From 59777055e1143dbc8b58d57f2baec57092faf0cf Mon Sep 17 00:00:00 2001 From: Stefan Haun Date: Fri, 10 Feb 2017 22:03:43 +0100 Subject: [PATCH] XEP-0280: Restructure Section 11: Security Considerations --- xep-0280.xml | 6 +++++- 1 file changed, 5 insertions(+), 1 deletion(-) diff --git a/xep-0280.xml b/xep-0280.xml index 714d0766..dab6daf4 100644 --- a/xep-0280.xml +++ b/xep-0280.xml @@ -432,7 +432,11 @@ -

The security model assumed by this document is that all of the resources for a single user are in the same trust boundary. Any forwarded copies received by a Carbons-enabled client MUST be from that user's bare JID; any copies that do not meet this requirement MUST be ignored.

+

The security model assumed by this document is that all of the resources for a single user are in the same trust boundary.

+

Outbound chat messages that are encrypted end-to-end are not often useful to receive on other resources. As such, they should use the <private/> element specified above to avoid such copying, unless the encryption mechanism is able to accommodate this protocol.