Machine admin
Create a service token
POST
/api/w/:wid/service-tokensOwners. The token is in the answer once. See service tokens.
| Field | Description |
|---|---|
name | after what will hold it, for example “Splunk SOAR” |
scopes | from agents:read, agents:write, agents:freeze, approvals:read, evidence:read |
expiresInDays | 1 to 90; every token expires |
ipAllow | optional: up to 20 addresses or CIDR ranges |
#Authentication
Session cookie
A signed-in person: the console's session cookie. Every state-changing request also carries the header x-immiscible-csrf: 1, and the member's role decides what it may do. Bearer tokens are ignored on these routes, so no machine credential can reach them.
#Path parameters
widstringrequired
Workspace id