On Feb 9, 2009, at 5:40 AM, Kevin Smith wrote:

On Mon, Feb 9, 2009 at 1:33 PM, Matt Ford <[email protected]> wrote:
The question is "is it sensible?" should the spec change or is it a bug in
ejabberd?

It's both - it's a bug in ejabberd that it doesn't follow the spec,
and it's a bug in the spec because that's not sensible :)

It seems not so sensible when the admin happens to be authenticating directly to the server hosting the chatroom. But for the case where the administrator authenticates elsewhere, possibly to a server under separate administrative control, (to the extent that password protected rooms are at all sensible) it seems at least reasonable for a server to be allowed to require the administrator know the password.

-- Kurt

Reply via email to