Need help with your APIs? I offer API discovery, governance & evangelism services. Explore services →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

HashiCorp Vault AppRole API

AppRole auth method for machine-to-machine authentication

HashiCorp Vault AppRole API is one of 28 APIs that HashiCorp Vault publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include AppRole. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, and authentication docs.

This API exposes 6 operations across 4 paths, and defines 2 schemas. It is described by OpenAPI 3.1.0, at version 1.0.

Requests are made against a single base URL, https://vault.example.com/v1.

6 operations 4 paths 2 schemas 1 DELETE2 GET3 POST

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.1.0
API Version
1.0
Base URL
https://vault.example.com/v1/sys
Authentication
API Key
Resource Areas
1

Authentication & Security 1

HashiCorp Vault AppRole API declares 1 security scheme for authenticating requests. An API key is passed in the header as X-Vault-Token (vaultToken). By default, every request must be authenticated.

  • vaultToken — Vault authentication token

Paths & Operations 6

Across 4 paths, the API surfaces 6 operations — 1 DELETE, 2 GET, 3 POST. Each is listed below with its method, path, parameters, and response codes.

AppRole 6

AppRole auth method for machine-to-machine authentication

POST
/auth/approle/login
HashiCorp Vault Login with AppRole
loginWithAppRole body → 200400
GET
/auth/approle/role/{role_name}
HashiCorp Vault Read AppRole
readAppRole 1 param → 200404
POST
/auth/approle/role/{role_name}
HashiCorp Vault Create or update AppRole
createOrUpdateAppRole 1 param body → 204400
DELETE
/auth/approle/role/{role_name}
HashiCorp Vault Delete AppRole
deleteAppRole 1 param → 204
GET
/auth/approle/role/{role_name}/role-id
HashiCorp Vault Read AppRole role ID
readAppRoleRoleId 1 param → 200
POST
/auth/approle/role/{role_name}/secret-id
HashiCorp Vault Generate AppRole secret ID
generateAppRoleSecretId 1 param body → 200

Schemas 2

The contract defines 2 schemas that model the data the API accepts and returns. The most detailed are AppRole (14 properties), AuthResponse (5 properties). Each schema is shown below with its type and property counts.

AppRole
object
14 properties
AuthResponse
object
5 properties

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

hvault-approle-api-openapi.yml Raw ↑

Other APIs HashiCorp Vault publishes across the network.

HashiCorp Vault Audit API
HashiCorp Vault Auth API
HashiCorp Vault AWS API
HashiCorp Vault Configuration API
HashiCorp Vault Database API
HashiCorp Vault Entity Alias API
HashiCorp Vault Entity API
HashiCorp Vault GitHub API
HashiCorp Vault Group Alias API
HashiCorp Vault Group API
HashiCorp Vault Health API
HashiCorp Vault Init API