Does Directus validate hd parameter in returned ID token for OAuth2 SSO? #2497
-
Just wondered whether someone could confirm that Directus does indeed validate the More detail: My users all have accounts within a particular Google Workspace. So, they're Google accounts, but with a single, specific domain name in the email address. I added SSO support to my Directus instance, following the instructions for Google OpenID. Added the suggested params from step 7, with values specific to my use case, but also added this extra one so that the AUTH_GOOGLE_PARAMS : {hd: 'mydomain.com'} And that all works great. Go to the app, there's now a Log In with Google button, and clicking it takes me directly to my company's login screen, and logging in bounces me right back to the Directus admin. Amazing 👏 The docs for the So, from all that, it appears the Directus is indeed validating the Thanks! |
Beta Was this translation helpful? Give feedback.
Replies: 1 comment
-
Bah, sorry. Posted in the wrong place, but I can't seem to delete this one. Reposted as discussion #11948 |
Beta Was this translation helpful? Give feedback.
Bah, sorry. Posted in the wrong place, but I can't seem to delete this one. Reposted as discussion #11948