How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Cisco Catalyst SD-WAN Certificate Management - Device API

The Certificate Management - Device API from Cisco Catalyst SD-WAN — 50 operation(s) for certificate management - device.

Cisco Catalyst SD-WAN Certificate Management - Device API is one of 382 APIs that Cisco Catalyst SD-WAN publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include Certificate Management - Device. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, and an API reference.

This API exposes 53 operations across 50 paths. It is described by OpenAPI 3.2.0, at version 26.1.0+2026-01-06.

Requests are made against a single base URL, /dataservice.

53 operations 50 paths 0 schemas 1 DELETE24 GET26 POST2 PUT

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.2.0
API Version
26.1.0+2026-01-06
Base URL
https://{sdwan-manager-host}:8443/dataservice
Resource Areas
1

Paths & Operations 53

Across 50 paths, the API surfaces 53 operations — 1 DELETE, 24 GET, 26 POST, 2 PUT. Each is listed below with its method, path, parameters, and response codes.

Certificate Management - Device 53
GET
/certificate/autorenewal/allowed
Auto renewal allowed
getCertAutoRenewalAllowed → 200400403500
POST
/certificate/certdetails
get certificaate details
getCertDetails body → 200400403500
POST
/certificate/controller/bulkcsr
Generate CSR for all controller
generateCSRforAllController 1 param → 200400403500
GET
/certificate/controller/certstatus
invalidate the device
getControllerCertStatus → 200400403500
POST
/certificate/controller/download/csr
Download CSR
downloadControllerCSR body → 200400403500
GET
/certificate/csr/details
Get CSR detail view
getCSRViewRightMenus → 200400403500
GET
/certificate/data/controller/list
get controller certificate data
getCertificateControllerListData 2 params → 200400403500
GET
/certificate/data/vedge/list
get vEdge certificate data
getCertificateVedgeListData 2 params → 200400403500
GET
/certificate/device/details
Get device detail view
getDeviceViewRightMenus → 200400403500
POST
/certificate/device/invalidate
invalidate the device
invalidateDevice body → 200400403500
GET
/certificate/device/list
get device list
getDevicesList → 200400403500
POST
/certificate/device/stage
Stop data traffic to device
stageDevice body → 200400403500
POST
/certificate/forcesync/rootCert
force Sync RootCert to all devices
forceSyncRootCert → 200400403500
POST
/certificate/generate/controller/csr/async
generate asynchronously CSR on controller device
generateCSRAsync body → 200400403500
POST
/certificate/generate/csr
generate CSR on target device
generateCSR body → 200400403500
POST
/certificate/generate/csr/bulk/controller/async
generate asynchronously CSR on multiple devices
generateCSRBulkControllerAsync body → 200400403500
POST
/certificate/generate/csr/bulk/edge/async
generate asynchronously CSR on multiple devices
generateCSRBulkEdgeAsync body → 200400403500
POST
/certificate/generate/enterprise/csr/vedge
generate CSR on hardware WAN edge device
generateEnterpriseCSR body → 200400403500
POST
/certificate/generate/wanedge/csr
generate CSR on WAN edge device
generateEdgeDeviceCSR body → 200400403500
POST
/certificate/getDeviceData/signedCerts
Get device data from signed certs
getDeviceDataFromSignedCerts body → 200400403500
POST
/certificate/install/signedCert
install Certificate
installCertificate body → 200400403500
POST
/certificate/install/upload/signedCerts
Install signed certs
installBulkSignedCerts body → 200400403500
PUT
/certificate/jks
update JKS
updateJks body → 200400403500
GET
/certificate/list/status
get certificate data
getListStatus → 200400403500
GET
/certificate/mthub/list
vSmart Mthub list
setvSmartMtHubList → 200400403500
POST
/certificate/pullDeviceList
New pull device list
pullDeviceList body → 200400403500
POST
/certificate/pullDeviceList/done
Pull device list done
pullDeviceListDone body → 200400403500
GET
/certificate/quarantine/banner
get quarantine banner data
getQuarantineBanner → 200400403500
GET
/certificate/record
get device certificate data
getCertificateData 2 params → 200400403500
POST
/certificate/reschedule/certificate/job
Re-schedule Certificate Job
reScheduleCertificateJob body → 200400403500
POST
/certificate/reset/rsa
resetRSA for controllers
resetRSA body → 200400403500
POST
/certificate/revoke/enterprise/certificate
Revoking enterprise CSR for hardware vEdge
decommissionEnterpriseCSRForVedge body → 200400403500
GET
/certificate/rootcertchains
get root cert chain
getRootCertChains 1 param → 200400403500
PUT
/certificate/rootcertchains
update root cert chain
saveRootCertChain body → 200400403500
GET
/certificate/rootcertificate
Get device root certificate detail view
getRootCertificate → 200400403500
GET
/certificate/rsakeylengthdefault
Verify 2048-bit RSA key length on devices
rsaKeyLength2048ForAllDevices → 200400403500
POST
/certificate/save/vedge/list
change VedgeList Validity
saveVEdgeList body → 200400403500
POST
/certificate/stagingCert/status
Status of staging certificate from edge device
stagingCertificateStatus body → 200400403500
GET
/certificate/stats/detail
Get certificate details
getCertificateDetail 2 params → 200400403500
GET
/certificate/stats/summary
Get certificate expiration status
getCertificateStats → 200400403500
GET
/certificate/syncvbond
sync vManage UUID to all vBond
syncvBond → 200400403500
GET
/certificate/tokengeneratedlist
get token generated list
getTokenList → 200400403500
POST
/certificate/update/controller/validity
Update Controller validity
updateControllerValidity body → 200400403500
GET
/certificate/vedge
get device installed cert
getInstalledCert 1 param → 200400403500
GET
/certificate/vedge/csr
get device CSR
getvEdgeCSR 1 param → 200400403500
POST
/certificate/vedge/download/csr
Download CSR
downloadVedgeCSR body → 200400403500
GET
/certificate/vedge/list
get vEdge list
getvEdgeList 2 params → 200400403500
POST
/certificate/vedge/list
Save vEdge list (send to controller)
setvEdgeList 1 param body → 200400403500
GET
/certificate/view
Get certificate UI view
getView → 200400403500
GET
/certificate/vmanage/selfsignedcert
get vManage self signed cert
getSelfSignedCert → 200400403500
POST
/certificate/vsmart/list
save vSmart List(handleSendToVbond)
setvSmartList → 200400403500
GET
/certificate/vsmart/list
get vSmart list
getvSmartList → 200400403500
DELETE
/certificate/{uuid}
invalid device
deleteConfiguration 3 params → 200400403500

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

cisco-catalyst-sdwan-certificate-management-device-api-openapi.yml Raw ↑

Other APIs Cisco Catalyst SD-WAN publishes across the network.

Cisco Catalyst SD-WAN Administration - Audit Log API
Cisco Catalyst SD-WAN Administration - User and Group API
Cisco Catalyst SD-WAN CCI Authorization Service - CCI Registration API
Cisco Catalyst SD-WAN CCI Authorization Service - CCI Token API
Cisco Catalyst SD-WAN Certificate Management - vManage API
Cisco Catalyst SD-WAN Cisco Software API
Cisco Catalyst SD-WAN Client - Security API
Cisco Catalyst SD-WAN Client - UI API
Cisco Catalyst SD-WAN Cloud Sourced Application Compliance API
Cisco Catalyst SD-WAN Cloud Sourced Application Maintenance API
Cisco Catalyst SD-WAN Cluster Management API
Cisco Catalyst SD-WAN Colocation API
Where this information came from

This is an independent, third-party profile of Cisco Catalyst SD-WAN Certificate Management - Device API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.