Feature #1181
Add SASL EXTERNAL
Start date:
08/26/2012
Due date:
% Done:
0%
Estimated time:
OS:
Any
Description
When CertFP is used as authentication mechanism, there is still a race condition. SASL EXTERNAL will, just like regular SASL, make the client authenticated during the connection registration.
In the Auto Identify
settings, another checkbox should be added (only enabled when a certicate has been added to the identity used for this network), which would enable SASL EXTERNAL, then during the connection registration, after the sasl cap has been ack'ed, 'AUTHENTICATE EXTERNAL' should be sent.
For starters SASL PLAIN and EXTERNAL can be mutually exclusive, but ideally PLAIN would be used as fallback should EXTERNAL fail.
History
#1 Updated by Anonymous about 12 years ago
- Assignee set to Anonymous
- Target version set to Some future release
Implemented in MR 149
#2 Updated by Anonymous over 11 years ago
- Status changed from New to Resolved
- Target version changed from Some future release to 0.9.0
Merged in af5909677a97f62b20d89229be42701762ae05c3