Get Domain Settings for Organization
GET/orgs/:orgId/policies/domain
Get the domain settings configured on a specific organization. If the organization doesn't have a custom setting, the default will be returned. Domain settings specify how ZITADEL should handle domains, in regards to usernames, emails and validation.
Request​
Path Parameters
Responses​
- 200
- 403
- 404
- default
domain policy of the org or the default policy if not customized
- application/json
- application/grpc
- application/grpc-web+proto
- Schema
- Example (from schema)
Schema
policy
object
details
object
on read: the sequence of the last event reduced by the projection
on manipulation: the timestamp of the event(s) added by the manipulation
on read: the timestamp of the first event of the object
on create: the timestamp of the event(s) added by the manipulation
on read: the timestamp of the last event reduced by the projection
on manipulation: the
the username has to end with the domain of its organization
defines if the organization's admin changed the policy
defines if organization domains should be validated org count as validated automatically
defines if the SMTP sender address domain should match an existing domain on the instance
{
"policy": {
"details": {
"sequence": "2",
"creationDate": "2025-01-06T09:05:18.273Z",
"changeDate": "2025-01-06T09:05:18.273Z",
"resourceOwner": "69629023906488334"
},
"userLoginMustBeDomain": true,
"isDefault": true,
"validateOrgDomains": true,
"smtpSenderAddressMatchesInstanceDomain": true
},
"isDefault": true
}
- Schema
- Example (from schema)
Schema
policy
object
details
object
on read: the sequence of the last event reduced by the projection
on manipulation: the timestamp of the event(s) added by the manipulation
on read: the timestamp of the first event of the object
on create: the timestamp of the event(s) added by the manipulation
on read: the timestamp of the last event reduced by the projection
on manipulation: the
the username has to end with the domain of its organization
defines if the organization's admin changed the policy
defines if organization domains should be validated org count as validated automatically
defines if the SMTP sender address domain should match an existing domain on the instance
{
"policy": {
"details": {
"sequence": "2",
"creationDate": "2025-01-06T09:05:18.273Z",
"changeDate": "2025-01-06T09:05:18.273Z",
"resourceOwner": "69629023906488334"
},
"userLoginMustBeDomain": true,
"isDefault": true,
"validateOrgDomains": true,
"smtpSenderAddressMatchesInstanceDomain": true
},
"isDefault": true
}
- Schema
- Example (from schema)
Schema
policy
object
details
object
on read: the sequence of the last event reduced by the projection
on manipulation: the timestamp of the event(s) added by the manipulation
on read: the timestamp of the first event of the object
on create: the timestamp of the event(s) added by the manipulation
on read: the timestamp of the last event reduced by the projection
on manipulation: the
the username has to end with the domain of its organization
defines if the organization's admin changed the policy
defines if organization domains should be validated org count as validated automatically
defines if the SMTP sender address domain should match an existing domain on the instance
{
"policy": {
"details": {
"sequence": "2",
"creationDate": "2025-01-06T09:05:18.274Z",
"changeDate": "2025-01-06T09:05:18.274Z",
"resourceOwner": "69629023906488334"
},
"userLoginMustBeDomain": true,
"isDefault": true,
"validateOrgDomains": true,
"smtpSenderAddressMatchesInstanceDomain": true
},
"isDefault": true
}
Returned when the user does not have permission to access the resource.
- application/json
- application/grpc
- application/grpc-web+proto
- Schema
- Example (from schema)
Schema
Array [
]
details
object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}
- Schema
- Example (from schema)
Schema
Array [
]
details
object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}
- Schema
- Example (from schema)
Schema
Array [
]
details
object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}
Returned when the resource does not exist.
- application/json
- application/grpc
- application/grpc-web+proto
- Schema
- Example (from schema)
Schema
Array [
]
details
object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}
- Schema
- Example (from schema)
Schema
Array [
]
details
object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}
- Schema
- Example (from schema)
Schema
Array [
]
details
object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}
An unexpected error response.
- application/json
- application/grpc
- application/grpc-web+proto
- Schema
- Example (from schema)
Schema
Array [
]
details
object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}
- Schema
- Example (from schema)
Schema
Array [
]
details
object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}
- Schema
- Example (from schema)
Schema
Array [
]
details
object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}