> ## Documentation Index
> Fetch the complete documentation index at: https://translations.mintlify.site/llms.txt
> Use this file to discover all available pages before exploring further.

# 組織のIDプロバイダーを作成

> この組織に新しい IDプロバイダー を作成します。

export const Scopes = ({scopes = []}) => {
  return <div>
      <div class="api-section-heading flex flex-col gap-y-4 w-full">
        <div class="flex items-baseline border-b pb-2.5 border-gray-100 dark:border-gray-800 w-full">
          <h4 class="api-section-heading-title flex-1 mb-0">Scopes</h4>
          <div class="flex items-center"></div>
        </div>
      </div>
      <div class="mt-4">
        <div class="space-y-4 whitespace-normal prose prose-sm prose-gray dark:prose-invert overflow-wrap-anywhere [&_*]:overflow-wrap-anywhere">
          <p class="whitespace-pre-line text-xs">
            {"スコープは、APIリクエストと認証トークンの権限およびアクセスレベルを定義します。"}
          </p>
        </div>
      </div>
      <div class="flex font-mono text-sm group/param-head param-head break-all relative mt-6" id="scopes-scopes">
        <div class="flex-1 flex flex-col content-start py-0.5 mr-5">
          <div class="flex items-center flex-wrap gap-2">
            <div class="absolute -top-1.5">
              <a href="#scopes-scopes" class="-ml-10 flex items-center opacity-0 border-0 group-hover/param-head:opacity-100 focus:opacity-100 focus:outline-0 py-2 [.expandable-content_&]:-ml-[2.1rem] group/link" aria-label="見出しに移動">
                ​
                <div class="w-6 h-6 rounded-md flex items-center justify-center shadow-sm text-gray-400 dark:text-white/50 dark:bg-background-dark dark:brightness-[1.35] dark:ring-1 dark:hover:brightness-150 bg-white ring-1 ring-gray-400/30 dark:ring-gray-700/25 hover:ring-gray-400/60 dark:hover:ring-white/20 group-focus/link:border-2 group-focus/link:border-primary dark:group-focus/link:border-primary-light">
                  <svg xmlns="http://www.w3.org/2000/svg" fill="gray" height="12px" viewBox="0 0 576 512">
                    <path d="M0 256C0 167.6 71.6 96 160 96h72c13.3 0 24 10.7 24 24s-10.7 24-24 24H160C98.1 144 48 194.1 48 256s50.1 112 112 112h72c13.3 0 24 10.7 24 24s-10.7 24-24 24H160C71.6 416 0 344.4 0 256zm576 0c0 88.4-71.6 160-160 160H344c-13.3 0-24-10.7-24-24s10.7-24 24-24h72c61.9 0 112-50.1 112-112s-50.1-112-112-112H344c-13.3 0-24-10.7-24-24s10.7-24 24-24h72c88.4 0 160 71.6 160 160zM184 232H392c13.3 0 24 10.7 24 24s-10.7 24-24 24H184c-13.3 0-24-10.7-24-24s10.7-24 24-24z"></path>
                  </svg>
                </div>
              </a>
            </div>
            {scopes.map((scope, index) => {
    return <span class="flex items-center px-2 py-0.5 rounded-md bg-gray-100/50 dark:bg-white/5 text-gray-600 dark:text-gray-200 font-medium break-all" style={{
      lineHeight: "1rem",
      fontSize: "0.75rem",
      fontFamily: 'var(--font-jetbrains-mono), ui-monospace, SFMono-Regular, Menlo, Monaco, Consolas, "Liberation Mono", "Courier New", monospace'
    }} data-component-part="field-info-pill" key={index}>
                  {scope}
                </span>;
  })}
          </div>
        </div>
      </div>
    </div>;
};

export const ApiReleaseLifecycle = ({releaseLifecycle = "GA"}) => {
  const lifecycleMap = {
    ea: "早期アクセス",
    ga: "一般提供",
    deprecated: "非推奨",
    planned: "計画中",
    beta: "ベータ"
  };
  const LIFECYCLE_THEMES = {
    info: {
      light: {
        bg: "lab(91.896% .077188 -6.94053)",
        text: "lab(36.091% 25.9241 -68.0384)"
      },
      dark: {
        bg: "lab(16.0426% 6.71726 -27.2409)",
        text: "lab(72.6029% 4.08953 -41.9669)"
      }
    },
    secondary: {
      light: {
        bg: "lab(90.8548% 11.3355 8.01476)",
        text: "lab(47.5286% 56.4238 43.4706)"
      },
      dark: {
        bg: "lab(16.3609% 37.191 25.6346)",
        text: "lab(71.881% 41.5 29.4839)"
      }
    },
    danger: {
      light: {
        bg: "lab(94.7916% -.0000298023 0)",
        text: "lab(54.3656% 0 -.0000119209)"
      },
      dark: {
        bg: "lab(13.232% 0 0)",
        text: "lab(51.6164% 0 0)"
      }
    }
  };
  const LIFECYCLE_THEME_MAP = {
    ea: "info",
    ga: "info",
    beta: "info",
    deprecated: "secondary",
    planned: "danger"
  };
  const lifecycle = releaseLifecycle.toLocaleLowerCase();
  const lifecycleText = lifecycleMap[lifecycle];
  if (!lifecycleText) {
    return null;
  }
  const theme = LIFECYCLE_THEMES[LIFECYCLE_THEME_MAP[lifecycle]];
  return <div>
      <div className="api-section-heading flex flex-col gap-y-4 w-full">
        <div className="flex items-baseline border-b pb-2.5 border-gray-100 dark:border-gray-800 w-full">
          <h4 className="api-section-heading-title flex-1 mb-0">リリースライフサイクル</h4>
        </div>
      </div>
      <div className="flex font-mono text-sm group/param-head param-head break-all relative mt-2.5" id="releaselifecycle-lifecycle">
        <div className="flex-1 flex flex-col content-start py-0.5 mr-5">
          <div className="flex items-center flex-wrap gap-2">
            <div className="absolute -top-1.5">
              <a href="#releaselifecycle-lifecycle" className="-ml-10 flex items-center opacity-0 border-0 group-hover/param-head:opacity-100 focus:opacity-100 focus:outline-0 py-2 [.expandable-content_&]:-ml-[2.1rem] group/link" aria-label="ヘッダーに移動">
                <div className="w-6 h-6 rounded-md flex items-center justify-center shadow-sm text-gray-400 dark:text-white/50 dark:bg-background-dark dark:brightness-[1.35] dark:ring-1 dark:hover:brightness-150 bg-white ring-1 ring-gray-400/30 dark:ring-gray-700/25 hover:ring-gray-400/60 dark:hover:ring-white/20 group-focus/link:border-2 group-focus/link:border-primary dark:group-focus/link:border-primary-light">
                  <svg xmlns="http://www.w3.org/2000/svg" fill="gray" height="12px" viewBox="0 0 576 512">
                    <path d="M0 256C0 167.6 71.6 96 160 96h72c13.3 0 24 10.7 24 24s-10.7 24-24 24H160C98.1 144 48 194.1 48 256s50.1 112 112 112h72c13.3 0 24 10.7 24 24s-10.7 24-24 24H160C71.6 416 0 344.4 0 256zm576 0c0 88.4-71.6 160-160 160H344c-13.3 0-24-10.7-24-24s10.7-24 24-24h72c61.9 0 112-50.1 112-112s-50.1-112-112-112H344c-13.3 0-24-10.7-24-24s10.7-24 24-24h72c88.4 0 160 71.6 160 160zM184 232H392c13.3 0 24 10.7 24 24s-10.7 24-24 24H184c-13.3 0-24-10.7-24-24s10.7-24 24-24z"></path>
                  </svg>
                </div>
              </a>
            </div>
            <span className="inline-flex items-center w-fit font-medium gap-1 py-0.5 px-2 rounded-md" style={{
    lineHeight: "1rem",
    fontSize: "0.75rem",
    fontFamily: 'var(--font-jetbrains-mono), ui-monospace, SFMono-Regular, Menlo, Monaco, Consolas, "Liberation Mono", "Courier New", monospace',
    backgroundColor: `light-dark(${theme.light.bg}, ${theme.dark.bg})`,
    color: `light-dark(${theme.light.text}, ${theme.dark.text})`,
    borderColor: `light-dark(color-mix(in oklab, ${theme.light.text} 25%, transparent), color-mix(in oklab, ${theme.dark.text} 25%, transparent))`
  }}>
              {lifecycleText}
            </span>
          </div>
        </div>
      </div>
    </div>;
};

<ApiReleaseLifecycle releaseLifecycle="EA" />

<Scopes scopes={["create:my_org:identity_providers"]} />


## OpenAPI

````yaml ja/docs/oas/myorganization/myorganization-api-oas.json POST /identity-providers
openapi: 3.1.0
info:
  description: My Organization API
  license:
    name: UNLICENSED
    url: https://auth0.com
  termsOfService: https://auth0.com/web-terms/
  title: My Organization API
  version: 1.0.0
servers:
  - url: https://{tenantDomain}/my-org/v1
    variables:
      tenantDomain:
        default: '{TENANT}.auth0.com'
        description: Auth0テナントのドメイン
  - url: https://{tenantDomain}/my-org
    variables:
      tenantDomain:
        default: '{TENANT}.auth0.com'
        description: Auth0テナントのドメイン
security: []
tags:
  - description: 設定
    name: config
    x-displayName: Configuration
  - description: 組織に関する詳細を管理します。
    name: orgDetails
    x-displayName: Organization Details Management
  - description: 組織のIDプロバイダーを管理します。
    name: idpManagement
    x-displayName: Identity Provider Management
  - description: 組織に関連するドメインを管理します
    name: orgDomainManagement
    x-displayName: Domain Management
  - description: 組織に関連するメンバーを管理します
    name: orgMemberManagement
    x-displayName: Member Management
  - description: 組織のクライアントグラントを管理します
    name: clientGrantManagement
    x-displayName: Client Grant Management
  - description: 組織のAPIクライアントを管理します
    name: clientManagement
    x-displayName: Client Management
  - description: 組織のロールを管理します
    name: roles
    x-displayName: Roles
paths:
  /identity-providers:
    post:
      tags:
        - idpManagement
      summary: IDプロバイダーを作成する
      description: この組織に新しい IDプロバイダー を作成します。
      operationId: CreateOrganizationIdentityProvider
      parameters: []
      requestBody:
        $ref: '#/components/requestBodies/CreateIdentityProviderRequest'
      responses:
        '201':
          $ref: '#/components/responses/CreateIdentityProviderResponse'
        '400':
          $ref: '#/components/responses/ClientErrorBadRequestResponse'
        '401':
          $ref: '#/components/responses/ClientErrorUnauthorizedResponse'
        '403':
          $ref: '#/components/responses/ClientErrorInsufficientScopeResponse'
        '404':
          $ref: '#/components/responses/ClientErrorNotFoundOrganizationResponse'
        '409':
          $ref: '#/components/responses/ClientErrorConfigConflictResponse'
        '429':
          $ref: '#/components/responses/ClientErrorTooManyRequestsResponse'
      security:
        - OAuth2ClientCredentials:
            - create:my_org:identity_providers
        - OAuth2AuthCode:
            - create:my_org:identity_providers
      x-codeSamples: []
components:
  requestBodies:
    CreateIdentityProviderRequest:
      content:
        application/json:
          examples:
            createIdpRequest:
              $ref: '#/components/examples/CreateIdentityProviderRequestExample'
          schema:
            $ref: '#/components/schemas/CreateIdentityProviderRequestContent'
  responses:
    CreateIdentityProviderResponse:
      content:
        application/json:
          examples:
            createIdPResponseExample:
              $ref: '#/components/examples/CreateIdentityProviderResponseExample'
          schema:
            $ref: '#/components/schemas/CreateIdentityProviderResponseContent'
      description: IDプロバイダーが正常に作成されました。
      headers:
        Retry-After:
          $ref: '#/components/headers/Retry-After'
        X-Auth0-Error-Kind:
          $ref: '#/components/headers/X-Auth0-Error-Kind'
        X-RateLimit-Limit:
          $ref: '#/components/headers/X-RateLimit-Limit'
        X-RateLimit-Remaining:
          $ref: '#/components/headers/X-RateLimit-Remaining'
        X-RateLimit-Reset:
          $ref: '#/components/headers/X-RateLimit-Reset'
    ClientErrorBadRequestResponse:
      content:
        application/json:
          examples:
            errorInvalidJsonExample:
              $ref: '#/components/examples/ErrorBadRequestExample'
            validationErrorExample:
              $ref: '#/components/examples/ErrorValidationExample'
          schema:
            oneOf:
              - $ref: '#/components/schemas/ErrorResponseContent'
              - $ref: '#/components/schemas/ValidationErrorResponseContent'
      description: 無効なリクエストボディです。メッセージは原因によって異なります。
    ClientErrorUnauthorizedResponse:
      content:
        application/json:
          examples:
            errorMissingTokenExample:
              $ref: '#/components/examples/ErrorMissingTokenExample'
          schema:
            $ref: '#/components/schemas/ErrorResponseContent'
      description: '認証されていません: トークンがない、無効、または期限切れです。'
    ClientErrorInsufficientScopeResponse:
      content:
        application/json:
          examples:
            errorInsufficientScopeExample:
              $ref: '#/components/examples/ErrorInsufficientScopeExample'
          schema:
            $ref: '#/components/schemas/ErrorResponseContent'
      description: スコープが不足しています。
    ClientErrorNotFoundOrganizationResponse:
      content:
        application/json:
          examples:
            errorOrgNotFoundExample:
              $ref: '#/components/examples/ErrorOrgNotFoundExample'
          schema:
            $ref: '#/components/schemas/ErrorResponseContent'
      description: 組織が見つかりません。
    ClientErrorConfigConflictResponse:
      content:
        application/json:
          examples:
            errorConfigConflictExample:
              $ref: '#/components/examples/ErrorConfigConflictExample'
          schema:
            $ref: '#/components/schemas/ErrorResponseContent'
      description: サーバー構成が不足しているか無効です。テナント管理者にお問い合わせください。
    ClientErrorTooManyRequestsResponse:
      content:
        application/json:
          examples:
            errorEndpointRateLimitExample:
              $ref: '#/components/examples/ErrorEndpointRateLimitExample'
          schema:
            $ref: '#/components/schemas/ErrorResponseContent'
      description: >-
        リクエストが多すぎます。X-RateLimit-Limit、X-RateLimit-Remaining、X-RateLimit-Reset
        ヘッダーを確認してください。
      headers:
        Retry-After:
          $ref: '#/components/headers/Retry-After'
        X-Auth0-Error-Kind:
          $ref: '#/components/headers/X-Auth0-Error-Kind'
        X-RateLimit-Limit:
          $ref: '#/components/headers/X-RateLimit-Limit'
        X-RateLimit-Remaining:
          $ref: '#/components/headers/X-RateLimit-Remaining'
        X-RateLimit-Reset:
          $ref: '#/components/headers/X-RateLimit-Reset'
  examples:
    CreateIdentityProviderRequestExample:
      value:
        assign_membership_on_login: false
        display_name: OIDC IdP
        domains:
          - mydomain.com
        is_enabled: true
        name: oidcIdp
        options:
          client_id: a8f3b2e7-5d1c-4f9a-8b0d-2e1c3a5b6f7d
          client_secret: KzQp2sVxR8nTgMjFhYcEWuLoIbDvUoC6A9B1zX7yWqFjHkGrP5sQdLmNp
          discovery_url: https://{yourDomain}/.well-known/openid-configuration
          type: front_channel
        show_as_button: true
        strategy: oidc
    CreateIdentityProviderResponseExample:
      value:
        access_level: full
        assign_membership_on_login: false
        attributes:
          - description: 希望するユーザー名
            is_extra: false
            is_missing: false
            is_required: true
            label: Preferred username
            sso_field:
              - userName
            user_attribute: preferred_username
          - is_extra: true
            is_missing: false
            is_required: true
            sso_field:
              - externalId
            user_attribute: external_id
        display_name: OIDC IdP
        domains:
          - mydomain.com
        id: con_zW1UHutvkVWSWdCC
        is_enabled: true
        name: oidcIdp
        options:
          client_id: client_a8f3b2e7-5d1c-4f9a-8b0d-2e1c3a5b6f7did
          discovery_url: https://{yourDomain}/.well-known/openid-configuration
          type: front_channel
        show_as_button: true
        strategy: oidc
    ErrorBadRequestExample:
      value:
        detail: The request is invalid.
        status: 400
        title: Bad Request
        type: https://auth0.com/api-errors#A0E-400-0001
    ErrorValidationExample:
      value:
        status: 400
        title: Validation Error
        type: https://auth0.com/api-errors#A0E-400-0003
        validation_errors:
          - detail: is required
            field: data/property_name
            pointer: /property_name
            source: params
    ErrorMissingTokenExample:
      value:
        detail: No auth token provided.
        status: 401
        title: Missing Token
        type: https://auth0.com/api-errors#A0E-401-0002
    ErrorInsufficientScopeExample:
      value:
        detail: >-
          The auth token lacks the required scope: Check the API documentation
          for the required scopes for this endpoint.
        status: 403
        title: Insufficient Scope
        type: https://auth0.com/api-errors#A0E-403-0002
    ErrorOrgNotFoundExample:
      value:
        detail: The organization does not exist.
        status: 404
        title: Resource Not Found
        type: https://auth0.com/api-errors#A0E-404-0002
    ErrorConfigConflictExample:
      value:
        detail: Invalid or missing configuration, please contact tenant admin.
        status: 409
        title: Configuration issue
        type: https://auth0.com/api-errors#A0E-409-0001
    ErrorEndpointRateLimitExample:
      value:
        detail: The endpoint request limit has been exceeded.
        status: 429
        title: Endpoint Rate Limit Exceeded
        type: https://auth0.com/api-errors#A0E-429-0003
  schemas:
    CreateIdentityProviderRequestContent:
      $ref: '#/components/schemas/IdpKnownRequest'
    CreateIdentityProviderResponseContent:
      $ref: '#/components/schemas/IdpKnownResponse'
    ErrorResponseContent:
      additionalProperties: false
      properties:
        detail:
          description: エラーの詳細な説明。
          type: string
        status:
          description: リクエストのHTTPステータスコード。
          type: integer
        title:
          description: エラーの簡単な説明。
          type: string
        type:
          description: エラーを説明するURI。
          format: uri
          type: string
      required:
        - type
        - status
        - title
        - detail
      type: object
    ValidationErrorResponseContent:
      additionalProperties: false
      properties:
        status:
          description: リクエストのHTTPステータスコード。
          type: integer
        title:
          description: エラーの簡単な説明。
          type: string
        type:
          description: エラーを説明するURI。
          format: uri
          type: string
        validation_errors:
          items:
            $ref: '#/components/schemas/ValidationErrorDetail'
          type: array
      required:
        - type
        - status
        - title
        - validation_errors
      type: object
    IdpKnownRequest:
      oneOf:
        - $ref: '#/components/schemas/IdpAdfsRequest'
        - $ref: '#/components/schemas/IdpGoogleAppsRequest'
        - $ref: '#/components/schemas/IdpOidcRequest'
        - $ref: '#/components/schemas/IdpOktaRequest'
        - $ref: '#/components/schemas/IdpPingFederateRequest'
        - $ref: '#/components/schemas/IdpSamlpRequest'
        - $ref: '#/components/schemas/IdpWaadRequest'
    IdpKnownResponse:
      oneOf:
        - $ref: '#/components/schemas/IdpAdfsResponse'
        - $ref: '#/components/schemas/IdpGoogleAppsResponse'
        - $ref: '#/components/schemas/IdpOidcResponse'
        - $ref: '#/components/schemas/IdpOktaResponse'
        - $ref: '#/components/schemas/IdpPingFederateResponse'
        - $ref: '#/components/schemas/IdpSamlpResponse'
        - $ref: '#/components/schemas/IdpWaadResponse'
    ValidationErrorDetail:
      additionalProperties: false
      properties:
        detail:
          description: エラーの詳細な説明。
          type: string
        field:
          description: 無効なパラメーターの名前。
          type: string
        pointer:
          description: 検証対象のJSONドキュメント内でエラーの正確な位置を指すJSON Pointer。
          type: string
        source:
          description: 'エラーの発生元を指定します（例: HTMLメッセージ内の body、query、または header）。'
          type: string
      required:
        - detail
      type: object
    IdpAdfsRequest:
      allOf:
        - $ref: '#/components/schemas/IdpBaseRequest'
        - properties:
            options:
              $ref: '#/components/schemas/IdpAdfsOptionsRequest'
              description: IDプロバイダー固有のオプションです。
            strategy:
              const: adfs
          required:
            - strategy
            - options
          type: object
      description: IDプロバイダー固有のオプションです。
      title: IdP ADFS Request
      type: object
      unevaluatedProperties: false
    IdpGoogleAppsRequest:
      allOf:
        - $ref: '#/components/schemas/IdpBaseRequest'
        - properties:
            options:
              $ref: '#/components/schemas/IdpGoogleAppsOptionsRequest'
              description: IDプロバイダー固有のオプションです。
            strategy:
              const: google-apps
          required:
            - strategy
            - options
          type: object
      description: IDプロバイダー固有のオプションです。
      title: IdP Google Workforce Request
      type: object
      unevaluatedProperties: false
    IdpOidcRequest:
      allOf:
        - $ref: '#/components/schemas/IdpBaseRequest'
        - properties:
            options:
              $ref: '#/components/schemas/IdpOidcOptionsRequest'
              description: IDプロバイダー固有のオプションです。
            strategy:
              const: oidc
          required:
            - strategy
            - options
          type: object
      description: IDプロバイダー固有のオプションです。
      title: IdP OIDC Request
      type: object
      unevaluatedProperties: false
    IdpOktaRequest:
      allOf:
        - $ref: '#/components/schemas/IdpBaseRequest'
        - properties:
            options:
              $ref: '#/components/schemas/IdpOktaOptionsRequest'
              description: IDプロバイダー固有のオプションです。
            strategy:
              const: okta
          required:
            - strategy
            - options
          type: object
      description: IDプロバイダー固有のオプションです。
      title: IdP Okta Request
      type: object
      unevaluatedProperties: false
    IdpPingFederateRequest:
      allOf:
        - $ref: '#/components/schemas/IdpBaseRequest'
        - properties:
            options:
              $ref: '#/components/schemas/IdpPingFederateOptionsRequest'
              description: IDプロバイダー固有のオプションです。
            strategy:
              const: pingfederate
          required:
            - strategy
            - options
          type: object
      description: IDプロバイダー固有のオプションです。
      title: IdP Ping Request
      type: object
      unevaluatedProperties: false
    IdpSamlpRequest:
      allOf:
        - $ref: '#/components/schemas/IdpBaseRequest'
        - properties:
            options:
              $ref: '#/components/schemas/IdpSamlpOptionsRequest'
              description: IDプロバイダー固有のオプションです。
            strategy:
              const: samlp
          required:
            - strategy
            - options
          type: object
      description: IDプロバイダー固有のオプションです。
      title: IdP SAML Request
      type: object
      unevaluatedProperties: false
    IdpWaadRequest:
      allOf:
        - $ref: '#/components/schemas/IdpBaseRequest'
        - properties:
            options:
              $ref: '#/components/schemas/IdpWaadOptionsRequest'
              description: IDプロバイダー固有のオプション。
            strategy:
              const: waad
          required:
            - strategy
            - options
          type: object
      description: IDプロバイダー固有のオプション。
      title: IdP Microsoft Azure AD Request
      type: object
      unevaluatedProperties: false
    IdpAdfsResponse:
      allOf:
        - $ref: '#/components/schemas/IdpBaseResponse'
        - properties:
            options:
              $ref: '#/components/schemas/IdpAdfsOptionsResponse'
              description: IDプロバイダー固有のオプションです。
            strategy:
              const: adfs
          required:
            - strategy
            - options
          type: object
      description: IDプロバイダー固有のオプションです。
      title: IdP ADFS Response
      type: object
      unevaluatedProperties: false
    IdpGoogleAppsResponse:
      allOf:
        - $ref: '#/components/schemas/IdpBaseResponse'
        - properties:
            options:
              $ref: '#/components/schemas/IdpGoogleAppsOptionsResponse'
              description: IDプロバイダー固有のオプションです。
            strategy:
              const: google-apps
          required:
            - strategy
            - options
          type: object
      description: IDプロバイダー固有のオプションです。
      title: IdP Google Workforce Response
      type: object
      unevaluatedProperties: false
    IdpOidcResponse:
      allOf:
        - $ref: '#/components/schemas/IdpBaseResponse'
        - properties:
            attributes:
              items:
                $ref: '#/components/schemas/IdpUserAttributeMapItem'
              type: array
            options:
              $ref: '#/components/schemas/IdpOidcOptionsResponse'
              description: IDプロバイダー固有のオプションです。
            strategy:
              const: oidc
          required:
            - strategy
            - options
            - attributes
          type: object
      description: IDプロバイダー固有のオプションです。
      title: IdP OIDC Response
      type: object
      unevaluatedProperties: false
    IdpOktaResponse:
      allOf:
        - $ref: '#/components/schemas/IdpBaseResponse'
        - properties:
            attributes:
              items:
                $ref: '#/components/schemas/IdpUserAttributeMapItem'
              type: array
            options:
              $ref: '#/components/schemas/IdpOktaOptionsResponse'
              description: IDプロバイダー固有のオプションです。
            strategy:
              const: okta
          required:
            - strategy
            - options
            - attributes
          type: object
      description: IDプロバイダー固有のオプションです。
      title: IdP Okta Response
      type: object
      unevaluatedProperties: false
    IdpPingFederateResponse:
      allOf:
        - $ref: '#/components/schemas/IdpBaseResponse'
        - properties:
            options:
              $ref: '#/components/schemas/IdpPingFederateOptionsResponse'
              description: IDプロバイダー固有のオプションです。
            strategy:
              const: pingfederate
          required:
            - strategy
            - options
          type: object
      description: IDプロバイダー固有のオプションです。
      title: IdP Ping Response
      type: object
      unevaluatedProperties: false
    IdpSamlpResponse:
      allOf:
        - $ref: '#/components/schemas/IdpBaseResponse'
        - properties:
            attributes:
              items:
                $ref: '#/components/schemas/IdpUserAttributeMapItem'
              type: array
            options:
              $ref: '#/components/schemas/IdpSamlpOptionsResponse'
              description: IDプロバイダー固有のオプションです。
            strategy:
              const: samlp
          required:
            - strategy
            - options
            - attributes
          type: object
      description: IDプロバイダー固有のオプションです。
      title: IdP SAML Response
      type: object
      unevaluatedProperties: false
    IdpWaadResponse:
      allOf:
        - $ref: '#/components/schemas/IdpBaseResponse'
        - properties:
            options:
              $ref: '#/components/schemas/IdpWaadOptionsResponse'
              description: IDプロバイダー固有のオプション。
            strategy:
              const: waad
          required:
            - strategy
            - options
          type: object
      description: IDプロバイダー固有のオプション。
      title: IdP Microsoft Azure AD Response
      type: object
      unevaluatedProperties: false
    IdpBaseRequest:
      allOf:
        - properties:
            access_level:
              $ref: '#/components/schemas/OrganizationAccessLevelEnum'
              readOnly: true
            assign_membership_on_login:
              description: true の場合、ユーザーはログイン時に組織のメンバーになります。
              type: boolean
            display_name:
              description: ログイン画面で使用される IDプロバイダー名。
              maxLength: 128
              minLength: 1
              type: string
            domains:
              description: ホーム レルム ディスカバリー（HRD）用のドメイン一覧
              items:
                type: string
              type: array
            id:
              $ref: '#/components/schemas/IdpId'
            is_enabled:
              description: IDプロバイダーが組織で有効になっている場合は true。
              type: boolean
            name:
              description: IDプロバイダーの名前
              maxLength: 128
              minLength: 1
              type: string
            show_as_button:
              description: >-
                ログインページにこの接続のボタンを表示できるようにします（新しいエクスペリエンスのみ）。false の場合、ホーム レルム
                ディスカバリー（HRD）でのみ使用できます。
              type: boolean
            strategy:
              $ref: '#/components/schemas/IdpStrategyEnum'
          required:
            - name
            - strategy
          type: object
    IdpAdfsOptionsRequest:
      oneOf:
        - additionalProperties: false
          properties:
            adfs_server:
              description: >-
                adfs_server は、証明書利用者と内部クライアントが、認証およびトークン発行のために ADFS
                サーバーと通信する際に使用する公開向け URL です
              type: string
          required:
            - adfs_server
          title: adfs_server
          type: object
        - additionalProperties: false
          properties:
            fedMetadataXml:
              description: >-
                ADFS の Federation Metadata XML ファイルは、ADFS サーバーと、ADFS
                からアイデンティティ情報を利用したい他の証明書利用者との間で信頼関係を確立するための設計図として機能する重要なドキュメントです。
              type: string
          required:
            - fedMetadataXml
          title: fedMetadataXml
          type: object
      type: object
    IdpGoogleAppsOptionsRequest:
      additionalProperties: false
      properties:
        client_id:
          description: 登録済みの Google アプリケーションの一意の識別子。
          type: string
        client_secret:
          description: 登録済みの Google アプリケーションへのアクセスに使用する文字列
          type: string
        domain:
          description: 組織の Google Workspace ドメイン名。
          type: string
        icon_url:
          description: クライアントアプリケーションを表す画像ファイルを指す URL。
          type: string
      required:
        - domain
        - client_id
        - client_secret
      type: object
    IdpOidcOptionsRequest:
      additionalProperties: false
      properties:
        client_id:
          description: プロバイダーから提供される識別子。登録済みアプリケーションの一意の識別子です。
          type: string
        client_secret:
          description: >-
            前の手順で Back Channel
            を選択した場合に利用できます。これはプロバイダーから提供されるシークレットであり、この手順の扱いはプロバイダーごとに異なります。
          type: string
        discovery_url:
          description: OIDC IDプロバイダーが OpenID Provider Configuration Information を公開している URL
          type: string
        type:
          $ref: '#/components/schemas/IdpOidcOptionsTypeEnum'
      required:
        - discovery_url
        - client_id
        - type
      type: object
    IdpOktaOptionsRequest:
      additionalProperties: false
      properties:
        client_id:
          description: 登録済みの Okta アプリケーションの一意の識別子
          type: string
        client_secret:
          description: 登録済みの Okta アプリケーションへのアクセスに使用する文字列。
          type: string
        domain:
          description: 組織の Okta ドメイン名。
          type: string
        icon_url:
          description: クライアントアプリケーションを表す画像ファイルの URL。
          type: string
      required:
        - domain
        - client_id
        - client_secret
      type: object
    IdpPingFederateOptionsRequest:
      additionalProperties: false
      properties:
        digestAlgorithm:
          $ref: '#/components/schemas/IdpSignAlgDigestTypeEnum'
        icon_url:
          description: クライアントアプリケーションを表す画像ファイルの URL。
          type: string
        idpInitiated:
          $ref: '#/components/schemas/IdpOptionsIdpInitiated'
        pingFederateBaseUrl:
          description: 接続の作成に使用する情報を返す、PingFederate が提供する URL
          type: string
        signSAMLRequest:
          description: PingFederate がリライングパーティに送信する SAML 認証リクエストにデジタル署名するかどうかを示します
          type: boolean
        signatureAlgorithm:
          $ref: '#/components/schemas/IdpSignAlgTypeEnum'
        signingCert:
          description: IdP から取得した PingFederate Server の公開鍵（PEM または CER でエンコード）
          type: string
      required:
        - pingFederateBaseUrl
        - signingCert
        - signatureAlgorithm
        - digestAlgorithm
        - signSAMLRequest
      type: object
    IdpSamlpOptionsRequest:
      oneOf:
        - additionalProperties: false
          properties:
            bindingMethod:
              description: SAML メッセージの送信に使用する HTTP Binding を定義します。
              type: string
            cert:
              description: IdP から取得した署名証明書（PEM または CER でエンコード）
              type: string
            digestAlgorithm:
              $ref: '#/components/schemas/IdpSignAlgDigestTypeEnum'
            icon_url:
              description: クライアントアプリケーションを表す画像ファイルの URL。
              type: string
            idpInitiated:
              $ref: '#/components/schemas/IdpOptionsIdpInitiated'
            metadataUrl:
              description: 接続の作成に使用する情報を返す、SAML プロバイダーが提供する URL
              type: string
            protocolBinding:
              $ref: '#/components/schemas/IdpProtocolBindingTypeEnum'
            signSAMLRequest:
              description: 有効にすると、SAML 認証リクエストに署名されます。
              type: boolean
            signatureAlgorithm:
              $ref: '#/components/schemas/IdpSignAlgTypeEnum'
          required:
            - metadataUrl
            - signSAMLRequest
          title: automatic
          type: object
        - additionalProperties: false
          properties:
            bindingMethod:
              description: SAML メッセージの送信に使用する HTTP Binding を定義します。
              type: string
            cert:
              description: IdP から取得した署名証明書（PEM または CER でエンコード）
              type: string
            digestAlgorithm:
              $ref: '#/components/schemas/IdpSignAlgDigestTypeEnum'
            icon_url:
              description: クライアントアプリケーションを表す画像ファイルの URL。
              type: string
            idpInitiated:
              $ref: '#/components/schemas/IdpOptionsIdpInitiated'
            protocolBinding:
              $ref: '#/components/schemas/IdpProtocolBindingTypeEnum'
            signInEndpoint:
              description: IdP サインイン用のエンドポイント URL
              type: string
            signSAMLRequest:
              description: 有効にすると、SAML 認証リクエストに署名されます。
              type: boolean
            signatureAlgorithm:
              $ref: '#/components/schemas/IdpSignAlgTypeEnum'
          required:
            - signInEndpoint
            - cert
            - signSAMLRequest
          title: manual
          type: object
    IdpWaadOptionsRequest:
      additionalProperties: false
      properties:
        client_id:
          description: 登録済みの Azure AD アプリケーションの一意の識別子です。
          type: string
        client_secret:
          description: 登録済みの Azure AD アプリケーションへのアクセスに使用する文字列です。
          type: string
        icon_url:
          description: クライアントアプリケーションを表す画像ファイルのURL。
          type: string
        tenant_domain:
          description: >-
            Azure AD のドメイン名です。Microsoft Azure ポータルの Azure AD
            ディレクトリの概要ページで確認できます。
          type: string
      required:
        - tenant_domain
        - client_id
        - client_secret
      type: object
    IdpBaseResponse:
      allOf:
        - properties:
            access_level:
              $ref: '#/components/schemas/OrganizationAccessLevelEnum'
              readOnly: true
            assign_membership_on_login:
              description: true の場合、ユーザーはログイン時に組織のメンバーになります。
              type: boolean
            display_name:
              description: ログイン画面で使用される IDプロバイダー名。
              maxLength: 128
              minLength: 1
              type: string
            domains:
              description: ホーム レルム ディスカバリー（HRD）用のドメイン一覧
              items:
                type: string
              type: array
            id:
              $ref: '#/components/schemas/IdpId'
            is_enabled:
              description: IDプロバイダーが組織で有効になっている場合は true。
              type: boolean
            name:
              description: IDプロバイダーの名前
              maxLength: 128
              type:
                - string
                - 'null'
            show_as_button:
              description: >-
                ログインページにこの接続のボタンを表示できるようにします（新しいエクスペリエンスのみ）。false の場合、ホーム レルム
                ディスカバリー（HRD）でのみ使用できます。
              type: boolean
            strategy:
              $ref: '#/components/schemas/IdpStrategyEnum'
          required:
            - strategy
          type: object
    IdpAdfsOptionsResponse:
      oneOf:
        - additionalProperties: false
          properties:
            adfs_server:
              description: >-
                adfs_server は、証明書利用者と内部クライアントが、認証およびトークン発行のために ADFS
                サーバーと通信する際に使用する公開向け URL です
              type: string
          title: adfs_server
          type: object
        - additionalProperties: false
          properties:
            fedMetadataXml:
              description: >-
                ADFS の Federation Metadata XML ファイルは、ADFS サーバーと、ADFS
                からアイデンティティ情報を利用したい他の証明書利用者との間で信頼関係を確立するための設計図として機能する重要なドキュメントです。
              type: string
          title: fedMetadataXml
          type: object
      type: object
    IdpGoogleAppsOptionsResponse:
      additionalProperties: false
      properties:
        client_id:
          description: 登録済みの Google アプリケーションの一意の識別子。
          type: string
        domain:
          description: 組織の Google Workspace ドメイン名。
          type: string
        icon_url:
          description: クライアントアプリケーションを表す画像ファイルを指す URL。
          type: string
      type: object
    IdpUserAttributeMapItem:
      allOf:
        - $ref: '#/components/schemas/BaseUserAttributeMapItem'
        - properties:
            sso_field:
              description: sso フィールドの名前。
              items:
                type: string
              type: array
          required:
            - sso_field
          type: object
      type: object
      unevaluatedProperties: false
    IdpOidcOptionsResponse:
      additionalProperties: false
      properties:
        client_id:
          description: プロバイダーから提供される識別子。登録済みアプリケーションの一意の識別子です。
          type: string
        discovery_url:
          description: OIDC IDプロバイダーが OpenID Provider Configuration Information を公開する URL
          type: string
        type:
          $ref: '#/components/schemas/IdpOidcOptionsTypeEnum'
      type: object
    IdpOktaOptionsResponse:
      additionalProperties: false
      properties:
        client_id:
          description: 登録済みの Okta アプリケーションの一意の識別子
          type: string
        domain:
          description: 組織の Okta ドメイン名。
          type: string
        icon_url:
          description: クライアントアプリケーションを表す画像ファイルの URL。
          type: string
      type: object
    IdpPingFederateOptionsResponse:
      additionalProperties: false
      properties:
        cert:
          description: >-
            signingCert をデコードして得られる値です。この値を直接更新しないでください。代わりに signingCertificate
            を更新して、このフィールドの新しい値をデコードしてください
          readOnly: true
          type: string
        digestAlgorithm:
          $ref: '#/components/schemas/IdpSignAlgDigestTypeEnum'
        icon_url:
          description: クライアントアプリケーションを表す画像ファイルの URL。
          type: string
        idpInitiated:
          $ref: '#/components/schemas/IdpOptionsIdpInitiated'
        pingFederateBaseUrl:
          description: 接続の作成に使用する情報を返す、PingFederate が提供する URL
          type: string
        signSAMLRequest:
          description: PingFederate がリライングパーティに送信する SAML 認証リクエストにデジタル署名するかどうかを示します
          type: boolean
        signatureAlgorithm:
          $ref: '#/components/schemas/IdpSignAlgTypeEnum'
      type: object
    IdpSamlpOptionsResponse:
      oneOf:
        - additionalProperties: false
          properties:
            bindingMethod:
              description: SAML メッセージの送信に使用する HTTP Binding を定義します。
              type: string
            cert:
              description: IdP から取得した署名証明書（PEM または CER でエンコード）
              type: string
            digestAlgorithm:
              $ref: '#/components/schemas/IdpSignAlgDigestTypeEnum'
            icon_url:
              description: クライアントアプリケーションを表す画像ファイルの URL。
              type: string
            idpInitiated:
              $ref: '#/components/schemas/IdpOptionsIdpInitiated'
            metadataUrl:
              description: 接続の作成に使用する情報を返す、SAML プロバイダーが提供する URL
              type: string
            protocolBinding:
              $ref: '#/components/schemas/IdpProtocolBindingTypeEnum'
            signSAMLRequest:
              description: 有効にすると、SAML 認証リクエストに署名されます。
              type: boolean
            signatureAlgorithm:
              $ref: '#/components/schemas/IdpSignAlgTypeEnum'
          title: automatic
          type: object
        - additionalProperties: false
          properties:
            bindingMethod:
              description: SAMLメッセージの送信に使用する特定のHTTPバインディングを定義します。
              type: string
            cert:
              description: IdPから取得した署名証明書（PEM または CER でエンコード）
              type: string
            digestAlgorithm:
              $ref: '#/components/schemas/IdpSignAlgDigestTypeEnum'
            icon_url:
              description: クライアントアプリケーションを表す画像ファイルのURL。
              type: string
            idpInitiated:
              $ref: '#/components/schemas/IdpOptionsIdpInitiated'
            protocolBinding:
              $ref: '#/components/schemas/IdpProtocolBindingTypeEnum'
            signInEndpoint:
              description: IdP サインイン用のエンドポイント URL
              type: string
            signSAMLRequest:
              description: 有効にすると、SAML認証リクエストに署名されます。
              type: boolean
            signatureAlgorithm:
              $ref: '#/components/schemas/IdpSignAlgTypeEnum'
          title: manual
          type: object
    IdpWaadOptionsResponse:
      additionalProperties: false
      properties:
        client_id:
          description: 登録済みの Azure AD アプリケーションの一意の識別子です。
          type: string
        icon_url:
          description: クライアントアプリケーションを表す画像ファイルのURL。
          type: string
        tenant_domain:
          description: >-
            Azure AD のドメイン名です。Microsoft Azure ポータルの Azure AD
            ディレクトリの概要ページで確認できます。
          type: string
      type: object
    OrganizationAccessLevelEnum:
      description: ''
      enum:
        - none
        - readonly
        - limited
        - full
      type: string
    IdpId:
      description: IDプロバイダーの識別子。
      pattern: ^con_[A-Za-z0-9]{16}$
      readOnly: true
      type: string
    IdpStrategyEnum:
      description: IDプロバイダーの種類
      enum:
        - adfs
        - google-apps
        - oidc
        - okta
        - pingfederate
        - samlp
        - waad
      type: string
    IdpOidcOptionsTypeEnum:
      description: >-
        認証のやり取りをサーバー間通信（バックチャネル）で行うか、Form Post を使用した Implicit Flow
        によりブラウザー経由（フロントチャネル）で行うかを選択します
      enum:
        - front_channel
        - back_channel
      type: string
    IdpSignAlgDigestTypeEnum:
      description: 署名に使用するダイジェストアルゴリズムを選択します
      enum:
        - sha256
        - sha1
      type: string
    IdpOptionsIdpInitiated:
      description: IDプロバイダー（IdP）起点のシングルサインオンフローの設定詳細を含むオブジェクト
      properties:
        client_authorizequery:
          description: このフィールドは、特定のクライアントに対してIdP起点フローを開始する際に、認可クエリ文字列を構築するためのテンプレートを表します
          type: string
        client_id:
          description: IdP起点フローの設定対象となるデフォルトアプリケーションのクライアントID
          type: string
        client_protocol:
          description: 選択したデフォルトアプリケーションへの接続に使用するプロトコルです
          type: string
        enabled:
          description: この接続で IdP起点のSSO が有効かどうかを示すフラグ
          type: boolean
      type: object
    IdpSignAlgTypeEnum:
      description: 署名に使用するアルゴリズムを選択します
      enum:
        - rsa-sha256
        - rsa-sha1
      type: string
    IdpProtocolBindingTypeEnum:
      description: IdP がサポートする HTTP バインディング。
      enum:
        - urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect
        - urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST
      type: string
    BaseUserAttributeMapItem:
      properties:
        description:
          description: ユーザー属性の説明。
          type: string
        is_extra:
          description: >-
            この属性が管理者定義のスキーマには含まれず、ソースから提供されるものかどうかを示します。更新処理を実行すると、このプロパティは削除されます。
          type: boolean
        is_missing:
          description: >-
            この属性が想定されているものの、管理者定義のスキーマでは提供されていないかどうかを示します。更新処理を実行すると、このプロパティは追加されます。
          type: boolean
        is_required:
          description: この属性が必須かどうかを示します。
          type: boolean
        label:
          description: ユーザー属性のラベル。
          type: string
        user_attribute:
          description: ユーザー属性の名前。
          type: string
      required:
        - is_required
        - is_extra
        - is_missing
      type: object
  headers:
    Retry-After:
      description: クライアントが新しいリクエストを行う前に待機すべき秒数。
      schema:
        type: integer
    X-Auth0-Error-Kind:
      description: レート制限の超過がグローバル制限（テナント単位）によるものかどうかを示す指標。
      schema:
        enum:
          - global-rate-limit
        type: string
    X-RateLimit-Limit:
      description: 現在のレート制限ウィンドウで許可されているリクエスト数。
      schema:
        type: integer
    X-RateLimit-Remaining:
      description: 現在のレート制限ウィンドウで残っているリクエスト数。
      schema:
        type: integer
    X-RateLimit-Reset:
      description: 現在のレート制限ウィンドウがリセットされる時刻を示す Unix タイムスタンプ。
      schema:
        type: integer
  securitySchemes:
    OAuth2ClientCredentials:
      flows:
        clientCredentials:
          scopes:
            create:my_org:client_grants: Create client grants for client in organization
            create:my_org:clients: Create API clients for organization
            create:my_org:domains: Create domain for organization
            create:my_org:identity_providers: Create identity provider for organization
            create:my_org:identity_providers_domains: Associate organization domain with identity provider
            create:my_org:identity_providers_provisioning: Create provisioning configuration for identity provider
            create:my_org:identity_providers_scim_tokens: Create a provisioning SCIM token for this identity provider
            create:my_org:member_invitations: Create member invitations for organization
            create:my_org:member_roles: Create Roles for members in organization
            delete:my_org:clients: Delete API clients for organization
            delete:my_org:domains: Delete domain for organization
            delete:my_org:identity_providers: Delete identity provider for organization
            delete:my_org:identity_providers_domains: Remove organization domain from identity provider
            delete:my_org:identity_providers_provisioning: Delete provisioning configuration for identity provider
            delete:my_org:identity_providers_scim_tokens: Delete a provisioning SCIM configuration for an identity provider
            delete:my_org:member_invitations: Delete member invitations for organization
            delete:my_org:member_roles: Delete Roles from members for organization
            delete:my_org:memberships: Delete members from organization without deleting underlying users
            read:my_org:clients: Read API clients for organization
            read:my_org:configuration: Read organization configuration
            read:my_org:details: Read organization details
            read:my_org:domains: Read domains for organization
            read:my_org:identity_providers: Read identity providers for organization
            read:my_org:identity_providers_provisioning: Read provisioning configuration for identity provider
            read:my_org:identity_providers_scim_tokens: List the provisioning SCIM tokens for this identity provider
            read:my_org:member_invitations: List member invitations for organization
            read:my_org:member_roles: List Roles for members in organization
            read:my_org:members: List members for organization
            update:my_org:details: Update organization details
            update:my_org:domains: Update domain for organization
            update:my_org:identity_providers: Update identity provider for organization
            update:my_org:identity_providers_detach: Detach identity provider from organization
            update:my_org:identity_providers_provisioning: Update provisioning configuration for identity provider
          tokenUrl: /oauth/token
          x-form-parameters:
            audience: /myorg-api/v1/
      type: oauth2
    OAuth2AuthCode:
      flows:
        authorizationCode:
          authorizationUrl: /authorize
          scopes:
            create:my_org:client_grants: Create client grants for client in organization
            create:my_org:clients: Create API clients for organization
            create:my_org:domains: Create domain for organization
            create:my_org:identity_providers: Create identity provider for organization
            create:my_org:identity_providers_domains: Associate organization domain with identity provider
            create:my_org:identity_providers_provisioning: Create provisioning configuration for identity provider
            create:my_org:identity_providers_scim_tokens: Create a provisioning SCIM token for this identity provider
            create:my_org:member_invitations: Create member invitations for organization
            create:my_org:member_roles: Create Roles for members in organization
            delete:my_org:clients: Delete API clients for organization
            delete:my_org:domains: Delete domain for organization
            delete:my_org:identity_providers: Delete identity provider for organization
            delete:my_org:identity_providers_domains: Remove organization domain from identity provider
            delete:my_org:identity_providers_provisioning: Delete provisioning configuration for identity provider
            delete:my_org:identity_providers_scim_tokens: Delete a provisioning SCIM configuration for an identity provider
            delete:my_org:member_invitations: Delete member invitations for organization
            delete:my_org:member_roles: Delete Roles from members for organization
            delete:my_org:memberships: Delete members from organization without deleting underlying users
            read:my_org:clients: Read API clients for organization
            read:my_org:configuration: Read organization configuration
            read:my_org:details: Read organization details
            read:my_org:domains: Read domains for organization
            read:my_org:identity_providers: Read identity providers for organization
            read:my_org:identity_providers_provisioning: Read provisioning configuration for identity provider
            read:my_org:identity_providers_scim_tokens: List the provisioning SCIM tokens for this identity provider
            read:my_org:member_invitations: List member invitations for organization
            read:my_org:member_roles: List Roles for members in organization
            read:my_org:members: List members for organization
            update:my_org:details: Update organization details
            update:my_org:domains: Update domain for organization
            update:my_org:identity_providers: Update identity provider for organization
            update:my_org:identity_providers_detach: Detach identity provider from organization
            update:my_org:identity_providers_provisioning: Update provisioning configuration for identity provider
          tokenUrl: /oauth/token
          x-form-parameters:
            audience: /myorg-api/v1/
      type: oauth2

````