gcp-iap-oauth-client-secret
The IAP OAuth client resource returns its client secret to callers with the dedicated get-with-secret permission.
Where it sits
| location | iap.projects.brands.identityAwareProxyClients.get.secret |
|---|---|
| location kind | secret_value |
| data kinds | oauth_token secret_key credential |
| emits edge | CanReadCredential |
| service | Identity-Aware Proxy (gcp:iap) |
Collection recipe
| access mode | read_api |
|---|---|
| operation | iap.projects.brands.identityAwareProxyClients.get |
| response path | secret |
| encoding | string |
| params | {"name": "\u003cresource-name\u003e"} |
Required permissions
clientauthconfig.clients.getWithSecret