0x28 SID_LOGONCHALLENGE

ProtocolBNCS
DirectionsServer → Client
Used bySSHRJSTR
StatusHistorical.

Gives the client the server token for this session, without a UDP code.

Server → Client

Right after the server's SID_CLIENTID reply.

TypeFieldNotesConfidence
UINT32 Server token Mixed into the password proof in SID_LOGONRESPONSE. Verified

Remarks

BNETDocs' observed logon sequences show StarCraft Shareware and StarCraft Japanese receiving this message, and Diablo and Warcraft II receiving SID_LOGONCHALLENGEEX instead. BNETDocs' "used by" list for this message also names Diablo and Warcraft II, which may be out of date.

Appears in

Sources and credits

This page is written in our own words. BNETDocs is credited for its research; none of its text is copied. See Credits.

Last edited September 16, 2026 by John Leighow.
Edit on GitHub | Page history