Available scopes
|
Select Available scopes to get the access token to access any resources configured for the application.
If the scopes are defined from multiples resource servers, the token can't be generated. Use the Customized scopes option and ensure that the selected scopes are from the same resource server.
|
Customized scopes using Invokes identity domain APIs |
-
Select Customized scopes and Invokes identity domain APIs.
-
From the list of roles that are assigned to the client application, select those roles that you want to include or remove to limit the scopes to be populated in the resulting token.
|
Customized scopes using Invokes other APIs |
-
Select Customized scopes and Invokes other APIs.
-
The UI displays a list of all the scopes assigned to the application. You can select any scopes as long as those scopes are from the same resource server.
|
Include refresh token
|
The Include refresh token checkbox is enabled if the Refresh token grant type is configured for your client application and the resource server to which the scopes belong to allows refresh token generation. The refresh token is used to obtain a new access token without requiring the user to reauthenticate.
|