Auth fetch verification (cavage) works now
All checks were successful
/ docker (push) Successful in 4m14s

- Verifying inbound requests signed with Cavage are now checked as
  expected
- Fixed a bug where the signature header is not generated correctly
- Extended config to include settings for what requests to verify
- Fixed new server in main not using internal port from config
This commit is contained in:
Melody Becker 2025-04-22 15:27:24 +02:00
parent 271acc8d29
commit 627926460c
Signed by: mstar
SSH key fingerprint: SHA256:9VAo09aaVNTWKzPW7Hq2LW+ox9OdwmTSHRoD4mlz1yI
8 changed files with 90 additions and 36 deletions

View file

@ -11,6 +11,8 @@
first_time_setup_otp = "Example otp password"
profiling_password = ""
allow_registration = true
auth_fetch_for_get = false
auth_fetch_for_non_get = true
[webauthn]
display_name = "Linstrom"
@ -47,3 +49,4 @@
[experimental]
use_ed25519_keys = false
auth_fetch_for_server_actor = false