ietf-nntp AUTHINFO SASL protocol choices

Andrew Gierth andrew at erlenstar.demon.co.uk
Thu Mar 28 11:05:56 PST 2002


>>>>> "Jeffrey" == Jeffrey M Vinocur <jeff at litech.org> writes:

 Jeffrey> Draft 15 does not say what happens if a client violates the
 Jeffrey> line length limit.  There are three things a server can
 Jeffrey> reasonably do:
 Jeffrey> - accept the longer command
 Jeffrey> - silently truncate to 512
 Jeffrey> - return a syntax error

4) abort the connection

(not as silly a suggestion as it might sound - one likely reason for a
client sending over-long command lines is that it's got out of sync on
a failed POST command and is sending the article headers+body anyway.
For the same reason I abort connections that exceed a certain number of
consecutive "bad command" errors)

-- 
Andrew.



More information about the ietf-nntp mailing list