Enables the decoding of access tokens and determine if a local role is associated with the user. If a local role is not assigned within the access token, the user will be assigned default role (monitor).
Not all OIDC systems support the use of access tokens. If access tokens are not supported, this feature should be disabled.
Syntax
[no] aaa authorization oidc access-token enable
Parameters
no
Use the no form of this command to disable this feature.
Example
The following example enables access token decoding:
hostname (config) # aaa authorization oidc access-token enable
The following example disables access token decoding:
hostname (config) # no aaa authorization oidc access-token enable
User role
Admin
Command mode
Config
Supported appliances
Central Management System: Release 7.9.3
Endpoint Security (HX): Release 2.5
Email Security — Server: Release 7.9.3
Network Security: Release 7.9.3
Intelligent Virtual Execution - Server: Release 7.9.3