Updates an application. The fields marked as deprecated are now managed on the client level. To update a default client, create additional clients, or fetch all app clients, use /clients or applications/{appId}/clients endpoints. Note: Fields that are objects cannot be partially updated, since the new value you set will just replace the current one.
Required permissions: apps:edit, [appId]:edit.
Determines if the application is allowed to request to create new users via login flows
Configures the application as the Authentication Hub of this tenant, allowing other apps to use it to perform a centralized login
URI used to redirect the user to the login page of the application (when needed)
URI used to redirect the member to the login page of the application (when needed)
Member invite email link expiration in minutes
Refresh token invalidation trigger configuration
Defines the first client authentication protocol.
Creates first client for the application. Client can be OIDC or SAML, depending what is set in first_client_authentication_protocol
Subdomain of Org admin portal that can be offered for organizations to manage their users (when needed)
Domain of the application that can be offered for the application to be accessed from
PKCE configuration for client
Determines whether the application-specific signing key should be deleted when disabled. If deleted, any tokens previously issued with this key will no longer be valid.
List of URI approved for redirects for your default client
[ "https://www.example.com/login" ]
- Sandbox environmenthttps://api.sbx.transmitsecurity.io/cis/v1/applications/{appId}
- US production environmenthttps://api.transmitsecurity.io/cis/v1/applications/{appId}
- EU production environmenthttps://api.eu.transmitsecurity.io/cis/v1/applications/{appId}
- CA production environmenthttps://api.ca.transmitsecurity.io/cis/v1/applications/{appId}
- AU production environmenthttps://api.au.transmitsecurity.io/cis/v1/applications/{appId}
- JP production environmenthttps://api.gasne1-ts01.transmitsecurity.io/cis/v1/applications/{appId}
- ApiCreateOidcClientInput
- ApiCreateSamlClientInput
curl -i -X PUT \
'https://api.sbx.transmitsecurity.io/cis/v1/applications/{appId}' \
-H 'Authorization: Bearer <YOUR_TOKEN_HERE>' \
-H 'Content-Type: application/json' \
-d '{
"app_name": "My App",
"app_description": "string",
"service_providers": [
"string"
],
"allow_public_signup": false,
"authenticator_preferences": {
"is_centralized": false,
"login_uri": "https://www.example.com/login"
},
"login_uri": "https://www.example.com/login",
"invite_member_uri": "https://www.example.com/login",
"invite_member_email_expiration_minutes": 2880,
"refresh_token_invalidation_trigger_configuration": {
"invalidateOnMemberSuspension": true,
"invalidateOnMemberPasswordReset": true,
"invalidateOnMemberRoleUpdate": true
},
"client_type": "web",
"client_display_name": "string",
"client_description": "string",
"first_client_authentication_protocol": "oidc",
"first_client": {
"name": "My Client",
"description": "string",
"resources": [
"string"
],
"authentication_protocol": "oidc",
"client_group_id": "string",
"default_custom_claims": [
"tid"
],
"default_user_info_claims": [
"tid"
],
"sync_id_token_claims_to_userinfo": false,
"short_cookies_samesite_type": "lax",
"redirect_uris": [
"https://www.example.com/login"
],
"client_type": "web",
"device_authorization": {
"enabled": false,
"approval_uri": "https://www.example.com/device/approval",
"success_uri": "https://www.example.com/device/complete",
"input_uri": "https://www.example.com/device/start"
},
"ciba_authorization": {
"enabled": false,
"login_uri": "https://www.example.com/ciba/login"
},
"is_third_party": true,
"allowed_scopes": [
"string"
],
"consent_uri": "string",
"consent_validity_period": 0,
"pkce": "enforcePkceInsteadOfClientCredentials",
"supported_prompts": [
"login",
"consent",
"none"
],
"token_expiration": {
"access_token_ttl": 0,
"refresh_token_ttl": 0,
"max_refresh_rotate": 0
},
"session_expiration": 0,
"enforce_par": true,
"role_ids": [
"string"
],
"fapi_version_compliancy": true,
"token_endpoint_auth_method": "client_secret_basic",
"response_types": [
"code"
],
"authentication_configuration": {
"method": "client_secret_basic",
"tls_client_auth": {
"certificate_chain": "string",
"distinguished_name": 6,
"ocsp_on": true,
"ocsp_responder_uri": "string",
"ocsp_responder_certificate": "string",
"ocsp_fail_open": true
},
"isMtlsCertTokenBound": true,
"jwks": {}
},
"id_token_encryption": {
"enabled": false,
"jwks": {}
}
},
"redirect_uris": [
"https://www.example.com/login"
],
"logo": "string",
"resources": [
"string"
],
"device_authorization": {
"enabled": false,
"approval_uri": "https://www.example.com/device/approval",
"success_uri": "https://www.example.com/device/complete",
"input_uri": "https://www.example.com/device/start"
},
"ciba_authorization": {
"enabled": false,
"login_uri": "https://www.example.com/ciba/login"
},
"client_auth_method": "client_secret_basic",
"subdomain": "myapp",
"custom_domain": "myapp.com",
"pkce": "enforcePkceInsteadOfClientCredentials",
"should_delete_signing_key": false,
"signing_key_enabled": false,
"invite_client_id": "string"
}'- APNConfiguration
- Array of any
{ "result": { "app_id": "string", "tenant_id": "string", "app_name": "string", "app_description": "string", "client_type": "web", "logo": "string", "client_id": "string", "client_display_name": "string", "client_description": "string", "client_secret": "string", "redirect_uris": [ … ], "login_preferences": { … }, "created_at": "2019-08-24T14:15:22Z", "created_by": "string", "updated_at": "2019-08-24T14:15:22Z", "resources": [ … ], "service_providers": [ … ], "authenticator_preferences": { … }, "allow_public_signup": true, "client_auth_method": "client_secret_basic", "pkce": "enforcePkceInsteadOfClientCredentials", "device_authorization": { … }, "ciba_authorization": { … }, "password_sharing_group_id": "string", "login_uri": "https://www.example.com/login", "invite_member_uri": "https://www.example.com/login", "invite_client_id": "string", "subdomain": "myapp", "invite_member_email_expiration_minutes": 2880, "custom_domain": { … }, "external_communication": { … }, "signing_key_enabled": true, "refresh_token_invalidation_trigger_configuration": { … }, "application_type": "ido" } }