Package: sendxmpp
Version: 0.0.8+cvs20061115-1
Severity: normal

sendxmpp always sends an authorization identity, when using
libauthen-sasl-perl with PLAIN and DIGEST-MD5. According to RFC 3920
it MUST NOT send the default authorization identity:

  RFC 3920 section 6.1 rule 7:

  As specified in [SASL] (Myers, J., “Simple Authentication and Security
  Layer (SASL),” October 1997.), the initiating entity MUST NOT provide an
  authorization identity unless the authorization identity is different
  from the default authorization identity derived from the authentication
  identity, as described in [SASL] (Myers, J., “Simple Authentication and
  Security Layer (SASL),” October 1997.).

-- System Information:
Debian Release: lenny/sid
  APT prefers testing
  APT policy: (750, 'testing'), (671, 'stable'), (500, 'testing'), (300, 
'unstable'), (1, 'experimental')
Architecture: i386 (i686)

Kernel: Linux 2.6.18-3-k7 (SMP w/1 CPU core)
Locale: LANG=sv_SE.UTF-8, LC_CTYPE=sv_SE.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash

Versions of packages sendxmpp depends on:
ii  libnet-xmpp-perl              1.0-2      XMPP Perl library
ii  perl                          5.8.8-7    Larry Wall's Practical Extraction 

sendxmpp recommends no packages.

-- no debconf information


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to