From mboxrd@z Thu Jan 1 00:00:00 1970 X-Msuck: nntp://news.gmane.io/gmane.emacs.gnus.general/73743 Path: news.gmane.org!not-for-mail From: Lars Magne Ingebrigtsen Newsgroups: gmane.emacs.gnus.general Subject: Re: AUTH=PLAIN support Date: Sun, 31 Oct 2010 16:52:08 +0100 Organization: Programmerer Ingebrigtsen Message-ID: References: <871v77fp3p.fsf@pcuds33.cern.ch> <87pqure8hr.fsf@pcuds33.cern.ch> NNTP-Posting-Host: lo.gmane.org Mime-Version: 1.0 Content-Type: text/plain X-Trace: dough.gmane.org 1288540404 24429 80.91.229.12 (31 Oct 2010 15:53:24 GMT) X-Complaints-To: usenet@dough.gmane.org NNTP-Posting-Date: Sun, 31 Oct 2010 15:53:24 +0000 (UTC) To: ding@gnus.org Original-X-From: ding-owner+M22112@lists.math.uh.edu Sun Oct 31 16:53:19 2010 Return-path: Envelope-to: ding-account@gmane.org Original-Received: from util0.math.uh.edu ([129.7.128.18]) by lo.gmane.org with esmtp (Exim 4.69) (envelope-from ) id 1PCaDe-0001Sk-C3 for ding-account@gmane.org; Sun, 31 Oct 2010 16:53:18 +0100 Original-Received: from localhost ([127.0.0.1] helo=lists.math.uh.edu) by util0.math.uh.edu with smtp (Exim 4.63) (envelope-from ) id 1PCaCs-0002MW-Oi; Sun, 31 Oct 2010 10:52:30 -0500 Original-Received: from mx1.math.uh.edu ([129.7.128.32]) by util0.math.uh.edu with esmtps (TLSv1:AES256-SHA:256) (Exim 4.63) (envelope-from ) id 1PCaCq-0002MG-PW for ding@lists.math.uh.edu; Sun, 31 Oct 2010 10:52:28 -0500 Original-Received: from quimby.gnus.org ([80.91.231.51]) by mx1.math.uh.edu with esmtp (Exim 4.72) (envelope-from ) id 1PCaCl-0000i9-5t for ding@lists.math.uh.edu; Sun, 31 Oct 2010 10:52:28 -0500 Original-Received: from lo.gmane.org ([80.91.229.12]) by quimby.gnus.org with esmtp (Exim 3.36 #1 (Debian)) id 1PCaCk-0002yl-00 for ; Sun, 31 Oct 2010 16:52:22 +0100 Original-Received: from list by lo.gmane.org with local (Exim 4.69) (envelope-from ) id 1PCaCk-00010J-2A for ding@gnus.org; Sun, 31 Oct 2010 16:52:22 +0100 Original-Received: from cm-84.215.34.171.getinternet.no ([84.215.34.171]) by main.gmane.org with esmtp (Gmexim 0.1 (Debian)) id 1AlnuQ-0007hv-00 for ; Sun, 31 Oct 2010 16:52:22 +0100 Original-Received: from larsi by cm-84.215.34.171.getinternet.no with local (Gmexim 0.1 (Debian)) id 1AlnuQ-0007hv-00 for ; Sun, 31 Oct 2010 16:52:22 +0100 X-Injected-Via-Gmane: http://gmane.org/ Mail-Followup-To: ding@gnus.org Original-Lines: 24 Original-X-Complaints-To: usenet@dough.gmane.org X-Gmane-NNTP-Posting-Host: cm-84.215.34.171.getinternet.no Face: iVBORw0KGgoAAAANSUhEUgAAADAAAAAwBAMAAAClLOS0AAAAFVBMVEUQEhYICQpYZXMsMj0D AwSSnqTk6ODm3YcsAAACQElEQVQ4jVWTwXKrMAxFBTR73PL2qVxnbfCQPTO8Pc8Z8wF0rP//hHdl IE1vJhk7hyvJsqB1czH6OkmOzE6+jZmhVegGEIiGVSKHQZaKFNwLYE8t3bOlZhBP1AH8Bcgx+MqY y+ZbAGpYSQG2CYFMDQNC9TdJttvB9SIp9nicmeUqqKLv3hX4u0i8tgMn5nURbELfrAC0CuzvKabI Lua0VY3/AJAgERVfsv66+Ki3wdl6JScsj3GhOzAHHDFtLttBQZa8LnAqCCOS33IYVxpEtXg9eXFI dgVwAd9BdsA32cYYkIMz/s82iCZntqNkRlPvB0DsBEW2NUqPnv+QU7B5BSWNXzPb5tGiKgXhDgBn sqg72fHTnA5XQHoQ+vAY1h7gpqDRDCsMvpGMsMYQ65HskIo4AGC/TB35Gitfs9OaAIK29G3uiEhB 1cKD+/Ah4KjbPM0AernGgOygWuVfZzoydJHlaqD6BBkjYMi0jfSkoEVDCsBsTQrIUavAhAKMeN1Q G3xtC8CwoChvNiqhPqzF5Kg+7aA5yGLoAMjq2OAbvgbnsBgsrqVCjoDQ9dD46yencRyubLlmD+Ap NIRPj4kbPayOLSazFKr6eJsxov6SUs6xnOPUDBBK3qIf0O2g2p/SlpxsB4d7UlD9OPa1vlPaktdQ 53rCS/Yain6AOSKVZvlq30wK2mdddKbbHafKbZ51aPLnOaYddGdVz+QnmOej3CPurOD493A8VbWv QG8Ud+JC3z7j/HZU5jc4egOZ+UX/AffgzFgsU1HeAAAAAElFTkSuQmCC Mail-Copies-To: never X-Now-Playing: Various's _Thievery Corparation: DJ Kicks_: "Prondia - Janine" User-Agent: Gnus/5.110011 (No Gnus v0.11) Emacs/24.0.50 (gnu/linux) Cancel-Lock: sha1:Bh3XNQGj3gROVqjz276Dc34Pb/k= X-Spam-Score: -1.9 (-) List-ID: Precedence: bulk Xref: news.gmane.org gmane.emacs.gnus.general:73743 Archived-At: James Cloos writes: > If clients MUST use AUTHENTICATE, then the server MUST report LOGINDISABLED > in its capabilities. Ah, right. I've now added this to the nnimap login sequence. > It seems that the idea was to elimitate the LOGIN command on STARTTLS-capable > servers, but they still needed a plain-text passwd option. And so created > AUTH=PLAIN to cover that requirement. It seems kinda weird, though. AUTHENTICATE PLAIN is just basically a base64-encoded version of LOGIN, so I'm not quite understanding what the point is... > If the server and client support TLS client certs, all of AAA can happen > at that layer. Once such a TLS session is up, then the IMAP level would > be PREAUTH. Ah, right. -- (domestic pets only, the antidote for overdose, milk.) larsi@gnus.org * Lars Magne Ingebrigtsen