Mercurial > prosody-modules
view mod_s2s_auth_posh/README.markdown @ 4340:7cd3b7ec59e9
mod_http_oauth2: Rudimentary support for scopes (but not really)
We don't support limiting access, but this change will inform the
client what permissions the created token has (e.g. is the user an
admin or not).
There is some work in progress on real scope support.
author | Matthew Wild <mwild1@gmail.com> |
---|---|
date | Sat, 16 Jan 2021 19:47:22 +0000 |
parents | 517c7f0333e3 |
children |
line wrap: on
line source
--- labels: - 'Type-S2SAuth' --- Introduction ============ [PKIX over Secure HTTP (POSH)][rfc7711] describes a method of securely delegating a domain to a hosting provider, without that hosting provider needing keys and certificates covering the hosted domain. # Validating This module performs POSH validation of other servers. It is *not* needed to delegate your own domain. # Delegation You can generate the JSON delegation file from a certificate by running `prosodyctl mod_s2s_auth_posh /path/to/example.crt`. This file needs to be served at `https://example.com/.well-known/posh/xmpp-server.json`.