fief-dev / fief

Users and authentication management SaaS
https://www.fief.dev
Other
488 stars 42 forks source link

Add a setting to allow non-SSL HTTP URL as Redirect URL #235

Closed frankie567 closed 9 months ago

frankie567 commented 12 months ago

Following discussion #230, I think it could be a good idea to have a setting to disable the HTTPS requirement for Client Redirect URL.

In some contexts, like private deployments, it may be useful to disable it. Of course, this would need a proper warning in the related documentation.

Plan:

augusto-herrmann commented 10 months ago

I support this idea.

Having such an option is actually indispensable if