I am getting a session token via an ajax call. This in turn calls the API method https://api.us.onelogin.com/api/1/login/auth
$.post("onelogin.ashx?action=sessiontoken", data, function (s) {
$("#session_token").val(s);
$("#frmSubmit").submit();
});
<form action="https://admin.us.onelogin.com/session_via_api_token" method="POST" id="frmSubmit">
<input type="hidden" id="session_token" name="session_token" value="">
<input type="submit" placeholder="GO">
<input id="auth_token" type="hidden">
</form>
In IE and Firefox the user is now logged in. session_via_api_token returns response header "Location" with my original page URL.
In Chrome the user is not logged in and the response header "Location" is https://app.onelogin.com/login
I have a feeling it is a problem with cookies but can't figure out what. Any ideas?