Authentication flow using CreateEmailToken() / CreateSession(): empty AccessToken and RefreshToken
- 0
- Self Hosted
- Auth
Hey all,
I am using the .NET SDK for Appwrite v1.7.4 and are working on an authentication / login flow. The process:
- User logs in with mail
- Backend calls Appwrite.CreateEmailToken()
- If ok notify user 3b: servers sents mail, possibly creates user
- User waits for mail to get his secret (OTP, 6 characters)
- Users enters secret
- Backend checks secret with Appwrite.CreateSession() and gets a session
My problem is the general flow ... is off. The session does not provide me with an AccessToken or RefreshToken. Meaning they are empty. It does contain some kind of secret. The earlier generated token also contains a secret I believe.
How do I retrieve the access and refresh tokens? Is the process working differently? Who is handling the token refresh? How long is the token valid? Do I authenticate the user "again" (after he comes back) with the secrets? How do I do that? How long are they valid? ...
Recommended threads
- Added Custom Domain - API requests with ...
I've added in a custom domain to Appwrite my domain itself is on cloudflare but has Appwrite name servers added and confirmed they work, I added the CAA in clou...
- Custom Email Templates Not Updating for ...
I have 4 custom email templates on my self-hosted Appwrite instance: - email verification - reset password - security alert - 2FA verification. email verifica...
- Docker compose down command is deleting ...
I just followed the steps in the website...but docker compose down seems to delete whole data...it is like fresh installation. Please check if i am missing anyt...