Internet Engineering Task Force (IETF) J. Reschke Request for Comments: 7236 greenbytes Category: Informational June 2014 ISSN: 2070-1721Initial Hypertext Transfer Protocol (HTTP) Authentication Scheme Registrations
Reschke Informational [Page 1]
RFC 7236 HTTP Authentication Scheme Registrations June 2014
Table of Contents
1. Introduction
This document registers Hypertext Transfer Protocol (HTTP) authentication schemes that have been defined in RFCs before the IANA HTTP Authentication Scheme Registry was established.
2. Security Considerations
There are no security considerations related to the registration itself.
3. IANA Considerations
The registrations below have been added to the IANA "Hypertext Transfer Protocol (HTTP) Authentication Scheme Registry" at <http://www.iana.org/assignments/http-authschemes> (see Section 5.1 of [RFC7235]).
+----------------+------------+-------------------------------------+
| Authentication | Reference | Notes |
| Scheme Name | | |
+----------------+------------+-------------------------------------+
| Basic | [RFC2617], | |
| | Section 2 | |
| Bearer | [RFC6750] | |
| Digest | [RFC2617], | |
| | Section 3 | |
| Negotiate | [RFC4559], | This authentication scheme violates |
| | Section 3 | both HTTP semantics (being |
| | | connection-oriented) and syntax |
| | | (use of syntax incompatible with |
| | | the WWW-Authenticate and |
| | | Authorization header field syntax). |
| OAuth | [RFC5849], | |
| | Section | |
| | 3.5.1 | |
+----------------+------------+-------------------------------------+
Reschke Informational [Page 2]
RFC 7236 HTTP Authentication Scheme Registrations June 2014 4. Normative References[RFC2617] Franks, J., Hallam-Baker, P., Hostetler, J., Lawrence, S.,