This is the API-Cloud-Schemas section of the Aembit Documentation documentation, as Markdown. # Aembit Cloud API - Data Schemas > Data schemas and models for Aembit Cloud API # Aembit Cloud API - Data Schemas **Version:** v1 ### AccessConditionDTO DTO of an individual Access Condition for enforcement during Access Policy evaluation **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **integrationID** *(optional)*: string (uuid) - ID of the Integration Entity used by this Access Condition * **integration** *(optional)*: IntegrationDTO - Integration Entity used by this Access Condition * **conditions** *(required)*: object - Rules which are enforced by the Access Condition * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Access Condition * **integrationType** *(optional)*: string | null ### AccessConditionDTOAccessConditionListDTO Page of Access Conditions **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Page of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP Status Code of the response * **recordsTotal** *(optional)*: integer (int32) - Total number of Access Conditions * **accessConditions** *(optional)*: Array | null - Page of Access Conditions ### AccessConditionPatchDTO Patch Request DTO for individual Access Condition **Type:** object **Properties:** * **name** *(optional)*: string | null - New Name for the identified entity * **description** *(optional)*: string | null - New Description for the identified entity * **isActive** *(optional)*: boolean (boolean) | null - New Status for the identified entity * **tags** *(optional)*: Array | null - New Tags for the identified entity ### AccessConditionV2DTO **Type:** object **Properties:** * **integrationType** *(required)*: string | null * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **integrationID** *(optional)*: string (uuid) - ID of the Integration Entity used by this Access Condition * **integration** *(optional)*: IntegrationV2DTO | CrowdStrikeIntegrationDTO | WizIntegrationDTO | GeoIPIntegrationDTO | TimeIntegrationDTO | null - Integration Entity used by this Access Condition * **maxLastSeenSeconds** *(optional)*: integer (int32) * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Access Condition ### AccessConditionV2DTOAccessConditionListDTO Page of Access Conditions **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Page of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP Status Code of the response * **recordsTotal** *(optional)*: integer (int32) - Total number of Access Conditions * **accessConditions** *(optional)*: Array\ | null - Page of Access Conditions ### AgentControllerDTO DTO of an individual Agent Controller for Agent Proxy management **Type:** object **Properties:** * **id** *(optional)*: integer (int) - ID of the Agent Controller * **externalId** *(optional)*: string (uuid) - ID of the Agent Controller * **createdAt** *(optional)*: string (date) - Agent Controller creation Timestamp * **version** *(optional)*: string | null - Last reported software version of the Agent Controller * **isActive** *(optional)*: boolean (boolean) - Active status of the Agent Controller * **name** *(required)*: string - Name of the Agent Controller * **description** *(optional)*: string | null - Description of the Agent Controller * **tags** *(optional)*: Array | null - Tags assigned to the Agent Controller * **tlsCertificates** *(optional)*: Array | null - TLS Certificates associated with the Agent Controller * **trustProviderId** *(optional)*: string (uuid) | null - Trust Provider ID of the Agent Controller used for attested authentication * **trustProvider** *(optional)*: TrustProviderDTO - Trust Provider of the Agent Controller used for attested authentication * **modifiedAt** *(optional)*: string (date) - Agent Controller modification Timestamp * **isHealthy** *(optional)*: boolean (boolean) - Recently reported Agent Controller Health Status * **lastReportedUptime** *(optional)*: integer (int64) - Last Reported Agent Controller Uptime (in seconds) * **lastReportedHealthTime** *(optional)*: string (date) | null - Last Reported Agent Controller Health Time * **allowedTlsHostname** *(optional)*: string | null - Allowed TLS Hostname for Aembit Managed TLS ### AgentControllerDeviceCodeDTO DTO of an individual Agent Controller Device Code **Type:** object **Properties:** * **device\_code** *(optional)*: string | null - One time use OAuth 2 Device Code for use during AgentController deployment and registration ### AgentControllerListDTO Page of Agent Controllers for Agent Proxy management **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Page of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP StatusCode for the current result * **recordsTotal** *(optional)*: integer (int32) - Total number of AgentControllers available * **agentControllers** *(optional)*: Array | null - Page of AgentControllers for this request ### AgentControllerPatchDTO Patch Request DTO for individual Agent Controller **Type:** object **Properties:** * **version** *(optional)*: string | null * **isActive** *(optional)*: boolean (boolean) | null - New Status for the identified Agent Controller * **trustProviderId** *(optional)*: string (uuid) | null - New Trust Provider to use for the identified Agent Controller ### AgentControllerTagDTO Agent Controller Tag key and value **Type:** object **Properties:** * **key** *(required)*: string - Key for the Agent Controller Tag * **value** *(required)*: string - Value for the Agent Controller Tag ### AgentControllerTlsCertificateDTO Agent Controller TLS Certificate information **Type:** object **Properties:** * **subject** *(required)*: string - Subject of the Certificate * **serialNumber** *(required)*: string - Serial Number of the Certificate * **thumbprint** *(required)*: string - Thumbprint of the Certificate * **notBefore** *(required)*: string (date-time) - Creation Timestamp of the Certificate * **notAfter** *(required)*: string (date-time) - Expiration Timestamp of the Certificate * **hostName** *(required)*: string - Last reported Hostname for the Agent Controller * **createdAt** *(required)*: string (date-time) - Creation Timestamp for this Agent Controller TLS Certificate * **isManagedByAembit** *(optional)*: boolean (boolean) - True if the Agent Controller TLS Certificate is managed by Aembit ### AuditActorDTO DTO for the Actor details of an Aembit Audit Log **Type:** object **Properties:** * **type** *(optional)*: string | null - The type of Audit Log actor (e.g. User, System, or Role) * **displayName** *(optional)*: string | null - Fully qualified Audit Log Actor name * **userName** *(optional)*: string | null * **email** *(optional)*: string | null * **credentialProviderId** *(optional)*: string | null - Credential Provider ID that was used to generate the Role-based Access Token for this Audit Log action * **accessPolicyId** *(optional)*: string | null - Access Policy ID that was used to generate the Role-based Access Token for this Audit Log action ### AuditClientDTO DTO for the Client details of an Aembit Audit Log **Type:** object **Properties:** * **ipAddress** *(optional)*: string | null - IP Address of the remote client * **userAgent** *(optional)*: UserAgentDTO - HTTP User Agent of the remote client ### AuditLogDTO DTO for an individual Aembit Audit Log **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) - ID of an Aembit Audit Log * **resourceSetId** *(optional)*: string (uuid) - Resource Set ID of an Aembit Audit Log * **category** *(optional)*: string | null - Category of an Aembit Audit Log (e.g. Users, AccessPolicies, Workloads, etc.) * **actor** *(optional)*: AuditActorDTO - Actor DTO of an Aembit Audit Log * **activity** *(optional)*: string | null - Activity of an Aembit Audit Log * **target** *(optional)*: string | null - Target of an Aembit Audit Log * **client** *(optional)*: AuditClientDTO - Remote Client DTO of an Aembit Audit Log * **outcome** *(optional)*: AuditOutcomeDTO - Outcome DTO of an Aembit Audit Log * **trustProvider** *(optional)*: EventResultDTO - Attestation Result DTO for an AgentController of an Aembit Audit Log * **severity** *(optional)*: string | null - Severity of an Aembit Audit Log * **createdAt** *(optional)*: string (date-time) - Timestamp of when this Aembit Audit Log was created ### AuditLogListDTO Page of Aembit Audit Logs **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Page of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP Status Code of the response * **recordsTotal** *(optional)*: integer (int32) - Total number of Aembit Audit Logs * **auditLogs** *(optional)*: Array | null - Page of Aembit Audit Logs ### AuditOutcomeDTO DTO for the Outcome of an individual Aembit Audit Log **Type:** object **Properties:** * **reason** *(optional)*: string | null - Reason for the outcome of this Aembit Audit Log * **result** *(optional)*: string | null - Outcome of the action associated with this Aembit Audit Log ### AuthorizationEventAtttestationResultDTO Individual Access Entity Attestation Result of an Aembit Access Authorization Event **Type:** object **Properties:** * **id** *(optional)*: string (uuid) - Access Entity ID * **name** *(optional)*: string | null - Access Entity Name * **result** *(optional)*: string | null - Access Entity processing Result for this Access Authorization Event * **matches** *(optional)*: Array | null - List of matched Access Entity Identifiers * **reason** *(optional)*: string | null * **attribute** *(optional)*: string | null * **expectedValue** *(optional)*: string | null * **expectedValues** *(optional)*: Array | null * **actualValue** *(optional)*: string | null ### AuthorizationEventCPResultDTO Individual Credential Provider Result of an Aembit Access Authorization Event **Type:** object **Properties:** * **id** *(optional)*: string (uuid) - Access Entity ID * **name** *(optional)*: string | null - Access Entity Name * **result** *(optional)*: string | null - Access Entity processing Result for this Access Authorization Event * **matches** *(optional)*: Array | null - List of matched Access Entity Identifiers * **type** *(optional)*: string | null - Credential Provider Type * **reason** *(optional)*: string | null - Credential Provider Failure Reason ### AuthorizationEventDTO An individual Aembit Access Authorization Event **Type:** object **Properties:** * **authorizationChain** *(optional)*: Array | null * **meta** *(optional)*: AuthorizationEventDataMetaDTO - Metadata for an individual Aembit Access Authorization Event * **outcome** *(optional)*: AuthorizationEventOutcomeDTO - Outcome information for an individual Aembit Access Authorization Event * **clientRequest** *(optional)*: ClientRequestDTO - Client Request information for an individual Aembit Access Authorization Event * **environment** *(optional)*: AuthorizationEventEnvironmentDataDTO * **clientWorkload** *(optional)*: AuthorizationEventEntityResultDTO - Client Workload information for an individual Aembit Access Authorization Event * **clientWorkloads** *(optional)*: Array | null - Client Workload information for an individual Aembit Access Authorization Event * **serverWorkload** *(optional)*: AuthorizationEventEntityResultDTO - Server Workload information for an individual Aembit Access Authorization Event * **serverWorkloads** *(optional)*: Array | null - Server Workload information for an individual Aembit Access Authorization Event * **accessPolicy** *(optional)*: AuthorizationEventEntityResultDTO - Access Policy information for an individual Aembit Access Authorization Event * **accessPolicies** *(optional)*: Array | null - Access Policy information for an individual Aembit Access Authorization Event * **trustProviders** *(optional)*: Array | null - Trust Provider information for an individual Aembit Access Authorization Event * **accessConditions** *(optional)*: Array | null - Access Condition information for an individual Aembit Access Authorization Event * **contentSecurity** *(optional)*: Array | null - Content Security information for an individual Aembit Access Authorization Event * **credentialProvider** *(optional)*: AuthorizationEventCPResultDTO - Credential Provider information for an individual Aembit Access Authorization Event * **user** *(optional)*: string | null - User information of the Aembit Access Authorization Event ### AuthorizationEventDataMetaDTO Metadata DTO for an individual Aembit Access Authorization Event **Type:** object **Properties:** * **clientIP** *(optional)*: string | null - Remote Client IP Address of the Access Authorization Request * **timestamp** *(optional)*: string (date-time) - Timestamp of the Access Authorization Request * **eventType** *(optional)*: string | null - Event Type of the Access Authorization Request * **eventId** *(optional)*: string (uuid) - Unique ID of the Access Authorization Event * **resourceSetId** *(optional)*: string (uuid) - Resource Set ID of the Access Authorization Event * **contextId** *(optional)*: string (uuid) - Context ID of the Access Authorization Events for a single Access Authorization Request * **directiveId** *(optional)*: string (uuid) - Directive ID of the Access Authorization Event (if available) * **severity** *(optional)*: string | null - Severity of the Access Authorization Event (e.g. Info, Warning, Error) ### AuthorizationEventEntityResultDTO Access Entity Result of an Aembit Access Authorization Event **Type:** object **Properties:** * **id** *(optional)*: string (uuid) - Access Entity ID * **name** *(optional)*: string | null - Access Entity Name * **result** *(optional)*: string | null - Access Entity processing Result for this Access Authorization Event * **matches** *(optional)*: Array | null - List of matched Access Entity Identifiers ### AuthorizationEventEnvironmentDataDTO **Type:** object **Properties:** * **network** *(optional)*: RequestMetadaNetworkDTO * **host** *(optional)*: RequestMetadaHostDTO * **process** *(optional)*: RequestMetadaProcessDTO * **aembit** *(optional)*: RequestMetadaAembitDTO * **aws** *(optional)*: RequestMetadaAwsDTO * **gcp** *(optional)*: RequestMetadaGcpDTO * **azure** *(optional)*: RequestMetadaAzureDTO * **kubernetes** *(optional)*: RequestMetadaKubernetesDTO * **gitlab** *(optional)*: RequestMetadaGitlabDTO * **github** *(optional)*: RequestMetadaGithubDTO * **oidc** *(optional)*: RequestMetadataOidcDTO * **terraform** *(optional)*: RequestMetadaTerraformDTO * **oauth** *(optional)*: RequestMetadaOAuthDTO ### AuthorizationEventListDTO Page of Aembit Access Authorization Events **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Page of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP Status Code of the response * **recordsTotal** *(optional)*: integer (int32) - Total number of Aembit Audit Logs * **authorizationEvents** *(optional)*: Array | null - Page of Aembit Access Authorization Events ### AuthorizationEventOutcomeDTO Outcome of an individual Aembit Access Authorization Event **Type:** object **Properties:** * **result** *(optional)*: string | null - Result of an individual Aembit Access Authorization Event * **reason** *(optional)*: string | null - Reason for the Result of an individual Aembit Access Authorization Event ### AwsIamRoleCpiDTO DTO for AWS IAM Role Credential Provider Integration **Extends:** CredentialProviderIntegrationDTO **Type:** object **Properties:** * **type** *(required)*: CredentialProviderIntegrationType * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **tokenExpiration** *(optional)*: string (date-time) | null * **lastOperationTimestamp** *(optional)*: string (date-time) | null * **status** *(optional)*: string | null * **errorMessage** *(optional)*: string | null * **roleArn** *(required)*: string - ARN of the AWS IAM Role to assume for access * **lifetimeInSeconds** *(optional)*: integer (int32) - Lifetime of the access credentials in seconds, default is 3600 seconds (1 hour) * **fetchSecretArns** *(optional)*: boolean - Indicates whether to fetch and populate the ARNs of secrets on AWS Secrets Manager Value Credential Provider UI ### AzureEntraFederationCredentialProviderIntegrationDTO Individual Credential Provider Integration **Extends:** CredentialProviderIntegrationDTO **Type:** object **Properties:** * **type** *(required)*: CredentialProviderIntegrationType * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **tokenExpiration** *(optional)*: string (date-time) | null * **lastOperationTimestamp** *(optional)*: string (date-time) | null * **status** *(optional)*: string | null * **errorMessage** *(optional)*: string | null * **audience** *(required)*: string - Audience of the federated OIDC token to authenticate against Azure Entra ID * **subject** *(required)*: string - Subject of the federated OIDC token to authenticate against Azure Entra ID * **azureTenant** *(required)*: string - Tenant ID of the Azure Entra ID to authenticate against Azure Key Vault * **clientId** *(required)*: string - Client ID of the Azure application to authenticate against Azure Key Vault * **keyVaultName** *(required)*: string - Name of the Azure Key Vault to fetch secrets from * **fetchSecretNames** *(optional)*: boolean - Indicates whether to fetch and populate the names of secrets on Azure Key Vault Value Credential Provider UI ### CPAwsStsV2DTO **Extends:** CredentialProviderV2DTO **Type:** object **Properties:** * **type** *(required)*: string * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **lifetimeTimeSpanSeconds** *(optional)*: integer (int32) * **lifetimeExpiration** *(optional)*: string (date-time) | null * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Credential Provider * **awsIAMRoleArn** *(required)*: string - Amazon Resource Name(ARN) for AWS IAM Role * **lifetime** *(optional)*: integer (int32) | null - Access token lifetime (in seconds) ### CPGitLabManagedAccountDTO **Extends:** CredentialProviderV2DTO **Type:** object **Properties:** * **type** *(required)*: string * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **lifetimeTimeSpanSeconds** *(optional)*: integer (int32) * **lifetimeExpiration** *(optional)*: string (date-time) | null * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Credential Provider * **groupIds** *(optional)*: string | null - Comma separated list of GitLab Group Identifiers or Paths * **projectIds** *(optional)*: string | null - Comma separated list of GitLab Project Identifiers or Paths * **accessLevel** *(required)*: integer (int32) - Access level code to use while assigning Managed Service Account to a group or a project * **lifetimeInSeconds** *(required)*: integer (int32) - Lifetime (in seconds) of a Personal Access Token of the Managed Service Account * **scope** *(required)*: string - A space separated list of scopes to be specified when requesting a Personal Access Token of a Managed Service Account * **userId** *(optional)*: integer (int32) - GitLab user ID of the Managed Service Account. * **username** *(optional)*: string | null - GitLab username of the Managed Service Account. * **tokenSensitiveDataId** *(optional)*: string (uuid) * **tokenId** *(optional)*: string | null * **tokenExpiration** *(optional)*: string (date-time) | null - Expiration timestamp of the Personal Access Token of the Managed Service Account. * **lastOperationTimestamp** *(optional)*: string (date-time) | null - Timestamp of the latest operation performed with the Personal Access Token of the Managed Service Account. * **status** *(optional)*: string | null - Status of the Personal Access Token of the Managed Service Account. * **errorMessage** *(optional)*: string | null - Contains an error message related to the last unsuccessful operation using the Personal Access Token of the Managed Service Account. * **credentialProviderIntegrationExternalId** *(optional)*: string (uuid) - ID of the Credential Provider Integration with which this Managed GitLab Account Credential Provider is associated ### CPTypeAembitAccessTokenV2DTO **Extends:** CredentialProviderV2DTO **Type:** object **Properties:** * **type** *(required)*: string * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **lifetimeTimeSpanSeconds** *(optional)*: integer (int32) * **lifetimeExpiration** *(optional)*: string (date-time) | null * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Credential Provider * **audience** *(required)*: string (your\_tenant\_id.api.aembit.io) - Audience for the access token * **roleId** *(required)*: string (uuid) - Aembit Role Id * **lifetimeInSeconds** *(required)*: integer (int32) - Access token lifetime (in seconds) * **absoluteTokenLifetime** *(optional)*: integer (int32) | null - Absolute Lifetime of the Refresh Token. Setting a value indicates Refresh Token Support will be enabled. ### CPTypeApiKeyUIV2DTO **Extends:** CredentialProviderV2DTO **Type:** object **Properties:** * **type** *(required)*: string * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **lifetimeTimeSpanSeconds** *(optional)*: integer (int32) * **lifetimeExpiration** *(optional)*: string (date-time) | null * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Credential Provider * **apiKey** *(required)*: string - API Key ### CPTypeAzureEntraFederationV2DTO **Extends:** CredentialProviderV2DTO **Type:** object **Properties:** * **type** *(required)*: string * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **lifetimeTimeSpanSeconds** *(optional)*: integer (int32) * **lifetimeExpiration** *(optional)*: string (date-time) | null * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Credential Provider * **audience** *(required)*: string - Audience for the access token * **subject** *(required)*: string - Subject for the access token * **scope** *(required)*: string - Scope for the access token * **azureTenant** *(required)*: string - Azure tenant ID * **clientId** *(required)*: string - Azure client ID ### CPTypeAzureKeyVaultValueDTO **Extends:** CredentialProviderV2DTO **Type:** object **Properties:** * **type** *(required)*: string * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **lifetimeTimeSpanSeconds** *(optional)*: integer (int32) * **lifetimeExpiration** *(optional)*: string (date-time) | null * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Credential Provider * **secretName1** *(optional)*: string | null - The first secret. Used when specifying a single key or a key representing a username when working with a username/password pair. * **secretName2** *(optional)*: string | null - The second secret. Used when specifying a password when working with a username/password pair. * **credentialProviderIntegrationExternalId** *(required)*: string (uuid) - ID of the Azure Entra Federation Credential Provider Integration with which this Azure Key Vault Value Credential is associated * **privateNetworkAccess** *(optional)*: boolean - Indicates if the Azure Key Vault Value Credential should be accessed over a private network ### CPTypeClaudeWifV2DTO **Extends:** CredentialProviderV2DTO **Type:** object **Properties:** * **type** *(required)*: string * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **lifetimeTimeSpanSeconds** *(optional)*: integer (int32) * **lifetimeExpiration** *(optional)*: string (date-time) | null * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Credential Provider * **federationRuleId** *(required)*: string - Federation Rule ID * **organizationId** *(required)*: string - Organization ID * **serviceAccountId** *(required)*: string - Service Account ID * **workspaceId** *(optional)*: string | null - Workspace ID * **audience** *(optional)*: string | null - Audience * **scope** *(required)*: string - Scope * **lifetime** *(optional)*: integer (int32) | null - Access token lifetime (in seconds) ### CPTypeGoogleWorkflowIDFederationV2DTO **Extends:** CredentialProviderV2DTO **Type:** object **Properties:** * **type** *(required)*: string * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **lifetimeTimeSpanSeconds** *(optional)*: integer (int32) * **lifetimeExpiration** *(optional)*: string (date-time) | null * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Credential Provider * **audience** *(required)*: string - Audience for the access token * **serviceAccountEmail** *(required)*: string (email) - Service account email * **lifetime** *(optional)*: integer (int32) | null - Access token lifetime (in seconds) ### CPTypeJWTTokenV2DTO **Extends:** CredentialProviderV2DTO **Type:** object **Properties:** * **type** *(required)*: string * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **lifetimeTimeSpanSeconds** *(optional)*: integer (int32) * **lifetimeExpiration** *(optional)*: string (date-time) | null * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Credential Provider * **tokenConfiguration** *(required)*: string - Token configuration type. Accepted value: ‘snowflake’ * **lifetime** *(required)*: integer (int32) - Access token lifetime (in seconds) * **algorithmType** *(required)*: string - Token signing algorithm. Accepted value: ‘RS256’ * **issuer** *(required)*: string (Snowflake\_Account\_Name.Snowflake\_Username.SHA256:{sha256(publicKey)}) - Issuer of the access token * **subject** *(required)*: string (Snowflake\_Account\_Name.Snowflake\_Username) - Subject of the access token * **keyContent** *(optional)*: string | null * **privateKey** *(optional)*: string | null ### CPTypeOAuth2AuthorizationCodeUIV2DTO **Extends:** CredentialProviderV2DTO **Type:** object **Properties:** * **type** *(required)*: string * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **lifetimeTimeSpanSeconds** *(optional)*: integer (int32) * **lifetimeExpiration** *(optional)*: string (date-time) | null * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Credential Provider * **clientID** *(required)*: string - OAuth Client ID * **clientSecret** *(optional)*: string | null - OAuth Client Secret * **scope** *(optional)*: string | null - OAuth Scopes * **customParameters** *(optional)*: Array | null - Custom Claims that are added to the Access Token * **oAuthUrl** *(required)*: string - OAuth well-known metadata endpoint * **authorizationUrl** *(required)*: string - OAuth Authorization URL for handling authorization requests * **tokenUrl** *(required)*: string - OAuth Token URL for handling token requests * **introspectionUrl** *(optional)*: string | null - Introspection Url of the OAuth 2.0 introspection endpoint, used to validate and obtain metadata about access tokens * **isPkceRequired** *(optional)*: boolean - Indicates if Proof Key for Code Exchange (PKCE) protocol flow must be used * **callBackUrl** *(optional)*: string | null - The callback URL where the Authorization Server sends the Authorization Code * **finalCallbackUrl** *(optional)*: string | null - Redirect URL after Aembit successfully completes OAuth authorization. Only available to Tenants which are entitled - contact Aembit support if you require this functionality. * **userAuthorizationUrl** *(optional)*: string | null - Authorization URL to be used for authorization of the Credential Provider by a privileged user * **state** *(optional)*: string | null - State parameter to maintain state between the authorization request and callback ### CPTypeOAuth2ClientCredentialsUIV2DTO **Extends:** CredentialProviderV2DTO **Type:** object **Properties:** * **type** *(required)*: string * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **lifetimeTimeSpanSeconds** *(optional)*: integer (int32) * **lifetimeExpiration** *(optional)*: string (date-time) | null * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Credential Provider * **clientID** *(required)*: string - OAuth Client ID * **clientSecret** *(optional)*: string | null - OAuth Client Secret * **scope** *(optional)*: string | null - OAuth Scopes * **customParameters** *(optional)*: Array | null - Custom Claims that are added to the Access Token * **url** *(required)*: string - OAuth Token URL for handling token requests * **credentialStyle** *(optional)*: string | null - Defines how credential would be transmitted. Accepted value: ‘postBody’, ‘authHeader’ ### CPTypeOAuth2CustomParameters **Type:** object **Properties:** * **key** *(optional)*: string | null * **value** *(optional)*: string | null * **valueType** *(optional)*: string | null ### CPTypeOpenAiWifV2DTO **Extends:** CredentialProviderV2DTO **Type:** object **Properties:** * **type** *(required)*: string * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **lifetimeTimeSpanSeconds** *(optional)*: integer (int32) * **lifetimeExpiration** *(optional)*: string (date-time) | null * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Credential Provider * **identityProviderId** *(required)*: string - Identity Provider ID * **serviceAccountId** *(required)*: string - Service Account ID * **audience** *(optional)*: string | null - Audience ### CPTypeUsernamePasswordUIV2DTO **Extends:** CredentialProviderV2DTO **Type:** object **Properties:** * **type** *(required)*: string * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **lifetimeTimeSpanSeconds** *(optional)*: integer (int32) * **lifetimeExpiration** *(optional)*: string (date-time) | null * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Credential Provider * **username** *(required)*: string - Username * **password** *(required)*: string - Password. Set to null on updates if not wish to change it ### CPTypeVaultClientTokenV2DTO **Extends:** CredentialProviderV2DTO **Type:** object **Properties:** * **type** *(required)*: string * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **lifetimeTimeSpanSeconds** *(optional)*: integer (int32) * **lifetimeExpiration** *(optional)*: string (date-time) | null * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Credential Provider * **issuer** *(required)*: string () - Issuer of the Access Token * **subject** *(required)*: string - Subject of the Access Token * **subjectType** *(optional)*: string | null - Subject type, Accepted values: ‘literal’, ‘dynamic’ * **lifetime** *(required)*: integer (int32) - Access Token(used for authentication against vault OIDC provider) Lifetime in seconds * **customClaimNames** *(optional)*: Array | null - Custom Claims that are added to the Access Token * **vaultHost** *(required)*: string - Vault host * **tls** *(optional)*: boolean - Tls enabled/disabled when connecting to the vault instance * **port** *(required)*: integer (int32) - Port number for connecting to the vault instance * **authenticationPath** *(required)*: string - Vault authentication path * **namespace** *(optional)*: string | null - Namespace to be used when connecting to the vault instance * **role** *(optional)*: string | null - User role to be used when connecting to the vault instance * **forwardingConfig** *(optional)*: string | null - Forwarding configuration for the vault request. Accepted values: ”, ‘conditional’, ‘unconditional’ * **privateNetworkAccess** *(optional)*: boolean - Specifies whether the Vault instance is accessible over a private network ### ClientIdentifierExternalDTO **Type:** object **Properties:** * **name** *(optional)*: string | null * **displayName** *(optional)*: string | null * **environmentPath** *(optional)*: string | null * **isSupported** *(optional)*: boolean ### ClientRequestDTO **Type:** object **Properties:** * **version** *(required)*: string * **network** *(required)*: NetworkDTO ### ClientWorkloadExternalDTO **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **identities** *(optional)*: Array | null * **standaloneCertificateAuthority** *(optional)*: string (uuid) | null - Standalone Certificate Authority associated with this Client Workload * **enforceSso** *(optional)*: boolean - Whether SSO is enforced for MCP authorization * **type** *(optional)*: string | null * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Client Workload * **ssoIdentityProviders** *(optional)*: Array\ | null ### ClientWorkloadIdentityDTO **Type:** object **Properties:** * **type** *(optional)*: string | null * **value** *(required)*: string * **key** *(optional)*: string | null ### ClientWorkloadListDTO Page of Client Workloads **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Page of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) * **recordsTotal** *(optional)*: integer (int32) * **clientWorkloads** *(optional)*: Array | null ### ClientWorkloadPatchDTO **Type:** object **Properties:** * **name** *(optional)*: string | null - New Name for the identified entity * **description** *(optional)*: string | null - New Description for the identified entity * **isActive** *(optional)*: boolean (boolean) | null - New Status for the identified entity * **tags** *(optional)*: Array | null - New Tags for the identified entity * **identities** *(optional)*: Array | null ### ContentSecurityDTO Individual Content Security **Type:** object **Properties:** * **type** *(required)*: string - Content Security Type * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Content Security ### ContentSecurityDTOListDTO **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Current page number of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP StatusCode for the current result * **recordsTotal** *(optional)*: integer (int32) - Total number of entities available * **entities** *(optional)*: Array\ | null - Page of entities for this request ### ContentSecurityPatchDTO Patch request for an individual Content Security **Type:** object **Properties:** * **name** *(optional)*: string | null - New Name for the identified entity * **description** *(optional)*: string | null - New Description for the identified entity * **isActive** *(optional)*: boolean (boolean) | null - New Status for the identified entity * **tags** *(optional)*: Array | null - New Tags for the identified entity ### CreatePolicyDTO Create/Update Access Policy **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **credentialProviders** *(optional)*: Array | null - Credential Providers associated with this Access Policy * **trustProviders** *(optional)*: Array\ | null - Trust Providers associated with this Access Policy * **accessConditions** *(optional)*: Array\ | null - Access Conditions associated with this Access Policy * **contentSecurity** *(optional)*: Array\ | null - Content Security associated with this Access Policy * **clientWorkload** *(optional)*: string (uuid) - Client Workload associated with this Access Policy * **serverWorkload** *(optional)*: string (uuid) - Server Workload associated with this Access Policy ### CredentialProviderDTO Individual Credential Provider **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **type** *(required)*: string - Credential Provider Type (e.g. oauth-client-credential, username-password, etc.) * **roleId** *(optional)*: string (uuid) | null - Credential Provider Role for use with Aembit Access Token type Credential Providers * **lifetimeTimeSpanSeconds** *(optional)*: integer (int32) - The Lifetime of a Credential Provider’s credential value * **lifetimeExpiration** *(optional)*: string (date-time) | null - The expiration timestamp for a Credential Provider’s credential value * **providerDetailJSON** *(optional)*: string | null - JSON representation of the Credential Provider configuration details * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Credential Provider ### CredentialProviderIntegrationDTO Individual Credential Provider Integration **Type:** object **Properties:** * **type** *(required)*: CredentialProviderIntegrationType * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **tokenExpiration** *(optional)*: string (date-time) | null * **lastOperationTimestamp** *(optional)*: string (date-time) | null * **status** *(optional)*: string | null * **errorMessage** *(optional)*: string | null ### CredentialProviderIntegrationPatchDTO Patch Request for an individual Credential Provider Integration **Type:** object **Properties:** * **name** *(optional)*: string | null - New Name for the identified entity * **description** *(optional)*: string | null - New Description for the identified entity * **isActive** *(optional)*: boolean (boolean) | null - New Status for the identified entity * **tags** *(optional)*: Array | null - New Tags for the identified entity ### CredentialProviderIntegrationType **Type:** string **Possible values:** `GitLab`, `AwsIamRole`, `AzureEntraFederation` ### CredentialProviderPatchDTO Patch request for an individual Credential Provider **Type:** object **Properties:** * **name** *(optional)*: string | null - New Name for the identified entity * **description** *(optional)*: string | null - New Description for the identified entity * **isActive** *(optional)*: boolean (boolean) | null - New Status for the identified entity * **tags** *(optional)*: Array | null - New Tags for the identified entity * **providerDetailJSON** *(optional)*: string | null - JSON representation of the Credential Provider configuration details * **type** *(optional)*: string | null - Credential Provider Type (e.g. oauth-client-credential, username-password, etc.) ### CredentialProviderUIDTO Individual Credential Provider **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **type** *(required)*: string - Credential Provider Type (e.g. oauth-client-credential, username-password, etc.) * **roleId** *(optional)*: string (uuid) | null - Credential Provider Role for use with Aembit Access Token type Credential Providers * **lifetimeTimeSpanSeconds** *(optional)*: integer (int32) - The Lifetime of a Credential Provider’s credential value * **lifetimeExpiration** *(optional)*: string (date-time) | null - The expiration timestamp for a Credential Provider’s credential value * **providerDetailJSON** *(optional)*: string | null - JSON representation of the Credential Provider configuration details * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Credential Provider ### CredentialProviderUIDTOCredentialProviderListDTO Page of Credential Providers **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Page of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP Status Code of the response * **recordsTotal** *(optional)*: integer (int32) - Total number of Credential Providers * **credentialProviders** *(optional)*: Array | null - Page of Credential Providers ### CredentialProviderV2DTO **Type:** object **Properties:** * **type** *(required)*: string * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **lifetimeTimeSpanSeconds** *(optional)*: integer (int32) * **lifetimeExpiration** *(optional)*: string (date-time) | null * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Credential Provider ### CredentialProviderV2DTOCredentialProviderListDTO Page of Credential Providers **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Page of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP Status Code of the response * **recordsTotal** *(optional)*: integer (int32) - Total number of Credential Providers * **credentialProviders** *(optional)*: Array\ | null - Page of Credential Providers ### CrowdStrikeAIDRContentSecurityDTO Individual Content Security **Extends:** ContentSecurityDTO **Type:** object **Properties:** * **type** *(required)*: string - Content Security Type * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Content Security * **encryptedToken** *(optional)*: string | null - The encrypted API token or client secret used to authenticate with the CrowdStrike Falcon AIDR (AI Detection and Response) service. * **baseUrl** *(required)*: string - The base URL of the CrowdStrike Falcon AIDR service endpoint or API gateway. * **failOpen** *(optional)*: boolean - Indicates whether requests should be allowed (fail-open) or blocked (fail-closed) if the CrowdStrike Falcon AIDR service is unreachable or encounters an error. * **timeoutMs** *(optional)*: integer (int32) - The connection timeout in milliseconds for requests sent to the CrowdStrike Falcon AIDR service. * **maxRetries** *(optional)*: integer (int32) - The maximum number of retry attempts for requests to the CrowdStrike Falcon AIDR service before executing the fail-open or fail-closed policy. ### CrowdStrikeAccessConditionDTO **Extends:** AccessConditionV2DTO **Type:** object **Properties:** * **integrationType** *(required)*: string | null * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **integrationID** *(optional)*: string (uuid) - ID of the Integration Entity used by this Access Condition * **integration** *(optional)*: IntegrationV2DTO | CrowdStrikeIntegrationDTO | WizIntegrationDTO | GeoIPIntegrationDTO | TimeIntegrationDTO | null - Integration Entity used by this Access Condition * **maxLastSeenSeconds** *(optional)*: integer (int32) * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Access Condition * **matchLocalIP** *(optional)*: boolean * **matchHostname** *(optional)*: boolean * **matchMacAddress** *(optional)*: boolean * **matchSerialNumber** *(optional)*: boolean * **preventRestrictedFunctionalityMode** *(optional)*: boolean ### CrowdStrikeIntegrationDTO Integration details for 3rd party data used by Access Conditions **Extends:** IntegrationV2DTO **Type:** object **Properties:** * **integrationType** *(required)*: string | null * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **type** *(required)*: string * **syncFrequencySeconds** *(required)*: integer (int32) * **lastSync** *(optional)*: string (date-time) | null * **lastSyncStatus** *(optional)*: string | null * **endpoint** *(required)*: string * **accessConditionsCount** *(optional)*: integer (int32) * **clientId** *(optional)*: string | null * **tokenUrl** *(optional)*: string | null * **clientSecret** *(optional)*: string | null * **audience** *(optional)*: string | null ### DiscoveryIntegrationDTO Integration details for 3rd party data used by Discovery **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **type** *(required)*: string * **syncFrequencySeconds** *(required)*: integer (int32) * **lastSync** *(optional)*: string (date-time) | null * **lastSyncStatus** *(optional)*: string | null * **endpoint** *(required)*: string * **discoveryIntegrationJSON** *(required)*: string ### DiscoveryIntegrationListDTO Page of Integrations **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Page of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP Status Code of the response * **recordsTotal** *(optional)*: integer (int32) - Total number of Integrations * **integrations** *(optional)*: Array | null - Page of Integrations ### DiscoveryIntegrationPatchDTO Patch request for an individual Integration **Type:** object **Properties:** * **name** *(optional)*: string | null - New Name for the identified entity * **description** *(optional)*: string | null - New Description for the identified entity * **isActive** *(optional)*: boolean (boolean) | null - New Status for the identified entity * **tags** *(optional)*: Array | null - New Tags for the identified entity ### EntityMetaDTO **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(optional)*: string | null * **isActive** *(optional)*: boolean * **tags** *(optional)*: Array | null ### EntityPatchDTO **Type:** object **Properties:** * **name** *(optional)*: string | null - New Name for the identified entity * **description** *(optional)*: string | null - New Description for the identified entity * **isActive** *(optional)*: boolean (boolean) | null - New Status for the identified entity * **tags** *(optional)*: Array | null - New Tags for the identified entity ### EventDTO **Type:** object **Properties:** * **meta** *(optional)*: EventMetaDTO * **network** *(optional)*: EventNetworkDTO * **outcome** *(optional)*: EventOutcomeDTO ### EventListDTO **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Page of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) * **recordsTotal** *(optional)*: integer (int32) * **workloadEvents** *(optional)*: Array | null ### EventMetaDTO **Type:** object **Properties:** * **timestamp** *(optional)*: string (date-time) * **eventType** *(optional)*: string | null * **eventId** *(optional)*: string | null * **resourceSetId** *(optional)*: string (uuid) * **policyId** *(optional)*: string | null * **action** *(optional)*: string | null * **connectionId** *(optional)*: string | null * **severity** *(optional)*: string | null ### EventNetworkDTO **Type:** object **Properties:** * **clientWorkloadIP** *(optional)*: string | null * **clientWorkloadPort** *(optional)*: integer (int32) * **serverWorkloadIP** *(optional)*: string | null * **serverWorkloadPort** *(optional)*: integer (int32) | null * **proxyPort** *(optional)*: integer (int32) | null ### EventOutcomeDTO **Type:** object **Properties:** * **result** *(optional)*: string | null ### EventResultDTO **Type:** object **Properties:** * **reason** *(optional)*: string | null * **attribute** *(optional)*: string | null * **expectedValue** *(optional)*: string | null * **actualValue** *(optional)*: string | null ### GenericResponseDTO DTO for a Generic API Response **Type:** object **Properties:** * **success** *(optional)*: boolean - True if the API call was successful, False otherwise * **message** *(optional)*: string | null - Message to indicate why the API call failed * **id** *(optional)*: integer (int32) - Unique identifier of the API response ### GeoIPAccessConditionDTO **Extends:** AccessConditionV2DTO **Type:** object **Properties:** * **integrationType** *(required)*: string | null * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **integrationID** *(optional)*: string (uuid) - ID of the Integration Entity used by this Access Condition * **integration** *(optional)*: IntegrationV2DTO | CrowdStrikeIntegrationDTO | WizIntegrationDTO | GeoIPIntegrationDTO | TimeIntegrationDTO | null - Integration Entity used by this Access Condition * **maxLastSeenSeconds** *(optional)*: integer (int32) * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Access Condition * **locations** *(optional)*: Array | null ### GeoIPAccessConditionLocationDTO **Type:** object **Properties:** * **id** *(optional)*: integer (int32) * **shortName** *(required)*: string * **alpha2Code** *(optional)*: string | null * **subdivisions** *(optional)*: Array | null * **geoIPAccessConditionId** *(optional)*: integer (int32) ### GeoIPAccessConditionSubdivisionDTO **Type:** object **Properties:** * **id** *(optional)*: integer (int32) * **name** *(required)*: string * **alpha2Code** *(optional)*: string | null * **subdivisionCode** *(optional)*: string | null * **geoIPAccessConditionLocationId** *(optional)*: integer (int32) ### GeoIPIntegrationDTO Integration details for 3rd party data used by Access Conditions **Extends:** IntegrationV2DTO **Type:** object **Properties:** * **integrationType** *(required)*: string | null * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **type** *(required)*: string * **syncFrequencySeconds** *(required)*: integer (int32) * **lastSync** *(optional)*: string (date-time) | null * **lastSyncStatus** *(optional)*: string | null * **endpoint** *(required)*: string * **accessConditionsCount** *(optional)*: integer (int32) ### GetPolicyDTO Individual Access Policy **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **clientWorkload** *(optional)*: EntityMetaDTO - Client Workload associated with this Access Policy * **serverWorkload** *(optional)*: EntityMetaDTO - Server Workload associated with this Access Policy * **trustProviders** *(optional)*: Array | null - Trust Providers associated with this Access Policy * **credentialProviders** *(optional)*: Array | null - Credential Providers associated with this Access Policy * **accessConditions** *(optional)*: Array | null - Access Conditions associated with this Access Policy * **contentSecurity** *(optional)*: Array | null - Content Security associated with this Access Policy ### GetPolicyDTOListDTO **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Current page number of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP StatusCode for the current result * **recordsTotal** *(optional)*: integer (int32) - Total number of entities available * **entities** *(optional)*: Array | null - Page of entities for this request ### GetSignInPolicyDTO **Type:** object **Properties:** * **ssoRequired** *(optional)*: boolean * **mfaRequired** *(optional)*: boolean ### GitLabCredentialProviderIntegrationDTO Individual Credential Provider Integration **Extends:** CredentialProviderIntegrationDTO **Type:** object **Properties:** * **type** *(required)*: CredentialProviderIntegrationType * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **tokenExpiration** *(optional)*: string (date-time) | null * **lastOperationTimestamp** *(optional)*: string (date-time) | null * **status** *(optional)*: string | null * **errorMessage** *(optional)*: string | null * **url** *(required)*: string * **userId** *(optional)*: string | null * **topLevelGroupId** *(optional)*: string | null * **personalAccessToken** *(optional)*: string | null ### GuidStringKeyValuePairDto **Type:** object **Properties:** * **key** *(optional)*: string (uuid) * **value** *(optional)*: string | null ### HealthDTO Aembit Health Status **Type:** object **Properties:** * **status** *(optional)*: string | null - Aembit Health Status * **version** *(optional)*: string | null - Aembit Cloud Version * **gitSHA** *(optional)*: string | null - Aembit Cloud Version Git SHA * **host** *(optional)*: string | null - Aembit Cloud Requested Hostname * **user** *(optional)*: string | null - Aembit Cloud Authenticated User Email * **userFullName** *(optional)*: string | null - Aembit Cloud Authenticated User Full Name * **tenant** *(optional)*: string | null - Aembit Cloud Tenant ID * **sessionExpiresAt** *(optional)*: string | null - Aembit Cloud Session Expiration ### IntegrationDTO Integration details for 3rd party data used by Access Conditions **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **type** *(required)*: string * **syncFrequencySeconds** *(required)*: integer (int32) * **lastSync** *(optional)*: string (date-time) | null * **lastSyncStatus** *(optional)*: string | null * **endpoint** *(required)*: string * **integrationJSON** *(required)*: object * **accessConditionsCount** *(optional)*: integer (int32) ### IntegrationDTOIntegrationListDTO Page of Integrations **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Page of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP Status Code of the response * **recordsTotal** *(optional)*: integer (int32) - Total number of Integrations * **integrations** *(optional)*: Array | null - Page of Integrations ### IntegrationPatchDTO Patch request for an individual Integration **Type:** object **Properties:** * **name** *(optional)*: string | null - New Name for the identified entity * **description** *(optional)*: string | null - New Description for the identified entity * **isActive** *(optional)*: boolean (boolean) | null - New Status for the identified entity * **tags** *(optional)*: Array | null - New Tags for the identified entity ### IntegrationV2DTO Integration details for 3rd party data used by Access Conditions **Type:** object **Properties:** * **integrationType** *(required)*: string | null * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **type** *(required)*: string * **syncFrequencySeconds** *(required)*: integer (int32) * **lastSync** *(optional)*: string (date-time) | null * **lastSyncStatus** *(optional)*: string | null * **endpoint** *(required)*: string * **accessConditionsCount** *(optional)*: integer (int32) ### IntegrationV2DTOIntegrationListDTO Page of Integrations **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Page of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP Status Code of the response * **recordsTotal** *(optional)*: integer (int32) - Total number of Integrations * **integrations** *(optional)*: Array\ | null - Page of Integrations ### JWTClaimDTO **Type:** object **Properties:** * **key** *(optional)*: string | null * **value** *(optional)*: string | null * **valueType** *(optional)*: string | null ### JsonNode **Type:** object **Properties:** * **options** *(optional)*: JsonNodeOptions * **parent** *(optional)*: JsonNode * **root** *(optional)*: JsonNode ### JsonNodeOptions **Type:** object **Properties:** * **propertyNameCaseInsensitive** *(optional)*: boolean ### ListCredentialProviderIntegrationDTO Page of Credential Provider Integrations **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **url** *(optional)*: string | null * **type** *(optional)*: CredentialProviderIntegrationType * **status** *(optional)*: string | null * **lastOperationTimestamp** *(optional)*: string (date-time) | null ### ListCredentialProviderIntegrationDTOListDTO **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Current page number of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP StatusCode for the current result * **recordsTotal** *(optional)*: integer (int32) - Total number of entities available * **entities** *(optional)*: Array | null - Page of entities for this request ### LogStreamAWSS3DestinationDTO Individual Log Stream **Extends:** LogStreamDTO **Type:** object **Properties:** * **type** *(required)*: LogStreamDestinationType - Log Stream Destination Type * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **id** *(optional)*: integer (int32) * **dataType** *(required)*: string - Log Stream Data Type (e.g. AuditLogs, etc.) * **inProgTransactionCount** *(optional)*: integer (int32) - Log Stream In Progress Transaction Count * **completedTransactionCount** *(optional)*: integer (int32) - Log Stream Completed Transaction Count * **erroredTransactionCount** *(optional)*: integer (int32) - Log Stream Errored Transaction Count * **s3BucketRegion** *(required)*: string * **s3BucketName** *(required)*: string * **s3PathPrefix** *(optional)*: string | null ### LogStreamCrowdstrikeDestinationDTO Individual Log Stream **Extends:** LogStreamDTO **Type:** object **Properties:** * **type** *(required)*: LogStreamDestinationType - Log Stream Destination Type * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **id** *(optional)*: integer (int32) * **dataType** *(required)*: string - Log Stream Data Type (e.g. AuditLogs, etc.) * **inProgTransactionCount** *(optional)*: integer (int32) - Log Stream In Progress Transaction Count * **completedTransactionCount** *(optional)*: integer (int32) - Log Stream Completed Transaction Count * **erroredTransactionCount** *(optional)*: integer (int32) - Log Stream Errored Transaction Count * **hecHostPort** *(required)*: string * **apiKey** *(required)*: string * **hecSourceName** *(required)*: string * **tls** *(optional)*: boolean * **tlsVerification** *(optional)*: string | null ### LogStreamDTO Individual Log Stream **Type:** object **Properties:** * **type** *(required)*: LogStreamDestinationType - Log Stream Destination Type * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **id** *(optional)*: integer (int32) * **dataType** *(required)*: string - Log Stream Data Type (e.g. AuditLogs, etc.) * **inProgTransactionCount** *(optional)*: integer (int32) - Log Stream In Progress Transaction Count * **completedTransactionCount** *(optional)*: integer (int32) - Log Stream Completed Transaction Count * **erroredTransactionCount** *(optional)*: integer (int32) - Log Stream Errored Transaction Count ### LogStreamDestinationType **Type:** string **Possible values:** `AwsS3Bucket`, `GcsBucket`, `SplunkHttpEventCollector`, `CrowdstrikeHttpEventCollector` ### LogStreamGCSBucketDestinationDTO Individual Log Stream **Extends:** LogStreamDTO **Type:** object **Properties:** * **type** *(required)*: LogStreamDestinationType - Log Stream Destination Type * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **id** *(optional)*: integer (int32) * **dataType** *(required)*: string - Log Stream Data Type (e.g. AuditLogs, etc.) * **inProgTransactionCount** *(optional)*: integer (int32) - Log Stream In Progress Transaction Count * **completedTransactionCount** *(optional)*: integer (int32) - Log Stream Completed Transaction Count * **erroredTransactionCount** *(optional)*: integer (int32) - Log Stream Errored Transaction Count * **gcsBucketName** *(optional)*: string | null * **gcsPathPrefix** *(optional)*: string | null * **audience** *(optional)*: string | null * **serviceAccountEmail** *(optional)*: string | null * **tokenLifetime** *(optional)*: integer (int32) ### LogStreamListDTO Page of Log Streams **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Page of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP Status Code of the response * **recordsTotal** *(optional)*: integer (int32) - Total number of Log Streams * **logStreams** *(optional)*: Array\ | null - Page of Log Streams ### LogStreamPatchDTO Patch Request for an individual of Log Stream **Type:** object **Properties:** * **name** *(optional)*: string | null - New Name for the identified entity * **description** *(optional)*: string | null - New Description for the identified entity * **isActive** *(optional)*: boolean (boolean) | null - New Status for the identified entity * **tags** *(optional)*: Array | null - New Tags for the identified entity ### LogStreamSplunkDestinationDTO Individual Log Stream **Extends:** LogStreamDTO **Type:** object **Properties:** * **type** *(required)*: LogStreamDestinationType - Log Stream Destination Type * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **id** *(optional)*: integer (int32) * **dataType** *(required)*: string - Log Stream Data Type (e.g. AuditLogs, etc.) * **inProgTransactionCount** *(optional)*: integer (int32) - Log Stream In Progress Transaction Count * **completedTransactionCount** *(optional)*: integer (int32) - Log Stream Completed Transaction Count * **erroredTransactionCount** *(optional)*: integer (int32) - Log Stream Errored Transaction Count * **hecHostPort** *(required)*: string * **authenticationToken** *(required)*: string * **hecSourceName** *(required)*: string * **tls** *(optional)*: boolean * **tlsVerification** *(optional)*: string | null ### MFASignInPolicyDTO **Type:** object **Properties:** * **mfaRequired** *(optional)*: boolean ### NetworkDTO **Type:** object **Properties:** * **sourceIP** *(required)*: string * **sourcePort** *(required)*: integer (int32) * **transportProtocol** *(required)*: string * **proxyPort** *(required)*: integer (int32) * **targetHost** *(optional)*: string | null * **targetPort** *(optional)*: integer (int32) ### OidcClientAuthType **Type:** string **Possible values:** `KeyPair`, `ClientSecret` ### OidcIdentityProviderDTO Individual SSO Identity Provider **Extends:** SSOIdentityProviderDTO **Type:** object **Properties:** * **type** *(required)*: string | null - Type of the remote SSO Identity Provider (e.g. SAMLv2 (default) or OIDCv1) * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **ssoStatementRoleMappings** *(optional)*: Array | null - Collection of mappings of SAML attributes to Aembit roles * **userAccessEnabled** *(optional)*: boolean - Whether user access via this Identity Provider is enabled * **oidcBaseURL** *(required)*: string * **clientId** *(required)*: string * **scopes** *(required)*: string * **authType** *(required)*: OidcClientAuthType * **clientSecret** *(optional)*: string | null * **pkceRequired** *(optional)*: boolean * **aembitRedirectUrl** *(optional)*: string | null * **aembitJwksUrl** *(optional)*: string | null ### PatchPolicyV2DTO Patch request for an Access Policy **Type:** object **Properties:** * **name** *(optional)*: string | null - New Name for the identified entity * **description** *(optional)*: string | null - New Description for the identified entity * **isActive** *(optional)*: boolean (boolean) | null - New Status for the identified entity * **tags** *(optional)*: Array | null - New Tags for the identified entity * **clientWorkload** *(optional)*: string (uuid) - Client Workload associated with this Access Policy * **serverWorkload** *(optional)*: string (uuid) - Server Workload associated with this Access Policy * **credentialProviders** *(optional)*: Array | null - Credential Providers associated with this Access Policy * **trustProviders** *(optional)*: Array\ | null - Trust Providers associated with this Access Policy * **accessConditions** *(optional)*: Array\ | null - Access Conditions associated with this Access Policy * **contentSecurity** *(optional)*: Array\ | null - Content Security associated with this Access Policy ### PermissionDTO Individual Permission details **Type:** object **Properties:** * **name** *(optional)*: string | null - Name of the Permission Target * **read** *(optional)*: boolean - True if this permission allows access to Read the Permission Target, False otherwise * **write** *(optional)*: boolean - True if this permission allows access to Write the Permission Target, False otherwise * **isWritable** *(optional)*: boolean - True if this permission allows access to Write the Permission Target, False otherwise * **isReadable** *(optional)*: boolean - True if this permission allows access to Read the Permission Target, False otherwise * **accessLevel** *(optional)*: string | null - Description of the Permission level ### PolicyCredentialMappingDTO Access Policy Credential Mappings **Type:** object **Properties:** * **credentialProviderId** *(required)*: string (uuid) - CredentialProviderId * **mappingType** *(required)*: PolicyCredentialProviderMappingTypes - Mapping Type * **accessKeyId** *(optional)*: string | null - AWS Access Key Id * **accountName** *(optional)*: string | null - Snowflake Username * **headerName** *(optional)*: string | null - Header Name * **headerValue** *(optional)*: string | null - Header Value * **httpbodyFieldPath** *(optional)*: string | null - HttpBody Field Path * **httpbodyFieldValue** *(optional)*: string | null - HttpBody Field Value ### PolicyCredentialProviderMappingTypes **Type:** string **Possible values:** `None`, `AccountName`, `HttpHeader`, `HttpBody`, `AccessKeyId` ### PolicyDTO Individual Access Policy **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **credentialProvider** *(optional)*: string (uuid) | null - Credential Provider associated with this Access Policy * **trustProviders** *(optional)*: Array\ | null - Trust Providers associated with this Access Policy * **accessConditions** *(optional)*: Array\ | null - Access Conditions associated with this Access Policy * **contentSecurity** *(optional)*: Array\ | null - Content Security associated with this Access Policy * **clientWorkload** *(required)*: string (uuid) - Client Workload associated with this Access Policy * **serverWorkload** *(required)*: string (uuid) - Server Workload associated with this Access Policy * **clientWorkloadDetails** *(optional)*: WorkloadExternalDTO - Details of the Client Workload associated with this Access Policy * **serverWorkloadDetails** *(optional)*: WorkloadExternalDTO - Details of the Server Workload associated with this Access Policy * **policyNotes** *(optional)*: Array | null - Policy Notes for this Access Policy ### PolicyExternalDTO Individual Access Policy **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **clientWorkload** *(optional)*: ClientWorkloadExternalDTO - Details of the Client Workload associated with this Access Policy * **trustProviders** *(optional)*: Array | null - Details of the Trust Providers associated with this Access Policy * **accessConditions** *(optional)*: Array | null - Details of the Access Conditions associated with this Access Policy * **contentSecurity** *(optional)*: Array\ | null - Details of the Content Security associated with this Access Policy * **credentialProvider** *(optional)*: CredentialProviderDTO - Credential Provider associated with this Access Policy * **serverWorkload** *(optional)*: ServerWorkloadExternalDTO - Details of the Server Workload associated with this Access Policy * **policyNotes** *(optional)*: Array | null - Policy Notes for this Access Policy ### PolicyListDTO Page of Access Policies **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Page of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP Status Code of the response * **recordsTotal** *(optional)*: integer (int32) - Total number of Access Policies * **accessPolicies** *(optional)*: Array | null - Page of Access Policies ### PolicyNoteDTO Individual Note created for an Access Policy **Type:** object **Properties:** * **note** *(required)*: string - Note added to an Access Policy by a User * **createdAt** *(optional)*: string (date-time) - Timestamp the Note was created * **createdBy** *(optional)*: string | null - Email address of the User who created the Access Policy Note ### PolicyNoteDTOListDTO **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Current page number of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP StatusCode for the current result * **recordsTotal** *(optional)*: integer (int32) - Total number of entities available * **entities** *(optional)*: Array | null - Page of entities for this request ### PolicyPatchDTO Patch request for an Access Policy **Type:** object **Properties:** * **name** *(optional)*: string | null - New Name for the identified entity * **description** *(optional)*: string | null - New Description for the identified entity * **isActive** *(optional)*: boolean (boolean) | null - New Status for the identified entity * **tags** *(optional)*: Array | null - New Tags for the identified entity * **clientWorkload** *(optional)*: string (uuid) - Client Workload associated with this Access Policy * **serverWorkload** *(optional)*: string (uuid) - Server Workload associated with this Access Policy * **credentialProvider** *(optional)*: string (uuid) | null - Credential Provider associated with this Access Policy * **trustProviders** *(optional)*: Array\ | null - Trust Providers associated with this Access Policy * **accessConditions** *(optional)*: Array\ | null - Access Conditions associated with this Access Policy * **contentSecurity** *(optional)*: Array\ | null - Content Security associated with this Access Policy ### PublicKeyValidationDTO Response to a request for Public Key Validation **Type:** object **Properties:** * **isValidContent** *(optional)*: boolean - True if the Public Key was valid, False otherwise * **thumbprint** *(optional)*: string | null - Thumbprint of the Public Key * **expirationDate** *(optional)*: string (date-time) | null - Expiration of the Public Key Certificate * **expirationDateString** *(optional)*: string | null - Expiration of the Public Key Certificate in String Format * **certificateSubject** *(optional)*: string | null - Subject of the Public Key Certificate * **serialNumber** *(optional)*: string | null - Serial Number of the Public Key Certificate * **message** *(optional)*: string | null - Message describing why the Public Key was not valid if IsValidContent is False * **pemType** *(optional)*: string | null - Certificate or Public Key ### RequestMetadaAembitDTO **Type:** object **Properties:** * **clientId** *(optional)*: string | null ### RequestMetadaAwsDTO **Type:** object **Properties:** * **accountId** *(optional)*: string | null * **instanceId** *(optional)*: string | null * **region** *(optional)*: string | null * **ecs** *(optional)*: RequestMetadaEcsDTO * **lambda** *(optional)*: RequestMetadaLambdaDTO ### RequestMetadaAzureDTO **Type:** object **Properties:** * **vmId** *(optional)*: string | null * **subscriptionId** *(optional)*: string | null ### RequestMetadaEcsDTO **Type:** object **Properties:** * **taskFamily** *(optional)*: string | null * **serviceName** *(optional)*: string | null ### RequestMetadaGcpDTO **Type:** object **Properties:** * **serviceAccount** *(optional)*: string | null ### RequestMetadaGithubDTO **Type:** object **Properties:** * **repository** *(optional)*: string | null * **subject** *(optional)*: string | null ### RequestMetadaGitlabDTO **Type:** object **Properties:** * **namespacePath** *(optional)*: string | null * **projectPath** *(optional)*: string | null * **refPath** *(optional)*: string | null * **subject** *(optional)*: string | null ### RequestMetadaHostDTO **Type:** object **Properties:** * **hostname** *(optional)*: string | null ### RequestMetadaKubernetesDTO **Type:** object **Properties:** * **namespace** *(optional)*: string | null * **podName** *(optional)*: string | null * **serviceAccountName** *(optional)*: string | null * **serviceAccountUID** *(optional)*: string | null ### RequestMetadaLambdaDTO **Type:** object **Properties:** * **arn** *(optional)*: string | null ### RequestMetadaNetworkDTO **Type:** object **Properties:** * **sourceIP** *(optional)*: string | null ### RequestMetadaOAuthDTO **Type:** object **Properties:** * **redirectUri** *(optional)*: string | null ### RequestMetadaProcessDTO **Type:** object **Properties:** * **name** *(optional)*: string | null * **userName** *(optional)*: string | null * **exePath** *(optional)*: string | null * **commandLine** *(optional)*: string | null ### RequestMetadaTerraformDTO **Type:** object **Properties:** * **workspaceId** *(optional)*: string | null * **organizationId** *(optional)*: string | null * **projectId** *(optional)*: string | null ### RequestMetadataOidcDTO **Type:** object **Properties:** * **sub** *(optional)*: string | null * **aud** *(optional)*: string | null * **iss** *(optional)*: string | null ### ResourceSetDTO Individual Resource Set **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **serverWorkloadCount** *(optional)*: integer (int32) | null - Server Workloads associated with this Resource Set * **clientWorkloadCount** *(optional)*: integer (int32) | null - Client Workloads associated with this Resource Set * **accessPolicyCount** *(optional)*: integer (int32) | null - Access Policies associated with this Resource Set * **trustProviderCount** *(optional)*: integer (int32) | null - Trust Providers associated with this Resource Set * **accessConditionCount** *(optional)*: integer (int32) | null - Access Conditions associated with this Resource Set * **credentialProviderCount** *(optional)*: integer (int32) | null - Credential Providers associated with this Resource Set * **roles** *(optional)*: Array\ | null - Roles associated with this Resource Set * **rolesDetails** *(optional)*: Array | null - Details of the Roles associated with this Resource Set * **users** *(optional)*: Array | null - Users associated with this Resource Set * **standaloneCertificateAuthority** *(optional)*: string (uuid) | null - Standalone Certificate Authority associated with this Resource Set ### ResourceSetDTOListDTO **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Current page number of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP StatusCode for the current result * **recordsTotal** *(optional)*: integer (int32) - Total number of entities available * **entities** *(optional)*: Array | null - Page of entities for this request ### ResourceSetPatchDTO Patch Request for an Individual Resource Set **Type:** object **Properties:** * **name** *(optional)*: string | null - New Name for the identified entity * **description** *(optional)*: string | null - New Description for the identified entity * **isActive** *(optional)*: boolean (boolean) | null - New Status for the identified entity * **tags** *(optional)*: Array | null - New Tags for the identified entity ### RoleDTO Individual Role **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **usersCount** *(optional)*: integer (int32) - Number of Users associated with this Role * **credentialProvidersCount** *(optional)*: integer (int32) - Number of Credential Providers associated with this Role * **isSystem** *(optional)*: boolean - True if this is a system included Role (e.g. SuperAdmin or Auditor) * **permissions** *(optional)*: Array | null - Permissions assigned to this Role * **resourceSets** *(optional)*: Array | null - Resource Sets assigned to this Role ### RoleListDTO Page of Roles **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Page of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP Status Code of the response * **recordsTotal** *(optional)*: integer (int32) - Total number of Roles * **roles** *(optional)*: Array | null - Page of Roles ### RolePatchDTO Patch request for an individual Role **Type:** object **Properties:** * **name** *(optional)*: string | null - New Name for the identified entity * **description** *(optional)*: string | null - New Description for the identified entity * **isActive** *(optional)*: boolean (boolean) | null - New Status for the identified entity * **tags** *(optional)*: Array | null - New Tags for the identified entity ### RoutingDTO Individual Routing **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSetId** *(required)*: string (uuid) - ID of the Resource Set related to routing * **proxyUrl** *(required)*: string - URL of the proxy. The format is http(s)://server:port ### RoutingDTOListDTO **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Current page number of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP StatusCode for the current result * **recordsTotal** *(optional)*: integer (int32) - Total number of entities available * **entities** *(optional)*: Array | null - Page of entities for this request ### RoutingPatchDTO Patch request for an individual Routing **Type:** object **Properties:** * **name** *(optional)*: string | null - New Name for the identified entity * **description** *(optional)*: string | null - New Description for the identified entity * **isActive** *(optional)*: boolean (boolean) | null - New Status for the identified entity * **tags** *(optional)*: Array | null - New Tags for the identified entity ### SSOIdentityProviderDTO Individual SSO Identity Provider **Type:** object **Properties:** * **type** *(required)*: string - Type of the remote SSO Identity Provider (e.g. SAMLv2 (default) or OIDCv1) * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **ssoStatementRoleMappings** *(optional)*: Array | null - Collection of mappings of SAML attributes to Aembit roles * **userAccessEnabled** *(optional)*: boolean - Whether user access via this Identity Provider is enabled ### SSOIdentityProviderDTOListDTO **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Current page number of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP StatusCode for the current result * **recordsTotal** *(optional)*: integer (int32) - Total number of entities available * **entities** *(optional)*: Array\ | null - Page of entities for this request ### SSOIdentityProviderPatchDTO Patch request for an individual SSO Identity Provider **Type:** object **Properties:** * **name** *(optional)*: string | null - New Name for the identified entity * **description** *(optional)*: string | null - New Description for the identified entity * **isActive** *(optional)*: boolean (boolean) | null - New Status for the identified entity * **tags** *(optional)*: Array | null - New Tags for the identified entity ### SSOSignInPolicyDTO **Type:** object **Properties:** * **ssoRequired** *(optional)*: boolean ### SamlIdentityProviderDTO Individual SSO Identity Provider **Extends:** SSOIdentityProviderDTO **Type:** object **Properties:** * **type** *(required)*: string - Type of the remote SSO Identity Provider (e.g. SAMLv2 (default) or OIDCv1) * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **ssoStatementRoleMappings** *(optional)*: Array | null - Collection of mappings of SAML attributes to Aembit roles * **userAccessEnabled** *(optional)*: boolean - Whether user access via this Identity Provider is enabled * **entityId** *(optional)*: string | null - SAML Entity ID of the remote SSO Identity Provider * **metadataUrl** *(optional)*: string | null - Metadata URL of the remote SSO Identity Provider * **metadataXml** *(optional)*: string | null - Metadata XML content of the remote SSO Identity Provider * **serviceProviderEntityId** *(optional)*: string | null * **serviceProviderSsoUrl** *(optional)*: string | null ### ServerWorkloadExternalDTO Individual Server Workload **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **serviceEndpoint** *(required)*: WorkloadServiceEndpointDTO - Service Endpoint of the Server Workload * **type** *(optional)*: string | null - Type of Server Workload * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Server Workload ### ServerWorkloadListDTO Page of Server Workloads **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Page of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) * **recordsTotal** *(optional)*: integer (int32) * **serverWorkloads** *(optional)*: Array | null ### SettingDTO **Type:** object **Properties:** * **name** *(required)*: string * **value** *(required)*: string ### SsoStatementRoleMappingDTO Represents a mapping of an SSO attribute to an Aembit role **Type:** object **Properties:** * **attributeName** *(optional)*: string | null - SSO Attribute name * **attributeValue** *(optional)*: string | null - SSO Attribute value * **roleExternalId** *(optional)*: string (uuid) - Aembit Role ID ### StandaloneCertificatePatchDTO Patch Request for an Individual Standalone Certificate Authority **Type:** object **Properties:** * **name** *(optional)*: string | null - New Name for the identified entity * **description** *(optional)*: string | null - New Description for the identified entity * **isActive** *(optional)*: boolean (boolean) | null - New Status for the identified entity * **tags** *(optional)*: Array | null - New Tags for the identified entity * **leafLifetime** *(optional)*: integer (int32) | null ### StandaloneCertificateRequestDTO Individual Standalone Certificate Authority **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **leafLifetime** *(required)*: integer (int32) - Leaf certificate lifetime value for this Standalone Certificate Authority ### StandaloneCertificateResponseDTO Individual Standalone Certificate Authority **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **leafLifetime** *(required)*: integer (int32) - Leaf certificate lifetime value for this Standalone Certificate Authority * **notBefore** *(optional)*: string (date-time) - Not before value of the Root CA for this Standalone Certificate Authority * **notAfter** *(optional)*: string (date-time) - Not after value of the Root CA for this Standalone Certificate Authority * **clientWorkloadCount** *(optional)*: integer (int32) | null - Client Workloads associated with this Standalone Certificate Authority ### StandaloneCertificateResponseDTOListDTO **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Current page number of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP StatusCode for the current result * **recordsTotal** *(optional)*: integer (int32) - Total number of entities available * **entities** *(optional)*: Array | null - Page of entities for this request ### StringStringKeyValuePair **Type:** object **Properties:** * **key** *(optional)*: string | null * **value** *(optional)*: string | null ### TagDTO Aembit Entity Tag Details **Type:** object **Properties:** * **key** *(required)*: string - Tag Key * **value** *(required)*: string - Tag Key Value ### TimeAccessConditionDTO **Extends:** AccessConditionV2DTO **Type:** object **Properties:** * **integrationType** *(required)*: string | null * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **integrationID** *(optional)*: string (uuid) - ID of the Integration Entity used by this Access Condition * **integration** *(optional)*: IntegrationV2DTO | CrowdStrikeIntegrationDTO | WizIntegrationDTO | GeoIPIntegrationDTO | TimeIntegrationDTO | null - Integration Entity used by this Access Condition * **maxLastSeenSeconds** *(optional)*: integer (int32) * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Access Condition * **schedule** *(optional)*: Array | null * **timezone** *(optional)*: TimeAccessConditionTimezoneDTO ### TimeAccessConditionScheduleDTO **Type:** object **Properties:** * **startTime** *(optional)*: string (date-span) * **endTime** *(optional)*: string (date-span) * **weekDay** *(optional)*: WeekDayDTO ### TimeAccessConditionTimezoneDTO **Type:** object **Properties:** * **group** *(optional)*: string | null * **label** *(optional)*: string | null * **timezone** *(optional)*: string | null ### TimeIntegrationDTO Integration details for 3rd party data used by Access Conditions **Extends:** IntegrationV2DTO **Type:** object **Properties:** * **integrationType** *(required)*: string | null * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **type** *(required)*: string * **syncFrequencySeconds** *(required)*: integer (int32) * **lastSync** *(optional)*: string (date-time) | null * **lastSyncStatus** *(optional)*: string | null * **endpoint** *(required)*: string * **accessConditionsCount** *(optional)*: integer (int32) ### TrustProviderDTO Individual Trust Provider **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **id** *(optional)*: integer (int32) - Trust Provider Id * **provider** *(required)*: string - Trust Provider Type * **matchRules** *(optional)*: Array | null - Trust Provider Match Rules * **certificate** *(optional)*: string | null - Trust Provider Certificate or Public Key for cryptographic attestation * **jwks** *(optional)*: string | null - Jwks Content for cryptographic attestation * **publicKeyValidation** *(optional)*: PublicKeyValidationDTO - Response to a request for Public Key Validation * **oidcUrl** *(optional)*: string | null - OIDC URL to use for retrieving JWKS Public Keys * **pemType** *(optional)*: string | null - PEM Input Type * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Trust Provider * **agentControllersCount** *(optional)*: integer (int32) - Agent Controllers associated with this Trust Provider * **agentControllerIds** *(optional)*: Array\ | null - Agent Controller IDs associated with this Trust Provider * **isAembitTenantOidcToken** *(optional)*: boolean * **metadataUrl** *(optional)*: string | null - Metadata URL of the remote SSO Identity Provider * **metadataXml** *(optional)*: string | null - Metadata XML content of the remote SSO Identity Provider ### TrustProviderItemDTO **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(optional)*: string | null ### TrustProviderListDTO Page of Trust Providers **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Page of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP Status Code of the response * **recordsTotal** *(optional)*: integer (int32) - Total number of Trust Providers * **trustProviders** *(optional)*: Array | null - Page of Trust Providers ### TrustProviderMatchRuleDTO Individual Match Rule to enforce during Trust Provider attestation **Type:** object **Properties:** * **attribute** *(required)*: string - Match Rule Attribute * **value** *(required)*: string - Match Rule Attribute Value * **key** *(optional)*: string | null - Match Rule Attribute Key ### TrustProviderPatchDTO Patch request for an individual Trust Provider **Type:** object **Properties:** * **name** *(optional)*: string | null - New Name for the identified entity * **description** *(optional)*: string | null - New Description for the identified entity * **isActive** *(optional)*: boolean (boolean) | null - New Status for the identified entity * **tags** *(optional)*: Array | null - New Tags for the identified entity * **provider** *(optional)*: string | null - Trust Provider Type * **matchRules** *(optional)*: Array | null - Trust Provider Match Rules * **oidcUrl** *(optional)*: string | null - OIDC URL to use for retrieving JWKS Public Keys * **pemType** *(optional)*: string | null - PEM Input Type * **certificate** *(optional)*: string | null - Trust Provider Certificate or Public Key for cryptographic attestation * **jwks** *(optional)*: string | null - Jwks Content for cryptographic attestation * **symmetricKey** *(optional)*: string | null - Symmetric Key * **publicKeyValidation** *(optional)*: PublicKeyValidationDTO - Response to a request for Public Key Validation * **metadataUrl** *(optional)*: string | null - Metadata URL of the remote SSO Identity Provider * **metadataXml** *(optional)*: string | null - Metadata XML content of the remote SSO Identity Provider ### TrustProviderSecretDTO **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(optional)*: string | null * **type** *(optional)*: string | null * **subject** *(optional)*: string | null * **expiresAt** *(optional)*: string (date-time) | null ### TrustProviderSecretDTOListDTO **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Current page number of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) - HTTP StatusCode for the current result * **recordsTotal** *(optional)*: integer (int32) - Total number of entities available * **entities** *(optional)*: Array | null - Page of entities for this request ### TrustProviderSecretSlimDTO **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **secret** *(required)*: string * **type** *(optional)*: TrustProviderSecretType ### TrustProviderSecretType **Type:** string **Possible values:** `Certificate`, `SymmetricKey` ### UserAgentDTO DTO for the HTTP User Agent of an individual Aembit Audit Log **Type:** object **Properties:** * **browser** *(optional)*: string | null - The browser as determined from the HTTP User Agent * **operatingSystem** *(optional)*: string | null - The operating system as determined from the HTTP User Agent * **raw** *(optional)*: string | null - The raw HTTP User Agent ### UserDTO **Type:** object **Properties:** * **email** *(required)*: string (email) * **externalId** *(optional)*: string (uuid) * **roles** *(optional)*: Array\ | null * **rolesDetails** *(optional)*: Array | null * **firstName** *(required)*: string * **lastName** *(required)*: string * **phoneNumber** *(optional)*: string | null * **createdAt** *(optional)*: string (date-time) * **isActive** *(optional)*: boolean * **twoFactorEnabled** *(optional)*: boolean * **isLocked** *(optional)*: boolean * **tags** *(optional)*: Array | null * **userTokens** *(optional)*: Array | null ### UserListDTO **Type:** object **Properties:** * **page** *(optional)*: integer (int32) - Page of entities * **perPage** *(optional)*: integer (int32) - Number of entities requested for the current page * **order** *(optional)*: string | null - Ordering criteria used for the current page * **statusCode** *(optional)*: integer (int32) * **recordsTotal** *(optional)*: integer (int32) * **users** *(optional)*: Array | null ### UserPatchDTO **Type:** object **Properties:** * **email** *(optional)*: string | null * **firstName** *(optional)*: string | null * **lastName** *(optional)*: string | null * **phoneNumber** *(optional)*: string | null * **isActive** *(optional)*: boolean | null ### UserTokensDTO **Type:** object **Properties:** * **id** *(optional)*: string (uuid) * **name** *(optional)*: string | null * **verified** *(optional)*: boolean * **createdAt** *(optional)*: string (date-time) ### WeekDayDTO **Type:** object **Properties:** * **name** *(optional)*: string | null * **ordinal** *(optional)*: integer (int32) ### WizAccessConditionDTO **Extends:** AccessConditionV2DTO **Type:** object **Properties:** * **integrationType** *(required)*: string | null * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **integrationID** *(optional)*: string (uuid) - ID of the Integration Entity used by this Access Condition * **integration** *(optional)*: IntegrationV2DTO | CrowdStrikeIntegrationDTO | WizIntegrationDTO | GeoIPIntegrationDTO | TimeIntegrationDTO | null - Integration Entity used by this Access Condition * **maxLastSeenSeconds** *(optional)*: integer (int32) * **accessPolicyCount** *(optional)*: integer (int32) - Access Policies associated with this Access Condition * **serverless** *(optional)*: boolean * **containerClusterConnected** *(optional)*: boolean ### WizIntegrationDTO Integration details for 3rd party data used by Access Conditions **Extends:** IntegrationV2DTO **Type:** object **Properties:** * **integrationType** *(required)*: string | null * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **type** *(required)*: string * **syncFrequencySeconds** *(required)*: integer (int32) * **lastSync** *(optional)*: string (date-time) | null * **lastSyncStatus** *(optional)*: string | null * **endpoint** *(required)*: string * **accessConditionsCount** *(optional)*: integer (int32) * **clientId** *(optional)*: string | null * **tokenUrl** *(optional)*: string | null * **clientSecret** *(optional)*: string | null * **audience** *(optional)*: string | null ### WorkloadExternalDTO **Type:** object **Properties:** * **externalId** *(optional)*: string (uuid) * **name** *(required)*: string - Name of the Entity * **description** *(optional)*: string | null - Description of the Entity * **isActive** *(required)*: boolean (boolean) - True/False value that determines if this entity is Active or Disabled * **tags** *(optional)*: Array | null * **createdAt** *(optional)*: string (date-time) * **modifiedAt** *(optional)*: string (date-time) | null * **createdBy** *(optional)*: string | null * **modifiedBy** *(optional)*: string | null * **resourceSet** *(required)*: string (uuid) - ID of the Resource Set in which this Access Entity exists * **trustProviders** *(optional)*: Array | null * **credentialProviderId** *(optional)*: string (uuid) | null * **credentialProviderText** *(optional)*: string | null * **workloadServiceEndpoints** *(optional)*: Array\ | null * **serviceEndpoint** *(optional)*: WorkloadServiceEndpointDTO - Service Endpoint for a Server Workload * **type** *(optional)*: string | null ### WorkloadServiceAuthenticationDTO Authentication configuration for a Server Workload **Type:** object **Properties:** * **method** *(required)*: string - Authentication Method * **scheme** *(required)*: string - Authentication Scheme * **config** *(optional)*: string | null - Authentication Configuration ### WorkloadServiceEndpointDTO Service Endpoint for a Server Workload **Type:** object **Properties:** * **externalId** *(optional)*: string | null - External ID of the Service Endpoint * **id** *(optional)*: integer (int32) - ID of the Service Endpoint * **host** *(required)*: string - Hostname or IP Address * **appProtocol** *(required)*: string - Application Protocol * **transportProtocol** *(required)*: string - Transport Protocol (e.g. TCP) * **requestedPort** *(required)*: integer (int32) - The target port as specified by the Client Workload * **requestedTls** *(required)*: boolean - The TLS encryption configuration of the Client Workload * **port** *(required)*: integer (int32) - The target port to which the Agent/Proxy will communicate * **tls** *(required)*: boolean - The TLS encryption configuration which will be used by the Agent/Proxy * **workloadServiceAuthentication** *(optional)*: WorkloadServiceAuthenticationDTO - Authentication configuration * **tlsVerification** *(required)*: string - TLS Verification configuration for the Agent/Proxy to Server Workload connection * **urlPath** *(optional)*: string | null - URL Path configuration for the Client Workload to Server Workload request * **httpHeaders** *(optional)*: Array | null - Static HTTP Headers to include for transmission to the Server Workload