Discovery endpoint

OIDC Discovery Endpoint

GET
/service/oidc/{OIDCAppName}/.well-known/openid-configuration

OIDC Discovery Endpoint

apikey<token>

Tenant API Key for authentication

In: query

Path Parameters

OIDCAppName*string

OIDC App Name

Response Body

application/json

application/json

application/json

curl -X GET "https://TenantName.hub.loginradius.com/service/oidc/example_oidc_app/.well-known/openid-configuration"
{
  "acr_values_supported": [
    "loginradius:nist:level:1:re-auth"
  ],
  "authorization_endpoint": "https://{TenantEndpoint}/service/oidc/{oidcAppName}/authorize",
  "backchannel_logout_session_supported": true,
  "backchannel_logout_supported": true,
  "claims_supported": [
    "picture",
    "zoneinfo",
    "locale",
    "email",
    "phone_number",
    "middle_name",
    "nickname",
    "profile",
    "auth_time",
    "phone_number_verified",
    "address",
    "website",
    "birthdate",
    "updated_at",
    "acr",
    "email_verified",
    "name",
    "given_name",
    "preferred_username",
    "gender",
    "family_name"
  ],
  "code_challenge_methods_supported": [
    "S256"
  ],
  "end_session_endpoint": "https://{TenantEndpoint}/service/oidc/{oidcAppName}/logout",
  "grant_types_supported": [
    "authorization_code",
    "implicit",
    "refresh_token",
    "password",
    "urn:ietf:params:oauth:grant-type:device_code"
  ],
  "id_token_signing_alg_values_supported": [
    "RS256"
  ],
  "issuer": "https://{TenantEndpoint}/service/oidc/{oidcAppName}",
  "jwks_uri": "https://{TenantEndpoint}/service/oidc/{oidcAppName}/jwks",
  "request_parameter_supported": false,
  "response_modes_supported": [
    "query",
    "form_post",
    "fragment"
  ],
  "response_types_supported": [
    "code",
    "token",
    "id_token",
    "code token",
    "code id_token",
    "token id_token",
    "code token id_token"
  ],
  "revocation_endpoint": "https://{TenantEndpoint}/api/oidc/{oidcAppName}/revoke",
  "introspection_endpoint": "https://{TenantEndpoint}/api/oidc/{oidcAppName}/introspect",
  "revocation_endpoint_auth_methods_supported": [
    "client_secret_post",
    "client_secret_basic"
  ],
  "scopes_supported": [
    "openid",
    "email",
    "phone",
    "profile",
    "address"
  ],
  "subject_types_supported": [
    "public"
  ],
  "token_endpoint": "https://{TenantEndpoint}/api/oidc/{oidcAppName}/token",
  "token_endpoint_auth_methods_supported": [
    "client_secret_post",
    "client_secret_basic"
  ],
  "userinfo_endpoint": "https://{TenantEndpoint}/service/oidc/{oidcAppName}/userinfo"
}

{
  "error": "invalid_request",
  "error_description": "Your LoginRadius site does not have permission to access this endpoint, please contact LoginRadius support for more information."
}

{
  "error": "unauthorized_client",
  "error_description": "The Openid configuration not found."
}