|
|
|
|
|
by groby_b
4200 days ago
|
|
I wouldn't ask you to solve it. I would've hoped for simply deferring the problem to somebody else. (I.e. OAuth) Authentication is an incredibly hard problem. Including it in the spec encumbers it. And allowing for arbitrary challenge/response auth mechanisms gains you exactly one thing - guaranteed incompatibility as the protocol gains popularity :) |
|