[JDEV] Security in Jabber (Graduate School Project)

Peter Saint-Andre stpeter at jabber.org
Wed Apr 30 21:58:54 CDT 2003


On Fri, Apr 18, 2003 at 02:22:02PM -0700, Edward Tsai wrote:

> I'm trying to think of a graduate school network security project and thought that implementing some security functionality in Jabber would be interesting - does anyone have any ideas off the bat?

First, you need to understand the baseline functionality that is on the
way via the XMPP Working Group:

http://www.jabber.rog/ietf/

Pay special attention to SASL and TLS in XMPP Core, and the end-to-end
object encryption stuff in the e2e draft. Feedback welcome!

Next, read JEP-0031:

http://www.jabber.org/jeps/jep-0031.html

Reading up on XML Encryption would be good too.

After that maybe some PKI-style work along the lines suggested. Another
fun topic would be integration with GRID: 

http://www.globus.org/security/

Let us know what you find out!

Peter

-- 
Peter Saint-Andre
Jabber Software Foundation
http://www.jabber.org/people/stpeter.php



More information about the JDev mailing list