Return-Path: Delivered-To: apmail-httpd-dev-archive@www.apache.org Received: (qmail 68109 invoked from network); 23 Jun 2005 21:27:46 -0000 Received: from hermes.apache.org (HELO mail.apache.org) (209.237.227.199) by minotaur.apache.org with SMTP; 23 Jun 2005 21:27:46 -0000 Received: (qmail 17367 invoked by uid 500); 23 Jun 2005 21:27:41 -0000 Delivered-To: apmail-httpd-dev-archive@httpd.apache.org Received: (qmail 17304 invoked by uid 500); 23 Jun 2005 21:27:41 -0000 Mailing-List: contact dev-help@httpd.apache.org; run by ezmlm Precedence: bulk Reply-To: dev@httpd.apache.org list-help: list-unsubscribe: List-Post: List-Id: Delivered-To: mailing list dev@httpd.apache.org Received: (qmail 17277 invoked by uid 99); 23 Jun 2005 21:27:41 -0000 Received: from asf.osuosl.org (HELO asf.osuosl.org) (140.211.166.49) by apache.org (qpsmtpd/0.29) with ESMTP; Thu, 23 Jun 2005 14:27:41 -0700 X-ASF-Spam-Status: No, hits=0.0 required=10.0 tests= X-Spam-Check-By: apache.org Received-SPF: neutral (asf.osuosl.org: local policy) Received: from [212.249.34.130] (HELO picanmix.dev.day.com) (212.249.34.130) by apache.org (qpsmtpd/0.29) with ESMTP; Thu, 23 Jun 2005 14:27:41 -0700 Received: from eu-mail.day.com (eu-mail.dev.day.com [10.0.0.30]) by picanmix.dev.day.com (DAY) with ESMTP id j5NLRZ502092 for ; Thu, 23 Jun 2005 23:27:35 +0200 (MEST) Received: from [10.2.8.57] ([10.2.8.57]) by eu-mail.day.com (Lotus Domino Release 5.0.8) with ESMTP id 2005062323273321:30588 ; Thu, 23 Jun 2005 23:27:33 +0200 Mime-Version: 1.0 (Apple Message framework v622) In-Reply-To: <6.2.1.2.2.20050623084741.097d6410@pop3.rowe-clan.net> References: <6.2.1.2.2.20050623012409.09b2a740@pop3.rowe-clan.net> <6.2.1.2.2.20050623084741.097d6410@pop3.rowe-clan.net> Message-Id: From: "Roy T. Fielding" Subject: Re: Rev 2: [PATCH] 1.3 TraceEnable [on|off|extended] Date: Thu, 23 Jun 2005 14:27:49 -0700 To: dev@httpd.apache.org X-Mailer: Apple Mail (2.622) X-MIMETrack: Itemize by SMTP Server on eu-mail/Day(Release 5.0.8 |June 18, 2001) at 06/23/2005 11:27:33 PM, Serialize by Router on eu-mail/Day(Release 5.0.8 |June 18, 2001) at 06/23/2005 11:27:34 PM, Serialize complete at 06/23/2005 11:27:34 PM Content-Transfer-Encoding: 7bit Content-Type: text/plain; charset=US-ASCII; format=flowed X-Virus-Checked: Checked by ClamAV on apache.org X-Spam-Rating: minotaur.apache.org 1.6.2 0/1000/N On Jun 23, 2005, at 6:53 AM, William A. Rowe, Jr. wrote: > The patch, in final form, tested and works for T-E with C-L > body, > T-E with C-L < body, C-L only, T-E only and no body. It correctly > denies proxy TRACE with a body by default, and will deny all TRACE > requests for 'TraceEnable off'. > > Votes please, before I invest in patching 2.x? The correct response code to send is 403 Forbidden, not 405, since the method is being handled. That will simplify your patch considerably. I have submitted a change request for s/MUST/MAY/ in the text of 2616's definition of 405, since the Allow header field should not be required. ....Roy