From 070043c6d2253715db574ced09feb9887d9a7654 Mon Sep 17 00:00:00 2001 From: Matthew Wild Date: Mon, 21 Dec 2009 22:00:49 +0000 Subject: mod_saslauth: Requiring c2s encryption means requiring c2s encryption... thanks Flo --- plugins/mod_saslauth.lua | 3 +++ 1 file changed, 3 insertions(+) (limited to 'plugins') diff --git a/plugins/mod_saslauth.lua b/plugins/mod_saslauth.lua index 001f14e2..dd13930e 100644 --- a/plugins/mod_saslauth.lua +++ b/plugins/mod_saslauth.lua @@ -104,6 +104,9 @@ local function sasl_handler(session, stanza) if not valid_mechanism then return session.send(build_reply("failure", "invalid-mechanism")); end + if secure_auth_only and not session.secure then + return session.send(build_reply("failure", "encryption-required")); + end elseif not session.sasl_handler then return; -- FIXME ignoring out of order stanzas because ejabberd does end -- cgit v1.2.3