jitsi-meet.cfg.lua 3.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103
  1. admins = { "{{ .Env.JICOFO_AUTH_USER }}@{{ .Env.XMPP_AUTH_DOMAIN }}" }
  2. plugin_paths = { "/prosody-plugins/", "/prosody-plugins-custom" }
  3. http_default_host = "{{ .Env.XMPP_DOMAIN }}"
  4. {{ $ENABLE_AUTH := .Env.ENABLE_AUTH | default "0" | toBool }}
  5. {{ $AUTH_TYPE := .Env.AUTH_TYPE | default "internal" }}
  6. {{ $JWT_ASAP_KEYSERVER := .Env.JWT_ASAP_KEYSERVER | default "" }}
  7. {{ $JWT_ALLOW_EMPTY := .Env.JWT_ALLOW_EMPTY | default "0" | toBool }}
  8. {{ $JWT_AUTH_TYPE := .Env.JWT_AUTH_TYPE | default "token" }}
  9. {{ $JWT_TOKEN_AUTH_MODULE := .Env.JWT_TOKEN_AUTH_MODULE | default "token_verification" }}
  10. {{ if and $ENABLE_AUTH (eq $AUTH_TYPE "jwt") .Env.JWT_ACCEPTED_ISSUERS }}
  11. asap_accepted_issuers = { "{{ join "\",\"" (splitList "," .Env.JWT_ACCEPTED_ISSUERS) }}" }
  12. {{ end }}
  13. {{ if and $ENABLE_AUTH (eq $AUTH_TYPE "jwt") .Env.JWT_ACCEPTED_AUDIENCES }}
  14. asap_accepted_audiences = { "{{ join "\",\"" (splitList "," .Env.JWT_ACCEPTED_AUDIENCES) }}" }
  15. {{ end }}
  16. VirtualHost "{{ .Env.XMPP_DOMAIN }}"
  17. {{ if $ENABLE_AUTH }}
  18. {{ if eq $AUTH_TYPE "jwt" }}
  19. authentication = "{{ $JWT_AUTH_TYPE }}"
  20. app_id = "{{ .Env.JWT_APP_ID }}"
  21. app_secret = "{{ .Env.JWT_APP_SECRET }}"
  22. allow_empty_token = {{ if $JWT_ALLOW_EMPTY }}true{{ else }}false{{ end }}
  23. {{ if $JWT_ASAP_KEYSERVER }}
  24. asap_key_server = "{{ .Env.JWT_ASAP_KEYSERVER }}"
  25. {{ end }}
  26. {{ else if eq $AUTH_TYPE "ldap" }}
  27. authentication = "cyrus"
  28. cyrus_application_name = "xmpp"
  29. allow_unencrypted_plain_auth = true
  30. {{ else if eq $AUTH_TYPE "internal" }}
  31. authentication = "internal_plain"
  32. {{ end }}
  33. {{ else }}
  34. authentication = "anonymous"
  35. {{ end }}
  36. ssl = {
  37. key = "/config/certs/{{ .Env.XMPP_DOMAIN }}.key";
  38. certificate = "/config/certs/{{ .Env.XMPP_DOMAIN }}.crt";
  39. }
  40. modules_enabled = {
  41. "bosh";
  42. "pubsub";
  43. "ping";
  44. {{ if .Env.XMPP_MODULES }}
  45. "{{ join "\";\n\"" (splitList "," .Env.XMPP_MODULES) }}";
  46. {{ end }}
  47. {{ if and $ENABLE_AUTH (eq $AUTH_TYPE "ldap") }}
  48. "auth_cyrus";
  49. {{end}}
  50. }
  51. c2s_require_encryption = false
  52. {{ if and $ENABLE_AUTH (.Env.ENABLE_GUESTS | default "0" | toBool) }}
  53. VirtualHost "{{ .Env.XMPP_GUEST_DOMAIN }}"
  54. authentication = "anonymous"
  55. c2s_require_encryption = false
  56. {{ end }}
  57. VirtualHost "{{ .Env.XMPP_AUTH_DOMAIN }}"
  58. ssl = {
  59. key = "/config/certs/{{ .Env.XMPP_AUTH_DOMAIN }}.key";
  60. certificate = "/config/certs/{{ .Env.XMPP_AUTH_DOMAIN }}.crt";
  61. }
  62. authentication = "internal_plain"
  63. {{ if .Env.XMPP_RECORDER_DOMAIN }}
  64. VirtualHost "{{ .Env.XMPP_RECORDER_DOMAIN }}"
  65. modules_enabled = {
  66. "ping";
  67. }
  68. authentication = "internal_plain"
  69. {{ end }}
  70. Component "{{ .Env.XMPP_INTERNAL_MUC_DOMAIN }}" "muc"
  71. modules_enabled = {
  72. "ping";
  73. {{ if .Env.XMPP_INTERNAL_MUC_MODULES }}
  74. "{{ join "\";\n\"" (splitList "," .Env.XMPP_INTERNAL_MUC_MODULES) }}";
  75. {{ end }}
  76. }
  77. storage = "memory"
  78. muc_room_cache_size = 1000
  79. Component "{{ .Env.XMPP_MUC_DOMAIN }}" "muc"
  80. storage = "memory"
  81. modules_enabled = {
  82. {{ if .Env.XMPP_MUC_MODULES }}
  83. "{{ join "\";\n\"" (splitList "," .Env.XMPP_MUC_MODULES) }}";
  84. {{ end }}
  85. {{ if eq $AUTH_TYPE "jwt" }}
  86. "{{ $JWT_TOKEN_AUTH_MODULE }}";
  87. {{ end }}
  88. }
  89. Component "focus.{{ .Env.XMPP_DOMAIN }}"
  90. component_secret = "{{ .Env.JICOFO_COMPONENT_SECRET }}"