login without redirect?

login without redirect?

door marcel montel -
Aantal antwoorden: 1

Hi.


I have added a auth plugin that fetches JWT from the request header and logs in the user, using the loginpage_hook. The problem is that i have Moodle in an iframe an upon login it redirects the user and so i get a 403. Is there a way to login a user without redirect?


Gemiddelde van de beoordelingen:  -
Als antwoord op marcel montel

Re: login without redirect?

door Matteo Scaramuccia -
Foto van Core developers Foto van Peer reviewers Foto van Plugin developers

Hi Marcel,
AFAIK Moodle uses HTTP 303 redirection by design: you could POST username and password to /login/index.php but I guess this conflicts with your token based architecture.

Why not using a cookie instead of a "plain" HTTP Header? It will live during the whole requests life cycle, including the redirection.

HTH,
Matteo

Gemiddelde van de beoordelingen:  -