Log in at the identity provider
const url = 'https://example.com/auth/login';const options = {method: 'GET'};
try { const response = await fetch(url, options); const data = await response.json(); console.log(data);} catch (error) { console.error(error);}curl --request GET \ --url https://example.com/auth/loginRedirects the browser to the participant’s OpenID Connect provider (authorization code with PKCE), and sets a short-lived cookie that binds the login to this browser: /auth/callback only finishes a login the same browser started. With device, the login is for a bl login: afterwards the browser goes to the confirmation page /cli/confirm (see POST /api/v1/cli/consent), and gets no session.
Authorizations
Section titled “Authorizations”- None
Parameters
Section titled “Parameters”Query Parameters
Section titled “Query Parameters”Where the browser goes after the login: a path on this service.
Approve bl login with this user code.
Responses
Section titled “Responses”To the identity provider, or back to /login with an error.
No identity provider is linked.
The body of every failed call to a management API.
object
object
Stable, machine-readable: invalid_request, unauthenticated,
forbidden, not_found, conflict, upstream_unavailable,
unavailable, internal, or a more specific code of the operation.
For people; may change between versions.
Example
{ "error": { "code": "not_found", "message": "unknown negotiation" }}