summaryrefslogtreecommitdiff
path: root/test
diff options
context:
space:
mode:
authorMark Felder <feld@feld.me>2024-08-04 14:58:16 -0400
committerMark Felder <feld@feld.me>2024-08-04 15:04:29 -0400
commit8c91fd8785c25e694d9341b17b5182041c575166 (patch)
treee820d6005ca5e32428d94e34fdd41bbb10128997 /test
parent3e4768efca88124b3ae418d41da923c428598275 (diff)
downloadpleroma-8c91fd8785c25e694d9341b17b5182041c575166.tar.gz
pleroma-8c91fd8785c25e694d9341b17b5182041c575166.zip
Fix Mastodon WebSocket authentication
Mastodon uses the Sec-Websocket-Protocol header to send the auth token. It is not clear if this is a violation of the RFC, but Mastodon is not the first application in the wild to use this header for authentication purposes. Phoenix does not allow accessing this header, so we work around it temporarily with a minor patch to Phoenix 1.7.14. We will reach out to Phoenix to discuss how to make this use case possible.
Diffstat (limited to 'test')
0 files changed, 0 insertions, 0 deletions