Skip to main content

token_issuance_policies

Creates, updates, deletes, gets or lists a token_issuance_policies resource.

Overview

Nametoken_issuance_policies
TypeResource
Identra_id.service_principals.token_issuance_policies

Fields

The following fields are returned by SELECT queries:

Retrieved collection

NameDatatypeDescription
idstringThe unique identifier for an entity. Read-only.
appliesToarray
definitionarrayA string collection containing a JSON string that defines the rules and settings for a policy. The syntax for the definition differs for each derived policy type. Required.
deletedDateTimestring (date-time)Date and time when this object was deleted. Always null when the object hasn't been deleted. (pattern: ^[0-9]{4,}-(0[1-9]|1[012])-(0[1-9]|[12][0-9]|3[01])T([01][0-9]|2[0-3]):[0-5][0-9]:[0-5][0-9]([.][0-9]{1,12})?(Z|[+-][0-9][0-9]:[0-9][0-9])$)
descriptionstringDescription for this policy. Required.
displayNamestringDisplay name for this policy. Required.
isOrganizationDefaultbooleanIf set to true, activates this policy. There can be many policies for the same policy type, but only one can be activated as the organization default. Optional, default value is false.

Methods

The following methods are available for this resource:

NameAccessible byRequired ParamsOptional ParamsDescription
listselectservice_principal_idThe tokenIssuancePolicies assigned to this service principal.
add_refinsertservice_principal_id
remove_refdeleteservice_principal_id, token_issuance_policy_idIf-Match
remove_ref_2deleteservice_principal_idIf-Match

Parameters

Parameters can be passed in the WHERE clause of a query. Check the Methods section to see which parameters are required or optional for each operation.

NameDatatypeDescription
service_principal_idstringThe unique identifier of servicePrincipal
token_issuance_policy_idstringThe unique identifier of tokenIssuancePolicy
If-MatchstringETag

SELECT examples

The tokenIssuancePolicies assigned to this service principal.

SELECT
id,
appliesTo,
definition,
deletedDateTime,
description,
displayName,
isOrganizationDefault
FROM entra_id.service_principals.token_issuance_policies
WHERE service_principal_id = '{{ service_principal_id }}' -- required
;

INSERT examples

No description available.

INSERT INTO entra_id.service_principals.token_issuance_policies (
directoryObjectId,
service_principal_id
)
SELECT
'{{ directoryObjectId }}',
'{{ service_principal_id }}'
;

DELETE examples

No description available.

DELETE FROM entra_id.service_principals.token_issuance_policies
WHERE service_principal_id = '{{ service_principal_id }}' --required
AND token_issuance_policy_id = '{{ token_issuance_policy_id }}' --required
AND If-Match = '{{ If-Match }}'
;