auth
Callback endpoint, used for final redirect from the OpenID connect provider
kc means Keycloak, could be potentially extended with different providers
get/auth/callback/kc
Query parameters
codestring required
authorization_code from OpenID provider
statestring
redirect_uristring