[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: result code for a deleted identity on a connection



Kurt D. Zeilenga writes:
>> We should probably have a result code like invalidIdentity which is
>> sent back with a notice of disconnection (section 4.4.1 protocol draft)
>> followed by a closing of the connection by the server.
> 
> RFC 2251, 4.4.1:
>>   - strongAuthRequired: The server has detected that an established
>>     underlying security association protecting communication between
>>     the client and server has unexpectedly failed or been compromised.
> 
> I think it would be reasonable to return this in this case as well.

Why ask for _strong_ auth, and not just auth?

-- 
Hallvard