Configure OAuth 2.0

Last update:
Aug 21, 2026
Scenario
An administrator needs to configure OAuth 2.0 settings for an application in the Aikyam Identity Console (AIC) to enable secure authentication and controlled access to user data. OAuth 2.0 ensures that applications can request and use tokens for authorized access without exposing user credentials, supporting compliance and security standards.
Prerequisites
  • Administrator has access to the Applications page with role-based permissions.
  • The application is already registered in AIC.
  • Authentication requirements (grant types, token validity, scopes) are finalized.
Roles authorized
  • Application administrator
Steps
  1. Sign in to Aikyam Identity Console.
  2. Navigate to Applications from the left navigation pane.
  3. Search for and select the application you want to configure.
  4. Go to the OAuth 2.0 tile.
  5. Click View & Update.
  6. Configure the following settings:
  7. Click Save to apply changes.
Note:
  • Authorization code is mandatory for user-facing apps; Client credentials for M2M.
  • Default token validity: Access token : 30 mins, ID token : 5–30 mins, Refresh token : 4–8 hrs.
  • Use Scopes (e.g., openid, profile, email) to define data access.
  • Configure acr_values for MFA or step-up authentication.

On this page

Powered by Aikyam @2025 All rights reserved