final case class EndpointSaml(enabled: Option[Boolean] = None, optionsPassthrough: Boolean, cookiePrefix: String, inactivityTimeout: Long, maximumDuration: Duration, idpMetadata: String, forceAuthn: Boolean, allowIdpInitiated: Option[Boolean] = None, authorizedGroups: List[String], entityId: String, assertionConsumerServiceUrl: URI, singleLogoutUrl: URI, requestSigningCertificatePem: String, metadataUrl: URI, nameidFormat: String) extends Product with Serializable
A class encapsulating the EndpointSaml resource.
- enabled
trueif the module will be applied to traffic,falseto disable. defaulttrueif unspecified- optionsPassthrough
Do not enforce authentication on HTTP OPTIONS requests. necessary if you are supporting CORS.
- cookiePrefix
the prefix of the session cookie that ngrok sets on the http client to cache authentication. default is 'ngrok.'
- inactivityTimeout
Integer number of seconds of inactivity after which if the user has not accessed the endpoint, their session will time out and they will be forced to reauthenticate.
- maximumDuration
Integer number of seconds of the maximum duration of an authenticated session. After this period is exceeded, a user must reauthenticate.
- idpMetadata
The full XML IdP EntityDescriptor. Your IdP may provide this to you as a a file to download or as a URL.
- forceAuthn
If true, indicates that whenever we redirect a user to the IdP for authentication that the IdP must prompt the user for authentication credentials even if the user already has a valid session with the IdP.
- allowIdpInitiated
If true, the IdP may initiate a login directly (e.g. the user does not need to visit the endpoint first and then be redirected). The IdP should set the
RelayStateparameter to the target URL of the resource they want the user to be redirected to after the SAML login assertion has been processed.- authorizedGroups
If present, only users who are a member of one of the listed groups may access the target endpoint.
- entityId
The SP Entity's unique ID. This always takes the form of a URL. In ngrok's implementation, this URL is the same as the metadata URL. This will need to be specified to the IdP as configuration.
- assertionConsumerServiceUrl
The public URL of the SP's Assertion Consumer Service. This is where the IdP will redirect to during an authentication flow. This will need to be specified to the IdP as configuration.
- singleLogoutUrl
The public URL of the SP's Single Logout Service. This is where the IdP will redirect to during a single logout flow. This will optionally need to be specified to the IdP as configuration.
- requestSigningCertificatePem
PEM-encoded x.509 certificate of the key pair that is used to sign all SAML requests that the ngrok SP makes to the IdP. Many IdPs do not support request signing verification, but we highly recommend specifying this in the IdP's configuration if it is supported.
- metadataUrl
A public URL where the SP's metadata is hosted. If an IdP supports dynamic configuration, this is the URL it can use to retrieve the SP metadata.
- nameidFormat
Defines the name identifier format the SP expects the IdP to use in its assertions to identify subjects. If unspecified, a default value of
urn:oasis:names:tc:SAML:2.0:nameid-format:persistentwill be used. A subset of the allowed values enumerated by the SAML specification are supported.
- Alphabetic
- By Inheritance
- EndpointSaml
- Serializable
- Product
- Equals
- AnyRef
- Any
- by any2stringadd
- by StringFormat
- by Ensuring
- by ArrowAssoc
- Hide All
- Show All
- Public
- Protected
Instance Constructors
- new EndpointSaml(enabled: Option[Boolean] = None, optionsPassthrough: Boolean, cookiePrefix: String, inactivityTimeout: Long, maximumDuration: Duration, idpMetadata: String, forceAuthn: Boolean, allowIdpInitiated: Option[Boolean] = None, authorizedGroups: List[String], entityId: String, assertionConsumerServiceUrl: URI, singleLogoutUrl: URI, requestSigningCertificatePem: String, metadataUrl: URI, nameidFormat: String)
create a new EndpointSaml.
create a new EndpointSaml.
- enabled
trueif the module will be applied to traffic,falseto disable. defaulttrueif unspecified- optionsPassthrough
Do not enforce authentication on HTTP OPTIONS requests. necessary if you are supporting CORS.
- cookiePrefix
the prefix of the session cookie that ngrok sets on the http client to cache authentication. default is 'ngrok.'
- inactivityTimeout
Integer number of seconds of inactivity after which if the user has not accessed the endpoint, their session will time out and they will be forced to reauthenticate.
- maximumDuration
Integer number of seconds of the maximum duration of an authenticated session. After this period is exceeded, a user must reauthenticate.
- idpMetadata
The full XML IdP EntityDescriptor. Your IdP may provide this to you as a a file to download or as a URL.
- forceAuthn
If true, indicates that whenever we redirect a user to the IdP for authentication that the IdP must prompt the user for authentication credentials even if the user already has a valid session with the IdP.
- allowIdpInitiated
If true, the IdP may initiate a login directly (e.g. the user does not need to visit the endpoint first and then be redirected). The IdP should set the
RelayStateparameter to the target URL of the resource they want the user to be redirected to after the SAML login assertion has been processed.- authorizedGroups
If present, only users who are a member of one of the listed groups may access the target endpoint.
- entityId
The SP Entity's unique ID. This always takes the form of a URL. In ngrok's implementation, this URL is the same as the metadata URL. This will need to be specified to the IdP as configuration.
- assertionConsumerServiceUrl
The public URL of the SP's Assertion Consumer Service. This is where the IdP will redirect to during an authentication flow. This will need to be specified to the IdP as configuration.
- singleLogoutUrl
The public URL of the SP's Single Logout Service. This is where the IdP will redirect to during a single logout flow. This will optionally need to be specified to the IdP as configuration.
- requestSigningCertificatePem
PEM-encoded x.509 certificate of the key pair that is used to sign all SAML requests that the ngrok SP makes to the IdP. Many IdPs do not support request signing verification, but we highly recommend specifying this in the IdP's configuration if it is supported.
- metadataUrl
A public URL where the SP's metadata is hosted. If an IdP supports dynamic configuration, this is the URL it can use to retrieve the SP metadata.
- nameidFormat
Defines the name identifier format the SP expects the IdP to use in its assertions to identify subjects. If unspecified, a default value of
urn:oasis:names:tc:SAML:2.0:nameid-format:persistentwill be used. A subset of the allowed values enumerated by the SAML specification are supported.
Value Members
- final def !=(arg0: Any): Boolean
- Definition Classes
- AnyRef → Any
- final def ##: Int
- Definition Classes
- AnyRef → Any
- def +(other: String): String
- Implicit
- This member is added by an implicit conversion from EndpointSaml toany2stringadd[EndpointSaml] performed by method any2stringadd in scala.Predef.
- Definition Classes
- any2stringadd
- def ->[B](y: B): (EndpointSaml, B)
- Implicit
- This member is added by an implicit conversion from EndpointSaml toArrowAssoc[EndpointSaml] performed by method ArrowAssoc in scala.Predef.
- Definition Classes
- ArrowAssoc
- Annotations
- @inline()
- final def ==(arg0: Any): Boolean
- Definition Classes
- AnyRef → Any
- val allowIdpInitiated: Option[Boolean]
- final def asInstanceOf[T0]: T0
- Definition Classes
- Any
- val assertionConsumerServiceUrl: URI
- val authorizedGroups: List[String]
- def clone(): AnyRef
- Attributes
- protected[lang]
- Definition Classes
- AnyRef
- Annotations
- @throws(classOf[java.lang.CloneNotSupportedException]) @native()
- val cookiePrefix: String
- val enabled: Option[Boolean]
- def ensuring(cond: (EndpointSaml) => Boolean, msg: => Any): EndpointSaml
- Implicit
- This member is added by an implicit conversion from EndpointSaml toEnsuring[EndpointSaml] performed by method Ensuring in scala.Predef.
- Definition Classes
- Ensuring
- def ensuring(cond: (EndpointSaml) => Boolean): EndpointSaml
- Implicit
- This member is added by an implicit conversion from EndpointSaml toEnsuring[EndpointSaml] performed by method Ensuring in scala.Predef.
- Definition Classes
- Ensuring
- def ensuring(cond: Boolean, msg: => Any): EndpointSaml
- Implicit
- This member is added by an implicit conversion from EndpointSaml toEnsuring[EndpointSaml] performed by method Ensuring in scala.Predef.
- Definition Classes
- Ensuring
- def ensuring(cond: Boolean): EndpointSaml
- Implicit
- This member is added by an implicit conversion from EndpointSaml toEnsuring[EndpointSaml] performed by method Ensuring in scala.Predef.
- Definition Classes
- Ensuring
- val entityId: String
- final def eq(arg0: AnyRef): Boolean
- Definition Classes
- AnyRef
- def finalize(): Unit
- Attributes
- protected[lang]
- Definition Classes
- AnyRef
- Annotations
- @throws(classOf[java.lang.Throwable])
- val forceAuthn: Boolean
- final def getClass(): Class[_ <: AnyRef]
- Definition Classes
- AnyRef → Any
- Annotations
- @native()
- val idpMetadata: String
- val inactivityTimeout: Long
- final def isInstanceOf[T0]: Boolean
- Definition Classes
- Any
- val maximumDuration: Duration
- val metadataUrl: URI
- val nameidFormat: String
- final def ne(arg0: AnyRef): Boolean
- Definition Classes
- AnyRef
- final def notify(): Unit
- Definition Classes
- AnyRef
- Annotations
- @native()
- final def notifyAll(): Unit
- Definition Classes
- AnyRef
- Annotations
- @native()
- val optionsPassthrough: Boolean
- def productElementNames: Iterator[String]
- Definition Classes
- Product
- val requestSigningCertificatePem: String
- val singleLogoutUrl: URI
- final def synchronized[T0](arg0: => T0): T0
- Definition Classes
- AnyRef
- final def wait(): Unit
- Definition Classes
- AnyRef
- Annotations
- @throws(classOf[java.lang.InterruptedException])
- final def wait(arg0: Long, arg1: Int): Unit
- Definition Classes
- AnyRef
- Annotations
- @throws(classOf[java.lang.InterruptedException])
- final def wait(arg0: Long): Unit
- Definition Classes
- AnyRef
- Annotations
- @throws(classOf[java.lang.InterruptedException]) @native()
Deprecated Value Members
- def formatted(fmtstr: String): String
- Implicit
- This member is added by an implicit conversion from EndpointSaml toStringFormat[EndpointSaml] performed by method StringFormat in scala.Predef.
- Definition Classes
- StringFormat
- Annotations
- @deprecated @inline()
- Deprecated
(Since version 2.12.16) Use
formatString.format(value)instead ofvalue.formatted(formatString), or use thef""string interpolator. In Java 15 and later,formattedresolves to the new method in String which has reversed parameters.
- def →[B](y: B): (EndpointSaml, B)
- Implicit
- This member is added by an implicit conversion from EndpointSaml toArrowAssoc[EndpointSaml] performed by method ArrowAssoc in scala.Predef.
- Definition Classes
- ArrowAssoc
- Annotations
- @deprecated
- Deprecated
(Since version 2.13.0) Use
->instead. If you still wish to display it as one character, consider using a font with programming ligatures such as Fira Code.