currently I have some issues with the kerberos principal in GSSAPI SASL authentication. What is the correct way for building the kerberos principal for authentication in the client?

1) xmpp/xmppdomain@realm
2) xmpp/hostname@realm

with hostname I mean the host we are connecting the TCP socket to according to SRV lookups.

I have tested only on Cisco XCP and M-Link yet. XCP puts the kerberos principal in a special attribute which is nice and it looks like Mink wants the hostname here and not the xmpp domain.

Thanks,
Alex

Attachment: smime.p7s
Description: S/MIME Kryptografische Unterschrift

Reply via email to