Skip to content

SSO for BE and ResourceAPI #82

@jack-robs

Description

@jack-robs

Feature request

Stretch goal from Aaron S., SSO for BE and Resources API so we can create/update resources using logged in session rather than providing API key

Proposed solution

From Allen: if user is logged in an they have a valid JWT stored as cookie. This is already added to the auth header for any req's sent to backend.
From Aaron: could require some changes to resources API to do that
-> if requests also go to the Resources API, can just post key to /auth/token/verify

Potential alternative solutions

UK

Additional context

Next step planning after new website launch # @

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions