A AuthMS API Wiki API Reference iam.tianv.com →

POST /internal/mfa/totp/validate

内部验证用户TOTP码,无需JWT认证,供其他服务(identity-service)在登录时调用。需要InternalAPIKey认证。参考:RFC 6238 (TOTP)、OWASP ASVS V2.8.3。

MFA None application/json

Request Body

Schema: dto.InternalTOTPValidateRequest

FieldTypeRequiredExampleConstraintsDescription
code string Yes
user_id string Yes
tenant_id string No

Responses

StatusDescriptionSchema
200验证结果dto.ValidDetailResponse
400参数错误gitee_com_linmes_authms_base_dto.SimpleResponse
401缺少内部API认证gitee_com_linmes_authms_base_dto.SimpleResponse
500服务器内部错误gitee_com_linmes_authms_base_dto.SimpleResponse

Referenced Schemas

dto.ValidDetailResponse

FieldTypeRequiredExampleConstraintsDescription
code integer No
data dto.ValidResponse No
message string No
timestamp string No

dto.ValidResponse

FieldTypeRequiredExampleConstraintsDescription
valid boolean No True

gitee_com_linmes_authms_base_dto.SimpleResponse

FieldTypeRequiredExampleConstraintsDescription
code integer No
message string No
timestamp string No