OptionalacrAuthentication Context Class Reference values. If omitted, the default account flow is used.
Supported values include password, otp, sms, otp-email, eid, eid-no, eid-se,
eid-fi, and eid-dk. Values other than otp-email may be combined as a space-separated
string. Verify the AMR (Authentication Methods References) claim in the ID token on your
backend if you need to enforce a completed authentication method.
OptionallocaleOptional parameter to overwrite client locale setting. New flows supports nb_NO, fi_FI, sv_SE, en_US
Optionalloginuser email or UUID hint
OptionalmaxSpecifies the allowable elapsed time in seconds since the last time the End-User was actively authenticated. If last authentication time is more than maxAge seconds in the past, re-authentication will be required. See the OpenID Connect spec section 3.1.2.1 for more information. Prefer a number of seconds; strings remain accepted for legacy callers.
Optionalonedisplay username and password on one screen. Defaults to false.
OptionaloriginCampaign identifier for tracking in Pulse
OptionalpreferShould we try to open a popup window? Defaults to false.
OptionalpromptString that specifies whether the Authorization Server prompts the End-User for
reauthentication or confirm account screen. Supported values: select_account or login.
Defaults to select_account.
OptionalredirectRedirect uri that will receive the code. Must exactly match a redirectUri from your client in self-service
OptionalscopeThe OAuth scopes for the tokens. This is a list of scopes, separated by space. If the list
of scopes contains openid, the generated tokens includes the id token which can be useful
for getting information about the user. Omitting scope is allowed, while invalid_scope is
returned when the client asks for a scope you aren't allowed to request.
https://tools.ietf.org/html/rfc6749#section-3.3
Defaults to openid.
An opaque value used by the client to maintain state between the request and callback. It's also recommended to prevent CSRF https://tools.ietf.org/html/rfc6749#section-10.12
OptionaltagPulse tag
OptionalteaserTeaser slug. Teaser with given slug will be displayed in place of default teaser
OptionalxIdentifier for cross-domain tracking in Pulse
OptionalxEnvironment for cross-domain tracking in Pulse
Options accepted by Account#login and related login URL helpers.