{ "$schema": "https://json-schema.org/draft/2020-12/schema", "$id": "https://raw.githubusercontent.com/api-evangelist/palo-alto-networks/main/json-schema/palo-alto-networks-identity-provider-settings-schema.json", "title": "identity.ProviderSettings", "description": "ProviderSettings are the Oauth/ OpenID Connect connectivity settings", "x-generated": "2026-10-04", "x-method": "derived", "x-generator": "derive-json-schema.py", "x-source": "openapi/palo-alto-networks-settings-api-openapi.yml#/components/schemas/identity.ProviderSettings", "properties": { "authURL": { "description": "AuthURL specifies auth URL.\n", "type": "string" }, "cert": { "description": "Cert is idp certificate.\n", "type": "string" }, "clientID": { "description": "ClientID is the client identifier issued to the client during the registration process.\n", "type": "string" }, "clientSecret": { "$ref": "#/$defs/common.Secret" }, "enabled": { "description": "Enabled indicates whether Auth settings are enabled.\n", "type": "boolean" }, "groupClaim": { "description": "GroupClaim is the name of the group claim property.\n", "type": "string" }, "groupScope": { "description": "GroupScope specifies name of group scope.\n", "type": "string" }, "openIDIssuesURL": { "description": "OpenIDIssuesURL is the base URL for OpenID connect providers.\n", "type": "string" }, "openshiftBaseURL": { "description": "OpenshiftBaseURL is openshift base URL.\n", "type": "string" }, "providerAlias": { "description": "ProviderAlias is the provider alias used for display.\n", "type": "string" }, "providerName": { "$ref": "#/$defs/identity.ProviderName" }, "tokenURL": { "description": "TokenURL specifies token URL.\n", "type": "string" }, "userClaim": { "description": "UserClaim is the name of the user claim property.\n", "type": "string" } }, "type": "object", "$defs": { "common.Secret": { "description": "Secret Stores the plain and encrypted version of a value. The plain version is not stored in a database", "properties": { "encrypted": { "description": "Specifies an encrypted value of the secret.\n", "type": "string" }, "plain": { "description": "Specifies the plain text value of the secret.\n", "type": "string" } }, "type": "object" }, "identity.ProviderName": { "description": "ProviderName is the identity provider name", "enum": [ [ "github", "openshift" ] ], "type": "string" } } }