2.2 Enabling API access

The API of Isora GRC itself is always enabled. Before an individual user can successfully invoke the API, however, Isora GRC needs to generate an authentication token for that user. If you’re an ordinary user, you’ll need to request API access from your local Isora GRC administrator. If you’re a super-user, then follow the steps below to modify a user to add API access.

  1. Navigate to your Isora GRC URL and log into the web interface.
  2. Go to the orgs module and click the “manage people” link.
  3. Locate the user you wish to modify and click the button next to the name to edit the user.
  4. Click the checkbox to “enable token api access,” then click the “save” button.

    Note: the “enable signature api access” option is an experimental feature which is not supported at this time. In the future, if implemented, this option would allow a user to encrypt API calls with a signature.
  5. After clicking the “save” button, the newly generated token is revealed in the window.

    You can now copy and paste this token from the web interface and save it for use in API calls.
  6. Be aware that if you later remove a user’s API access and add it again, a new token will be generated each time.

 Next: 2.3 API structure overview



If you can't find what you are a looking for and need support, email support@saltycloud.