[Pidgin] #5008: XMPP: "Not Authorized" when logging into Openfire 3.4.5 server

Pidgin trac at pidgin.im
Mon Mar 3 21:19:12 EST 2008


#5008: XMPP: "Not Authorized" when logging into Openfire 3.4.5 server
----------------------+-----------------------------------------------------
  Reporter:  centrex  |       Owner:  nwalp                  
      Type:  defect   |      Status:  closed                 
  Priority:  minor    |   Milestone:                         
 Component:  XMPP     |     Version:  2.4.0                  
Resolution:  invalid  |    Keywords:  openfire not-authorized
   Pending:  0        |  
----------------------+-----------------------------------------------------
Comment (by nosnilmot):

 Nowhere are we using the results of DNS SRV lookups to substitute the JID
 domain used for login. At least for Openfire servers that are also
 properly configured for GSSAPI authentication, it is essential to use the
 FQDN of the server for SASL authentication.

 They can probably get away with using the JID domain if the A records
 resolve accordingly, or if the JID domain is specified as the connect
 server, or if using an IP address as the connect server.

 I have some doubts about Psi's SASL implementation, and have not tried
 Exodus.

-- 
Ticket URL: <http://developer.pidgin.im/ticket/5008#comment:7>
Pidgin <http://pidgin.im>
Pidgin


More information about the Tracker mailing list