From aa6f6587a6e00e7bc9fe39d8e6a1173588d87373 Mon Sep 17 00:00:00 2001 From: arcnmx Date: Thu, 1 Aug 2024 10:01:39 -0700 Subject: [PATCH] chore(nginx): disable OIDC webfinger whitelist --- nixos/access/gensokyo.nix | 7 ++++--- 1 file changed, 4 insertions(+), 3 deletions(-) diff --git a/nixos/access/gensokyo.nix b/nixos/access/gensokyo.nix index 7d7f3213..eb5362e0 100644 --- a/nixos/access/gensokyo.nix +++ b/nixos/access/gensokyo.nix @@ -44,9 +44,10 @@ in { set ${acct} $2; add_header "Content-Type" "application/jrd+json"; } - if ($arg_rel !~* "http.*openid\.net") { - set ${acct} ""; - } + # whitelist responses for OIDC only + #if ($arg_rel !~* "http.*openid\.net") { + # set ${acct} ""; + #} if (${acct} = "") { return 404; }