[Last-Call] Re: Secdir telechat review of draft-ietf-httpbis-rfc6265bis-19

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hi,

On Tue, Feb 11, 2025 at 8:33 AM Valery Smyslov via Datatracker
<noreply@xxxxxxxx> wrote:
> Reviewer: Valery Smyslov
> Review result: Has Nits
>
> ...
>
> Just out of curiosity - the draft adds a requirement that cookie SHOULD NOT be
> greater than 400 days. I wonder why this particular margin was chosen. Why not
> 365 days (a year) - it looks like a natural equivalent to "very long, but not
> infinite"?

I like 400. If you want something to need refreshing in about a year
to avoid expiry, you need to allow some slack due to holidays,
weekends, vacations, scheduling, etc. You could maybe squeeze this
down to 390 or 385 but 400 is a nice round number.

Thanks,
Donald
===============================
 Donald E. Eastlake 3rd   +1-508-333-2270 (cell)
 2386 Panoramic Circle, Apopka, FL 32703 USA
 d3e3e3@xxxxxxxxx

-- 
last-call mailing list -- last-call@xxxxxxxx
To unsubscribe send an email to last-call-leave@xxxxxxxx




[Index of Archives]     [IETF Annoucements]     [IETF]     [IP Storage]     [Yosemite News]     [Linux SCTP]     [Linux Newbies]     [Mhonarc]     [Fedora Users]

  Powered by Linux