Changeset 654


Ignore:
Timestamp:
Jul 29, 2009, 3:58:42 AM (10 years ago)
Author:
ylafon@…
Message:

Resolve #33: Added TRACE security considerations (closes #33)

File:
1 edited

Legend:

Unmodified
Added
Removed
  • draft-ietf-httpbis/latest/p2-semantics.xml

    r653 r654  
    26152615   purposes for which HTTP currently has no better mechanism.
    26162616</t>
     2617<t>
     2618  Some methods, like TRACE (<xref target="method.trace" />) may expose
     2619  information sent in request headers in the response entity.
     2620  Clients &SHOULD; be careful with sensitive information, like Cookies,
     2621  Authorization credentials and other headers that might be used to
     2622  collect data from the Client.
     2623</t>
    26172624</section>
    26182625
     
    36283635      "Location header ABNF should use 'URI'"
    36293636    </t>
     3637    <t>
     3638      <eref target="http://tools.ietf.org/wg/httpbis/trac/ticket/33"/>:
     3639      "TRACE security considerations"
     3640    </t>
    36303641  </list>
    36313642</t>
Note: See TracChangeset for help on using the changeset viewer.