Digipass S3 is now DigipassONE. This section is currently being updated to reflect our new name.

Step 5. Support web apps with a different origin

Prev Next

If your web app that initiates the OOB authentication has a different origin than the Digipass S3 API Server, then you need to add the origin of your web app to a list of trusted origins. A web origin is defined by the scheme (protocol), host (domain), and port of the URL used to access it. Two objects have the same origin only when the scheme, host, and port all match.

The trusted origins list is contained in the field origin_allowlist which you can modify using the Admin Console.

  1. In the Admin Console, login and, if needed, switch to the desired tenant. Navigate to Configuration > API Server > Main.

  2. Click Add an origin. A textbox appears under the last list item. Enter your client web app's URL.