openapi: 3.0.0 info: version: 2020-06-15 x-release: v4 title: 'AWS SSO Identity Store #X Amz Target=AWSIdentityStore.CreateGroup #X Amz Target=AWSIdentityStore.CreateGroup #X Amz Target=AWSIdentityStore.GetUserId API' description:

The Identity Store service used by AWS IAM Identity Center (successor to AWS Single Sign-On) provides a single place to retrieve all of your identities (users and groups). For more information, see the IAM Identity Center User Guide.

 <note> <p>Although AWS Single Sign-On was renamed, the <code>sso</code> and <code>identitystore</code> API namespaces will continue to retain their original name for backward compatibility purposes. For more information, see <a href="https://docs.aws.amazon.com/singlesignon/latest/userguide/what-is.html#renamed">IAM Identity Center rename</a>.</p> </note> <p>This reference guide describes the identity store operations that you can call programatically and includes detailed information about data types and errors.</p> 
x-logo: url: https://api.apis.guru/v2/cache/logo/https_twitter.com_awscloud_profile_image.png backgroundColor: '#FFFFFF' termsOfService: https://aws.amazon.com/service-terms/ contact: name: Mike Ralphson email: mike.ralphson@gmail.com url: https://github.com/mermade/aws2openapi x-twitter: PermittedSoc license: name: Apache 2.0 License url: http://www.apache.org/licenses/ x-providerName: amazonaws.com x-serviceName: identitystore x-aws-signingName: identitystore x-origin: - contentType: application/json url: https://raw.githubusercontent.com/aws/aws-sdk-js/master/apis/identitystore-2020-06-15.normal.json converter: url: https://github.com/mermade/aws2openapi version: 1.0.0 x-apisguru-driver: external x-apiClientRegistration: url: https://portal.aws.amazon.com/gp/aws/developer/registration/index.html?nc2=h_ct x-apisguru-categories: - cloud x-preferred: true servers: - url: http://identitystore.{region}.amazonaws.com variables: region: description: The AWS region enum: - us-east-1 - us-east-2 - us-west-1 - us-west-2 - us-gov-west-1 - us-gov-east-1 - ca-central-1 - eu-north-1 - eu-west-1 - eu-west-2 - eu-west-3 - eu-central-1 - eu-south-1 - af-south-1 - ap-northeast-1 - ap-northeast-2 - ap-northeast-3 - ap-southeast-1 - ap-southeast-2 - ap-east-1 - ap-south-1 - sa-east-1 - me-south-1 default: us-east-1 description: The IdentityStore multi-region endpoint - url: https://identitystore.{region}.amazonaws.com variables: region: description: The AWS region enum: - us-east-1 - us-east-2 - us-west-1 - us-west-2 - us-gov-west-1 - us-gov-east-1 - ca-central-1 - eu-north-1 - eu-west-1 - eu-west-2 - eu-west-3 - eu-central-1 - eu-south-1 - af-south-1 - ap-northeast-1 - ap-northeast-2 - ap-northeast-3 - ap-southeast-1 - ap-southeast-2 - ap-east-1 - ap-south-1 - sa-east-1 - me-south-1 default: us-east-1 description: The IdentityStore multi-region endpoint - url: http://identitystore.{region}.amazonaws.com.cn variables: region: description: The AWS region enum: - cn-north-1 - cn-northwest-1 default: cn-north-1 description: The IdentityStore endpoint for China (Beijing) and China (Ningxia) - url: https://identitystore.{region}.amazonaws.com.cn variables: region: description: The AWS region enum: - cn-north-1 - cn-northwest-1 default: cn-north-1 description: The IdentityStore endpoint for China (Beijing) and China (Ningxia) security: - hmac: [] tags: - name: '#X Amz Target=AWSIdentityStore.GetUserId' paths: /#X-Amz-Target=AWSIdentityStore.GetUserId: parameters: - $ref: '#/components/parameters/X-Amz-Content-Sha256' - $ref: '#/components/parameters/X-Amz-Date' - $ref: '#/components/parameters/X-Amz-Algorithm' - $ref: '#/components/parameters/X-Amz-Credential' - $ref: '#/components/parameters/X-Amz-Security-Token' - $ref: '#/components/parameters/X-Amz-Signature' - $ref: '#/components/parameters/X-Amz-SignedHeaders' post: operationId: GetUserId description: Retrieves the UserId in an identity store. responses: '200': description: Success content: application/json: schema: $ref: '#/components/schemas/GetUserIdResponse' '480': description: ResourceNotFoundException content: application/json: schema: $ref: '#/components/schemas/ResourceNotFoundException' '481': description: ThrottlingException content: application/json: schema: $ref: '#/components/schemas/ThrottlingException' '482': description: AccessDeniedException content: application/json: schema: $ref: '#/components/schemas/AccessDeniedException' '483': description: InternalServerException content: application/json: schema: $ref: '#/components/schemas/InternalServerException' '484': description: ValidationException content: application/json: schema: $ref: '#/components/schemas/ValidationException' requestBody: required: true content: application/json: schema: $ref: '#/components/schemas/GetUserIdRequest' parameters: - name: X-Amz-Target in: header required: true schema: type: string enum: - AWSIdentityStore.GetUserId summary: Amazon IAM Identity Center Get User Id x-microcks-operation: delay: 0 dispatcher: FALLBACK tags: - '#X Amz Target=AWSIdentityStore.GetUserId' components: parameters: X-Amz-Credential: name: X-Amz-Credential in: header schema: type: string required: false X-Amz-Security-Token: name: X-Amz-Security-Token in: header schema: type: string required: false X-Amz-Date: name: X-Amz-Date in: header schema: type: string required: false X-Amz-Algorithm: name: X-Amz-Algorithm in: header schema: type: string required: false X-Amz-SignedHeaders: name: X-Amz-SignedHeaders in: header schema: type: string required: false X-Amz-Content-Sha256: name: X-Amz-Content-Sha256 in: header schema: type: string required: false X-Amz-Signature: name: X-Amz-Signature in: header schema: type: string required: false schemas: AlternateIdentifier: type: object properties: ExternalId: allOf: - $ref: '#/components/schemas/ExternalId' - description: The identifier issued to this resource by an external identity provider. UniqueAttribute: allOf: - $ref: '#/components/schemas/UniqueAttribute' - description: An entity attribute that's unique to a specific entity. description: A unique identifier for a user or group that is not the primary identifier. This value can be an identifier from an external identity provider (IdP) that is associated with the user, the group, or a unique attribute. ExternalIdIdentifier: type: string pattern: '[\p{L}\p{M}\p{S}\p{N}\p{P}]+' minLength: 1 maxLength: 256 format: password ExternalId: type: object required: - Issuer - Id properties: Issuer: allOf: - $ref: '#/components/schemas/ExternalIdIssuer' - description: The issuer for an external identifier. Id: allOf: - $ref: '#/components/schemas/ExternalIdIdentifier' - description: The identifier issued to this resource by an external identity provider. description: The identifier issued to this resource by an external identity provider. AccessDeniedException: {} GetUserIdResponse: type: object required: - UserId - IdentityStoreId properties: UserId: allOf: - $ref: '#/components/schemas/ResourceId' - description: The identifier for a user in the identity store. IdentityStoreId: allOf: - $ref: '#/components/schemas/IdentityStoreId' - description: The globally unique identifier for the identity store. AttributeValue: type: object properties: {} description: The value of the attribute. This is a Document type. This type is not supported by Java V1, Go V1, and older versions of the AWS CLI. ResourceNotFoundException: {} ResourceId: type: string pattern: ([0-9a-f]{10}-|)[A-Fa-f0-9]{8}-[A-Fa-f0-9]{4}-[A-Fa-f0-9]{4}-[A-Fa-f0-9]{4}-[A-Fa-f0-9]{12} minLength: 1 maxLength: 47 ExternalIdIssuer: type: string pattern: \(\?!\(\?i\)\(arn\|aws\):\)[\p\{L\}\p\{M\}\p\{S\}\p\{N\}\p\{P\}]\+ minLength: 1 maxLength: 100 format: password ThrottlingException: {} UniqueAttribute: type: object required: - AttributePath - AttributeValue properties: AttributePath: allOf: - $ref: '#/components/schemas/AttributePath' - description: A string representation of the path to a given attribute or sub-attribute. Supports JMESPath. AttributeValue: allOf: - $ref: '#/components/schemas/AttributeValue' - description: The value of the attribute. This is a Document type. This type is not supported by Java V1, Go V1, and older versions of the AWS CLI. description: An entity attribute that's unique to a specific entity. ValidationException: {} GetUserIdRequest: type: object required: - IdentityStoreId - AlternateIdentifier title: GetUserIdRequest properties: IdentityStoreId: allOf: - $ref: '#/components/schemas/IdentityStoreId' - description: The globally unique identifier for the identity store. AlternateIdentifier: allOf: - $ref: '#/components/schemas/AlternateIdentifier' - description: A unique identifier for a user or group that is not the primary identifier. This value can be an identifier from an external identity provider (IdP) that is associated with the user, the group, or a unique attribute. For the unique attribute, the only valid paths are userName and emails.value. IdentityStoreId: type: string pattern: d-[0-9a-f]{10}$|^[0-9a-f]{8}-[0-9a-f]{4}-[0-9a-f]{4}-[0-9a-f]{4}-[0-9a-f]{12} minLength: 1 maxLength: 36 AttributePath: type: string pattern: \p{L}+(?:\.\p{L}+){0,2} minLength: 1 maxLength: 255 InternalServerException: {} securitySchemes: hmac: type: apiKey name: Authorization in: header description: Amazon Signature authorization v4 x-amazon-apigateway-authtype: awsSigv4 externalDocs: description: Amazon Web Services documentation url: https://docs.aws.amazon.com/identitystore/ x-hasEquivalentPaths: true