view mod_s2s_auth_samecert/README.md @ 6556:7477e97a9045

mod_firewall: Apply pre-reload state before re-reading config This change makes load/reload a bit more robust. module.load() runs before module.restore() and it reads from the config and updates the state (if needed). However, after this, module.restore() could run and apply the old state again.
author Matthew Wild <mwild1@gmail.com>
date Sun, 24 May 2026 20:03:20 +0100
parents 7bca4f5935d6
children
line wrap: on
line source

This module implements the [Same Certificate shortcut] described in [XEP-0344].
Meaning it authenticates server-to-server connections by looking for an already established connection that uses the exact same certificate, reusing
the earlier validation results and letting Prosody skip performing slower validation methods such as [POSH][mod_s2s_auth_posh] twice.

[Same Certificate shortcut]: https://xmpp.org/extensions/xep-0344.html#samecert