[email protected]
[Top] [All Lists]

Bug#308321: marked as forwarded (kphone does not use realm from 401 for

Subject: Bug#308321: marked as forwarded kphone does not use realm from 401 for authentication
From: Debian Bug Tracking System
Date: Wed, 08 Jun 2005 13:33:07 -0700
Your message dated Wed, 8 Jun 2005 22:31:38 +0100
with message-id <[email protected]>
has caused the Debian Bug report #308321,
regarding kphone does not use realm from 401 for authentication
to be marked as having been forwarded to the upstream software
author(s) [email protected], [email protected]

(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere.  Please contact me immediately.)

Debian bug tracking system administrator
(administrator, Debian Bugs database)

Received: (at 308321-forwarded) by bugs.debian.org; 8 Jun 2005 20:29:41 +0000
>From [email protected] Wed Jun 08 13:29:41 2005
Return-path: <[email protected]>
Received: from dsl-80-46-204-159.access.as9105.com (bristol.purcell.id.au) 
[] (Debian-exim)
        by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
        id 1Dg7BE-0005XR-00; Wed, 08 Jun 2005 13:29:41 -0700
Received: from dell.purcell.id.au ([] ident=Debian-exim)
        by bristol.purcell.id.au with esmtp (Exim 4.50)
        id 1Dg7B3-0000rX-GF; Wed, 08 Jun 2005 21:29:36 +0100
Received: from mark by dell.purcell.id.au with local (Exim 4.50)
        id 1Dg89C-0003U6-Mt; Wed, 08 Jun 2005 22:31:39 +0100
From: Mark Purcell <[email protected]>
To: [email protected],
 [email protected]
Date: Wed, 8 Jun 2005 22:31:38 +0100
User-Agent: KMail/1.8
MIME-Version: 1.0
Cc: [email protected],
 Bernie Hoeneisen <[email protected]>
Disposition-Notification-To: Mark Purcell <[email protected]>
Content-Type: Multipart/Mixed;
Message-Id: <[email protected]>
X-SA-Exim-Rcpt-To: [email protected], [email protected], 
[email protected], [email protected]
X-SA-Exim-Mail-From: [email protected]
Subject: Fwd: Bug#308321: kphone does not use realm from 401 for authentication
X-SA-Exim-Version: 4.2 (built Thu, 03 Mar 2005 10:44:12 +0100)
X-SA-Exim-Scanned: Yes (on bristol.purcell.id.au)
Delivered-To: [email protected]
X-Spam-Checker-Version: SpamAssassin 2.60-bugs.debian.org_2005_01_02 
        (1.212-2003-09-23-exp) on spohr.debian.org
X-Spam-Status: No, hits=-11.0 required=4.0 tests=BAYES_00,HAS_BUG_NUMBER,
        HAS_PACKAGE autolearn=ham version=2.60-bugs.debian.org_2005_01_02

Content-Type: text/plain;
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

[email protected],

Please find enclosed a proposal from a Debian GNU/Linux user of Kphone which 
you might like to include upstream.

Note this and other bug reports against kphone are available at 

ps. Could I ask that you include the Cc: addresses in any followup against 
this issue so replies can be tracked against the Debian BTS as well.

Debian GNU/Linux kphone maintainer


Content-Type: message/rfc822
Content-Transfer-Encoding: 7bit
Content-Description: Bernie Hoeneisen <[email protected]>: Bug#308321: kphone 
does not use realm from 401 for authentication
Content-Disposition: inline;

Return-path: <[email protected]>
Envelope-to: [email protected]
Delivery-date: Mon, 09 May 2005 18:08:46 +0100
Received: from spohr.debian.org ([] ident=mail)
        by bristol.purcell.id.au with esmtp (Exim 4.50)
        id 1DVBkI-0000dg-F3
        for [email protected]; Mon, 09 May 2005 18:08:45 +0100
Received: from debbugs by spohr.debian.org with local (Exim 3.35 1 (Debian))
        id 1DV7g3-0007of-00; Mon, 09 May 2005 05:48:03 -0700
X-Loop: [email protected]
Reply-To: Bernie Hoeneisen <[email protected]>,
 [email protected]
Resent-From: Bernie Hoeneisen <[email protected]>
Original-Sender: Bernie Hoeneisen <[email protected]>
Resent-To: [email protected]
Resent-CC: Mark Purcell <[email protected]>
Resent-Date: Mon, 09 May 2005 12:48:01 UTC
Resent-Message-ID: <[email protected]>
X-Debian-PR-Message: report 308321
X-Debian-PR-Package: kphone
Received: via spool by [email protected] id=B.111564231824315
          (code B ref -1); Mon, 09 May 2005 12:48:01 UTC
Received: (at submit) by bugs.debian.org; 9 May 2005 12:38:38 +0000
Received: from machb.switch.ch (machb) [] 
        by spohr.debian.org with esmtp (Exim 3.35 1 (Debian))
        id 1DV7Wv-0006Jf-00; Mon, 09 May 2005 05:38:37 -0700
Received: from bhoeneis by machb with local (Exim 3.36 #1 (Debian))
        id 1DV7Tt-0004YM-00
        for <[email protected]>; Mon, 09 May 2005 14:35:29 +0200
Content-Type: text/plain;
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
From: Bernie Hoeneisen <[email protected]>
To: Debian Bug Tracking System <[email protected]>
X-Mailer: reportbug 3.8
Date: Mon, 09 May 2005 14:35:29 +0200
Message-Id: <[email protected]>
Sender: Bernie Hoeneisen <[email protected]>
X-BadReturnPath: [email protected] rewritten as [email protected]
  using "From" header
Delivered-To: [email protected]
Resent-Sender: Debian BTS <[email protected]>
X-SA-Exim-Rcpt-To: [email protected]
X-SA-Exim-Mail-From: [email protected]
Subject: Bug#308321: kphone does not use realm from 401 for authentication
X-Spam-Checker-Version: SpamAssassin 3.0.2 (2004-11-16) on 
X-Spam-Status: No, score=-2.6 required=1.0 tests=BAYES_00 autolearn=ham 
X-SA-Exim-Version: 4.2 (built Thu, 03 Mar 2005 10:44:12 +0100)
X-SA-Exim-Scanned: Yes (on bristol.purcell.id.au)
X-UID: 327
Content-Length: 3386
X-Length: 6061

Package: kphone
Version: 1:4.1.0-2
Severity: normal


I discovered the following behavior of kphone:

When I start up kphone and kphone tries to register with a SIP Registrar,
the SIP Registrar sends  401 Unauthorized  Response with the header field:

WWW-Authenticate: Digest realm="abc.ch", 

As a reaction to this, kphone asks for the password.

So far just normal...

But asking the passwort from the user in a question window, it displays
Server "xyz.abc.ch", which it takes from the local configuration for 
Default Outbound Proxy, instead of the WWW-Authenticate (realm) header field.
When I provide the password for realm "abc.ch", the authentcation fails. 
Kphone sends in the INVITE:

Authorization: Digest username="test", realm="abc.ch",
  uri="sip:xyz.abc.ch", cnonce="abcdefghi", nc=00000001,
  response="6471881d832fa1e92d9a905c0ffebd78", opaque="", algorithm="MD5"

I guess it calculates the "response" with the wrong realm/Server value. 


- In the examples I have replaced the real values
  with "abc.ch" and "xyz.abc.ch" for privacy reasons.

- Default Outbound Proxy: sip:xyz.abc.ch

- SIP address: sip:[email protected]

- Realm: abc.ch

- authentication username: test

- The IP address (DNS A record) of "xyz.abc.ch" points to the SIP Registrar

- The IP address (DNS A record) of "abc.ch" is not pointing to the SIP Registrar

- the SRV and NAPTR records for abc.ch are configured in that way, that SIP
  requests are sent to xyz.abc.chm if the SIP client queries the SRV records


- Authentication doesn't work, if Default Outbound Proxy is not the same
  as the realm.

- When asked for the password, the "Server" value is taken form the local
  Configuration Default Outbound Proxy instead of  from the 401 message.

- Also in the config file ~/.qt/kphonerc kphone saves the wrong value
  from the Default Outbound Proxy setting (to SipServer in Registration

  SipUri="Tester" <sip:[email protected]>


-- System Information:
Debian Release: 3.1
  APT prefers testing
  APT policy: (990, 'testing'), (500, 'unstable')
Architecture: powerpc (ppc)
Kernel: Linux 2.6.9-powerpc
Locale: LANG=en_US.ISO-8859-15, LC_CTYPE=de_CH (charmap=ISO-8859-1)

Versions of packages kphone depends on:
ii  libc6                    2.3.2.ds1-21    GNU C Library: Shared libraries an
ii  libgcc1                  1:3.4.3-12      GCC support library
ii  libice6                  4.3.0.dfsg.1-12 Inter-Client Exchange library
ii  libpng12-0               1.2.8rel-1      PNG library - runtime
ii  libqt3c102-mt            3:3.3.4-3       Qt GUI Library (Threaded runtime v
ii  libsm6                   4.3.0.dfsg.1-12 X Window System Session Management
ii  libssl0.9.7              0.9.7e-3        SSL shared libraries
ii  libstdc++5               1:3.3.5-12      The GNU Standard C++ Library v3
ii  libx11-6                 4.3.0.dfsg.1-12 X Window System protocol client li
ii  libxext6                 4.3.0.dfsg.1-12 X Window System miscellaneous exte
ii  libxt6                   4.3.0.dfsg.1-12 X Toolkit Intrinsics
ii  xlibs                    4.3.0.dfsg.1-12 X Keyboard Extension (XKB) configu

-- no debconf information


To UNSUBSCRIBE, email to [email protected]
with a subject of "unsubscribe". Trouble? Contact [email protected]

<Prev in Thread] Current Thread [Next in Thread>
  • Bug#308321: marked as forwarded (kphone does not use realm from 401 for authentication), Debian Bug Tracking System <=