a Secarta project ...

HTTPsec Authentication Protocol


Preamble

3.3. Challenge Messages

The challenge response is an assertion by the responder that the requested resource is protected by HTTPsec. It is an invitation, made by responder to requester, to make a subsequent initialization request.

In the handling of a Challenge Response, the requester SHOULD employ a method of limiting the extent of potential deadlock from a repeated series of challenge, for instance limiting them to an arbitrary number such as 3.