Hi all!

I've been looking at digest authorization and I'm not realy sure if the
strings in the authorization request should be quoted or not.
In RFC2617 (HTTP Authentication) chapter 3.2.2 we can read about the BNF of
the request. To me, it seems like username-value and request-digest value is
the only ones specified to be quoted. I then assume that every parameter
explained in the Authenticate-response header (found in chapter 3.2.1) is
also valid for the authentication request. This includes the following
parameters : domain, nonce, opaque, stale, algorithm and qop. In the sip
specifiaction (bis09) chapter 22.4 i also find that the 'uri' parameter also
should be enclosed by quotation marks.

So my question is, what about the other fields in the authorization request,
CNONCE and NC?

The example in RFC2617, 3.5, has cnonce enclosed in quotation marks but not
the nc value. (however, the qop value is not...).

Can someone help me find which values that should be enclosed in quotation
marks and who whould not?

Thanks in advance,

Andreas Bystr�m

_______________________________________________
Sip-implementors mailing list
[EMAIL PROTECTED]
http://lists.cs.columbia.edu/mailman/listinfo/sip-implementors

Reply via email to