Mercurial > prosody-modules
view mod_s2s_auth_posh/README.markdown @ 5466:398d936e77fb
mod_http_oauth2: Add support for the OpenID 'login_hint' parameter
This allows the client to suggest to the authorization screen which user
is trying to login, so they don't have to fill that in twice if they
already did so at the client.
author | Kim Alvefur <zash@zash.se> |
---|---|
date | Wed, 17 May 2023 18:49:22 +0200 |
parents | 517c7f0333e3 |
children |
line wrap: on
line source
--- labels: - 'Type-S2SAuth' --- Introduction ============ [PKIX over Secure HTTP (POSH)][rfc7711] describes a method of securely delegating a domain to a hosting provider, without that hosting provider needing keys and certificates covering the hosted domain. # Validating This module performs POSH validation of other servers. It is *not* needed to delegate your own domain. # Delegation You can generate the JSON delegation file from a certificate by running `prosodyctl mod_s2s_auth_posh /path/to/example.crt`. This file needs to be served at `https://example.com/.well-known/posh/xmpp-server.json`.