Skip to content

Commit 9a81e8a

Browse files
committed
Updated readme
1 parent 7ac49c9 commit 9a81e8a

File tree

2 files changed

+23
-1
lines changed

2 files changed

+23
-1
lines changed

README.md

Lines changed: 22 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -456,6 +456,10 @@ for details and use-cases.
456456
default_client_write_attributes = null
457457
default_client_explicit_auth_flows = null
458458
default_client_prevent_user_existence_errors = null
459+
default_client_access_token_validity = null
460+
default_client_id_token_validity = null
461+
default_client_token_validity_units = null
462+
default_client_enable_token_revocation = null
459463
```
460464

461465
- **`default_client_callback_urls`**: *(Optional `list(string)`)*
@@ -510,6 +514,24 @@ for details and use-cases.
510514

511515
Choose which errors and responses are returned by Cognito APIs during authentication, account confirmation, and password recovery when the user does not exist in the Cognito User Pool. When set to `ENABLED` and the user does not exist, authentication returns an error indicating either the username or password was incorrect, and account confirmation and password recovery return a response indicating a code was sent to a simulated destination. When set to `LEGACY`, those APIs will return a `UserNotFoundException` exception if the user does not exist in the Cognito User Pool.
512516

517+
- **`default_client_access_token_validity`**: *(Optional `number`)*
518+
519+
Time limit, between 5 minutes and 1 day, after which the access token is no longer valid and cannot be used.
520+
This value will be overridden if you have entered a value in 'default_client_token_validity_units'.
521+
522+
- **`default_client_id_token_validity`**: *(Optional `number`)*
523+
524+
Time limit, between 5 minutes and 1 day, after which the ID token is no longer valid and cannot be used.
525+
This value will be overridden if you have entered a value in 'default_client_token_validity_units'.
526+
527+
- **`default_client_token_validity_units`**: *(Optional `any`)*
528+
529+
Configuration block for units in which the validity times are represented in.
530+
531+
- **`default_client_enable_token_revocation`**: *(Optional `bool`)*
532+
533+
Enables or disables token revocation.
534+
513535
## Module Attributes Reference
514536

515537
The following attributes are exported by the module:

variables.tf

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -187,7 +187,7 @@ variable "default_client_token_validity_units" {
187187
# }
188188

189189
variable "default_client_enable_token_revocation" {
190-
description = " (Optional) Enables or disables token revocation."
190+
description = "(Optional) Enables or disables token revocation."
191191
type = bool
192192
default = null
193193
}

0 commit comments

Comments
 (0)