Skip to main content

Authorisation Endpoint

POST 

/v3/service/extension/oidc/:organisationId/auth

Starts the authorisation flow. Takes the same parameters as the GET request, in a form encoded body. Returns an HTML page where individuals can authenticate using their EUDI Wallet through QR code or deep link verification. After the individual presents the credentials, the page redirects the browser to redirect_uri with code and state. When the individual does not answer within 15 minutes, the page redirects with error=interaction_required. The endpoint accepts GET and POST.

Request​

Path Parameters

    organisationId stringrequired

    The ID of the organisation

Body

required
    scope stringrequired

    Possible values: [openid]

    Default value: openid

    The scope of the access request

    response_type stringrequired

    Possible values: [code]

    Default value: code

    The type of response desired

    client_id stringrequired

    The ID of the client

    redirect_uri stringrequired

    The URI to which the response will be sent. It must match one of the redirect URIs of the client exactly.

    state stringrequired

    An opaque value used to maintain state between the request and the callback

    nonce string

    A string value used to associate a client session with an ID token, and to mitigate replay attacks

Responses​

Returns a web page. The page shows the QR code and the link that opens the EUDI Wallet. When client_id is unknown, or when redirect_uri does not match a redirect URI of the client, the page shows the error and no redirect takes place.

Response Headers
  • X-Frame-Options any

    Blocks page from being rendered in HTML frame, iframe, embed, or object elements, regardless of the site attempting to do so.

Schema

    string

Loading...