<?xml version="1.0" encoding="UTF-8"?>
<reference anchor="I-D.ietf-wimse-http-signature" target="https://datatracker.ietf.org/doc/html/draft-ietf-wimse-http-signature-05">
   <front>
      <title>WIMSE Workload-to-Workload Authentication with HTTP Signatures</title>
      <author initials="J. A." surname="Salowey" fullname="Joseph A. Salowey">
         <organization>Palo Alto Networks</organization>
      </author>
      <author initials="Y." surname="Sheffer" fullname="Yaron Sheffer">
         <organization>Intuit</organization>
      </author>
      <date month="July" day="20" year="2026" />
      <abstract>
	 <t>   The WIMSE architecture defines authentication and authorization for
   software workloads in a variety of runtime environments, from the
   most basic ones to complex multi-service, multi-cloud, multi-tenant
   deployments.  This document defines one of the mechanisms to provide
   workload authentication, using HTTP Signatures.  While only
   applicable to HTTP traffic, the protocol provides end-to-end
   protection of requests (and optionally, responses), even when service
   traffic is not end-to-end encrypted, that is, when TLS proxies and
   load balancers are used.  Authentication is based on the Workload
   Identity Token (WIT).

	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-ietf-wimse-http-signature-05" />
   
</reference>
