-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 7/6/09 11:40 AM, Eloi Bail wrote:

> Indeed this draft provides more detailed information. It's great :)

Super!

> I think it would be useful to make a similar draft for PLAIN method, the
> core xmpp RFC only explaining the digest-md5 method.

The document http://tools.ietf.org/html/draft-ietf-xmpp-3920bis has more
information about PLAIN (and indeed DIGEST-MD5 is deprecated there). I
would not object to a document "Best Practices for Use of SASL PLAIN"
but I think that PLAIN is quite straightforward, unlike EXTERNAL with
certificates = XEP-0178 (there is always lots of confusion about certs!)
or ANONYMOUS (it's important to provide recommendations about how the
server needs to restrict the user's access).

> Thanks for this work, 

Sure thing!

Peter

- --
Peter Saint-Andre
https://stpeter.im/


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.8 (Darwin)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iEUEARECAAYFAkpSOPQACgkQNL8k5A2w/vyE/gCdFlHNvkJhiZb/vwMHIzA4cGWK
ng4AmJjPJ5kOa6f28fRPrriw5jDuwXo=
=r1cM
-----END PGP SIGNATURE-----

Reply via email to