Skip to content

/AWS1/CL_KFKKAFKACLSTSASLOAU00

Details for SASL/OAUTHBEARER client authentication.

CONSTRUCTOR

IMPORTING

Required arguments:

iv_tokenendpointurl TYPE /AWS1/KFK__STRING /AWS1/KFK__STRING

The HTTPS URL of the OAuth token endpoint that vends OAuth Bearer tokens per RFC 6749.

iv_tokenendptauthntctnmethod TYPE /AWS1/KFKTOKENDPTAUTHNTCTNMETH /AWS1/KFKTOKENDPTAUTHNTCTNMETH

How client credentials are sent to the identity provider. Valid values are POST, BASIC, or NONE.

Optional arguments:

io_clientcredentials TYPE REF TO /AWS1/CL_KFKKAFKACLSTOAUTHCL00 /AWS1/CL_KFKKAFKACLSTOAUTHCL00

Details for SASL/OAUTHBEARER using standard client_credentials grant.

io_iamjwtbearer TYPE REF TO /AWS1/CL_KFKKAFKACLSTOAUTHIA00 /AWS1/CL_KFKKAFKACLSTOAUTHIA00

Details for SASL/OAUTHBEARER using JWT Bearer assertion grant (RFC 7523).

io_clientcredsassertion TYPE REF TO /AWS1/CL_KFKKAFKACLSTOAUTHCL01 /AWS1/CL_KFKKAFKACLSTOAUTHCL01

Details for SASL/OAUTHBEARER using client credentials grant with JWT client assertion.

iv_scope TYPE /AWS1/KFK__STRING /AWS1/KFK__STRING

OAuth scope to request.

iv_tokenendpointtlscertarn TYPE /AWS1/KFK__STRING /AWS1/KFK__STRING

Secrets Manager ARN containing a custom CA certificate for the identity provider.


Queryable Attributes

TokenEndpointUrl

The HTTPS URL of the OAuth token endpoint that vends OAuth Bearer tokens per RFC 6749.

Accessible with the following methods

Method Description
GET_TOKENENDPOINTURL() Getter for TOKENENDPOINTURL, with configurable default
ASK_TOKENENDPOINTURL() Getter for TOKENENDPOINTURL w/ exceptions if field has no va
HAS_TOKENENDPOINTURL() Determine if TOKENENDPOINTURL has a value

ClientCredentials

Details for SASL/OAUTHBEARER using standard client_credentials grant.

Accessible with the following methods

Method Description
GET_CLIENTCREDENTIALS() Getter for CLIENTCREDENTIALS

IamJwtBearer

Details for SASL/OAUTHBEARER using JWT Bearer assertion grant (RFC 7523).

Accessible with the following methods

Method Description
GET_IAMJWTBEARER() Getter for IAMJWTBEARER

ClientCredentialsAssertion

Details for SASL/OAUTHBEARER using client credentials grant with JWT client assertion.

Accessible with the following methods

Method Description
GET_CLIENTCREDSASSERTION() Getter for CLIENTCREDENTIALSASSERTION

TokenEndpointAuthenticationMethod

How client credentials are sent to the identity provider. Valid values are POST, BASIC, or NONE.

Accessible with the following methods

Method Description
GET_TOKENENDPTAUTHNTCTNMETH() Getter for TOKENENDPOINTAUTHNTCTNMETHOD, with configurable d
ASK_TOKENENDPTAUTHNTCTNMETH() Getter for TOKENENDPOINTAUTHNTCTNMETHOD w/ exceptions if fie
HAS_TOKENENDPTAUTHNTCTNMETH() Determine if TOKENENDPOINTAUTHNTCTNMETHOD has a value

Scope

OAuth scope to request.

Accessible with the following methods

Method Description
GET_SCOPE() Getter for SCOPE, with configurable default
ASK_SCOPE() Getter for SCOPE w/ exceptions if field has no value
HAS_SCOPE() Determine if SCOPE has a value

TokenEndpointTlsCertificateArn

Secrets Manager ARN containing a custom CA certificate for the identity provider.

Accessible with the following methods

Method Description
GET_TOKENENDPOINTTLSCERTARN() Getter for TOKENENDPOINTTLSCERTARN, with configurable defaul
ASK_TOKENENDPOINTTLSCERTARN() Getter for TOKENENDPOINTTLSCERTARN w/ exceptions if field ha
HAS_TOKENENDPOINTTLSCERTARN() Determine if TOKENENDPOINTTLSCERTARN has a value