[Date Prev][Date Next]
[Chronological]
[Thread]
[Top]
Re: result code for a deleted identity on a connection
Kurt D. Zeilenga writes:
>> We should probably have a result code like invalidIdentity which is
>> sent back with a notice of disconnection (section 4.4.1 protocol draft)
>> followed by a closing of the connection by the server.
>
> RFC 2251, 4.4.1:
>> - strongAuthRequired: The server has detected that an established
>> underlying security association protecting communication between
>> the client and server has unexpectedly failed or been compromised.
>
> I think it would be reasonable to return this in this case as well.
Why ask for _strong_ auth, and not just auth?
--
Hallvard