Mercurial > prosody-modules
view mod_adhoc_account_management/README.markdown @ 5458:813fe4f76286
mod_http_oauth2: Do minimal validation of private-use URI schemes
Per draft-ietf-oauth-v2-1-08#section-2.3.1
> At a minimum, any private-use URI scheme that doesn't contain a period
> character (.) SHOULD be rejected.
Since this would rule out the OOB URI, which is useful for CLI tools and
such without a built-in http server, it is explicitly allowed.
author | Kim Alvefur <zash@zash.se> |
---|---|
date | Tue, 16 May 2023 22:18:12 +0200 |
parents | 4d73a1a6ba68 |
children |
line wrap: on
line source
--- labels: - 'Stage-Alpha' summary: Personal account management command ... Introduction ============ This module adds an ad-hoc command that lets an user change their password. This is useful for clients that don't have support for [XEP-0077](http://xmpp.org/extensions/xep-0077.html) style password changing. In the future, it may provide other account management commands. Configuration ============= modules_enabled = { -- other modules -- "adhoc_account_management", } close_sessions_on_password_change = true require_current_password = true require_confirm_password = true Option Default Description --------------------------------------- --------- ---------------------------------------------------------------- close\_sessions\_on\_password\_change true Changing password invalidates other sessions the user may have require\_current\_password true Add a field for the current password require\_confirm\_password true Add a field for confirming the current password Todo ==== Suggestions welcome,