I am using rocket chat cloud offering and trying to set up AWS Cognito OAuth integration with in iframe.
After adding custom oauth in rocket chat dashboard, the custom oauth works in standalone application. However, in the browser, it seems like Cognito has set x-frame-options to deny due to which I am not able to make the aws cognito oauth work in iframe.
The settings added in Custom OAuth option:
- Token Path:
- Token Sent Via: Header
- Identity Token Sent Via:
- Identity Path:
- Authorize Path:
- Param Name for access token:
- secret: secret_key
- Login style: Redirect
Refused to display "cognito_login_url" in a frame because it set 'X-Frame-Options' to 'deny'.