From: Kurt D. Z. <Ku...@Op...> - 2002-05-07 17:42:20
|
At 02:36 AM 2002-05-07, Norbert Klasen wrote: >Hi, >RFC2222 says that in the EXTERNAL mechanism "The client sends an initial response with the authorization identity." It also says: If the client sends the empty string as the authorization identity... Unless the client is attempting proxy authorization, the client should send an empty string. This has been discussed in great detail on the iet...@im... mailing list. Kurt |