Account Options

  1. Sign in
Google Groups Home
« Groups Home
STARTTLS in XMPP?
There are currently too many topics in this group that display first. To make this topic appear first, remove this option from another topic.
There was an error processing your request. Please try again.
flag
  4 messages - Collapse all  -  Translate all to Translated (View all originals)
The group you are posting to is a Usenet group. Messages posted to this group will make your email address visible to anyone on the Internet.
Your reply message has not been sent.
Your post was successful
 
From:
To:
Cc:
Followup To:
Add Cc | Add Followup-to | Edit Subject
Subject:
Validation:
For verification purposes please type the characters you see in the picture below or the numbers you hear by clicking the accessibility icon. Listen and type the numbers you hear
 
Peter Saint-Andre  
View profile  
 More options Feb 16 2010, 4:54 pm
From: Peter Saint-Andre <stpe...@stpeter.im>
Date: Tue, 16 Feb 2010 14:54:15 -0700
Local: Tues, Feb 16 2010 4:54 pm
Subject: STARTTLS in XMPP?

It's unclear to me whether Miranda supports the upgrade of port 5222 to
encrypted using the XMPP STARTTLS command in accordance with RFC 3920
(see bug #152). At the jabber.org IM service we recently turned off
support for the legacy SSL-only port 5223 and Miranda users have been
unable to connect securely since then according to user reports, but I
want to make sure I'm not missing anything they could fix in their
preferences. If necessary we will re-enable port 5223 to make Miranda
(and other) users happy. :)

Thanks!

Peter

--
Peter Saint-Andre
https://stpeter.im/

  smime.p7s
9K Download

 
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
Boris Krasnovskiy  
View profile  
 More options Feb 16 2010, 6:38 pm
From: Boris Krasnovskiy <bor...@gmail.com>
Date: Tue, 16 Feb 2010 17:38:38 -0600
Local: Tues, Feb 16 2010 6:38 pm
Subject: Re: [Miranda-Develop] STARTTLS in XMPP?

>It's unclear to me whether Miranda supports the upgrade of port 5222

to encrypted using the XMPP STARTTLS command in accordance with RFC 3920

Yes, Miranda does support STARTTLS (set port to 5222 and checkTLS checkbox
in options).

> At the jabber.org IM service we recently turned off support for the legacy

SSL-only port 5223

And that was very dumb move the way I see it.

As "Legacy SSL" on port 443 is the only sure way to connect to jabber server
from behind corporate firewall. As all ports are blocked so connection have
to be done through proxy and HTTPS proxy checks for SSL headers before
allowing connection to go through, so STARTTLS will never work.

Thank you,
Boris Krasnovskiy


 
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
Peter Saint-Andre  
View profile  
 More options Feb 16 2010, 7:30 pm
From: Peter Saint-Andre <stpe...@stpeter.im>
Date: Tue, 16 Feb 2010 17:30:14 -0700
Local: Tues, Feb 16 2010 7:30 pm
Subject: Re: [Miranda-Develop] STARTTLS in XMPP?

On 2/16/10 4:38 PM, Boris Krasnovskiy wrote:

>>It's unclear to me whether Miranda supports the upgrade of port 5222
> to encrypted using the XMPP STARTTLS command in accordance with RFC 3920

> Yes, Miranda does support STARTTLS (set port to 5222 and checkTLS
> checkbox in options).

OK, thanks.

>> At the jabber.org <http://jabber.org> IM service we recently turned
> off support for the legacy SSL-only port 5223

> And that was very dumb move the way I see it.

Thanks for your feedback. Given that port 5223 was deprecated in 2004,
it's surprising that people still feel it's necessary. But such is life.

> As "Legacy SSL" on port 443 is the only sure way to connect to jabber
> server from behind corporate firewall. As all ports are blocked so
> connection have to be done through proxy and HTTPS proxy checks for SSL
> headers before allowing connection to go through, so STARTTLS will never
> work.

Funny, it seems to work for the vast majority of people, except those
who use very old or broken XMPP clients.

Peter

--
Peter Saint-Andre
https://stpeter.im/

  smime.p7s
9K Download

 
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
Boris Krasnovskiy  
View profile  
 More options Feb 16 2010, 7:52 pm
From: Boris Krasnovskiy <bor...@gmail.com>
Date: Tue, 16 Feb 2010 18:52:36 -0600
Local: Tues, Feb 16 2010 7:52 pm
Subject: Re: [Miranda-Develop] STARTTLS in XMPP?

> Funny, it seems to work for the vast majority of people, except those
> who use very old or broken XMPP clients.

> Well, people who do what?

People who do not have corporate jobs ? (and by corporate I mean people
employed by companies having 100s or 1000s employees)
School kids using IM at home or in school?

It's definitely for you decide which social group you want to see as
Jabber.org users.

I am just show you the problems I am many Miranda users are facing, as
questions come up all the time. Our user base is largely like that - people
employed by corporations, minimalistic client is largely appealing to them.

> Given that port 5223 was deprecated in 2004

Who cares when you change some document. IM is used to communicate.  Most of
my active day by far is spent at work. So if I cannot communicate from work,
why do I need this IM protocol? I do not.

I would like reiterate here, me and most of the users do not care about your
standards, we care about ability to communicate. If we cannot do that non it
matters.

Hopefully I got my point across.

Thank you,
Boris Krasnovskiy


 
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
End of messages
« Back to Discussions « Newer topic     Older topic »