Skip to main content
PATCH
Update an Identity Provider

Authorizations

Authorization
string
header
required

The access token received from the authorization server in the OAuth 2.0 flow.

FlowClient Credentials
Token URL
/oauth/token
Scopes1
update:my_org:identity_providers
Update identity provider for organization

Path Parameters

idp_id
string
required
read-only

Identity provider identifier.

Pattern: ^con_[A-Za-z0-9]{16}$

Body

application/json
display_name
string

Identity provider name used on the login screen. Requires access_level to be 'full'

Required string length: 1 - 128
show_as_button
boolean

Enables showing a button for the connection in the login page (new experience only). If false, it will be usable only by Home Realm Discovery (HRD). Requires access_level to be 'full' or 'limited'

assign_membership_on_login
boolean

If true, the user will be made a member of the organization upon login. Requires access_level to be 'full' or 'limited'.

is_enabled
boolean

True if the identity provider is enabled for the organization. Requires access_level to be 'full' or 'limited'

options
adfs_server · object

Identity provider specific options. Requires access_level to be 'full'.

Response

Identity provider successfully updated.

Identity provider specific options.

strategy
enum<string>
required

The type of the identity provider

Available options:
adfs,
google-apps,
oidc,
okta,
pingfederate,
samlp,
waad
Allowed value: "adfs"
options
adfs_server · object
required

Identity provider specific options.

id
string
read-only

Identity provider identifier.

Pattern: ^con_[A-Za-z0-9]{16}$
name
string | null

The name of the identity provider

Maximum string length: 128
domains
string[]

List of domains for Home Realm Discovery (HRD)

display_name
string

Identity provider name used on the login screen.

Required string length: 1 - 128
show_as_button
boolean

Enables showing a button for the connection in the login page (new experience only). If false, it will be usable only by Home Realm Discovery (HRD).

assign_membership_on_login
boolean

If true, the user will be made a member of the organization upon login.

is_enabled
boolean

True if the identity provider is enabled for the organization.

access_level
enum<string>
read-only

The access level allowed for the Organization

Available options:
none,
readonly,
limited,
full