view @ 511:9cf5a22e30a1

allow_unencrypted_plain_auth is not required
date Fri, 03 Apr 2015 00:57:11 +0000
parents 528721aaea46
line wrap: on
line source

#summary Client Certificate authentication module
#labels Stage-Alpha,Type-Auth

= Introduction =

This module implements PKI-style client certificate authentication.
You will therefore need your own Certificate Authority.
How to set that up is beyond the current scope of this document.

= Configuration =


authentication = "ccert"
certificate_match = "xmppaddr" -- or "email"

c2s_ssl = {
	capath = "/path/to/dir/with/your/ca"


`capath` should be pointed to a directory with your own CA certificate.  You will need to run `c_rehash` in it.

= Compatibility =

||0.9 and earlier||Doesn't work||
||0.10 and later||Works||