Updates a credential provider.
Try it now
Test
RAM authorization
|
Action |
Access level |
Resource type |
Condition key |
Dependent action |
|
eiam:UpdateCredentialProvider |
update |
*CredentialProvider
|
None | None |
Request parameters
|
Parameter |
Type |
Required |
Description |
Example |
| InstanceId |
string |
Yes |
The instance ID. |
idaas_ue2jvisn35ea5lmthk267xxxxx |
| CredentialProviderId |
string |
Yes |
The credential provider ID. |
atp_01kr2cmj5gxxx4fvmls2e93dxxxxx |
| ClientToken |
string |
Yes |
The idempotency token that ensures the idempotence of the request. Generate a unique parameter value from your client to ensure uniqueness across different requests. ClientToken supports only ASCII characters and cannot exceed 64 characters. For more information, see References: How to ensure idempotence. |
client-token-example |
| CredentialProviderName |
string |
No |
The credential provider name. Note
The name cannot exceed 64 characters in length. |
test_example_name |
| CredentialProviderConfig |
object |
No |
The credential provider configuration. |
|
| OAuthProviderConfig |
object |
No |
The configuration of the OAuth credential provider. |
|
| ClientSecret |
string |
No |
The client_secret in the OAuth protocol. Note
The value cannot exceed 1024 characters in length. |
client_secret_example_xxx |
| TokenEndpoint |
string |
No |
The token endpoint of the OAuth protocol. Note
The value must start with |
https://example.com/token |
| Scope |
string |
No |
The scope in the OAuth protocol, which specifies the permission scope. Note
The Scope configuration on the credential provider serves as the fallback value. If the scope parameter is not specified when calling the DeveloperAPI to obtain an OAuth Access Token, the Scope configuration on the credential provider is used for issuance. Important Separate multiple Scope values with spaces. To clear the Scope configuration, pass an empty string. Restrictions on each individual Scope value:
|
example:test_01 example:test_02 |
| AuthorizationFlow |
string |
No |
The OAuth authorization flow type. Valid values:
|
m2m |
| AuthorizationEndpoint |
string |
No |
The authorization endpoint. |
https://example.com/authorize |
| ProviderVendor |
string |
No |
The vendor type. Valid values:
|
custom |
| DiscoveryUrl |
string |
No |
The auto-discovery URL. |
https://example.com/.well-known/openid-configuration |
| PkceEnabled |
boolean |
No |
Specifies whether PKCE is enabled. |
true |
| PkceChallengeMethod |
string |
No |
The PKCE challenge method. Valid values:
|
S256 |
| Issuer |
string |
No |
The authorization server identifier URL. |
https://example.com/issuer |
| JwtProviderConfig |
object |
No |
The configuration of the JWT credential provider. |
|
| Expiration |
integer |
No |
The validity period of the JWT, in seconds. |
900 |
| ExpirationCleanupEnabled |
boolean |
No |
Specifies whether JWT expiration cleanup is enabled. |
true |
| DerivedShortTokenEnabled |
boolean |
No |
Specifies whether the JWT derived short token feature is enabled. |
false |
| AllowedTokenIssuers |
array |
No |
The list of allowed JWT issuers. Note
The list cannot contain more than 200 entries. Important To clear the issuer list, pass an empty list or an empty string when calling the API. |
|
|
string |
No |
The allowed JWT issuer. Note
The value cannot exceed 1024 characters in length. |
https://test.issuer.com |
Response elements
|
Element |
Type |
Description |
Example |
|
object |
|||
| RequestId |
string |
The request ID. |
0441BD79-92F3-53AA-8657-F8CE4A2B912A |
Examples
Success response
JSON format
{
"RequestId": "0441BD79-92F3-53AA-8657-F8CE4A2B912A"
}
Error codes
See Error Codes for a complete list.
Release notes
See Release Notes for a complete list.