# HKU AD FS OAuth 2.0 / OpenID Connect Issuer

**Canonical:** https://apis.io/apis/hku/adfs-oidc/  
**Provider:** University of Hong Kong — https://apis.io/providers/hku/  
**Base URL:** https://adfs.hku.hk/adfs  
**Documentation:** https://its.hku.hk/

HKU AD FS OAuth 2.0 / OpenID Connect Issuer is one of 7 APIs that [University of Hong Kong](https://apis.io/providers/hku/) publishes on the [APIs.io](https://apis.io/) network, described by a machine-readable OpenAPI specification. This API exposes 1 JSON Schema definition. Tagged areas include Identity, OpenID Connect, Authentication, SAML, and Single Sign-On. The published artifact set on APIs.io includes an OpenAPI specification, authentication docs, and 1 JSON Schema.

Institution-operated OpenID Connect issuer at https://adfs.hku.hk/adfs, serving a live discovery document, a JWKS with an RS256 signing key, a UserInfo endpoint that returns a correct 401 to invalid tokens, a device authorization endpoint, and signed WS-Federation / SAML 2.0 federation metadata for entityID http://adfs.hku.hk/adfs/services/trust. Nine scopes and sixteen claims are advertised. Microsoft's realm discovery reports the hku.hk domain as federated to this host under the brand "The University Of Hong Kong". Not a developer-facing API — relying parties are registered by HKU ITS, and there is no dynamic client registration.

## Machine-readable artifacts (7)

- **OpenAPI** — https://raw.githubusercontent.com/api-evangelist/hku/refs/heads/main/openapi/hku-identity-openapi.yml
- **WellKnown** — https://raw.githubusercontent.com/api-evangelist/hku/refs/heads/main/well-known/hku-adfs-openid-configuration.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/hku/refs/heads/main/json-schema/hku-openid-configuration.schema.json
- **OAuthScopes** — https://raw.githubusercontent.com/api-evangelist/hku/refs/heads/main/scopes/hku-scopes.yml
- **Authentication** — https://raw.githubusercontent.com/api-evangelist/hku/refs/heads/main/authentication/hku-authentication.yml
- **ErrorCatalog** — https://raw.githubusercontent.com/api-evangelist/hku/refs/heads/main/errors/hku-errors.yml
- **Examples** — https://raw.githubusercontent.com/api-evangelist/hku/refs/heads/main/examples/hku-identity-examples.yml

## Other University of Hong Kong APIs (6)

- [HKU Shibboleth Identity Provider](https://apis.io/apis/hku/identity-federation/)
- [HKU ITS API Developer Portal and Gateway](https://apis.io/apis/hku/its-api-portal/)
- [HKU Scholars Hub OAI-PMH](https://apis.io/apis/hku/scholars-hub-oai/)
- [HKU DataHub (Figshare tenancy)](https://apis.io/apis/hku/datahub-figshare/)
- [HKU Libraries Discovery (Ex Libris Primo tenancy)](https://apis.io/apis/hku/library-primo/)
- [HKU Microsoft Entra ID Tenant](https://apis.io/apis/hku/entra-tenant/)

## Tags

Identity, OpenID Connect, Authentication, SAML, Single Sign-On

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/apis/hku/adfs-oidc/). The API's provider profile, Kin Score and agent-readiness rating are at https://apis.io/providers/hku/.
