import * as pulumi from "@pulumi/pulumi"; import * as inputs from "../types/input"; import * as outputs from "../types/output"; /** * This resource provides the Setting resource in Oracle Cloud Infrastructure Identity Domains service. * Api doc link for the resource: https://docs.oracle.com/iaas/api/#/en/identity-domains/latest/Setting * * Example terraform configs related to the resource : https://github.com/oracle/terraform-provider-oci/tree/master/examples/identity_domains * * Replace Settings * * ## Example Usage * * ```typescript * import * as pulumi from "@pulumi/pulumi"; * import * as oci from "@pulumi/oci"; * * const testSetting = new oci.identity.DomainsSetting("test_setting", { * csrAccess: settingCsrAccess, * idcsEndpoint: testDomain.url, * schemas: ["urn:ietf:params:scim:schemas:oracle:idcs:Settings"], * settingId: "Settings", * accountAlwaysTrustScope: settingAccountAlwaysTrustScope === "true", * allowedDomains: ["test.com"], * allowedForgotPasswordFlowReturnUrls: settingAllowedForgotPasswordFlowReturnUrls, * allowedNotificationRedirectUrls: settingAllowedNotificationRedirectUrls, * attributeSets: ["all"], * attributes: "", * auditEventRetentionPeriod: Number(settingAuditEventRetentionPeriod), * authorization: settingAuthorization, * certificateValidation: { * crlCheckOnOcspFailureEnabled: settingCertificateValidationCrlCheckOnOcspFailureEnabled === "true", * crlEnabled: settingCertificateValidationCrlEnabled === "true", * crlLocation: settingCertificateValidationCrlLocation, * crlRefreshInterval: Number(settingCertificateValidationCrlRefreshInterval), * ocspEnabled: settingCertificateValidationOcspEnabled === "true", * ocspResponderUrl: settingCertificateValidationOcspResponderUrl, * ocspSettingsResponderUrlPreferred: settingCertificateValidationOcspSettingsResponderUrlPreferred === "true", * ocspSigningCertificateAlias: settingCertificateValidationOcspSigningCertificateAlias, * ocspTimeoutDuration: Number(settingCertificateValidationOcspTimeoutDuration), * ocspUnknownResponseStatusAllowed: settingCertificateValidationOcspUnknownResponseStatusAllowed === "true", * }, * cloudGateCorsSettings: { * cloudGateCorsAllowNullOrigin: settingCloudGateCorsSettingsCloudGateCorsAllowNullOrigin === "true", * cloudGateCorsAllowedOrigins: ["https://test.com"], * cloudGateCorsEnabled: settingCloudGateCorsSettingsCloudGateCorsEnabled === "true", * cloudGateCorsExposedHeaders: settingCloudGateCorsSettingsCloudGateCorsExposedHeaders, * cloudGateCorsMaxAge: Number(settingCloudGateCorsSettingsCloudGateCorsMaxAge), * }, * cloudMigrationCustomUrl: settingCloudMigrationCustomUrl, * cloudMigrationUrlEnabled: settingCloudMigrationUrlEnabled === "true", * companyNames: [{ * locale: settingCompanyNamesLocale, * value: settingCompanyNamesValue, * }], * contactEmails: ["contactEmails@test.com"], * customBranding: settingCustomBranding === "true", * customCssLocation: settingCustomCssLocation, * customHtmlLocation: settingCustomHtmlLocation, * customTranslation: settingCustomTranslation, * defaultTrustScope: settingDefaultTrustScope, * diagnosticLevel: Number(settingDiagnosticLevel), * diagnosticRecordForSearchIdentifiesReturnedResources: settingDiagnosticRecordForSearchIdentifiesReturnedResources === "true", * enableTermsOfUse: settingEnableTermsOfUse === "true", * externalId: "externalId", * iamUpstSessionExpiry: Number(settingIamUpstSessionExpiry), * identityDomainsSettingId: settingId, * images: [{ * type: settingImagesType, * value: settingImagesValue, * display: settingImagesDisplay, * }], * isHostedPage: settingIsHostedPage === "true", * issuer: settingIssuer, * locale: settingLocale, * loginTexts: [{ * locale: settingLoginTextsLocale, * value: settingLoginTextsValue, * }], * maxNoOfAppCmvaToReturn: Number(settingMaxNoOfAppCmvaToReturn), * maxNoOfAppRoleMembersToReturn: Number(settingMaxNoOfAppRoleMembersToReturn), * ocid: settingOcid, * preferredLanguage: settingPreferredLanguage, * prevIssuer: settingPrevIssuer, * privacyPolicyUrl: settingPrivacyPolicyUrl, * purgeConfigs: [{ * resourceName: "resourceName", * retentionPeriod: Number(settingPurgeConfigsRetentionPeriod), * }], * reAuthFactors: ["password"], * reAuthWhenChangingMyAuthenticationFactors: settingReAuthWhenChangingMyAuthenticationFactors === "true", * resourceTypeSchemaVersion: settingResourceTypeSchemaVersion, * serviceAdminCannotListOtherUsers: settingServiceAdminCannotListOtherUsers === "true", * signingCertPublicAccess: settingSigningCertPublicAccess === "true", * subMappingAttr: settingSubMappingAttr, * tags: [{ * key: settingTagsKey, * value: settingTagsValue, * }], * tenantCustomClaims: [{ * allScopes: settingTenantCustomClaimsAllScopes === "true", * expression: settingTenantCustomClaimsExpression === "true", * mode: settingTenantCustomClaimsMode, * name: settingTenantCustomClaimsName, * tokenType: settingTenantCustomClaimsTokenType, * value: settingTenantCustomClaimsValue, * scopes: ["scopes"], * }], * termsOfUseUrl: settingTermsOfUseUrl, * timezone: settingTimezone, * }); * ``` * * ## Import * * Settings can be imported using the `id`, e.g. * * ```sh * $ pulumi import oci:Identity/domainsSetting:DomainsSetting test_setting "idcsEndpoint/{idcsEndpoint}/settings/{settingId}" * ``` */ export declare class DomainsSetting extends pulumi.CustomResource { /** * Get an existing DomainsSetting resource's state with the given name, ID, and optional extra * properties used to qualify the lookup. * * @param name The _unique_ name of the resulting resource. * @param id The _unique_ provider ID of the resource to lookup. * @param state Any extra arguments used during the lookup. * @param opts Optional settings to control the behavior of the CustomResource. */ static get(name: string, id: pulumi.Input, state?: DomainsSettingState, opts?: pulumi.CustomResourceOptions): DomainsSetting; /** * Returns true if the given object is an instance of DomainsSetting. This is designed to work even * when multiple copies of the Pulumi SDK have been loaded into the same process. */ static isInstance(obj: any): obj is DomainsSetting; /** * (Updatable) Indicates whether all the Apps in this customer tenancy should trust each other. A value of true overrides the 'defaultTrustScope' attribute here in Settings, as well as any App-specific 'trustScope' attribute, to force in effect 'trustScope=Account' for every App in this customer tenancy. * * **Added In:** 18.1.6 * * **SCIM++ Properties:** * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean */ readonly accountAlwaysTrustScope: pulumi.Output; /** * (Updatable) One or more email domains allowed in a user's email field. If unassigned, any domain is allowed. * * **SCIM++ Properties:** * * caseExact: false * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ readonly allowedDomains: pulumi.Output; /** * (Updatable) If specified, indicates the set of Urls which can be returned to after successful forgot password flow * * **Added In:** 19.3.3 * * **SCIM++ Properties:** * * type: string * * multiValued: true * * required: false * * mutability: readWrite * * returned: default * * uniqueness: none * * caseExact: false */ readonly allowedForgotPasswordFlowReturnUrls: pulumi.Output; /** * (Updatable) If specified, indicates the set of allowed notification redirect Urls which can be specified as the value of \"notificationRedirectUrl\" in the POST .../admin/v1/MePasswordResetRequestor request payload, which will then be included in the reset password email notification sent to a user as part of the forgot password / password reset flow. * * **Added In:** 2009041201 * * **SCIM++ Properties:** * * type: string * * multiValued: true * * required: false * * mutability: readWrite * * returned: default * * uniqueness: none * * caseExact: false */ readonly allowedNotificationRedirectUrls: pulumi.Output; /** * (Updatable) A multi-valued list of strings indicating the return type of attribute definition. The specified set of attributes can be fetched by the return type of the attribute. One or more values can be given together to fetch more than one group of attributes. If 'attributes' query parameter is also available, union of the two is fetched. Valid values - all, always, never, request, default. Values are case-insensitive. */ readonly attributeSets: pulumi.Output; /** * (Updatable) A comma-delimited string that specifies the names of resource attributes that should be returned in the response. By default, a response that contains resource attributes contains only attributes that are defined in the schema for that resource type as returned=always or returned=default. An attribute that is defined as returned=request is returned in a response only if the request specifies its name in the value of this query parameter. If a request specifies this query parameter, the response contains the attributes that this query parameter specifies, as well as any attribute that is defined as returned=always. */ readonly attributes: pulumi.Output; /** * (Updatable) Audit Event retention period. If set, overrides default of 30 days after which Audit Events will be purged * * **Added In:** 19.2.1 * * **SCIM++ Properties:** * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: integer */ readonly auditEventRetentionPeriod: pulumi.Output; /** * (Updatable) The Authorization field value consists of credentials containing the authentication information of the user agent for the realm of the resource being requested. */ readonly authorization: pulumi.Output; /** * (Updatable) Certificate Validation Config * * **Added In:** 2010242156 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: complex * * uniqueness: none */ readonly certificateValidation: pulumi.Output; /** * (Updatable) The attribute to store the cloud account name * * **Deprecated Since: 2011192329** * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readOnly * * required: false * * returned: default * * type: string * * uniqueness: none */ readonly cloudAccountName: pulumi.Output; /** * (Updatable) A complex attribute that specifies the Cloud Gate cross origin resource sharing settings. * * **Added In:** 2011192329 * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: complex * * uniqueness: none */ readonly cloudGateCorsSettings: pulumi.Output; /** * (Updatable) If specified, indicates the custom SIM Migrator Url which can be used while SIM to Oracle Identity Cloud Service CloudAccount Migration. * * **Added In:** 2012271618 * * **SCIM++ Properties:** * * type: string * * multiValued: false * * required: false * * mutability: readWrite * * returned: default * * uniqueness: none * * caseExact: false */ readonly cloudMigrationCustomUrl: pulumi.Output; /** * (Updatable) CloudAccountMigration: Enable Custom SIM Migrator Url. * * **Added In:** 2012271618 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean * * uniqueness: none */ readonly cloudMigrationUrlEnabled: pulumi.Output; /** * (Updatable) Name of the company in different locales * * **SCIM++ Properties:** * * idcsCompositeKey: [locale] * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: complex */ readonly companyNames: pulumi.Output; /** * (Updatable) Oracle Cloud Infrastructure Compartment Id (ocid) in which the resource lives. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: false * * multiValued: false * * mutability: readOnly * * required: false * * returned: default * * type: string * * uniqueness: none */ readonly compartmentOcid: pulumi.Output; /** * (Updatable) Contact emails used to notify tenants. Can be one or more user or group alias emails. * * **SCIM++ Properties:** * * caseExact: false * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ readonly contactEmails: pulumi.Output; /** * (Updatable) This value indicates whether Customer Service Representatives can login and have readOnly or readWrite access. A value of 'none' means CSR cannot login to the services. * * **SCIM++ Properties:** * * multiValued: false * * mutability: readWrite * * required: true * * returned: default * * type: string */ readonly csrAccess: pulumi.Output; /** * (Updatable) Indicates if the branding is default or custom * * **SCIM++ Properties:** * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean */ readonly customBranding: pulumi.Output; /** * (Updatable) Storage URL location where the sanitized custom css is located * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ readonly customCssLocation: pulumi.Output; /** * (Updatable) Storage URL location where the sanitized custom html is located * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ readonly customHtmlLocation: pulumi.Output; /** * (Updatable) Custom translations (JSON String) * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ readonly customTranslation: pulumi.Output; /** * (Updatable) Default name of the Company in different locales * * **Added In:** 18.2.2 * * **SCIM++ Properties:** * * idcsCompositeKey: [locale] * * multiValued: true * * mutability: readOnly * * required: false * * returned: default * * type: complex */ readonly defaultCompanyNames: pulumi.Output; /** * (Updatable) References to various images * * **Added In:** 18.2.2 * * **SCIM++ Properties:** * * idcsCompositeKey: [type] * * multiValued: true * * mutability: readOnly * * required: false * * returned: default * * type: complex */ readonly defaultImages: pulumi.Output; /** * (Updatable) Default Login text in different locales * * **Added In:** 18.2.2 * * **SCIM++ Properties:** * * idcsCompositeKey: [locale] * * multiValued: true * * mutability: readOnly * * required: false * * returned: default * * type: complex */ readonly defaultLoginTexts: pulumi.Output; /** * (Updatable) **Deprecated Since: 18.3.6** * * **SCIM++ Properties:** * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string Indicates the default trust scope for all apps */ readonly defaultTrustScope: pulumi.Output; /** * (Updatable) A boolean flag indicating this resource in the process of being deleted. Usually set to true when synchronous deletion of the resource would take too long. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: true * * multiValued: false * * mutability: readOnly * * required: false * * returned: default * * type: boolean * * uniqueness: none */ readonly deleteInProgress: pulumi.Output; /** * (Updatable) The level of diagnostic logging that is currently in effect. A level of 0 (zero) indicates that diagnostic logging is disabled. A level of 1 (one) indicates that diagnostic logging is enabled. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: integer * * uniqueness: none */ readonly diagnosticLevel: pulumi.Output; /** * (Updatable) Controls whether DiagnosticRecords for external search-operations (against SCIM resource-types in the Admin service) identify returned resources. If true, indicates that for each successful external search-operation at least one DiagnosticRecord will include at least one identifier for each matching resource that is returned in that search-response. If false, no DiagnosticRecord should be expected to identify returned resources for a search-operation. The default value is false. * * **Added In:** 2011192329 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean * * uniqueness: none */ readonly diagnosticRecordForSearchIdentifiesReturnedResources: pulumi.Output; /** * (Updatable) The end time up to which diagnostic recording is switched on * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: false * * multiValued: false * * mutability: readOnly * * required: false * * returned: default * * type: dateTime * * uniqueness: none */ readonly diagnosticTracingUpto: pulumi.Output; /** * (Updatable) Oracle Cloud Infrastructure Domain Id (ocid) in which the resource lives. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: false * * multiValued: false * * mutability: readOnly * * required: false * * returned: default * * type: string * * uniqueness: none */ readonly domainOcid: pulumi.Output; /** * (Updatable) Indicates if Terms of Use is enabled in UI * * **Added In:** 18.2.4 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean * * uniqueness: none */ readonly enableTermsOfUse: pulumi.Output; /** * (Updatable) An identifier for the Resource as defined by the Service Consumer. The externalId may simplify identification of the Resource between Service Consumer and Service Provider by allowing the Consumer to refer to the Resource with its own identifier, obviating the need to store a local mapping between the local identifier of the Resource and the identifier used by the Service Provider. Each Resource MAY include a non-empty externalId value. The value of the externalId attribute is always issued by the Service Consumer and can never be specified by the Service Provider. The Service Provider MUST always interpret the externalId as scoped to the Service Consumer's tenant. * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ readonly externalId: pulumi.Output; /** * (Updatable) Maximum duration for IAM User Principal Session Token expiry * * **Added In:** 2307071836 * * **SCIM++ Properties:** * * idcsSearchable: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: integer * * uniqueness: none */ readonly iamUpstSessionExpiry: pulumi.Output; /** * (Updatable) The User or App who created the Resource * * **SCIM++ Properties:** * * idcsSearchable: true * * multiValued: false * * mutability: readOnly * * required: true * * returned: default * * type: complex */ readonly idcsCreatedBies: pulumi.Output; /** * The basic endpoint for the identity domain */ readonly idcsEndpoint: pulumi.Output; /** * (Updatable) The User or App who modified the Resource * * **SCIM++ Properties:** * * idcsSearchable: true * * multiValued: false * * mutability: readOnly * * required: false * * returned: default * * type: complex */ readonly idcsLastModifiedBies: pulumi.Output; /** * (Updatable) The release number when the resource was upgraded. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: false * * multiValued: false * * mutability: readOnly * * required: false * * returned: request * * type: string * * uniqueness: none */ readonly idcsLastUpgradedInRelease: pulumi.Output; /** * (Updatable) Each value of this attribute specifies an operation that only an internal client may perform on this particular resource. * * **SCIM++ Properties:** * * idcsSearchable: false * * multiValued: true * * mutability: readOnly * * required: false * * returned: request * * type: string * * uniqueness: none */ readonly idcsPreventedOperations: pulumi.Output; /** * (Updatable) Unique identifier for the SCIM Resource as defined by the Service Provider. Each representation of the Resource MUST include a non-empty id value. This identifier MUST be unique across the Service Provider's entire set of Resources. It MUST be a stable, non-reassignable identifier that does not change when the same Resource is returned in subsequent requests. The value of the id attribute is always issued by the Service Provider and MUST never be specified by the Service Consumer. bulkId: is a reserved keyword and MUST NOT be used in the unique identifier. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: true * * multiValued: false * * mutability: readOnly * * required: false * * returned: always * * type: string * * uniqueness: global */ readonly identityDomainsSettingId: pulumi.Output; /** * (Updatable) References to various images * * **SCIM++ Properties:** * * idcsCompositeKey: [type] * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: complex */ readonly images: pulumi.Output; /** * (Updatable) Indicates if 'hosted' option was selected * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean * * uniqueness: none */ readonly isHostedPage: pulumi.Output; /** * (Updatable) Tenant issuer. * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ readonly issuer: pulumi.Output; /** * (Updatable) Default location for purposes of localizing items such as currency, date and time format, numerical representations, and so on. * * **SCIM++ Properties:** * * caseExact: false * * idcsCanonicalValueSourceFilter: attrName eq "locales" and attrValues.value eq "$(locale)" * * idcsCanonicalValueSourceResourceType: AllowedValue * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ readonly locale: pulumi.Output; /** * (Updatable) Login text in different locales * * **SCIM++ Properties:** * * idcsCompositeKey: [locale] * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: complex */ readonly loginTexts: pulumi.Output; /** * (Updatable) Limit the maximum return of CMVA for an App * * **Added In:** 2111112015 * * **SCIM++ Properties:** * * idcsMinValue: 0 * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: integer * * uniqueness: none */ readonly maxNoOfAppCmvaToReturn: pulumi.Output; /** * (Updatable) Limit the maximum return of members for an AppRole * * **Added In:** 2111112015 * * **SCIM++ Properties:** * * idcsMinValue: 0 * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: integer * * uniqueness: none */ readonly maxNoOfAppRoleMembersToReturn: pulumi.Output; /** * (Updatable) A complex attribute that contains resource metadata. All sub-attributes are OPTIONAL. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: true * * multiValued: false * * mutability: readOnly * * required: false * * returned: default * * idcsCsvAttributeNameMappings: [[columnHeaderName:Created Date, mapsTo:meta.created]] * * type: complex */ readonly metas: pulumi.Output; /** * (Updatable) Database Migration Status * * **Added In:** 19.2.1 * * **SCIM++ Properties:** * * caseExact: true * * multiValued: false * * mutability: readOnly * * required: false * * returned: default * * type: string * * uniqueness: none */ readonly migrationStatus: pulumi.Output; /** * (Updatable) Unique Oracle Cloud Infrastructure identifier for the SCIM Resource. * * **SCIM++ Properties:** * * caseExact: true * * idcsSearchable: true * * multiValued: false * * mutability: immutable * * required: false * * returned: default * * type: string * * uniqueness: global */ readonly ocid: pulumi.Output; /** * (Updatable) On-Premises provisioning feature toggle. * * **Added In:** 19.2.1 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readOnly * * required: false * * returned: default * * type: boolean * * uniqueness: none */ readonly onPremisesProvisioning: pulumi.Output; /** * (Updatable) Preferred written or spoken language used for localized user interfaces * * **SCIM++ Properties:** * * caseExact: false * * idcsCanonicalValueSourceFilter: attrName eq "languages" and attrValues.value eq "$(preferredLanguage)" * * idcsCanonicalValueSourceResourceType: AllowedValue * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ readonly preferredLanguage: pulumi.Output; /** * (Updatable) Previous Tenant issuer. This is an Oracle Identity Cloud Service internal attribute which is not meant to be directly modified by ID Admin. Even if the request body (Settings) contains this attribute, the actual value will be set according to the Oracle Identity Cloud Service internal logic rather than solely based on the value provided in the request payload. * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: request * * type: string * * uniqueness: none */ readonly prevIssuer: pulumi.Output; /** * (Updatable) Privacy Policy URL * * **Added In:** 18.2.4 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ readonly privacyPolicyUrl: pulumi.Output; /** * (Updatable) Purge Configs for different Resource Types * * **Deprecated Since: 19.1.6** * * **SCIM++ Properties:** * * idcsCompositeKey: [resourceName] * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: complex */ readonly purgeConfigs: pulumi.Output; /** * (Updatable) If reAuthWhenChangingMyAuthenticationFactors is true (default), this attribute specifies which re-authentication factor to use. Allowed value is \"password\". * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: string */ readonly reAuthFactors: pulumi.Output; /** * (Updatable) Specifies whether re-authentication is required or not when a user changes one of their security factors such as password or email. Default is true to ensure more secure behavior. * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean * * uniqueness: none */ readonly reAuthWhenChangingMyAuthenticationFactors: pulumi.Output; /** * (Updatable) An endpoint-specific schema version number to use in the Request. Allowed version values are Earliest Version or Latest Version as specified in each REST API endpoint description, or any sequential number inbetween. All schema attributes/body parameters are a part of version 1. After version 1, any attributes added or deprecated will be tagged with the version that they were added to or deprecated in. If no version is provided, the latest schema version is returned. */ readonly resourceTypeSchemaVersion: pulumi.Output; /** * (Updatable) REQUIRED. The schemas attribute is an array of Strings which allows introspection of the supported schema version for a SCIM representation as well any schema extensions supported by that representation. Each String value must be a unique URI. This specification defines URIs for User, Group, and a standard \"enterprise\" extension. All representations of SCIM schema MUST include a non-zero value array with value(s) of the URIs supported by that representation. Duplicate values MUST NOT be included. Value order is not specified and MUST not impact behavior. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: false * * multiValued: true * * mutability: readWrite * * required: true * * returned: default * * type: string * * uniqueness: none */ readonly schemas: pulumi.Output; /** * (Updatable) By default, a service admin can list all users in stripe. If true, a service admin cannot list other users. * * **Added In:** 2108190438 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean */ readonly serviceAdminCannotListOtherUsers: pulumi.Output; /** * ID of the resource */ readonly settingId: pulumi.Output; /** * (Updatable) Indicates if access on SigningCert is allowed to public or not * * **Added In:** 17.3.4 * * **SCIM++ Properties:** * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean */ readonly signingCertPublicAccess: pulumi.Output; /** * (Updatable) **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none Subject mapping user profile attribute. The input format should be SCIM compliant. This attribute should be of type String and multivalued to false. */ readonly subMappingAttr: pulumi.Output; /** * (Updatable) A list of tags on this resource. * * **SCIM++ Properties:** * * idcsCompositeKey: [key, value] * * idcsSearchable: true * * multiValued: true * * mutability: readWrite * * required: false * * returned: request * * type: complex * * uniqueness: none */ readonly tags: pulumi.Output; /** * (Updatable) Oracle Cloud Infrastructure Tenant Id (ocid) in which the resource lives. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: false * * multiValued: false * * mutability: readOnly * * required: false * * returned: default * * type: string * * uniqueness: none */ readonly tenancyOcid: pulumi.Output; /** * (Updatable) Custom claims associated with the specific tenant * * **Added In:** 18.4.2 * * **SCIM++ Properties:** * * idcsCompositeKey: [name] * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: complex * * uniqueness: none */ readonly tenantCustomClaims: pulumi.Output; /** * (Updatable) Terms of Use URL * * **Added In:** 18.2.4 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ readonly termsOfUseUrl: pulumi.Output; /** * (Updatable) User's timezone * * **SCIM++ Properties:** * * caseExact: false * * idcsCanonicalValueSourceFilter: attrName eq "timezones" and attrValues.value eq "$(timezone)" * * idcsCanonicalValueSourceResourceType: AllowedValue * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none * * ** IMPORTANT ** * Any change to a property that does not support update will force the destruction and recreation of the resource with the new property values */ readonly timezone: pulumi.Output; /** * Create a DomainsSetting resource with the given unique name, arguments, and options. * * @param name The _unique_ name of the resource. * @param args The arguments to use to populate this resource's properties. * @param opts A bag of options that control this resource's behavior. */ constructor(name: string, args: DomainsSettingArgs, opts?: pulumi.CustomResourceOptions); } /** * Input properties used for looking up and filtering DomainsSetting resources. */ export interface DomainsSettingState { /** * (Updatable) Indicates whether all the Apps in this customer tenancy should trust each other. A value of true overrides the 'defaultTrustScope' attribute here in Settings, as well as any App-specific 'trustScope' attribute, to force in effect 'trustScope=Account' for every App in this customer tenancy. * * **Added In:** 18.1.6 * * **SCIM++ Properties:** * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean */ accountAlwaysTrustScope?: pulumi.Input; /** * (Updatable) One or more email domains allowed in a user's email field. If unassigned, any domain is allowed. * * **SCIM++ Properties:** * * caseExact: false * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ allowedDomains?: pulumi.Input[] | undefined>; /** * (Updatable) If specified, indicates the set of Urls which can be returned to after successful forgot password flow * * **Added In:** 19.3.3 * * **SCIM++ Properties:** * * type: string * * multiValued: true * * required: false * * mutability: readWrite * * returned: default * * uniqueness: none * * caseExact: false */ allowedForgotPasswordFlowReturnUrls?: pulumi.Input[] | undefined>; /** * (Updatable) If specified, indicates the set of allowed notification redirect Urls which can be specified as the value of \"notificationRedirectUrl\" in the POST .../admin/v1/MePasswordResetRequestor request payload, which will then be included in the reset password email notification sent to a user as part of the forgot password / password reset flow. * * **Added In:** 2009041201 * * **SCIM++ Properties:** * * type: string * * multiValued: true * * required: false * * mutability: readWrite * * returned: default * * uniqueness: none * * caseExact: false */ allowedNotificationRedirectUrls?: pulumi.Input[] | undefined>; /** * (Updatable) A multi-valued list of strings indicating the return type of attribute definition. The specified set of attributes can be fetched by the return type of the attribute. One or more values can be given together to fetch more than one group of attributes. If 'attributes' query parameter is also available, union of the two is fetched. Valid values - all, always, never, request, default. Values are case-insensitive. */ attributeSets?: pulumi.Input[] | undefined>; /** * (Updatable) A comma-delimited string that specifies the names of resource attributes that should be returned in the response. By default, a response that contains resource attributes contains only attributes that are defined in the schema for that resource type as returned=always or returned=default. An attribute that is defined as returned=request is returned in a response only if the request specifies its name in the value of this query parameter. If a request specifies this query parameter, the response contains the attributes that this query parameter specifies, as well as any attribute that is defined as returned=always. */ attributes?: pulumi.Input; /** * (Updatable) Audit Event retention period. If set, overrides default of 30 days after which Audit Events will be purged * * **Added In:** 19.2.1 * * **SCIM++ Properties:** * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: integer */ auditEventRetentionPeriod?: pulumi.Input; /** * (Updatable) The Authorization field value consists of credentials containing the authentication information of the user agent for the realm of the resource being requested. */ authorization?: pulumi.Input; /** * (Updatable) Certificate Validation Config * * **Added In:** 2010242156 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: complex * * uniqueness: none */ certificateValidation?: pulumi.Input; /** * (Updatable) The attribute to store the cloud account name * * **Deprecated Since: 2011192329** * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readOnly * * required: false * * returned: default * * type: string * * uniqueness: none */ cloudAccountName?: pulumi.Input; /** * (Updatable) A complex attribute that specifies the Cloud Gate cross origin resource sharing settings. * * **Added In:** 2011192329 * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: complex * * uniqueness: none */ cloudGateCorsSettings?: pulumi.Input; /** * (Updatable) If specified, indicates the custom SIM Migrator Url which can be used while SIM to Oracle Identity Cloud Service CloudAccount Migration. * * **Added In:** 2012271618 * * **SCIM++ Properties:** * * type: string * * multiValued: false * * required: false * * mutability: readWrite * * returned: default * * uniqueness: none * * caseExact: false */ cloudMigrationCustomUrl?: pulumi.Input; /** * (Updatable) CloudAccountMigration: Enable Custom SIM Migrator Url. * * **Added In:** 2012271618 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean * * uniqueness: none */ cloudMigrationUrlEnabled?: pulumi.Input; /** * (Updatable) Name of the company in different locales * * **SCIM++ Properties:** * * idcsCompositeKey: [locale] * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: complex */ companyNames?: pulumi.Input[] | undefined>; /** * (Updatable) Oracle Cloud Infrastructure Compartment Id (ocid) in which the resource lives. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: false * * multiValued: false * * mutability: readOnly * * required: false * * returned: default * * type: string * * uniqueness: none */ compartmentOcid?: pulumi.Input; /** * (Updatable) Contact emails used to notify tenants. Can be one or more user or group alias emails. * * **SCIM++ Properties:** * * caseExact: false * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ contactEmails?: pulumi.Input[] | undefined>; /** * (Updatable) This value indicates whether Customer Service Representatives can login and have readOnly or readWrite access. A value of 'none' means CSR cannot login to the services. * * **SCIM++ Properties:** * * multiValued: false * * mutability: readWrite * * required: true * * returned: default * * type: string */ csrAccess?: pulumi.Input; /** * (Updatable) Indicates if the branding is default or custom * * **SCIM++ Properties:** * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean */ customBranding?: pulumi.Input; /** * (Updatable) Storage URL location where the sanitized custom css is located * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ customCssLocation?: pulumi.Input; /** * (Updatable) Storage URL location where the sanitized custom html is located * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ customHtmlLocation?: pulumi.Input; /** * (Updatable) Custom translations (JSON String) * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ customTranslation?: pulumi.Input; /** * (Updatable) Default name of the Company in different locales * * **Added In:** 18.2.2 * * **SCIM++ Properties:** * * idcsCompositeKey: [locale] * * multiValued: true * * mutability: readOnly * * required: false * * returned: default * * type: complex */ defaultCompanyNames?: pulumi.Input[] | undefined>; /** * (Updatable) References to various images * * **Added In:** 18.2.2 * * **SCIM++ Properties:** * * idcsCompositeKey: [type] * * multiValued: true * * mutability: readOnly * * required: false * * returned: default * * type: complex */ defaultImages?: pulumi.Input[] | undefined>; /** * (Updatable) Default Login text in different locales * * **Added In:** 18.2.2 * * **SCIM++ Properties:** * * idcsCompositeKey: [locale] * * multiValued: true * * mutability: readOnly * * required: false * * returned: default * * type: complex */ defaultLoginTexts?: pulumi.Input[] | undefined>; /** * (Updatable) **Deprecated Since: 18.3.6** * * **SCIM++ Properties:** * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string Indicates the default trust scope for all apps */ defaultTrustScope?: pulumi.Input; /** * (Updatable) A boolean flag indicating this resource in the process of being deleted. Usually set to true when synchronous deletion of the resource would take too long. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: true * * multiValued: false * * mutability: readOnly * * required: false * * returned: default * * type: boolean * * uniqueness: none */ deleteInProgress?: pulumi.Input; /** * (Updatable) The level of diagnostic logging that is currently in effect. A level of 0 (zero) indicates that diagnostic logging is disabled. A level of 1 (one) indicates that diagnostic logging is enabled. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: integer * * uniqueness: none */ diagnosticLevel?: pulumi.Input; /** * (Updatable) Controls whether DiagnosticRecords for external search-operations (against SCIM resource-types in the Admin service) identify returned resources. If true, indicates that for each successful external search-operation at least one DiagnosticRecord will include at least one identifier for each matching resource that is returned in that search-response. If false, no DiagnosticRecord should be expected to identify returned resources for a search-operation. The default value is false. * * **Added In:** 2011192329 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean * * uniqueness: none */ diagnosticRecordForSearchIdentifiesReturnedResources?: pulumi.Input; /** * (Updatable) The end time up to which diagnostic recording is switched on * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: false * * multiValued: false * * mutability: readOnly * * required: false * * returned: default * * type: dateTime * * uniqueness: none */ diagnosticTracingUpto?: pulumi.Input; /** * (Updatable) Oracle Cloud Infrastructure Domain Id (ocid) in which the resource lives. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: false * * multiValued: false * * mutability: readOnly * * required: false * * returned: default * * type: string * * uniqueness: none */ domainOcid?: pulumi.Input; /** * (Updatable) Indicates if Terms of Use is enabled in UI * * **Added In:** 18.2.4 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean * * uniqueness: none */ enableTermsOfUse?: pulumi.Input; /** * (Updatable) An identifier for the Resource as defined by the Service Consumer. The externalId may simplify identification of the Resource between Service Consumer and Service Provider by allowing the Consumer to refer to the Resource with its own identifier, obviating the need to store a local mapping between the local identifier of the Resource and the identifier used by the Service Provider. Each Resource MAY include a non-empty externalId value. The value of the externalId attribute is always issued by the Service Consumer and can never be specified by the Service Provider. The Service Provider MUST always interpret the externalId as scoped to the Service Consumer's tenant. * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ externalId?: pulumi.Input; /** * (Updatable) Maximum duration for IAM User Principal Session Token expiry * * **Added In:** 2307071836 * * **SCIM++ Properties:** * * idcsSearchable: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: integer * * uniqueness: none */ iamUpstSessionExpiry?: pulumi.Input; /** * (Updatable) The User or App who created the Resource * * **SCIM++ Properties:** * * idcsSearchable: true * * multiValued: false * * mutability: readOnly * * required: true * * returned: default * * type: complex */ idcsCreatedBies?: pulumi.Input[] | undefined>; /** * The basic endpoint for the identity domain */ idcsEndpoint?: pulumi.Input; /** * (Updatable) The User or App who modified the Resource * * **SCIM++ Properties:** * * idcsSearchable: true * * multiValued: false * * mutability: readOnly * * required: false * * returned: default * * type: complex */ idcsLastModifiedBies?: pulumi.Input[] | undefined>; /** * (Updatable) The release number when the resource was upgraded. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: false * * multiValued: false * * mutability: readOnly * * required: false * * returned: request * * type: string * * uniqueness: none */ idcsLastUpgradedInRelease?: pulumi.Input; /** * (Updatable) Each value of this attribute specifies an operation that only an internal client may perform on this particular resource. * * **SCIM++ Properties:** * * idcsSearchable: false * * multiValued: true * * mutability: readOnly * * required: false * * returned: request * * type: string * * uniqueness: none */ idcsPreventedOperations?: pulumi.Input[] | undefined>; /** * (Updatable) Unique identifier for the SCIM Resource as defined by the Service Provider. Each representation of the Resource MUST include a non-empty id value. This identifier MUST be unique across the Service Provider's entire set of Resources. It MUST be a stable, non-reassignable identifier that does not change when the same Resource is returned in subsequent requests. The value of the id attribute is always issued by the Service Provider and MUST never be specified by the Service Consumer. bulkId: is a reserved keyword and MUST NOT be used in the unique identifier. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: true * * multiValued: false * * mutability: readOnly * * required: false * * returned: always * * type: string * * uniqueness: global */ identityDomainsSettingId?: pulumi.Input; /** * (Updatable) References to various images * * **SCIM++ Properties:** * * idcsCompositeKey: [type] * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: complex */ images?: pulumi.Input[] | undefined>; /** * (Updatable) Indicates if 'hosted' option was selected * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean * * uniqueness: none */ isHostedPage?: pulumi.Input; /** * (Updatable) Tenant issuer. * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ issuer?: pulumi.Input; /** * (Updatable) Default location for purposes of localizing items such as currency, date and time format, numerical representations, and so on. * * **SCIM++ Properties:** * * caseExact: false * * idcsCanonicalValueSourceFilter: attrName eq "locales" and attrValues.value eq "$(locale)" * * idcsCanonicalValueSourceResourceType: AllowedValue * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ locale?: pulumi.Input; /** * (Updatable) Login text in different locales * * **SCIM++ Properties:** * * idcsCompositeKey: [locale] * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: complex */ loginTexts?: pulumi.Input[] | undefined>; /** * (Updatable) Limit the maximum return of CMVA for an App * * **Added In:** 2111112015 * * **SCIM++ Properties:** * * idcsMinValue: 0 * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: integer * * uniqueness: none */ maxNoOfAppCmvaToReturn?: pulumi.Input; /** * (Updatable) Limit the maximum return of members for an AppRole * * **Added In:** 2111112015 * * **SCIM++ Properties:** * * idcsMinValue: 0 * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: integer * * uniqueness: none */ maxNoOfAppRoleMembersToReturn?: pulumi.Input; /** * (Updatable) A complex attribute that contains resource metadata. All sub-attributes are OPTIONAL. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: true * * multiValued: false * * mutability: readOnly * * required: false * * returned: default * * idcsCsvAttributeNameMappings: [[columnHeaderName:Created Date, mapsTo:meta.created]] * * type: complex */ metas?: pulumi.Input[] | undefined>; /** * (Updatable) Database Migration Status * * **Added In:** 19.2.1 * * **SCIM++ Properties:** * * caseExact: true * * multiValued: false * * mutability: readOnly * * required: false * * returned: default * * type: string * * uniqueness: none */ migrationStatus?: pulumi.Input; /** * (Updatable) Unique Oracle Cloud Infrastructure identifier for the SCIM Resource. * * **SCIM++ Properties:** * * caseExact: true * * idcsSearchable: true * * multiValued: false * * mutability: immutable * * required: false * * returned: default * * type: string * * uniqueness: global */ ocid?: pulumi.Input; /** * (Updatable) On-Premises provisioning feature toggle. * * **Added In:** 19.2.1 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readOnly * * required: false * * returned: default * * type: boolean * * uniqueness: none */ onPremisesProvisioning?: pulumi.Input; /** * (Updatable) Preferred written or spoken language used for localized user interfaces * * **SCIM++ Properties:** * * caseExact: false * * idcsCanonicalValueSourceFilter: attrName eq "languages" and attrValues.value eq "$(preferredLanguage)" * * idcsCanonicalValueSourceResourceType: AllowedValue * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ preferredLanguage?: pulumi.Input; /** * (Updatable) Previous Tenant issuer. This is an Oracle Identity Cloud Service internal attribute which is not meant to be directly modified by ID Admin. Even if the request body (Settings) contains this attribute, the actual value will be set according to the Oracle Identity Cloud Service internal logic rather than solely based on the value provided in the request payload. * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: request * * type: string * * uniqueness: none */ prevIssuer?: pulumi.Input; /** * (Updatable) Privacy Policy URL * * **Added In:** 18.2.4 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ privacyPolicyUrl?: pulumi.Input; /** * (Updatable) Purge Configs for different Resource Types * * **Deprecated Since: 19.1.6** * * **SCIM++ Properties:** * * idcsCompositeKey: [resourceName] * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: complex */ purgeConfigs?: pulumi.Input[] | undefined>; /** * (Updatable) If reAuthWhenChangingMyAuthenticationFactors is true (default), this attribute specifies which re-authentication factor to use. Allowed value is \"password\". * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: string */ reAuthFactors?: pulumi.Input[] | undefined>; /** * (Updatable) Specifies whether re-authentication is required or not when a user changes one of their security factors such as password or email. Default is true to ensure more secure behavior. * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean * * uniqueness: none */ reAuthWhenChangingMyAuthenticationFactors?: pulumi.Input; /** * (Updatable) An endpoint-specific schema version number to use in the Request. Allowed version values are Earliest Version or Latest Version as specified in each REST API endpoint description, or any sequential number inbetween. All schema attributes/body parameters are a part of version 1. After version 1, any attributes added or deprecated will be tagged with the version that they were added to or deprecated in. If no version is provided, the latest schema version is returned. */ resourceTypeSchemaVersion?: pulumi.Input; /** * (Updatable) REQUIRED. The schemas attribute is an array of Strings which allows introspection of the supported schema version for a SCIM representation as well any schema extensions supported by that representation. Each String value must be a unique URI. This specification defines URIs for User, Group, and a standard \"enterprise\" extension. All representations of SCIM schema MUST include a non-zero value array with value(s) of the URIs supported by that representation. Duplicate values MUST NOT be included. Value order is not specified and MUST not impact behavior. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: false * * multiValued: true * * mutability: readWrite * * required: true * * returned: default * * type: string * * uniqueness: none */ schemas?: pulumi.Input[] | undefined>; /** * (Updatable) By default, a service admin can list all users in stripe. If true, a service admin cannot list other users. * * **Added In:** 2108190438 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean */ serviceAdminCannotListOtherUsers?: pulumi.Input; /** * ID of the resource */ settingId?: pulumi.Input; /** * (Updatable) Indicates if access on SigningCert is allowed to public or not * * **Added In:** 17.3.4 * * **SCIM++ Properties:** * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean */ signingCertPublicAccess?: pulumi.Input; /** * (Updatable) **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none Subject mapping user profile attribute. The input format should be SCIM compliant. This attribute should be of type String and multivalued to false. */ subMappingAttr?: pulumi.Input; /** * (Updatable) A list of tags on this resource. * * **SCIM++ Properties:** * * idcsCompositeKey: [key, value] * * idcsSearchable: true * * multiValued: true * * mutability: readWrite * * required: false * * returned: request * * type: complex * * uniqueness: none */ tags?: pulumi.Input[] | undefined>; /** * (Updatable) Oracle Cloud Infrastructure Tenant Id (ocid) in which the resource lives. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: false * * multiValued: false * * mutability: readOnly * * required: false * * returned: default * * type: string * * uniqueness: none */ tenancyOcid?: pulumi.Input; /** * (Updatable) Custom claims associated with the specific tenant * * **Added In:** 18.4.2 * * **SCIM++ Properties:** * * idcsCompositeKey: [name] * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: complex * * uniqueness: none */ tenantCustomClaims?: pulumi.Input[] | undefined>; /** * (Updatable) Terms of Use URL * * **Added In:** 18.2.4 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ termsOfUseUrl?: pulumi.Input; /** * (Updatable) User's timezone * * **SCIM++ Properties:** * * caseExact: false * * idcsCanonicalValueSourceFilter: attrName eq "timezones" and attrValues.value eq "$(timezone)" * * idcsCanonicalValueSourceResourceType: AllowedValue * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none * * ** IMPORTANT ** * Any change to a property that does not support update will force the destruction and recreation of the resource with the new property values */ timezone?: pulumi.Input; } /** * The set of arguments for constructing a DomainsSetting resource. */ export interface DomainsSettingArgs { /** * (Updatable) Indicates whether all the Apps in this customer tenancy should trust each other. A value of true overrides the 'defaultTrustScope' attribute here in Settings, as well as any App-specific 'trustScope' attribute, to force in effect 'trustScope=Account' for every App in this customer tenancy. * * **Added In:** 18.1.6 * * **SCIM++ Properties:** * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean */ accountAlwaysTrustScope?: pulumi.Input; /** * (Updatable) One or more email domains allowed in a user's email field. If unassigned, any domain is allowed. * * **SCIM++ Properties:** * * caseExact: false * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ allowedDomains?: pulumi.Input[] | undefined>; /** * (Updatable) If specified, indicates the set of Urls which can be returned to after successful forgot password flow * * **Added In:** 19.3.3 * * **SCIM++ Properties:** * * type: string * * multiValued: true * * required: false * * mutability: readWrite * * returned: default * * uniqueness: none * * caseExact: false */ allowedForgotPasswordFlowReturnUrls?: pulumi.Input[] | undefined>; /** * (Updatable) If specified, indicates the set of allowed notification redirect Urls which can be specified as the value of \"notificationRedirectUrl\" in the POST .../admin/v1/MePasswordResetRequestor request payload, which will then be included in the reset password email notification sent to a user as part of the forgot password / password reset flow. * * **Added In:** 2009041201 * * **SCIM++ Properties:** * * type: string * * multiValued: true * * required: false * * mutability: readWrite * * returned: default * * uniqueness: none * * caseExact: false */ allowedNotificationRedirectUrls?: pulumi.Input[] | undefined>; /** * (Updatable) A multi-valued list of strings indicating the return type of attribute definition. The specified set of attributes can be fetched by the return type of the attribute. One or more values can be given together to fetch more than one group of attributes. If 'attributes' query parameter is also available, union of the two is fetched. Valid values - all, always, never, request, default. Values are case-insensitive. */ attributeSets?: pulumi.Input[] | undefined>; /** * (Updatable) A comma-delimited string that specifies the names of resource attributes that should be returned in the response. By default, a response that contains resource attributes contains only attributes that are defined in the schema for that resource type as returned=always or returned=default. An attribute that is defined as returned=request is returned in a response only if the request specifies its name in the value of this query parameter. If a request specifies this query parameter, the response contains the attributes that this query parameter specifies, as well as any attribute that is defined as returned=always. */ attributes?: pulumi.Input; /** * (Updatable) Audit Event retention period. If set, overrides default of 30 days after which Audit Events will be purged * * **Added In:** 19.2.1 * * **SCIM++ Properties:** * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: integer */ auditEventRetentionPeriod?: pulumi.Input; /** * (Updatable) The Authorization field value consists of credentials containing the authentication information of the user agent for the realm of the resource being requested. */ authorization?: pulumi.Input; /** * (Updatable) Certificate Validation Config * * **Added In:** 2010242156 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: complex * * uniqueness: none */ certificateValidation?: pulumi.Input; /** * (Updatable) A complex attribute that specifies the Cloud Gate cross origin resource sharing settings. * * **Added In:** 2011192329 * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: complex * * uniqueness: none */ cloudGateCorsSettings?: pulumi.Input; /** * (Updatable) If specified, indicates the custom SIM Migrator Url which can be used while SIM to Oracle Identity Cloud Service CloudAccount Migration. * * **Added In:** 2012271618 * * **SCIM++ Properties:** * * type: string * * multiValued: false * * required: false * * mutability: readWrite * * returned: default * * uniqueness: none * * caseExact: false */ cloudMigrationCustomUrl?: pulumi.Input; /** * (Updatable) CloudAccountMigration: Enable Custom SIM Migrator Url. * * **Added In:** 2012271618 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean * * uniqueness: none */ cloudMigrationUrlEnabled?: pulumi.Input; /** * (Updatable) Name of the company in different locales * * **SCIM++ Properties:** * * idcsCompositeKey: [locale] * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: complex */ companyNames?: pulumi.Input[] | undefined>; /** * (Updatable) Contact emails used to notify tenants. Can be one or more user or group alias emails. * * **SCIM++ Properties:** * * caseExact: false * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ contactEmails?: pulumi.Input[] | undefined>; /** * (Updatable) This value indicates whether Customer Service Representatives can login and have readOnly or readWrite access. A value of 'none' means CSR cannot login to the services. * * **SCIM++ Properties:** * * multiValued: false * * mutability: readWrite * * required: true * * returned: default * * type: string */ csrAccess: pulumi.Input; /** * (Updatable) Indicates if the branding is default or custom * * **SCIM++ Properties:** * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean */ customBranding?: pulumi.Input; /** * (Updatable) Storage URL location where the sanitized custom css is located * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ customCssLocation?: pulumi.Input; /** * (Updatable) Storage URL location where the sanitized custom html is located * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ customHtmlLocation?: pulumi.Input; /** * (Updatable) Custom translations (JSON String) * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ customTranslation?: pulumi.Input; /** * (Updatable) **Deprecated Since: 18.3.6** * * **SCIM++ Properties:** * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string Indicates the default trust scope for all apps */ defaultTrustScope?: pulumi.Input; /** * (Updatable) The level of diagnostic logging that is currently in effect. A level of 0 (zero) indicates that diagnostic logging is disabled. A level of 1 (one) indicates that diagnostic logging is enabled. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: integer * * uniqueness: none */ diagnosticLevel?: pulumi.Input; /** * (Updatable) Controls whether DiagnosticRecords for external search-operations (against SCIM resource-types in the Admin service) identify returned resources. If true, indicates that for each successful external search-operation at least one DiagnosticRecord will include at least one identifier for each matching resource that is returned in that search-response. If false, no DiagnosticRecord should be expected to identify returned resources for a search-operation. The default value is false. * * **Added In:** 2011192329 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean * * uniqueness: none */ diagnosticRecordForSearchIdentifiesReturnedResources?: pulumi.Input; /** * (Updatable) Indicates if Terms of Use is enabled in UI * * **Added In:** 18.2.4 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean * * uniqueness: none */ enableTermsOfUse?: pulumi.Input; /** * (Updatable) An identifier for the Resource as defined by the Service Consumer. The externalId may simplify identification of the Resource between Service Consumer and Service Provider by allowing the Consumer to refer to the Resource with its own identifier, obviating the need to store a local mapping between the local identifier of the Resource and the identifier used by the Service Provider. Each Resource MAY include a non-empty externalId value. The value of the externalId attribute is always issued by the Service Consumer and can never be specified by the Service Provider. The Service Provider MUST always interpret the externalId as scoped to the Service Consumer's tenant. * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ externalId?: pulumi.Input; /** * (Updatable) Maximum duration for IAM User Principal Session Token expiry * * **Added In:** 2307071836 * * **SCIM++ Properties:** * * idcsSearchable: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: integer * * uniqueness: none */ iamUpstSessionExpiry?: pulumi.Input; /** * The basic endpoint for the identity domain */ idcsEndpoint: pulumi.Input; /** * (Updatable) Unique identifier for the SCIM Resource as defined by the Service Provider. Each representation of the Resource MUST include a non-empty id value. This identifier MUST be unique across the Service Provider's entire set of Resources. It MUST be a stable, non-reassignable identifier that does not change when the same Resource is returned in subsequent requests. The value of the id attribute is always issued by the Service Provider and MUST never be specified by the Service Consumer. bulkId: is a reserved keyword and MUST NOT be used in the unique identifier. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: true * * multiValued: false * * mutability: readOnly * * required: false * * returned: always * * type: string * * uniqueness: global */ identityDomainsSettingId?: pulumi.Input; /** * (Updatable) References to various images * * **SCIM++ Properties:** * * idcsCompositeKey: [type] * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: complex */ images?: pulumi.Input[] | undefined>; /** * (Updatable) Indicates if 'hosted' option was selected * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean * * uniqueness: none */ isHostedPage?: pulumi.Input; /** * (Updatable) Tenant issuer. * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ issuer?: pulumi.Input; /** * (Updatable) Default location for purposes of localizing items such as currency, date and time format, numerical representations, and so on. * * **SCIM++ Properties:** * * caseExact: false * * idcsCanonicalValueSourceFilter: attrName eq "locales" and attrValues.value eq "$(locale)" * * idcsCanonicalValueSourceResourceType: AllowedValue * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ locale?: pulumi.Input; /** * (Updatable) Login text in different locales * * **SCIM++ Properties:** * * idcsCompositeKey: [locale] * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: complex */ loginTexts?: pulumi.Input[] | undefined>; /** * (Updatable) Limit the maximum return of CMVA for an App * * **Added In:** 2111112015 * * **SCIM++ Properties:** * * idcsMinValue: 0 * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: integer * * uniqueness: none */ maxNoOfAppCmvaToReturn?: pulumi.Input; /** * (Updatable) Limit the maximum return of members for an AppRole * * **Added In:** 2111112015 * * **SCIM++ Properties:** * * idcsMinValue: 0 * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: integer * * uniqueness: none */ maxNoOfAppRoleMembersToReturn?: pulumi.Input; /** * (Updatable) Unique Oracle Cloud Infrastructure identifier for the SCIM Resource. * * **SCIM++ Properties:** * * caseExact: true * * idcsSearchable: true * * multiValued: false * * mutability: immutable * * required: false * * returned: default * * type: string * * uniqueness: global */ ocid?: pulumi.Input; /** * (Updatable) Preferred written or spoken language used for localized user interfaces * * **SCIM++ Properties:** * * caseExact: false * * idcsCanonicalValueSourceFilter: attrName eq "languages" and attrValues.value eq "$(preferredLanguage)" * * idcsCanonicalValueSourceResourceType: AllowedValue * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ preferredLanguage?: pulumi.Input; /** * (Updatable) Previous Tenant issuer. This is an Oracle Identity Cloud Service internal attribute which is not meant to be directly modified by ID Admin. Even if the request body (Settings) contains this attribute, the actual value will be set according to the Oracle Identity Cloud Service internal logic rather than solely based on the value provided in the request payload. * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: request * * type: string * * uniqueness: none */ prevIssuer?: pulumi.Input; /** * (Updatable) Privacy Policy URL * * **Added In:** 18.2.4 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ privacyPolicyUrl?: pulumi.Input; /** * (Updatable) Purge Configs for different Resource Types * * **Deprecated Since: 19.1.6** * * **SCIM++ Properties:** * * idcsCompositeKey: [resourceName] * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: complex */ purgeConfigs?: pulumi.Input[] | undefined>; /** * (Updatable) If reAuthWhenChangingMyAuthenticationFactors is true (default), this attribute specifies which re-authentication factor to use. Allowed value is \"password\". * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: string */ reAuthFactors?: pulumi.Input[] | undefined>; /** * (Updatable) Specifies whether re-authentication is required or not when a user changes one of their security factors such as password or email. Default is true to ensure more secure behavior. * * **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean * * uniqueness: none */ reAuthWhenChangingMyAuthenticationFactors?: pulumi.Input; /** * (Updatable) An endpoint-specific schema version number to use in the Request. Allowed version values are Earliest Version or Latest Version as specified in each REST API endpoint description, or any sequential number inbetween. All schema attributes/body parameters are a part of version 1. After version 1, any attributes added or deprecated will be tagged with the version that they were added to or deprecated in. If no version is provided, the latest schema version is returned. */ resourceTypeSchemaVersion?: pulumi.Input; /** * (Updatable) REQUIRED. The schemas attribute is an array of Strings which allows introspection of the supported schema version for a SCIM representation as well any schema extensions supported by that representation. Each String value must be a unique URI. This specification defines URIs for User, Group, and a standard \"enterprise\" extension. All representations of SCIM schema MUST include a non-zero value array with value(s) of the URIs supported by that representation. Duplicate values MUST NOT be included. Value order is not specified and MUST not impact behavior. * * **SCIM++ Properties:** * * caseExact: false * * idcsSearchable: false * * multiValued: true * * mutability: readWrite * * required: true * * returned: default * * type: string * * uniqueness: none */ schemas: pulumi.Input[]>; /** * (Updatable) By default, a service admin can list all users in stripe. If true, a service admin cannot list other users. * * **Added In:** 2108190438 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean */ serviceAdminCannotListOtherUsers?: pulumi.Input; /** * ID of the resource */ settingId: pulumi.Input; /** * (Updatable) Indicates if access on SigningCert is allowed to public or not * * **Added In:** 17.3.4 * * **SCIM++ Properties:** * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: boolean */ signingCertPublicAccess?: pulumi.Input; /** * (Updatable) **Added In:** 20.1.3 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none Subject mapping user profile attribute. The input format should be SCIM compliant. This attribute should be of type String and multivalued to false. */ subMappingAttr?: pulumi.Input; /** * (Updatable) A list of tags on this resource. * * **SCIM++ Properties:** * * idcsCompositeKey: [key, value] * * idcsSearchable: true * * multiValued: true * * mutability: readWrite * * required: false * * returned: request * * type: complex * * uniqueness: none */ tags?: pulumi.Input[] | undefined>; /** * (Updatable) Custom claims associated with the specific tenant * * **Added In:** 18.4.2 * * **SCIM++ Properties:** * * idcsCompositeKey: [name] * * multiValued: true * * mutability: readWrite * * required: false * * returned: default * * type: complex * * uniqueness: none */ tenantCustomClaims?: pulumi.Input[] | undefined>; /** * (Updatable) Terms of Use URL * * **Added In:** 18.2.4 * * **SCIM++ Properties:** * * caseExact: false * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none */ termsOfUseUrl?: pulumi.Input; /** * (Updatable) User's timezone * * **SCIM++ Properties:** * * caseExact: false * * idcsCanonicalValueSourceFilter: attrName eq "timezones" and attrValues.value eq "$(timezone)" * * idcsCanonicalValueSourceResourceType: AllowedValue * * multiValued: false * * mutability: readWrite * * required: false * * returned: default * * type: string * * uniqueness: none * * ** IMPORTANT ** * Any change to a property that does not support update will force the destruction and recreation of the resource with the new property values */ timezone?: pulumi.Input; } //# sourceMappingURL=domainsSetting.d.ts.map