1 files changed, 0 insertions, 75 deletions
diff --git a/synapse/config/auth.py b/synapse/config/auth.py
index 265a554a5d..35774962c0 100644
--- a/synapse/config/auth.py
+++ b/synapse/config/auth.py
@@ -53,78 +53,3 @@ class AuthConfig(Config):
self.ui_auth_session_timeout = self.parse_duration(
ui_auth.get("session_timeout", 0)
)
-
- def generate_config_section(self, **kwargs: Any) -> str:
- return """\
- password_config:
- # Uncomment to disable password login.
- # Set to `only_for_reauth` to permit reauthentication for users that
- # have passwords and are already logged in.
- #
- #enabled: false
-
- # Uncomment to disable authentication against the local password
- # database. This is ignored if `enabled` is false, and is only useful
- # if you have other password_providers.
- #
- #localdb_enabled: false
-
- # Uncomment and change to a secret random string for extra security.
- # DO NOT CHANGE THIS AFTER INITIAL SETUP!
- #
- #pepper: "EVEN_MORE_SECRET"
-
- # Define and enforce a password policy. Each parameter is optional.
- # This is an implementation of MSC2000.
- #
- policy:
- # Whether to enforce the password policy.
- # Defaults to 'false'.
- #
- #enabled: true
-
- # Minimum accepted length for a password.
- # Defaults to 0.
- #
- #minimum_length: 15
-
- # Whether a password must contain at least one digit.
- # Defaults to 'false'.
- #
- #require_digit: true
-
- # Whether a password must contain at least one symbol.
- # A symbol is any character that's not a number or a letter.
- # Defaults to 'false'.
- #
- #require_symbol: true
-
- # Whether a password must contain at least one lowercase letter.
- # Defaults to 'false'.
- #
- #require_lowercase: true
-
- # Whether a password must contain at least one uppercase letter.
- # Defaults to 'false'.
- #
- #require_uppercase: true
-
- ui_auth:
- # The amount of time to allow a user-interactive authentication session
- # to be active.
- #
- # This defaults to 0, meaning the user is queried for their credentials
- # before every action, but this can be overridden to allow a single
- # validation to be re-used. This weakens the protections afforded by
- # the user-interactive authentication process, by allowing for multiple
- # (and potentially different) operations to use the same validation session.
- #
- # This is ignored for potentially "dangerous" operations (including
- # deactivating an account, modifying an account password, and
- # adding a 3PID).
- #
- # Uncomment below to allow for credential validation to last for 15
- # seconds.
- #
- #session_timeout: "15s"
- """
|