Skip to content

授权端点(account.sso.authorize) ​

用于把用户拉起到 VDS 账户授权页,授权成功后回跳并带回 code。

本端点为标准 OAuth 授权端点:无需任何开放平台签名,可直接配置为标准 OAuth 框架(Passport、Spring Security、NextAuth 等)的 authorization_endpoint。

请求地址 ​

标准形式(推荐,无需签名,浏览器直接跳转):

  • GET /api/proxy/account/sso/authorize
  • 不携带开放平台凭证访问时,服务端会 302 重定向到 VDS 账户授权页,Query 参数原样保留

也可以让前端直跳上游地址(效果等价):

  • GET https://account.vds.pub/authorize

兼容说明:携带开放平台签名(Authorization: Bearer <开放平台签名> 或 X-Api-Key)的旧请求仍按原有代理方式处理,需要 account.sso.authorize 权限节点。

Query 参数(逐项填写) ​

  • client_id:应用 ID(vap_xxxx)
  • redirect_uri:回调地址(必须在应用重定向 URL 列表中)
  • response_type:固定 code(当前仅支持该值)
  • scope:openid 或 profile(推荐 profile)
  • state:可选,建议生成随机串

组装授权链接 ​

可按下面顺序组装:

  1. 固定地址:https://open-global.vdsentnet.com/api/proxy/account/sso/authorize(或 https://account.vds.pub/authorize)
  2. 拼接 client_id=<你的 vap_xxxx>
  3. 拼接 redirect_uri=<URL 编码后的回调地址>
  4. 拼接 response_type=code(固定)
  5. 拼接 scope=openid 或 scope=profile
  6. 可选拼接 state=<随机串>

示例:

text
https://open-global.vdsentnet.com/api/proxy/account/sso/authorize?client_id=vap_inzba7z2qbhgsk2y&redirect_uri=https%3A%2F%2Fdsv.pub&response_type=code&scope=openid&state=cS2SxD0tcxj4nxNbFlp95dZBIWDKrbMV

成功返回 ​

浏览器回跳到:

text
<redirect_uri>?code=AUTH_CODE&state=YOUR_STATE

失败返回 ​

浏览器回跳到:

text
<redirect_uri>?error=invalid_request&error_description=...&state=YOUR_STATE

镜像自 developer.vds.pub/docs