[ietf-nntp] I-D ACTION:draft-ietf-nntpext-authinfo-00.txt

Russ Allbery rra at stanford.edu
Mon May 17 04:24:18 PDT 2004


Russ Allbery <rra at stanford.edu> writes:

> On the other hand, I think the client MUST send LIST EXTENSIONS before
> doing AUTHINFO SASL.  After all, determining the list of SASL mechs is
> part of the protocol.

> So how about removing 2#4 completely and replacing the sentence at the
> end of 2#8 with:

>     A client intending to use AUTHINFO SASL MUST issue the LIST EXTENSIONS
>     command to obtain the available authentication mechanisms before
>     attempting authentication.  A client SHOULD issue LIST EXTENSIONS
>     before attempting AUTHINFO USER/PASS to see if it is supported.

Ack, sorry, I missed an edit.  I don't think we should remove 2#4; just
change MUST NOT to SHOULD NOT.

-- 
Russ Allbery (rra at stanford.edu)             <http://www.eyrie.org/~eagle/>



More information about the ietf-nntp mailing list