diff --git a/apps/web/src/connectors/duo-redirect.ts b/apps/web/src/connectors/duo-redirect.ts index 8455125861..ddbf75e53c 100644 --- a/apps/web/src/connectors/duo-redirect.ts +++ b/apps/web/src/connectors/duo-redirect.ts @@ -52,7 +52,11 @@ window.addEventListener("load", async () => { function redirectToDuoFrameless(redirectUrl: string) { const validateUrl = new URL(redirectUrl); - if (validateUrl.protocol !== "https:" || !validateUrl.hostname.endsWith("duosecurity.com")) { + if ( + validateUrl.protocol !== "https:" || + !validateUrl.hostname.endsWith("duosecurity.com") || + !validateUrl.hostname.endsWith("duofederal.com") + ) { throw new Error("Invalid redirect URL"); }