Tcl Library Source Code

SASL::XGoogleToken - Simple Authentication and Security Layer (SASL)
Login
Bounty program for improvements to Tcl and certain Tcl packages.

[ Main Table Of Contents | Table Of Contents | Keyword Index | Categories | Modules | Applications ]

SASL::XGoogleToken(n) 1.0.1 tcllib "Simple Authentication and Security Layer (SASL)"

Name

SASL::XGoogleToken - Implementation of SASL NTLM mechanism for Tcl

Synopsis

  • package require Tcl 8.2
  • package require SASL::XGoogleToken ?1.0.1?

Description

This package provides the XGoogleToken authentication mechanism for the Simple Authentication and Security Layer (SASL).

Please read the documentation for package sasl for details.

TLS Security Considerations

This package uses the TLS package to handle the security for https urls and other socket connections.

Policy decisions like the set of protocols to support and what ciphers to use are not the responsibility of TLS, nor of this package itself however. Such decisions are the responsibility of whichever application is using the package, and are likely influenced by the set of servers the application will talk to as well.

For example, in light of the recent POODLE attack discovered by Google many servers will disable support for the SSLv3 protocol. To handle this change the applications using TLS must be patched, and not this package, nor TLS itself. Such a patch may be as simple as generally activating tls1 support, as shown in the example below.

    package require tls
    tls::init -tls1 1 ;# forcibly activate support for the TLS1 protocol
    ... your own application code ...

AUTHORS

Pat Thoyts

Bugs, Ideas, Feedback

This document, and the package it describes, will undoubtedly contain bugs and other problems. Please report such in the category sasl of the Tcllib Trackers. Please also report any ideas for enhancements you may have for either package and/or documentation.

Category

Networking