fix: remove 'roles' from default scope to prevent 403 error

- Remove 'roles' from default oauthConfig scope
- Roles scope is not registered in OpenIddict
- This was causing 403 Forbidden when requesting access token
This commit is contained in:
Sam 2026-02-06 15:50:16 +08:00
parent 8bd64b8ea3
commit b0f656da63

View File

@ -2,7 +2,7 @@ export const oauthConfig = {
clientId: import.meta.env.VITE_OAUTH_CLIENT_ID || 'fengling-console',
redirectUri: import.meta.env.VITE_OAUTH_REDIRECT_URI || `${window.location.origin}/auth/callback`,
authUrl: import.meta.env.VITE_AUTH_SERVICE_URL || 'http://localhost:5000',
scope: import.meta.env.VITE_OAUTH_SCOPE || 'api offline_access openid profile email roles',
scope: import.meta.env.VITE_OAUTH_SCOPE || 'api offline_access openid profile email',
endpoints: {
authorize: '/connect/authorize',