Issue #1040 states that PLAIN auth must be refused on insecure connections by default.
However, I can't see an option to override this default behaviour and still allow PLAIN auth on insecure connection.
This would be usefull in development phase when testing on a local network.
Environment