Create User Action Signature
POST /auth/action
Completes the user action signing process and provides a signing token that can be used to verify the user intended to perform the action.
The type of credentials used to sign the action is determined by the kind
field in the nested objects (firstFactor
and secondFactor
). Supported credential kinds are:
Fido2
: User action is signed by a user's signing device usingWebAuthn
.Key
: User action is signed by a user's, or token's, private key.PasswordProtectedKey
: Login challenge is signed by the decrypted user's private key that was sent during Create User Action Signature Challenge step.
Request headers required. See Request Headers for more information.
Authentication required. See Authentication Headers for more information.
Required Permissions
The permissions apply to the application only.
Request body
Fido2 Credential
Example:
Key Credential and Password Protected Key Credential
Example:
Responses
See Common Errors for common errors.
See User Action Signing Errors for user action signing specific errors.
Success - a token that will be passed in the X-DFNS-USERACTION header
Last updated