RE: Wappush Contains Username/Password
"Mathieu Bruneau" <[email protected]>
| Newsgroups | gmane.comp.mobile.kannel.devel |
|---|---|
| Message-ID | <[email protected]> |
Hmmm isn't what was included in my second mail? <quote> Here's an example line from our bearerbox_access log: 2007-11-27 19:17:48 Sent SMS [SMSC:smc1] [SVC:ppg] [ACT:] [BINF:] [from:1234] [to:+56978555555] [flags:-1:1:-1:-1:0] [msg:73:cc061fae871880757365726e616d6550407373773072642621008db1c39302056a0045c60c0372616e646f6d2e75726c0085030011030007010354657374206d657373616765000101] [udh:7:0605040B8423F0] NB: I altered this to remove "sensible" information. I hope the format is still correct </quote> ------- Mathieu Bruneau -----Original Message----- From: Stipe Tolj [mailto:[email protected]] Sent: Friday, November 30, 2007 12:08 PM To: Mathieu Bruneau Cc: [email protected] Subject: Re: Wappush Contains Username/Password Mathieu Bruneau schrieb: > Well the username and password is passed in the "binary" sms resulted (as header apparently). That's where I believe it shouldn't be, since it's the part sent through the smsc connection. grrr, aren't we supposed only the WBXML'ize the content document? Why are the HTTP headers encoded here too? Can you show the correspnding WBXML'ed byte code that includes the HTTP Authorization header? Stipe No virus found in this outgoing message. Checked by AVG Free Edition. Version: 7.5.503 / Virus Database: 269.16.11/1161 - Release Date: 2007-11-30 12:12