From d5e3a0b0be228514747576ad6f3a78a17e0ec08e Mon Sep 17 00:00:00 2001 From: Aaron Coburn Date: Tue, 9 Aug 2022 08:17:54 -0400 Subject: [PATCH] Update obsolete bibliographic reference (RFC 7235) to RFC 9110 --- index.bs | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/index.bs b/index.bs index 8a4af57..27aa83f 100644 --- a/index.bs +++ b/index.bs @@ -383,7 +383,7 @@ the verifying party MUST follow OpenID Connect Discovery 1.0 [[!OIDC-DISCOVERY]] When a Client performs an unauthenticated request to a protected resource, the Resource Server MUST respond with the HTTP 401 status code, -and a WWW-Authenticate HTTP header. See also: [[RFC7235#section-4.1]] +and a WWW-Authenticate HTTP header. See also: [[RFC9110#section-11.6.1]] The WWW-Authenticate HTTP header MUST include an as_uri parameter unless the authentication scheme requires a different mechanism