Skip to main content

Deprecated: Update OIDC Identity Provider (IDP)

PUT 

https://$CUSTOM-DOMAIN/admin/v1/idps/:idpId/oidc_config

deprecated

Update the OIDC-specific configuration of an identity provider. All fields will be updated. If a field has no value it will be empty afterward.

Request​

Path Parameters

    idpId stringrequired

Body

required

    issuer stringrequired

    Possible values: non-empty and <= 200 characters

    the oidc issuer of the identity provider

    clientId stringrequired

    Possible values: non-empty and <= 200 characters

    client id generated by the identity provider

    clientSecret string

    Possible values: <= 200 characters

    client secret generated by the identity provider. If empty the secret is not overwritten

    scopes string[]

    the scopes requested by ZITADEL during the request on the identity provider

    displayNameMapping string

    Possible values: [OIDC_MAPPING_FIELD_UNSPECIFIED, OIDC_MAPPING_FIELD_PREFERRED_USERNAME, OIDC_MAPPING_FIELD_EMAIL]

    Default value: OIDC_MAPPING_FIELD_UNSPECIFIED

    definition which field is mapped to the display name of the user

    usernameMapping string

    Possible values: [OIDC_MAPPING_FIELD_UNSPECIFIED, OIDC_MAPPING_FIELD_PREFERRED_USERNAME, OIDC_MAPPING_FIELD_EMAIL]

    Default value: OIDC_MAPPING_FIELD_UNSPECIFIED

    definition which field is mapped to the email of the user

Responses​

OIDC config updated

Schema

    details

    object

    sequence uint64

    on read: the sequence of the last event reduced by the projection

    on manipulation: the timestamp of the event(s) added by the manipulation

    creationDate date-time

    on read: the timestamp of the first event of the object

    on create: the timestamp of the event(s) added by the manipulation

    changeDate date-time

    on read: the timestamp of the last event reduced by the projection

    on manipulation: the

    resourceOwner resource_owner is the organization an object belongs to (string)
curl -L -X PUT 'https://$CUSTOM-DOMAIN/admin/v1/idps/:idpId/oidc_config' \
-H 'Content-Type: application/json' \
-H 'Accept: application/json' \
-H 'Authorization: Bearer <TOKEN>' \
-d '{
"issuer": "https://accounts.google.com",
"clientId": "string",
"clientSecret": "string",
"scopes": [
"openid",
"profile",
"email"
],
"displayNameMapping": "OIDC_MAPPING_FIELD_UNSPECIFIED",
"usernameMapping": "OIDC_MAPPING_FIELD_UNSPECIFIED"
}'
Request Collapse all
Base URL
https://$CUSTOM-DOMAIN/admin/v1
Auth
Parameters
— pathrequired
Body required
{
  "issuer": "https://accounts.google.com",
  "clientId": "string",
  "clientSecret": "string",
  "scopes": [
    "openid",
    "profile",
    "email"
  ],
  "displayNameMapping": "OIDC_MAPPING_FIELD_UNSPECIFIED",
  "usernameMapping": "OIDC_MAPPING_FIELD_UNSPECIFIED"
}
ResponseClear

Click the Send API Request button above and see the response here!