RE: Wappush Contains Username/Password

"Mathieu Bruneau" <[email protected]>
Newsgroups gmane.comp.mobile.kannel.devel
Message-ID <[email protected]>
Hmmm isn't what was included in my second mail? 

<quote>
Here's an example line from our bearerbox_access log:
2007-11-27 19:17:48 Sent SMS [SMSC:smc1] [SVC:ppg] [ACT:] [BINF:] [from:1234] [to:+56978555555] [flags:-1:1:-1:-1:0] [msg:73:cc061fae871880757365726e616d6550407373773072642621008db1c39302056a0045c60c0372616e646f6d2e75726c0085030011030007010354657374206d657373616765000101] [udh:7:0605040B8423F0]

NB: I altered this to remove "sensible" information. I hope the format is still correct
</quote>

-------
Mathieu Bruneau


-----Original Message-----
From: Stipe Tolj [mailto:[email protected]] 
Sent: Friday, November 30, 2007 12:08 PM
To: Mathieu Bruneau
Cc: [email protected]
Subject: Re: Wappush Contains Username/Password

Mathieu Bruneau schrieb:
> Well the username and password is passed in the "binary" sms resulted (as header apparently). That's where I believe it shouldn't be, since it's the part sent through the smsc connection.

grrr, aren't we supposed only the WBXML'ize the content document? Why are the 
HTTP headers encoded here too?

Can you show the correspnding WBXML'ed byte code that includes the HTTP 
Authorization header?

Stipe


No virus found in this outgoing message.
Checked by AVG Free Edition. 
Version: 7.5.503 / Virus Database: 269.16.11/1161 - Release Date: 2007-11-30 12:12
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.