ietf-nntp AUTHINFO

ned+ietf-nntp at innosoft.com ned+ietf-nntp at innosoft.com
Tue Jan 1 10:31:41 PST 2002


> In <3C30E420.7A210B9A at verio.net> "Stan O. Barber" <sob at verio.net> writes:

> >We are not going to submit a AUTHINFO style extension that has only clear-text.
> >It will not be accepted by IESG without some reasonable strength in the
> >authorization mechanism.

> Are the IESG likely to accept an AUTHINFO design which includes BOTH
> cleartest passwords and SASL as options?

No. A standards-track clear text mechanism stands no chance with the IESG. You
could try documenting it in a separate, informational document, but past
experience with other attempts to document clear text mechanisms says this is
unlikely to be accepted either.

> The fact is that cleartext
> passwords, however undesirable, are widely used currently.

That's all very well and good, but it has nothing to do with what gets approved
for standards track.

				Ned



More information about the ietf-nntp mailing list