How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Venafi Authentication Server APIs API

The Auth REST SDK manages authorization bearer tokens. The tokens you need are based on the set of API calls that your client uses.The Auth SDK uses the VEDauth service to grant access and manage tokens. No installation is necessary. However, configuration is required. For more information, see Setting up token authentication.

Venafi Authentication Server APIs API is one of 58 APIs that Venafi publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include Authentication Server APIs. The published artifact set on APIs.io includes an OpenAPI specification and API documentation.

This API exposes 9 operations across 9 paths, and defines 15 schemas. It is described by OpenAPI 3.2.0, at version 26.1.1.

Requests are made against 3 base URLs: /, https://REPLACEdnsnameME/, https://{dnsname}/.

9 operations 9 paths 15 schemas 3 GET6 POST

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.2.0
API Version
26.1.1
Base URL
https://api.venafi.cloud
Authentication
HTTP Bearer
Resource Areas
1

Authentication & Security 1

Venafi Authentication Server APIs API declares 1 security scheme for authenticating requests. It accepts HTTP bearer tokens (AccessToken). By default, every request must be authenticated.

Paths & Operations 9

Across 9 paths, the API surfaces 9 operations — 3 GET, 6 POST. Each is listed below with its method, path, parameters, and response codes.

Authentication Server APIs 9

The Auth REST SDK manages authorization bearer tokens. The tokens you need are based on the set of API calls that your client uses. The Auth SDK uses the VEDauth service to grant…

POST
/vedauth/authorize/device
Request a device grant
Venafi_Web_SDK_Authentication_Authorize_RequestDeviceAuth body → 200400
POST
/vedauth/authorize/oauth
Request a grant with user credentials
Venafi_Web_SDK_Authentication_Authorize_AuthorizeOAuth body → 200400
POST
/vedauth/authorize/integrated
Request a grant via NTLM/Kerberos
Venafi_Web_SDK_Authentication_Authorize_IntegratedAuthorize body → 200400
POST
/vedauth/authorize/certificate
Request a grant via certificate
Venafi_Web_SDK_Authentication_Authorize_CertificateAuthorize body → 200400
POST
/vedauth/authorize/jwt
Request a grant via JWT
Venafi_Web_SDK_Authentication_Authorize_JwtAuthorize body → 200400
POST
/vedauth/authorize/token
Refresh a bearer/device token
Venafi_Web_SDK_Authentication_Authorize_Token body → 200403400401
GET
/vedauth/authorize/verify
Verify bearer token validity
Venafi_Web_SDK_Authentication_Authorize_VerifyToken → 200403400401
GET
/vedauth/authorize/IsAuthServer
Verify server availability
Venafi_Web_SDK_Authentication_Authorize_IsAuthServer → 200
GET
/vedauth/revoke/token
Revoke grant
Venafi_Web_SDK_Authentication_Revoke_RevokeGrant → 200202

Schemas 15

The contract defines 15 schemas that model the data the API accepts and returns. The most detailed are Web_SDK_Authentication_AuthorizeOAuthResponse (15 properties), Web_SDK_Authentication_AuthorizeVerifyResponse (13 properties), Web_SDK_Authentication_AuthorizeOAuthResponse_integrated (4 properties), Web_SDK_Authentication_AuthorizeOAuthResponse_oauth (4 properties). Each schema is shown below with its type and property counts.

Web_SDK_Authentication_AuthorizeOAuthRequest_jwt
object
3 properties
Web_SDK_Authentication_AuthorizeOAuthResponse_jwt
object
4 properties
Web_SDK_Authentication_AuthorizeVerifyResponse
object
Holds information about a particular access grant
13 properties
Web_SDK_Authentication_OAuthError
object
REST OAuth Error Response
2 properties
Web_SDK_Authentication_TokenOAuthRequest
object
RFC6749 token request.
4 properties
Web_SDK_Authentication_AuthorizeOAuthRequest_certificate
object
2 properties
Web_SDK_Authentication_AuthError
object
Class to generate OAuth Authentication Server error responses (See RFC6749, Section 5.2)
2 properties
Web_SDK_Authentication_AuthorizeOAuthResponse_device
object
4 properties
Web_SDK_Authentication_AuthorizeOAuthResponse_oauth
object
4 properties
Web_SDK_Authentication_AuthorizeOAuthRequest_integrated
object
2 properties
Web_SDK_Authentication_AuthorizeOAuthResponse_integrated
object
4 properties
Web_SDK_Authentication_AuthorizeOAuthResponse
object
Holds information about a particular access grant
15 properties
Web_SDK_Authentication_AuthorizeOAuthResponse_certificate
object
4 properties
Web_SDK_Authentication_AuthorizeOAuthRequest_device
object
2 properties
Web_SDK_Authentication_AuthorizeOAuthRequest_oauth
object
4 properties

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

venafi-authentication-server-apis-api-openapi.yml Raw ↑

Other APIs Venafi publishes across the network.

Venafi Access Management APIs API
Venafi AlgorithmSelector APIs API
Venafi Application API
Venafi Certificate Approvals API
Venafi Certificate Auto-renewal Monitoring API
Venafi Certificate Discovery API
Venafi Certificate Expiration Reports API
Venafi Certificate Import API
Venafi Certificate Installations API
Venafi Certificate Inventory Monitoring API
Venafi Certificate Management APIs API
Venafi Certificate Policy API
Where this information came from

This is an independent, third-party profile of Venafi Authentication Server APIs API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.