Class: Aws::VerifiedPermissions::Types::OpenIdConnectIdentityTokenConfiguration

Inherits:
Struct
  • Object
show all
Includes:
Structure
Defined in:
lib/aws-sdk-verifiedpermissions/types.rb

Overview

The configuration of an OpenID Connect (OIDC) identity source for handling identity (ID) token claims. Contains the claim that you want to identify as the principal in an authorization request, and the values of the ‘aud` claim, or audiences, that you want to accept.

This data type is part of a [OpenIdConnectTokenSelection] structure, which is a parameter of [CreateIdentitySource].

[1]: docs.aws.amazon.com/verifiedpermissions/latest/apireference/API_OpenIdConnectTokenSelection.html [2]: docs.aws.amazon.com/verifiedpermissions/latest/apireference/API_CreateIdentitySource.html

Constant Summary collapse

SENSITIVE =
[:principal_id_claim, :client_ids]

Instance Attribute Summary collapse

Instance Attribute Details

#client_idsArray<String>

The ID token audience, or client ID, claim values that you want to accept in your policy store from an OIDC identity provider. For example, ‘1example23456789, 2example10111213`.

Returns:

  • (Array<String>)


3004
3005
3006
3007
3008
3009
# File 'lib/aws-sdk-verifiedpermissions/types.rb', line 3004

class OpenIdConnectIdentityTokenConfiguration < Struct.new(
  :principal_id_claim,
  :client_ids)
  SENSITIVE = [:principal_id_claim, :client_ids]
  include Aws::Structure
end

#principal_id_claimString

The claim that determines the principal in OIDC access tokens. For example, ‘sub`.

Returns:

  • (String)


3004
3005
3006
3007
3008
3009
# File 'lib/aws-sdk-verifiedpermissions/types.rb', line 3004

class OpenIdConnectIdentityTokenConfiguration < Struct.new(
  :principal_id_claim,
  :client_ids)
  SENSITIVE = [:principal_id_claim, :client_ids]
  include Aws::Structure
end