Skip to content

Update of the SASL SCRAM Downgrade protection XEP #17

@edhelas

Description

@edhelas

The value delimiters were changed to prevent some possible attack.

in a nutshell the "," delimiter with 0x1e and the "|" delimiter with 0x1f...the scram attribute key changed from "d" to "h" to get a better upgrade path...

The related PR is there: xsf/xeps#1422
And the rendered version is there: https://dyn.eightysoft.de/xeps/xep-0474.html

Thanks again for the awesome work you're doing on the library !

Metadata

Metadata

Assignees

No one assigned

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions