.de

From [1317]:

explain that messages need to be considered in isolation (see #288)

comment:6 Changed 3 years ago by julian.reschke@gmx.de

  • Status changed from assigned to closed
  • Resolution set to incorporated

comment:7 Changed 3 years ago by julian.reschke@gmx.de

From [1324]:

mention NTLM as something that violates the stalessness requirement (see #288)

comment:8 Changed 3 years ago by mnot@pobox.com

  • Status changed from closed to reopened
  • Resolution incorporated deleted

comment:9 Changed 3 years ago by mnot@pobox.com

  • Status changed from reopened to closed
  • Resolution set to fixed
Note: See TracTickets for help on using tickets.