[Psi-devel] account defaults don't work for google talk

Trejkaz trejkaz at trypticon.org
Thu Mar 1 13:13:58 PST 2007


On Friday 02 March 2007 06:07, Remko Tronçon wrote:
> Regarding plaintext authentication, there are a couple of things we
> could do to make it work:
>  - Make the 'Allow plaintext auth' a combobox with the following
> options: Never, Always, Over an encrypted connection, and make 'over
> an encrypted connection' the default. I'm not sure if this is 'secure'
> enough as a default.
> - Add a warning 'your server only supports plaintext authentication,
> do you want to enable this?' with the optional 'don't ask me again for
> this account' checkbox. We could add to the message whether or not the
> connection is entrypted. This is probably the right thing to do.
> However, this is harder to code :-)

I would even say that even if the user has disabled plaintext auth, it should 
be used if the connection is secured because it isn't exactly "plaintext" at 
that point.

TX


-- 
             Email: trejkaz at trypticon.org
         Jabber ID: trejkaz at trypticon.org
          Web site: http://trypticon.org/
   GPG Fingerprint: 9EEB 97D7 8F7B 7977 F39F  A62C B8C7 BC8B 037E EA73
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : http://lists.affinix.com/pipermail/psi-devel-affinix.com/attachments/20070302/7f250d6e/attachment.pgp 


More information about the psi-devel mailing list