Add OIDC Settings​
Create new OIDC settings. The OIDC Settings define the lifetimes of the different tokens in OIDC. These settings are used for all organizations and clients.
application/json
application/grpc
application/grpc-web+proto
Request Body required
accessTokenLifetime string
idTokenLifetime string
refreshTokenIdleExpiration string
refreshTokenExpiration string
Request Body required
accessTokenLifetime string
idTokenLifetime string
refreshTokenIdleExpiration string
refreshTokenExpiration string
Request Body required
accessTokenLifetime string
idTokenLifetime string
refreshTokenIdleExpiration string
refreshTokenExpiration string
Responses
- 200
- 403
- 404
- default
A successful response.
application/json
application/grpc
application/grpc-web+proto
Schema
Example (from schema)
Schema
details object
{
"details": {
"sequence": "2",
"creationDate": "2024-03-27T10:05:52.535Z",
"changeDate": "2024-03-27T10:05:52.535Z",
"resourceOwner": "69629023906488334"
}
}
Schema
Example (from schema)
Schema
details object
{
"details": {
"sequence": "2",
"creationDate": "2024-03-27T10:05:52.535Z",
"changeDate": "2024-03-27T10:05:52.535Z",
"resourceOwner": "69629023906488334"
}
}
Schema
Example (from schema)
Schema
details object
{
"details": {
"sequence": "2",
"creationDate": "2024-03-27T10:05:52.535Z",
"changeDate": "2024-03-27T10:05:52.535Z",
"resourceOwner": "69629023906488334"
}
}
Returned when the user does not have permission to access the resource.
application/json
application/grpc
application/grpc-web+proto
Schema
Example (from schema)
Schema
code int32
message string
details object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}
Schema
Example (from schema)
Schema
code int32
message string
details object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}
Schema
Example (from schema)
Schema
code int32
message string
details object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}
Returned when the resource does not exist.
application/json
application/grpc
application/grpc-web+proto
Schema
Example (from schema)
Schema
code int32
message string
details object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}
Schema
Example (from schema)
Schema
code int32
message string
details object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}
Schema
Example (from schema)
Schema
code int32
message string
details object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}
An unexpected error response.
application/json
application/grpc
application/grpc-web+proto
Schema
Example (from schema)
Schema
code int32
message string
details object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}
Schema
Example (from schema)
Schema
code int32
message string
details object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}
Schema
Example (from schema)
Schema
code int32
message string
details object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}
POST /settings/oidc
Authorization
name: OAuth2type: oauth2scopes:openid,urn:zitadel:iam:org:project:id:zitadel:aud
flows: { "authorizationCode": { "authorizationUrl": "$CUSTOM-DOMAIN/oauth/v2/authorize", "tokenUrl": "$CUSTOM-DOMAIN/oauth/v2/token", "scopes": { "openid": "openid", "urn:zitadel:iam:org:project:id:zitadel:aud": "urn:zitadel:iam:org:project:id:zitadel:aud" } } }
Request
Request
curl / cURL
curl -L -X POST 'https://$CUSTOM-DOMAIN/admin/v1/settings/oidc' \
-H 'Content-Type: application/json' \
-H 'Accept: application/json' \
-H 'Authorization: Bearer <TOKEN>' \
--data-raw '{
"accessTokenLifetime": "string",
"idTokenLifetime": "string",
"refreshTokenIdleExpiration": "string",
"refreshTokenExpiration": "string"
}'
python / requests
curl -L -X POST 'https://$CUSTOM-DOMAIN/admin/v1/settings/oidc' \
-H 'Content-Type: application/json' \
-H 'Accept: application/json' \
-H 'Authorization: Bearer <TOKEN>' \
--data-raw '{
"accessTokenLifetime": "string",
"idTokenLifetime": "string",
"refreshTokenIdleExpiration": "string",
"refreshTokenExpiration": "string"
}'
go / native
curl -L -X POST 'https://$CUSTOM-DOMAIN/admin/v1/settings/oidc' \
-H 'Content-Type: application/json' \
-H 'Accept: application/json' \
-H 'Authorization: Bearer <TOKEN>' \
--data-raw '{
"accessTokenLifetime": "string",
"idTokenLifetime": "string",
"refreshTokenIdleExpiration": "string",
"refreshTokenExpiration": "string"
}'
nodejs / axios
curl -L -X POST 'https://$CUSTOM-DOMAIN/admin/v1/settings/oidc' \
-H 'Content-Type: application/json' \
-H 'Accept: application/json' \
-H 'Authorization: Bearer <TOKEN>' \
--data-raw '{
"accessTokenLifetime": "string",
"idTokenLifetime": "string",
"refreshTokenIdleExpiration": "string",
"refreshTokenExpiration": "string"
}'
ruby / Net::HTTP
curl -L -X POST 'https://$CUSTOM-DOMAIN/admin/v1/settings/oidc' \
-H 'Content-Type: application/json' \
-H 'Accept: application/json' \
-H 'Authorization: Bearer <TOKEN>' \
--data-raw '{
"accessTokenLifetime": "string",
"idTokenLifetime": "string",
"refreshTokenIdleExpiration": "string",
"refreshTokenExpiration": "string"
}'
csharp / RestSharp
curl -L -X POST 'https://$CUSTOM-DOMAIN/admin/v1/settings/oidc' \
-H 'Content-Type: application/json' \
-H 'Accept: application/json' \
-H 'Authorization: Bearer <TOKEN>' \
--data-raw '{
"accessTokenLifetime": "string",
"idTokenLifetime": "string",
"refreshTokenIdleExpiration": "string",
"refreshTokenExpiration": "string"
}'
php / cURL
curl -L -X POST 'https://$CUSTOM-DOMAIN/admin/v1/settings/oidc' \
-H 'Content-Type: application/json' \
-H 'Accept: application/json' \
-H 'Authorization: Bearer <TOKEN>' \
--data-raw '{
"accessTokenLifetime": "string",
"idTokenLifetime": "string",
"refreshTokenIdleExpiration": "string",
"refreshTokenExpiration": "string"
}'
java / OkHttp
curl -L -X POST 'https://$CUSTOM-DOMAIN/admin/v1/settings/oidc' \
-H 'Content-Type: application/json' \
-H 'Accept: application/json' \
-H 'Authorization: Bearer <TOKEN>' \
--data-raw '{
"accessTokenLifetime": "string",
"idTokenLifetime": "string",
"refreshTokenIdleExpiration": "string",
"refreshTokenExpiration": "string"
}'
powershell / RestMethod
curl -L -X POST 'https://$CUSTOM-DOMAIN/admin/v1/settings/oidc' \
-H 'Content-Type: application/json' \
-H 'Accept: application/json' \
-H 'Authorization: Bearer <TOKEN>' \
--data-raw '{
"accessTokenLifetime": "string",
"idTokenLifetime": "string",
"refreshTokenIdleExpiration": "string",
"refreshTokenExpiration": "string"
}'