Adding a note for possible round trip savings.
authorTobias Markmann <tm@ayena.de>
Fri, 13 Nov 2009 13:31:03 +0000 (14:31 +0100)
committerTobias Markmann <tm@ayena.de>
Fri, 13 Nov 2009 13:31:03 +0000 (14:31 +0100)
util/sasl/digest-md5.lua

index 3f50e232ef0c2700d5b2417ab28748943eb145fb..ba0429338d0e8fbc419e5b61b041331d6d43de75 100644 (file)
@@ -214,6 +214,7 @@ local function digest(self, message)
                        KD = HA1..":"..response["nonce"]..":"..response["nc"]..":"..response["cnonce"]..":"..response["qop"]..":"..HA2
                        local rspauth = md5(KD, true);
                        self.authenticated = true;
+                       --TODO: considering sending the rspauth in a success node for saving one roundtrip; allowed according to http://tools.ietf.org/html/draft-saintandre-rfc3920bis-09#section-7.3.6
                        return "challenge", serialize({rspauth = rspauth});
                else
                        return "failure", "not-authorized", "The response provided by the client doesn't match the one we calculated."