Which recipient are we authenticating for?
nisse at lysator.liu.se
07 Oct 2004 13:01:37 +0200
Linus Nordberg <email@example.com> writes:
> We need a way to express which sender/recipient pair a given
> XHASHCASHAUTH is authenticating, in the case of multiple RCPT TO.
Correct, when moving the XHASHCASH* things before RCPT TO, more
information must be provided by the client.
And it applies not only to authentication, but also to challenge
response (since the salt/resource/hashcash input depends on the