BTW while digging in the specification RFC 2326 I found that section 3.4
says that the session Identifiers MUST be chosen randomly and MUST be at
least eight octets long to make guessing it more difficult. Yet a fast
look at the live555 library code seems to show that is doesn't choose a
random session ID and is not at least 8 octets long.

Thanks for the 'heads up'.  This will be fixed in the next release of the code.
--

Ross Finlayson
Live Networks, Inc.
http://www.live555.com/
_______________________________________________
live-devel mailing list
live-devel@lists.live555.com
http://lists.live555.com/mailman/listinfo/live-devel

Reply via email to