Skip to content
NebulaCtrldocs
HTTP APIEndpoints

Auth

Sign in through the identity provider, and read or end your sessions. Each operation lists its method and path, parameters, request body, responses and an example call.

Finish an OIDC sign-in.

GET/api/v1/auth/callback

Query Parameters

code?string
state?string

Header Parameters

User-Agent?string
nebula_oidc?string

Response Body

application/problem+json

curl -X GET "https://example.com/api/v1/auth/callback"
Empty
GET/api/v1/auth/config

Response Body

application/json

application/problem+json

curl -X GET "https://example.com/api/v1/auth/config"
{  "$schema": "https://example.com/AuthConfigOutputBody.json",  "issuer": "string",  "providerName": "string",  "version": "string"}
GET/api/v1/auth/session

Authorization

AuthorizationBearer <token>

An API token, sent as Authorization: Bearer <token>. A token belongs to one organization and has the role it was created with, so it needs no X-Nebula-Organization header; if you send one, it must name the token's organization.

In: header

nebula_session?string

Response Body

application/json

application/problem+json

curl -X GET "https://example.com/api/v1/auth/session"
{  "$schema": "https://example.com/SessionOutputBody.json",  "organizations": [    {      "id": "string",      "name": "string",      "role": "string",      "slug": "string"    }  ],  "sessions": [    {      "createdAt": "2019-08-24T14:15:22Z",      "current": true,      "id": "string",      "ip": "string",      "userAgent": "string"    }  ],  "user": {    "email": "string",    "id": "string",    "name": "string",    "picture": "string"  }}
DELETE/api/v1/auth/sessions/{id}

Authorization

AuthorizationBearer <token>

An API token, sent as Authorization: Bearer <token>. A token belongs to one organization and has the role it was created with, so it needs no X-Nebula-Organization header; if you send one, it must name the token's organization.

In: header

Path Parameters

id*string

Response Body

application/problem+json

curl -X DELETE "https://example.com/api/v1/auth/sessions/string"
Empty

End the current session.

POST/api/v1/auth/sign-out

Authorization

AuthorizationBearer <token>

An API token, sent as Authorization: Bearer <token>. A token belongs to one organization and has the role it was created with, so it needs no X-Nebula-Organization header; if you send one, it must name the token's organization.

In: header

nebula_session?string

Response Body

application/json

application/problem+json

curl -X POST "https://example.com/api/v1/auth/sign-out"
{  "$schema": "https://example.com/SignOutOutputBody.json",  "endSessionUrl": "string"}

Start an OIDC sign-in.

GET/api/v1/auth/start

Query Parameters

return_to?string

Response Body

application/problem+json

curl -X GET "https://example.com/api/v1/auth/start"
Empty