annotate mod_s2s_auth_samecert/README.md @ 6411:b00638d74f46

mod_unified_push: Allow additional CORS headers for unified push (fixes #1985) - Request header "TTL" is mandated by the HTTP Push specification RFC 8030: https://datatracker.ietf.org/doc/html/rfc8030#section-5 - Firefox sends "Content-Encoding" with a HTTP form submission, so it is required when using the Unified Push testing tool at https://unifiedpush.org/test_wp.html (with the full URL being delivered by the UP-Example Android app) Adding both headers makes the Unified Push testing tool work from the browser. Resolves: https://issues.prosody.im/1985
author Christian Weiske <cweiske@cweiske.de>
date Sat, 21 Feb 2026 19:13:08 +0100
parents 7bca4f5935d6
children
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
rev   line source
6354
7bca4f5935d6 mod_s2s_auth_samecert: Link to section in XEP-0344 describing this behavior
Kim Alvefur <zash@zash.se>
parents: 6249
diff changeset
1 This module implements the [Same Certificate shortcut] described in [XEP-0344].
7bca4f5935d6 mod_s2s_auth_samecert: Link to section in XEP-0344 describing this behavior
Kim Alvefur <zash@zash.se>
parents: 6249
diff changeset
2 Meaning it authenticates server-to-server connections by looking for an already established connection that uses the exact same certificate, reusing
6249
021b2686c19b mod_s2s_auth_samecert: Add brief README
Kim Alvefur <zash@zash.se>
parents:
diff changeset
3 the earlier validation results and letting Prosody skip performing slower validation methods such as [POSH][mod_s2s_auth_posh] twice.
6354
7bca4f5935d6 mod_s2s_auth_samecert: Link to section in XEP-0344 describing this behavior
Kim Alvefur <zash@zash.se>
parents: 6249
diff changeset
4
7bca4f5935d6 mod_s2s_auth_samecert: Link to section in XEP-0344 describing this behavior
Kim Alvefur <zash@zash.se>
parents: 6249
diff changeset
5 [Same Certificate shortcut]: https://xmpp.org/extensions/xep-0344.html#samecert