annotate mod_query_client_ver/README.markdown @ 5512:1fbc8718bed6
mod_http_oauth2: Bind refresh tokens to client
Prevent one OAuth client from using the refresh tokens issued to another
client as required by RFC 6819 section 5.2.2.2
See also draft-ietf-oauth-security-topics-22 section 2.2.2
Thanks to OAuch for pointing out this issue
| author |
Kim Alvefur <zash@zash.se> |
| date |
Fri, 02 Jun 2023 10:40:48 +0200 |
| parents |
9842979f3034 |
| children |
|
| rev |
line source |
|
2994
|
1 # Introduction
|
|
|
2
|
|
|
3 This module sends a [version query][xep0092] to clients when they
|
|
|
4 connect, and logs the response, allowing statistics of client usage to
|
|
|
5 be recorded.
|
|
|
6
|
|
|
7 Note that since this is per connection, there will be a bias towards
|
|
|
8 mobile clients on bad connections.
|
|
|
9
|
|
|
10 ## Example
|
|
|
11
|
|
|
12 info Running Running Swift version 4.0
|