How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Venafi Access Management APIs API

The endpoints in this section allow you to manage your OAuth environment. Using endpoints described in this section, you can configure your global OAuth properties, assign roles to identities, create and manage applications, and create grant rules. After these are in place, users can request grants using the authentication server. This section also includes descriptions of endpoints that allow you to view and revoke issued grants.

Venafi Access Management APIs API is one of 58 APIs that Venafi publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include Access Management APIs. The published artifact set on APIs.io includes an OpenAPI specification and API documentation.

This API exposes 32 operations across 32 paths, and defines 64 schemas. It is described by OpenAPI 3.2.0, at version 26.1.1.

Requests are made against 3 base URLs: /, https://REPLACEdnsnameME/, https://{dnsname}/.

32 operations 32 paths 64 schemas 32 POST

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.2.0
API Version
26.1.1
Base URL
https://api.venafi.cloud
Authentication
HTTP Bearer
Resource Areas
1

Authentication & Security 1

Venafi Access Management APIs API declares 1 security scheme for authenticating requests. It accepts HTTP bearer tokens (AccessToken). By default, every request must be authenticated.

Paths & Operations 32

Across 32 paths, the API surfaces 32 operations — 32 POST. Each is listed below with its method, path, parameters, and response codes.

Access Management APIs 32

The endpoints in this section allow you to manage your OAuth environment. Using endpoints described in this section, you can configure your global OAuth properties, assign roles t…

POST
/vedsdk/oauth/grantrole
Assign a role
Venafi_Core_WebSDK_OAuthRest_GrantRole body → 200
POST
/vedsdk/oauth/revokerole
Remove a role
Venafi_Core_WebSDK_OAuthRest_RevokeRole body → 200403400401
POST
/vedsdk/oauth/listroles
Get assigned roles
Venafi_Core_WebSDK_OAuthRest_ListRoles body → 200403400401
POST
/vedsdk/oauth/getrole
Get own role
Venafi_Core_WebSDK_OAuthRest_GetRole body → 200403400401
POST
/vedsdk/oauth/getconfiguration
Get configuration
Venafi_Core_WebSDK_OAuthRest_GetConfiguration body → 200403400401
POST
/vedsdk/oauth/setconfiguration
Set configuration
Venafi_Core_WebSDK_OAuthRest_SetConfiguration body → 200403400401
POST
/vedsdk/oauth/createapplication
Create an application
Venafi_Core_WebSDK_OAuthRest_CreateApplication body → 200403400401
POST
/vedsdk/oauth/enumerateapplications
Enumerate all applications
Venafi_Core_WebSDK_OAuthRest_EnumerateApplications body → 200403400401
POST
/vedsdk/oauth/getapplications
Search applications
Venafi_Core_WebSDK_OAuthRest_GetApplications body → 200403400401
POST
/vedsdk/oauth/getapplication
Get an application
Venafi_Core_WebSDK_OAuthRest_GetApplication body → 200403400401
POST
/vedsdk/oauth/updateapplication
Update an application
Venafi_Core_WebSDK_OAuthRest_UpdateApplication body → 200403400401
POST
/vedsdk/oauth/deleteapplication
Delete an application
Venafi_Core_WebSDK_OAuthRest_DeleteApplication body → 200403400401
POST
/vedsdk/oauth/getscopes
Get all scopes
Venafi_Core_WebSDK_OAuthRest_GetScopes body → 200403400401
POST
/vedsdk/oauth/getgrants
Get grants issued to an identity
Venafi_Core_WebSDK_OAuthRest_GetGrants body → 200403400401
POST
/vedsdk/oauth/enumerategrants
Enumerate all application grants
Venafi_Core_WebSDK_OAuthRest_GetAndEnumerateGrants body → 200403400401
POST
/vedsdk/oauth/revokegrants
Revoke grants
Venafi_Core_WebSDK_OAuthRest_RevokeGrants body → 200403400401
POST
/vedsdk/oauth/createrule
Create a rule
Venafi_Core_WebSDK_OAuthRest_CreateRule body → 200403400401
POST
/vedsdk/oauth/getrules
Search rules
Venafi_Core_WebSDK_OAuthRest_GetRules body → 200403400401
POST
/vedsdk/oauth/enumeraterules
Enumerate all rules
Venafi_Core_WebSDK_OAuthRest_GetAndEnumerateRules body → 200403400401
POST
/vedsdk/oauth/updaterule
Update a rule
Venafi_Core_WebSDK_OAuthRest_UpdateRule body → 200403400401
POST
/vedsdk/oauth/deleterule
Delete a rule
Venafi_Core_WebSDK_OAuthRest_DeleteRule body → 200403400401
POST
/vedsdk/oauth/deleterules
Deletes rules
Venafi_Core_WebSDK_OAuthRest_DeleteRules body → 200403400401
POST
/vedsdk/oauth/grantcount
Get grant count
Venafi_Core_WebSDK_OAuthRest_GrantCount body → 200403400401
POST
/vedsdk/oauth/usercount
Get user count
Venafi_Core_WebSDK_OAuthRest_UserCount body → 200403400401
POST
/vedsdk/oauth/createjwtmapping
Create JWT mapping
Venafi_Core_WebSDK_OAuthRest_CreateJwtMapping body → 200403400401
POST
/vedsdk/oauth/enumeratejwtmappings
Enumerate JWT mappings
Venafi_Core_WebSDK_OAuthRest_EnumerateJwtMappings body → 200403400401
POST
/vedsdk/oauth/getjwtmappings
Search JWT mappings
Venafi_Core_WebSDK_OAuthRest_GetJwtMappings body → 200403400401
POST
/vedsdk/oauth/getjwtmapping
Get JWT mapping
Venafi_Core_WebSDK_OAuthRest_GetJwtMapping body → 200403400401
POST
/vedsdk/oauth/updatejwtmapping
Update JWT mapping
Venafi_Core_WebSDK_OAuthRest_UpdateJwtMapping body → 200403400401
POST
/vedsdk/oauth/deletejwtmapping
Delete JWT mapping
Venafi_Core_WebSDK_OAuthRest_DeleteJwtMapping body → 200403400401
POST
/vedsdk/rights/grantsystemrole
Grant a system role to a user or group
Venafi_Core_WebSDK_RightsRest_GrantSystemRole body → 200403400401
POST
/vedsdk/rights/revokesystemrole
Revoke a system role from a user or group
Venafi_Core_WebSDK_RightsRest_RevokeSystemRole body → 200403400401

Schemas 64

The contract defines 64 schemas that model the data the API accepts and returns. The most detailed are Core_WebSDK_OAuthWebRequest_createapplication (10 properties), Core_WebSDK_OAuthWebRequest_createjwtmapping (8 properties), Core_WebSDK_OAuthWebRequest_getrules (7 properties), Core_WebSDK_OAuthWebRequest_getgrants (7 properties). Each schema is shown below with its type and property counts.

Core_WebSDK_RightsWebRequest_grantsystemrole
object
2 properties
Core_WebSDK_OAuthWebRequest_deletejwtmapping
object
1 property
Core_WebSDK_OAuthWebRequest_getapplication
object
1 property
Core_WebSDK_OAuthWebRequest_getgrants
object
7 properties
Core_WebSDK_OAuthWebResponse_createapplication
object
4 properties
Core_WebSDK_OAuthWebResponse_deletejwtmapping
object
3 properties
Core_WebSDK_OAuthWebRequest_revokegrants
object
2 properties
Core_WebSDK_OAuthWebRequest_enumeraterules
object
6 properties
Core_WebSDK_OAuthWebRequest_enumeratejwtmappings
object
5 properties
Core_WebSDK_OAuthWebRequest_deleterule
object
2 properties
Core_WebSDK_OAuthWebRequest_updaterule
object
1 property
Core_WebSDK_OAuthWebRequest_getapplications
object
2 properties
Core_WebSDK_OAuthWebResponse_revokegrants
object
3 properties
Core_WebSDK_OAuthWebRequest_deleteapplication
object
1 property
Core_WebSDK_OAuthWebRequest_enumerateapplications
object
4 properties
Core_WebSDK_OAuthWebRequest_deleterules
object
2 properties
Core_WebSDK_OAuthWebResponse_getapplications
object
4 properties
Core_WebSDK_OAuthWebResponse_grantcount
object
4 properties
Core_WebSDK_OAuthWebResponse_listroles
object
4 properties
Core_WebSDK_OAuthWebResponse_revokerole
object
3 properties
Core_WebSDK_OAuthWebResponse_enumeraterules
object
4 properties
Core_WebSDK_OAuthWebResponse_deleterules
object
3 properties
Web_SDK_Authentication_OAuthError
object
REST OAuth Error Response
2 properties
Core_WebSDK_OAuthWebResponse_deleteapplication
object
3 properties
Core_WebSDK_OAuthWebResponse_deleterule
object
3 properties
Core_WebSDK_OAuthWebRequest_getjwtmappings
object
3 properties
Core_WebSDK_OAuthWebRequest_enumerategrants
object
6 properties
Core_WebSDK_OAuthWebResponse_createrule
object
4 properties
Core_WebSDK_OAuthWebResponse_getjwtmapping
object
4 properties
Core_WebSDK_OAuthWebRequest_revokerole
object
2 properties
Core_WebSDK_OAuthWebResponse_getjwtmappings
object
4 properties
Core_WebSDK_OAuthWebRequest_getjwtmapping
object
2 properties
Web_SDK_Authentication_OAuthResult
integer
0: Success The request completed successfully 1: Failure The request could not be completed successfully 2: ApplicationNotFound The requested application could…
Core_WebSDK_RightsWebResponse_revokesystemrole
object
1 property
Core_WebSDK_OAuthWebRequest_updateapplication
object
1 property
Core_WebSDK_OAuthWebResponse_grantrole
object
3 properties
Core_WebSDK_OAuthWebResponse_enumerategrants
object
4 properties
Core_WebSDK_OAuthWebResponse_enumerateapplications
object
4 properties
Core_WebSDK_OAuthWebRequest_usercount
object
1 property
Core_WebSDK_RightsWebResponse_grantsystemrole
object
1 property
Core_WebSDK_OAuthWebResponse_getconfiguration
object
4 properties
Core_WebSDK_OAuthWebResponse_getgrants
object
4 properties
Core_WebSDK_OAuthWebResponse_getrules
object
4 properties
Core_WebSDK_OAuthWebRequest_grantcount
object
1 property
Core_WebSDK_OAuthWebRequest_getrules
object
7 properties
Core_WebSDK_OAuthWebResponse_getscopes
object
4 properties
Core_WebSDK_OAuthWebResponse_updaterule
object
3 properties
Core_WebSDK_OAuthWebResponse_updatejwtmapping
object
3 properties
Core_WebSDK_OAuthWebResponse_usercount
object
4 properties
Web_SDK_Authentication_OAuthRole
integer
0: User User can see only his/her own items (ie, anything related to grants issued to a specific verified identity) 1: Auditor User can see everything but chan…
Core_WebSDK_OAuthWebResponse_createjwtmapping
object
4 properties
Core_WebSDK_OAuthWebResponse_getrole
object
4 properties
Core_WebSDK_RightsWebRequest_revokesystemrole
object
2 properties
Web_SDK_Authentication_OAuthOrderByField
integer
0: Default No order specified 1: Name Order results by name 2: Vendor Order results by vendor 3: AccessValidity Order results by access validity 4: GrantValidi…
Core_WebSDK_OAuthWebRequest_setconfiguration
object
1 property
Core_WebSDK_OAuthWebResponse_enumeratejwtmappings
object
4 properties
Core_WebSDK_OAuthWebRequest_grantrole
object
3 properties
Core_WebSDK_OAuthWebRequest_updatejwtmapping
object
1 property
Core_WebSDK_OAuthWebRequest_createrule
object
7 properties
Core_WebSDK_OAuthWebResponse_updateapplication
object
3 properties
Core_WebSDK_OAuthWebResponse_getapplication
object
4 properties
Core_WebSDK_OAuthWebRequest_createapplication
object
10 properties
Core_WebSDK_OAuthWebRequest_createjwtmapping
object
8 properties
Core_WebSDK_OAuthWebResponse_setconfiguration
object
3 properties

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

venafi-access-management-apis-api-openapi.yml Raw ↑

Other APIs Venafi publishes across the network.

Venafi AlgorithmSelector APIs API
Venafi Application API
Venafi Authentication Server APIs API
Venafi Certificate Approvals API
Venafi Certificate Auto-renewal Monitoring API
Venafi Certificate Discovery API
Venafi Certificate Expiration Reports API
Venafi Certificate Import API
Venafi Certificate Installations API
Venafi Certificate Inventory Monitoring API
Venafi Certificate Management APIs API
Venafi Certificate Policy API
Where this information came from

This is an independent, third-party profile of Venafi Access Management APIs API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.