view mod_lib_ldap/dev/slapd.conf @ 5796:93d6e9026c1b

mod_http_oauth2: Do not enforce PKCE on Device and OOB flows PKCE does not appear to be used with the Device flow. I have found no mention of any interaction between those standards. Since no data is delivered via redirects in these cases, PKCE may not serve any purpose. This is mostly a problem because we reuse the authorization code to implement the Device and OOB flows.
author Kim Alvefur <zash@zash.se>
date Fri, 15 Dec 2023 12:10:07 +0100
parents 1f45cef9e5c7
children
line wrap: on
line source

include		/etc/openldap/schema/core.schema
# I needed the following two schema definitions for posixGroup; if you don't
# need it, don't include them
include         /etc/openldap/schema/cosine.schema
include         /etc/openldap/schema/nis.schema
# needed for inetOrgPerson so I can test jpegPhoto
include         /etc/openldap/schema/inetorgperson.schema

pidfile		/var/run/openldap/slapd.pid
argsfile	/var/run/openldap/slapd.args
database	bdb
suffix		"dc=example,dc=com"
rootdn		"cn=Manager,dc=example,dc=com"
rootpw		prosody
directory	/var/lib/openldap/openldap-data
index	objectClass	eq