[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: IRIP version 4 (Part 1) e
> Under 3.1.2.2 Selection of an Authentication Mechanism:
> >There is no
> >minimum level of security which an [IRIP] compliant server is
> required
> >to suppot.
>
> Why is not at least SASL Plain not a minimum supported mechanism (w/
> or w/o
> TLS)? This is _not_ to say that it cannot be 'disabled' by the
> admin's
> config or somehow otherwise toggled on/off. However, w/o some minimum
>
> required mechanism then you have a very very slim chance of some form
> of
> interop!
Perhaps our security experts can suggest what the minimum required
mechanism should be?
Paul? Bob?
-Steve
begin:vcard
n:Mansour;Steve
tel;fax:(650) 937-2103
tel;work:(650) 937-2378
x-mozilla-html:FALSE
org:Netscape
version:2.1
email;internet:sman@netscape.com
title:Judge, Jury, Executioner
adr;quoted-printable:;;501 East Middlefield Road=0D=0A;Mountain View;CA;94043;
x-mozilla-cpt:;-12672
fn:Steve Mansour
end:vcard