[PATCH] Add STARTTLS support

Sebastian Spaeth Sebastian at SSpaeth.de
Tue Apr 5 22:12:43 BST 2011


On Tue, 5 Apr 2011 21:59:42 +0200, Johannes Stezenbach <js at sig21.net> wrote:
> This seems wrong to me,  STARTTLS does not replace authentication,
> it only provides an encrypted channel, and auth is then done in the
> usual way after STARTTLS.

But surely, we would simply do plainauth login after starttls() and not
attempt to do a CRAM-MD5 login?

I readily admit that I am no expert in all things SSL/TSL, so if someone
comes up with a patch that would be appreciated. It's only a few lines
as my patch shows.

Sebastian
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 197 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/offlineimap-project/attachments/20110405/b4484f4e/attachment-0001.sig>


More information about the OfflineIMAP-project mailing list