Last Call Review of draft-ietf-httpbis-authscheme-registrations-08
review-ietf-httpbis-authscheme-registrations-08-secdir-lc-meadows-2013-11-21-00

Request Review of draft-ietf-httpbis-authscheme-registrations
Requested rev. no specific revision (document currently at 10)
Type Last Call Review
Team Security Area Directorate (secdir)
Deadline 2013-12-17
Requested 2013-10-24
Draft last updated 2013-11-21
Completed reviews Genart Last Call review of -08 by Kathleen Moriarty (diff)
Genart Telechat review of -09 by Kathleen Moriarty (diff)
Secdir Last Call review of -08 by Catherine Meadows (diff)
Opsdir Telechat review of -08 by Susan Hares (diff)
Assignment Reviewer Catherine Meadows
State Completed
Review review-ietf-httpbis-authscheme-registrations-08-secdir-lc-meadows-2013-11-21
Reviewed rev. 08 (document currently at 10)
Review result Ready
Review completed: 2013-11-21

Review
review-ietf-httpbis-authscheme-registrations-08-secdir-lc-meadows-2013-11-21

I have reviewed this document as part of the security directorate's 

ongoing effort to review all IETF documents being processed by the 

IESG.  These comments were written primarily for the benefit of the 

security area directors.  Document editors and WG chairs should treat 

these comments just like any other last call comments.

This document registers Hypertext Transfer Protocol (HTTP) authentication schemes which have been defined in standards=tract

RCFs before the IANA HTTP Authentication Scheme Registry was established.

My understanding is that registration does not constitute an endorsement of security; it simply allows IANA do make sure that any

identifiers, etc. specified remain unique.  Thus I do not see any security issues with this document.




Catherine Meadows

Naval Research Laboratory

Code 5543

4555 Overlook Ave., S.W.

Washington DC, 20375

phone: 202-767-3490

fax: 202-404-7942

email: 

catherine.meadows at nrl.navy.mil