jitsi-meet.cfg.lua 3.2 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495
  1. admins = { "{{ .Env.JICOFO_AUTH_USER }}@{{ .Env.XMPP_AUTH_DOMAIN }}" }
  2. plugin_paths = { "/prosody-plugins/", "/prosody-plugins-custom" }
  3. http_default_host = "{{ .Env.XMPP_DOMAIN }}"
  4. {{ $ENABLE_AUTH := .Env.ENABLE_AUTH | default "0" | toBool }}
  5. {{ $AUTH_TYPE := .Env.AUTH_TYPE | default "internal" }}
  6. {{ $JWT_ASAP_KEYSERVER := .Env.JWT_ASAP_KEYSERVER | default "" }}
  7. {{ $JWT_ALL_EMPTY := .Env.JWT_ALLOW_EMPTY | default "0" | toBool }}
  8. {{ $JWT_AUTH_TYPE := .Env.JWT_AUTH_TYPE | default "token" }}
  9. {{ $JWT_TOKEN_AUTH_MODULE := .Env.JWT_TOKEN_AUTH_MODULE | default "token_verification" }}
  10. {{ if and $ENABLE_AUTH (eq $AUTH_TYPE "jwt") .Env.JWT_ACCEPTED_ISSUERS }}
  11. asap_accepted_issuers = { "{{ join "\",\"" (splitList "," .Env.JWT_ACCEPTED_ISSUERS) }}" }
  12. {{ end }}
  13. {{ if and $ENABLE_AUTH (eq $AUTH_TYPE "jwt") .Env.JWT_ACCEPTED_AUDIENCES }}
  14. asap_accepted_audiences = { "{{ join "\",\"" (splitList "," .Env.JWT_ACCEPTED_AUDIENCES) }}" }
  15. {{ end }}
  16. VirtualHost "{{ .Env.XMPP_DOMAIN }}"
  17. {{ if $ENABLE_AUTH }}
  18. {{ if eq $AUTH_TYPE "jwt" }}
  19. authentication = "{{ $JWT_AUTH_TYPE }}"
  20. app_id = "{{ .Env.JWT_APP_ID }}"
  21. app_secret = "{{ .Env.JWT_APP_SECRET }}"
  22. allow_empty_token = {{ if $JWT_ALL_EMPTY }}true{{ else }}false{{ end }}
  23. {{ if $JWT_ASAP_KEYSERVER }}
  24. asap_key_server = "{{ .Env.JWT_ASAP_KEYSERVER }}"
  25. {{ end }}
  26. {{ else if eq $AUTH_TYPE "ldap" }}
  27. authentication = "cyrus"
  28. cyrus_application_name = "xmpp"
  29. allow_unencrypted_plain_auth = true
  30. {{ else if eq $AUTH_TYPE "internal" }}
  31. authentication = "internal_plain"
  32. {{ end }}
  33. {{ else }}
  34. authentication = "anonymous"
  35. {{ end }}
  36. ssl = {
  37. key = "/config/certs/{{ .Env.XMPP_DOMAIN }}.key";
  38. certificate = "/config/certs/{{ .Env.XMPP_DOMAIN }}.crt";
  39. }
  40. modules_enabled = {
  41. "bosh";
  42. "pubsub";
  43. "ping";
  44. {{ if .Env.XMPP_MODULES }}
  45. "{{ join "\";\n\"" (splitList "," .Env.XMPP_MODULES) }}";
  46. {{ end }}
  47. {{ if and $ENABLE_AUTH (eq $AUTH_TYPE "ldap") }}
  48. "auth_cyrus";
  49. {{end}}
  50. }
  51. c2s_require_encryption = false
  52. {{ if and $ENABLE_AUTH (.Env.ENABLE_GUESTS | default "0" | toBool) }}
  53. VirtualHost "{{ .Env.XMPP_GUEST_DOMAIN }}"
  54. authentication = "anonymous"
  55. c2s_require_encryption = false
  56. {{ end }}
  57. VirtualHost "{{ .Env.XMPP_AUTH_DOMAIN }}"
  58. ssl = {
  59. key = "/config/certs/{{ .Env.XMPP_AUTH_DOMAIN }}.key";
  60. certificate = "/config/certs/{{ .Env.XMPP_AUTH_DOMAIN }}.crt";
  61. }
  62. authentication = "internal_plain"
  63. Component "{{ .Env.XMPP_INTERNAL_MUC_DOMAIN }}" "muc"
  64. modules_enabled = {
  65. "ping";
  66. {{ if .Env.XMPP_INTERNAL_MUC_MODULES }}
  67. "{{ join "\";\n\"" (splitList "," .Env.XMPP_INTERNAL_MUC_MODULES) }}";
  68. {{ end }}
  69. }
  70. storage = "memory"
  71. muc_room_cache_size = 1000
  72. Component "{{ .Env.XMPP_MUC_DOMAIN }}" "muc"
  73. storage = "memory"
  74. modules_enabled = {
  75. {{ if .Env.XMPP_MUC_MODULES }}
  76. "{{ join "\";\n\"" (splitList "," .Env.XMPP_MUC_MODULES) }}";
  77. {{ end }}
  78. {{ if .Env.JWT_ENABLE_TOKEN_AUTH | default "0" | toBool }}
  79. "{{ $JWT_TOKEN_AUTH_MODULE }}";
  80. {{ end }}
  81. }
  82. Component "focus.{{ .Env.XMPP_DOMAIN }}"
  83. component_secret = "{{ .Env.JICOFO_COMPONENT_SECRET }}"