Log

description author age
mod_http_oauth2: Validate that redirect URIs are absolute Kim Alvefur 2023-03-11
mod_http_oauth2: Validate basic URI syntax of redirect URIs Kim Alvefur 2023-03-11
mod_spam_report_forwarder: Forward spam/abuse reports to one or more JIDs Matthew Wild 2023-03-11
mod_http_oauth2: Require URL to client informational page in registration Kim Alvefur 2023-03-11
mod_http_oauth2: Reorder client metadata validation schema Kim Alvefur 2023-03-11
mod_firewall: Add 'REPORT TO' to report (XEP-0377) a stanza to a specified JID Matthew Wild 2023-03-11
mod_firewall: README: Clarify docs about some of the stanza processing actions Matthew Wild 2023-03-11
mod_firewall: Warn about invalid pubsubitemid list specification Matthew Wild 2023-03-11
mod_firewall: Fix parsing of pubsubitemid list specification Matthew Wild 2023-03-11
mod_http_oauth2: Fix to disable disabled response handlers correctly Kim Alvefur 2023-03-10
mod_http_oauth2: Log flows enabled and disabled Kim Alvefur 2023-03-10
mod_http_oauth2: Fix appending of query parts in error redirects Kim Alvefur 2023-03-10
mod_http_oauth2: Implement the OpenID userinfo endpoint Kim Alvefur 2023-03-09
mod_http_oauth2: Close site header tags Kim Alvefur 2023-03-09
mod_http_oauth2: Fix contrast of links on consent page Kim Alvefur 2023-03-07
mod_http_oauth2: token endpoint: handle missing credentials Matthew Wild 2023-03-07
mod_http_oauth2: Fail early when no authorization header present Matthew Wild 2023-03-07
mod_http_oauth2: Support HTTP Basic auth on token endpoint Matthew Wild 2023-03-07
mod_http_oauth2: Separate extracting credentials from requests and verifying Matthew Wild 2023-03-07
mod_http_oauth2: Reflect ALL attributes of the client registration Matthew Wild 2023-03-07
mod_rest: Point URLs to mod_http_oauth2 in demo mode Kim Alvefur 2023-03-07
mod_http_oauth2: Improve handling of redirect_uri matching and fallback Matthew Wild 2023-03-07
mod_http_oauth2: Correct field name for HTTP response status code Kim Alvefur 2023-03-07
mod_http_oauth2: Fix incorrect function name (thanks Zash/luacheck) Matthew Wild 2023-03-07
mod_cloud_notify: Add note about Lua version requirements to README Matthew Wild 2023-03-07
mod_cloud_notify: Log warning when used on Lua 5.1 Matthew Wild 2023-03-07
mod_http_oauth2: Remove authorization codes after use Kim Alvefur 2023-03-06
mod_http_oauth2: Fix authorization code logic Kim Alvefur 2023-03-06
mod_http_oauth2: Include html templates in package for plugin installer Kim Alvefur 2023-03-06
mod_conversejs: This one weird trick updates options on reload Kim Alvefur 2023-02-22
mod_http_oauth2: Switch to '303 See Other' redirects Matthew Wild 2023-03-06
mod_http_oauth2: Allow non-HTTPS on localhost URLs Matthew Wild 2023-03-06
mod_http_oauth2: Add authentication, consent and error pages Matthew Wild 2023-03-06
mod_http_oauth: Factor out issuer URL calculation to a helper function Matthew Wild 2023-03-06
mod_http_oauth2: Clarify comment referencing mod_http_errors (thanks MattJ) Kim Alvefur 2023-03-05
mod_http_oauth2: Specify host for which to retrieve list of roles Kim Alvefur 2023-03-04
mod_http_oauth2: Return list of active roles in discovery Kim Alvefur 2023-03-04
mod_http_oauth2: Return actually enabled response types in discovery Kim Alvefur 2023-03-04
mod_http_oauth2: Calculate client secret expiry in registration response Kim Alvefur 2023-03-04
mod_http_oauth2: Strip trailing '/' from issuer URL Matthew Wild 2023-03-04
mod_http_oauth2: Advertise endpoints that are enabled Kim Alvefur 2023-03-03
mod_http_oauth2: Separate client_secret verification key from JWT key Kim Alvefur 2023-03-03
mod_http_oauth2: Fix response type config Kim Alvefur 2023-03-03
mod_http_oauth2/README: Document config options Kim Alvefur 2023-03-03
mod_http_oauth2: Remove error message Kim Alvefur 2023-03-03
mod_http_oauth2: Mention name of client when giving out OOB authorization code Kim Alvefur 2023-03-03
mod_http_oauth2: Comment on mutation by other module Kim Alvefur 2023-03-03
mod_http_oauth2: Implement stateless dynamic client registration Kim Alvefur 2023-03-03
mod_http_oauth2: Add support for 'iss' authz response parameter (RFC 9207) Matthew Wild 2023-03-03
mod_http_oauth2: Derive scope from correct user details Kim Alvefur 2023-03-03
mod_http_oauth2: Fix to actually return OOB response Kim Alvefur 2023-03-03
mod_http_oauth2: Add OIDC discovery endpoint (thanks Zash) Matthew Wild 2023-03-03
mod_http_oauth2: Implement OOB special redirect URI in code flow Kim Alvefur 2023-03-02
mod_http_oauth2: Add settings for allowed grant and response types Kim Alvefur 2023-03-02
mod_http_oauth2: Implement the Implicit flow Kim Alvefur 2023-03-02
mod_http_oauth2: Fix treatment of 'redirect_uri' parameter in code flow Kim Alvefur 2023-03-02
mod_s2s_whitelist/README: Show inclusion in modules_enabled in example Kim Alvefur 2023-03-02
mod_s2s_blacklist/README: Show inclusion in modules_enabled in example Kim Alvefur 2023-03-02
mod_http_oauth2: Issue tokens for the purpose of 'oauth2' Kim Alvefur 2023-03-01
mod_http_oauth2: Fix removal of consumed authorization codes Kim Alvefur 2023-03-01