fix(auth): restore BetterAuth OIDC flow across api/web/compose
This commit is contained in:
@@ -152,7 +152,7 @@ States:
|
||||
Add `OIDC_REDIRECT_URI` to `REQUIRED_OIDC_ENV_VARS`. Add URL format validation:
|
||||
|
||||
- Must be a valid URL
|
||||
- Path must start with `/auth/callback`
|
||||
- Path must start with `/auth/oauth2/callback`
|
||||
- Warn if using `localhost` in production
|
||||
|
||||
**Tests to add:** Missing var, invalid URL, invalid path, valid URL.
|
||||
@@ -716,9 +716,9 @@ Browser NestJS API Authentik
|
||||
├────────────────────────────────────────────────────►│
|
||||
│ │ User authenticates│
|
||||
│◄────────────────────────────────────────────────────┤
|
||||
│ 302 → /auth/callback/authentik?code=X │
|
||||
│ 302 → /auth/oauth2/callback/authentik?code=X │
|
||||
│ │ │
|
||||
│ 5. GET /auth/callback/authentik?code=X │
|
||||
│ 5. GET /auth/oauth2/callback/authentik?code=X │
|
||||
├───────────────────────────►│ │
|
||||
│ BetterAuth exchanges code │
|
||||
│ ├───────────────────────►│
|
||||
|
||||
Reference in New Issue
Block a user