annotate mod_s2s_auth_samecert/README.md @ 6556:7477e97a9045

mod_firewall: Apply pre-reload state before re-reading config This change makes load/reload a bit more robust. module.load() runs before module.restore() and it reads from the config and updates the state (if needed). However, after this, module.restore() could run and apply the old state again.
author Matthew Wild <mwild1@gmail.com>
date Sun, 24 May 2026 20:03:20 +0100
parents 7bca4f5935d6
children
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
rev   line source
6354
7bca4f5935d6 mod_s2s_auth_samecert: Link to section in XEP-0344 describing this behavior
Kim Alvefur <zash@zash.se>
parents: 6249
diff changeset
1 This module implements the [Same Certificate shortcut] described in [XEP-0344].
7bca4f5935d6 mod_s2s_auth_samecert: Link to section in XEP-0344 describing this behavior
Kim Alvefur <zash@zash.se>
parents: 6249
diff changeset
2 Meaning it authenticates server-to-server connections by looking for an already established connection that uses the exact same certificate, reusing
6249
021b2686c19b mod_s2s_auth_samecert: Add brief README
Kim Alvefur <zash@zash.se>
parents:
diff changeset
3 the earlier validation results and letting Prosody skip performing slower validation methods such as [POSH][mod_s2s_auth_posh] twice.
6354
7bca4f5935d6 mod_s2s_auth_samecert: Link to section in XEP-0344 describing this behavior
Kim Alvefur <zash@zash.se>
parents: 6249
diff changeset
4
7bca4f5935d6 mod_s2s_auth_samecert: Link to section in XEP-0344 describing this behavior
Kim Alvefur <zash@zash.se>
parents: 6249
diff changeset
5 [Same Certificate shortcut]: https://xmpp.org/extensions/xep-0344.html#samecert