you might want to check out RFC 2660 - The Secure HyperText Transfer Protocol; this is closer to your thinking than the presently popular "HTTP over TLS". the problem of ubiquitous deployment is Real Hard..... Harald --On 19. juni 2002 18:38 +0200 Kai Kretschmann <K.Kretschmann@security-gui.de> wrote: > Hi there, > > Did anyone read the announcement of the internet draft about sighttp last > may? Any ideas, critics, comments are welcome. I did put a copy of the > document to the website www.sighttp.org for further discussion. > > thanks for reading, wkr > > > -- > Think-Safety > www.security-gui.de > > - > This message was passed through ietf_censored@carmen.ipv6.cselt.it, which > is a sublist of ietf@ietf.org. Not all messages are passed. > Decisions on what to pass are made solely by Raffaele D'Albenzio. > >