[Pidgin] #6516: Change what Jabber checks for in the X.509 common name

Pidgin trac at pidgin.im
Wed Aug 6 10:50:57 EDT 2008


#6516: Change what Jabber checks for in the X.509 common name
-----------------------+----------------------------------------------------
  Reporter:  wehlhard  |       Owner:  deryni
      Type:  patch     |      Status:  new   
  Priority:  minor     |   Milestone:  2.5.0 
 Component:  XMPP      |     Version:  2.4.3 
Resolution:            |    Keywords:        
   Pending:  0         |  
-----------------------+----------------------------------------------------
Comment (by deryni):

 I'm not sure this patch is correct. The relevant section of the RFC (and a
 similar section in the bis draft) seem only to indicate that the DNS SRV
 (or similar) results for the hostname must never be used and that the
 hostname provided by the client must be. Both the jid domain and the
 connect server are provided by the user, so I'm pretty sure that checking
 the connect_server is acceptable.

 That being said the case could be made that we should likely only check
 the connect server when the connect server is not an IP address.

-- 
Ticket URL: <http://developer.pidgin.im/ticket/6516#comment:1>
Pidgin <http://pidgin.im>
Pidgin


More information about the Tracker mailing list