[Osr-101] [Fwd: [Phoenix] Neutron-Auth does not specify WWW-Authenticate header]

Thomas Comiotto comiotto at rcfmedia.ch
Thu Sep 7 16:52:08 CEST 2006


Hi
>
> Well, the problem is that RFC2616 says that if a 401 is returned "The 
> response MUST include a WWW-Authenticate header field (section 14.47) 
> containing a challenge applicable to the requested resource."
>

You can return 200. Every other webservice does so too. You're talking 
about the *transport* protocol Neutron runs over; accessing the service 
endpoint might be granted for free, access to the actual remote methods 
the service provides (opening/saving/ etc..) not.

--
Bests
Thomas




More information about the Phoenix mailing list