[jdev] Re: Are there any clients supporting SASL authorization identities?

Alexander Gnauck gnauck at ag-software.de
Tue Jul 25 17:55:11 CDT 2006


> No, that's not what I am looking for. I know enough clients, that have 
> support to authenticate using SASL. But they all transmit no 
> authorization id, and therefore they authorize as the same identity as 
> they authenticate.
> 
> SASL has the concept of authorizing as someone else as you 
> authenticated. But this does not seem to be supported by any Jabber 
> client yet. E.g. the user admin at example.com could have the right to 
> authorize as user at example.com. In that case the user admin at example.com 
> would have to provide "admin at example.com" as the authentication id, the 
> password for the user admin at example.com, and "user at example.com" as the 
> authentication id. But it would NOT have to know or to provide the 
> password for user at example.com.

this is a nice feature. I would be interested to add support for that in 
agsXMPP, and also add it to my test.

Alex




More information about the JDev mailing list