I am building two React Apps and both of them used Okta Login Widget, two app domains will be different. User will use the Okta login widget to authenticate in “App A”. After the user successfully authenticated, how could I help the user automatically sso to the “App B” ?
If you call getWithoutPrompt or getWithRedirect from the second application (using the underlying OktaAuth client), you can request tokens for that application based on the Okta session having been created when the user logged into the first (and vice versa). That way the user does not need to authenticate again to access the second application.
Note that ymmv based on the browser you are using and its settings regarding getWithoutPrompt, as it is reliant on being to access third party cookies (in this case, the Okta session cookie “sid”)