On Wed, 2006-11-29 at 08:04 +0200, Marnus van Niekerk wrote:
> However,  sipXtapi is the only UA I found that has this "strict"
> mapping between realm and username/password.
> In fact it was the only one that explicitly asks for a realm from the
> user.

OTOH, if your UA needs two different passwords for two different realms,
this facility is vital.

> Every other UA I tried (linphone, kphone, xlite (windows and linux),
> several hardphones and ata's) seem to have a "default" set of username
> and password and uses it to respond to the realm presented by the
> server.  This way the UA does not need advance knowledge of the realm
> which simplifies configuration.

Is there any reason to believe that you cannot predict in advance what
realms the various devices you contact will use?  If the realms that
they use are not fixed over very long periods of time, how do they
ensure uniqueness?  How do they work with phones that can register with
and use several different registrar/proxies?

> PS: Also if you look at the RFCs, SIP digest auth was based on http
> digest auth where the browser has no prior knowledge of the realm in
> the challenge.

OTOH, it is assumed that the browser can request new passwords from the
user in real-time.  But phone user interfaces usually do not have that
luxury.

Dale


_______________________________________________
sipxtapi-dev mailing list
[email protected]
List Archive: http://list.sipfoundry.org/archive/sipxtapi-dev/

Reply via email to