• [^] # Re: Autorité de certification

    Posté par . En réponse au journal Organisation de tests de sécurité pour XMPP. Évalué à 3.

    Je me réponds à moi même. Extrait du manifeste :

    prefer authenticated encryption (via digital certificates) for
    server-to-server connections; if authenticated encryption is not
    available, fall back to opportunistic encryption with identity
    verification using Server Dialback

    Il semblerait que la connexion soit quand même acceptée ("opportunistic encryption"), à condition que le dialback/rappel (attention, c'est un brouillon) soit validé.