DIGEST-MD5

Rob Siemborski rjs3 at andrew.cmu.edu
Wed Jun 18 12:20:22 EDT 2003


On Wed, 18 Jun 2003, Tom Carroll wrote:

> Good day -
>
> Upon upgrading to sasl 2.1.13,cyrus 2.1.13, I started receiving the
> following errors:
>
> bad digest-uri: doesn't match service
> badlogin: XXX.XXX.XXX.XXX DIGEST-MD5 SASL(-13): authentication failure: bad digest-uri: doesn't match service
>
> I re-created the sasldb, but to no avail.  I used the following:
> saslpasswd2 -c -a Cyrus user.
>
> Currently, I disabled DIGEST-MD5 and everything functions. All the
> clients are currently using CRAM-MD5.
>
> I was successfully using DIGEST-MD5 in a sasl 2.1.10, cyrus 2.1.10
> environment.
>
> Has anyone successfully corrected this issue?  Is this even an issue?
> Am I doing something blatantly wrong?

There was a problem like this in 2.1.12, but it was fixed in 2.1.13.

What are your clients doing?  It looks like they're sending bad data to
the server (Specificaly, using the wrong service name in the digest-uri
part of the negotiation).

Do you have a network capture?

-Rob

-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
Rob Siemborski * Andrew Systems Group * Cyert Hall 207 * 412-268-7456
Research Systems Programmer * /usr/contributed Gatekeeper





More information about the Info-cyrus mailing list