[Psi-devel] Fixes to XEP-0070 implementation

textshell-I1QKlO at neutronstar.dyndns.org textshell-I1QKlO at neutronstar.dyndns.org
Wed Dec 6 01:44:36 PST 2006


On Wed, Dec 06, 2006 at 10:06:05AM +0200, Norman Rasmussen wrote:
> On 12/5/06, Maciek Niedzielski <machekku at uaznia.net> wrote:
> > You can deny, go back to web browser and try better this time :)
> 
> Yes, which is the way the old code worked.  Requiring the user to
> enter and check random stuff is good, if difficult.
> 

I think in the long run it would be nice if the random would be managed
entirly under the hood by the software (that ist http user-agent and xmpp
user agent exchange the needed random bits) and the user only gets to see
a clean dialog "$httpuseragent wants to login to $httpadress with
$jabberaccount. Do you wish to proceed?".
Of course that's something that will only work if both user agents have a
trusted way to communicate (say dbus ;) ) and a common protocol to do so.

 - Martin H.


More information about the psi-devel mailing list