The Instructure Community will enter a read-only state on November 22, 2025 as we prepare to migrate to our new Community platform in early December.
Read our blog post for more info about this change.
Found this content helpful? Log in or sign up to leave a like!
I know that you can only see and manage the keys that you generate within the Identity Services, so they must be associated to the user. But do they also inherit the Canvas User's status, roles, and permissions? Or, once generated, are they independent credentials with their own expiration and all with the same (full) access?
Early on, perhaps in one of the blog posts, I believe it was mentioned that a User needs particular Canvas permissions to access the Identity Services and generate keys. But otherwise the documentation seems to gloss over the management of these keys. It's not clear if data may be filtered or restricted (intentionally or otherwise), or if it may be more appropriate to use "service accounts" to generate and manage them rather than individual admins.
I don't believe it has anything to do with "you" per se.
We have a couple of "full institutional admins" that can perform this. I believe the Identity portal will kick you out unless you have a minimum level of permission, essentially not allowing you to even attempt to generate a credential. However, it would be great to see any details on this, especially the actual entitlements needed (if it's known). I can only see this enhancing administration...
Community helpTo interact with Panda Bot, our automated chatbot, you need to sign up or log in:
Sign inTo interact with Panda Bot, our automated chatbot, you need to sign up or log in:
Sign in