Skip to content

feat(authguest): renew and pin - #78

Merged
fschade merged 2 commits into
opencloud-eu:mainfrom
maki5:feat/authguest_renewal
Oct 8, 2026
Merged

fschade merged 2 commits into
opencloud-eu:mainfrom
maki5:feat/authguest_renewal

Conversation

@maki5

@maki5 maki5 commented Oct 6, 2026

Copy link
Copy Markdown
Contributor
  • renew and pin endpoints
  • alias for redeem endpoint

needed for #opencloud-eu/opencloud#3667

Comment thread api/openapi-spec/v1.0.yaml Outdated
post:
tags:
- guestLinks
summary: "Alias for '/v1beta1/extensions/org.libregraph/guestLinks/redeem'"

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

That's actually a good point. /verify/token is exactly the same as /redeem request and response wise, so I don't think there's a good reason to keep them both, is there?

Unless I'm missing something I think it would be good to drop /redeem in favor of the verify one to simplify things. That would need changes in oc of course, maybe we could add that to opencloud-eu/opencloud#3667 while you're at it?

Copy link
Copy Markdown
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I already added it to opencloud-eu/opencloud#3667, the reason why I added this alias was just that in different tickets it was named diferentlly, in some it was /redeem in some /verify/token

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Ah, yes. My point was to drop /redeem and just use /verify/token both for the initial and subsequent operations. That would simplify the API and I don't really see a downside, or am I missing something?

Copy link
Copy Markdown
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

agree, the only thing is if frontend team already started using /redeem endpoint they will need to change to /verify/token, but I believe this is not a big deal

Comment thread api/openapi-spec/v1.0.yaml
Comment thread api/openapi-spec/v1.0.yaml Outdated
renew guest link:
value:
permissionId: d14f9f65-2e9b-4fd6-bf6b-6748f229f2a2
responses:

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

401 is now another error response that can be returned when the credentials are wrong or missing, no?

- shareExpired
- pinInvalid
- pinExpired
- serviceUnavailable

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Hm, aren't we also missing the session_expired error here?

Copy link
Copy Markdown
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

we have sessionInvalid, would you like me to rename it to sessionExpired?

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

👍 ah, yes. I guess that works.

Comment thread api/openapi-spec/v1.0.yaml Outdated
post:
tags:
- guestLinks
summary: "Alias for '/v1beta1/extensions/org.libregraph/guestLinks/redeem'"

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Ah, yes. My point was to drop /redeem and just use /verify/token both for the initial and subsequent operations. That would simplify the API and I don't really see a downside, or am I missing something?

@fschade
fschade merged commit 9e7c682 into opencloud-eu:main Oct 8, 2026
4 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants