Picarro Identity (P-Cubed SSO)

The Keycloak-backed identity service that fronts the Picarro P-Cubed cloud platform. It publishes an anonymous OpenID Connect discovery document for the `picarro` realm, advertising the authorization, token, userinfo, introspection, revocation, logout and JWKS endpoints, dynamic client registration, PKCE (S256), mTLS-bound access tokens and five OAuth 2.0 grant types. The P-Cubed web application itself authenticates browsers against the same realm over SAML 2.0.

API entry from apis.yml

apis.yml Raw ↑
name: Picarro Identity (P-Cubed SSO)
description: The Keycloak-backed identity service that fronts the Picarro P-Cubed cloud platform. It publishes
  an anonymous OpenID Connect discovery document for the `picarro` realm, advertising the authorization,
  token, userinfo, introspection, revocation, logout and JWKS endpoints, dynamic client registration,
  PKCE (S256), mTLS-bound access tokens and five OAuth 2.0 grant types. The P-Cubed web application itself
  authenticates browsers against the same realm over SAML 2.0.
humanURL: https://pcubed.picarro.com/
baseURL: https://identity-prod.picarro.com/auth/realms/picarro
tags:
- Authentication
- OpenID Connect
- OAuth
- SSO
- Identity
properties:
- type: OpenIDConnect
  url: well-known/picarro-openid-configuration.json
  name: OpenID Connect discovery document
- type: Authentication
  url: authentication/picarro-authentication.yml
- type: OAuthScopes
  url: scopes/picarro-scopes.yml