[jdev] Server rules for handling subscriptions for non-existent users

Ralph Meijer jabber.org at ralphm.ik.nu
Wed Feb 1 03:51:40 CST 2006


On Wed, Feb 01, 2006 at 12:54:45PM +0530, Vinod Panicker wrote:
> Hi,
> 
> It seems that server behaviour for handling presence subscribe stanzas
> to non-existent users is undefined in the RFC.  IMO, it should be
> silently dropped.

RFC 3921 (XMPP IM), section 11.1, rule 2.

> Also, what about roster set for non-existent users?  If the server
> returns an error, it would give away existing account information.

No entity can do a roster set on another account, as a server must
disregard the 'to' attribute on the <iq/> sent be the client. This is
described in section 7.2.

-- 
Groetjes,

ralphm



More information about the JDev mailing list