Software /
code /
prosody
File
plugins/mod_authz_internal.lua @ 11383:98b7ae7064b2
mod_http: Consider x-forwarded-proto from trusted proxies
Should be better than setting consider_{bosh,websocket}_secure as that
may end up causing actually insecure requests to be considered secure.
Doing it here, as with IP, should make this apply to all HTTP modules.
author | Kim Alvefur <zash@zash.se> |
---|---|
date | Thu, 18 Feb 2021 10:00:56 +0100 |
parent | 10659:8f95308c3c45 |
child | 11472:c32753ceb0f0 |
line wrap: on
line source
local normalize = require "util.jid".prep; local admin_jids = module:get_option_inherited_set("admins", {}) / normalize; local host = module.host; local role_store = module:open_store("roles"); local admin_role = { ["prosody:admin"] = true }; function get_user_roles(user) if admin_jids:contains(user.."@"..host) then return admin_role; end return role_store:get(user); end function get_jid_roles(jid) if admin_jids:contains(jid) then return admin_role; end return nil; end