The PLAIN mechanism (RFC 4616): [authzid] NUL authcid NUL password
in one message. Only safe over TLS.
An authorization identity is accepted only when it equals the authentication identity: one user cannot act as another.
Summary
Functions
Starts the client side. Returns the initial response.
credentials has :username and :password.
Answers a challenge (only an empty one is expected).
Functions
Starts the client side. Returns the initial response.
credentials has :username and :password.
Answers a challenge (only an empty one is expected).