JUMP TOCentrify Identity Platform APICore ServicesDeletes an authentication profile.postGets an authentication profile.postGets a list of Authentication profiles.postSaves an authentication profile.postThe tenant brand information.postThe tenant brand.postFetch technical support user.postGrant portal access to technical support.postCreate a dynamic set.postCreate a manual set.postDelete a set.postGets the contents of a bucket.postGets a set based on the ID.postGets the references to a set.postGets the rights on a set.postGets a set template based on ObjectType and SubObjectType.postGets the members with access to the set.postGets the objects set.postGets a set of ObjectType.postGets the members with access to the set.postUpdate a set.postUpdates the set members.postAdds a Blocked IP Range.postAdds an IP Range local to the customer network.postRequests a heath check from a specific cloud connector or from all cloud connectors.postCreate a directory.postCreates a Reports directory in Path for the tenant.postCreates a Reports directory in the tenant for the current user.postDeletes a Blocked IP Range.postRemoves a suffix.postRemoves multiple suffixes.postDelete a set of certificates.postDeletes a directory.postDeletes a file.postDeletes a set of files.postDeletes a list of proxies.postRemove a connector referred to by proxyUuid.postDeletes a connector registration code.postDeletes a list of connector registration codes.postDeletes the tenant configuration key.postDeletes an IP Range local to the customer network.postCheck for the existence of a directory.postDownloads a certificate.postDownload the contents of a file.postCheck for the existence of a file.postGenerates a new connector registration code.postGenerates a password.postGet a list of domains in the forest.postGets the active directory topology for the directory service Uuid or the domain name.postGet the tenant suffixes.postGets the blocked IP Ranges.postGets the certificate authority certificate chain.postGet the tenant suffixes excluding 'legacy' versions.postGets the public part of the cloud certificate authority certificate.postGets the connector log4net config for the connector.postGets the current Iwa Json Url.postGets the current Iwa Url.postGets the public part of the default global app signing certificate.postList the directory contents of a directory.postGet a list of directory contents.postGets directory information for the path.postGets the directory services.postGets a list of domain controllers for the directory service Uuid in domain name.postGets download urls.postGet metadata and information about a file, as well as the file contents.postGet the Iwa trust root certificate.postGets the localized value of the tag.postGet domains and organizational units.postGets the IP Ranges local to the customer network.postGets list of connectors.postFetchs a connector registration code along with its settings.postFetchs a standard UI report that contains all of the connector registration codes.postGet the connector Iwa host certificate file.postGets the Iwa settings for the connector Uuid.postRetrieves a list of product licenses for this tenant, from Salesforce.postDEPRECATION WARNING - This API is no longer supported; please use /Report/GetReports.postGet supported cultures, returning their code and native name.postGets the public part of the tenant CA certificate.postGets the tenant's config value for a key.postReturns a file name that is unique in the directory.postGets all user settings of setting type.postGets the Zso certificatepostGets the Zso host information.postThis is a callback used by the twilio service.postIssues a user certificate. (Deprecated, please use OAuth2 instead.)postIssues a Zso user certificatepostList the file contents of a directory.postReturn given text as a file.postMove directory 'path' to 'toPath'.postCalls the NotifyEnvironment method on the connector.postRedirect to the targetUrl.postRead the contents of a file.postRe issue the certificate for the connector.postRename certificate with thumbprint to newName.postSets the connector Log4Net config for a connector.postSets the default certificate for the current tenant.postSet the certificate for the Iwa connector.postSet the connector Iwa Settings for proxyUuid.postSets the value of a tenant configuration key.postStarts the named service on the connector.postStops the named service on the connector.postStore a suffix.postSaves the user information.postStores the user settings.postUpdates the directory services stack for a tenant.postUpdates an existing connector registration code.postUpdates the Iwa connector settings.postUploads a certificate.postWrite string content to a file.postGets the value of an extended column.postGets the value of all extended columns for a row.postGets the tables extended columnar schema.postSets the value of an extended column.postSets the value of an extended column.postUpdates a table's extended columnar schema.postAdd a certificate authority.postDownloads the certificate authority public key file.postGet certificate authorities for the tenant.postRemove a certificate authority.postUpdate a certificate authority.postAdd global group assertion mapping.postCreate federation.postDelete a federation.postDelete global group assertion mapping.postGet the federation metadata.postGet a federation.postGet federation group assertion mappings.postGets a list of federations.postGets a list of federation signature typespostGets a list of federation types.postGet global federation settings.postGet global group assertion mappings.postGets a list of federated groups.postGets the public part of the Service Provider signing certificate.postGets the public part of the Service Provider signing certificate authority.postUpdate a federation.postUpdate federation group assertion mappings.postUpdate the global group assertion mappings.postCall back for the google directory service.postGets the IDP authorization state for the pollingToken.postGets the directory service configuration.postGets the state id and the service login url.postUpdates the directory service configuration.postUpdates the directory service configuration.postSimple health check for load balancers: Is this node active?postReturns a report of deployment history, schema upgrade history, current nodes, for support.postReturns a report of deployment history, schema upgrade history, current nodes, for support.postReturns login Data configurement.postQuery and read the config for the one Safenet kmip box for this tenant.postDelete the Kmip configuration.postGet the Kmip configurationpostStores the Kmip remote password.postAdds a service to the Lightweight Directory Access Protocol (LDAP) config.postRemove a service from the Lightweight Directory Access Protocol (LDAP).postGet a list of cloud connectors that have the LDAP module enabled.postGets the directory service version for an LDAP directory service specified by UUID.postGet the Lightweight Directory Access Protocol (LDAP) config.postGet the Directory Service UUID for a specific LDAP, using the name assigned by the user.postGets the list of mappable LDAP attributes.postGets a property to attribute mapping on an LDAP enabled directory service.postGets the scripting property to attribute mapping from an LDAP enabled directory service.postModify a service in the Lightweight Directory Access Protocol (LDAP) config.postSets a property to attribute mapping on an LDAP enabled directory service.postSets the scripting property to attribute mapping on an LDAP enabled directory service.postGets the results of the specified mappings by looking up a user by name.postVerify the Lightweight Directory Access Protocol (LDAP) directory service config.postRetrieves the file from the virtual file system.postAdd a single OATH profile to a specific user.postDelete a list of profiles.postGets data from a csv file.postGet import profile list.postGets the profile list for the user.postGets the oath profile list for a device.postResets the Centrify OATH profile.postResynchronize a TOTP or HOTP token.postSave or update the default Centrify profile.postProcess a previously uploaded csv file.postUpdate the oath profile counter.postValidate the otp code.postCreates a client token.postLoginpostAdd an authentication policy modifier.postDelete an authentication policy modifier.postDelete a policy block.postGet the authentication policy modifiers.postGets a list of policy links.postGet policy block.postGets the oath otp name for the user.postGet the password complexity requirements for the user.postGets a list of policy links.postGet policy block.postRetrieves a boolean policy value.postRetrieves an integer policy value.postGet the policy meta data.postRetrieves a string policy value.postGet the rsop policy for the user and device.postGets the oath u2f name for the user.postGet using cloud mobile group policy.postGet a list of policies for a device.postDeprecated; use SavePolicyBlock3.postSave a new or updated policy.postSaves a list of policy links.postSaves a list of policy links.postSets the using cloud mobile group policy.postGet all radius clients.postFetch Radius config for a specified connectorpostGet the list of RADIUS serverspostGet the user identifier attribute types.postRemove one or more radius clients if they exist.postRemove radius servers.postAdd or update a radius client.postChange radius config for a connector.postConfigures a Radius server.postGets a list of tenants for the customer.postRegister a new tenant.postDelete job history.postMake a job report.postDeprecated -- Am I authenticated.postDeprecated -- Checks for user execute rights on the Application Role Management task.postBegin the process of recovering a lost or forgotten user name.postGets a list of risk levels.postDeprecated -- Multi factor authentication login for user.postAdd an enrollment codepostCheck user permissions.postEnable or disable CSS Extension functionality for the agent computerpostDelete an enrollment codepostDisables zero or more features for an enrolled machine.postDeprecated -- EnableFeaturespostEnables zero or more features for an enrolled machine.postGet all enrollment codespostReturns specified configuration settings for the enrolled machinepostGet effective local groups.postGet group by id.postGet group by name.postGet group members.postGet information concerning which roles are allowed to be made visible as groups.postGet the group visibility scopes's valid names for a given role.postGet the group visibility scopes for a given role.postGet the group visibility scopes for a given type and effective scope.postGets a set of agent settings.postGet user by Id.postGet user by name.postGet user groups.postSet feature state on an enrolled machine.postUpdate group scopes.postUpdate information about the agent computer.postUpdate settings.postCheck to validate the agent computer.postVerify username and password.postVerify password.postVerify user can login.postDeprecated -- Add computer.postGets all visible accounts for a databasepostCheck if a database exists or notpostRefresh health status of a host, domain or database.postGrant permissions on a database collectionpostFor social authentication, this is the Facebook call back.postFor social authentication, this is the Google call back.postFor social authentication, this is the LinkedIn call back.postFor social authentication, this is the Microsoft call back.postFor social authentication, this is the Twitter call back.postGets the social configurations for all identity providers.postGet the application client secret.postGets the social user authentication configuration.postGets the social configuration for the requested identity provider.postResets the social user authentication configuration.postSets the social user authentication configuration.postSet custom configuration.postDescribe the system.postDummypostRetrieve a session id.postGet the system version.postRequest the cancellation of a job.postCreate a one time job.postDEPRECATION WARNING - This API is no longer supported; please use /Report/EmailReport.postReturns streaming job history data via a redrock style interface.postGets the history of a single job.postRetrieve simple job metrics from the persistent job system.postList the cnames assigned for the tenant.postGets the domain of tenant urlspostCreates a cname with prefix specified for the tenant.postSets the tenant cname to preferred as cnamepostGets the tenant cnames.postDeletes the cname for the tenant. Full cname is expected, e.g. 'company.my.centrify.net'.postDeletes a single key record from the config table.postReturns tenant's configuration values.postGet tenant configuration.postDeprecated -- Get editable mail templates.postGet editable message template.postGet editable message templates.postGets the google key for the tenant.postGets the tenant mobile configuration data.postGet the tenant Simple Mail Transport Protocol configuration.postGet the tenant Twilio configuration.postReset portal configuration.postSend a test message template.postSet the tenant configuration.postSet a tenant configuration.postSets the google key for the tenant.postSets the tenant mobile configuration.postSet password persistance. i.e. do we save your password.postSet the tenant Simple Mail Transport Protocol configuration.postSet the tenant Twilio configuration.postTest the tenant Simple Mail Transport Protocol configuration.postTest the tenant Twilio configuration.postEvaluate a shortened URL key, redirecting to its long URL if valid.postGet the file.postGet lower case file name.postAuthenticate the ZSO session.postLogin using a tenant Certificate authority certificate.postClears the Mac Safari Zso cookie.postIs the Mac Safari Zso cookie set.postChecks to see if sessionId is authenticated.postSets the Mac Safari Zso cookie.postAuthenticationCheck row ACLs.postGets a users access rights.postGet a collection of access rights.postRetrieves a list of who has what rights for the directory.postGets a list of directory rights.postGets a list of file rights.postGets ACLs on a file.postGets the access rights for a row.postAuthenticates a request.postConfirmposthttps://openid.net/specs/openid-connect-session-1_0.html#RPLogoutpostIntrospect.postKeyspostRevoke.postGets a token based on grant type.postThis returns the contents of the bearer token used.postAttempt to advance the state of an authentication session.postAdvances a forgot username session (similar to MFA advance authentication).postTerminate an incomplete session started with StartAuthentication or StartChallenge.postAllows OAuth2 clients to perform on-demand step-up authentication challenges.postContinues user authentication.postStarts a user authentication session.postStarts a step-up authentication challenge session.postStarts a forgot username session that looks similar to an MFA authentication session.postSubmit OATH OTP code for the specify userpostAnswer registration challenge.postDeletes the U2f device.postDelete a list of U2f devices.postGet the trusted facet list for the tenant.postGet registration challenge.postGets a list of U2f devices.postGets a list of U2f devices for the current user.postDirectory ServicesBulk imports users from csv file.postPerforms the action after confirming permission to do so.postReportsAdd a report.postAdd an array of reports.postCopy a report by Name or UUID.postDelete a report.postDelete an array of reports by UUID.postRun a report and email the results to a recipient.postGets the default categories for reportspostGet a report by Name or UUID.postGets list of grants associated with a collection of ReportspostGet list of permissions associated with a Report.postGets the rights on a Report.postGet report objects.postGrant permissions on a Report collection.postGrant permissions on a ReportpostUpdate an existing report.postUser ManagementGets a list of row rights.postDeprecated -- Delete a list of users with permission check.postCreate new users in the Cloud Directory Service based on data read from files.postDelete user after permission check (DEPRECATED)postExempt a specified user from MFA login for a period of time.postGet details for the current user.postReads users from a csv file(s) for bulk user import.postRefresh a user's cached identity.postCreate a Bulk User Import scheduled task to process an uploaded file.postRetreives a list of users that are members of a specific federated group.postRetrieves the Federated Group Memberships for a specfic user.postRevokes federated group membership from a specific group for a specific user.postRefresh current user's cached identity.postDelete admin security question.postGet a specific admin security questionpostGet admin security questionspostAdd admin security question.postGet the unix profile info for cloud role/group.postGet the unix profile info for cloud user.postReads user profiles from csv file(s) for bulk user unix profiles import.postSet unix profile for cloud group/rolepostSet unix profile for cloud userpostCreate a Bulk User Profile Import scheduled task to process an uploaded file.postAdd a user favorite.postRuns a risk check for the current user.postCheck to see if a user can edit attributes.postUpdate user attributespostChange the password for the current user.postQuery all directory services for users, groups, and/or roles using a json query string.postGet the cached entity.postGet the cached user.postGet a list of the user's favorites.postGet security questions for the current userpostFetch attributes for a specified user.postGet certificate info for a given user.postFetch the reporting hierarchy for a specified user.postGet additional info for a specified user.postFetch a cloud user's picture.postGets user roles and administrative rights.postInvite one or more users to the cloud portal.postChecks to see if a given user is cloud locked.postDetermine if the current user can (or cannot...) satisfy the requisite MFA challenges.postChecks to see if a given user is subject to cloud locks.postRemove a user favorite.postRemove a user from the cloud.postRemove one or more certificates for a given user.postRemove one or more users.postResets (clears) security questions for a user.postReset the password for a specified user.postSend email invitation to a specified user.postSend invitation emails to one or more users.postSend SMS invitation to a specified user.postApplies or clears a cloud lock for a given user.postSet the phone pin for a user.postUpdates security questions for a user.postUpdates various user preferences for the currently logged in user.postCloud User ManagementChange cloud user properties.postCreate a new user in the Cloud Directory Service.postCreate a new user in the Cloud Directory Service using minimal user information.postCreate new users in the Cloud Directory Service.postDelete a cloud user. (DEPRECATED)postGet details for a specified cloud user.postGet details for a specified user by name.postGet all cloud users.postRemoves AuthSource for list of userspostRemoves AuthSource from all users for a given FederationpostSet a cloud user's picture file.postSet user State (locked, disabled, expired) for a specified cloud user.postMultiFactor Auth support: answer out of band challenge.postDetermines if user needs step-up authentication.postFetches a one-time passcode for the specified use.postDeprecated -- User login.postLogout current user.postStart social authentication.postChecks to see if user has execute rights on the task.postChecks to see if user has execute rights on a list of tasks.postLooks for the multi auth customer response.postLooks for the multi auth customer response.postConfirms user authentication state.postCheck if a user profile challenge is required for the current user.postGet the user preferences.postDEPRECATED -- This API is deprecated and should not be used.postUncache the user preferences.postRole ManagementAssigns directoryfile rights to roles.postAssigns directory rights to roles.postAssigns file rights to roles.postGet list of administrative rights associated with a role.postList the roles and rights to a directoryfile.postList the roles and rights of a directory.postList the roles and rights of a file.postList the Dashboard roles and rights.postList the Report roles and rights.postGet the users for the specfied role id and return the paged results.postUpdate specific attributes of a Role, leaving the rest unchanged.postAdd principals to role.postAssigns a set of rights (super rights) to a role.postDelete a role.postDelete a list of Roles.postFetch a Role.postFetch a Role's principals.postRemove principals from role.postSet policy on the role (pre-created).postCreate a Principal List role.postRemoves a set of rights (super rights) from a role.postDeprecated -- Update a Role.postDevice ManagementDelete a device (Mobile + OSX)postDisable SSO on device (Mobile + OSX)postEnable SSO on device (Mobile + OSX)postLock client app (Mobile)postPing a device (Mobile + OSX)postReapply device policies (Mobile + OSX)postReset client app lock pin (Mobile)postGrant permissions on devicespostSet a device as primary (Mobile)postUpdate device policies (Mobile + OSX)postGrant permissions on applicationsspostResource ManagementAdd an AWS Access Key and Secret.postDeletes an access key for an IAM user.postLaunch an Ec2 instance and install a connector registered to this tenant.postGets Access Keys for an IAM user.postGet a List of all AWS availability zones in a given region.postGet the Centrify AWS Account ID and External ID for the tenant.postGet a list of VPC's along with information about connector(s) servicing the VPC.postGet a list of all roles for EC2 instances.postGet a List of all ssh keypairs in a given region.postGet region names.postGet a List of all aws regionspostGet a list of all security groups in a region.postGet a list of all subnets in a given VPC.postGet a list of all subnets in a specified list of regions.postGet a list of all VPC's in a given region.postImport AWS Access Key and Secret.postRetrieve an access key ID and secret access key for an IAM user.postVerify an AWS Access Key and SecretpostVerify an AWS Access Key and Secret for an IAM User name and Cloud Provider.postVerify assume role configuration.postVerify SQS queue configuration.postAddCloudProvider - Adds a cloud provider.postDeleteCloudProvider - Deletes a cloud provider.postCreates a asynchronous operation which will delete all cloud providers.postGetAllCloudProviders - Gets all cloud providers.postGetCloudProvider - Gets a cloud provider.postGets list of grants associated with a set of cloud providers.postGets list of grants associated with a cloud provider.postGrant permissions on cloud provider sets.postGrant permissions on cloud providerspostUpdateCloudProvider - Updates a cloud providerpostGet list of permissions associated with a set.postGrant permissions on a setpostExecute the Dzdo authentication challenge.postGet the Dzdo and the Mfa challenge profile ids.postExecute the Mfa authentication challenge.postSets the Dzdo and the Mfa challenge profile id.postAdds an alternate account discovery profile.postCancel all running Alternate Account Discovery jobs.postClear owner account set on the alternate account.postCommit a discovered alternate account.postCommit a list of discovered alternate accounts.postDeletes a list of alternate account discovery profiles.postDelete an alternate account discovery profile.postGets an alternate account discovery profile.postGets a list of alternate account discovery profiles.postGet the current user's dash A accounts that they can checkoutpostGets the current user rights of the alternate account discovery profile.postStarts a job for each of the alternate account discovery profile ids provided.postSet alternate account discovery profile permissions.postChanges the discovery account.postUpdate an alternate account discovery profile.postAdd a discovery account.postAre any discovery accounts referenced.postDelete a blacklisted computer.postDelete a discovery account.postDelete a host from the excluded discovery list.postGet discovery profile permissions.postGet a list of hosts excluded from discovery.postGet discovery job history.postGets list of referenced VPC's.postGet the name of a VPC.postSet discovery profile permissions.postUpdate a discovery account.postCheck if requester can Manage AssignmentpostEnumerate all privilege elevation assignments that are effective for a specific scopepostGet Challenges for privilege elevation to a SystempostReturns list of allowed privilege elevation commands for a specific user on a systempostInitiate a privilege elevation workflow requestpostCreate a new privilege elevation commandpostGrant privilege elevation command to user/role/grouppostDelete a privilege elevation commandpostDelete privilege elevation assignmentpostGet privilege elevation assignments that are explicitly grantedpostGets list of grants associated with a set of Privilege Elevation Commands.postGets list of grants associated with a Privilege Elevation Command.postEnumerate privilege elevation assignments associated with a commandpostGrant permissions on Privilege Elevation Command sets.postGrant permissions on Privilege Elevation CommandspostUpdate a privilege elevation commandpostUpdate privilege elevation assignmentpostGet the quick start state.postManage accounts.postRun the quick start discovery job.postVerify the administrator account.postAddResourceProfile - Adds a resource profile.postDeleteResourceProfile - Deletes a resource profile.postExportResourceProfilePackage - zips a resource profile into a package.postGetAllResourceProfiles - Gets all resource profiles.postGetResourceProfile - Gets a resource profile.postGets list of grants associated with a set of resource profiles.postGets list of grants associated with a resource profile.postOpenResourceProfilePackage - unzips and validates a resource profile package.postGrant permissions on resource profile sets.postGrant permissions on resource profilespostUpdateResourceProfile - Updates a resource profilepostAdd/Upload a config file to CloudpostConvert current agent from using machine cert to using OAuth.postDelete config file from CloudpostDeprecated -- EnrollpostEnrolls a machine to the CIP using user credentials.postEnrolls a machine to the CIP using user credentials.postReturns a list of all the config files pushed to systemspostReturns a machine certificate.postGets a DirectAudit configuration.postReturns offline OTP settings for the enrolled machinepostPush config files to agent asynchronouslypostRegisterpostEnrolls a machine to the CIP using an enrollment code.postEnrolls a machine to the CIP using an enrollment code.postUnenroll an enrolled Agent.postAysnchronous operation for unenrolling agents.postAdd an account for a resourcepostAdd a list of accounts.postAdd a databasepostAdd a list of databases.postAdd a domainpostAdd a list of domains.postAdd a systempostAdd a list of system resources.postAddSecret - Adds a secretpostAdds a secret folder.postAdd an SSH key as a JSON string.postAdd an SSH key as a file in multipart/form-data.postChecks if an SSH key can be deleted. Currently just looks for any accounts using this key.postChecks in an account passwordpostCheck whether offline OTP is available for the computerpostChecks out an account passwordpostCreate a Discovery ProfilepostDelete an accountpostDelete multiple accounts in background job.postDelete a databasepostDelete a domainpostDelete a resourcepostCreates a asynchronous operation which will delete all resources and associate accounts in the background.postDeleteSecret - Deletes a secretpostDeletes a secret folder.postDelete an SSH key.postDelete one or more SSH Keys. SSH keys in the set that require an MFA challenge to delete will fail to delete. The exception is if RunSync is true and a single ssh key is included in the Ids array. That case will follow Centrify's standard MFA challenge pattern for API requests.postDownloads a secret file in data chunks.postExtend checkout time for a passwordpostGenerate an SSH key based on given parameterspostGenerate an SSH key based on given parameterspostGets list of grants associated with collection of accountspostGets list of permissions associated with an accountpostRetrieves Accounts for LoginpostGets all visible accounts for a resourcepostGet's agent profile (if there is one) for a resourcepostReturns the auditing and monitoring service configuration for the tenant.postGet Challenges for login to a SystempostGet Rights on Computer for current user.postGet computer for ssh key accounts.postGets list of grants associated with collection of databasespostGet list of permissions associated with a databasepostGets a list of discovery profiles.postGets list of grants associated with collection of domainspostGets list of grants associated with a domainpostRetrieve token for an accountpostRetrieve token settings for an accountpostGets any ongoing Rdp or ssh sessions for a given user.postGets a list of accounts that the user has workspace login permission.postReturns an offline OTP for the computerpostGets list of grants associated with collection of resourcespostGets list of grants associated with resourcepostGet a retired password of an accountpostGet the rsop policy for the user and entity. If no user is passed in then the rsop will be for the current user.postGetSecret - Gets secret metadatapostFetch the workflow settings associated with a secretpostGets list of grants associated with a collection of secretspostGets a secret folder.postGet secret folders can move to.postFetch the rights and authentication challenges associated with a secret.postGets a folder and its contents (secrets, sub-folders)postGets the permissions for a folder.postGets the rights and challenges for a secret folder.postGet secret to be replaced.postGets all active sessionspostGets list of grants associated with collection of SSH keyspostGets an SSH key without any of the sensitive fields (PrivateKey, PublicKey, Passphrase)postGets list of permissions associated with a SSH keypostFetch the rights and authentication challenges associated with an SSH KeypostFetch the SSH keys available for login.postGet ssh key usage.postLog event for entering justification for login and password checkoutpostCreates a asynchronous operation which will attempt to put all accounts under management.postMoves a secret folderpostMoves a secret (between folders)postDelete multiple accounts at oncepostRotate multiple accounts at oncepostPartial update a system. ID is required.postCheck a domain exists or notpostPre Checkout call to get info for Checkout.postProvision reconciliation service account to resources.postRetrieve TOTP token for an accountpostRequest secret download url.postRequest secret upload url.postRetrieves the secret entitypostRetrieves the secret entity.postRetrieve an SSH key.postRotate password of a managed accountpostRotate multiple accounts at oncepostGrant permissions on account collectionspostGrants permissions on accountspostSets the system association for a connector.postGrant permissions on a databasepostGrant permissions on a domain collection.postGrant permissions on domainspostSet escrow key from file.postSets an mfa token on an accountpostGrant permissions on resource collectionspostGrant permissions on resourcespostSets a list of grants associated with a collection of secrets.postSets permissions on a secretpostSets the permissions on a folder.postGrant permissions on SSH keys collectionpostGrants permissions on SSH keyspostTerminate an active sessionpostUpdate an accountpostUpdate a databasepostUpdates a domainpostUpdates password of an accountpostUpdate a systempostUpdateSecret - Updates a secretpostUpdates a secret folder.postUpdate server settingspostUpdate fields on an SSH key.postUpload secret file in chunks.postWalks thru a checklist of items to verify a domain administrative account can help manage local accounts on a domain joined systempostGet login url.postAdd a subscription.postCreate a multiplexed account.postDelete a multiplexed account.postDelete a subscription.postGet all delayed multiplexed accounts.postGet multiplexed account.postGet list of permissions associated with a multiplexed accountpostGet multiplexed account rights.postGet all multiplexed accounts.postGet a subscription.postGets list of grants associated with collection of subscriptionspostGet list of permissions associated with a subscriptionpostGet subscription rights.postPush a subscription.postGrant permissions on a multiplexed accountpostGrant permissions on a subscription collectionpostGrant permissions on a subscriptionpostSync my subscriptions.postUpdate a multiplexed account.postUpdate a subscription.postAdd a vault.postDelete a vault.postGet all vaults.postGet all sites in a vault.postGet all templates in a vault.postGet vault sync job history.postGet information of a specific vault sync job.postGet a vault.postGet a site in a vault.postGrant permissions on vault collection.postGrant permissions on vaults.postSync systems and accounts from a vault.postUpdate vault informationpostVerify connectivity to a vault.postCreate assignment.postDelete expired assignments.postGet all roles.postGet workflow approvers.postGet the domain configuration.postGet resource roles.postRefresh the resource's "zone joined" status.postValidate user role request.postApplication ManagementGet metapostCheck if the apps are up to latest which is the template version in the app catalog.postDelete an application.postReturns a list of all apps that can be updated.postReturns credentials required to launch the app.postGets the ID of an app from its service namepostGet information for an application.postReturns a list of apps that are no longer supported.postGet information for application templates.postCreate an application.postChecks if Application is still available in the catalog.postRefresh the file metadata in case the file has been changed by direct upload to distributed FS. This API needs to be called in AWS after the distributed file is commited to the S3 storage from the browser.postRetrieve a publicly uploadable, SAS key secured URL (for Azure) or presigned URL (for AWS) for the app binary.postUpdate an application.postGet an application's data.postReturn a user's portal applications and how the user has access to each application.postGet the list of application tags for the current user.postGets all available data for the user portal in one call.postSet user credentials for an application.postAdd and update application tags for the current user.postWorkflow ManagementDeletes a workflow jobpostSends a workflow event to a workflowpostGets a workflow jobpostGets list of workflow jobspostGets list of workflow jobs associated with the current userpostStarts a workflow jobpostServer ManagementRun DiscoverypostGet Discovery StatuspostGet Discovery ProfilespostRole Management/SaasManage/GetRoleAppspostServer Session/serversession/jumptermgetServer Agent/ServerAgent/AddEnrollmentCodepostuprestHandleAppClickgetgetSSOTokengetApplication Management/saasManage/GetScriptpost/SaaSManage/SetApplicationPermissionspostAnalytics/rules/webhookpost/rules/webhook/testpost/rules/{id}/statuspost/rulesget/file/export/rules/webhook/{name}post/file/import/rules/webhookpost/rules/{id}delete/apis/access_tokenspost/apis/access_tokensget/apis/scopesget/apis/access_tokens/{id}/activateput/apis/access_tokens/{id}/inactivateput/apis/access_tokens/{id}delete/dataset/system/modelsgetChecks to see if a given user is cloud locked.post https://example.com/UserMgmt/IsUserCloudLockedYou must be a system administrator, have user management permissions, or be checking yourself.