REST API
4.0.0
REST API for SafeNet Network HSMs
|
Object activated: Object type: boolean description: activated indicates whether the role is authenticated. True means the role is authenticated with access to sensitive cryptographic material; False means authentication must occur before access is possible. challengeToBeChanged: Object type: boolean description: challengeToBeChanged indicates whether the challenge for the role must be initialized or updated. True means the challenge must be updated; False means the challenge is okay as-is. id: Object type: string description: id is a unique internal reference for the role. initialized: Object type: boolean description: initialized indicates whether the role is set up for use. True means the role is ready; False means additional administration is necessary. lockedOut: Object type: boolean description: lockedOut indicates whether a user is able to successfully authenticate to the partition with the role. False means that the HSM permits a user to login to the partition. True means that the HSM prevents a user to login even when the user presents the correct credentials. True means that a user attempted unsuccessfully too many times to login on a previous occasion. loginAttemptsLeft: Object type: integer description: loginAttemptsLeft indicates how many consecutive tries a user has left to successfully login to the partition. If this number of consecutive login attempts fail, the HSM locks out the partition. See "Failed Logins" in the SafeNet Network HSM Product Documentation for details of what happens in this circumstance. name: Object type: string description: name is a short, textual description of the role. Refer to the "Roles and Users" section of the SafeNet Network HSM Product Documentation for details of each partition role. pinToBeChanged: Object type: boolean description: pinToBeChanged indicates whether a user is forced to choose a new password on login. False means that the user can keep the existing password. True means that the user must change the password after successfully logging in. primaryAuthentication: Object type: string description: primaryAuthentication is the means by which the role must authenticate to the partition. Values are: None - not applicable for this means of authentication PED - use the PIN entry device PIN - provide a password secondaryAuthentication: Object type: string description: secondaryAuthentication is the means by which, in additional to authenticating to the partition via the method defined by the primary authentication attribute, the role must also authenticate to the partition. Values are: None - no other authentication is necessary PED - not applicable for this means of authentication PIN - a challenge must be provided