Mercurial > prosody-modules
annotate mod_proxy65_whitelist/README.markdown @ 5404:1087f697c3f3
mod_http_oauth2: Strip unknown extra fields from client registration
We shouldn't sign things we don't understand!
RFC 7591 section-2 states:
> The authorization server MUST ignore any client metadata sent by the
> client that it does not understand (for instance, by silently removing
> unknown metadata from the client's registration record during
> processing).
Prevents grandfathering in of unvalidated data that might become used
later, especially since the 'additionalProperties' schema keyword was
removed in 698fef74ce53
| author | Kim Alvefur <zash@zash.se> |
|---|---|
| date | Tue, 02 May 2023 16:23:40 +0200 |
| parents | 8de50be756e5 |
| children | 694b62d8a82f |
| rev | line source |
|---|---|
|
1820
8de50be756e5
Various README files: Correct indentation levels, fix syntax and other small fixes
Kim Alvefur <zash@zash.se>
parents:
1803
diff
changeset
|
1 --- |
| 1803 | 2 labels: 'Stage-Alpha' |
| 3 summary: Limit which file transfer users can use | |
| 4 ... | |
| 5 | |
| 6 Introduction | |
| 7 ------------ | |
| 8 | |
| 9 This module attempts to restrict use of non-whitelisted XEP-0065 | |
| 10 proxies. | |
| 11 | |
| 12 Configuration | |
| 13 ------------- | |
| 14 | |
| 15 Without any options, the module will restrict users to local [proxy65 | |
| 16 components](https://prosody.im/doc/modules/mod_proxy65). | |
| 17 | |
| 18 -- additional proxies to allow | |
| 19 allowed_streamhosts = { "proxy.eu.jabber.org" } | |
| 20 | |
| 21 The module will add all local proxies to that list. To prevent it from | |
| 22 doing that, set | |
| 23 | |
| 24 allow_local_streamhosts = false |
