File

mod_disable_tls/README.markdown @ 5819:93d6e9026c1b

mod_http_oauth2: Do not enforce PKCE on Device and OOB flows PKCE does not appear to be used with the Device flow. I have found no mention of any interaction between those standards. Since no data is delivered via redirects in these cases, PKCE may not serve any purpose. This is mostly a problem because we reuse the authorization code to implement the Device and OOB flows.
author Kim Alvefur <zash@zash.se>
date Fri, 15 Dec 2023 12:10:07 +0100
parent 1803:4d73a1a6ba68
line wrap: on
line source

---
labels:
- 'Stage-Beta'
summary: Disable TLS on certain client ports
...

Introduction
============

This module can be used to prevent Prosody from offering TLS on client
ports that you specify. This can be useful to work around buggy clients
when transport security is not required.

Configuration
=============

Load the module, and set `disable_tls_ports` to a list of ports:

        disable_tls_ports = { 5322 }

Don't forget to add any extra ports to c2s\_ports, so that Prosody is
actually listening for connections!

Compatibility
=============

  ----- -------
  0.9   Works
  ----- -------