When configuring OIDC authentication with the on-prem Dev Portal, it is common to see the following error occur in the dev tools console in the browser:
Access to XMLHttpRequest at 'https://mytrial.okta.com/oauth2/default/v1/authorize?code_...' (redirected from 'https://kong-dev-portal-api-address.com/api/default/session') from origin 'https://kong-dev-portal-ui.com' has been blocked by CORS policy: No 'Access-Control-Allow-Origin' header is present on the requested resource.Additionally, the browser can return with too many redirects, indicating that the portal API and the IdP /authorize endpoints are redirecting repeatedly to each other until the browser intervenes.