rp
01/03/2021, 2:47 PMuser
01/03/2021, 3:03 PMrp
01/03/2021, 3:03 PMrp
01/03/2021, 3:04 PMuser
01/03/2021, 3:04 PMrp
01/03/2021, 3:05 PMrp
01/03/2021, 3:10 PMuser
01/03/2021, 3:10 PMrp
01/03/2021, 3:10 PMrp
01/03/2021, 3:10 PMuser
01/03/2021, 3:12 PMrp
01/03/2021, 3:12 PMrp
01/03/2021, 3:12 PMuser
01/03/2021, 3:12 PMrp
01/03/2021, 3:12 PMuser
01/03/2021, 3:12 PMuser
01/03/2021, 3:13 PMrp
01/03/2021, 3:13 PMuser
01/03/2021, 3:16 PMrp
01/03/2021, 3:16 PMrp
01/03/2021, 3:17 PMuser
01/03/2021, 3:17 PMuser
01/03/2021, 7:31 PMrp
01/04/2021, 5:15 AMuser
01/06/2021, 10:46 AMrp
01/06/2021, 11:45 AMuser
01/06/2021, 11:48 AMAPI domain
refers to. The sites are all statically hosted on Netlify if that helps clarify. I.E. there is no back end. Netlify checks for a valid JWT token before serving the page or denying access/redirecting.
- They do have the same TLD.rp
01/06/2021, 11:51 AMuser
01/06/2021, 11:54 AMapp-metadata
section that defines a collection of roles.
{
"id": "some id",
"exp": 1602522810,
"app_metadata": {
"authorization": {
"roles": [
"admin",
"editor"
]
}
}
}
You can then tell Netlify how to redirect the user if they don't have a JWT or they don't have the valid role. More info in the docs here:
https://docs.netlify.com/visitor-access/role-based-access-control/rp
01/06/2021, 11:55 AM