1. Packages
  2. Zitadel
  3. API Docs
  4. OrgIdpAzureAd
zitadel v0.1.8 published on Thursday, May 30, 2024 by pulumiverse

zitadel.OrgIdpAzureAd

Explore with Pulumi AI

zitadel logo
zitadel v0.1.8 published on Thursday, May 30, 2024 by pulumiverse

    Resource representing an Azure AD IdP on the organization.

    Example Usage

    using System.Collections.Generic;
    using System.Linq;
    using Pulumi;
    using Zitadel = Pulumiverse.Zitadel;
    
    return await Deployment.RunAsync(() => 
    {
        var @default = new Zitadel.OrgIdpAzureAd("default", new()
        {
            OrgId = data.Zitadel_org.Default.Id,
            ClientId = "9065bfc8-a08a...",
            ClientSecret = "H2n***",
            Scopes = new[]
            {
                "openid",
                "profile",
                "email",
                "User.Read",
            },
            TenantType = "AZURE_AD_TENANT_TYPE_ORGANISATIONS",
            EmailVerified = true,
            IsLinkingAllowed = false,
            IsCreationAllowed = true,
            IsAutoCreation = false,
            IsAutoUpdate = true,
        });
    
    });
    
    package main
    
    import (
    	"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
    	"github.com/pulumiverse/pulumi-zitadel/sdk/go/zitadel"
    )
    
    func main() {
    	pulumi.Run(func(ctx *pulumi.Context) error {
    		_, err := zitadel.NewOrgIdpAzureAd(ctx, "default", &zitadel.OrgIdpAzureAdArgs{
    			OrgId:        pulumi.Any(data.Zitadel_org.Default.Id),
    			ClientId:     pulumi.String("9065bfc8-a08a..."),
    			ClientSecret: pulumi.String("H2n***"),
    			Scopes: pulumi.StringArray{
    				pulumi.String("openid"),
    				pulumi.String("profile"),
    				pulumi.String("email"),
    				pulumi.String("User.Read"),
    			},
    			TenantType:        pulumi.String("AZURE_AD_TENANT_TYPE_ORGANISATIONS"),
    			EmailVerified:     pulumi.Bool(true),
    			IsLinkingAllowed:  pulumi.Bool(false),
    			IsCreationAllowed: pulumi.Bool(true),
    			IsAutoCreation:    pulumi.Bool(false),
    			IsAutoUpdate:      pulumi.Bool(true),
    		})
    		if err != nil {
    			return err
    		}
    		return nil
    	})
    }
    
    package generated_program;
    
    import com.pulumi.Context;
    import com.pulumi.Pulumi;
    import com.pulumi.core.Output;
    import com.pulumi.zitadel.OrgIdpAzureAd;
    import com.pulumi.zitadel.OrgIdpAzureAdArgs;
    import java.util.List;
    import java.util.ArrayList;
    import java.util.Map;
    import java.io.File;
    import java.nio.file.Files;
    import java.nio.file.Paths;
    
    public class App {
        public static void main(String[] args) {
            Pulumi.run(App::stack);
        }
    
        public static void stack(Context ctx) {
            var default_ = new OrgIdpAzureAd("default", OrgIdpAzureAdArgs.builder()        
                .orgId(data.zitadel_org().default().id())
                .clientId("9065bfc8-a08a...")
                .clientSecret("H2n***")
                .scopes(            
                    "openid",
                    "profile",
                    "email",
                    "User.Read")
                .tenantType("AZURE_AD_TENANT_TYPE_ORGANISATIONS")
                .emailVerified(true)
                .isLinkingAllowed(false)
                .isCreationAllowed(true)
                .isAutoCreation(false)
                .isAutoUpdate(true)
                .build());
    
        }
    }
    
    import pulumi
    import pulumiverse_zitadel as zitadel
    
    default = zitadel.OrgIdpAzureAd("default",
        org_id=data["zitadel_org"]["default"]["id"],
        client_id="9065bfc8-a08a...",
        client_secret="H2n***",
        scopes=[
            "openid",
            "profile",
            "email",
            "User.Read",
        ],
        tenant_type="AZURE_AD_TENANT_TYPE_ORGANISATIONS",
        email_verified=True,
        is_linking_allowed=False,
        is_creation_allowed=True,
        is_auto_creation=False,
        is_auto_update=True)
    
    import * as pulumi from "@pulumi/pulumi";
    import * as zitadel from "@pulumiverse/zitadel";
    
    const _default = new zitadel.OrgIdpAzureAd("default", {
        orgId: data.zitadel_org["default"].id,
        clientId: "9065bfc8-a08a...",
        clientSecret: "H2n***",
        scopes: [
            "openid",
            "profile",
            "email",
            "User.Read",
        ],
        tenantType: "AZURE_AD_TENANT_TYPE_ORGANISATIONS",
        emailVerified: true,
        isLinkingAllowed: false,
        isCreationAllowed: true,
        isAutoCreation: false,
        isAutoUpdate: true,
    });
    
    resources:
      default:
        type: zitadel:OrgIdpAzureAd
        properties:
          orgId: ${data.zitadel_org.default.id}
          clientId: 9065bfc8-a08a...
          clientSecret: H2n***
          scopes:
            - openid
            - profile
            - email
            - User.Read
          tenantType: AZURE_AD_TENANT_TYPE_ORGANISATIONS
          emailVerified: true
          isLinkingAllowed: false
          isCreationAllowed: true
          isAutoCreation: false
          isAutoUpdate: true
    

    Create OrgIdpAzureAd Resource

    Resources are created with functions called constructors. To learn more about declaring and configuring resources, see Resources.

    Constructor syntax

    new OrgIdpAzureAd(name: string, args: OrgIdpAzureAdArgs, opts?: CustomResourceOptions);
    @overload
    def OrgIdpAzureAd(resource_name: str,
                      args: OrgIdpAzureAdArgs,
                      opts: Optional[ResourceOptions] = None)
    
    @overload
    def OrgIdpAzureAd(resource_name: str,
                      opts: Optional[ResourceOptions] = None,
                      client_id: Optional[str] = None,
                      client_secret: Optional[str] = None,
                      email_verified: Optional[bool] = None,
                      is_auto_creation: Optional[bool] = None,
                      is_auto_update: Optional[bool] = None,
                      is_creation_allowed: Optional[bool] = None,
                      is_linking_allowed: Optional[bool] = None,
                      name: Optional[str] = None,
                      org_id: Optional[str] = None,
                      scopes: Optional[Sequence[str]] = None,
                      tenant_id: Optional[str] = None,
                      tenant_type: Optional[str] = None)
    func NewOrgIdpAzureAd(ctx *Context, name string, args OrgIdpAzureAdArgs, opts ...ResourceOption) (*OrgIdpAzureAd, error)
    public OrgIdpAzureAd(string name, OrgIdpAzureAdArgs args, CustomResourceOptions? opts = null)
    public OrgIdpAzureAd(String name, OrgIdpAzureAdArgs args)
    public OrgIdpAzureAd(String name, OrgIdpAzureAdArgs args, CustomResourceOptions options)
    
    type: zitadel:OrgIdpAzureAd
    properties: # The arguments to resource properties.
    options: # Bag of options to control resource's behavior.
    
    

    Parameters

    name string
    The unique name of the resource.
    args OrgIdpAzureAdArgs
    The arguments to resource properties.
    opts CustomResourceOptions
    Bag of options to control resource's behavior.
    resource_name str
    The unique name of the resource.
    args OrgIdpAzureAdArgs
    The arguments to resource properties.
    opts ResourceOptions
    Bag of options to control resource's behavior.
    ctx Context
    Context object for the current deployment.
    name string
    The unique name of the resource.
    args OrgIdpAzureAdArgs
    The arguments to resource properties.
    opts ResourceOption
    Bag of options to control resource's behavior.
    name string
    The unique name of the resource.
    args OrgIdpAzureAdArgs
    The arguments to resource properties.
    opts CustomResourceOptions
    Bag of options to control resource's behavior.
    name String
    The unique name of the resource.
    args OrgIdpAzureAdArgs
    The arguments to resource properties.
    options CustomResourceOptions
    Bag of options to control resource's behavior.

    Example

    The following reference example uses placeholder values for all input properties.

    var orgIdpAzureAdResource = new Zitadel.OrgIdpAzureAd("orgIdpAzureAdResource", new()
    {
        ClientId = "string",
        ClientSecret = "string",
        EmailVerified = false,
        IsAutoCreation = false,
        IsAutoUpdate = false,
        IsCreationAllowed = false,
        IsLinkingAllowed = false,
        Name = "string",
        OrgId = "string",
        Scopes = new[]
        {
            "string",
        },
        TenantId = "string",
        TenantType = "string",
    });
    
    example, err := zitadel.NewOrgIdpAzureAd(ctx, "orgIdpAzureAdResource", &zitadel.OrgIdpAzureAdArgs{
    	ClientId:          pulumi.String("string"),
    	ClientSecret:      pulumi.String("string"),
    	EmailVerified:     pulumi.Bool(false),
    	IsAutoCreation:    pulumi.Bool(false),
    	IsAutoUpdate:      pulumi.Bool(false),
    	IsCreationAllowed: pulumi.Bool(false),
    	IsLinkingAllowed:  pulumi.Bool(false),
    	Name:              pulumi.String("string"),
    	OrgId:             pulumi.String("string"),
    	Scopes: pulumi.StringArray{
    		pulumi.String("string"),
    	},
    	TenantId:   pulumi.String("string"),
    	TenantType: pulumi.String("string"),
    })
    
    var orgIdpAzureAdResource = new OrgIdpAzureAd("orgIdpAzureAdResource", OrgIdpAzureAdArgs.builder()
        .clientId("string")
        .clientSecret("string")
        .emailVerified(false)
        .isAutoCreation(false)
        .isAutoUpdate(false)
        .isCreationAllowed(false)
        .isLinkingAllowed(false)
        .name("string")
        .orgId("string")
        .scopes("string")
        .tenantId("string")
        .tenantType("string")
        .build());
    
    org_idp_azure_ad_resource = zitadel.OrgIdpAzureAd("orgIdpAzureAdResource",
        client_id="string",
        client_secret="string",
        email_verified=False,
        is_auto_creation=False,
        is_auto_update=False,
        is_creation_allowed=False,
        is_linking_allowed=False,
        name="string",
        org_id="string",
        scopes=["string"],
        tenant_id="string",
        tenant_type="string")
    
    const orgIdpAzureAdResource = new zitadel.OrgIdpAzureAd("orgIdpAzureAdResource", {
        clientId: "string",
        clientSecret: "string",
        emailVerified: false,
        isAutoCreation: false,
        isAutoUpdate: false,
        isCreationAllowed: false,
        isLinkingAllowed: false,
        name: "string",
        orgId: "string",
        scopes: ["string"],
        tenantId: "string",
        tenantType: "string",
    });
    
    type: zitadel:OrgIdpAzureAd
    properties:
        clientId: string
        clientSecret: string
        emailVerified: false
        isAutoCreation: false
        isAutoUpdate: false
        isCreationAllowed: false
        isLinkingAllowed: false
        name: string
        orgId: string
        scopes:
            - string
        tenantId: string
        tenantType: string
    

    OrgIdpAzureAd Resource Properties

    To learn more about resource properties and how to use them, see Inputs and Outputs in the Architecture and Concepts docs.

    Inputs

    The OrgIdpAzureAd resource accepts the following input properties:

    ClientId string
    client id generated by the identity provider
    ClientSecret string
    client secret generated by the identity provider
    EmailVerified bool
    automatically mark emails as verified
    IsAutoCreation bool
    enable if a new account in ZITADEL should be created automatically on login with an external account
    IsAutoUpdate bool
    enable if a the ZITADEL account fields should be updated automatically on each login
    IsCreationAllowed bool
    enable if users should be able to create a new account in ZITADEL when using an external account
    IsLinkingAllowed bool
    enable if users should be able to link an existing ZITADEL user with an external account
    Name string
    Name of the IDP
    OrgId string
    ID of the organization
    Scopes List<string>
    the scopes requested by ZITADEL during the request on the identity provider
    TenantId string
    if tenantid is not set, the tenanttype is used
    TenantType string
    the azure ad tenant type
    ClientId string
    client id generated by the identity provider
    ClientSecret string
    client secret generated by the identity provider
    EmailVerified bool
    automatically mark emails as verified
    IsAutoCreation bool
    enable if a new account in ZITADEL should be created automatically on login with an external account
    IsAutoUpdate bool
    enable if a the ZITADEL account fields should be updated automatically on each login
    IsCreationAllowed bool
    enable if users should be able to create a new account in ZITADEL when using an external account
    IsLinkingAllowed bool
    enable if users should be able to link an existing ZITADEL user with an external account
    Name string
    Name of the IDP
    OrgId string
    ID of the organization
    Scopes []string
    the scopes requested by ZITADEL during the request on the identity provider
    TenantId string
    if tenantid is not set, the tenanttype is used
    TenantType string
    the azure ad tenant type
    clientId String
    client id generated by the identity provider
    clientSecret String
    client secret generated by the identity provider
    emailVerified Boolean
    automatically mark emails as verified
    isAutoCreation Boolean
    enable if a new account in ZITADEL should be created automatically on login with an external account
    isAutoUpdate Boolean
    enable if a the ZITADEL account fields should be updated automatically on each login
    isCreationAllowed Boolean
    enable if users should be able to create a new account in ZITADEL when using an external account
    isLinkingAllowed Boolean
    enable if users should be able to link an existing ZITADEL user with an external account
    name String
    Name of the IDP
    orgId String
    ID of the organization
    scopes List<String>
    the scopes requested by ZITADEL during the request on the identity provider
    tenantId String
    if tenantid is not set, the tenanttype is used
    tenantType String
    the azure ad tenant type
    clientId string
    client id generated by the identity provider
    clientSecret string
    client secret generated by the identity provider
    emailVerified boolean
    automatically mark emails as verified
    isAutoCreation boolean
    enable if a new account in ZITADEL should be created automatically on login with an external account
    isAutoUpdate boolean
    enable if a the ZITADEL account fields should be updated automatically on each login
    isCreationAllowed boolean
    enable if users should be able to create a new account in ZITADEL when using an external account
    isLinkingAllowed boolean
    enable if users should be able to link an existing ZITADEL user with an external account
    name string
    Name of the IDP
    orgId string
    ID of the organization
    scopes string[]
    the scopes requested by ZITADEL during the request on the identity provider
    tenantId string
    if tenantid is not set, the tenanttype is used
    tenantType string
    the azure ad tenant type
    client_id str
    client id generated by the identity provider
    client_secret str
    client secret generated by the identity provider
    email_verified bool
    automatically mark emails as verified
    is_auto_creation bool
    enable if a new account in ZITADEL should be created automatically on login with an external account
    is_auto_update bool
    enable if a the ZITADEL account fields should be updated automatically on each login
    is_creation_allowed bool
    enable if users should be able to create a new account in ZITADEL when using an external account
    is_linking_allowed bool
    enable if users should be able to link an existing ZITADEL user with an external account
    name str
    Name of the IDP
    org_id str
    ID of the organization
    scopes Sequence[str]
    the scopes requested by ZITADEL during the request on the identity provider
    tenant_id str
    if tenantid is not set, the tenanttype is used
    tenant_type str
    the azure ad tenant type
    clientId String
    client id generated by the identity provider
    clientSecret String
    client secret generated by the identity provider
    emailVerified Boolean
    automatically mark emails as verified
    isAutoCreation Boolean
    enable if a new account in ZITADEL should be created automatically on login with an external account
    isAutoUpdate Boolean
    enable if a the ZITADEL account fields should be updated automatically on each login
    isCreationAllowed Boolean
    enable if users should be able to create a new account in ZITADEL when using an external account
    isLinkingAllowed Boolean
    enable if users should be able to link an existing ZITADEL user with an external account
    name String
    Name of the IDP
    orgId String
    ID of the organization
    scopes List<String>
    the scopes requested by ZITADEL during the request on the identity provider
    tenantId String
    if tenantid is not set, the tenanttype is used
    tenantType String
    the azure ad tenant type

    Outputs

    All input properties are implicitly available as output properties. Additionally, the OrgIdpAzureAd resource produces the following output properties:

    Id string
    The provider-assigned unique ID for this managed resource.
    Id string
    The provider-assigned unique ID for this managed resource.
    id String
    The provider-assigned unique ID for this managed resource.
    id string
    The provider-assigned unique ID for this managed resource.
    id str
    The provider-assigned unique ID for this managed resource.
    id String
    The provider-assigned unique ID for this managed resource.

    Look up Existing OrgIdpAzureAd Resource

    Get an existing OrgIdpAzureAd resource’s state with the given name, ID, and optional extra properties used to qualify the lookup.

    public static get(name: string, id: Input<ID>, state?: OrgIdpAzureAdState, opts?: CustomResourceOptions): OrgIdpAzureAd
    @staticmethod
    def get(resource_name: str,
            id: str,
            opts: Optional[ResourceOptions] = None,
            client_id: Optional[str] = None,
            client_secret: Optional[str] = None,
            email_verified: Optional[bool] = None,
            is_auto_creation: Optional[bool] = None,
            is_auto_update: Optional[bool] = None,
            is_creation_allowed: Optional[bool] = None,
            is_linking_allowed: Optional[bool] = None,
            name: Optional[str] = None,
            org_id: Optional[str] = None,
            scopes: Optional[Sequence[str]] = None,
            tenant_id: Optional[str] = None,
            tenant_type: Optional[str] = None) -> OrgIdpAzureAd
    func GetOrgIdpAzureAd(ctx *Context, name string, id IDInput, state *OrgIdpAzureAdState, opts ...ResourceOption) (*OrgIdpAzureAd, error)
    public static OrgIdpAzureAd Get(string name, Input<string> id, OrgIdpAzureAdState? state, CustomResourceOptions? opts = null)
    public static OrgIdpAzureAd get(String name, Output<String> id, OrgIdpAzureAdState state, CustomResourceOptions options)
    Resource lookup is not supported in YAML
    name
    The unique name of the resulting resource.
    id
    The unique provider ID of the resource to lookup.
    state
    Any extra arguments used during the lookup.
    opts
    A bag of options that control this resource's behavior.
    resource_name
    The unique name of the resulting resource.
    id
    The unique provider ID of the resource to lookup.
    name
    The unique name of the resulting resource.
    id
    The unique provider ID of the resource to lookup.
    state
    Any extra arguments used during the lookup.
    opts
    A bag of options that control this resource's behavior.
    name
    The unique name of the resulting resource.
    id
    The unique provider ID of the resource to lookup.
    state
    Any extra arguments used during the lookup.
    opts
    A bag of options that control this resource's behavior.
    name
    The unique name of the resulting resource.
    id
    The unique provider ID of the resource to lookup.
    state
    Any extra arguments used during the lookup.
    opts
    A bag of options that control this resource's behavior.
    The following state arguments are supported:
    ClientId string
    client id generated by the identity provider
    ClientSecret string
    client secret generated by the identity provider
    EmailVerified bool
    automatically mark emails as verified
    IsAutoCreation bool
    enable if a new account in ZITADEL should be created automatically on login with an external account
    IsAutoUpdate bool
    enable if a the ZITADEL account fields should be updated automatically on each login
    IsCreationAllowed bool
    enable if users should be able to create a new account in ZITADEL when using an external account
    IsLinkingAllowed bool
    enable if users should be able to link an existing ZITADEL user with an external account
    Name string
    Name of the IDP
    OrgId string
    ID of the organization
    Scopes List<string>
    the scopes requested by ZITADEL during the request on the identity provider
    TenantId string
    if tenantid is not set, the tenanttype is used
    TenantType string
    the azure ad tenant type
    ClientId string
    client id generated by the identity provider
    ClientSecret string
    client secret generated by the identity provider
    EmailVerified bool
    automatically mark emails as verified
    IsAutoCreation bool
    enable if a new account in ZITADEL should be created automatically on login with an external account
    IsAutoUpdate bool
    enable if a the ZITADEL account fields should be updated automatically on each login
    IsCreationAllowed bool
    enable if users should be able to create a new account in ZITADEL when using an external account
    IsLinkingAllowed bool
    enable if users should be able to link an existing ZITADEL user with an external account
    Name string
    Name of the IDP
    OrgId string
    ID of the organization
    Scopes []string
    the scopes requested by ZITADEL during the request on the identity provider
    TenantId string
    if tenantid is not set, the tenanttype is used
    TenantType string
    the azure ad tenant type
    clientId String
    client id generated by the identity provider
    clientSecret String
    client secret generated by the identity provider
    emailVerified Boolean
    automatically mark emails as verified
    isAutoCreation Boolean
    enable if a new account in ZITADEL should be created automatically on login with an external account
    isAutoUpdate Boolean
    enable if a the ZITADEL account fields should be updated automatically on each login
    isCreationAllowed Boolean
    enable if users should be able to create a new account in ZITADEL when using an external account
    isLinkingAllowed Boolean
    enable if users should be able to link an existing ZITADEL user with an external account
    name String
    Name of the IDP
    orgId String
    ID of the organization
    scopes List<String>
    the scopes requested by ZITADEL during the request on the identity provider
    tenantId String
    if tenantid is not set, the tenanttype is used
    tenantType String
    the azure ad tenant type
    clientId string
    client id generated by the identity provider
    clientSecret string
    client secret generated by the identity provider
    emailVerified boolean
    automatically mark emails as verified
    isAutoCreation boolean
    enable if a new account in ZITADEL should be created automatically on login with an external account
    isAutoUpdate boolean
    enable if a the ZITADEL account fields should be updated automatically on each login
    isCreationAllowed boolean
    enable if users should be able to create a new account in ZITADEL when using an external account
    isLinkingAllowed boolean
    enable if users should be able to link an existing ZITADEL user with an external account
    name string
    Name of the IDP
    orgId string
    ID of the organization
    scopes string[]
    the scopes requested by ZITADEL during the request on the identity provider
    tenantId string
    if tenantid is not set, the tenanttype is used
    tenantType string
    the azure ad tenant type
    client_id str
    client id generated by the identity provider
    client_secret str
    client secret generated by the identity provider
    email_verified bool
    automatically mark emails as verified
    is_auto_creation bool
    enable if a new account in ZITADEL should be created automatically on login with an external account
    is_auto_update bool
    enable if a the ZITADEL account fields should be updated automatically on each login
    is_creation_allowed bool
    enable if users should be able to create a new account in ZITADEL when using an external account
    is_linking_allowed bool
    enable if users should be able to link an existing ZITADEL user with an external account
    name str
    Name of the IDP
    org_id str
    ID of the organization
    scopes Sequence[str]
    the scopes requested by ZITADEL during the request on the identity provider
    tenant_id str
    if tenantid is not set, the tenanttype is used
    tenant_type str
    the azure ad tenant type
    clientId String
    client id generated by the identity provider
    clientSecret String
    client secret generated by the identity provider
    emailVerified Boolean
    automatically mark emails as verified
    isAutoCreation Boolean
    enable if a new account in ZITADEL should be created automatically on login with an external account
    isAutoUpdate Boolean
    enable if a the ZITADEL account fields should be updated automatically on each login
    isCreationAllowed Boolean
    enable if users should be able to create a new account in ZITADEL when using an external account
    isLinkingAllowed Boolean
    enable if users should be able to link an existing ZITADEL user with an external account
    name String
    Name of the IDP
    orgId String
    ID of the organization
    scopes List<String>
    the scopes requested by ZITADEL during the request on the identity provider
    tenantId String
    if tenantid is not set, the tenanttype is used
    tenantType String
    the azure ad tenant type

    Import

    terraform The resource can be imported using the ID format <id[:org_id][:client_secret]>, e.g.

     $ pulumi import zitadel:index/orgIdpAzureAd:OrgIdpAzureAd imported '123456789012345678:123456789012345678:12345678-1234-1234-1234-123456789012'
    

    To learn more about importing existing cloud resources, see Importing resources.

    Package Details

    Repository
    zitadel pulumiverse/pulumi-zitadel
    License
    Apache-2.0
    Notes
    This Pulumi package is based on the zitadel Terraform Provider.
    zitadel logo
    zitadel v0.1.8 published on Thursday, May 30, 2024 by pulumiverse