mirror of
https://github.com/fosrl/pangolin.git
synced 2026-08-13 16:00:02 +02:00
show sso page in browser for gateway resource
This commit is contained in:
@@ -329,16 +329,10 @@ export async function verifyResourceSession(
|
||||
// Only offer a browser redirect to clients that can actually follow one and log in
|
||||
// (an interactive browser). Non-browser clients (curl, scripts, bots, etc.) just get
|
||||
// an unauthorized response from Badger instead of a login redirect URL.
|
||||
// Inference browsers go to the dashboard keys page (not back to the inference host)
|
||||
// so a valid session cannot create a redirect loop.
|
||||
const redirectPath = clientIsBrowser
|
||||
? mode === "inference"
|
||||
? `/${resource.orgId}/resource/${encodeURIComponent(
|
||||
resource.resourceGuid
|
||||
)}/keys`
|
||||
: `/auth/resource/${encodeURIComponent(
|
||||
resource.resourceGuid
|
||||
)}?redirect=${encodeURIComponent(originalRequestURL)}`
|
||||
? `/auth/resource/${encodeURIComponent(
|
||||
resource.resourceGuid
|
||||
)}?redirect=${encodeURIComponent(originalRequestURL)}`
|
||||
: undefined;
|
||||
|
||||
// Virtual API keys for public inference resources (provider-style auth headers).
|
||||
@@ -414,7 +408,7 @@ export async function verifyResourceSession(
|
||||
parsedBody.data
|
||||
);
|
||||
|
||||
return notAllowed(res, redirectPath);
|
||||
return notAllowed(res, redirectPath, resource.orgId);
|
||||
}
|
||||
|
||||
// check for access token in headers
|
||||
|
||||
Reference in New Issue
Block a user