aws-cdk-lib.aws_cognito.CfnIdentityPool.CognitoIdentityProviderProperty

interface CognitoIdentityProviderProperty

LanguageType name
.NETAmazon.CDK.AWS.Cognito.CfnIdentityPool.CognitoIdentityProviderProperty
Gogithub.com/aws/aws-cdk-go/awscdk/v2/awscognito#CfnIdentityPool_CognitoIdentityProviderProperty
Javasoftware.amazon.awscdk.services.cognito.CfnIdentityPool.CognitoIdentityProviderProperty
Pythonaws_cdk.aws_cognito.CfnIdentityPool.CognitoIdentityProviderProperty
TypeScript aws-cdk-lib » aws_cognito » CfnIdentityPool » CognitoIdentityProviderProperty

CognitoIdentityProvider is a property of the AWS::Cognito::IdentityPool resource that represents an Amazon Cognito user pool and its client ID.

Example

// The code below shows an example of how to instantiate this type.
// The values are placeholders you should change.
import { aws_cognito as cognito } from 'aws-cdk-lib';
const cognitoIdentityProviderProperty: cognito.CfnIdentityPool.CognitoIdentityProviderProperty = {
  clientId: 'clientId',
  providerName: 'providerName',
  serverSideTokenCheck: false,
};

Properties

NameTypeDescription
clientId?stringThe client ID for the Amazon Cognito user pool.
providerName?stringThe provider name for an Amazon Cognito user pool.
serverSideTokenCheck?boolean | IResolvableTRUE if server-side token validation is enabled for the identity provider’s token.

clientId?

Type: string (optional)

The client ID for the Amazon Cognito user pool.


providerName?

Type: string (optional)

The provider name for an Amazon Cognito user pool.

For example: cognito-idp.us-east-2.amazonaws.com/us-east-2_123456789 .


serverSideTokenCheck?

Type: boolean | IResolvable (optional)

TRUE if server-side token validation is enabled for the identity provider’s token.

After you set the ServerSideTokenCheck to TRUE for an identity pool, that identity pool checks with the integrated user pools to make sure the user has not been globally signed out or deleted before the identity pool provides an OIDC token or AWS credentials for the user.

If the user is signed out or deleted, the identity pool returns a 400 Not Authorized error.