# Keycloak API - create client

**URL:** <https://forum.keycloak.org/t/keycloak-api-create-client/9553>\
**Category:** Getting advice\
**Tags:** authentication\
**Created:** [June 12, 2021, 2:44am UTC](https://forum.keycloak.org/t/keycloak-api-create-client/9553 "2021-06-12T02:44:10Z")\
**Posts on this page:** 7\
**Page:** 1

<div class="post-metadata">

**Author:** ![forsholding](https://avatars.discourse-cdn.com/v4/letter/f/a87d85/32.png) [@forsholding](https://forum.keycloak.org/u/forsholding)\
**Post date:** [June 12, 2021, 2:44am UTC](https://forum.keycloak.org/t/keycloak-api-create-client/9553/1 "2021-06-12T02:44:10Z")

</div>

Question: which parameter of Keycloak API is dedicated to ‘Signature Algorithm’?

---

<div class="post-metadata">

**Author:** ![xgp](https://yyz2.discourse-cdn.com/free1/user_avatar/forum.keycloak.org/xgp/32/2589_2.png) [@xgp](https://forum.keycloak.org/u/xgp)\
**Post date:** [June 13, 2021, 11:36am UTC](https://forum.keycloak.org/t/keycloak-api-create-client/9553/2 "2021-06-13T11:36:43Z")

</div>

Which “Signature Algorithm” do you mean? In creating a Client, there are several. You can set them in the `attributes` hash of the Client object when updating/creating:

1. Access Token Signature Algorithm `access.token.signed.response.alg`
2. ID Token Encryption Key Management Algorithm `id.token.encrypted.response.alg`
3. ID Token Signature Algorithm `id.token.signed.response.alg`
4. ID Token Encryption Content Encryption Algorithm `id.token.encrypted.response.enc`
5. Request Object Signature Algorithm `request.object.signature.alg`
6. User Info Signed Response Algorithm `user.info.response.signature.alg`

---

<div class="post-metadata">

**Author:** ![forsholding](https://avatars.discourse-cdn.com/v4/letter/f/a87d85/32.png) [@forsholding](https://forum.keycloak.org/u/forsholding)\
**Post date:** [June 13, 2021, 1:16pm UTC](https://forum.keycloak.org/t/keycloak-api-create-client/9553/3 "2021-06-13T13:16:45Z")

</div>

Your response is really appreciated. However none of those attributes works for me. My case:  
Create new client with Client Authenticator ‘Signed Jwt’.  
Authenticator and Certificate are setup correctly, but Signature Algorithm is empty. This is what I need to setup.  
JSON Request:  
{“name”: “Test Client 2”,“enabled”: true,“id”: “test\_client\_2”,“description”: “API Test 2”,“publicClient”: “false”,“protocol”: “openid-connect”,“rootUrl”: “[http://localhost/8080/","adminUrl](http://localhost/8080/%22,%22adminUrl)”: “[http://localhost/8080/","authorizationServicesEnabled](http://localhost/8080/%22,%22authorizationServicesEnabled)”: “false”, “attributes”:{“jwt.credential.certificate”: “QWdeR130Iyt167YnfR…”},“clientAuthenticatorType”: “client-jwt”}

Thank you.

---

<div class="post-metadata">

**Author:** ![xgp](https://yyz2.discourse-cdn.com/free1/user_avatar/forum.keycloak.org/xgp/32/2589_2.png) [@xgp](https://forum.keycloak.org/u/xgp)\
**Post date:** [June 14, 2021, 8:13pm UTC](https://forum.keycloak.org/t/keycloak-api-create-client/9553/4 "2021-06-14T20:13:58Z")

</div>

A good way to figure out the representation to use is to go into the Admin UI, open your browser’s inspector to the network tab, and then do the action you want (e.g. create or update a client). The API request will appear in the list of network requests, and allow you to copy it (as curl, fetch, etc.).

---

<div class="post-metadata">

**Author:** ![forsholding](https://avatars.discourse-cdn.com/v4/letter/f/a87d85/32.png) [@forsholding](https://forum.keycloak.org/u/forsholding)\
**Post date:** [June 15, 2021, 3:17pm UTC](https://forum.keycloak.org/t/keycloak-api-create-client/9553/5 "2021-06-15T15:17:25Z")

</div>

Your advice is highly appreciated. I found it an it works!  
Just FYI: the name of attribute is ‘ **token.endpoint.auth.signing.alg** ’

Thanks a lot…

---

<div class="post-metadata">

**Author:** ![xgp](https://yyz2.discourse-cdn.com/free1/user_avatar/forum.keycloak.org/xgp/32/2589_2.png) [@xgp](https://forum.keycloak.org/u/xgp)\
**Post date:** [June 15, 2021, 3:36pm UTC](https://forum.keycloak.org/t/keycloak-api-create-client/9553/6 "2021-06-15T15:36:25Z")

</div>

Good to hear. And thank you for sharing the attribute you were looking for!

---

<div class="post-metadata">

**Author:** ![forsholding](https://avatars.discourse-cdn.com/v4/letter/f/a87d85/32.png) [@forsholding](https://forum.keycloak.org/u/forsholding)\
**Post date:** [June 15, 2021, 4:05pm UTC](https://forum.keycloak.org/t/keycloak-api-create-client/9553/7 "2021-06-15T16:05:14Z")

</div>

Again: thanks for your help.
