Cookies: HTTP State Management Mechanism
draft-ietf-httpbis-rfc6265bis-22
Revision differences
Document history
| Date | Rev. | By | Action |
|---|---|---|---|
|
2026-08-13
|
22 | (System) | RPC status changed to In Final Review from final_review_editor |
|
2026-07-10
|
22 | (System) | RPC status changed to final_review_editor from second_editor |
|
2026-06-29
|
22 | (System) | RPC status changed to second_editor from Awaiting Editor Assignment |
|
2026-06-04
|
22 | (System) | RPC status changed to Awaiting Editor Assignment from first_editor |
|
2026-05-20
|
22 | (System) | RPC status changed to first_editor |
|
2026-05-20
|
22 | (System) | RFC Editor state changed to In Progress from EDIT |
|
2025-12-09
|
22 | (System) | RFC Editor state changed to EDIT from AUTH |
|
2025-12-03
|
22 | (System) | IANA Action state changed to RFC-Ed-Ack from Waiting on RFC Editor |
|
2025-12-03
|
22 | (System) | IANA Action state changed to Waiting on RFC Editor from In Progress |
|
2025-12-03
|
22 | (System) | IANA Action state changed to In Progress from Waiting on Authors |
|
2025-12-02
|
22 | (System) | RFC Editor state changed to AUTH from EDIT |
|
2025-12-02
|
22 | (System) | RFC Editor state changed to EDIT |
|
2025-12-02
|
22 | (System) | IESG state changed to RFC Ed Queue from Approved-announcement sent |
|
2025-12-02
|
22 | (System) | Announcement was received by RFC Editor |
|
2025-12-02
|
22 | (System) | IANA Action state changed to Waiting on Authors from In Progress |
|
2025-12-02
|
22 | (System) | IANA Action state changed to In Progress |
|
2025-12-02
|
22 | (System) | Removed all action holders (IESG state changed) |
|
2025-12-02
|
22 | Morgan Condie | IESG state changed to Approved-announcement sent from Approved-announcement to be sent |
|
2025-12-02
|
22 | Morgan Condie | IESG has approved the document |
|
2025-12-02
|
22 | Morgan Condie | Closed "Approve" ballot |
|
2025-12-02
|
22 | Morgan Condie | Ballot approval text was generated |
|
2025-12-02
|
22 | Mike Bishop | IESG state changed to Approved-announcement to be sent from Approved-announcement to be sent::AD Followup |
|
2025-12-01
|
22 | Steven Bingler | New version available: draft-ietf-httpbis-rfc6265bis-22.txt |
|
2025-12-01
|
22 | (System) | New version approved |
|
2025-12-01
|
22 | (System) | Request for posting confirmation emailed to previous authors: John Wilander , Mike West , Steven Bingler |
|
2025-12-01
|
22 | Steven Bingler | Uploaded new revision |
|
2025-09-24
|
21 | (System) | Changed action holders to Mike Bishop (IESG state changed) |
|
2025-09-24
|
21 | (System) | Sub state has been changed to AD Followup from Revised I-D Needed |
|
2025-09-24
|
21 | Steven Bingler | New version available: draft-ietf-httpbis-rfc6265bis-21.txt |
|
2025-09-24
|
21 | Mark Nottingham | New version approved |
|
2025-09-24
|
21 | (System) | Request for posting confirmation emailed to previous authors: John Wilander , Mike West , Steven Bingler , httpbis-chairs@ietf.org |
|
2025-09-24
|
21 | Steven Bingler | Uploaded new revision |
|
2025-03-19
|
20 | Jenny Bui | Shepherding AD changed to Mike Bishop |
|
2025-03-18
|
20 | (System) | Changed action holders to Mike West, Steven Bingler, John Wilander (IESG state changed) |
|
2025-03-18
|
20 | Francesca Palombini | IESG state changed to Approved-announcement to be sent::Revised I-D Needed from IESG Evaluation::AD Followup |
|
2025-03-18
|
20 | Éric Vyncke | [Ballot comment] Thanks for clearing my 'easy to fix' DISCUSS kept in the archive: https://mailarchive.ietf.org/arch/msg/httpbisa/CanH8icaNg-hZV7IfD7L5DJsWTI/ |
|
2025-03-18
|
20 | Éric Vyncke | [Ballot Position Update] Position for Éric Vyncke has been changed to No Objection from Discuss |
|
2025-03-17
|
20 | (System) | Changed action holders to Francesca Palombini (IESG state changed) |
|
2025-03-17
|
20 | (System) | Sub state has been changed to AD Followup from Revised I-D Needed |
|
2025-03-17
|
20 | (System) | IANA Review state changed to Version Changed - Review Needed from IANA OK - Actions Needed |
|
2025-03-17
|
20 | Steven Bingler | New version available: draft-ietf-httpbis-rfc6265bis-20.txt |
|
2025-03-17
|
20 | (System) | New version approved |
|
2025-03-17
|
20 | (System) | Request for posting confirmation emailed to previous authors: John Wilander , Mike West , Steven Bingler |
|
2025-03-17
|
20 | Steven Bingler | Uploaded new revision |
|
2025-02-20
|
19 | (System) | Changed action holders to Mike West, Steven Bingler, John Wilander (IESG state changed) |
|
2025-02-20
|
19 | Jenny Bui | IESG state changed to IESG Evaluation::Revised I-D Needed from IESG Evaluation |
|
2025-02-20
|
19 | Paul Wouters | [Ballot comment] Thanks for this clear update. My only nit is that "infelicities" is not a word I knew, and I'm a fairly decent english-not-my-first-language … [Ballot comment] Thanks for this clear update. My only nit is that "infelicities" is not a word I knew, and I'm a fairly decent english-not-my-first-language speaker. I recommend rephrasing the sentences where this word is used. |
|
2025-02-20
|
19 | Paul Wouters | [Ballot Position Update] New position, No Objection, has been recorded for Paul Wouters |
|
2025-02-20
|
19 | Murray Kucherawy | [Ballot comment] I echo the kudos from others about a very good work product here. I support Eric's DISCUSS position. Some of the SHOULD [NOT] … [Ballot comment] I echo the kudos from others about a very good work product here. I support Eric's DISCUSS position. Some of the SHOULD [NOT] instances in Section 4.1.1 could benefit from either conversion to MUST [NOT] or an explanation of the choice that's being left to implementers. Same point in Section 5.8.3. == Comments from Andy Newton, incoming ART AD == I agree with Gunter’s comment. This is a very well-written document, and many thanks go to the authors for their effort and commitment. I do have one small observation. Section 5.7 has an ordered list with sub-lists. There seems to be an inconsistency in the “Otherwise:” sub-list between item 18 and the other items where an “Otherwise:” is embedded in a sub-list (for example items 9 and 10). |
|
2025-02-20
|
19 | Murray Kucherawy | [Ballot Position Update] New position, No Objection, has been recorded for Murray Kucherawy |
|
2025-02-19
|
19 | John Scudder | [Ballot comment] I, too, am a fan of "infelicities" -- the word, its use in this document, and most of all, your care in illustrating … [Ballot comment] I, too, am a fan of "infelicities" -- the word, its use in this document, and most of all, your care in illustrating several of said infelicities. |
|
2025-02-19
|
19 | John Scudder | [Ballot Position Update] New position, No Objection, has been recorded for John Scudder |
|
2025-02-18
|
19 | Zaheduzzaman Sarker | [Ballot comment] Thanks for working on this specification. I have following comments, I believe it would improve the specification if they are addressed - # … [Ballot comment] Thanks for working on this specification. I have following comments, I believe it would improve the specification if they are addressed - # The following two normative behaviors could easily be part of section 3 overview. Is there any particular reason to put these in the introduction section ? To maximize interoperability with user agents, servers SHOULD limit themselves to the well-behaved profile defined in Section 4 when generating cookies. User agents MUST implement the more liberal processing rules defined in Section 5, in order to maximize interoperability with existing servers that do not conform to the well-behaved profile defined in Section 4. # Who are "we" in section 5.2.2 's Note? # Can we be more specific on how section 5.2.2.2 is related to set-cookies and cookies header specification? It was obvious that service worker implementation should follow the w3c specification, but how it that related to this specification? Is there any specifics that the implementer's of this specification must consider? |
|
2025-02-18
|
19 | Zaheduzzaman Sarker | [Ballot Position Update] New position, No Objection, has been recorded for Zaheduzzaman Sarker |
|
2025-02-17
|
19 | Orie Steele | [Ballot comment] # Orie Steele, ART AD, comments for draft-ietf-httpbis-rfc6265bis-19 CC @OR13 * line numbers: - https://author-tools.ietf.org/api/idnits?url=https://www.ietf.org/archive/id/draft-ietf-httpbis-rfc6265bis-19.txt&submitcheck=True * comment syntax: - https://github.com/mnot/ietf-comments/blob/main/format.md * … [Ballot comment] # Orie Steele, ART AD, comments for draft-ietf-httpbis-rfc6265bis-19 CC @OR13 * line numbers: - https://author-tools.ietf.org/api/idnits?url=https://www.ietf.org/archive/id/draft-ietf-httpbis-rfc6265bis-19.txt&submitcheck=True * comment syntax: - https://github.com/mnot/ietf-comments/blob/main/format.md * "Handling Ballot Positions": - https://ietf.org/about/groups/iesg/statements/handling-ballot-positions/ ## Comments Thank you to Claudio Allocchio for the ARTART review. ### What year is it? I suspect I'm about to embarrass myself with ABNF yet again... ``` 598 NOTE: Some existing user agents differ in their interpretation of 599 two-digit years. To avoid compatibility issues, servers SHOULD use 600 the rfc1123-date format, which requires a four-digit year. ``` later: ``` 911 year = 2*4DIGIT [ non-digit *OCTET ] ``` https://datatracker.ietf.org/doc/html/rfc1123#page-55 Perhaps a better reference than "rfc1123-date" Would be: https://datatracker.ietf.org/doc/html/rfc6265#section-5.1.1 ? I tripped on this ABNF, because: https://www.rfc-editor.org/rfc/rfc3339.html#section-5.6 ``` date-fullyear = 4DIGIT ``` https://datatracker.ietf.org/doc/html/rfc7231#section-7.1.1.1 ``` year = 4DIGIT ``` https://datatracker.ietf.org/doc/html/rfc9110#section-5.6.7 ``` year = 4DIGIT ``` https://datatracker.ietf.org/doc/html/rfc9165#section-3-7 ``` date-fullyear = 4DIGIT ``` Is "2*4DIGIT [ non-digit *OCTET ]" the correct way to signal the decimal numbers expected in cookies for year? I suspect this is leftover from the 2 digit year case. which was: https://datatracker.ietf.org/doc/html/rfc822#section-5.1 ``` date = 1*2DIGIT month 2DIGIT ``` And was updated to: ``` date = 1*2DIGIT month 2*4DIGIT ``` But why is it not one of these: ``` date = 1*2DIGIT month 1*4DIGIT date = 1*2DIGIT month 4DIGIT ``` ## Nits ### BCP14 update ``` 216 The key words "MUST", "MUST NOT", "REQUIRED", "SHALL", "SHALL NOT", 217 "SHOULD", "SHOULD NOT", "RECOMMENDED", "MAY", and "OPTIONAL" in this 218 document are to be interpreted as described in [RFC2119]. ``` vvvv ``` The key words "MUST", "MUST NOT", "REQUIRED", "SHALL", "SHALL NOT", "SHOULD", "SHOULD NOT", "RECOMMENDED", "NOT RECOMMENDED", "MAY", and "OPTIONAL" in this document are to be interpreted as described in BCP 14 [RFC2119] [RFC8174] when, and only when, they appear in all capitals, as shown here. ``` |
|
2025-02-17
|
19 | Orie Steele | [Ballot Position Update] New position, No Objection, has been recorded for Orie Steele |
|
2025-02-17
|
19 | Roman Danyliw | [Ballot comment] ** Thank you to Dale R. Worley for the GENART review on -19. Please review https://datatracker.ietf.org/doc/review-ietf-httpbis-rfc6265bis-19-genart-lc-worley-2025-02-10/. Specifically, review the clarify of the … [Ballot comment] ** Thank you to Dale R. Worley for the GENART review on -19. Please review https://datatracker.ietf.org/doc/review-ietf-httpbis-rfc6265bis-19-genart-lc-worley-2025-02-10/. Specifically, review the clarify of the ABNF definition on handling whitespace in addition to the other pointers where the text would benefit from clarity. ** Please cite the whatwg.org documents the same: [DOM-DOCUMENT-COOKIE] WHATWG, "HTML - Living Standard", 18 May 2021, . [FETCH] van Kesteren, A., "Fetch", n.d., . [HTML] Hickson, I., Pieters, S., van Kesteren, A., Jägenstedt, P., and D. Denicola, "HTML", n.d., . [SAMESITE] WHATWG, "HTML - Living Standard", 26 January 2021, . -- [SAMESITE] and [DOM-DOCUMENT-COOKIE] use a date, but not [HTML] and [FETCH]. As I recollect, using the date was the resolution when this issue was last raised on a ballot from an HTTP document ballot. -- Why is [SAMESITE] and [HTML] cited differently despite being the same spec. [HTML] includes author names, but [SAMESITE] does not |
|
2025-02-17
|
19 | Roman Danyliw | [Ballot Position Update] New position, No Objection, has been recorded for Roman Danyliw |
|
2025-02-17
|
19 | Petr Špaček | Request for Telechat review by DNSDIR Completed: Almost Ready. Reviewer: Petr Špaček. Sent review to list. |
|
2025-02-17
|
19 | Éric Vyncke | [Ballot discuss] # Éric Vyncke, INT AD, comments for draft-ietf-httpbis-rfc6265bis-19 CC @evyncke Thank you for the work put into this document, like other ADs I … [Ballot discuss] # Éric Vyncke, INT AD, comments for draft-ietf-httpbis-rfc6265bis-19 CC @evyncke Thank you for the work put into this document, like other ADs I find it easy to read (for most parts). Please find below one blocking DISCUSS points (easy to address), some non-blocking COMMENT points (but replies would be appreciated even if only for my own education). Special thanks to Mark Nottingham for the shepherd's write-up including the WG consensus *and* the justification of the intended status. Please note that Petr Špaček is the DNS directorate reviewer and you may want to consider this dns-dir review as well when it will be available (no need to wait for it though): https://datatracker.ietf.org/doc/draft-ietf-httpbis-rfc6265bis/reviewrequest/21332/ I hope that this review helps to improve the document, Regards, -éric ## DISCUSS (blocking) As noted in https://www.ietf.org/blog/handling-iesg-ballot-positions/, a DISCUSS ballot is just a request to have a discussion on the following topics: ### Section 2.1 Trivial to fix: please use the actual BCP14 template include RFC 8174 reference. |
|
2025-02-17
|
19 | Éric Vyncke | [Ballot comment] ## COMMENTS (non-blocking) ### Section 1 & abstract Having some text about the difference with RFC 6265 would be helpful. As a non-English … [Ballot comment] ## COMMENTS (non-blocking) ### Section 1 & abstract Having some text about the difference with RFC 6265 would be helpful. As a non-English speaker, I had to check the meaning of `infelicities`... I.e., I share Warren's view on unusual words. ### Section 2.1 Unsure whether using "conformance" is the right word to be used in an IETF document. The BCP14 template has also little to do with conformance. Suggest using some wording related to "interoperation" rather than "conformance". Section 3.2 uses "compatible", which is more appropriate. ### Section 3 I am far from being an HTTP expert, but can CDN/proxies also set cookies ? It does not seem so when reading `a way for an origin server to send state`, if so, then suggest adding text clarifying whether CDN/proxies can also Set-Cookie ### Section 3.1 As there are some text about deleting a cookie by sending a Expires date in the past, then the choice of `09 Jun 2021` for a valid cookie does not seem correct in 2025 ;-) Suggest adding some text in the 'valid' example stating that the request is sent in May 2021 or something similar. ### Section 4.1.2.7 To be honest and probably because I am not an HTTP expert, I was unable to understand the specification of SameSite... ### Sections 4.2 and 4.1 Suggest adding "HTTP Header" to the section title, especially for section 4.2 as I read it first about a section about cookies and not about the Cookie header. ### Section 5.2.1 Who is the "We" in `We'll define this origin,`? The authors ? The HTTPBIS WG ? The IETF ? Please refrain from using the ambiguous "we", also applicable in other places ### Section 5.3 What are the consequences of bypassing the "SHOULD" in this section ? Also applicable to many SHOULD (e.g., section 6.1), recommended may be more appropriate. ### Section 5.5 Any justification for the 400 days ? Also, please explain the consequences of bypassing the "SHOULD". ### Section 9.3 Good idea to create such a registry for easier extensions. |
|
2025-02-17
|
19 | Éric Vyncke | [Ballot Position Update] New position, Discuss, has been recorded for Éric Vyncke |
|
2025-02-15
|
19 | Claudio Allocchio | Request for Telechat review by ARTART Completed: Ready with Issues. Reviewer: Claudio Allocchio. Sent review to list. |
|
2025-02-13
|
19 | Warren Kumari | [Ballot comment] I would like to second Gunter's comments. This is a nicely written and easily understandable document. I do have one comment, which you … [Ballot comment] I would like to second Gunter's comments. This is a nicely written and easily understandable document. I do have one comment, which you can feel free to ignore -- while "infelicities" is a perfectly cromulent word, I suspect many readers will not be familiar with it. This may not be an issue - most readers will likely be on a computer and so can easily look it up (and learn a cool new word at the same time). If I were an author, I'd leave it as is, but then again, I'm a fan of Pratchett's Dictionary of Eye-Watering Words... |
|
2025-02-13
|
19 | Warren Kumari | [Ballot Position Update] New position, No Objection, has been recorded for Warren Kumari |
|
2025-02-13
|
19 | Deb Cooley | [Ballot comment] Many thanks to Valery Smyslov for his secdir review. Section 5: (Recognizing that this is from the original RFC) The nested numbered lists … [Ballot comment] Many thanks to Valery Smyslov for his secdir review. Section 5: (Recognizing that this is from the original RFC) The nested numbered lists are difficult to parse. For example Section 5.7, #6 has 3 sets of sub numbered lists that appear to be distinct. If these sub numbered lists are necessary (and when there is merely a #1 without a #2, one might argue it isn't 'necessary') then perhaps characters other than numbers might be clearer. Section 8: I agree with Valery that this section picks and chooses some example issues ('more salient issues'). I wonder if it isn't possible to give a 1-2 sentence overview of the general security issues associated with cookies. Something to set the stage, where what follows are examples of issues that have been seen over time (with or without mitigations). Sadly, I do not have proposed text, and indeed, it may not be possible/feasible. Section 10.1: Most (all?) of the WHATWG documents can be referenced as a snapshot to make them immutable. There might be other ways to do this, but this is the one I've seen used. |
|
2025-02-13
|
19 | Deb Cooley | [Ballot Position Update] New position, No Objection, has been recorded for Deb Cooley |
|
2025-02-12
|
19 | Erik Kline | [Ballot comment] # Internet AD comments for draft-ietf-httpbis-rfc6265bis-19 CC @ekline * comment syntax: - https://github.com/mnot/ietf-comments/blob/main/format.md * "Handling Ballot Positions": - https://ietf.org/about/groups/iesg/statements/handling-ballot-positions/ ## Comments … [Ballot comment] # Internet AD comments for draft-ietf-httpbis-rfc6265bis-19 CC @ekline * comment syntax: - https://github.com/mnot/ietf-comments/blob/main/format.md * "Handling Ballot Positions": - https://ietf.org/about/groups/iesg/statements/handling-ballot-positions/ ## Comments ### S4.1.2.7 * Is there anything noteworthy about a Set-Cookie header that has both SameSite and Domain attributes? How could they interact (if at all)? ### S5.1.3 * Does the canonicalization referred to here mean that described in S5.1.2? If so, S5.1.2 does not state that canonicalized form will be lower case. ## Nits ### S3.2.2 * "users agents" -> "user agents"? |
|
2025-02-12
|
19 | Erik Kline | [Ballot Position Update] New position, No Objection, has been recorded for Erik Kline |
|
2025-02-12
|
19 | Jim Guichard | [Ballot Position Update] New position, No Objection, has been recorded for Jim Guichard |
|
2025-02-11
|
19 | Gunter Van de Velde | [Ballot comment] Thanks to the authors for their work! I found this to be a well-written draft. It’s a long document, but the differences between … [Ballot comment] Thanks to the authors for their work! I found this to be a well-written draft. It’s a long document, but the differences between this -bis version and the original RFC6265 were really helpful. Keeping much of the original text while adding clarifications made it much easier to follow. |
|
2025-02-11
|
19 | Gunter Van de Velde | [Ballot Position Update] New position, No Objection, has been recorded for Gunter Van de Velde |
|
2025-02-11
|
19 | Valery Smyslov | Request for Telechat review by SECDIR Completed: Has Nits. Reviewer: Valery Smyslov. Sent review to list. |
|
2025-02-11
|
19 | Francesca Palombini | Ballot has been issued |
|
2025-02-11
|
19 | Francesca Palombini | [Ballot Position Update] New position, Yes, has been recorded for Francesca Palombini |
|
2025-02-11
|
19 | Francesca Palombini | Created "Approve" ballot |
|
2025-02-11
|
19 | Francesca Palombini | IESG state changed to IESG Evaluation from Waiting for AD Go-Ahead |
|
2025-02-11
|
19 | (System) | IESG state changed to Waiting for AD Go-Ahead from In Last Call |
|
2025-02-10
|
19 | Dale Worley | Request for Last Call review by GENART Completed: Ready with Issues. Reviewer: Dale Worley. Review has been revised by Dale Worley. |
|
2025-02-10
|
19 | Dale Worley | Request for Last Call review by GENART Completed: Ready with Issues. Reviewer: Dale Worley. Sent review to list. |
|
2025-02-07
|
19 | David Dong | IESG/Authors/WG Chairs: IANA has completed its review of draft-ietf-httpbis-rfc6265bis-19. If any part of this review is inaccurate, please let us know. IANA understands that, upon … IESG/Authors/WG Chairs: IANA has completed its review of draft-ietf-httpbis-rfc6265bis-19. If any part of this review is inaccurate, please let us know. IANA understands that, upon approval of this document, there are three actions which we must complete. First, in the Hypertext Transfer Protocol (HTTP) Field Name Registry located at: https://www.iana.org/assignments/http-fields/ an existing registration is to be updated as follows: Field Name: Cookie Status: permanent Structured Type: Reference: [ RFC-to-be; Section 5.8.1 ] Comments: Second, also in the Hypertext Transfer Protocol (HTTP) Field Name Registry located at: https://www.iana.org/assignments/http-fields/ an existing registration is to be updated as follows: Field Name: Set-Cookie Status: permanent Structured Type: Reference: [ RFC-to-be; Section 5.6 ] Comments: Third, a new registry group is to be created called Hypertext Transfer Protocol (HTTP) Cookie Attributes. The new registry group will have a reference of [ RFC-to-be ]. Fourth, in the new registry group created in action three above, a new registry will be created called Cookie Attributes. The new registry will be managed via RFC Required as defined by [RFC8126]. There are initial registrations in the new registry as follows: Name Reference ----------+----------------------------- Domain [ RFC-to-be; Section 4.1.2.3] Expires [ RFC-to-be; Section 4.1.2.1] HttpOnly [ RFC-to-be; Section 4.1.2.6] Max-Age [ RFC-to-be; Section 4.1.2.2] Path [ RFC-to-be; Section 4.1.2.4] SameSite [ RFC-to-be; Section 4.1.2.7] Secure [ RFC-to-be; Section 4.1.2.5] We understand that these are the only actions required to be completed upon approval of this document. NOTE: The actions requested in this document will not be completed until the document has been approved for publication as an RFC. This message is meant only to confirm the list of actions that will be performed. For definitions of IANA review states, please see: https://datatracker.ietf.org/help/state/draft/iana-review Thank you, David Dong IANA Services Sr. Specialist |
|
2025-02-07
|
19 | (System) | IANA Review state changed to IANA OK - Actions Needed from IANA - Review Needed |
|
2025-01-30
|
19 | Jean Mahoney | Request for Last Call review by GENART is assigned to Dale Worley |
|
2025-01-28
|
19 | Liz Flynn | IANA Review state changed to IANA - Review Needed |
|
2025-01-28
|
19 | Liz Flynn | The following Last Call announcement was sent out (ends 2025-02-11): From: The IESG To: IETF-Announce CC: draft-ietf-httpbis-rfc6265bis@ietf.org, francesca.palombini@ericsson.com, httpbis-chairs@ietf.org, ietf-http-wg@w3.org, mnot@mnot.net … The following Last Call announcement was sent out (ends 2025-02-11): From: The IESG To: IETF-Announce CC: draft-ietf-httpbis-rfc6265bis@ietf.org, francesca.palombini@ericsson.com, httpbis-chairs@ietf.org, ietf-http-wg@w3.org, mnot@mnot.net Reply-To: last-call@ietf.org Sender: Subject: Last Call: (Cookies: HTTP State Management Mechanism) to Proposed Standard The IESG has received a request from the HTTP WG (httpbis) to consider the following document: - 'Cookies: HTTP State Management Mechanism' as Proposed Standard The IESG plans to make a decision in the next few weeks, and solicits final comments on this action. Please send substantive comments to the last-call@ietf.org mailing lists by 2025-02-11. Exceptionally, comments may be sent to iesg@ietf.org instead. In either case, please retain the beginning of the Subject line to allow automated sorting. Abstract This document defines the HTTP Cookie and Set-Cookie header fields. These header fields can be used by HTTP servers to store state (called cookies) at HTTP user agents, letting the servers maintain a stateful session over the mostly stateless HTTP protocol. Although cookies have many historical infelicities that degrade their security and privacy, the Cookie and Set-Cookie header fields are widely used on the Internet. This document obsoletes RFC 6265. The file can be obtained via https://datatracker.ietf.org/doc/draft-ietf-httpbis-rfc6265bis/ No IPR declarations have been submitted directly on this I-D. |
|
2025-01-28
|
19 | Liz Flynn | IESG state changed to In Last Call from Last Call Requested |
|
2025-01-28
|
19 | Liz Flynn | Last call announcement was generated |
|
2025-01-28
|
19 | Tero Kivinen | Request for Telechat review by SECDIR is assigned to Valery Smyslov |
|
2025-01-28
|
19 | Francesca Palombini | Last call was requested |
|
2025-01-28
|
19 | Francesca Palombini | Last call announcement was generated |
|
2025-01-28
|
19 | Francesca Palombini | Ballot approval text was generated |
|
2025-01-28
|
19 | Francesca Palombini | AD review posted: https://mailarchive.ietf.org/arch/msg/httpbisa/JD6RZu9VHIgmoWYySlw4TYBJ91U/ |
|
2025-01-28
|
19 | Francesca Palombini | IESG state changed to Last Call Requested from AD Evaluation |
|
2025-01-27
|
19 | Barry Leiba | Request for Telechat review by ARTART is assigned to Claudio Allocchio |
|
2025-01-27
|
19 | Julian Reschke | Assignment of request for Telechat review by ARTART to Julian Reschke was rejected |
|
2025-01-26
|
19 | Barry Leiba | Request for Telechat review by ARTART is assigned to Julian Reschke |
|
2025-01-23
|
19 | Geoff Huston | Request for Telechat review by DNSDIR is assigned to Petr Špaček |
|
2025-01-23
|
19 | Cindy Morgan | Placed on agenda for telechat - 2025-02-20 |
|
2025-01-22
|
19 | Francesca Palombini | IESG state changed to AD Evaluation from Publication Requested |
|
2025-01-22
|
19 | Francesca Palombini | Ballot writeup was changed |
|
2025-01-07
|
19 | Mark Nottingham | # Document Shepherd Write-Up for Group Documents *This version is dated 4 July 2022.* Thank you for your service as a document shepherd. Among the … # Document Shepherd Write-Up for Group Documents *This version is dated 4 July 2022.* Thank you for your service as a document shepherd. Among the responsibilities is answering the questions in this write-up to give helpful context to Last Call and Internet Engineering Steering Group ([IESG][1]) reviewers, and your diligence in completing it is appreciated. The full role of the shepherd is further described in [RFC 4858][2]. You will need the cooperation of the authors and editors to complete these checks. Note that some numbered items contain multiple related questions; please be sure to answer all of them. ## Document History 1. Does the working group (WG) consensus represent the strong concurrence of a few individuals, with others being silent, or did it reach broad agreement? Yes - we had broad participation, especially from implementers. 2. Was there controversy about particular points, or were there decisions where the consensus was particularly rough? Not particularly. We used a process where major changes required a separate draft to be adopted and achieve consensus before we incorporated them. 3. Has anyone threatened an appeal or otherwise indicated extreme discontent? If so, please summarize the areas of conflict in separate email messages to the responsible Area Director. (It should be in a separate email because this questionnaire is publicly available.) No. 4. For protocol documents, are there existing implementations of the contents of the document? Have a significant number of potential implementers indicated plans to implement? Are any existing implementations reported somewhere, either in the document itself (as [RFC 7942][3] recommends) or elsewhere (where)? Yes, a few. ## Additional Reviews 5. Do the contents of this document closely interact with technologies in other IETF working groups or external organizations, and would it therefore benefit from their review? Have those reviews occurred? If yes, describe which reviews took place. There has been participation from members of the WHATWG, which is the most relevant body. 6. Describe how the document meets any required formal expert review criteria, such as the MIB Doctor, YANG Doctor, media type, and URI type reviews. N/A 7. If the document contains a YANG module, has the final version of the module been checked with any of the [recommended validation tools][4] for syntax and formatting validation? If there are any resulting errors or warnings, what is the justification for not fixing them at this time? Does the YANG module comply with the Network Management Datastore Architecture (NMDA) as specified in [RFC 8342][5]? No YANG here (yet). 8. Describe reviews and automated checks performed to validate sections of the final version of the document written in a formal language, such as XML code, BNF rules, MIB definitions, CBOR's CDDL, etc. ABNF has been listed. ## Document Shepherd Checks 9. Based on the shepherd's review of the document, is it their opinion that this document is needed, clearly written, complete, correctly designed, and ready to be handed off to the responsible Area Director? Yes. 10. Several IETF Areas have assembled [lists of common issues that their reviewers encounter][6]. For which areas have such issues been identified and addressed? For which does this still need to happen in subsequent reviews? N/A 11. What type of RFC publication is being requested on the IETF stream ([Best Current Practice][12], [Proposed Standard, Internet Standard][13], [Informational, Experimental or Historic][14])? Why is this the proper type of RFC? Do all Datatracker state attributes correctly reflect this intent? Proposed Standard. This is a bis of an existing PS. 12. Have reasonable efforts been made to remind all authors of the intellectual property rights (IPR) disclosure obligations described in [BCP 79][7]? To the best of your knowledge, have all required disclosures been filed? If not, explain why. If yes, summarize any relevant discussion, including links to publicly-available messages when applicable. Yes. 13. Has each author, editor, and contributor shown their willingness to be listed as such? If the total number of authors and editors on the front page is greater than five, please provide a justification. Yes. 14. Document any remaining I-D nits in this document. Simply running the [idnits tool][8] is not enough; please review the ["Content Guidelines" on authors.ietf.org][15]. (Also note that the current idnits tool generates some incorrect warnings; a rewrite is underway.) It's clean. 15. Should any informative references be normative or vice-versa? See the [IESG Statement on Normative and Informative References][16]. No. 16. List any normative references that are not freely available to anyone. Did the community have sufficient access to review any such normative references? USASCII (also referenced by 6265) is widely understood and usable, but the actual reference may require some hoop jumping. 17. Are there any normative downward references (see [RFC 3967][9] and [BCP 97][10]) that are not already listed in the [DOWNREF registry][17]? If so, list them. No. 18. Are there normative references to documents that are not ready to be submitted to the IESG for publication or are otherwise in an unclear state? If so, what is the plan for their completion? No. 19. Will publication of this document change the status of any existing RFCs? If so, does the Datatracker metadata correctly reflect this and are those RFCs listed on the title page, in the abstract, and discussed in the introduction? If not, explain why and point to the part of the document where the relationship of this document to these other RFCs is discussed. Yes and yes. 20. Describe the document shepherd's review of the IANA considerations section, especially with regard to its consistency with the body of the document. Confirm that all aspects of the document requiring IANA assignments are associated with the appropriate reservations in IANA registries. Confirm that any referenced IANA registries have been clearly identified. Confirm that each newly created IANA registry specifies its initial contents, allocations procedures, and a reasonable name (see [RFC 8126][11]). The document updates two HTTP field name registrations and creates a new cookie attribute registry; all appears to be in order. 21. List any new IANA registries that require Designated Expert Review for future allocations. Are the instructions to the Designated Expert clear? Please include suggestions of designated experts, if appropriate. The cookie attribute registration. No DE. [1]: https://www.ietf.org/about/groups/iesg/ [2]: https://www.rfc-editor.org/rfc/rfc4858.html [3]: https://www.rfc-editor.org/rfc/rfc7942.html [4]: https://wiki.ietf.org/group/ops/yang-review-tools [5]: https://www.rfc-editor.org/rfc/rfc8342.html [6]: https://wiki.ietf.org/group/iesg/ExpertTopics [7]: https://www.rfc-editor.org/info/bcp79 [8]: https://www.ietf.org/tools/idnits/ [9]: https://www.rfc-editor.org/rfc/rfc3967.html [10]: https://www.rfc-editor.org/info/bcp97 [11]: https://www.rfc-editor.org/rfc/rfc8126.html [12]: https://www.rfc-editor.org/rfc/rfc2026.html#section-5 [13]: https://www.rfc-editor.org/rfc/rfc2026.html#section-4.1 [14]: https://www.rfc-editor.org/rfc/rfc2026.html#section-4.2 [15]: https://authors.ietf.org/en/content-guidelines-overview [16]: https://www.ietf.org/about/groups/iesg/statements/normative-informative-references/ [17]: https://datatracker.ietf.org/doc/downref/ |
|
2025-01-07
|
19 | Mark Nottingham | IETF WG state changed to Submitted to IESG for Publication from WG Consensus: Waiting for Write-Up |
|
2025-01-07
|
19 | Mark Nottingham | IESG state changed to Publication Requested from I-D Exists |
|
2025-01-07
|
19 | (System) | Changed action holders to Francesca Palombini (IESG state changed) |
|
2025-01-07
|
19 | Mark Nottingham | Responsible AD changed to Francesca Palombini |
|
2025-01-07
|
19 | Mark Nottingham | Document is now in IESG state Publication Requested |
|
2025-01-07
|
19 | Mark Nottingham | # Document Shepherd Write-Up for Group Documents *This version is dated 4 July 2022.* Thank you for your service as a document shepherd. Among the … # Document Shepherd Write-Up for Group Documents *This version is dated 4 July 2022.* Thank you for your service as a document shepherd. Among the responsibilities is answering the questions in this write-up to give helpful context to Last Call and Internet Engineering Steering Group ([IESG][1]) reviewers, and your diligence in completing it is appreciated. The full role of the shepherd is further described in [RFC 4858][2]. You will need the cooperation of the authors and editors to complete these checks. Note that some numbered items contain multiple related questions; please be sure to answer all of them. ## Document History 1. Does the working group (WG) consensus represent the strong concurrence of a few individuals, with others being silent, or did it reach broad agreement? Yes - we had broad participation, especially from implementers. 2. Was there controversy about particular points, or were there decisions where the consensus was particularly rough? Not particularly. We used a process where major changes required a separate draft to be adopted and achieve consensus before we incorporated them. 3. Has anyone threatened an appeal or otherwise indicated extreme discontent? If so, please summarize the areas of conflict in separate email messages to the responsible Area Director. (It should be in a separate email because this questionnaire is publicly available.) No. 4. For protocol documents, are there existing implementations of the contents of the document? Have a significant number of potential implementers indicated plans to implement? Are any existing implementations reported somewhere, either in the document itself (as [RFC 7942][3] recommends) or elsewhere (where)? Yes, a few. ## Additional Reviews 5. Do the contents of this document closely interact with technologies in other IETF working groups or external organizations, and would it therefore benefit from their review? Have those reviews occurred? If yes, describe which reviews took place. There has been participation from members of the WHATWG, which is the most relevant body. 6. Describe how the document meets any required formal expert review criteria, such as the MIB Doctor, YANG Doctor, media type, and URI type reviews. N/A 7. If the document contains a YANG module, has the final version of the module been checked with any of the [recommended validation tools][4] for syntax and formatting validation? If there are any resulting errors or warnings, what is the justification for not fixing them at this time? Does the YANG module comply with the Network Management Datastore Architecture (NMDA) as specified in [RFC 8342][5]? No YANG here (yet). 8. Describe reviews and automated checks performed to validate sections of the final version of the document written in a formal language, such as XML code, BNF rules, MIB definitions, CBOR's CDDL, etc. ABNF has been listed. ## Document Shepherd Checks 9. Based on the shepherd's review of the document, is it their opinion that this document is needed, clearly written, complete, correctly designed, and ready to be handed off to the responsible Area Director? Yes. 10. Several IETF Areas have assembled [lists of common issues that their reviewers encounter][6]. For which areas have such issues been identified and addressed? For which does this still need to happen in subsequent reviews? N/A 11. What type of RFC publication is being requested on the IETF stream ([Best Current Practice][12], [Proposed Standard, Internet Standard][13], [Informational, Experimental or Historic][14])? Why is this the proper type of RFC? Do all Datatracker state attributes correctly reflect this intent? Proposed Standard. This is a bis of an existing PS. 12. Have reasonable efforts been made to remind all authors of the intellectual property rights (IPR) disclosure obligations described in [BCP 79][7]? To the best of your knowledge, have all required disclosures been filed? If not, explain why. If yes, summarize any relevant discussion, including links to publicly-available messages when applicable. Yes. 13. Has each author, editor, and contributor shown their willingness to be listed as such? If the total number of authors and editors on the front page is greater than five, please provide a justification. Yes. 14. Document any remaining I-D nits in this document. Simply running the [idnits tool][8] is not enough; please review the ["Content Guidelines" on authors.ietf.org][15]. (Also note that the current idnits tool generates some incorrect warnings; a rewrite is underway.) It's clean. 15. Should any informative references be normative or vice-versa? See the [IESG Statement on Normative and Informative References][16]. No. 16. List any normative references that are not freely available to anyone. Did the community have sufficient access to review any such normative references? USASCII (also referenced by 6265) is widely understood and usable, but the actual reference may require some hoop jumping. 17. Are there any normative downward references (see [RFC 3967][9] and [BCP 97][10]) that are not already listed in the [DOWNREF registry][17]? If so, list them. No. 18. Are there normative references to documents that are not ready to be submitted to the IESG for publication or are otherwise in an unclear state? If so, what is the plan for their completion? No. 19. Will publication of this document change the status of any existing RFCs? If so, does the Datatracker metadata correctly reflect this and are those RFCs listed on the title page, in the abstract, and discussed in the introduction? If not, explain why and point to the part of the document where the relationship of this document to these other RFCs is discussed. Yes and yes. 20. Describe the document shepherd's review of the IANA considerations section, especially with regard to its consistency with the body of the document. Confirm that all aspects of the document requiring IANA assignments are associated with the appropriate reservations in IANA registries. Confirm that any referenced IANA registries have been clearly identified. Confirm that each newly created IANA registry specifies its initial contents, allocations procedures, and a reasonable name (see [RFC 8126][11]). The document updates two HTTP field name registrations and creates a new cookie attribute registry; all appears to be in order. 21. List any new IANA registries that require Designated Expert Review for future allocations. Are the instructions to the Designated Expert clear? Please include suggestions of designated experts, if appropriate. The cookie attribute registration. No DE. [1]: https://www.ietf.org/about/groups/iesg/ [2]: https://www.rfc-editor.org/rfc/rfc4858.html [3]: https://www.rfc-editor.org/rfc/rfc7942.html [4]: https://wiki.ietf.org/group/ops/yang-review-tools [5]: https://www.rfc-editor.org/rfc/rfc8342.html [6]: https://wiki.ietf.org/group/iesg/ExpertTopics [7]: https://www.rfc-editor.org/info/bcp79 [8]: https://www.ietf.org/tools/idnits/ [9]: https://www.rfc-editor.org/rfc/rfc3967.html [10]: https://www.rfc-editor.org/info/bcp97 [11]: https://www.rfc-editor.org/rfc/rfc8126.html [12]: https://www.rfc-editor.org/rfc/rfc2026.html#section-5 [13]: https://www.rfc-editor.org/rfc/rfc2026.html#section-4.1 [14]: https://www.rfc-editor.org/rfc/rfc2026.html#section-4.2 [15]: https://authors.ietf.org/en/content-guidelines-overview [16]: https://www.ietf.org/about/groups/iesg/statements/normative-informative-references/ [17]: https://datatracker.ietf.org/doc/downref/ |
|
2025-01-07
|
19 | Steven Bingler | New version available: draft-ietf-httpbis-rfc6265bis-19.txt |
|
2025-01-07
|
19 | Steven Bingler | New version approved |
|
2025-01-07
|
19 | (System) | Request for posting confirmation emailed to previous authors: John Wilander , Mike West , Steven Bingler |
|
2025-01-07
|
19 | Steven Bingler | Uploaded new revision |
|
2024-12-20
|
18 | Steven Bingler | New version available: draft-ietf-httpbis-rfc6265bis-18.txt |
|
2024-12-20
|
18 | (System) | New version approved |
|
2024-12-20
|
18 | (System) | Request for posting confirmation emailed to previous authors: John Wilander , Mike West , Steven Bingler |
|
2024-12-20
|
18 | Steven Bingler | Uploaded new revision |
|
2024-12-20
|
17 | Steven Bingler | New version available: draft-ietf-httpbis-rfc6265bis-17.txt |
|
2024-12-20
|
17 | (System) | New version approved |
|
2024-12-20
|
17 | (System) | Request for posting confirmation emailed to previous authors: John Wilander , Mike West , Steven Bingler |
|
2024-12-20
|
17 | Steven Bingler | Uploaded new revision |
|
2024-12-09
|
16 | Steven Bingler | New version available: draft-ietf-httpbis-rfc6265bis-16.txt |
|
2024-12-09
|
16 | (System) | New version approved |
|
2024-12-09
|
16 | (System) | Request for posting confirmation emailed to previous authors: John Wilander , Mike West , Steven Bingler |
|
2024-12-09
|
16 | Steven Bingler | Uploaded new revision |
|
2024-07-23
|
15 | Mark Nottingham | # Document Shepherd Write-Up for Group Documents *This version is dated 4 July 2022.* Thank you for your service as a document shepherd. Among the … # Document Shepherd Write-Up for Group Documents *This version is dated 4 July 2022.* Thank you for your service as a document shepherd. Among the responsibilities is answering the questions in this write-up to give helpful context to Last Call and Internet Engineering Steering Group ([IESG][1]) reviewers, and your diligence in completing it is appreciated. The full role of the shepherd is further described in [RFC 4858][2]. You will need the cooperation of the authors and editors to complete these checks. Note that some numbered items contain multiple related questions; please be sure to answer all of them. ## Document History 1. Does the working group (WG) consensus represent the strong concurrence of a few individuals, with others being silent, or did it reach broad agreement? Yes - we had broad participation, especially from implementers. 2. Was there controversy about particular points, or were there decisions where the consensus was particularly rough? Not particularly. We used a process where major changes required a separate draft to be adopted and achieve consensus before we incorporated them. 3. Has anyone threatened an appeal or otherwise indicated extreme discontent? If so, please summarize the areas of conflict in separate email messages to the responsible Area Director. (It should be in a separate email because this questionnaire is publicly available.) No. 4. For protocol documents, are there existing implementations of the contents of the document? Have a significant number of potential implementers indicated plans to implement? Are any existing implementations reported somewhere, either in the document itself (as [RFC 7942][3] recommends) or elsewhere (where)? Yes, a few. ## Additional Reviews 5. Do the contents of this document closely interact with technologies in other IETF working groups or external organizations, and would it therefore benefit from their review? Have those reviews occurred? If yes, describe which reviews took place. There has been participation from members of the WHATWG, which is the most relevant body. 6. Describe how the document meets any required formal expert review criteria, such as the MIB Doctor, YANG Doctor, media type, and URI type reviews. N/A 7. If the document contains a YANG module, has the final version of the module been checked with any of the [recommended validation tools][4] for syntax and formatting validation? If there are any resulting errors or warnings, what is the justification for not fixing them at this time? Does the YANG module comply with the Network Management Datastore Architecture (NMDA) as specified in [RFC 8342][5]? No YANG here (yet). 8. Describe reviews and automated checks performed to validate sections of the final version of the document written in a formal language, such as XML code, BNF rules, MIB definitions, CBOR's CDDL, etc. ABNF has been listed. ## Document Shepherd Checks 9. Based on the shepherd's review of the document, is it their opinion that this document is needed, clearly written, complete, correctly designed, and ready to be handed off to the responsible Area Director? Yes. 10. Several IETF Areas have assembled [lists of common issues that their reviewers encounter][6]. For which areas have such issues been identified and addressed? For which does this still need to happen in subsequent reviews? N/A 11. What type of RFC publication is being requested on the IETF stream ([Best Current Practice][12], [Proposed Standard, Internet Standard][13], [Informational, Experimental or Historic][14])? Why is this the proper type of RFC? Do all Datatracker state attributes correctly reflect this intent? Proposed Standard. This is a bis. 12. Have reasonable efforts been made to remind all authors of the intellectual property rights (IPR) disclosure obligations described in [BCP 79][7]? To the best of your knowledge, have all required disclosures been filed? If not, explain why. If yes, summarize any relevant discussion, including links to publicly-available messages when applicable. Yes. 13. Has each author, editor, and contributor shown their willingness to be listed as such? If the total number of authors and editors on the front page is greater than five, please provide a justification. Yes. 14. Document any remaining I-D nits in this document. Simply running the [idnits tool][8] is not enough; please review the ["Content Guidelines" on authors.ietf.org][15]. (Also note that the current idnits tool generates some incorrect warnings; a rewrite is underway.) There are some spurious line length warnings and a few non-ASCII punctuation marks; I assume these can be corrected during editing as/if necessary. 15. Should any informative references be normative or vice-versa? See the [IESG Statement on Normative and Informative References][16]. 16. List any normative references that are not freely available to anyone. Did the community have sufficient access to review any such normative references? USASCII (also referenced by 6265) is widely understood and usable, but the actual reference may require some hoop jumping. 17. Are there any normative downward references (see [RFC 3967][9] and [BCP 97][10]) that are not already listed in the [DOWNREF registry][17]? If so, list them. No. 18. Are there normative references to documents that are not ready to be submitted to the IESG for publication or are otherwise in an unclear state? If so, what is the plan for their completion? No. 19. Will publication of this document change the status of any existing RFCs? If so, does the Datatracker metadata correctly reflect this and are those RFCs listed on the title page, in the abstract, and discussed in the introduction? If not, explain why and point to the part of the document where the relationship of this document to these other RFCs is discussed. Yes and yes. 20. Describe the document shepherd's review of the IANA considerations section, especially with regard to its consistency with the body of the document. Confirm that all aspects of the document requiring IANA assignments are associated with the appropriate reservations in IANA registries. Confirm that any referenced IANA registries have been clearly identified. Confirm that each newly created IANA registry specifies its initial contents, allocations procedures, and a reasonable name (see [RFC 8126][11]). The document updates two HTTP field name registrations and creates a new cookie attribute registry; all appears to be in order. 21. List any new IANA registries that require Designated Expert Review for future allocations. Are the instructions to the Designated Expert clear? Please include suggestions of designated experts, if appropriate. The cookie attribute registration. No DE. [1]: https://www.ietf.org/about/groups/iesg/ [2]: https://www.rfc-editor.org/rfc/rfc4858.html [3]: https://www.rfc-editor.org/rfc/rfc7942.html [4]: https://wiki.ietf.org/group/ops/yang-review-tools [5]: https://www.rfc-editor.org/rfc/rfc8342.html [6]: https://wiki.ietf.org/group/iesg/ExpertTopics [7]: https://www.rfc-editor.org/info/bcp79 [8]: https://www.ietf.org/tools/idnits/ [9]: https://www.rfc-editor.org/rfc/rfc3967.html [10]: https://www.rfc-editor.org/info/bcp97 [11]: https://www.rfc-editor.org/rfc/rfc8126.html [12]: https://www.rfc-editor.org/rfc/rfc2026.html#section-5 [13]: https://www.rfc-editor.org/rfc/rfc2026.html#section-4.1 [14]: https://www.rfc-editor.org/rfc/rfc2026.html#section-4.2 [15]: https://authors.ietf.org/en/content-guidelines-overview [16]: https://www.ietf.org/about/groups/iesg/statements/normative-informative-references/ [17]: https://datatracker.ietf.org/doc/downref/ |
|
2024-07-23
|
15 | Mark Nottingham | Changed consensus to Yes from Unknown |
|
2024-07-23
|
15 | Mark Nottingham | Intended Status changed to Proposed Standard from None |
|
2024-07-21
|
15 | Steven Bingler | New version available: draft-ietf-httpbis-rfc6265bis-15.txt |
|
2024-07-21
|
15 | (System) | New version approved |
|
2024-07-21
|
15 | (System) | Request for posting confirmation emailed to previous authors: John Wilander , Mike West , Steven Bingler |
|
2024-07-21
|
15 | Steven Bingler | Uploaded new revision |
|
2024-07-09
|
14 | Mark Nottingham | Notification list changed to mnot@mnot.net because the document shepherd was set |
|
2024-07-09
|
14 | Mark Nottingham | Document shepherd changed to Mark Nottingham |
|
2024-07-09
|
14 | Mark Nottingham | Tag Revised I-D Needed - Issue raised by WGLC set. |
|
2024-07-09
|
14 | Mark Nottingham | IETF WG state changed to WG Consensus: Waiting for Write-Up from In WG Last Call |
|
2024-05-02
|
14 | Mark Nottingham | IETF WG state changed to In WG Last Call from WG Document |
|
2024-05-02
|
14 | Steven Bingler | New version available: draft-ietf-httpbis-rfc6265bis-14.txt |
|
2024-05-02
|
14 | (System) | New version approved |
|
2024-05-02
|
14 | (System) | Request for posting confirmation emailed to previous authors: John Wilander , Mike West , Steven Bingler |
|
2024-05-02
|
14 | Steven Bingler | Uploaded new revision |
|
2023-11-15
|
13 | Steven Bingler | New version available: draft-ietf-httpbis-rfc6265bis-13.txt |
|
2023-11-15
|
13 | Steven Bingler | New version approved |
|
2023-11-15
|
13 | (System) | Request for posting confirmation emailed to previous authors: John Wilander , Mike West , Steven Bingler |
|
2023-11-15
|
13 | Steven Bingler | Uploaded new revision |
|
2023-11-11
|
12 | (System) | Document has expired |
|
2023-05-10
|
12 | Mike West | New version available: draft-ietf-httpbis-rfc6265bis-12.txt |
|
2023-05-10
|
12 | (System) | New version approved |
|
2023-05-10
|
12 | (System) | Request for posting confirmation emailed to previous authors: John Wilander , Mike West , Steven Bingler |
|
2023-05-10
|
12 | Mike West | Uploaded new revision |
|
2022-11-07
|
11 | Mike West | New version available: draft-ietf-httpbis-rfc6265bis-11.txt |
|
2022-11-07
|
11 | (System) | New version approved |
|
2022-11-07
|
11 | (System) | Request for posting confirmation emailed to previous authors: John Wilander , Lily Chen , Mike West , Steven Englehardt , httpbis-chairs@ietf.org |
|
2022-11-07
|
11 | Mike West | Uploaded new revision |
|
2022-11-07
|
10 | (System) | Document has expired |
|
2022-04-24
|
10 | Mike West | New version available: draft-ietf-httpbis-rfc6265bis-10.txt |
|
2022-04-24
|
10 | (System) | New version approved |
|
2022-04-24
|
10 | (System) | Request for posting confirmation emailed to previous authors: John Wilander , Lily Chen , Mike West , Steven Englehardt |
|
2022-04-24
|
10 | Mike West | Uploaded new revision |
|
2022-04-22
|
09 | (System) | Document has expired |
|
2021-10-19
|
09 | Lily Chen | New version available: draft-ietf-httpbis-rfc6265bis-09.txt |
|
2021-10-19
|
09 | (System) | New version approved |
|
2021-10-19
|
09 | (System) | Request for posting confirmation emailed to previous authors: John Wilander , Lily Chen , Mike West , Steven Englehardt |
|
2021-10-19
|
09 | Lily Chen | Uploaded new revision |
|
2021-06-02
|
08 | Lily Chen | New version available: draft-ietf-httpbis-rfc6265bis-08.txt |
|
2021-06-02
|
08 | (System) | New version approved |
|
2021-06-02
|
08 | (System) | Request for posting confirmation emailed to previous authors: John Wilander , Mike West , httpbis-chairs@ietf.org |
|
2021-06-02
|
08 | Lily Chen | Uploaded new revision |
|
2020-12-07
|
07 | Mike West | New version available: draft-ietf-httpbis-rfc6265bis-07.txt |
|
2020-12-07
|
07 | (System) | New version approved |
|
2020-12-07
|
07 | (System) | Request for posting confirmation emailed to previous authors: John Wilander , Mike West |
|
2020-12-07
|
07 | Mike West | Uploaded new revision |
|
2020-10-22
|
06 | (System) | Document has expired |
|
2020-05-26
|
06 | Mark Nottingham | Added to session: interim-2020-httpbis-02 |
|
2020-04-20
|
06 | Mike West | New version available: draft-ietf-httpbis-rfc6265bis-06.txt |
|
2020-04-20
|
06 | (System) | New version approved |
|
2020-04-20
|
06 | (System) | Request for posting confirmation emailed to previous authors: Mike West , John Wilander |
|
2020-04-20
|
06 | Mike West | Uploaded new revision |
|
2020-04-20
|
06 | Mike West | Uploaded new revision |
|
2020-02-05
|
05 | Mike West | New version available: draft-ietf-httpbis-rfc6265bis-05.txt |
|
2020-02-05
|
05 | (System) | New version approved |
|
2020-02-05
|
05 | (System) | Request for posting confirmation emailed to previous authors: John Wilander , Mike West |
|
2020-02-05
|
05 | Mike West | Uploaded new revision |
|
2020-02-05
|
05 | Mike West | Uploaded new revision |
|
2020-01-20
|
04 | Mike West | New version available: draft-ietf-httpbis-rfc6265bis-04.txt |
|
2020-01-20
|
04 | (System) | New version approved |
|
2020-01-20
|
04 | (System) | Request for posting confirmation emailed to previous authors: httpbis-chairs@ietf.org, Adam Barth , Mike West |
|
2020-01-20
|
04 | Mike West | Uploaded new revision |
|
2020-01-20
|
04 | Mike West | Uploaded new revision |
|
2019-10-29
|
03 | (System) | Document has expired |
|
2019-04-27
|
03 | Mike West | New version available: draft-ietf-httpbis-rfc6265bis-03.txt |
|
2019-04-27
|
03 | (System) | New version approved |
|
2019-04-27
|
03 | (System) | Request for posting confirmation emailed to previous authors: httpbis-chairs@ietf.org, Adam Barth , Mike West |
|
2019-04-27
|
03 | Mike West | Uploaded new revision |
|
2018-06-04
|
02 | Mark Nottingham | This document now replaces draft-ietf-httpbis-cookie-prefixes, draft-thomson-http-omnomnom, draft-ietf-httpbis-cookie-same-site, draft-ietf-httpbis-cookie-alone instead of None |
|
2018-04-19
|
02 | (System) | Document has expired |
|
2017-11-15
|
02 | Patrick McManus | Added to session: IETF-100: httpbis Fri-0930 |
|
2017-08-07
|
02 | Mike West | New version available: draft-ietf-httpbis-rfc6265bis-02.txt |
|
2017-08-07
|
02 | (System) | New version approved |
|
2017-08-07
|
02 | (System) | Request for posting confirmation emailed to previous authors: Mike West |
|
2017-08-07
|
02 | Mike West | Uploaded new revision |
|
2017-04-25
|
01 | Mike West | New version available: draft-ietf-httpbis-rfc6265bis-01.txt |
|
2017-04-25
|
01 | (System) | New version approved |
|
2017-04-25
|
01 | (System) | Request for posting confirmation emailed to previous authors: httpbis-chairs@ietf.org, Mike West |
|
2017-04-25
|
01 | Mike West | Uploaded new revision |
|
2017-04-13
|
00 | (System) | Document has expired |
|
2017-03-21
|
00 | Patrick McManus | Added to session: IETF-98: httpbis Fri-0900 |
|
2016-11-13
|
00 | Patrick McManus | Added to session: IETF-97: httpbis Tue-1330 |
|
2016-10-10
|
00 | Mike West | New version available: draft-ietf-httpbis-rfc6265bis-00.txt |
|
2016-10-10
|
00 | (System) | WG -00 approved |
|
2016-10-10
|
00 | Mike West | Set submitter to "Mike West ", replaces to (none) and sent approval email to group chairs: httpbis-chairs@ietf.org |
|
2016-10-10
|
00 | Mike West | Uploaded new revision |