Class: Aws::VerifiedPermissions::Types::OpenIdConnectAccessTokenConfigurationItem

Inherits:
Struct
  • Object
show all
Includes:
Structure
Defined in:
lib/aws-sdk-verifiedpermissions/types.rb

Overview

The configuration of an OpenID Connect (OIDC) identity source for handling access token claims. Contains the claim that you want to identify as the principal in an authorization request, and the values of the ‘aud` claim, or audiences, that you want to accept.

This data type is part of a [OpenIdConnectTokenSelectionItem] structure, which is a parameter of [ListIdentitySources].

[1]: docs.aws.amazon.com/verifiedpermissions/latest/apireference/API_OpenIdConnectTokenSelectionItem.html [2]: docs.aws.amazon.com/verifiedpermissions/latest/apireference/API_ListIdentitySources.html

Constant Summary collapse

SENSITIVE =
[:principal_id_claim]

Instance Attribute Summary collapse

Instance Attribute Details

#audiencesArray<String>

The access token ‘aud` claim values that you want to accept in your policy store. For example, `myapp.example.com, myapp2.example.com`.

Returns:

  • (Array<String>)


2716
2717
2718
2719
2720
2721
# File 'lib/aws-sdk-verifiedpermissions/types.rb', line 2716

class OpenIdConnectAccessTokenConfigurationItem < Struct.new(
  :principal_id_claim,
  :audiences)
  SENSITIVE = [:principal_id_claim]
  include Aws::Structure
end

#principal_id_claimString

The claim that determines the principal in OIDC access tokens. For example, ‘sub`.

Returns:

  • (String)


2716
2717
2718
2719
2720
2721
# File 'lib/aws-sdk-verifiedpermissions/types.rb', line 2716

class OpenIdConnectAccessTokenConfigurationItem < Struct.new(
  :principal_id_claim,
  :audiences)
  SENSITIVE = [:principal_id_claim]
  include Aws::Structure
end