/AWS1/CL_KFKKAFKACLSTSASLOAU00¶
Details for SASL/OAUTHBEARER client authentication.
CONSTRUCTOR¶
IMPORTING¶
Required arguments:¶
iv_tokenendpointurl TYPE /AWS1/KFK__STRING /AWS1/KFK__STRING¶
The HTTPS URL of the OAuth token endpoint that vends OAuth Bearer tokens per RFC 6749.
iv_tokenendptauthntctnmethod TYPE /AWS1/KFKTOKENDPTAUTHNTCTNMETH /AWS1/KFKTOKENDPTAUTHNTCTNMETH¶
How client credentials are sent to the identity provider. Valid values are POST, BASIC, or NONE.
Optional arguments:¶
io_clientcredentials TYPE REF TO /AWS1/CL_KFKKAFKACLSTOAUTHCL00 /AWS1/CL_KFKKAFKACLSTOAUTHCL00¶
Details for SASL/OAUTHBEARER using standard client_credentials grant.
io_iamjwtbearer TYPE REF TO /AWS1/CL_KFKKAFKACLSTOAUTHIA00 /AWS1/CL_KFKKAFKACLSTOAUTHIA00¶
Details for SASL/OAUTHBEARER using JWT Bearer assertion grant (RFC 7523).
io_clientcredsassertion TYPE REF TO /AWS1/CL_KFKKAFKACLSTOAUTHCL01 /AWS1/CL_KFKKAFKACLSTOAUTHCL01¶
Details for SASL/OAUTHBEARER using client credentials grant with JWT client assertion.
iv_scope TYPE /AWS1/KFK__STRING /AWS1/KFK__STRING¶
OAuth scope to request.
iv_tokenendpointtlscertarn TYPE /AWS1/KFK__STRING /AWS1/KFK__STRING¶
Secrets Manager ARN containing a custom CA certificate for the identity provider.
Queryable Attributes¶
TokenEndpointUrl¶
The HTTPS URL of the OAuth token endpoint that vends OAuth Bearer tokens per RFC 6749.
Accessible with the following methods¶
| Method | Description |
|---|---|
GET_TOKENENDPOINTURL() |
Getter for TOKENENDPOINTURL, with configurable default |
ASK_TOKENENDPOINTURL() |
Getter for TOKENENDPOINTURL w/ exceptions if field has no va |
HAS_TOKENENDPOINTURL() |
Determine if TOKENENDPOINTURL has a value |
ClientCredentials¶
Details for SASL/OAUTHBEARER using standard client_credentials grant.
Accessible with the following methods¶
| Method | Description |
|---|---|
GET_CLIENTCREDENTIALS() |
Getter for CLIENTCREDENTIALS |
IamJwtBearer¶
Details for SASL/OAUTHBEARER using JWT Bearer assertion grant (RFC 7523).
Accessible with the following methods¶
| Method | Description |
|---|---|
GET_IAMJWTBEARER() |
Getter for IAMJWTBEARER |
ClientCredentialsAssertion¶
Details for SASL/OAUTHBEARER using client credentials grant with JWT client assertion.
Accessible with the following methods¶
| Method | Description |
|---|---|
GET_CLIENTCREDSASSERTION() |
Getter for CLIENTCREDENTIALSASSERTION |
TokenEndpointAuthenticationMethod¶
How client credentials are sent to the identity provider. Valid values are POST, BASIC, or NONE.
Accessible with the following methods¶
| Method | Description |
|---|---|
GET_TOKENENDPTAUTHNTCTNMETH() |
Getter for TOKENENDPOINTAUTHNTCTNMETHOD, with configurable d |
ASK_TOKENENDPTAUTHNTCTNMETH() |
Getter for TOKENENDPOINTAUTHNTCTNMETHOD w/ exceptions if fie |
HAS_TOKENENDPTAUTHNTCTNMETH() |
Determine if TOKENENDPOINTAUTHNTCTNMETHOD has a value |
Scope¶
OAuth scope to request.
Accessible with the following methods¶
| Method | Description |
|---|---|
GET_SCOPE() |
Getter for SCOPE, with configurable default |
ASK_SCOPE() |
Getter for SCOPE w/ exceptions if field has no value |
HAS_SCOPE() |
Determine if SCOPE has a value |
TokenEndpointTlsCertificateArn¶
Secrets Manager ARN containing a custom CA certificate for the identity provider.
Accessible with the following methods¶
| Method | Description |
|---|---|
GET_TOKENENDPOINTTLSCERTARN() |
Getter for TOKENENDPOINTTLSCERTARN, with configurable defaul |
ASK_TOKENENDPOINTTLSCERTARN() |
Getter for TOKENENDPOINTTLSCERTARN w/ exceptions if field ha |
HAS_TOKENENDPOINTTLSCERTARN() |
Determine if TOKENENDPOINTTLSCERTARN has a value |