Skip to content

feat!: adopt laravel-okta v2 configurable route paths - #1

Merged
mikaelpopowicz merged 1 commit into
mainfrom
feat/configurable-okta-paths
Sep 25, 2026
Merged

mikaelpopowicz merged 1 commit into
mainfrom
feat/configurable-okta-paths

Conversation

@mikaelpopowicz

Copy link
Copy Markdown
Collaborator

What

Adopts bbs-lab/laravel-okta v2.0: bumps the constraint to ^2.0 and picks up the new default Okta route paths.

Purpose Before After (default)
Login {nova-path}/okta/login {nova-path}/authorization-code/redirect
Callback (redirect URI) {nova-path}/okta/callback {nova-path}/authorization-code/callback
Logout {nova-path}/okta/logout {nova-path}/authorization-code/logout
Post-logout landing {nova-path}/okta/callback/logout {nova-path}/authorization-code/callback/logout

Configurable per app via the base okta.paths.* config (par config pour Nova) — NovaOktaPanel extends ConfigOktaPanel, so it inherits path() for free, no new code.

Unchanged

Route names (nova-okta.login/.callback/.logout/.callback.logout), the login override, the branded login screen and the two-factor.login bridge (okta/two-factor-challenge) — all untouched.

⚠️ Breaking

Update the Sign-in and Sign-out redirect URIs in the Okta admin console to the new authorization-code/* paths, or logins fail with a redirect_uri mismatch (400). An explicit services.{driver}.redirect still wins.

Released as v2.0.0.

Tests

Pest 51 tests / 141 assertions · PHPStan level 8 · Pint · 100% coverage · 100% MSI (mutation).

…code/*)

Bumps bbs-lab/laravel-okta to ^2.0, whose default Okta paths change from
okta/* to authorization-code/*:
- login    -> {nova-path}/authorization-code/redirect
- callback -> {nova-path}/authorization-code/callback
- logout   -> {nova-path}/authorization-code/logout
- logout   -> {nova-path}/authorization-code/callback/logout

NovaOktaPanel extends ConfigOktaPanel, so the paths are configurable per app
via the base okta.paths.* config (par config pour Nova) and inherited for free.
Route names, the login override and the two-factor.login bridge are unchanged.
Updates tests, README and CHANGELOG.

BREAKING CHANGE: update the Sign-in and Sign-out redirect URIs in the Okta
admin console to the new authorization-code/* paths, or logins fail with a
redirect_uri mismatch. An explicit services.{driver}.redirect still wins.
Copilot AI lite review requested due to automatic review settings September 25, 2026 15:41

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot was unable to review this pull request because the user who requested the review has reached their quota limit.

@mikaelpopowicz
mikaelpopowicz merged commit 7b2e2b1 into main Sep 25, 2026
7 checks passed
@mikaelpopowicz
mikaelpopowicz deleted the feat/configurable-okta-paths branch September 25, 2026 15:51
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants