Mercurial > prosody-modules
view mod_cloud_notify_extensions/README.md @ 6165:e977174082ee
mod_invites_register_api: Use set_password() for password resets
Previously the code relied on the (weird) behaviour of create_user(), which
would update the password for a user account if it already existed. This has
several issues, and we plan to deprecate this behaviour of create_user().
The larger issue is that this route does not trigger the user-password-changed
event, which can be a security problem. For example, it did not disconnect
existing user sessions (this occurs in mod_c2s in response to the event).
Switching to set_password() is the right thing to do
| author | Matthew Wild <mwild1@gmail.com> |
|---|---|
| date | Thu, 06 Feb 2025 10:24:30 +0000 |
| parents | fe081789f7b5 |
| children |
line wrap: on
line source
--- summary: "Tigase custom push extensions for iOS" labels: - 'Stage-Beta' rockspec: dependencies: - mod_cloud_notify_encrypted - mod_cloud_notify_priority_tag - mod_cloud_notify_filters ... Introduction ============ This is a meta-module that simply enables all the modules required to support Siskin or Snikket iOS on a Prosody server. These are currently: - [mod_cloud_notify_encrypted] - [mod_cloud_notify_priority_tag] - [mod_cloud_notify_filters] See the individual module pages for more details. In particular, mod_cloud_notify_encrypted depends on [luaossl](http://25thandclement.com/~william/projects/luaossl.html), which must be installed. It is available in Debian via apt as [`lua-luaossl`](https://tracker.debian.org/pkg/lua-luaossl) or via `luarocks install luaossl`. Note: On MUC services you should also load mod_muc_offline_delivery directly under the MUC component in your config file, that is not handled by this module. Configuration ============= There is no configuration for this module, just add it to modules\_enabled as normal. # Compatibility ------- ------------- 0.12 Works 0.11 Should work trunk Works ------- -------------
