[jdev] TLS and self-signed certs

maqi at jabberstudio.org maqi at jabberstudio.org
Fri Nov 12 03:16:46 CST 2004


On Thu, 11 Nov 2004, Peter Saint-Andre wrote:

> http://web.amessage.info/news/article/2981 asserts that one cannot use
> self-signed certs with TLS for securing XMPP streams.

Quote: "The problem is, that XMPP is not very clear about the usage of
STARTTLS on dialback-connections". In the following, it is explained why
TLS+dialback(+self-signed certs) is needed and why TLS+SASL(+CA-signed
certs) is not feasible at the moment.

So I think you misunderstood the article...?

Regards



More information about the JDev mailing list