Dale,

I think the corollary to what you say is that the proper processing of 
basic credentials is to simply ignore them.

        Paul

[EMAIL PROTECTED] wrote:
>    From: <[EMAIL PROTECTED]>
> 
>    400 Bad Request might not be appropriate as "Basic" is syntactically
>    correct. 
> 
> Good point.
> 
>    I think 401/407 is the appropriate option.
> 
> Well, there is the tricky special case where the authentication
> credentials are Basic (and thus useless), but the request does *not*
> require authentication.  That request should be processed normally.
> 
> Dale
> 
> _______________________________________________
> Sip-implementors mailing list
> [email protected]
> https://lists.cs.columbia.edu/cucslists/listinfo/sip-implementors
> 
_______________________________________________
Sip-implementors mailing list
[email protected]
https://lists.cs.columbia.edu/cucslists/listinfo/sip-implementors

Reply via email to