annotate mod_log_sasl_mech/mod_log_sasl_mech.lua @ 5643:73c3d5bfce3e

mod_http_oauth2: Allow 'login_hint' as a substitute for OIDC 'select_account' prompt If the OIDC 'prompt' parameter does not contain the 'select_account' then it wants us to skip account selection, which means we have to figure which account to authenticate somehow. One way could be have this stored in a cookie from a previous successful login. Another way would be to have the account passed as a hint, which is what we add here.
author Kim Alvefur <zash@zash.se>
date Sat, 09 Sep 2023 21:42:24 +0200
parents 4baaa5a66a5a
children 5ff8022466ab
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
rev   line source
1292
2d061333d0c2 mod_log_sasl_mech: Logs authentication mechanism used
Kim Alvefur <zash@zash.se>
parents:
diff changeset
1
2d061333d0c2 mod_log_sasl_mech: Logs authentication mechanism used
Kim Alvefur <zash@zash.se>
parents:
diff changeset
2 module:hook("authentication-success", function (event)
1393
4baaa5a66a5a mod_log_sasl_mech: Log SASL mechanism attached to session
Kim Alvefur <zash@zash.se>
parents: 1292
diff changeset
3 local session = event.session;
4baaa5a66a5a mod_log_sasl_mech: Log SASL mechanism attached to session
Kim Alvefur <zash@zash.se>
parents: 1292
diff changeset
4 local sasl_handler = session.sasl_handler;
4baaa5a66a5a mod_log_sasl_mech: Log SASL mechanism attached to session
Kim Alvefur <zash@zash.se>
parents: 1292
diff changeset
5 session.log("info", "Authenticated with %s", sasl_handler and sasl_handler.selected or "legacy auth");
1292
2d061333d0c2 mod_log_sasl_mech: Logs authentication mechanism used
Kim Alvefur <zash@zash.se>
parents:
diff changeset
6 end);