Mercurial > prosody-modules
view mod_proxy65_whitelist/README.markdown @ 5407:149634647b48
mod_http_oauth2: Don't issue client_secret when not using authentication
This is pretty much only for implicit flow, which is considered insecure
anyway, so this is of limited value. If we delete all the implicit flow
code, this could be reverted.
author | Kim Alvefur <zash@zash.se> |
---|---|
date | Tue, 02 May 2023 16:39:32 +0200 |
parents | 8de50be756e5 |
children | 694b62d8a82f |
line wrap: on
line source
--- labels: 'Stage-Alpha' summary: Limit which file transfer users can use ... Introduction ------------ This module attempts to restrict use of non-whitelisted XEP-0065 proxies. Configuration ------------- Without any options, the module will restrict users to local [proxy65 components](https://prosody.im/doc/modules/mod_proxy65). -- additional proxies to allow allowed_streamhosts = { "proxy.eu.jabber.org" } The module will add all local proxies to that list. To prevent it from doing that, set allow_local_streamhosts = false