Access and authentication for the REST API


BMC Helix CMDB follows AR System's authentication mechanism. All REST API calls must be authenticated. Instead of passing the full credentials on every REST API call, REST uses a token. The token is valid for a configurable amount of time and acts like a temporary password. 

For more information, see Access and authentication for the REST API.


Connections by HTTP and HTTPS

By default, access to the REST API is over HTTP.  However, on the HTTPS configuration page, you can enable API access over HTTPS.

For  more information about configuring HTTP(S), see Configuring the REST API by using SSL certificates.

Important

When you upgrade to AR System 9.1.04, the previous configurations in the jetty-selector.xml file are ineffective. You must reconcile the configuration from the jetty-selector.xml file to the jetty-http.xml file.


 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*