OAuth Configuration for Services

For Web Integrations

To protect against attackers attempting to manipulate the redirect URL for your service users, you must enter the domain in the Dashboard that the LaunchKey Platform will allow to be used for redirects. This ensures that your users will only be redirected to your Service when implementing OAuth.

For example:

If your redirect is to https://my.domain.com/secure, you must specify my.domain.com in the Dashboard. For more information on how to identify the domain within a URL, please see this article.

For Mobile/Desktop Integrations

Because mobile and desktop integrations will not redirect to web pages, you can enter whatever you like for the domain and URL as long as it complies with the domain name standard. Many developers use the name space of their code base for both, such as com.company.example. The value must be the same for both the Dashboard and SDK initialization.

Configuring the Redirect Domain

To configure the redirect domain, display your Service in the Dashboard and enter the domain of your Service in the Domain (OAuth) field in the General tab. If the form has not yet auto-saved, click the Save button.

