ID プロバイダーを取得します。
今すぐお試しください
テスト
RAM 認証
リクエストパラメーター
|
パラメーター |
型 |
必須 / 任意 |
説明 |
例 |
| InstanceId |
string |
必須 |
インスタンス ID。 |
idaas_ue2jvisn35ea5lmthk267xxxxx |
| IdentityProviderId |
string |
必須 |
ID プロバイダーの ID。 |
idp_my664lwkhpicbyzirog3xxxxx |
レスポンスフィールド
|
フィールド |
型 |
説明 |
例 |
|
object |
|||
| IdentityProviderDetail |
object |
ID プロバイダーの情報。 |
|
| AdvancedStatus |
string |
詳細設定のステータス。有効な値:
|
disabled |
| AuthnSourceSupplier |
string |
認証ソースプロダクト(Okta、Google、Azure AD など)。有効な値:
|
urn:alibaba:idaas:idp:bytedance:lark |
| AuthnSourceType |
string |
認証方式タイプ(OIDC や SAML など)。有効な値:
|
urn:alibaba:idaas:authntype:oidc |
| AuthnStatus |
string |
対応する IdP が認証をサポートするかどうかを指定します。有効な値:
|
disabled |
| CreateTime |
integer |
作成時間。UNIX タイムスタンプフォーマット。単位: ミリ秒。 |
1726021079000 |
| Description |
string |
ID プロバイダーの説明。 |
for poc test |
| DingtalkAppConfig |
object |
DingTalk の基本構成。 |
|
| AppKey |
string |
DingTalk のファーストパーティアプリケーションの AppKey。 |
41reopmwoy9s |
| AppSecret |
string |
DingTalk のファーストパーティアプリケーションの AppSecret。 |
REOQ6Cl55kriOd8NOBeqWYLKpHR4p6fdZxxxx |
| CorpId |
string |
DingTalk のファーストパーティアプリケーションの企業 ID。 |
3756043633237690761 |
| DingtalkVersion |
string |
DingTalk のエディション。有効な値:
|
public_dingtalk |
| EncryptKey |
string |
DingTalk のファーストパーティアプリケーションの暗号鍵。 |
29003eb11d0a28b4802a6f02fb8aa25dff730e2ac26ffd200d |
| VerificationToken |
string |
DingTalk のファーストパーティアプリケーションの検証トークン。 |
5ba9c127a7abe029003eb11d0a28b4802a6f02fb8aa25dff730e2ac26ffd200d |
| DingtalkLoginVersion |
string |
DingTalk QR コードログインのバージョン。 列挙値:
|
old_version |
| DingtalkProvisioningConfig |
object |
DingTalk 同期構成。この値は DingTalk ID プロバイダーの場合のみ返されます。 |
|
| AuthedDepartmentIds |
array<object> |
権限を付与された DingTalk 部門。 |
|
|
object |
|||
| DeptId |
string |
DingTalk の部門 ID。 |
123xxx444 |
| DeptName |
string |
DingTalk の部門名。 |
test_department |
| AuthedUsers |
array<object> |
権限を付与された DingTalk ユーザーアカウントのリスト。 |
|
|
object |
|||
| Name |
string |
DingTalk のユーザー名。 |
zhangsan |
| UserId |
string |
DingTalk のユーザー ID。 |
130308333929200479 |
| CorpId |
string |
DingTalk の企業 ID。 |
ding_xxxxx |
| CorpName |
string |
DingTalk の企業名。 |
test_enterprise |
| IdentityProviderExternalId |
string |
ID プロバイダーの外部 ID。 |
idp_xxxx |
| IdentityProviderId |
string |
ID プロバイダーの ID。 |
idp_mwpcwnhrimlr2horx7xgg7pp7y |
| IdentityProviderName |
string |
ID プロバイダーの名前。 |
test |
| IdentityProviderType |
string |
ID プロバイダーの同期タイプ。有効な値:
|
urn:alibaba:idaas:idp:alibaba:dingtalk:push |
| InstanceId |
string |
インスタンス ID。 |
idaas_x2df3bak3uwnapqm6xxxx |
| LarkConfig |
object |
Lark の構成。 |
|
| AppId |
string |
Lark のカスタムアプリケーションの App ID。 |
cli_a7a99f53a317100c |
| AppSecret |
string |
Lark のカスタムアプリケーションの App Secret。 |
*** |
| EnterpriseNumber |
string |
Lark のエンタープライズコード。 |
FX1231xxxx |
| EncryptKey |
string |
Lark のカスタムアプリケーションの暗号鍵。 |
VkdWw91mdkrjVFr3ObNwefap21dfbZbK |
| VerificationToken |
string |
Lark のカスタムアプリケーションの検証トークン。 |
VkdWw91mdkrjVFr3ObNwefap21dfbZbK |
| LastStatusCheckJobResult |
string |
最後のステータスチェックの結果。 |
success |
| LdapConfig |
object |
AD/LDAP ID プロバイダーの構成。 |
|
| AdministratorPassword |
string |
AD/LDAP 管理者のパスワード。 |
XXXX |
| AdministratorUsername |
string |
AD/LDAP 管理者のユーザー名。 |
example.com |
| CertificateFingerprintStatus |
string |
証明書の指紋を検証するかどうかを示します。有効な値:
|
enabled |
| CertificateFingerprints |
array |
証明書の指紋のリスト。 |
|
|
string |
公開鍵証明書の SHA-256 指紋。 |
asdsadaasd |
|
| LdapProtocol |
string |
AD/LDAP の通信プロトコル。 |
ldap |
| LdapServerHost |
string |
AD/LDAP サーバーのアドレス。 |
127.xx.xx.100 |
| LdapServerPort |
integer |
AD/LDAP サーバーのポート。 |
389 |
| StartTlsStatus |
string |
StartTLS が有効かどうかを示します。有効な値:
|
enabled |
| LockReason |
string |
ロックの理由。 |
financial |
| NetworkAccessEndpointId |
string |
ネットワークエンドポイント ID。 |
nae_mx4vsadfe6govkqkwckxxxx |
| OidcConfig |
object |
OIDC IdP の構成。 |
|
| AuthnParam |
object |
OIDC クライアント認証の構成。 |
|
| AuthnMethod |
string |
OIDC 認証方式。 |
client_secret_post |
| ClientId |
string |
OIDC クライアント ID。 |
mkv7rgt4d7i4u7zqtzev2mxxxx |
| ClientSecret |
string |
OIDC クライアントシークレット。 |
CSEHDddddddxxxxuxkJEHPveWRXBGqVqRsxxxx |
| EndpointConfig |
object |
OIDC エンドポイントの構成。 |
|
| AuthorizationEndpoint |
string |
OIDC 認可エンドポイント。 |
https://example.com/oauth/authorize |
| Issuer |
string |
OIDC 発行者。 |
https://example.com/oauth |
| JwksUri |
string |
OIDC JWKS URI。 |
https://example.com/oauth/jwks |
| TokenEndpoint |
string |
OIDC トークンエンドポイント。 |
https://example.com/oauth/token |
| UserinfoEndpoint |
string |
OIDC ユーザー情報エンドポイント。 |
https://example.com/oauth/userinfo |
| GrantScopes |
array |
OIDC 認可スコープのリスト。 |
openid |
|
string |
OIDC 認可スコープ。 |
ou_asdaq1addsxzdq1xxxx |
|
| GrantType |
string |
OIDC グラントタイプ。 |
authorization_code |
| PkceChallengeMethod |
string |
Proof Key for Code Exchange (PKCE) のアルゴリズム。有効な値:
|
S256 |
| PkceRequired |
boolean |
認可コードグラントタイプで PKCE を使用するかどうかを示します。 |
true |
| UdPullConfig |
object |
インバウンド同期の構成。 |
|
| GroupSyncStatus |
string |
グループ同期が有効かどうかを示します。有効な値:
|
disabled |
| IncrementalCallbackStatus |
string |
ID プロバイダーからの増分コールバックデータを処理するかどうかを示します。有効な値:
|
disabled |
| UdSyncScopeConfig |
object |
同期範囲の構成。 |
|
| SourceScopes |
array |
同期のソースノードのリスト。 |
|
|
string |
同期のソースノード。 |
ou_123xxxx |
|
| TargetScope |
string |
同期のターゲットノード。 |
ou_123xxxx |
| UdPullStatus |
string |
インバウンド同期機能がサポートされるかどうかを指定します。有効な値:
|
disabled |
| UdPushConfig |
object |
アウトバウンド同期の構成。 |
|
| IncrementalCallbackStatus |
string |
このパラメーターは将来の使用のために予約されています。 |
disabled |
| UdSyncScopeConfigs |
array<object> |
同期範囲構成のリスト。 |
|
|
object |
同期範囲の構成。 |
||
| SourceScopes |
array |
同期のソースノードのリスト。 |
|
|
string |
組織 ID で指定された同期のソースノード。 |
ou_123xxxx |
|
| TargetScope |
string |
同期のターゲットノード。 |
ou_123xxxx |
| UdPushStatus |
string |
アウトバウンド同期機能が有効かどうかを指定します。有効な値:
|
disabled |
| UpdateTime |
integer |
更新時間。UNIX タイムスタンプフォーマット。単位: ミリ秒。 |
1726021079000 |
| WeComConfig |
object |
WeCom の構成。 |
|
| AgentId |
string |
WeCom のカスタムアプリケーションの ID。 |
1242350 |
| AuthorizeCallbackDomain |
string |
認可されたコールバックドメイン。 |
https://example.com/xxxx |
| CorpId |
string |
WeCom のカスタムアプリケーションの企業 ID。 |
3562012953454577801 |
| CorpSecret |
string |
WeCom のカスタムアプリケーションのシークレット。 |
weaseiszjskejskaj12sjeszojxxxx |
| TrustableDomain |
string |
信頼できるドメイン。 |
https://example.com |
| LogoUrl |
string |
ID プロバイダーのカスタムロゴ URL。 |
https://img.alicdn.com/imgextra/i4/O1CN01lvYwpv1aGowQXDML9_!!6000000003303-0-tps-580-580.jpg |
| SamlConfig |
object |
SAML IdP の構成。 |
|
| IdPEntityId |
string |
SAML ID プロバイダーのエンティティ ID。 |
http://dc.test.com/adfs/services/trust |
| IdPSsoUrl |
string |
SAML ID プロバイダーのシングルサインオン (SSO) URL。 |
https://dc.test.com/adfs/ls/ |
| Certificates |
array<object> |
SAML ID プロバイダーの署名証明書のリスト。 |
|
|
array<object> |
証明書情報。 |
||
| Content |
string |
証明書の内容。 |
-----BEGIN CERTIFICATE----- MIIC0jCCAbqgAwIBAgIQXXXXX -----END CERTIFICATE----- |
| CertificateMetadata |
object |
証明書のメタデータ。 |
|
| NotBefore |
integer |
証明書の有効期間開始日時 |
1672531200000 |
| NotAfter |
integer |
証明書の有効期間終了日時 |
1704067200000 |
| RequireRequestSigned |
boolean |
リクエスト署名が必要かどうか。 |
true |
| BindingMethod |
string |
バインディングタイプ |
HTTP-REDIRECT |
| MaxClockSkew |
integer |
最大クロックスキュー |
180 |
| WantResponseSigned |
boolean |
||
| WantAssertionsSigned |
boolean |
||
| EndpointMetadata |
object |
エンドポイントメタデータ。 |
|
| SamlEntityId |
string |
SAML EntityId |
https://9test.aliyunidaas.com/login/saml2/idp_nhlraxfiwsx7w7zp26qzyoxxxx/meta |
| SamlAcsEndpoint |
string |
SAML ACS アドレス |
https://9test.aliyunidaas.com/login/saml2/idp_nhlraxfiwsx7w7zp26qzyoxxxx/acs |
| SamlMetaEndpoint |
string |
SAML メタデータアドレス |
https://9test.aliyunidaas.com/login/saml2/idp_nhlraxfiwsx7w7zp26qzyoxxxx/meta |
| RequestId |
string |
リクエスト ID。 |
0441BD79-92F3-53AA-8657-F8CE4A2B912A |
例
成功レスポンス
JSONJSON
{
"IdentityProviderDetail": {
"AdvancedStatus": "disabled",
"AuthnSourceSupplier": "urn:alibaba:idaas:idp:bytedance:lark",
"AuthnSourceType": "urn:alibaba:idaas:authntype:oidc",
"AuthnStatus": "disabled",
"CreateTime": 1726021079000,
"Description": "for poc test",
"DingtalkAppConfig": {
"AppKey": "41reopmwoy9s",
"AppSecret": "REOQ6Cl55kriOd8NOBeqWYLKpHR4p6fdZxxxx",
"CorpId": "3756043633237690761",
"DingtalkVersion": "public_dingtalk",
"EncryptKey": "29003eb11d0a28b4802a6f02fb8aa25dff730e2ac26ffd200d",
"VerificationToken": "5ba9c127a7abe029003eb11d0a28b4802a6f02fb8aa25dff730e2ac26ffd200d",
"DingtalkLoginVersion": "old_version"
},
"DingtalkProvisioningConfig": {
"AuthedDepartmentIds": [
{
"DeptId": "123xxx444",
"DeptName": "test_department"
}
],
"AuthedUsers": [
{
"Name": "zhangsan",
"UserId": "130308333929200479"
}
],
"CorpId": "ding_xxxxx",
"CorpName": "test_enterprise"
},
"IdentityProviderExternalId": "idp_xxxx",
"IdentityProviderId": "idp_mwpcwnhrimlr2horx7xgg7pp7y",
"IdentityProviderName": "test",
"IdentityProviderType": "urn:alibaba:idaas:idp:alibaba:dingtalk:push\n",
"InstanceId": "idaas_x2df3bak3uwnapqm6xxxx",
"LarkConfig": {
"AppId": "cli_a7a99f53a317100c",
"AppSecret": "***",
"EnterpriseNumber": "FX1231xxxx",
"EncryptKey": "VkdWw91mdkrjVFr3ObNwefap21dfbZbK",
"VerificationToken": "VkdWw91mdkrjVFr3ObNwefap21dfbZbK"
},
"LastStatusCheckJobResult": "success",
"LdapConfig": {
"AdministratorPassword": "XXXX",
"AdministratorUsername": "example.com",
"CertificateFingerprintStatus": "enabled",
"CertificateFingerprints": [
"asdsadaasd"
],
"LdapProtocol": "ldap",
"LdapServerHost": "127.xx.xx.100",
"LdapServerPort": 389,
"StartTlsStatus": "enabled"
},
"LockReason": "financial",
"NetworkAccessEndpointId": "nae_mx4vsadfe6govkqkwckxxxx",
"OidcConfig": {
"AuthnParam": {
"AuthnMethod": "client_secret_post",
"ClientId": "mkv7rgt4d7i4u7zqtzev2mxxxx",
"ClientSecret": "CSEHDddddddxxxxuxkJEHPveWRXBGqVqRsxxxx"
},
"EndpointConfig": {
"AuthorizationEndpoint": "https://example.com/oauth/authorize",
"Issuer": "https://example.com/oauth",
"JwksUri": "https://example.com/oauth/jwks",
"TokenEndpoint": "https://example.com/oauth/token",
"UserinfoEndpoint": "https://example.com/oauth/userinfo"
},
"GrantScopes": [
"ou_asdaq1addsxzdq1xxxx"
],
"GrantType": "authorization_code",
"PkceChallengeMethod": "S256",
"PkceRequired": true
},
"UdPullConfig": {
"GroupSyncStatus": "disabled",
"IncrementalCallbackStatus": "disabled",
"UdSyncScopeConfig": {
"SourceScopes": [
"ou_123xxxx"
],
"TargetScope": "ou_123xxxx"
}
},
"UdPullStatus": "disabled",
"UdPushConfig": {
"IncrementalCallbackStatus": "disabled",
"UdSyncScopeConfigs": [
{
"SourceScopes": [
"ou_123xxxx"
],
"TargetScope": "ou_123xxxx"
}
]
},
"UdPushStatus": "disabled",
"UpdateTime": 1726021079000,
"WeComConfig": {
"AgentId": "1242350",
"AuthorizeCallbackDomain": "https://example.com/xxxx",
"CorpId": "3562012953454577801",
"CorpSecret": "weaseiszjskejskaj12sjeszojxxxx",
"TrustableDomain": "https://example.com"
},
"LogoUrl": "https://img.alicdn.com/imgextra/i4/O1CN01lvYwpv1aGowQXDML9_!!6000000003303-0-tps-580-580.jpg",
"SamlConfig": {
"IdPEntityId": "http://dc.test.com/adfs/services/trust",
"IdPSsoUrl": "https://dc.test.com/adfs/ls/",
"Certificates": [
{
"Content": "-----BEGIN CERTIFICATE----- MIIC0jCCAbqgAwIBAgIQXXXXX -----END CERTIFICATE-----",
"CertificateMetadata": {
"NotBefore": 1672531200000,
"NotAfter": 1704067200000
}
}
],
"RequireRequestSigned": true,
"BindingMethod": "HTTP-REDIRECT",
"MaxClockSkew": 180,
"WantResponseSigned": false,
"WantAssertionsSigned": false
},
"EndpointMetadata": {
"SamlEntityId": "https://9test.aliyunidaas.com/login/saml2/idp_nhlraxfiwsx7w7zp26qzyoxxxx/meta",
"SamlAcsEndpoint": "https://9test.aliyunidaas.com/login/saml2/idp_nhlraxfiwsx7w7zp26qzyoxxxx/acs",
"SamlMetaEndpoint": "https://9test.aliyunidaas.com/login/saml2/idp_nhlraxfiwsx7w7zp26qzyoxxxx/meta"
}
},
"RequestId": "0441BD79-92F3-53AA-8657-F8CE4A2B912A"
}
エラーコード
完全なリストについては、「エラーコード」をご参照ください。
変更履歴
完全なリストについては、「変更履歴」をご参照ください。