annotate mod_query_client_ver/README.markdown @ 5548:fd3c12c40cd9
mod_http_oauth2: Disable CORS for authorization endpoint
Per recommendation in draft-ietf-oauth-security-topics-23
Hopefully it is enough to return an error status, since mod_http will
add CORS headers from a handler with higher priority, even for OPTIONS.
| author |
Kim Alvefur <zash@zash.se> |
| date |
Fri, 16 Jun 2023 00:05:57 +0200 |
| parents |
9842979f3034 |
| children |
|
| rev |
line source |
|
2994
|
1 # Introduction
|
|
|
2
|
|
|
3 This module sends a [version query][xep0092] to clients when they
|
|
|
4 connect, and logs the response, allowing statistics of client usage to
|
|
|
5 be recorded.
|
|
|
6
|
|
|
7 Note that since this is per connection, there will be a bias towards
|
|
|
8 mobile clients on bad connections.
|
|
|
9
|
|
|
10 ## Example
|
|
|
11
|
|
|
12 info Running Running Swift version 4.0
|