OidcProviderArgs

data class OidcProviderArgs(val clientIds: Output<List<String>>? = null, val description: Output<String>? = null, val fingerprints: Output<List<String>>? = null, val issuanceLimitTime: Output<Int>? = null, val issuerUrl: Output<String>? = null, val oidcProviderName: Output<String>? = null) : ConvertibleToJava<OidcProviderArgs>

Provides a IMS Oidc Provider resource. OpenID Connect Provider. For information about IMS Oidc Provider and how to use it, see What is Oidc Provider.

NOTE: Available since v1.210.0.

Example Usage

Basic Usage

import * as pulumi from "@pulumi/pulumi";
import * as alicloud from "@pulumi/alicloud";
const config = new pulumi.Config();
const name = config.get("name") || "terraform-example";
const oidcProviderName = config.get("oidcProviderName") || "amp-resource-example-oidc-provider";
const _default = new alicloud.ims.OidcProvider("default", {
description: oidcProviderName,
issuerUrl: "https://oauth.aliyun.com",
fingerprints: ["902ef2deeb3c5b13ea4c3d5193629309e231ae55"],
issuanceLimitTime: 12,
oidcProviderName: name,
clientIds: [
"123",
"456",
],
});
import pulumi
import pulumi_alicloud as alicloud
config = pulumi.Config()
name = config.get("name")
if name is None:
name = "terraform-example"
oidc_provider_name = config.get("oidcProviderName")
if oidc_provider_name is None:
oidc_provider_name = "amp-resource-example-oidc-provider"
default = alicloud.ims.OidcProvider("default",
description=oidc_provider_name,
issuer_url="https://oauth.aliyun.com",
fingerprints=["902ef2deeb3c5b13ea4c3d5193629309e231ae55"],
issuance_limit_time=12,
oidc_provider_name=name,
client_ids=[
"123",
"456",
])
using System.Collections.Generic;
using System.Linq;
using Pulumi;
using AliCloud = Pulumi.AliCloud;
return await Deployment.RunAsync(() =>
{
var config = new Config();
var name = config.Get("name") ?? "terraform-example";
var oidcProviderName = config.Get("oidcProviderName") ?? "amp-resource-example-oidc-provider";
var @default = new AliCloud.Ims.OidcProvider("default", new()
{
Description = oidcProviderName,
IssuerUrl = "https://oauth.aliyun.com",
Fingerprints = new[]
{
"902ef2deeb3c5b13ea4c3d5193629309e231ae55",
},
IssuanceLimitTime = 12,
OidcProviderName = name,
ClientIds = new[]
{
"123",
"456",
},
});
});
package main
import (
"github.com/pulumi/pulumi-alicloud/sdk/v3/go/alicloud/ims"
"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
"github.com/pulumi/pulumi/sdk/v3/go/pulumi/config"
)
func main() {
pulumi.Run(func(ctx *pulumi.Context) error {
cfg := config.New(ctx, "")
name := "terraform-example"
if param := cfg.Get("name"); param != "" {
name = param
}
oidcProviderName := "amp-resource-example-oidc-provider"
if param := cfg.Get("oidcProviderName"); param != "" {
oidcProviderName = param
}
_, err := ims.NewOidcProvider(ctx, "default", &ims.OidcProviderArgs{
Description: pulumi.String(oidcProviderName),
IssuerUrl: pulumi.String("https://oauth.aliyun.com"),
Fingerprints: pulumi.StringArray{
pulumi.String("902ef2deeb3c5b13ea4c3d5193629309e231ae55"),
},
IssuanceLimitTime: pulumi.Int(12),
OidcProviderName: pulumi.String(name),
ClientIds: pulumi.StringArray{
pulumi.String("123"),
pulumi.String("456"),
},
})
if err != nil {
return err
}
return nil
})
}
package generated_program;
import com.pulumi.Context;
import com.pulumi.Pulumi;
import com.pulumi.core.Output;
import com.pulumi.alicloud.ims.OidcProvider;
import com.pulumi.alicloud.ims.OidcProviderArgs;
import java.util.List;
import java.util.ArrayList;
import java.util.Map;
import java.io.File;
import java.nio.file.Files;
import java.nio.file.Paths;
public class App {
public static void main(String[] args) {
Pulumi.run(App::stack);
}
public static void stack(Context ctx) {
final var config = ctx.config();
final var name = config.get("name").orElse("terraform-example");
final var oidcProviderName = config.get("oidcProviderName").orElse("amp-resource-example-oidc-provider");
var default_ = new OidcProvider("default", OidcProviderArgs.builder()
.description(oidcProviderName)
.issuerUrl("https://oauth.aliyun.com")
.fingerprints("902ef2deeb3c5b13ea4c3d5193629309e231ae55")
.issuanceLimitTime("12")
.oidcProviderName(name)
.clientIds(
"123",
"456")
.build());
}
}
configuration:
name:
type: string
default: terraform-example
oidcProviderName:
type: string
default: amp-resource-example-oidc-provider
resources:
default:
type: alicloud:ims:OidcProvider
properties:
description: ${oidcProviderName}
issuerUrl: https://oauth.aliyun.com
fingerprints:
- 902ef2deeb3c5b13ea4c3d5193629309e231ae55
issuanceLimitTime: '12'
oidcProviderName: ${name}
clientIds:
- '123'
- '456'

Import

IMS Oidc Provider can be imported using the id, e.g.

$ pulumi import alicloud:ims/oidcProvider:OidcProvider example <id>

Constructors

Link copied to clipboard
constructor(clientIds: Output<List<String>>? = null, description: Output<String>? = null, fingerprints: Output<List<String>>? = null, issuanceLimitTime: Output<Int>? = null, issuerUrl: Output<String>? = null, oidcProviderName: Output<String>? = null)

Properties

Link copied to clipboard
val clientIds: Output<List<String>>? = null

Client ID.

Link copied to clipboard
val description: Output<String>? = null

Description of OIDC identity provider.

Link copied to clipboard
val fingerprints: Output<List<String>>? = null

The authentication fingerprint of the HTTPS CA certificate.

Link copied to clipboard
val issuanceLimitTime: Output<Int>? = null

The earliest time when an external IdP is allowed to issue an ID Token. If the iat field in the ID Token is greater than the current time, the request is rejected. Unit: hours. Value range: 1~168.

Link copied to clipboard
val issuerUrl: Output<String>? = null

The issuer URL of the OIDC identity provider.

Link copied to clipboard
val oidcProviderName: Output<String>? = null

The name of the OIDC identity provider.

Functions

Link copied to clipboard
open override fun toJava(): OidcProviderArgs