view mod_log_auth/mod_log_auth.lua @ 2696:404d47d2e833

mod_log_auth: Attempt to retrieve attempted username from SASL handler (re #844)
author Kim Alvefur <zash@zash.se>
date Wed, 19 Apr 2017 06:37:29 +0200
parents 8b21f13b08c5
children 88205b77e385
line wrap: on
line source

local mode = module:get_option_string("log_auth_ips", "failure");
assert(({ all = true, failure = true, success = true })[mode],
	"Unknown log mode: "..tostring(mode).." - valid modes are 'all', 'failure', 'success'");

if mode == "failure" or mode == "all" then
	module:hook("authentication-failure", function (event)
		local session = event.session;
		module:log("info", "Failed authentication attempt (%s) for user %s from IP: %s",
			event.condition or "unknown-condition", session.username or session.sasl_handler.username or "?", session.ip or "?");
	end);
end

if mode == "success" or mode == "all" then
	module:hook("authentication-success", function (event)
		local session = event.session;
		module:log("info", "Successful authentication as %s from IP: %s", session.username, session.ip or "?");
	end);
end