annotate mod_s2s_auth_samecert/README.md @ 6289:9b03238d4e0e

mod_http_oauth2: Only issue id_token when granted openid scope OpenID Connect Core 1.0 states that OIDC is only being done if the "openid" scope is included. https://openid.net/specs/openid-connect-core-1_0.html#rfc.section.3.1.2.1 Less details given out by default is good for privacy and byte count.
author Kim Alvefur <zash@zash.se>
date Tue, 15 Jul 2025 01:46:38 +0200
parents 021b2686c19b
children 7bca4f5935d6
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
rev   line source
6249
021b2686c19b mod_s2s_auth_samecert: Add brief README
Kim Alvefur <zash@zash.se>
parents:
diff changeset
1 This module authenticates server-to-server connections by looking for an already established connection that uses the exact same certificate, reusing
021b2686c19b mod_s2s_auth_samecert: Add brief README
Kim Alvefur <zash@zash.se>
parents:
diff changeset
2 the earlier validation results and letting Prosody skip performing slower validation methods such as [POSH][mod_s2s_auth_posh] twice.