CreateFederatedCredentialProvider
Create an identity provider.
Try it now
Test
RAM authorization
|
Action |
Access level |
Resource type |
Condition key |
Dependent action |
|
eiam:CreateFederatedCredentialProvider |
create |
*FederatedCredentialProvider
|
None | None |
Request parameters
|
Parameter |
Type |
Required |
Description |
Example |
| InstanceId |
string |
Yes |
The instance ID. |
idaas_ue2jvisn35ea5lmthk267xxxxx |
| FederatedCredentialProviderName |
string |
Yes |
The name of the federated credential provider. |
test |
| FederatedCredentialProviderType |
string |
Yes |
The type of the federated credential provider. |
pkcs7 |
| NetworkAccessEndpointId |
string |
No |
The network access endpoint ID. |
nae_example_id |
| Description |
string |
No |
The description of the federated credential provider. |
test |
| PrivateCaProviderConfig |
object |
No |
The configuration for a private CA-based provider. |
|
| TrustAnchorSource |
string |
No |
The source of the trust anchor. |
custom |
| Certificates |
array<object> |
No |
The root certificates that form the trust anchor. |
|
|
object |
No |
|||
| Content |
string |
No |
The content of the PEM-encoded certificate. |
-----BEGIN CERTIFICATE----- MIIE+zCCA0egAwIBAgIJAJZY0ZY0ZY0Z -----END CERTIFICATE----- |
| TrustCondition |
string |
No |
The condition for trusting the root certificate. |
IsNullOrEmpty("jwt.issuer") |
| OidcProviderConfig |
object |
No |
The configuration for an OIDC-based provider. |
|
| JwksSource |
string |
No |
The source of the JSON Web Key Set (JWKS). |
static |
| JwksUri |
string |
No |
The URI of the JWKS endpoint. |
https://example.com/jwks |
| StaticJwks |
string |
No |
The static JWKS content in JSON format. |
{ "keys": [ { "kty": "RSA", "e": "AQAB", "use": "sig", "kid": "KEY2RzsjRrimRASiAhCjBo18YwDoxpYHnHtv", "n": "qrsfFfSZngqKOxVE29ZIR4SXkwKq029B3HLDAZui_Pwaxwn8FssR9QdwsljZS06BTDp10vhPgqMB7s7TmHulL3I4WuSB-l4uXXXXX" } ] } |
| Audiences |
array |
No |
A list of audiences. The |
|
|
string |
No |
A single audience value. |
https://www.example.com |
|
| TrustCondition |
string |
No |
The condition the OIDC token must meet to be trusted. |
IsNullOrEmpty("jwt.issuer") |
| Issuer |
string |
No |
The issuer identifier for the OIDC provider. This value must match the |
https://example.com |
| Pkcs7ProviderConfig |
object |
No |
The configuration for a PKCS7-based provider. |
|
| TrustAnchorSource |
string |
No |
The source of the trust anchor. |
custom |
| Certificates |
array<object> |
No |
The certificates for verifying the PKCS7 signature. |
|
|
object |
No |
|||
| Content |
string |
No |
The content of the PEM-encoded certificate. |
-----BEGIN CERTIFICATE----- MIIE+zCCA0egAwIBAgIJAJZY0ZY0ZY0Z -----END CERTIFICATE----- |
| TrustCondition |
string |
No |
The condition that the signature data must meet to be trusted. |
IsNullOrEmpty("jwt.issuer") |
| CmsVerificationMode |
string |
No |
The Cryptographic Message Syntax (CMS) verification mode. |
cert_chain |
| SigningTimeValueExpression |
string |
No |
The expression to extract the signing time from the signature. |
pkcs7.signingTime |
| SignatureEffectiveTime |
integer |
No |
The validity period of the signature, in seconds. |
1200 |
Response elements
|
Element |
Type |
Description |
Example |
|
object |
|||
| RequestId |
string |
The request ID. |
0441BD79-92F3-53AA-8657-F8CE4A2B912A |
| FederatedCredentialProviderId |
string |
The ID of the federated credential provider. |
fcp_sada123XXXX |
Examples
Success response
JSON format
{
"RequestId": "0441BD79-92F3-53AA-8657-F8CE4A2B912A",
"FederatedCredentialProviderId": "fcp_sada123XXXX"
}
Error codes
See Error Codes for a complete list.
Release notes
See Release Notes for a complete list.