view mod_storage_ldap/README.markdown @ 5448:9d542e86e19a

mod_http_oauth2: Allow requesting a subset of scopes on token refresh This enables clients to request access tokens with fewer permissions than the grant they were given, reducing impact of token leak. Clients could e.g. request access tokens with some privileges and immediately revoke them after use, or other strategies.
author Kim Alvefur <zash@zash.se>
date Thu, 11 May 2023 21:40:09 +0200
parents 79b9bd84b91c
children
line wrap: on
line source

---
labels:
- 'Type-Storage'
summary: 'LDAP storage for rosters, groups, and vcards'
...

Introduction
============

See [mod\_lib\_ldap](mod_lib_ldap.html) for more information.

Installation
============

You must install [mod\_lib\_ldap](mod_lib_ldap.html) to use this module.
After that, you need only copy mod\_storage\_ldap.lua and
ldap/vcard.lib.lua to your Prosody installation's plugins directory.
Make sure vcard.lib.lua is installed under plugins/ldap/.

Configuration
=============

In addition to the configuration that [mod\_lib\_ldap](mod_lib_ldap.html)
itself requires, this plugin also requires the following fields in the
ldap section:

-   user.namefield
-   groups.memberfield
-   groups.namefield
-   groups.basedn
-   vcard\_format (optional)

See the README.html distributed with [mod\_lib\_ldap](mod_lib_ldap.html) for
details.