mirror of
https://github.com/Sea-Haven-Industries/seahaven-ap.git
synced 2026-10-01 06:13:18 +00:00
Replace Bearer as the documented session path with Cognito hosted UI plus __Host-ap_* cookies so the SPA can call /api with credentials include.
43 lines
1.1 KiB
YAML
43 lines
1.1 KiB
YAML
get:
|
|
tags:
|
|
- Session
|
|
summary: Complete hosted UI sign-in
|
|
description: Exchanges the authorization code, sets HttpOnly session cookies, and redirects to returnTo.
|
|
operationId: get-api-auth-callback
|
|
security: []
|
|
parameters:
|
|
- name: code
|
|
in: query
|
|
required: false
|
|
description: Authorization code from Cognito.
|
|
schema:
|
|
type: string
|
|
example: abcdef
|
|
- name: state
|
|
in: query
|
|
required: false
|
|
description: PKCE state echoed from login.
|
|
schema:
|
|
type: string
|
|
example: state-token
|
|
- name: error
|
|
in: query
|
|
required: false
|
|
description: Cognito error code when sign-in failed.
|
|
schema:
|
|
type: string
|
|
example: access_denied
|
|
responses:
|
|
"302":
|
|
description: Redirect to the SPA or the login error page.
|
|
"400":
|
|
description: Bad request.
|
|
content:
|
|
application/json:
|
|
schema:
|
|
$ref: ../components/schemas.yaml#/Error
|
|
example:
|
|
error:
|
|
code: VALIDATION_ERROR
|
|
message: Bad request.
|
|
correlationId: 11111111-1111-4111-8111-111111111111
|