/** * Agilicus API * Agilicus is API-first. Modern software is controlled by other software, is open, is available for you to use the way you want, securely, simply. The OpenAPI Specification in YAML format is available on [www](https://www.agilicus.com/www/api/agilicus-openapi.yaml) for importing to other tools. A rendered, online viewable and usable version of this specification is available at [api](https://www.agilicus.com/api). You may try the API inline directly in the web page. To do so, first obtain an Authentication Token (the simplest way is to install the Python SDK, and then run `agilicus-cli --issuer https://MYISSUER get-token`). You will need an org-id for most calls (and can obtain from `agilicus-cli --issuer https://MYISSUER list-orgs`). The `MYISSUER` will typically be `auth.MYDOMAIN`, and you will see it as you sign-in to the administrative UI. This API releases on Bearer-Token authentication. To obtain a valid bearer token you will need to Authenticate to an Issuer with OpenID Connect (a superset of OAUTH2). Your \"issuer\" will look like https://auth.MYDOMAIN. For example, when you signed-up, if you said \"use my own domain name\" and assigned a CNAME of cloud.example.com, then your issuer would be https://auth.cloud.example.com. If you selected \"use an Agilicus supplied domain name\", your issuer would look like https://auth.myorg.agilicus.cloud. For test purposes you can use our [Python SDK](https://pypi.org/project/agilicus/) and run `agilicus-cli --issuer https://auth.MYDOMAIN get-token`. This API may be used in any language runtime that supports OpenAPI 3.0, or, you may use our [Python SDK](https://pypi.org/project/agilicus/), our [Typescript SDK](https://www.npmjs.com/package/@agilicus/angular), or our [Golang SDK](https://git.agilicus.com/pub/sdk-go). 100% of the activities in our system our API-driven, from our web-admin, through our progressive web applications, to all internals: there is nothing that is not accessible. For more information, see [developer resources](https://www.agilicus.com/developer). * * The version of the OpenAPI document: 2025.12.16 * Contact: dev@agilicus.com * * NOTE: This class is auto generated by OpenAPI Generator (https://openapi-generator.tech). * https://openapi-generator.tech * Do not edit the class manually. */ import { PolicyRule } from './policyRule'; import { PolicyGroup } from './policyGroup'; export interface _PolicySpec { /** * The name of the policy so that it can be identifiable when applied to organizations or clients */ name?: string; /** * The issuer that this policy applies to */ issuer_id: string | null; /** * The org id corresponding to the issuer whose policy you are updating */ org_id?: string; /** * A list of supported MFA methods. An empty list implies that no MFA methods are acceptable */ supported_mfa_methods: Array; /** * The action to take if none of the conditions evaluate to true. Actions are case sensitive. */ default_action: PolicySpec.DefaultActionEnum; /** * The list of rules defining the policy. A rule consists of conditions, actions, and a priority */ readonly rules?: Array; /** * A list of policy groups ordered by priority. The first item in the list represents the group with the highest priority. A policy group consists of a list of rules. All rules in a group of higher priority will have higher precedence than any rule in a group of lower priority. */ policy_groups?: Array; /** * An identifier for the policy this policy was based on. */ source?: string; } export interface PolicySpec extends _PolicySpec { _builtin_original?: _PolicySpec; _remove_builtin_extensions?: () => void; } export declare class PolicySpecImpl implements _PolicySpec { _builtin_original?: _PolicySpec; name: string | undefined; issuer_id: string | null; org_id: string | undefined; supported_mfa_methods: Array; default_action: PolicySpec.DefaultActionEnum; readonly rules: Array | undefined; policy_groups: Array | undefined; source: string | undefined; constructor(base: _PolicySpec); _remove_builtin_extensions(): void; } export declare namespace PolicySpec { type DefaultActionEnum = 'do_mfa' | 'dont_mfa' | 'deny_login' | 'allow_login' | 'authenticate'; const DefaultActionEnum: { do_mfa: DefaultActionEnum; dont_mfa: DefaultActionEnum; deny_login: DefaultActionEnum; allow_login: DefaultActionEnum; authenticate: DefaultActionEnum; }; } export declare function newPolicySpecImpl(base: _PolicySpec): PolicySpecImpl;