Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Resolves #574
Impact: minor
Type: feature
Changes
Breaking changes
These changes are tied to changes in Reaction Identity. As long as both services are updated as well as any environment variables, nothing should break.
This requires additional scope and options for the Hydra client, but I've included server startup code that will auto-update the Hydra client as necessary.
Testing
Test with the following PR branches:
Reset Password
Prerequisite: Configure emailing on the API so that you'll get the password reset email.
Change Password
Logout
If you've tested the other changes, you've been testing logout. The flow is different behind the scenes (standard OpenID Connect Logout Flow, more secure), but the effect is the same.
Error Page
There is a custom OAuth error page now, but unless you modify the code or adjust some env variables you will hopefully not see it. If you are interested in doing this, let me know.