Re: [Exim] SMTP AUTH

Top Page
Delete this message
Reply to this message
Author: Nigel Metheringham
Date:  
To: exim-users
Subject: Re: [Exim] SMTP AUTH
On Tue, 2003-09-23 at 21:26, Wakko Warner wrote:
> > I'd be very glad if anybody could explain me if there is any way to do cram-auth
> > this way.
>
> You can't


Specifically you need to have the unencrypted password available on the
server to do CRAM - the password goes over the wire one way
hashed/encrypted, but to determine whether the password is correct the
server needs to perform the same hashing operation on the original
password.

--
[ Nigel Metheringham           Nigel.Metheringham@??? ]
[ - Comments in this message are my own and not ITO opinion/policy - ]