Option to block anonymous logins from sending s2s packets
As a measure to help mitigate DOS/SPIM style attacks, Openfire should have a property option that prevents anonymous logins from sending server 2 server packets. This would prevent an anonymous login from spamming another federated server. It would not stop the user from spamming users on the local server.
Punting to 4.2, a related change to prevent blacklisted outbound s2s hosts from consuming available threads helped in this general area of spammers