Identity Domains

oci.identity_domains.IdentityDomainsClient Use the Identity Domains API to manage resources within an identity domain, for example, users, dynamic resource groups, groups, and identity providers.
oci.identity_domains.IdentityDomainsClientCompositeOperations This class provides a wrapper around IdentityDomainsClient and offers convenience methods for operations that would otherwise need to be chained together.

Models

oci.identity_domains.models.Addresses A physical mailing address for this User, as described in (address Element).
oci.identity_domains.models.ApiKey User’s api key
oci.identity_domains.models.ApiKeySearchRequest Clients MAY execute queries without passing parameters on the URL by using the HTTP POST verb combined with the .search path extension.
oci.identity_domains.models.ApiKeyUser User linked to api key
oci.identity_domains.models.ApiKeys The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.AuthToken User’s Auth token resource
oci.identity_domains.models.AuthTokenSearchRequest Clients MAY execute queries without passing parameters on the URL by using the HTTP POST verb combined with the .search path extension.
oci.identity_domains.models.AuthTokenUser User linked to auth token
oci.identity_domains.models.AuthTokens The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.AuthenticationFactorSetting Multi Factor Authentication Settings for Tenant
oci.identity_domains.models.AuthenticationFactorSettings The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.AuthenticationFactorSettingsBypassCodeSettings Settings related to the bypass code, such as bypass code length, bypass code expiry, max active bypass codes, and so on
oci.identity_domains.models.AuthenticationFactorSettingsClientAppSettings Settings related to compliance, Personal Identification Number (PIN) policy, and so on
oci.identity_domains.models.AuthenticationFactorSettingsCompliancePolicy Compliance Policy that defines actions to be taken when a condition is violated
oci.identity_domains.models.AuthenticationFactorSettingsDuoSecuritySettings Settings related to Duo Security
oci.identity_domains.models.AuthenticationFactorSettingsEmailSettings Settings related to Email Factor, such as enabled email magic link factor, custom url for Email Link
oci.identity_domains.models.AuthenticationFactorSettingsEndpointRestrictions Settings that describe the set of restrictions that the system should apply to devices and trusted endpoints of a user
oci.identity_domains.models.AuthenticationFactorSettingsIdentityStoreSettings Settings related to the use of a user’s profile details from the identity store
oci.identity_domains.models.AuthenticationFactorSettingsNotificationSettings Settings related to the Mobile App Notification channel, such as pull
oci.identity_domains.models.AuthenticationFactorSettingsSearchRequest Clients MAY execute queries without passing parameters on the URL by using the HTTP POST verb combined with the .search path extension.
oci.identity_domains.models.AuthenticationFactorSettingsThirdPartyFactor Settings related to third-party factor
oci.identity_domains.models.AuthenticationFactorSettingsTotpSettings Settings related to Time-Based One-Time Passcodes (TOTP), such as hashing algo, totp time step, passcode length, and so on
oci.identity_domains.models.AuthenticationFactorsRemover This schema defines the attributes of Authentication Factors Remover call.
oci.identity_domains.models.AuthenticationFactorsRemoverUser User for whom the authentication factors need to be deleted
oci.identity_domains.models.CustomerSecretKey User’s customer secret key
oci.identity_domains.models.CustomerSecretKeySearchRequest Clients MAY execute queries without passing parameters on the URL by using the HTTP POST verb combined with the .search path extension.
oci.identity_domains.models.CustomerSecretKeyUser User linked to customer secret key
oci.identity_domains.models.CustomerSecretKeys The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.DefinedTags OCI Defined Tags
oci.identity_domains.models.DynamicResourceGroup Schema for DynamicResourceGroup resource.
oci.identity_domains.models.DynamicResourceGroupDynamicGroupAppRoles A list of appRoles that are currently granted to this Dynamic Resource Group.
oci.identity_domains.models.DynamicResourceGroupGrants Grants assigned to group
oci.identity_domains.models.DynamicResourceGroupSearchRequest Clients MAY execute queries without passing parameters on the URL by using the HTTP POST verb combined with the .search path extension.
oci.identity_domains.models.DynamicResourceGroups The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.ExtensionAdaptiveUser This extension defines attributes to manage user’s risk score.
oci.identity_domains.models.ExtensionCapabilitiesUser User’s Capabilities
oci.identity_domains.models.ExtensionDbCredentialsUser Db Credentials User extension
oci.identity_domains.models.ExtensionDbUserUser DB User extension
oci.identity_domains.models.ExtensionDbcsGroup Schema for Database Service Resource
oci.identity_domains.models.ExtensionDynamicGroup Dynamic Group
oci.identity_domains.models.ExtensionEnterprise20User Enterprise User
oci.identity_domains.models.ExtensionFidoAuthenticationFactorSettings This extension defines attributes used to manage Multi-Factor Authentication settings of fido authentication
oci.identity_domains.models.ExtensionGroupGroup Idcs Group
oci.identity_domains.models.ExtensionKerberosUserUser Kerberos User extension
oci.identity_domains.models.ExtensionMeUser OCI IAM self service schema extension
oci.identity_domains.models.ExtensionMessagesError Extension schema for error messages providing more details with the exception status.
oci.identity_domains.models.ExtensionMfaUser This extension defines attributes used to manage Multi-Factor Authentication within a service provider.
oci.identity_domains.models.ExtensionOCITags OCI Tags.
oci.identity_domains.models.ExtensionPasswordStateUser This extension defines attributes used to manage account passwords within a Service Provider.
oci.identity_domains.models.ExtensionPasswordlessUser This extension defines attributes used to manage Passwordless-Factor Authentication within a service provider.
oci.identity_domains.models.ExtensionPosixGroup POSIX Group extension
oci.identity_domains.models.ExtensionPosixUser POSIX User extension
oci.identity_domains.models.ExtensionRequestableGroup Requestable Group
oci.identity_domains.models.ExtensionSecurityQuestionsUser This extension defines attributes used to store Security Questions of User.
oci.identity_domains.models.ExtensionSelfChangeUser Controls whether a user can update themselves or not via User related APIs
oci.identity_domains.models.ExtensionSelfRegistrationUser This extension defines attributes used to manage self registration profile linked to the user.
oci.identity_domains.models.ExtensionSffUser SFF Auth Keys User extension
oci.identity_domains.models.ExtensionSocialAccountUser Social User extension
oci.identity_domains.models.ExtensionSocialIdentityProvider Social Identity Provider Extension Schema
oci.identity_domains.models.ExtensionTermsOfUseUser Terms Of Use extension
oci.identity_domains.models.ExtensionThirdPartyAuthenticationFactorSettings This extension defines attributes used to manage Multi-Factor Authentication settings of third party provider
oci.identity_domains.models.ExtensionUserCredentialsUser User’s credentials
oci.identity_domains.models.ExtensionUserStateUser This extension defines attributes used to manage account passwords within a service provider.
oci.identity_domains.models.ExtensionUserUser OCI IAM User
oci.identity_domains.models.ExtensionX509IdentityProvider X509 Identity Provider Extension Schema
oci.identity_domains.models.FreeformTags OCI Freeform Tags
oci.identity_domains.models.Group Group resource.
oci.identity_domains.models.GroupExtAppRoles A list of appRoles that the user belongs to, either thorough direct membership, nested groups, or dynamically calculated
oci.identity_domains.models.GroupExtDomainLevelSchemaNames DBCS Domain-level schema-names.
oci.identity_domains.models.GroupExtGrants Grants assigned to group
oci.identity_domains.models.GroupExtInstanceLevelSchemaNames DBCS instance-level schema-names.
oci.identity_domains.models.GroupExtOwners Group owners
oci.identity_domains.models.GroupExtPasswordPolicy Password Policy associated with this Group.
oci.identity_domains.models.GroupExtSyncedFromApp The entity that created this Group.
oci.identity_domains.models.GroupMembers Group members - when requesting members attribute, a max of 10,000 members will be returned in a single request.
oci.identity_domains.models.GroupSearchRequest Clients MAY execute queries without passing parameters on the URL by using the HTTP POST verb combined with the .search path extension.
oci.identity_domains.models.Groups The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.IdcsCreatedBy The User or App who created the Resource
oci.identity_domains.models.IdcsLastModifiedBy The User or App who modified the Resource
oci.identity_domains.models.IdentityProvider Federation trusted partner Identity Provider
oci.identity_domains.models.IdentityProviderCorrelationPolicy Correlation policy
oci.identity_domains.models.IdentityProviderJitUserProvAssignedGroups Refers to every group of which a JIT-provisioned User should be a member.
oci.identity_domains.models.IdentityProviderJitUserProvAttributes Assertion To User Mapping
oci.identity_domains.models.IdentityProviderJitUserProvGroupMappings The list of mappings between the Identity Domain Group and the IDP group.
oci.identity_domains.models.IdentityProviderSearchRequest Clients MAY execute queries without passing parameters on the URL by using the HTTP POST verb combined with the .search path extension.
oci.identity_domains.models.IdentityProviders The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.KmsiSetting Kmsi Settings schema
oci.identity_domains.models.KmsiSettings The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.KmsiSettingsSearchRequest Clients MAY execute queries without passing parameters on the URL by using the HTTP POST verb combined with the .search path extension.
oci.identity_domains.models.Me User Account
oci.identity_domains.models.MeEmails A complex attribute representing emails
oci.identity_domains.models.MeEntitlements A list of entitlements for the User that represent a thing the User has.
oci.identity_domains.models.MeGroups A list of groups that the user belongs to, either thorough direct membership, nested groups, or dynamically calculated
oci.identity_domains.models.MeIms User’s instant messaging addresses
oci.identity_domains.models.MeName A complex attribute that contains attributes representing the name
oci.identity_domains.models.MePasswordChanger Schema to handle userpassword change by self.
oci.identity_domains.models.MePhoneNumbers Phone numbers
oci.identity_domains.models.MePhotos URLs of photos for the User
oci.identity_domains.models.MeRoles A list of roles for the User that collectively represent who the User is; e.g., ‘Student’, ‘Faculty’.
oci.identity_domains.models.MeX509Certificates A list of certificates issued to the User.
oci.identity_domains.models.Meta A complex attribute that contains resource metadata.
oci.identity_domains.models.MyApiKey User’s api key
oci.identity_domains.models.MyApiKeyUser User linked to api key
oci.identity_domains.models.MyApiKeys The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.MyAuthToken User’s Auth token resource
oci.identity_domains.models.MyAuthTokenUser User linked to auth token
oci.identity_domains.models.MyAuthTokens The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.MyAuthenticationFactorInitiator This schema defines the attributes of Initiator call.
oci.identity_domains.models.MyAuthenticationFactorInitiatorAdditionalAttributes Additional attributes which will be sent as part of a push notification
oci.identity_domains.models.MyAuthenticationFactorInitiatorThirdPartyFactor User’s third-party authentication factor details
oci.identity_domains.models.MyAuthenticationFactorValidator Validate any given Authentication Factor
oci.identity_domains.models.MyAuthenticationFactorValidatorAdditionalAttributes Additional attributes which will be sent as part of a push notification
oci.identity_domains.models.MyAuthenticationFactorValidatorSecurityQuestions List of security questions the user has submitted to get authenticated.
oci.identity_domains.models.MyAuthenticationFactorValidatorThirdPartyFactor User’s third-party authentication factor details
oci.identity_domains.models.MyAuthenticationFactorsRemover This schema defines the attributes of Authentication Factors Remover call.
oci.identity_domains.models.MyAuthenticationFactorsRemoverUser User for whom the authentication factors need to be deleted
oci.identity_domains.models.MyCustomerSecretKey User’s customer secret key
oci.identity_domains.models.MyCustomerSecretKeyUser User linked to customer secret key
oci.identity_domains.models.MyCustomerSecretKeys The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.MyDevice Device Resource.
oci.identity_domains.models.MyDeviceAdditionalAttributes Device additional attributes
oci.identity_domains.models.MyDeviceAuthenticationFactors Authentication Factors
oci.identity_domains.models.MyDeviceNonCompliances Device Non Compliances
oci.identity_domains.models.MyDevicePushNotificationTarget Push Notification target.
oci.identity_domains.models.MyDeviceThirdPartyFactor User’s third-party authentication factor details
oci.identity_domains.models.MyDeviceUser Device member
oci.identity_domains.models.MyDevices The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.MyGroup Group resource.
oci.identity_domains.models.MyGroupMembers Group members - when requesting members attribute, a max of 10,000 members will be returned in a single request.
oci.identity_domains.models.MyGroupSearchRequest Clients MAY execute queries without passing parameters on the URL by using the HTTP POST verb combined with the .search path extension.
oci.identity_domains.models.MyGroups The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.MyOAuth2ClientCredential User’s oauth2 client credential
oci.identity_domains.models.MyOAuth2ClientCredentialScopes Scopes
oci.identity_domains.models.MyOAuth2ClientCredentialUser User linked to oauth2 client credential
oci.identity_domains.models.MyOAuth2ClientCredentials The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.MySmtpCredential User’s smtp credential
oci.identity_domains.models.MySmtpCredentialUser User linked to smtp credential
oci.identity_domains.models.MySmtpCredentials The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.MySupportAccount Support Provider Account
oci.identity_domains.models.MySupportAccountUser User linked to Support Account
oci.identity_domains.models.MySupportAccounts The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.MyTrustedUserAgent This schema defines the attributes of Trusted User Agents owned by users.
oci.identity_domains.models.MyTrustedUserAgentTrustedFactors Trusted 2FA Factors
oci.identity_domains.models.MyTrustedUserAgentUser user for whom the trust-token was issued
oci.identity_domains.models.MyTrustedUserAgents The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.MyUserDbCredential User’s Db Credential
oci.identity_domains.models.MyUserDbCredentials The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.MyUserDbCredentialsUser User linked to db credential
oci.identity_domains.models.OAuth2ClientCredential User’s oauth2 client credential
oci.identity_domains.models.OAuth2ClientCredentialScopes Scopes
oci.identity_domains.models.OAuth2ClientCredentialSearchRequest Clients MAY execute queries without passing parameters on the URL by using the HTTP POST verb combined with the .search path extension.
oci.identity_domains.models.OAuth2ClientCredentialUser User linked to oauth2 client credential
oci.identity_domains.models.OAuth2ClientCredentials The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.Operations Each patch operation object MUST have exactly one “op” member, whose value indicates the operation to perform and MAY be one of “add”, “remove”, or “replace”.
oci.identity_domains.models.PasswordPolicies The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.PasswordPolicy PasswordPolicy resource.
oci.identity_domains.models.PasswordPolicyConfiguredPasswordPolicyRules List of password policy rules that have values set.
oci.identity_domains.models.PasswordPolicyGroups A list of groups that the password policy belongs to.
oci.identity_domains.models.PasswordPolicySearchRequest Clients MAY execute queries without passing parameters on the URL by using the HTTP POST verb combined with the .search path extension.
oci.identity_domains.models.PatchOp See `Section 3.5.2`__.
oci.identity_domains.models.SmtpCredential User’s smtp credential
oci.identity_domains.models.SmtpCredentialSearchRequest Clients MAY execute queries without passing parameters on the URL by using the HTTP POST verb combined with the .search path extension.
oci.identity_domains.models.SmtpCredentialUser User linked to smtp credential
oci.identity_domains.models.SmtpCredentials The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.Tags A list of tags on this resource.
oci.identity_domains.models.User User Account
oci.identity_domains.models.UserCapabilitiesChanger User Capabilities Changer
oci.identity_domains.models.UserDbCredential User’s Db Credential
oci.identity_domains.models.UserDbCredentials The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.
oci.identity_domains.models.UserDbCredentialsSearchRequest Clients MAY execute queries without passing parameters on the URL by using the HTTP POST verb combined with the .search path extension.
oci.identity_domains.models.UserDbCredentialsUser User linked to db credential
oci.identity_domains.models.UserEmails A complex attribute representing emails
oci.identity_domains.models.UserEntitlements A list of entitlements for the User that represent a thing the User has.
oci.identity_domains.models.UserExtAccounts Accounts assigned to this User.
oci.identity_domains.models.UserExtApiKeys A list of api keys corresponding to user.
oci.identity_domains.models.UserExtAppRoles A list of all AppRoles to which this User belongs directly, indirectly or implicitly.
oci.identity_domains.models.UserExtApplicableAuthenticationTargetApp The app against which the user will authenticate.
oci.identity_domains.models.UserExtApplicablePasswordPolicy Applicable Password Policy
oci.identity_domains.models.UserExtAuthTokens A list of auth tokens corresponding to user.
oci.identity_domains.models.UserExtBypassCodes A list of bypass codes belongs to user
oci.identity_domains.models.UserExtCustomerSecretKeys A list of customer secret keys corresponding to user.
oci.identity_domains.models.UserExtDbCredentials A list of db credentials corresponding to user.
oci.identity_domains.models.UserExtDelegatedAuthenticationTargetApp If set, indicates the user’s preferred authentication target app.
oci.identity_domains.models.UserExtDevices A list of devices enrolled by the user.
oci.identity_domains.models.UserExtFactorIdentifier Factor Identifier ID
oci.identity_domains.models.UserExtGrants Grants to this User.
oci.identity_domains.models.UserExtIdcsAppRolesLimitedToGroups Description:
oci.identity_domains.models.UserExtLocked A complex attribute that indicates an account is locked (blocking new sessions)
oci.identity_domains.models.UserExtManager The User’s manager.
oci.identity_domains.models.UserExtOAuth2ClientCredentials A list of oauth2 client credentials corresponding to user.
oci.identity_domains.models.UserExtPasswordVerifiers Password Verifiers for DB User.
oci.identity_domains.models.UserExtPreferredDevice User preferred device
oci.identity_domains.models.UserExtRealmUsers A list of kerberos realm users for an OCI IAM User
oci.identity_domains.models.UserExtRecoveryLocked A complex attribute that indicates an password recovery is locked (blocking new sessions)
oci.identity_domains.models.UserExtRiskScores The risk score pertaining to the user.
oci.identity_domains.models.UserExtSecQuestions Security question and answers provided by end-user for Account recovery and/or MFA.
oci.identity_domains.models.UserExtSelfRegistrationProfile Self registration profile used when user is self registered.
oci.identity_domains.models.UserExtSmtpCredentials A list of smtp credentials corresponding to user.
oci.identity_domains.models.UserExtSocialAccounts Description:
oci.identity_domains.models.UserExtSupportAccounts A list of Support Accounts corresponding to user.
oci.identity_domains.models.UserExtSyncedFromApp Managed App or an Identity Source from where the user is synced.
oci.identity_domains.models.UserExtTermsOfUseConsents Description:
oci.identity_domains.models.UserExtTrustedUserAgents A list of trusted User Agents owned by this user.
oci.identity_domains.models.UserExtUserToken User token returned if userFlowControlledByExternalClient is true
oci.identity_domains.models.UserGroups A list of groups that the user belongs to, either thorough direct membership, nested groups, or dynamically calculated
oci.identity_domains.models.UserIms User’s instant messaging addresses
oci.identity_domains.models.UserName A complex attribute that contains attributes representing the name
oci.identity_domains.models.UserPasswordChanger Schema to handle userpassword change by administrator.
oci.identity_domains.models.UserPasswordResetter Schema to handle userpassword reset by administrator.
oci.identity_domains.models.UserPasswordResetterUserToken User token returned if userFlowControlledByExternalClient is true
oci.identity_domains.models.UserPhoneNumbers Phone numbers
oci.identity_domains.models.UserPhotos URLs of photos for the User
oci.identity_domains.models.UserRoles A list of roles for the User that collectively represent who the User is; e.g., ‘Student’, ‘Faculty’.
oci.identity_domains.models.UserSearchRequest Clients MAY execute queries without passing parameters on the URL by using the HTTP POST verb combined with the .search path extension.
oci.identity_domains.models.UserStatusChanger Schema to handle user status change by administrator.
oci.identity_domains.models.UserX509Certificates A list of certificates issued to the User.
oci.identity_domains.models.Users The SCIM protocol defines a standard set of query parameters that can be used to filter, sort, and paginate to return zero or more resources in a query response.