[Standards-JIG] Re: MUC (JEP-45) privacy & control

Ralph Meijer jabber.org at ralphm.ik.nu
Tue Apr 18 14:29:47 UTC 2006


On Tue, Apr 18, 2006 at 04:13:11PM +0200, Luk???? 'Spike' Pol??vka wrote:
>
> [..]
>
> Hi,
> the problem is that even anonymous (or at least semi-anonymous) rooms
> are not anonymous at all -- everyone can see your vCard, your Avatar
> and find your JID using these pieces of information.
> 
> So to be completely anonymous, you have to have separate JID for MUC.
> Which kind of sucks. :/

This is not a protocol issue. MUC implementations can choose to let
every iq query be passed on to the actual users. Basically, current
implementations are one big open relay.

Another area where this becomes icky is pubsub. Currently, you can
simply subscribe another occupant of a room you are in to any node you
desire.

-- 
Groetjes,

ralphm



More information about the Standards mailing list