>>>>> "Jim" == Jim Alexander <[EMAIL PROTECTED]> writes:

    Jim> I meant to also add that I think it is generally considered
    Jim> bad form to silently fall back to a weaker security mechanism
    Jim> when a stronger on fails. I want to be able to configure my
    Jim> mail client to use GSSAPI, and if it fails, I want to be told
    Jim> that it failed, not fall back and perhaps successfully
    Jim> authenticate using CRAM-MD5, leaving me without a clue that
    Jim> my chosen auth method is not working.


I agree having this option is nice.  However I also think it is
important to have a usable default behavior.

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

Reply via email to