{"info":{"_postman_id":"4999cffd-6d71-4064-9b97-5de9e9645775","name":"EmpowerID API Reference","description":"<html><head></head><body><p>EmpowerID is an extendable Identity and Access Management (IAM), Single Sign-On and workflow development platform that uses thousands of workflow operations with real-time access checks to give organizations the security tools needed to control who can do what, where and when with their resources. Through its Web API, you the developer, can access and extend these features in your own applications. The API is built on the principles of REST and is organized around the components (resource objects, like user accounts, EmpowerID people, Exchange mailboxes, workflows, etc.,) of the EmpowerID platform.</p>\n</body></html>","schema":"https://schema.getpostman.com/json/collection/v2.0.0/collection.json","toc":[],"owner":"16915561","collectionId":"4999cffd-6d71-4064-9b97-5de9e9645775","publishedId":"Tzsfnkrf","public":true,"customColor":{"top-bar":"FFFFFF","right-sidebar":"303030","highlight":"EF5B25"},"publishDate":"2021-08-02T16:24:18.000Z"},"item":[{"name":"Authentication Protocols","item":[{"name":"OpenID Connect Metadata Document","id":"161d9f76-4502-4036-867e-f3ea90428bd1","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"method":"GET","header":[],"url":"https://YOUR_DOMAIN/oauth/.well-known/openid-configuration","description":"<p>The OpenID Connect metadata document describes the URL information required for an application to sign in, as well as to obtain basic profile information about the end-user.</p>\n","urlObject":{"protocol":"https","path":["oauth",".well-known","openid-configuration"],"host":["YOUR_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"9d058e87-d4e8-482b-bf8e-f72c00e9ddf9","name":"OpenID Connect Metadata Document","originalRequest":{"method":"GET","header":[],"url":"https://sso.empoweriam.com/oauth/.well-known/openid-configuration"},"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"issuer\": \"https://sso.empoweriam.com/oauth\",\n    \"jwks_uri\": \"https://sso.empoweriam.com/oauth/.well-known/jwks\",\n    \"authorization_endpoint\": \"https://sso.empoweriam.com/oauth/v2/ui/authorize\",\n    \"device_authorization_endpoint\": \"https://sso.empoweriam.com/oauth/v2/device/authorize\",\n    \"token_endpoint\": \"https://sso.empoweriam.com/oauth/v2/token\",\n    \"userinfo_endpoint\": \"https://sso.empoweriam.com/oauth/v2/userinfo\",\n    \"tokeninfo_endpoint\": \"https://sso.empoweriam.com/oauth/v2/tokeninfo\",\n    \"permission_endpoint\": \"https://sso.empoweriam.com/oauth/v2/uma/permission\",\n    \"resource_registration_endpoint\": \"https://sso.empoweriam.com/api/services/v1/umaresource\",\n    \"tokenrevoke_endpoint\": \"https://sso.empoweriam.com/oauth/v2/tokenrevoke\",\n    \"frontchannel_logout_supported\": true,\n    \"end_session_endpoint\": \"https://sso.empoweriam.com/oauth/v2/ui/logout\",\n    \"check_session_iframe\": \"https://sso.empoweriam.com/oauth/v2/ui/checksession\",\n    \"scopes_supported\": [\n        \"openid\",\n        \"profile\",\n        \"email\"\n    ],\n    \"claims_supported\": [\n        \"aud\",\n        \"iss\",\n        \"iat\",\n        \"exp\",\n        \"auth_time\",\n        \"nonce\"\n    ],\n    \"response_types_supported\": [\n        \"code\",\n        \"token\",\n        \"id_token\",\n        \"id_token token\",\n        \"code id_token\",\n        \"code token\",\n        \"code id_token token\"\n    ],\n    \"grant_types_supported\": [\n        \"authorization_code\",\n        \"device_code\",\n        \"client_credentials\",\n        \"password\",\n        \"refresh_token\",\n        \"implicit\",\n        \"urn:ietf:params:oauth:grant-type:saml2-bearer\",\n        \"urn:ietf:params:oauth:grant-type:certificate-bearer\",\n        \"urn:ietf:params:oauth:grant-type:impersonate-bearer\",\n        \"urn:ietf:params:oauth:grant-type:jwt-bearer\",\n        \"urn:ietf:params:oauth:grant-type:token-exchange\",\n        \"urn:ietf:params:oauth:grant-type:uma-ticket\"\n    ],\n    \"subject_types_supported\": [\n        \"public\"\n    ],\n    \"id_token_signing_alg_values_supported\": [\n        \"RS256\"\n    ],\n    \"token_endpoint_auth_methods_supported\": [\n        \"client_secret_post\",\n        \"client_secret_basic\"\n    ]\n}"}],"_postman_id":"161d9f76-4502-4036-867e-f3ea90428bd1"},{"name":"OpenID Connect Web Keys","id":"bdd8411f-e162-4fc2-8c0c-10b3b87a6a27","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"method":"GET","header":[],"url":"https://YOUR_DOMAIN/oauth/.well-known/jwks","description":"<p>The JWKS URI returns the list of signing key(s) containing the public key(s) used to validate a JWT token issued by the authorization server. It includes the kid of the signing key to indicate to the verifier which key should be used to validate the signature.</p>\n","urlObject":{"protocol":"https","path":["oauth",".well-known","jwks"],"host":["YOUR_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"d4cc754d-b541-430f-b610-27e680f759df","name":"OpenID Connect Web Keys","originalRequest":{"method":"GET","header":[],"url":"https://sso.empoweriam.com/oauth/.well-known/jwks"},"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"keys\": [\n        {\n            \"kty\": \"RSA\",\n            \"alg\": \"RS256\",\n            \"use\": \"sig\",\n            \"kid\": \"_lq2NHEiFgQ7UhAVVNiQJ63cnYs\",\n            \"x5t\": \"_lq2NHEiFgQ7UhAVVNiQJ63cnYs\",\n            \"e\": \"AQAB\",\n            \"n\": \"iAK5mwueGN3FD8Qect_LwQ5z554v2_3iP-ojLkoZwafszv5YLoyuTEHvOJeCspTf-YDwwKZ8tobAIl50pN0652QbBKIaimk0erQpFPyEQmN56B9JYAqU2sMFlczmYdbpqOH0uaQwi3ZYahGwAF2vF0hUz0r_X5yuDPZytVABBT4LkqKY3U_f1t0oQrmABCZmEZl_QETdQweVzKklR8x_ypnhl0OQgYExxZ8Dz8_j4bft3CfLZyKd_d8R4LVH_ssKUDX8WqrJFSMZU-iEVSN-xL8xHlOsq16dAB5TUUFC-fApDyoz3Ty5yhCyfbWoAVkXriXLZFa-2m7WS6_AVfADhw\",\n            \"x5c\": [\n                \"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\"\n            ]\n        },\n        {\n            \"kty\": \"RSA\",\n            \"alg\": \"RS256\",\n            \"use\": \"sig\",\n            \"kid\": \"TpgSXgdSWcJ52kaVhAcl874hG30\",\n            \"x5t\": \"TpgSXgdSWcJ52kaVhAcl874hG30\",\n            \"e\": \"AQAB\",\n            \"n\": \"xrTTSQ4tZfF8LKlBXw2mE4QM5qrI6Efsysj1KV9N8KHMsBLAsRiZNK4XN-u0hHffUwF5qzYLgOjak8Y3CGURX1TDdDWczbEen9uk4cKabL_nkj7CF0k6pkPHHnWbfBu1XEFgUaSPVBh_IVQ_UYyPDxrwItOPCCTqlSUSJgKZeanZ0Uwy-6aaIkelwGYwrDFXKITHJJIBQw0eW9ydJ2HX3GMCQ1_w2j26McXtcMF5J7Bhv89HTy-XPs8cJyqpQQBG6gc16G4WoY6q6_yWvLcA3UBtToBkRwCnFc4is8YIL3Zd86JrehWebLzDArqP8TjBFdcjgCK4mtkFZKmI0kc-xAMTv0DmFQSBKcSVUS1_1tzrBMxI5yoOB-YRWSDRdop9kmmuKX805lM8VAjdYaUTdINptSgxNo_YZQcmVBakDLXpMi8SZy4q-db1TpRuqiMbpFiz9V_5z2mYz4gQKCESFJd5eho7ANkGlDIqwzA4BUdGJ3wg9tapXUT4diZPcCNsUbNnctV6GN5La6P35jatc0HTXuQqHyU-8T3CxB-gSMomZIfJdJhAMCTP7c68MsTgyT6QGY3Vw_b9ZHZzh-_76pahKVJQIYQNkv8M_vWXr3Q_6WPbsdb5t7vw_hX-u0YlMCT9ce8fS4pqglXANkOWhGPWEzRFx4oqKjrS_FDGnXs\",\n            \"x5c\": [\n                \"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\"\n            ]\n        },\n        {\n            \"kty\": \"RSA\",\n            \"alg\": \"RS256\",\n            \"use\": \"sig\",\n            \"kid\": \"3jaJpg7iYf8tDinNGobcK0_Ws44\",\n            \"x5t\": \"3jaJpg7iYf8tDinNGobcK0_Ws44\",\n            \"e\": \"AQAB\",\n            \"n\": \"gx-FkcFVuVJBRPiaUrWz38k5mQdQp4FdwZ3aTJOf1Dj9WJ0JJVTcsbVUQ_OA39Pqg6rXmQLV6TaMyzIzmvEcc8UDf2U0EMlzPhWUV1lGZwDnvVb9913MQv6WJ9rPY9TeYoYYHX4VYWOPkvbM09Lt5WNwgwp4obyMeg1zuc0Wtj4gVeUmMoFgwGhgSznvBGNnC2oo4QEoGfrgUyonuDjeID7E6IkGWnd0wWCSwfUOw75ts0tptRQ8YPdMW8HoDlIaZo-ovuEnU-WrFom80Lm4FbFJc5Ts_HxUoXHj7bSQaSKP1WuYnu23Eb6_hrsdFEFtprQHBWG0MxDPx8B0Vsdviw\",\n            \"x5c\": [\n                \"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\"\n            ]\n        },\n        {\n            \"kty\": \"RSA\",\n            \"alg\": \"RS256\",\n            \"use\": \"sig\",\n            \"kid\": \"hAJOk3hqmJ_MtXHX4GQWnO4cpKM\",\n            \"x5t\": \"hAJOk3hqmJ_MtXHX4GQWnO4cpKM\",\n            \"e\": \"AQAB\",\n            \"n\": \"sr1qLVDXYpeaIwMN6g1aDMZdlLCPIVSaRrcWuHybD5JvJ21gWoAnk05kAp5asnlD4xUg2JiGVe8yWJif1hSQiprfpTqsWSTEQxYzT-kPssbJtbMNcte8LJ8nCxZcsH5RSMiUK8gpQB4Cpp-jAcHXBzF8M9wAI-66KNR0Ue8qc-j3B7W0irWsLOfh76ituppdZmL-H4WRrwqyy-jzXYsadZk1I9xGdaX6_y0CKkWGeQ8vJ-oEezoXhIkVOJYC5CuK8Ihs7PsjXr1oF3kUCui4yyTb2CBGiZ2Tj82twGC7X_f1Z4fXJxbxcicAZU2NeMzMFNU0iLaI50MSB0oSJ6cl1ujfr4eiFPZkfs3c9zXhTauTZ7j5jB9B6MOC6x--U_J74n1csJ38oFIAVniAEGVXbeC2SEQX2CFJ2t6YGV_BiWj7LLdCJMG80oh-WcROmi2bapeOSdtH9hPSf2OZwP_fqylYMZ1CVZjbVwcMFX5BNNJDjVM_-sQ9c1UsCpD5Lojf8OC7HUAxO4JuSz-TlHfyohjuvHLYWwuhWnoFfOlWRPxw39Y1k7v0xTYTjGc8BmsBiApnkZL7JbHE333Y2jGJoDmR8MCkqAT3QokIfj0gsjmPvfiJBQGZ2ysEAkmYZ27f-Zc5BsXMdfw05X-7zB79EDbnu6Hq8Vr8bBR4xBwF_9M\",\n            \"x5c\": [\n                \"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\"\n            ]\n        },\n        {\n            \"kty\": \"RSA\",\n            \"alg\": \"RS256\",\n            \"use\": \"sig\",\n            \"kid\": \"STI802VLqhzG3yyuY58ROynr2KM\",\n            \"x5t\": \"STI802VLqhzG3yyuY58ROynr2KM\",\n            \"e\": \"AQAB\",\n            \"n\": \"twOVIaNwb1i4_ky4x95CL0cipftXiogIWpzRzq4lLDE0goQTu2XKoeicfZBEvXmFkXo1Mlp0u-RZDm-PXMXG7L84_wL9MOhs2-GCBhjAfQwyvzbomYmJi_28p7qJxgp0kJ1TUWAqS385UM-6XEYE9xPZHYUJldEp_vrzrGt0A9rieLgsXb_RzY94t7mdazGalylDjw1XWWLVSwf582JLLDzwdMZpS6xhuMViMvwcFxUaP5tI8p2eeFulfWE4-rdhX5e3JnOc6ctX5n3of0TZEAn-bW83Fb-oEA0dVGjxlpOe_Um26YMu252QEh9qvzZkQ0xfUcOxP2LfqU-2_zwMgQ\",\n            \"x5c\": [\n                \"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\"\n            ]\n        }\n    ]\n}"}],"_postman_id":"bdd8411f-e162-4fc2-8c0c-10b3b87a6a27"},{"name":"Authorization Code Flow","id":"b82c1505-c69f-40a7-abfb-d036b20b98b5","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"method":"GET","header":[{"key":"Content-Type","value":"application/x-www-form-urlencoded"}],"body":{"mode":"urlencoded","urlencoded":[{"key":"client_id","value":"YOUR_CLIENT_ID","type":"text","description":"<p><strong>Required</strong><br />The client_id of your oauth application</p>\n"},{"key":"redirect_uri","value":"https://YOUR_APP/callback","type":"text","description":"<p><strong>Required</strong><br />The application redirect/callback URL to which EmpowerID will send the authentication response</p>\n"},{"key":"response_type","value":"code","type":"text","description":"<p><strong>Required</strong><br />Must be <strong>code</strong> for authorization code flow. For OIDC flow include <strong>code id_token</strong></p>\n"},{"key":"state","value":"STATE","type":"text","description":"<p><strong>Optional</strong><br />An opaque string sent by the client to maintain session and prevent CSRF attacks</p>\n"},{"key":"scope","value":"SCOPE","description":"<p><strong>Optional</strong><br />A space separated list of scopes that the user consents to. For OIDC flow include <strong>openid</strong></p>\n","type":"text"},{"key":"nonce","value":"NONCE","description":"<p><strong>Optional</strong><br />An opaque string sent by the client to associate a client session with an ID token and to mitigate replay attacks</p>\n","type":"text"}]},"url":"https://YOUR_DOMAIN/oauth/v2/ui/authorize","description":"<p>The Authorization Code Grant is used to request an authorization code that can be exchanged for an ID token and, typically an access token. This grant is advantageous in that tokens cannot be intercepted as they are never exposed to the user agent (typically, a web browser). The flow is redirection-based, so the client needs to be able to interact with the resource owner’s user agent.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>EmpowerID Docs - <a href=\"https://dotnetworkflow.jira.com/wiki/spaces/EDGV21/pages/1606353778/OAuth+2.0+Authorization+Code+Grant\">Authorization Code Flow</a></li>\n<li>The redirect_uri must be registered in the valid callback URL list on the OAuth application in EmpowerID</li>\n<li>The response_type must be set to <strong>code id_token</strong> for OpenID connect flow. This will return the ID token as a part of the authentication response</li>\n<li>The scope must include <strong>openid</strong> for OpenID connect flow</li>\n</ul>\n","urlObject":{"protocol":"https","path":["oauth","v2","ui","authorize"],"host":["YOUR_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"0542aff1-ec86-46f8-bea9-9955876c3b41","name":"Authorization Code Flow","originalRequest":{"method":"GET","header":[{"key":"Content-Type","value":"application/x-www-form-urlencoded"}],"body":{"mode":"urlencoded","urlencoded":[{"key":"client_id","value":"3542a382-60ef-4a49-85c4-30831fa1a474","type":"text"},{"key":"redirect_uri","value":"https://sso.empoweriam.com/OAuthTestWebsite/OAuth/AuthorizationCodeGrantResponse","type":"text"},{"key":"response_type","value":"code","type":"text"},{"key":"state","value":"b74fb9d2bc244112b945bf1f4f081d26","type":"text"},{"key":"scope","value":"openid","type":"text"},{"key":"nonce","value":"82cf61e9fc24426e87d6ee0939b59962","type":"text"}]},"url":"https://sso.empoweriam.com/oauth/v2/ui/authorize"},"status":"OK","code":200,"_postman_previewlanguage":"text","header":null,"cookie":[],"responseTime":null,"body":"GET https://sso.empoweriam.com/OAuthTestWebsite/OAuth/AuthorizationCodeGrantResponse?\nstate=b74fb9d2bc244112b945bf1f4f081d26\n&code=TVdtaTVjejlZakswRnc3VWpBNWhoSUR5Q1FwbWdEMVAzRW5OdEc5YjRmaEROZVBpSDYrV29GNVZ5TT......\n&session_state=o9gr4a9nD802XGdalMIQ5nImCRq8RF6-fJMiK1HuBpQ.FBA98D193602DAC7C9E3D59......"}],"_postman_id":"b82c1505-c69f-40a7-abfb-d036b20b98b5"},{"name":"Implicit Grant Flow","id":"fd1fe0c5-397a-4de9-8963-b53999bcc979","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"method":"GET","header":[{"key":"Content-Type","value":"application/x-www-form-urlencoded"}],"body":{"mode":"urlencoded","urlencoded":[{"key":"client_id","value":"YOUR_CLIENT_ID","type":"text","description":"<p><strong>Required</strong><br />The client_id of your oauth application</p>\n"},{"key":"redirect_uri","value":"https://YOUR_APP/callback","type":"text","description":"<p><strong>Required</strong><br />The application redirect/callback URL to which EmpowerID will send the authentication response</p>\n"},{"key":"response_type","value":"token","type":"text","description":"<p><strong>Required</strong><br />Must be <strong>token</strong> for implicit grant flow. For OIDC flow use <strong>token id_token</strong></p>\n"},{"key":"state","value":"STATE","type":"text","description":"<p><strong>Optional</strong><br />An opaque string sent by the client to maintain session and prevent CSRF attacks</p>\n"},{"key":"scope","value":"SCOPE","description":"<p><strong>Optional</strong><br />A space separated list of scopes that the user consents to. For OIDC flow include <strong>openid</strong></p>\n","type":"text"},{"key":"nonce","value":"NONCE","description":"<p><strong>Optional</strong><br />An opaque string sent by the client to associate a client session with an ID token and to mitigate replay attacks</p>\n","type":"text"}]},"url":"https://YOUR_DOMAIN/oauth/v2/ui/authorize","description":"<p>The Implicit Grant is used to obtain access token and/or ID token directly from the /authorize endpoint. The flow is redirection-based, so the client needs to be able to interact with the resource owner’s user agent. Clients using this flow are usually implemented in a browser using a scripting language.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>EmpowerID Docs - <a href=\"https://dotnetworkflow.jira.com/wiki/spaces/EDGV21/pages/1606353930/OAuth+2.0+Implicit+Grant\">Implicit Grant</a></li>\n<li>The redirect_uri must be registered in the valid callback URL list on the OAuth application in EmpowerID</li>\n<li>The response_type must be set to <strong>token id_token</strong> for OpenID connect flow. This will return the ID token as a part of the authentication response</li>\n<li>The scope must include <strong>openid</strong> for OpenID connect flow</li>\n</ul>\n","urlObject":{"protocol":"https","path":["oauth","v2","ui","authorize"],"host":["YOUR_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"41bc5d0b-f0bf-48a6-b449-b867afb2ec98","name":"Implicit Grant Flow","originalRequest":{"method":"GET","header":[{"key":"Content-Type","value":"application/x-www-form-urlencoded"}],"body":{"mode":"urlencoded","urlencoded":[{"key":"client_id","value":"3542a382-60ef-4a49-85c4-30831fa1a474","type":"text"},{"key":"redirect_uri","value":"https://sso.empoweriam.com/OAuthTestWebsite/ImplicitCallback.html","type":"text"},{"key":"response_type","value":"token","type":"text"},{"key":"state","value":"bc77d20edbfd451c95a7e555b29cfb04","type":"text"},{"key":"scope","value":"openid","type":"text"},{"key":"nonce","value":"eea5d18680304b03b1f576a467734bdb","type":"text"}]},"url":"https://sso.empoweriam.com/oauth/v2/ui/authorize"},"status":"OK","code":200,"_postman_previewlanguage":"text","header":null,"cookie":[],"responseTime":null,"body":"GET https://sso.empoweriam.com/OAuthTestWebsite/ImplicitCallback.html#\nstate=bc77d20edbfd451c95a7e555b29cfb04\n&access_token=eyJhbGciOiJSUzI1NiIsImtpZCI6Il9scTJOSEVpRmdRN1V......\n&token_type=Bearer\n&expires_in=300\n&id_token=eyJhbGciOiJSUzI1NiIsImtpZCI6Il9scTJOSEVpRmdRN1VoQVZWTmlRSjYzY25......"}],"_postman_id":"fd1fe0c5-397a-4de9-8963-b53999bcc979"},{"name":"Resource Owner Password Grant","id":"98d279d3-5d2d-43df-aed5-adb37e61da4a","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"method":"POST","header":[{"key":"Content-Type","value":"application/x-www-form-urlencoded"}],"body":{"mode":"urlencoded","urlencoded":[{"key":"client_id","value":"YOUR_CLIENT_ID","type":"text","description":"<p><strong>Required</strong><br />The client_id of your oauth application</p>\n"},{"key":"client_secret","value":"YOUR_CLIENT_SECRET","type":"text","description":"<p><strong>Required</strong><br />The client_secret of your oauth application</p>\n"},{"key":"grant_type","value":"password","type":"text","description":"<p><strong>Required</strong><br />Must be \"<strong>password</strong> for resource owner password grant</p>\n"},{"key":"scope","value":"SCOPE","type":"text","description":"<p><strong>Optional</strong><br />A space separated list of scopes that the application requires. Include <strong>openid</strong> to retrieve an ID token</p>\n"},{"key":"username","value":"USERNAME","type":"text","description":"<p><strong>Required</strong><br />The user's login</p>\n"},{"key":"password","value":"PASSWORD","description":"<p><strong>Required</strong><br />The user's password</p>\n","type":"text"}]},"url":"https://YOUR_DOMAIN/oauth/v2/token","description":"<p>The Resource Owner Password Grant allows an application to obtain an access token and/or ID token by supplying their username and password.This flow should be used when the resource owner has high degree of trust with the client and only when the other flows are not viable.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>EmpowerID Docs - <a href=\"https://dotnetworkflow.jira.com/wiki/spaces/EDGV21/pages/1606353807/OAuth+2.0+Resource+Owner+Password+Grant\">Resource Owner Password Grant</a></li>\n<li>The username password can be sent in the Authorization header as well in the format,<br /> <strong>Authorization: Basic base64Encode(username:password)</strong></li>\n</ul>\n","urlObject":{"protocol":"https","path":["oauth","v2","token"],"host":["YOUR_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"1d33ecff-6492-4933-89e9-c7f1d00ebba8","name":"Resource Owner Password Grant","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/x-www-form-urlencoded"}],"body":{"mode":"urlencoded","urlencoded":[{"key":"client_id","value":"3542a382-60ef-4a49-85c4-30831fa1a474","type":"text"},{"key":"client_secret","value":"9PLxc......","type":"text"},{"key":"grant_type","value":"password","type":"text"},{"key":"scope","value":"openid","type":"text"},{"key":"username","value":"mytestuser","type":"text"},{"key":"password","value":"MyS3cur3P@SS","type":"text"}]},"url":"https://sso.empoweriam.com/oauth/v2/token"},"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"access_token\": \"eyJhbGciOiJSUzI1NiIsImtpZCI6Il9scTJOSEVpRmdR......\",\n    \"token_type\": \"Bearer\",\n    \"expires_in\": 3589,\n    \"refresh_token\": \"Y21WVzE5UEFKNlo5SGljQUVkK0Q1Uk5oOXVqTmlDRk......\",\n    \"id_token\": \"eyJhbGciOiJSUzI1NiIsImtpZCI6Il9scTJOSEVpRmdRN1VoQVZW......\",\n    \"id\": \"06748c07-eff0-4c26-b4c8-7fda46a2e44a\"\n}"}],"_postman_id":"98d279d3-5d2d-43df-aed5-adb37e61da4a"},{"name":"JWT Bearer Token Flow","id":"4e528638-3d94-4812-bb07-7d033d200ee1","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"method":"POST","header":[{"key":"Content-Type","value":"application/x-www-form-urlencoded"}],"body":{"mode":"urlencoded","urlencoded":[{"key":"grant_type","value":"urn:ietf:params:oauth:grant-type:jwt-bearer","type":"text","description":"<p><strong>Required</strong><br />Must be <strong>urn:ietf:params:oauth:grant-type:jwt-bearer</strong> for JWT bearer token flow</p>\n"},{"key":"assertion","value":"ASSERTION","type":"text","description":"<p><strong>Required</strong><br />JWT assertion string. Refer to the description to generate the JWT assertion</p>\n"},{"key":"scope","value":"SCOPE","description":"<p><strong>Optional</strong><br />A space separated list of scopes that the application requires. Include <strong>openid</strong> to retrieve an ID token</p>\n","type":"text"}]},"url":"https://YOUR_DOMAIN/oauth/v2/token","description":"<p>The JWT Bearer Token Flow is an extension of OAuth 2.0 that provides a framework for using JWT assertions as client credentials for retrieving access token and/or ID token.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>EmpowerID Docs - <a href=\"https://dotnetworkflow.jira.com/wiki/spaces/EDGV21/pages/1606353834/OAuth+2.0+JWT+JSON+Web+Token+Bearer+Grant\">JWT Bearer Grant</a></li>\n<li>The JWT assertion string must be signed with the signing certificate and converted to base64 string, <code>base64(sign(JWT Assertion))</code> as described in the above documentation link</li>\n</ul>\n","urlObject":{"protocol":"https","path":["oauth","v2","token"],"host":["YOUR_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"de6bbda5-7d49-46fd-a763-d5cd9a4d8b99","name":"JWT Bearer Token Flow","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/x-www-form-urlencoded"}],"body":{"mode":"urlencoded","urlencoded":[{"key":"grant_type","value":"urn:ietf:params:oauth:grant-type:jwt-bearer","type":"text"},{"key":"assertion","value":"ZXlKaGJHY2lPaUpTVXpJMU5pSXNJbXRwWkNJ......ZNVZLNA==","type":"text"},{"key":"scope","value":"openid","type":"text"}]},"url":"https://sso.empoweriam.com/oauth/v2/token"},"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"access_token\": \"eyJhbGciOiJSUzI1NiIsImtpZCI6Il9scTJOSEVpRmdR......\",\n    \"token_type\": \"Bearer\",\n    \"expires_in\": 3589,\n    \"refresh_token\": \"Y21WVzE5UEFKNlo5SGljQUVkK0Q1Uk5oOXVqTmlDRk......\",\n    \"id_token\": \"eyJhbGciOiJSUzI1NiIsImtpZCI6Il9scTJOSEVpRmdRN1VoQVZW......\",\n    \"id\": \"06748c07-eff0-4c26-b4c8-7fda46a2e44a\"\n}"}],"_postman_id":"4e528638-3d94-4812-bb07-7d033d200ee1"},{"name":"SAML Bearer Assertion Flow","id":"4b3dda7b-9fb7-4eb2-b78e-2528bd1bb2bd","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"method":"POST","header":[{"key":"Content-Type","value":"application/x-www-form-urlencoded"}],"body":{"mode":"urlencoded","urlencoded":[{"key":"grant_type","value":"urn:ietf:params:oauth:grant-type:saml2-bearer","type":"text","description":"<p><strong>Required</strong><br />Must be <strong>urn:ietf:params:oauth:grant-type:saml2-bearer</strong> for SAML bearer assertion flow</p>\n"},{"key":"assertion","value":"ASSERTION","type":"text","description":"<p><strong>Required</strong><br />SAML assertion string. Refer to the description to generate the SAML assertion</p>\n"},{"key":"scope","value":"SCOPE","description":"<p><strong>Optional</strong><br />A space separated list of scopes that the application requires. Include <strong>openid</strong> to retrieve an ID token</p>\n","type":"text"}]},"url":"https://YOUR_DOMAIN/oauth/v2/token","description":"<p>The SAML Bearer Assertion Flow is an extension of OAuth 2.0 that provides a framework for using SAML assertions as client credentials for retrieving access token and/or ID token.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>EmpowerID Docs - <a href=\"https://dotnetworkflow.jira.com/wiki/spaces/EDGV21/pages/1606353834/OAuth+2.0+JWT+JSON+Web+Token+Bearer+Grant\">SAML Bearer Assertion Flow</a></li>\n<li>The SAML assertion string must be signed with the signing certificate and converted to base64 string, <code>base64(sign(SAML Assertion))</code> as described in the above documentation link</li>\n</ul>\n","urlObject":{"protocol":"https","path":["oauth","v2","token"],"host":["YOUR_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"253bc55a-d39a-4fbb-8da1-3d612b3d8c79","name":"SAML Bearer Assertion Flow","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/x-www-form-urlencoded"}],"body":{"mode":"urlencoded","urlencoded":[{"key":"grant_type","value":"urn:ietf:params:oauth:grant-type:saml2-bearer","type":"text"},{"key":"assertion","value":"PHNhbWw6QXNzZXJ0aW9uIFZ......lsOkFzc2VydGlvbj4=","type":"text"},{"key":"scope","value":"openid","type":"text"}]},"url":"https://sso.empoweriam.com/oauth/v2/token"},"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"access_token\": \"eyJhbGciOiJSUzI1NiIsImtpZCI6Il9scTJOSEVpRmdR......\",\n    \"token_type\": \"Bearer\",\n    \"expires_in\": 3589,\n    \"refresh_token\": \"Y21WVzE5UEFKNlo5SGljQUVkK0Q1Uk5oOXVqTmlDRk......\",\n    \"id_token\": \"eyJhbGciOiJSUzI1NiIsImtpZCI6Il9scTJOSEVpRmdRN1VoQVZW......\",\n    \"id\": \"06748c07-eff0-4c26-b4c8-7fda46a2e44a\"\n}"}],"_postman_id":"4b3dda7b-9fb7-4eb2-b78e-2528bd1bb2bd"},{"name":"Client Credential Grant","id":"10ac6329-f5f3-4eeb-a626-6e71c2a85e6b","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"method":"POST","header":[{"key":"Content-Type","value":"application/x-www-form-urlencoded"}],"body":{"mode":"urlencoded","urlencoded":[{"key":"client_id","value":"YOUR_CLIENT_ID","type":"text","description":"<p><strong>Required</strong><br />The client_id of your oauth application</p>\n"},{"key":"client_secret","value":"YOUR_CLIENT_SECRET","type":"text","description":"<p><strong>Required</strong><br />The client_secret of your oauth application</p>\n"},{"key":"grant_type","value":"client_credentials","type":"text","description":"<p><strong>Required</strong><br />Must be <strong>client_credentials</strong> for client credential grant</p>\n"},{"key":"scope","value":"SCOPE","type":"text","description":"<p><strong>Optional</strong><br />A space separated list of scopes that the application requires. Include <strong>openid</strong> to retrieve an ID token</p>\n"},{"key":"username","value":"USERNAME","type":"text","description":"<p><strong>Optional</strong><br />The user's login, GUID,or ID for whom the access token should be issued. If this value is null or not present, the access token will be issued to the owner of the registered OAuth application</p>\n"}]},"url":"https://YOUR_DOMAIN/oauth/v2/token","description":"<p>The Client Credential Grant allows an application to obtain an access token and/or ID token by using only the client ID and client secret. This flow should be used for machine-to-machine (M2M) interactions that do not involve any user interaction. The client can request access to protected resources under its control, or those of another resource owner that have been previously arranged with the authorization server.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>EmpowerID Docs - <a href=\"https://dotnetworkflow.jira.com/wiki/spaces/EDGV21/pages/1606353859/OAuth+2.0+Client+Credential+Grant\">Client Credential Grant</a></li>\n<li>The Client Credential Flow must be enabled on the OAuth application in EmpowerID as described in the above documentation</li>\n</ul>\n","urlObject":{"protocol":"https","path":["oauth","v2","token"],"host":["YOUR_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"b693eb74-750b-447d-9a6c-b55823f03d8d","name":"Client Credential Grant","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/x-www-form-urlencoded"}],"body":{"mode":"urlencoded","urlencoded":[{"key":"client_id","value":"3542a382-60ef-4a49-85c4-30831fa1a474","type":"text"},{"key":"client_secret","value":"9PLxc......","type":"text"},{"key":"grant_type","value":"client_credential","type":"text"},{"key":"scope","value":"openid","type":"text"},{"key":"username","value":"mytestuser","type":"text"}]},"url":"https://sso.empoweriam.com/oauth/v2/token"},"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"access_token\": \"eyJhbGciOiJSUzI1NiIsImtpZCI6Il9scTJOSEVpRmdRN1VoQVZWTmlRSjY......\",\n    \"token_type\": \"Bearer\",\n    \"expires_in\": 3589,\n    \"id\": \"06748c07-eff0-4c26-b4c8-7fda46a2e44a\"\n}"}],"_postman_id":"10ac6329-f5f3-4eeb-a626-6e71c2a85e6b"},{"name":"Refresh Token Grant","id":"3fa915fe-f8e4-424e-8b83-828d31c14ca6","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"method":"POST","header":[{"key":"Content-Type","value":"application/x-www-form-urlencoded"}],"body":{"mode":"urlencoded","urlencoded":[{"key":"client_id","value":"YOUR_CLIENT_ID","type":"text","description":"<p><strong>Required</strong><br />The client_id of your oauth application</p>\n"},{"key":"client_secret","value":"YOUR_CLIENT_SECRET","type":"text","description":"<p><strong>Required</strong><br />The client_secret of your oauth application</p>\n"},{"key":"refresh_token","value":"REFRESH_TOKEN","description":"<p><strong>Required</strong><br />EmpowerID refresh token string</p>\n","type":"text"},{"key":"grant_type","value":"refresh_token","type":"text","description":"<p><strong>Required</strong><br />Must be <strong>refresh_token</strong> for refresh token grant</p>\n"}]},"url":"https://YOUR_DOMAIN/oauth/v2/token","description":"<p>The Refresh Token Grant is used for obtaining a new access token by supplying a refresh token that was issued by the authorization server when the current access token becomes invalid or expires. </p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>EmpowerID Docs - <a href=\"https://dotnetworkflow.jira.com/wiki/spaces/EDGV21/pages/1606353907/OAuth+2.0+Refresh+Token+Grant\">Refresh Token Grant</a></li>\n<li>The correct client_id &amp; client_secret should be associated with the refresh_token for a successful response. Incorrect client credentials and refresh token combination will result in an error</li>\n</ul>\n","urlObject":{"protocol":"https","path":["oauth","v2","token"],"host":["YOUR_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"ccdad864-4519-49f9-a43f-4c2de4ce8914","name":"Refresh Token Grant","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/x-www-form-urlencoded"}],"body":{"mode":"urlencoded","urlencoded":[{"key":"client_id","value":"3542a382-60ef-4a49-85c4-30831fa1a474","type":"text"},{"key":"client_secret","value":"9PLxc......","type":"text"},{"key":"refresh_token","value":"Y21WVzE5UEFK......XcTZLNA","type":"text"},{"key":"grant_type","value":"refresh_token","type":"text"}]},"url":"https://sso.empoweriam.com/oauth/v2/token"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":[{"key":"Cache-Control","value":"no-cache, no-store, must-revalidate,no-cache"},{"key":"Pragma","value":"no-cache"},{"key":"Content-Type","value":"application/json; charset=utf-8"},{"key":"Expires","value":"0"},{"key":"Vary","value":"Accept-Encoding"},{"key":"Eid-Lang","value":"en-US"},{"key":"Strict-Transport-Security","value":"max-age=31536000"},{"key":"X-XSS-Protection","value":"1; mode=block"},{"key":"X-Content-Type-Options","value":"nosniff "},{"key":"X-Frame-Options","value":"sameorigin"},{"key":"Content-Security-Policy","value":"default-src 'self' wss://*.botframework.com https://*.botframework.com wss://*.empowersso.com wss://*.empoweriam.com; img-src 'self' https://maps.google.com https://maps.googleapis.com https://api.qrserver.com/ https://maps.gstatic.com data:;script-src 'self' 'unsafe-inline' 'unsafe-eval' https://maps.googleapis.com https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ https://maps.google.com https://*.botframework.com; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://maps.google.com; frame-src https://www.google.com https://maps.google.com https://*.botframework.com *.duosecurity.com 'self'; font-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://maps.google.com data: https://fonts.gstatic.com;"},{"key":"Date","value":"Thu, 01 Aug 2019 10:10:08 GMT"},{"key":"Content-Length","value":"1415"}],"cookie":[],"responseTime":null,"body":"{\n    \"access_token\": \"eyJhbGciOiJSUzI1NiIsImtpZCI6Il9sc......\",\n    \"token_type\": \"Bearer\",\n    \"expires_in\": 847241,\n    \"refresh_token\": \"Y21WVzE5UEFK......XcTZLNA\",\n    \"id\": \"06748c07-eff0-4c26-b4c8-7fda46a2e44a\"\n}"}],"_postman_id":"3fa915fe-f8e4-424e-8b83-828d31c14ca6"},{"name":"User Info Endpoint","id":"37508c15-de45-4b13-b857-a8f9c7d249a8","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"method":"GET","header":[{"key":"Content-Type","value":"application/x-www-form-urlencoded"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong><br />EmpowerID access token</p>\n","type":"text"}],"body":{"mode":"urlencoded","urlencoded":[]},"url":"https://YOUR_DOMAIN/oauth/v2/userinfo","description":"<p>The UserInfo endpoint is a part of OIDC that returns information about the user associated with the access token. </p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>EmpowerID Docs - <a href=\"https://dotnetworkflow.jira.com/wiki/spaces/EDGV21/pages/1606353972/UserInfo+Endpoint\">User Info Endpoint</a></li>\n<li>The user info endpoint supports both HTTP GET and HTTP POST methods</li>\n<li>The access_token can be sent in the HTTP POST body as well</li>\n</ul>\n","urlObject":{"protocol":"https","path":["oauth","v2","userinfo"],"host":["YOUR_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"4b15e1cc-d286-467a-9100-64204b29e8c7","name":"User Info","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/x-www-form-urlencoded"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsIm......","type":"text"}],"body":{"mode":"urlencoded","urlencoded":[]},"url":"https://sso.empoweriam.com/oauth/v2/userinfo"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":[{"key":"Cache-Control","value":"no-cache, no-store, must-revalidate,no-cache"},{"key":"Pragma","value":"no-cache"},{"key":"Content-Type","value":"application/json; charset=utf-8"},{"key":"Expires","value":"0"},{"key":"Vary","value":"Accept-Encoding"},{"key":"Eid-Lang","value":"en-US"},{"key":"Set-Cookie","value":".loginSession=mlQcR+xmq5fBZdkz3uYvRjzN+AIb351ckyIq7yO7iQTHN/naR5ziDlZAQfZQSLLi; path=/; secure; HttpOnly"},{"key":"Strict-Transport-Security","value":"max-age=31536000"},{"key":"X-XSS-Protection","value":"1; mode=block"},{"key":"X-Content-Type-Options","value":"nosniff "},{"key":"X-Frame-Options","value":"sameorigin"},{"key":"Content-Security-Policy","value":"default-src 'self' wss://*.botframework.com https://*.botframework.com wss://*.empowersso.com wss://*.empoweriam.com; img-src 'self' https://maps.google.com https://maps.googleapis.com https://api.qrserver.com/ https://maps.gstatic.com data:;script-src 'self' 'unsafe-inline' 'unsafe-eval' https://maps.googleapis.com https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ https://maps.google.com https://*.botframework.com; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://maps.google.com; frame-src https://www.google.com https://maps.google.com https://*.botframework.com *.duosecurity.com 'self'; font-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://maps.google.com data: https://fonts.gstatic.com;"},{"key":"Date","value":"Thu, 01 Aug 2019 10:11:25 GMT"},{"key":"Content-Length","value":"804"}],"cookie":[],"responseTime":null,"body":"{\n    \"id\": \"d399765d-fcd7-45c9-913f-2b0c9e65f8b7\",\n    \"username\": \"patrick\",\n    \"first_name\": \"Patrick\",\n    \"last_name\": \"Parker\",\n    \"email\": \"patrick@patrickparker.com\",\n    \"organization\": \"Hosting Organization\",\n    \"business_role_locations\": [\n        \"Any Role in Anywhere\",\n        \"Standard Employee in Anywhere\",\n        \"All Employee Roles in Anywhere\",\n        \"All Employee Roles in All Business Locations\",\n        \"Any Role in All Business Locations\"\n    ]\n}"}],"_postman_id":"37508c15-de45-4b13-b857-a8f9c7d249a8"},{"name":"Token Introspection Endpoint","id":"4af0f462-530c-4d5b-9d1e-61a23f2d70ee","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"method":"POST","header":[{"key":"Content-Type","value":"application/x-www-form-urlencoded"},{"key":"Authorization","value":"Basic base64Encode(CLIENT_ID:CLIENT_SECRET)","description":"<p><strong>Required</strong><br />Basic authentication of the application credentials</p>\n","type":"text"}],"body":{"mode":"urlencoded","urlencoded":[{"key":"token","value":"TOKEN","description":"<p><strong>Required</strong><br />EmpowerID token</p>\n","type":"text"},{"key":"token_type_hint","value":"access_token or refresh_token or id_token","description":"<p><strong>Required</strong><br />Indicates the type of token sent for introspection. Value must be <strong>access_token</strong> or <strong>refresh_token</strong> or <strong>id_token</strong>. If not present defaults to <strong>access_token</strong></p>\n","type":"text"}]},"url":"https://YOUR_DOMAIN/oauth/v2/tokeninfo","description":"<p>The Token Introspection Endpoint allows authorized resources to query the authorization server to determine metadata associated with a token, including whether the token is currently active.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>EmpowerID Docs - <a href=\"https://dotnetworkflow.jira.com/wiki/spaces/EDGV21/pages/1606353991/Token+Introspection+Endpoint\">Token Introspection Endpoint</a></li>\n<li>The Authorization header can be a Bearer access token or Basic client authentication</li>\n</ul>\n","urlObject":{"protocol":"https","path":["oauth","v2","tokeninfo"],"host":["YOUR_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"9b295a2a-45bc-4330-ad6d-f954e0484098","name":"Token Introspection Endpoint","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/x-www-form-urlencoded"},{"key":"Authorization","value":"Basic MzU0MmEzO......dJNQ==","type":"text"}],"body":{"mode":"urlencoded","urlencoded":[{"key":"token","value":"Y21WVzE5UEFKNlo5SG......WlXTVJ1d2p3bW5XcTZLNA","type":"text"},{"key":"token_type_hint","value":"refresh_token","type":"text"}]},"url":"https://sso.empoweriam.com/oauth/v2/tokeninfo"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":[{"key":"Cache-Control","value":"no-cache, no-store, must-revalidate,no-cache"},{"key":"Pragma","value":"no-cache"},{"key":"Content-Type","value":"application/json; charset=utf-8"},{"key":"Expires","value":"0"},{"key":"Vary","value":"Accept-Encoding"},{"key":"Eid-Lang","value":"en-US"},{"key":"Strict-Transport-Security","value":"max-age=31536000"},{"key":"X-XSS-Protection","value":"1; mode=block"},{"key":"X-Content-Type-Options","value":"nosniff "},{"key":"X-Frame-Options","value":"sameorigin"},{"key":"Content-Security-Policy","value":"default-src 'self' wss://*.botframework.com https://*.botframework.com wss://*.empowersso.com wss://*.empoweriam.com; img-src 'self' https://maps.google.com https://maps.googleapis.com https://api.qrserver.com/ https://maps.gstatic.com data:;script-src 'self' 'unsafe-inline' 'unsafe-eval' https://maps.googleapis.com https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ https://maps.google.com https://*.botframework.com; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://maps.google.com; frame-src https://www.google.com https://maps.google.com https://*.botframework.com *.duosecurity.com 'self'; font-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://maps.google.com data: https://fonts.gstatic.com;"},{"key":"Date","value":"Thu, 01 Aug 2019 10:12:29 GMT"},{"key":"Content-Length","value":"291"}],"cookie":[],"responseTime":null,"body":"{\n    \"active\": true,\n    \"client_id\": \"3542a382-60ef-4a49-85c4-30831fa1a474\",\n    \"token_type\": \"Bearer\",\n    \"username\": \"patrick\",\n    \"exp\": 1568182094,\n    \"iat\": 1564582094,\n    \"nbf\": 1564582094,\n    \"sub\": \"patrick\",\n    \"iss\": \"EmpowerID\",\n    \"jti\": \"a42e887f-f7e3-42d7-8ef0-f58020f1b2c6\"\n}"}],"_postman_id":"4af0f462-530c-4d5b-9d1e-61a23f2d70ee"},{"name":"Token Revocation Endpoint","id":"e217522b-f823-46ac-add6-0bccb2a7616a","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","name":"Content-Type","value":"application/x-www-form-urlencoded","type":"text"},{"key":"Authorization","value":"Basic base64Encode(CLIENT_ID:CLIENT_SECRET)","description":"<p><strong>Required</strong><br />Basic authentication of the application credentials</p>\n","type":"text"}],"body":{"mode":"urlencoded","urlencoded":[{"key":"token","value":"TOKEN","description":"<p><strong>Required</strong><br />EmpowerID token</p>\n","type":"text"},{"key":"token_type_hint","value":"access_token or refresh_token","type":"text","description":"<p><strong>Required</strong><br />Indicates the type of token sent for revocation. Value must be <strong>access_token</strong> or <strong>refresh_token</strong>. If not present defaults to <strong>access_token</strong></p>\n"}]},"url":"https://YOUR_DOMAIN/oauth/v2/tokenrevoke","description":"<p>The Token Revocation Endpoint allows a client to invalidate token if the end-user logs out or changes identity or uninstalls the applications. This prevents abuse of abandoned tokens and facilitates better end-user experience.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>EmpowerID Docs - <a href=\"https://dotnetworkflow.jira.com/wiki/spaces/EDGV21/pages/1606354010/Token+Revoke+Endpoint\">Token Revocation Endpoints</a></li>\n<li>The correct client_id &amp; client_secret should be associated with the token for a successful response. Incorrect client credentials and token combination will result in an error</li>\n</ul>\n","urlObject":{"protocol":"https","path":["oauth","v2","tokenrevoke"],"host":["YOUR_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"7b21aa25-b2cf-44c7-aaa6-e1e6f1fe95ce","name":"Token Revocation Endpoint","originalRequest":{"method":"POST","header":[{"key":"Content-Type","name":"Content-Type","value":"application/x-www-form-urlencoded","type":"text"},{"key":"Authorization","value":"Basic MzU0MmEzO......dJNQ==","description":"Basic authentication of the application credentials","type":"text"}],"body":{"mode":"urlencoded","urlencoded":[{"key":"token","value":"eyJhbGciOiJSUzI1NiIsI......8IG_3F_BJ_P8l9dB5w","type":"text"},{"key":"token_type_hint","value":"access_token","type":"text"}]},"url":"https://sso.empoweriam.com/oauth/v2/tokenrevoke"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"null"}],"_postman_id":"e217522b-f823-46ac-add6-0bccb2a7616a"},{"name":"Single Logout","id":"36550bec-259d-477c-8e30-b97935e9354d","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"GET","header":[{"key":"Content-Type","name":"Content-Type","value":"application/x-www-form-urlencoded","type":"text"}],"body":{"mode":"urlencoded","urlencoded":[{"key":"post_logout_redirect_uri","value":"REDIRECT_URI","description":"<p><strong>Recommended</strong><br />The URL the user will be redirected to after logout is performed. This URL should be registered in the Callback URLs on the OAuth application. If not present in the request, after logout the user will be redirected to the IdP login page</p>\n","type":"text"},{"key":"id_token_hint","value":"ID_TOKEN","type":"text","description":"<p><strong>Optional</strong><br />Previously issued ID Token which is used to identify the user’s current authenticated session with the client</p>\n"},{"key":"global_logout","value":"true or false","description":"<p><strong>Optional</strong><br />Determines whether to terminate the user’s IdP session and all the service providers the user is currently authenticated with. Value must be <strong>true</strong> or <strong>false</strong></p>\n","type":"text"},{"key":"state","value":"STATE","description":"<p><strong>Optional</strong><br />An opaque string value sent by the client to maintain state. This value will be sent back to the RP in the callback endpoint specified by the post_logout_redirect_uri parameter</p>\n","type":"text"}]},"url":"https://YOUR_DOMAIN/oauth/v2/ui/logout","description":"<p>The RP-Initiated Logout process is initiated by a client to logout the end-user from the authorization server. The client can choose to perform a global logout or end only the IdP session. </p>\n<p>This logout process is used in conjunction with session management endpoint, <strong>check_session_iframe</strong>. If the client wants to terminate a session, it must periodically check the session status by polling a hidden OP iframe from an RP iframe with an origin restricted postMessage.\nThe check_session_iframe responds with the following values,</p>\n<ul>\n<li><strong>unchanged</strong> - RP does not need to do anything</li>\n<li><strong>changed</strong> - RP must perform re-authentication with prompt=none within an iframe to obtain a new ID Token and session state, sending the old ID Token as the id_token_hint. If a new ID Token is not obtained or an ID Token for a different user is obtained, the RP must handle this as a logout condition</li>\n<li><strong>error</strong> - RP must not perform re-authentication with prompt=none so as to not cause potential infinite loops. Depending on security requirements, an error may or may not need to be treated as a logout condition</li>\n</ul>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>EmpowerID Docs - <a href=\"https://dotnetworkflow.jira.com/wiki/spaces/EDGV21/pages/1606353951/OAuth+2.0+RP-Initiated+Logout\">RP-Initiated Logout</a></li>\n</ul>\n","urlObject":{"protocol":"https","path":["oauth","v2","ui","logout"],"host":["YOUR_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"90df4eab-1caf-4b3f-bc51-10d46c5b509b","name":"Single Logout","originalRequest":{"method":"GET","header":[{"key":"Content-Type","name":"Content-Type","value":"application/x-www-form-urlencoded","type":"text"}],"body":{"mode":"urlencoded","urlencoded":[]},"url":{"raw":"https://sso.empoweriam.com/oauth/v2/ui/logout?post_logout_redirect_uri=https://sso.empoweriam.com/OAuthTestWebsite","protocol":"https","host":["sso","empoweriam","com"],"path":["oauth","v2","ui","logout"],"query":[{"key":"post_logout_redirect_uri","value":"https://sso.empoweriam.com/OAuthTestWebsite"}]}},"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":""}],"_postman_id":"36550bec-259d-477c-8e30-b97935e9354d"}],"id":"429f24be-4ae1-4163-9e41-c682f7a5fe5c","description":"<p>The Authentication Protocols describe the OAuth 2.0 and OpenID Connect flows that are industry standard protocols for authenticating and authorizing third-party applications to access Web APIs on behalf of a resource owner approving that access.</p>\n<p>The following methods can be used to authenticate:</p>\n<ol>\n<li>Authorization Code Flow</li>\n<li>Implicit Grant Flow</li>\n<li>Resource Owner Password Grant</li>\n<li>JWT Bearer Token Flow</li>\n<li>SAML Bearer Assertion Flow</li>\n<li>Client Credential Grant</li>\n<li>Refresh Token Grant</li>\n</ol>\n<p>The following methods can be used to retrieve user &amp; token information:</p>\n<ol>\n<li>User Info Endpoint</li>\n<li>Token Introspection Endpoint</li>\n</ol>\n<p>The following methods can be used to a revoke token &amp; logout a user:</p>\n<ol>\n<li>Token Revocation Endpoint</li>\n<li>Single Logout</li>\n</ol>\n","_postman_id":"429f24be-4ae1-4163-9e41-c682f7a5fe5c"},{"name":"SCIM VDS API","item":[{"name":"Account","item":[{"name":"Get Account","id":"f11de46e-5186-4cb2-a9dd-7e6e12666469","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"GET","header":[{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n","type":"text"}],"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/ACCOUNT_STORE_NAME/users/ACCOUNT_LOGON_NAME","description":"<p>Get Account API is an <strong>authenticated</strong> endpoint that gets user account details in a specific account store in EmpowerID.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.user</strong></li>\n<li>The following examples are provided for this API,<ul>\n<li>Get AD Account</li>\n<li>Get Azure AD Account</li>\n</ul>\n</li>\n</ul>\n","urlObject":{"protocol":"https","path":["v1.0","ACCOUNT_STORE_NAME","users","ACCOUNT_LOGON_NAME"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"56797100-9620-4748-8c93-ae71bc7812d1","name":"Get AD Account","originalRequest":{"method":"GET","header":[{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"}],"url":"https://linux-scim-vds.azurewebsites.net/v1.0/devdomain1/users/Vivian"},"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"userName\": \"Vivian\",\n    \"name\": {\n        \"formatted\": \"Smith, Vivian\",\n        \"familyName\": \"Smith\",\n        \"givenName\": \"Vivian\",\n        \"middleName\": \"Grace\"\n    },\n    \"displayName\": \"Smith, Vivian\",\n    \"active\": true,\n    \"emails\": [\n        {\n            \"type\": \"work\",\n            \"value\": \"vsmith@devdomain1.com\"\n        }\n    ],\n    \"phoneNumbers\": [],\n    \"ims\": [],\n    \"photos\": [],\n    \"addresses\": [\n        {\n            \"postalCode\": \"545\"\n        }\n    ],\n    \"groups\": [\n        {\n            \"type\": \"Group\",\n            \"display\": \"Delaware Assistive Care\",\n            \"value\": \"DEVDOMAIN1\\\\Delaware Assistive Care\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"Baltimore Visits Employee\",\n            \"value\": \"DEVDOMAIN1\\\\Baltimore Visits Employee\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"Brandscience Denmark Development Sec\",\n            \"value\": \"DEVDOMAIN1\\\\Brandscience Denmark Development Sec\"\n        }\n    ],\n    \"entitlements\": [],\n    \"roles\": [],\n    \"x509Certificates\": [],\n    \"enterpriseExtension\": {\n        \"employeeNumber\": \"7845451\",\n        \"organization\": \"5eb659c4-ef64-448a-8d32-8a45a70f184f\",\n        \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n    },\n    \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:User\",\n    \"schemas\": [\n        \"urn:ietf:params:scim:schemas:core:2.0:User\"\n    ],\n    \"id\": \"Vivian\",\n    \"meta\": {\n        \"resourceType\": \"User\",\n        \"created\": \"2019-03-01T17:30:22\",\n        \"lastModified\": \"2020-12-04T19:24:45.197\"\n    },\n    \"extensions\": []\n}"},{"id":"6b4262c7-cdc7-4d56-b442-442ec412a5d8","name":"Get Azure AD Account","originalRequest":{"method":"GET","header":[{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"}],"url":"https://linux-scim-vds.azurewebsites.net/v1.0/AzureGlobalIdP/users/DavidBrown@empowerid.biz"},"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"userName\": \"DavidBrown@empowerid.biz\",\n    \"name\": {\n        \"formatted\": \"David Brown\",\n        \"familyName\": \"Brown\",\n        \"givenName\": \"David\"\n    },\n    \"displayName\": \"David Brown\",\n    \"preferredLanguage\": \"\",\n    \"active\": true,\n    \"emails\": [\n        {\n            \"type\": \"work\",\n            \"value\": \"DavidBrown@empowerid.biz\"\n        }\n    ],\n    \"phoneNumbers\": [],\n    \"ims\": [],\n    \"photos\": [],\n    \"addresses\": [\n        {\n            \"streetAddress\": \"\",\n            \"locality\": \"\",\n            \"region\": \"\",\n            \"postalCode\": \"\",\n            \"country\": \"\"\n        }\n    ],\n    \"groups\": [],\n    \"entitlements\": [],\n    \"roles\": [],\n    \"x509Certificates\": [],\n    \"enterpriseExtension\": {\n        \"employeeNumber\": \"\",\n        \"organization\": \"5eb659c4-ef64-448a-8d32-8a45a70f184f\",\n        \"department\": \"Mergers and Acquisitions\",\n        \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n    },\n    \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:User\",\n    \"schemas\": [\n        \"urn:ietf:params:scim:schemas:core:2.0:User\"\n    ],\n    \"id\": \"DavidBrown@empowerid.biz\",\n    \"meta\": {\n        \"resourceType\": \"User\",\n        \"created\": \"2020-06-01T18:59:39.193\",\n        \"lastModified\": \"2020-06-01T19:19:41.587\"\n    },\n    \"extensions\": []\n}"}],"_postman_id":"f11de46e-5186-4cb2-a9dd-7e6e12666469"},{"name":"Query Account","id":"3e8b2a5e-91ae-48f8-ab73-9c6800463f9b","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"GET","header":[{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n"}],"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/ACCOUNT_STORE_NAME/users?filter=FILTER_EXPRESSION","description":"<p>Query Account API is an <strong>authenticated</strong> endpoint that queries user accounts.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li><p>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.user</strong></p>\n</li>\n<li><p>The following workflow examples are provided for this API,</p>\n<ul>\n<li>Query Account by GivenName</li>\n<li>Query Account by GivenName and FamilyName</li>\n</ul>\n</li>\n<li><p>Below table describes the SCIM to EmpowerID account attribute mapping,</p>\n<div class=\"click-to-expand-wrapper is-table-wrapper\"><table>\n<thead>\n<tr>\n<th>SCIM attribute</th>\n<th>EmpowerID attribute</th>\n</tr>\n</thead>\n<tbody>\n<tr>\n<td>name.givenname</td>\n<td>FirstName</td>\n</tr>\n<tr>\n<td>name.middlename</td>\n<td>MiddleName</td>\n</tr>\n<tr>\n<td>name.familyname</td>\n<td>LastName</td>\n</tr>\n<tr>\n<td>username</td>\n<td>Login</td>\n</tr>\n<tr>\n<td>name.honorificsuffix</td>\n<td>GenerationalSuffix</td>\n</tr>\n<tr>\n<td>active</td>\n<td>Active</td>\n</tr>\n<tr>\n<td>displayname</td>\n<td>DisplayName</td>\n</tr>\n<tr>\n<td>name.formatted</td>\n<td>DisplayName</td>\n</tr>\n<tr>\n<td>title</td>\n<td>Title</td>\n</tr>\n<tr>\n<td>password</td>\n<td>Password</td>\n</tr>\n<tr>\n<td>usertype</td>\n<td>EmployeeType</td>\n</tr>\n<tr>\n<td>locale</td>\n<td>LocaleID</td>\n</tr>\n<tr>\n<td>preferredlanguage</td>\n<td>PreferredLanguage</td>\n</tr>\n<tr>\n<td>enterpriseextension.employeenumber</td>\n<td>EmployeeId</td>\n</tr>\n<tr>\n<td>enterpriseextension.manager</td>\n<td>ManagerPersonID</td>\n</tr>\n<tr>\n<td>enterpriseextension.organizationid</td>\n<td>OrganizationID</td>\n</tr>\n<tr>\n<td>enterpriseextension.division</td>\n<td>Division</td>\n</tr>\n<tr>\n<td>enterpriseextension.department</td>\n<td>Department</td>\n</tr>\n<tr>\n<td>enterpriseextension.costcenter</td>\n<td>CostCenter</td>\n</tr>\n<tr>\n<td>email.work</td>\n<td>Email</td>\n</tr>\n<tr>\n<td>email.personalemail</td>\n<td>PersonalEmail</td>\n</tr>\n<tr>\n<td>addresses.streetaddress</td>\n<td>StreetAddress</td>\n</tr>\n<tr>\n<td>addresses.locality</td>\n<td>City</td>\n</tr>\n<tr>\n<td>addresses.region</td>\n<td>State</td>\n</tr>\n<tr>\n<td>addresses.country</td>\n<td>Country</td>\n</tr>\n<tr>\n<td>addresses.postalcode</td>\n<td>PostalCode</td>\n</tr>\n<tr>\n<td>phonenumbers.telephone</td>\n<td>Telephone</td>\n</tr>\n<tr>\n<td>phonenumbers.mobilephone</td>\n<td>MobilePhone</td>\n</tr>\n<tr>\n<td>phonenumbers.work</td>\n<td>BusinessPhone</td>\n</tr>\n<tr>\n<td>photoimage</td>\n<td>PhotoImage</td>\n</tr>\n<tr>\n<td>primaryorgroleorgzone</td>\n<td>PrimaryOrgRoleOrgZoneID</td>\n</tr>\n<tr>\n<td>orgroleorgzone</td>\n<td>OrgRoleOrgZone</td>\n</tr>\n<tr>\n<td>managementrole</td>\n<td>ManagementRole</td>\n</tr>\n<tr>\n<td>group</td>\n<td>Group</td>\n</tr>\n<tr>\n<td>externalid</td>\n<td>ExtensionAttribute10</td>\n</tr>\n</tbody>\n</table>\n</div></li>\n</ul>\n","urlObject":{"protocol":"https","path":["v1.0","ACCOUNT_STORE_NAME","users"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[{"key":"filter","value":"FILTER_EXPRESSION"}],"variable":[]}},"response":[{"id":"aaf8f076-e497-4114-a15a-06c5b6b4afc5","name":"Query Account By GivenName","originalRequest":{"method":"GET","header":[{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"}],"url":{"raw":"https://linux-scim-vds.azurewebsites.net/v1.0/devdomain1/users?filter=name.givenname eq 'vivian'","protocol":"https","host":["linux-scim-vds","azurewebsites","net"],"path":["v1.0","devdomain1","users"],"query":[{"key":"filter","value":"name.givenname eq 'vivian'"}]}},"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"totalResults\": 8,\n    \"resources\": [\n        {\n            \"userName\": \"00100273\",\n            \"name\": {\n                \"formatted\": \"Vivian Applegate\",\n                \"familyName\": \"Applegate\",\n                \"givenName\": \"Vivian\"\n            },\n            \"displayName\": \"Vivian Applegate\",\n            \"active\": true,\n            \"emails\": [\n                {\n                    \"type\": \"work\",\n                    \"value\": \"VIVIAN.APPLEGATE@MAIL.CL1.SAP.BIZ\"\n                }\n            ],\n            \"phoneNumbers\": [],\n            \"ims\": [],\n            \"photos\": [],\n            \"addresses\": [\n                {}\n            ],\n            \"groups\": [],\n            \"entitlements\": [],\n            \"roles\": [],\n            \"x509Certificates\": [],\n            \"enterpriseExtension\": {\n                \"employeeNumber\": \"00100273\",\n                \"organization\": \"5eb659c4-ef64-448a-8d32-8a45a70f184f\",\n                \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n            },\n            \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:User\",\n            \"schemas\": [\n                \"urn:ietf:params:scim:schemas:core:2.0:User\"\n            ],\n            \"id\": \"00100273\",\n            \"meta\": {\n                \"resourceType\": \"User\",\n                \"created\": \"2019-03-01T19:15:25\",\n                \"lastModified\": \"2020-12-05T11:52:43.85\"\n            },\n            \"extensions\": []\n        },\n        {\n            \"userName\": \"VA04\",\n            \"name\": {\n                \"formatted\": \"Atlas, Vivian\",\n                \"familyName\": \"Atlas\",\n                \"givenName\": \"Vivian\"\n            },\n            \"displayName\": \"Atlas, Vivian\",\n            \"active\": true,\n            \"emails\": [],\n            \"phoneNumbers\": [\n                {\n                    \"type\": \"telephone\",\n                    \"value\": \"2323232323\"\n                },\n                {\n                    \"type\": \"mobilephone\",\n                    \"value\": \"16147875764\"\n                }\n            ],\n            \"ims\": [],\n            \"photos\": [],\n            \"addresses\": [\n                {\n                    \"streetAddress\": \"4393TullerRd\",\n                    \"locality\": \"Dublin\",\n                    \"region\": \"OH\",\n                    \"postalCode\": \"43228\",\n                    \"country\": \"United States\"\n                }\n            ],\n            \"groups\": [],\n            \"entitlements\": [],\n            \"roles\": [],\n            \"x509Certificates\": [],\n            \"enterpriseExtension\": {\n                \"organization\": \"5eb659c4-ef64-448a-8d32-8a45a70f184f\",\n                \"division\": \"South West\",\n                \"department\": \"IT (London)\",\n                \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n            },\n            \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:User\",\n            \"schemas\": [\n                \"urn:ietf:params:scim:schemas:core:2.0:User\"\n            ],\n            \"id\": \"VA04\",\n            \"meta\": {\n                \"resourceType\": \"User\",\n                \"created\": \"2021-02-04T14:52:43\",\n                \"lastModified\": \"2021-02-04T14:58:38.107\"\n            },\n            \"extensions\": []\n        },\n        {\n            \"userName\": \"Pace16467\",\n            \"name\": {\n                \"formatted\": \"Vivian Pace\",\n                \"familyName\": \"Vivian\",\n                \"givenName\": \"Vivian\"\n            },\n            \"displayName\": \"Vivian Pace\",\n            \"userType\": \"Employee\",\n            \"active\": true,\n            \"emails\": [],\n            \"phoneNumbers\": [],\n            \"ims\": [],\n            \"photos\": [],\n            \"addresses\": [\n                {\n                    \"country\": \"Netherlands\"\n                }\n            ],\n            \"groups\": [],\n            \"entitlements\": [],\n            \"roles\": [],\n            \"x509Certificates\": [],\n            \"enterpriseExtension\": {\n                \"employeeNumber\": \"16467\",\n                \"organization\": \"5eb659c4-ef64-448a-8d32-8a45a70f184f\",\n                \"department\": \"CC12345\",\n                \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n            },\n            \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:User\",\n            \"schemas\": [\n                \"urn:ietf:params:scim:schemas:core:2.0:User\"\n            ],\n            \"id\": \"Pace16467\",\n            \"meta\": {\n                \"resourceType\": \"User\",\n                \"created\": \"2019-03-01T19:20:13\",\n                \"lastModified\": \"2020-12-06T01:54:48.747\"\n            },\n            \"extensions\": []\n        },\n        {\n            \"userName\": \"00054051\",\n            \"name\": {\n                \"formatted\": \"Vivian Stillezus\",\n                \"familyName\": \"Stillezus\",\n                \"givenName\": \"Vivian\"\n            },\n            \"displayName\": \"Vivian Stillezus\",\n            \"active\": true,\n            \"emails\": [],\n            \"phoneNumbers\": [],\n            \"ims\": [],\n            \"photos\": [],\n            \"addresses\": [\n                {}\n            ],\n            \"groups\": [],\n            \"entitlements\": [],\n            \"roles\": [],\n            \"x509Certificates\": [],\n            \"enterpriseExtension\": {\n                \"employeeNumber\": \"00054051\",\n                \"organization\": \"5eb659c4-ef64-448a-8d32-8a45a70f184f\",\n                \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n            },\n            \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:User\",\n            \"schemas\": [\n                \"urn:ietf:params:scim:schemas:core:2.0:User\"\n            ],\n            \"id\": \"00054051\",\n            \"meta\": {\n                \"resourceType\": \"User\",\n                \"created\": \"2019-03-01T19:18:40\",\n                \"lastModified\": \"2020-12-05T12:51:50.617\"\n            },\n            \"extensions\": []\n        },\n        {\n            \"userName\": \"vatlas\",\n            \"name\": {\n                \"formatted\": \"Atlas, Vivian\",\n                \"familyName\": \"Atlas\",\n                \"givenName\": \"Vivian\",\n                \"middleName\": \"Eugene\"\n            },\n            \"displayName\": \"Atlas, Vivian\",\n            \"active\": true,\n            \"emails\": [],\n            \"phoneNumbers\": [],\n            \"ims\": [],\n            \"photos\": [],\n            \"addresses\": [\n                {\n                    \"country\": \"Nauru\"\n                }\n            ],\n            \"groups\": [\n                {\n                    \"type\": \"Group\",\n                    \"display\": \"Brandscience Denmark Development Sec\",\n                    \"value\": \"DEVDOMAIN1\\\\Brandscience Denmark Development Sec\"\n                },\n                {\n                    \"type\": \"Group\",\n                    \"display\": \"NY Client Accounts Payable\",\n                    \"value\": \"DEVDOMAIN1\\\\NY Client Accounts Payable\"\n                }\n            ],\n            \"entitlements\": [],\n            \"roles\": [],\n            \"x509Certificates\": [],\n            \"enterpriseExtension\": {\n                \"organization\": \"5eb659c4-ef64-448a-8d32-8a45a70f184f\",\n                \"department\": \"IT\",\n                \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n            },\n            \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:User\",\n            \"schemas\": [\n                \"urn:ietf:params:scim:schemas:core:2.0:User\"\n            ],\n            \"id\": \"vatlas\",\n            \"meta\": {\n                \"resourceType\": \"User\",\n                \"created\": \"2019-03-01T17:30:09\",\n                \"lastModified\": \"2020-04-24T21:34:29.093\"\n            },\n            \"extensions\": []\n        },\n        {\n            \"userName\": \"Vincent16890\",\n            \"name\": {\n                \"formatted\": \"Vivian Vincent\",\n                \"familyName\": \"Vivian\",\n                \"givenName\": \"Vivian\"\n            },\n            \"displayName\": \"Vivian Vincent\",\n            \"userType\": \"Employee\",\n            \"active\": true,\n            \"emails\": [],\n            \"phoneNumbers\": [],\n            \"ims\": [],\n            \"photos\": [],\n            \"addresses\": [\n                {\n                    \"country\": \"Switzerland\"\n                }\n            ],\n            \"groups\": [],\n            \"entitlements\": [],\n            \"roles\": [],\n            \"x509Certificates\": [],\n            \"enterpriseExtension\": {\n                \"employeeNumber\": \"16890\",\n                \"organization\": \"5eb659c4-ef64-448a-8d32-8a45a70f184f\",\n                \"department\": \"CC12345\",\n                \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n            },\n            \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:User\",\n            \"schemas\": [\n                \"urn:ietf:params:scim:schemas:core:2.0:User\"\n            ],\n            \"id\": \"Vincent16890\",\n            \"meta\": {\n                \"resourceType\": \"User\",\n                \"created\": \"2019-03-01T19:20:58\",\n                \"lastModified\": \"2020-12-06T02:15:50.01\"\n            },\n            \"extensions\": []\n        },\n        {\n            \"userName\": \"Vivian.Williams\",\n            \"name\": {\n                \"formatted\": \"Vivian Williams\",\n                \"familyName\": \"Williams\",\n                \"givenName\": \"Vivian\"\n            },\n            \"displayName\": \"Vivian Williams\",\n            \"active\": true,\n            \"emails\": [],\n            \"phoneNumbers\": [],\n            \"ims\": [],\n            \"photos\": [],\n            \"addresses\": [\n                {}\n            ],\n            \"groups\": [],\n            \"entitlements\": [],\n            \"roles\": [],\n            \"x509Certificates\": [],\n            \"enterpriseExtension\": {\n                \"organization\": \"5eb659c4-ef64-448a-8d32-8a45a70f184f\",\n                \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n            },\n            \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:User\",\n            \"schemas\": [\n                \"urn:ietf:params:scim:schemas:core:2.0:User\"\n            ],\n            \"id\": \"Vivian.Williams\",\n            \"meta\": {\n                \"resourceType\": \"User\",\n                \"created\": \"2019-03-01T19:18:37\",\n                \"lastModified\": \"2020-12-05T12:51:50.617\"\n            },\n            \"extensions\": []\n        },\n        {\n            \"userName\": \"Vivian.Williamson\",\n            \"name\": {\n                \"formatted\": \"Vivian Williamson\",\n                \"familyName\": \"Williamson\",\n                \"givenName\": \"Vivian\"\n            },\n            \"displayName\": \"Vivian Williamson\",\n            \"active\": true,\n            \"emails\": [],\n            \"phoneNumbers\": [],\n            \"ims\": [],\n            \"photos\": [],\n            \"addresses\": [\n                {}\n            ],\n            \"groups\": [],\n            \"entitlements\": [],\n            \"roles\": [],\n            \"x509Certificates\": [],\n            \"enterpriseExtension\": {\n                \"organization\": \"5eb659c4-ef64-448a-8d32-8a45a70f184f\",\n                \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n            },\n            \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:User\",\n            \"schemas\": [\n                \"urn:ietf:params:scim:schemas:core:2.0:User\"\n            ],\n            \"id\": \"Vivian.Williamson\",\n            \"meta\": {\n                \"resourceType\": \"User\",\n                \"created\": \"2019-03-01T19:17:48\",\n                \"lastModified\": \"2020-12-05T12:35:51.86\"\n            },\n            \"extensions\": []\n        }\n    ],\n    \"startIndex\": 0,\n    \"itemsPerPage\": 8,\n    \"schemaIdentifier\": \"urn:ietf:params:scim:api:messages:2.0:ListResponse\",\n    \"schemas\": [\n        \"urn:ietf:params:scim:api:messages:2.0:ListResponse\"\n    ]\n}"},{"id":"4047cd1c-1792-4532-a7dd-99606f78b951","name":"Query Account By GivenName and FamilyName","originalRequest":{"method":"GET","header":[{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"}],"url":{"raw":"https://linux-scim-vds.azurewebsites.net/v1.0/devdomain1/users?filter=name.givenname eq 'vivian' and name.familyname eq 'atlas'","protocol":"https","host":["linux-scim-vds","azurewebsites","net"],"path":["v1.0","devdomain1","users"],"query":[{"key":"filter","value":"name.givenname eq 'vivian' and name.familyname eq 'atlas'"}]}},"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"totalResults\": 2,\n    \"resources\": [\n        {\n            \"userName\": \"VA04\",\n            \"name\": {\n                \"formatted\": \"Atlas, Vivian\",\n                \"familyName\": \"Atlas\",\n                \"givenName\": \"Vivian\"\n            },\n            \"displayName\": \"Atlas, Vivian\",\n            \"active\": true,\n            \"emails\": [],\n            \"phoneNumbers\": [\n                {\n                    \"type\": \"telephone\",\n                    \"value\": \"2323232323\"\n                },\n                {\n                    \"type\": \"mobilephone\",\n                    \"value\": \"16147875764\"\n                }\n            ],\n            \"ims\": [],\n            \"photos\": [],\n            \"addresses\": [\n                {\n                    \"streetAddress\": \"4393TullerRd\",\n                    \"locality\": \"Dublin\",\n                    \"region\": \"OH\",\n                    \"postalCode\": \"43228\",\n                    \"country\": \"United States\"\n                }\n            ],\n            \"groups\": [],\n            \"entitlements\": [],\n            \"roles\": [],\n            \"x509Certificates\": [],\n            \"enterpriseExtension\": {\n                \"organization\": \"5eb659c4-ef64-448a-8d32-8a45a70f184f\",\n                \"division\": \"South West\",\n                \"department\": \"IT (London)\",\n                \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n            },\n            \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:User\",\n            \"schemas\": [\n                \"urn:ietf:params:scim:schemas:core:2.0:User\"\n            ],\n            \"id\": \"VA04\",\n            \"meta\": {\n                \"resourceType\": \"User\",\n                \"created\": \"2021-02-04T14:52:43\",\n                \"lastModified\": \"2021-02-04T14:58:38.107\"\n            },\n            \"extensions\": []\n        },\n        {\n            \"userName\": \"vatlas\",\n            \"name\": {\n                \"formatted\": \"Atlas, Vivian\",\n                \"familyName\": \"Atlas\",\n                \"givenName\": \"Vivian\",\n                \"middleName\": \"Eugene\"\n            },\n            \"displayName\": \"Atlas, Vivian\",\n            \"active\": true,\n            \"emails\": [],\n            \"phoneNumbers\": [],\n            \"ims\": [],\n            \"photos\": [],\n            \"addresses\": [\n                {\n                    \"country\": \"Nauru\"\n                }\n            ],\n            \"groups\": [\n                {\n                    \"type\": \"Group\",\n                    \"display\": \"Brandscience Denmark Development Sec\",\n                    \"value\": \"DEVDOMAIN1\\\\Brandscience Denmark Development Sec\"\n                },\n                {\n                    \"type\": \"Group\",\n                    \"display\": \"NY Client Accounts Payable\",\n                    \"value\": \"DEVDOMAIN1\\\\NY Client Accounts Payable\"\n                }\n            ],\n            \"entitlements\": [],\n            \"roles\": [],\n            \"x509Certificates\": [],\n            \"enterpriseExtension\": {\n                \"organization\": \"5eb659c4-ef64-448a-8d32-8a45a70f184f\",\n                \"department\": \"IT\",\n                \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n            },\n            \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:User\",\n            \"schemas\": [\n                \"urn:ietf:params:scim:schemas:core:2.0:User\"\n            ],\n            \"id\": \"vatlas\",\n            \"meta\": {\n                \"resourceType\": \"User\",\n                \"created\": \"2019-03-01T17:30:09\",\n                \"lastModified\": \"2020-04-24T21:34:29.093\"\n            },\n            \"extensions\": []\n        }\n    ],\n    \"startIndex\": 0,\n    \"itemsPerPage\": 2,\n    \"schemaIdentifier\": \"urn:ietf:params:scim:api:messages:2.0:ListResponse\",\n    \"schemas\": [\n        \"urn:ietf:params:scim:api:messages:2.0:ListResponse\"\n    ]\n}"}],"_postman_id":"3e8b2a5e-91ae-48f8-ab73-9c6800463f9b"},{"name":"Create Account","id":"40c0f33d-200d-4743-b9fd-7dced2cf177e","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n"}],"body":{"mode":"raw","raw":"{\n    \"name\": {\n        \"familyName\" : \"<FAMILY_NAME>\",\n                \"middleName\":\"<MIDDLE_NAME>\",\n                \"givenName\" : \"<GIVEN_NAME>\",\n                \"honorificSuffix\":\"<SUFFIC>\"\n    },\n    \"username\":\"<USERNAME>\",\n                \"title\":\"<TITLE>\",\n                \"usertype\":\"<USER_TYPE>\",\n                \"preferredlanguage\":\"<LANGUAGE>\",\n                \"active\":\"<TRUE_OR_FALSE>\",\n    \"locale\" : \"<LOCALE>\",\n    \"emails\": [\n        {\n            \"type\": \"work\", \n            \"value\": \"<EMAIL_ADDRESS>\"\n        },\n        {\n            \"type\": \"personalemail\",\n            \"value\": \"<EMAIL_ADDRESS>\"\n        }\n    ],\n    \"phoneNumbers\": [\n    \t{\n          \"type\":\"telephone\",\n          \"value\":\"<TELEPHONE>\"\n        },\n        {\n          \"type\":\"mobilephone\",\n          \"value\":\"<MOBILEPHONE>\"\n        },\n        {\n          \"type\":\"work\",\n          \"value\":\"<WORKPHONE>\"\n        }\n    ],\n    \"addresses\": [\n        {\n            \"type\": \"work\",\n            \"streetaddress\" : \"<STREET_ADDRESS>\",\n                \"locality\" :\"<CITY>\",\n                \"region\" :\"<STATE>\",\n                \"country\" :\"<COUNTRY>\",\n                \"postalcode\": \"<POSTAL_CODE>\"\n        \t           \n        } \n    ],\n    \"groups\": [\n        {\n            \"type\": \"<GROUP_TYPE>\",\n            \"display\": \"<GROUP_DISPLAY_NAME>\",\n            \"value\": \"<GROUP_LOGON_NAME>\"\n        }\n    ],\n    \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\": {\n    \t\"employeeNumber\" : \"<EMPLOYEE_NUMBER>\",\n        \"costCenter\" : \"<COST_CENTER>\", \n        \"division\" : \"<DIVISION>\", \n        \"organization\": \"<ORGANIZATION>\",\n        \"department\": \"<DEPARTMENT>\",\n        \"manager\":{\n            \"displayName\":\"<MANAGER_DISPLAY_NAME>\",\n            \"value\":\"<MANAGER_PERSON_LOGIN>\"\n        },\n        \"SchemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n    }\n}"},"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/ACCOUNT_STORE_NAME/users","description":"<p>Create Account API is an <strong>authenticated</strong> endpoint that creates a new user account in a specific account store in EmpowerID.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.user</strong></li>\n</ul>\n","urlObject":{"protocol":"https","path":["v1.0","ACCOUNT_STORE_NAME","users"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"fd16d2e8-43d3-4c80-8168-928339cc6736","name":"Create AD Account","originalRequest":{"method":"POST","header":[{"key":"Content-Type","name":"Content-Type","value":"application/json","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"}],"body":{"mode":"raw","raw":"{\n    \"name\": {\n        \"familyName\": \"Wayne\",\n        \"givenName\": \"Martha\",\n        \"middleName\": \"Lynn\",\n        \"honorificSuffix\": \"Mrs.\"\n    },\n    \"userName\" : \"marthawayne\",\n    \"title\" : \"QA\", \n    \"userType\": \"ABS\",\n    \"preferredLanguage\": \"English\",\n    \"locale\" : \"en-US\",\n    \"active\": true,\n    \"emails\": [\n        {\n            \"type\": \"work\", \n            \"value\": \"marthawayne@workmail.com\"\n        },\n        {\n            \"type\": \"personalemail\",\n            \"value\": \"marthawayne@homemail.com\"\n        }\n    ],\n    \"phoneNumbers\": [\n    \t{\n          \"type\":\"telephone\",\n          \"value\":\"5131234567\"\n        },\n        {\n          \"type\":\"mobilephone\",\n          \"value\":\"5131234567\"\n        },\n        {\n          \"type\":\"work\",\n          \"value\":\"5131234567\"\n        }\n    ],\n    \"addresses\": [\n        {\n        \t\"type\": \"work\",\n            \"locality\": \"Dublin\",\n            \"region\": \"Ohio\",\n            \"postalCode\":\"43017\",\n            \"country\":\"Us\",\n            \"streetAddress\":\"4353 Tuller Road\"\n        } \n    ],\n    \"groups\": [\n        {\n            \"type\": \"Group\",\n            \"display\": \"Temporary Role in Temporary Location\",\n            \"value\": \"Backup Operators\"\n        }\n    ],\n    \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\": {\n    \t\"employeeNumber\" : \"ss\",\n        \"costCenter\" : \"test\", \n        \"division\" : \"test\", \n        \"organization\": \"5EB659C4-EF64-448A-8D32-8A45A70F184F\",\n        \"department\": \"Development\",\n        \"manager\":{\n            \"displayName\":\"moctar\",\n            \"value\":\"SM_395c162094a54a619\"\n        },\n        \"SchemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n    }\n}","options":{"raw":{"language":"json"}}},"url":"https://linux-scim-vds.azurewebsites.net/v1.0/devdomain1/Users"},"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"userName\": \"marthawayne\",\n    \"name\": {\n        \"formatted\": \"Martha Wayne\",\n        \"familyName\": \"Wayne\",\n        \"givenName\": \"Martha\",\n        \"middleName\": \"Lynn\",\n        \"honorificSuffix\": \"Mrs.\"\n    },\n    \"displayName\": \"Martha Wayne\",\n    \"title\": \"QA\",\n    \"userType\": \"ABS\",\n    \"preferredLanguage\": \"English\",\n    \"active\": true,\n    \"emails\": [\n        {\n            \"type\": \"work\",\n            \"value\": \"marthawayne@workmail.com\"\n        }\n    ],\n    \"phoneNumbers\": [\n        {\n            \"type\": \"telephone\",\n            \"value\": \"5131234567\"\n        },\n        {\n            \"type\": \"mobilephone\",\n            \"value\": \"5131234567\"\n        },\n        {\n            \"type\": \"work\",\n            \"value\": \"5131234567\"\n        }\n    ],\n    \"ims\": [],\n    \"photos\": [],\n    \"addresses\": [\n        {\n            \"streetAddress\": \"4353 Tuller Road\",\n            \"locality\": \"Dublin\",\n            \"region\": \"Ohio\",\n            \"postalCode\": \"43017\",\n            \"country\": \"Us\"\n        }\n    ],\n    \"groups\": [],\n    \"entitlements\": [],\n    \"roles\": [],\n    \"x509Certificates\": [],\n    \"enterpriseExtension\": {\n        \"organization\": \"5eb659c4-ef64-448a-8d32-8a45a70f184f\",\n        \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n    },\n    \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:User\",\n    \"schemas\": [\n        \"urn:ietf:params:scim:schemas:core:2.0:User\"\n    ],\n    \"id\": \"marthawayne\",\n    \"meta\": {\n        \"resourceType\": \"User\",\n        \"created\": \"2021-08-03T22:10:16.0559054Z\",\n        \"lastModified\": \"2021-08-03T22:10:16.0559054Z\"\n    },\n    \"extensions\": []\n}"}],"_postman_id":"40c0f33d-200d-4743-b9fd-7dced2cf177e"},{"name":"Update Account","id":"121be7f9-7d9a-45e7-a8d0-3c6ccdcbadb0","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"PATCH","header":[{"key":"Content-Type","value":"application/json"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n"}],"body":{"mode":"raw","raw":"{\r\n    \"schemas\": \"urn:ietf:Params:Scim:api:messages:2.0:PatchOp\",\r\n    \"Operations\": [\r\n        {\r\n            \"op\": \"add\",\r\n            \"path\": \"name\",\r\n            \"value\":{\r\n                \"familyName\" : \"<FAMILY_NAME>\",\r\n                \"middleName\":\"<MIDDLE_NAME>\",\r\n                \"givenName\" : \"<GIVEN_NAME>\",\r\n                \"honorificSuffix\":\"<SUFFIC>\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"replace\",\r\n            \"path\": \"user\",\r\n            \"value\": {\r\n                \"username\":\"<USERNAME>\",\r\n                \"title\":\"<TITLE>\",\r\n                \"usertype\":\"<USER_TYPE>\",\r\n                \"preferredlanguage\":\"<LANGUAGE>\",\r\n                \"active\":\"<TRUE_OR_FALSE>\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"replace\",\r\n            \"path\": \"enterpriseextension\",\r\n            \"value\": {\r\n                \"employeenumber\":\"<EMPLOYEE_NUMBER>\",\r\n                \"manager\":\"<MANAGER_LOGIN>\",\r\n                \"division\":\"<DIVISION>\",\r\n                \"department\":\"<DEPARTMENT>\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"replace\",\r\n            \"path\": \"email\",\r\n            \"value\":{\r\n                \"work\" : \"<EMAIL_ADDRESS>\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"replace\",\r\n            \"path\": \"addresses\",\r\n            \"value\":{\r\n                \"streetaddress\" : \"<STREET_ADDRESS>\",\r\n                \"locality\" :\"<CITY>\",\r\n                \"region\" :\"<STATE>\",\r\n                \"country\" :\"<COUNTRY>\",\r\n                \"postalcode\": \"<POSTAL_CODE>\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"replace\",\r\n            \"path\": \"phoneNumbers\",\r\n            \"value\":{\r\n                \"telephone\" : \"<TELEPHONE>\",\r\n                \"mobilephone\" : \"<MOBILEPHONE>\",\r\n                \"work\":\"<WORKPHONE>\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"remove\",\r\n            \"path\": \"group\",\r\n            \"value\": [\"<GROUP_1>\",\"<GROUP_2>\",\"<GROUP_3>\"]\r\n        }\r\n    ]\r\n} "},"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/ACCOUNT_STORE_NAME/users/ACCOUNT_LOGON_NAME","description":"<p>Update Account API is an <strong>authenticated</strong> endpoint that updates user accounts in a specific account store in EmpowerID.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.user</strong></li>\n</ul>\n","urlObject":{"protocol":"https","path":["v1.0","ACCOUNT_STORE_NAME","users","ACCOUNT_LOGON_NAME"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"2ae614ca-4e59-4392-9c63-524bbf11e5bf","name":"Update AD Account","originalRequest":{"method":"GET","header":[{"key":"Content-Type","name":"Content-Type","value":"application/json","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"}],"body":{"mode":"raw","raw":"{\r\n    \"schemas\": \"urn:ietf:Params:Scim:api:messages:2.0:PatchOp\",\r\n    \"Operations\": [\r\n        {\r\n            \"op\": \"add\",\r\n            \"path\": \"name\",\r\n            \"value\":{\r\n                \"familyName\" : \"Iron\",\r\n                \"middleName\":\"S\",\r\n                \"givenName\" : \"man\",\r\n                \"honorificSuffix\":\"Mr.\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"replace\",\r\n            \"path\": \"user\",\r\n            \"value\": {\r\n                \"username\":\"IronManSuper101\",\r\n                \"title\":\"AQ\",\r\n                \"usertype\":\"bsa\",\r\n                \"preferredlanguage\":\"Kroean\",\r\n                \"active\":false\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"replace\",\r\n            \"path\": \"enterpriseextension\",\r\n            \"value\": {\r\n                \"employeenumber\":\"bb\",\r\n                \"manager\":\"SM_395c162094a54a619\",\r\n                \"division\":\"test\",\r\n                \"department\":\"qs\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"replace\",\r\n            \"path\": \"email\",\r\n            \"value\":{\r\n                \"work\" : \"barrywest@empowerid.com\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"replace\",\r\n            \"path\": \"addresses\",\r\n            \"value\":{\r\n                \"streetaddress\" : \"5499 Crosshaven drive\",\r\n                \"locality\" :\"Dublin\",\r\n                \"region\" :\"LA\",\r\n                \"country\" :\"US\",\r\n                \"postalcode\": \"48102\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"replace\",\r\n            \"path\": \"phoneNumbers\",\r\n            \"value\":{\r\n                \"telephone\" : \"5135479938\",\r\n                \"mobilephone\" : \"1234567654\",\r\n                \"work\":\"123434567\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"remove\",\r\n            \"path\": \"group\",\r\n            \"value\": [\"Airqq33\",\"Backup Operators\",\"EIDAruba-ww\"]\r\n        }\r\n    ]\r\n} ","options":{"raw":{"language":"json"}}},"url":"https://linux-scim-vds.azurewebsites.net/v1.0/devdomain1/users/TestUser009"},"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"userName\": \"IronManSuper101\",\n    \"name\": {\n        \"formatted\": \"TestUser009\",\n        \"familyName\": \"Iron\",\n        \"givenName\": \"man\",\n        \"middleName\": \"S\",\n        \"honorificSuffix\": \"Mr.\"\n    },\n    \"displayName\": \"TestUser009\",\n    \"title\": \"AQ\",\n    \"userType\": \"bsa\",\n    \"preferredLanguage\": \"Kroean\",\n    \"active\": false,\n    \"emails\": [\n        {\n            \"type\": \"work\",\n            \"value\": \"barrywest@empowerid.com\"\n        }\n    ],\n    \"phoneNumbers\": [\n        {\n            \"type\": \"telephone\",\n            \"value\": \"5135479938\"\n        },\n        {\n            \"type\": \"mobilephone\",\n            \"value\": \"1234567654\"\n        },\n        {\n            \"type\": \"work\",\n            \"value\": \"123434567\"\n        }\n    ],\n    \"ims\": [],\n    \"photos\": [],\n    \"addresses\": [\n        {\n            \"streetAddress\": \"5499 Crosshaven drive\",\n            \"locality\": \"Dublin\",\n            \"region\": \"LA\",\n            \"postalCode\": \"48102\",\n            \"country\": \"US\"\n        }\n    ],\n    \"groups\": [\n        {\n            \"type\": \"Group\",\n            \"display\": \"Brandscience Denmark Development Sec\",\n            \"value\": \"DEVDOMAIN1\\\\Brandscience Denmark Development Sec\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"MailArubaww\",\n            \"value\": \"DEVDOMAIN1\\\\MailArubaww01\"\n        }\n    ],\n    \"entitlements\": [],\n    \"roles\": [],\n    \"x509Certificates\": [],\n    \"enterpriseExtension\": {\n        \"organization\": \"5eb659c4-ef64-448a-8d32-8a45a70f184f\",\n        \"division\": \"test\",\n        \"department\": \"qs\",\n        \"manager\": {\n            \"value\": \"SM_395c162094a54a619\",\n            \"displayName\": \"Discovery Search Mailbox\"\n        },\n        \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n    },\n    \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:User\",\n    \"schemas\": [\n        \"urn:ietf:params:scim:schemas:core:2.0:User\"\n    ],\n    \"id\": \"IronManSuper101\",\n    \"meta\": {\n        \"resourceType\": \"User\",\n        \"created\": \"2019-03-01T17:30:08\",\n        \"lastModified\": \"2019-11-20T16:37:04.2\"\n    },\n    \"extensions\": []\n}"}],"_postman_id":"121be7f9-7d9a-45e7-a8d0-3c6ccdcbadb0"},{"name":"Delete Account","id":"7a04cfd3-4331-4056-a88e-c9c975e474f4","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"DELETE","header":[{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n"}],"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/ACCOUNT_STORE_NAME/users/ACCOUNT_LOGON_NAME","description":"<p>Delete Account API is an <strong>authenticated</strong> endpoint that deletes an existing user account in a specific account store in EmpowerID. For accounts in some account stores, like Salesforce, the account will not be deleted since those accounts only can be disabled.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.user</strong></li>\n</ul>\n","urlObject":{"protocol":"https","path":["v1.0","ACCOUNT_STORE_NAME","users","ACCOUNT_LOGON_NAME"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"e0ca2a1f-2276-4f93-a4ab-fb9af5b66b01","name":"Delete AD Account","originalRequest":{"method":"DELETE","header":[{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"}],"url":"https://linux-scim-vds.azurewebsites.net/v1.0/devdomain1/Users/Thomaswayne"},"status":"No Content","code":204,"_postman_previewlanguage":null,"header":null,"cookie":[],"responseTime":null,"body":null}],"_postman_id":"7a04cfd3-4331-4056-a88e-c9c975e474f4"}],"id":"233a32ac-6683-4833-84eb-887ff19a6b10","description":"<p>Account APIs allow querying and managing of accounts in systems connected to EmpowerID (e.g. Azure AD, AD, SAP, SalesForce, ServiceNow, etc.)</p>\n","_postman_id":"233a32ac-6683-4833-84eb-887ff19a6b10"},{"name":"People","item":[{"name":"Get Person","id":"e320ee03-c2f4-4e99-98aa-2d7b8799e4a4","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"method":"GET","header":[{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n"}],"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/empowerID/users/PERSON_LOGIN","description":"<p>Get Person API is an <strong>authenticated</strong> endpoint that gets person details from the EmpowerID identity warehouse.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.user</strong></li>\n</ul>\n","urlObject":{"protocol":"https","path":["v1.0","empowerID","users","PERSON_LOGIN"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"6e17d96f-19b6-4163-9a43-038bddd746c3","name":"Get Person","originalRequest":{"method":"GET","header":[{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"}],"url":"https://linux-scim-vds.azurewebsites.net/v1.0/empowerID/users/Vivian.Ding"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"userName\": \"Vivian.Ding\",\n    \"name\": {\n        \"formatted\": \"Vivian Ding\",\n        \"familyName\": \"Ding\",\n        \"givenName\": \"Vivian\"\n    },\n    \"displayName\": \"Vivian Ding\",\n    \"title\": \"QA\",\n    \"active\": true,\n    \"emails\": [\n        {\n            \"type\": \"work\",\n            \"value\": \"vivian.ding@omd.com\"\n        }\n    ],\n    \"phoneNumbers\": [],\n    \"ims\": [],\n    \"photos\": [],\n    \"addresses\": [\n        {\n            \"streetAddress\": \"11F,EcoCityNo.1788WestNanjingRoadShanghaiChina,200040\",\n            \"locality\": \"Shanghai\",\n            \"region\": \"Shanghai\",\n            \"postalCode\": \"200040\",\n            \"country\": \"China\"\n        }\n    ],\n    \"groups\": [\n        {\n            \"type\": \"PrimaryOrgRoleOrgZone\",\n            \"display\": \"Temporary Role in Temporary Location\",\n            \"value\": \"Temporary Role in Temporary Location\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"testGroup010\",\n            \"value\": \"EidLabAzure\\\\017dc26f-b764-4e52-a604-09daab1c2868\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID110\",\n            \"value\": \"EidLabAzure\\\\01b6f1e1-65f6-4b19-94ef-a7679beaa181\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID105\",\n            \"value\": \"EidLabAzure\\\\083f05b1-236b-4587-afd9-486a4288a2d7\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID14\",\n            \"value\": \"EidLabAzure\\\\11bfa819-6cc8-4304-8e29-3174aff7b353\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID116\",\n            \"value\": \"EidLabAzure\\\\2016579d-e6f2-450e-914a-3c4544222f35\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID103\",\n            \"value\": \"EidLabAzure\\\\24f71833-e8f5-454d-9027-baab39118c37\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID266\",\n            \"value\": \"EidLabAzure\\\\2ea64fe3-5ecf-4a53-8a78-a17b1e225eb9\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupSecurityEID1219\",\n            \"value\": \"EidLabAzure\\\\402c9da4-1cfb-417a-bf9f-b07fd20e0e8f\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID11\",\n            \"value\": \"EidLabAzure\\\\42795e9d-6d47-47e0-b7f4-aa8382aa308e\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID104\",\n            \"value\": \"EidLabAzure\\\\431462e3-1ead-4e55-bed2-ba7a86fe14b2\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"AllUsers\",\n            \"value\": \"EidLabAzure\\\\44bf8709-c37f-4e72-9faf-b754b19ee8e2\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID117\",\n            \"value\": \"EidLabAzure\\\\4a8005d5-5918-4881-8a88-efc0a519f1da\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupFromEID\",\n            \"value\": \"EidLabAzure\\\\4e626265-3278-479e-a6b0-4419ed2babf1\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID124\",\n            \"value\": \"EidLabAzure\\\\50d4bb5e-c51b-4c6b-860a-5c2d37927f4f\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"testGroupTypeUnifed\",\n            \"value\": \"EidLabAzure\\\\58c52dbf-0dc4-49fc-b15f-52a4cff3623c\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID114\",\n            \"value\": \"EidLabAzure\\\\643dec32-a7b4-4d41-829e-f8b9c7958c35\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"LIC:O365E3Full\",\n            \"value\": \"EidLabAzure\\\\6b8f095e-7a48-4568-a039-a8fa16556311\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupConsole3\",\n            \"value\": \"EidLabAzure\\\\6e90a48a-52bf-49a8-9c5d-9ce73a009440\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID1001\",\n            \"value\": \"EidLabAzure\\\\754043e5-b53c-41e1-8da4-3fdd673af444\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID10\",\n            \"value\": \"EidLabAzure\\\\7a2941ee-39b6-4886-83f6-6511bbeafbe5\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"testGroup009\",\n            \"value\": \"EidLabAzure\\\\82f6d90d-3664-4064-b1f7-94e072e7e3fb\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"SecurityGroup1\",\n            \"value\": \"EidLabAzure\\\\854edf8f-50d7-4306-b5e1-fc579f637a2c\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupConsole\",\n            \"value\": \"EidLabAzure\\\\8905240c-f19a-4306-a078-82c0df772f01\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupSecurityEID1047\",\n            \"value\": \"EidLabAzure\\\\8b2a57d8-3113-40c6-85e9-fb8a85cf2fed\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID100\",\n            \"value\": \"EidLabAzure\\\\9448c901-f6d6-4d5c-96b0-3c4e4506df1d\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID109\",\n            \"value\": \"EidLabAzure\\\\961dd7eb-541a-4beb-adde-4fa7092eca36\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID107\",\n            \"value\": \"EidLabAzure\\\\a25021a6-bc45-4a8c-adbc-167749d5081a\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"AirShanghai\",\n            \"value\": \"DEVDOMAIN1\\\\AirShanghai\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID101\",\n            \"value\": \"EidLabAzure\\\\b2e02d92-c1a1-4afb-81c6-e8cf918a2865\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID108\",\n            \"value\": \"EidLabAzure\\\\b41f03a9-5677-449f-9b9f-c92756dc7d21\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"testUnifiedCreate02\",\n            \"value\": \"EidLabAzure\\\\b5a96d30-bfc4-4793-a6f7-87ad57469279\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID106\",\n            \"value\": \"EidLabAzure\\\\b6791bd6-1029-48d6-ad02-ca090110133f\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"Brandscience Denmark Development Sec\",\n            \"value\": \"DEVDOMAIN1\\\\Brandscience Denmark Development Sec\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID1000\",\n            \"value\": \"EidLabAzure\\\\c87581e4-2bd7-4e2b-a4ed-cf685dff488d\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID102\",\n            \"value\": \"EidLabAzure\\\\c9d412f9-2e3d-4317-b9e1-72325f52076e\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID128\",\n            \"value\": \"EidLabAzure\\\\ccfddbaf-765b-47c8-b5cb-2078b5d8d3b1\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"CN-NO QQ\",\n            \"value\": \"DEVDOMAIN1\\\\CN-NO QQ\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"CN-SH-OMD\",\n            \"value\": \"DEVDOMAIN1\\\\CN-SH-OMD\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID142\",\n            \"value\": \"EidLabAzure\\\\d1a7ea77-1860-48ad-b73a-9780b42933d6\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID1\",\n            \"value\": \"EidLabAzure\\\\d5698d8e-037d-4e22-9a0e-a4cd81ea007f\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID113\",\n            \"value\": \"EidLabAzure\\\\da7135b4-0e7c-4303-9df0-d14252557435\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID111\",\n            \"value\": \"EidLabAzure\\\\e55edb11-1b00-401b-a109-b1fc9a4bb90e\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID112\",\n            \"value\": \"EidLabAzure\\\\e7c77d68-bded-4962-9503-a9884fbe90fb\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"Empower Test DL\",\n            \"value\": \"DEVDOMAIN1\\\\Empower Test DL\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID115\",\n            \"value\": \"EidLabAzure\\\\f4aeb9a5-682a-4644-ac4b-e5a4b2ff4d02\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"MailChinaShanghai\",\n            \"value\": \"DEVDOMAIN1\\\\MailChinaShanghai\"\n        },\n        {\n            \"type\": \"OrgRoleOrgZone\",\n            \"display\": \"Temporary Role in Temporary Location\",\n            \"value\": \"Temporary Role in Temporary Location\"\n        },\n        {\n            \"type\": \"ManagementRole\",\n            \"display\": \"ACT-Person-CanUseInAssignments-All\",\n            \"value\": \"ACT-Person-CanUseInAssignments-All\"\n        },\n        {\n            \"type\": \"ManagementRole\",\n            \"display\": \"ACT-Person-Reviewer-DirectReports\",\n            \"value\": \"ACT-Person-Reviewer-DirectReports\"\n        },\n        {\n            \"type\": \"ManagementRole\",\n            \"display\": \"VIS-Person-Self\",\n            \"value\": \"VIS-Person-Self\"\n        }\n    ],\n    \"entitlements\": [],\n    \"roles\": [],\n    \"x509Certificates\": [],\n    \"enterpriseExtension\": {\n        \"organization\": \"5eb659c4-ef64-448a-8d32-8a45a70f184f\",\n        \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n    },\n    \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:User\",\n    \"schemas\": [\n        \"urn:ietf:params:scim:schemas:core:2.0:User\"\n    ],\n    \"id\": \"Vivian.Ding\",\n    \"externalId\": \"Test\",\n    \"meta\": {\n        \"resourceType\": \"User\",\n        \"created\": \"2017-06-13T19:24:40\",\n        \"lastModified\": \"2020-09-02T06:35:05.19\"\n    },\n    \"extensions\": []\n}"}],"_postman_id":"e320ee03-c2f4-4e99-98aa-2d7b8799e4a4"},{"name":"Query Person","id":"fbd81627-3fc3-4406-9bad-5eceff598fec","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"method":"GET","header":[{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n"}],"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/empowerID/users?filter=FILTER_EXPRESSION","description":"<p>Query Person API is an <strong>authenticated</strong> endpoint that queries person objects.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li><p>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.user</strong></p>\n</li>\n<li><p>Below table describes the SCIM to EmpowerID person attribute mapping,</p>\n<div class=\"click-to-expand-wrapper is-table-wrapper\"><table>\n<thead>\n<tr>\n<th>SCIM attribute</th>\n<th>EmpowerID attribute</th>\n</tr>\n</thead>\n<tbody>\n<tr>\n<td>name.givenname</td>\n<td>FirstName</td>\n</tr>\n<tr>\n<td>name.middlename</td>\n<td>MiddleName</td>\n</tr>\n<tr>\n<td>name.familyname</td>\n<td>LastName</td>\n</tr>\n<tr>\n<td>username</td>\n<td>Login</td>\n</tr>\n<tr>\n<td>name.honorificsuffix</td>\n<td>GenerationalSuffix</td>\n</tr>\n<tr>\n<td>active</td>\n<td>Active</td>\n</tr>\n<tr>\n<td>displayname</td>\n<td>DisplayName</td>\n</tr>\n<tr>\n<td>name.formatted</td>\n<td>DisplayName</td>\n</tr>\n<tr>\n<td>title</td>\n<td>Title</td>\n</tr>\n<tr>\n<td>password</td>\n<td>Password</td>\n</tr>\n<tr>\n<td>usertype</td>\n<td>EmployeeType</td>\n</tr>\n<tr>\n<td>locale</td>\n<td>LocaleID</td>\n</tr>\n<tr>\n<td>preferredlanguage</td>\n<td>PreferredLanguage</td>\n</tr>\n<tr>\n<td>enterpriseextension.employeenumber</td>\n<td>EmployeeId</td>\n</tr>\n<tr>\n<td>enterpriseextension.manager</td>\n<td>ManagerPersonID</td>\n</tr>\n<tr>\n<td>enterpriseextension.organizationid</td>\n<td>OrganizationID</td>\n</tr>\n<tr>\n<td>enterpriseextension.division</td>\n<td>Division</td>\n</tr>\n<tr>\n<td>enterpriseextension.department</td>\n<td>Department</td>\n</tr>\n<tr>\n<td>enterpriseextension.costcenter</td>\n<td>CostCenter</td>\n</tr>\n<tr>\n<td>email.work</td>\n<td>Email</td>\n</tr>\n<tr>\n<td>email.personalemail</td>\n<td>PersonalEmail</td>\n</tr>\n<tr>\n<td>addresses.streetaddress</td>\n<td>StreetAddress</td>\n</tr>\n<tr>\n<td>addresses.locality</td>\n<td>City</td>\n</tr>\n<tr>\n<td>addresses.region</td>\n<td>State</td>\n</tr>\n<tr>\n<td>addresses.country</td>\n<td>Country</td>\n</tr>\n<tr>\n<td>addresses.postalcode</td>\n<td>PostalCode</td>\n</tr>\n<tr>\n<td>phonenumbers.telephone</td>\n<td>Telephone</td>\n</tr>\n<tr>\n<td>phonenumbers.mobilephone</td>\n<td>MobilePhone</td>\n</tr>\n<tr>\n<td>phonenumbers.work</td>\n<td>BusinessPhone</td>\n</tr>\n<tr>\n<td>photoimage</td>\n<td>PhotoImage</td>\n</tr>\n<tr>\n<td>primaryorgroleorgzone</td>\n<td>PrimaryOrgRoleOrgZoneID</td>\n</tr>\n<tr>\n<td>orgroleorgzone</td>\n<td>OrgRoleOrgZone</td>\n</tr>\n<tr>\n<td>managementrole</td>\n<td>ManagementRole</td>\n</tr>\n<tr>\n<td>group</td>\n<td>Group</td>\n</tr>\n<tr>\n<td>externalid</td>\n<td>ExtensionAttribute10</td>\n</tr>\n</tbody>\n</table>\n</div></li>\n</ul>\n","urlObject":{"protocol":"https","path":["v1.0","empowerID","users"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[{"key":"filter","value":"FILTER_EXPRESSION"}],"variable":[]}},"response":[{"id":"f444736c-c788-4a91-9364-12c51d881b42","name":"Query Person","originalRequest":{"method":"GET","header":[{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"}],"url":{"raw":"https://linux-scim-vds.azurewebsites.net/v1.0/empowerID/users?filter=name.givenname eq 'vivian'","protocol":"https","host":["linux-scim-vds","azurewebsites","net"],"path":["v1.0","empowerID","users"],"query":[{"key":"filter","value":"name.givenname eq 'vivian'"}]}},"_postman_previewlanguage":null,"header":null,"cookie":[],"responseTime":null,"body":null}],"_postman_id":"fbd81627-3fc3-4406-9bad-5eceff598fec"},{"name":"Create Person","id":"3d38c7d8-c2a4-4ca7-a3a3-d7992c0f4138","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n"}],"body":{"mode":"raw","raw":"{\n    \"name\": {\n        \"familyName\" : \"<FAMILY_NAME>\",\n                \"middleName\":\"<MIDDLE_NAME>\",\n                \"givenName\" : \"<GIVEN_NAME>\",\n                \"honorificSuffix\":\"<SUFFIX>\"\n    },\n    \"username\":\"<USERNAME>\",\n                \"title\":\"<TITLE>\",\n                \"usertype\":\"<USER_TYPE>\",\n                \"preferredlanguage\":\"<LANGUAGE>\",\n                \"active\":\"<TRUE_OR_FALSE>\",\n    \"locale\" : \"<LOCALE>\",\n    \"emails\": [\n        {\n            \"type\": \"work\", \n            \"value\": \"<EMAIL_ADDRESS>\"\n        },\n        {\n            \"type\": \"personalemail\",\n            \"value\": \"<EMAIL_ADDRESS>\"\n        }\n    ],\n    \"phoneNumbers\": [\n    \t{\n          \"type\":\"telephone\",\n          \"value\":\"<TELEPHONE>\"\n        },\n        {\n          \"type\":\"mobilephone\",\n          \"value\":\"<MOBILEPHONE>\"\n        },\n        {\n          \"type\":\"work\",\n          \"value\":\"<WORKPHONE>\"\n        }\n    ],\n    \"addresses\": [\n        {\n            \"type\": \"work\",\n            \"streetaddress\" : \"<STREET_ADDRESS>\",\n                \"locality\" :\"<CITY>\",\n                \"region\" :\"<STATE>\",\n                \"country\" :\"<COUNTRY>\",\n                \"postalcode\": \"<POSTAL_CODE>\"\n        \t           \n        } \n    ],\n    \"groups\": [\n        {\n            \"type\": \"<GROUP_TYPE>\",\n            \"display\": \"<GROUP_DISPLAY_NAME>\",\n            \"value\": \"<GROUP_LOGON_NAME>\"\n        }\n    ],\n    \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\": {\n    \t\"employeeNumber\" : \"<EMPLOYEE_NUMBER>\",\n        \"costCenter\" : \"<COST_CENTER>\", \n        \"division\" : \"<DIVISION>\", \n        \"organization\": \"<ORGANIZATION>\",\n        \"department\": \"<DEPARTMENT>\",\n        \"manager\":{\n            \"displayName\":\"<MANAGER_DISPLAY_NAME>\",\n            \"value\":\"<MANAGER_PERSON_LOGIN>\"\n        },\n        \"SchemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n    }\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/empowerID/users","description":"<p>Create Person API is an <strong>authenticated</strong> endpoint that creates a new person objects in EmpowerID.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.user</strong></li>\n<li>To set primary role and location send data in the <strong>groups</strong> parameter with <em>type</em> set to <strong>PrimaryOrgRoleOrgZone</strong> and <em>value</em> set to <strong>OrgRoleOrgZoneGUID</strong> or <strong>OrgRoleOrgZone FriendlyName</strong></li>\n</ul>\n<p><code>\"groups\": [{</code>\n     <code>\"type\": \"PrimaryOrgRoleOrgZone\",</code>\n     <code> \"display\": null,</code>\n     <code> \"value\": \"Temporary Role in Anywhere\"</code>\n   <code>}]</code></p>\n<ul>\n<li>To set secondary role and location send data in the <strong>groups</strong> parameter with <em>type</em> set to <strong>OrgRoleOrgZone</strong> and <em>value</em> set to <strong>OrgRoleOrgZoneGUID</strong></li>\n</ul>\n<p><code>\"groups\": [{</code>\n     <code>\"type\": \"OrgRoleOrgZone\",</code>\n     <code> \"display\": null,</code>\n     <code> \"value\": \"00B20F32-DB06-9664-29AF-0F09538527C1\"</code>\n   <code>}]</code></p>\n<ul>\n<li>To assign group memberships send data in the <strong>groups</strong> parameter with <em>type</em> set to <strong>Group</strong> and <em>value</em> set to <strong>[AccountStoreName]\\[GroupLogonName]</strong></li>\n</ul>\n<p><code>\"groups\": [{</code>\n     <code>\"type\": \"Group\",</code>\n     <code> \"display\": null,</code>\n     <code> \"value\": \"SAPABAP\\\\Role_SAP_HR_CPS_MANAGER\"</code>\n   <code>}]</code></p>\n","urlObject":{"protocol":"https","path":["v1.0","empowerID","users"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"7a10d81d-130c-49bc-b36f-6868584021c3","name":"Create Person","originalRequest":{"method":"POST","header":[{"key":"Content-Type","name":"Content-Type","value":"application/json","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"}],"body":{"mode":"raw","raw":"{\n    \"name\": {\n        \"familyName\": \"Wayne\",\n        \"givenName\": \"Thomas\",\n        \"middleName\": \"Richard\",\n        \"honorificSuffix\": \"Mr.\"\n    },\n    \"userName\" : \"Thomaswayne\",\n    \"title\" : \"QA\", \n    \"userType\": \"ABS\",\n    \"preferredLanguage\": \"English\",\n    \"locale\" : \"en-US\",\n    \"active\": true,\n    \"emails\": [\n        {\n            \"type\": \"work\", \n            \"value\": \"Thomaswayne@workmail.com\"\n        },\n        {\n            \"type\": \"personalemail\",\n            \"value\": \"Thomaswayne@homemail.com\"\n        }\n    ],\n    \"phoneNumbers\": [\n    \t{\n          \"type\":\"telephone\",\n          \"value\":\"5131234567\"\n        },\n        {\n          \"type\":\"mobilephone\",\n          \"value\":\"5131234567\"\n        },\n        {\n          \"type\":\"work\",\n          \"value\":\"5131234567\"\n        }\n    ],\n    \"addresses\": [\n        {\n        \t\"type\": \"work\",\n            \"locality\": \"Dublin\",\n            \"region\": \"Ohio\",\n            \"postalCode\":\"43017\",\n            \"country\":\"Us\",\n            \"streetAddress\":\"4353 Tuller Road\"\n        } \n    ],\n    \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\": {\n    \t\"employeeNumber\" : \"ss\",\n        \"costCenter\" : \"test\", \n        \"division\" : \"test\", \n        \"organization\": \"5EB659C4-EF64-448A-8D32-8A45A70F184F\",\n        \"department\": \"Development\",\n        \"manager\":{\n            \"displayName\":\"Amy Radford\",\n            \"value\":\"amy.radford\"\n        },\n        \"SchemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n    }\n}","options":{"raw":{"language":"json"}}},"url":"https://linux-scim-vds.azurewebsites.net/v1.0/devdomain1/Users"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"userName\": \"Thomaswayne\",\n    \"name\": {\n        \"formatted\": \"Thomaswayne\",\n        \"familyName\": \"Wayne\",\n        \"givenName\": \"Thomas\",\n        \"middleName\": \"Richard\",\n        \"honorificSuffix\": \"Mr.\"\n    },\n    \"displayName\": \"Thomaswayne\",\n    \"title\": \"QA\",\n    \"userType\": \"ABS\",\n    \"preferredLanguage\": \"English\",\n    \"locale\": \"en-US\",\n    \"active\": true,\n    \"emails\": [\n        {\n            \"type\": \"work\",\n            \"value\": \"Thomaswayne@workmail.com\"\n        },\n        {\n            \"type\": \"personalemail\",\n            \"value\": \"Thomaswayne@homemail.com\"\n        }\n    ],\n    \"phoneNumbers\": [\n        {\n            \"type\": \"telephone\",\n            \"value\": \"5131234567\"\n        },\n        {\n            \"type\": \"mobilephone\",\n            \"value\": \"5131234567\"\n        },\n        {\n            \"type\": \"work\",\n            \"value\": \"5131234567\"\n        }\n    ],\n    \"ims\": [],\n    \"photos\": [],\n    \"addresses\": [\n        {\n            \"streetAddress\": \"4353 Tuller Road\",\n            \"locality\": \"Dublin\",\n            \"region\": \"Ohio\",\n            \"postalCode\": \"43017\",\n            \"country\": \"Us\"\n        }\n    ],\n    \"groups\": [\n        {\n            \"type\": \"PrimaryOrgRoleOrgZone\",\n            \"display\": \"Any Role in Anywhere\",\n            \"value\": \"Any Role in Anywhere\"\n        },\n        {\n            \"type\": \"OrgRoleOrgZone\",\n            \"display\": \"Any Role in Anywhere\",\n            \"value\": \"Any Role in Anywhere\"\n        }\n    ],\n    \"entitlements\": [],\n    \"roles\": [],\n    \"x509Certificates\": [],\n    \"enterpriseExtension\": {\n        \"organization\": \"5eb659c4-ef64-448a-8d32-8a45a70f184f\",\n        \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n    },\n    \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:User\",\n    \"schemas\": [\n        \"urn:ietf:params:scim:schemas:core:2.0:User\"\n    ],\n    \"id\": \"Thomaswayne\",\n    \"meta\": {\n        \"resourceType\": \"User\",\n        \"created\": \"2021-08-04T16:17:05.0023689Z\",\n        \"lastModified\": \"2021-08-04T16:17:05.0023689Z\"\n    },\n    \"extensions\": []\n}"}],"_postman_id":"3d38c7d8-c2a4-4ca7-a3a3-d7992c0f4138"},{"name":"Update Person","id":"d6cb283a-223c-4ccd-b4b0-90fbfe5286b0","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"PATCH","header":[{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n"}],"body":{"mode":"raw","raw":"{\r\n    \"schemas\": \"urn:ietf:Params:Scim:api:messages:2.0:PatchOp\",\r\n    \"Operations\": [\r\n        {\r\n            \"op\": \"add\",\r\n            \"path\": \"name\",\r\n            \"value\":{\r\n                \"familyName\" : \"<FAMILY_NAME>\",\r\n                \"middleName\":\"<MIDDLE_NAME>\",\r\n                \"givenName\" : \"<GIVEN_NAME>\",\r\n                \"honorificSuffix\":\"<SUFFIC>\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"replace\",\r\n            \"path\": \"user\",\r\n            \"value\": {\r\n                \"username\":\"<USERNAME>\",\r\n                \"title\":\"<TITLE>\",\r\n                \"usertype\":\"<USER_TYPE>\",\r\n                \"preferredlanguage\":\"<LANGUAGE>\",\r\n                \"active\":\"<TRUE_OR_FALSE>\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"replace\",\r\n            \"path\": \"enterpriseextension\",\r\n            \"value\": {\r\n                \"employeenumber\":\"<EMPLOYEE_NUMBER>\",\r\n                \"manager\":\"<MANAGER_LOGIN>\",\r\n                \"division\":\"<DIVISION>\",\r\n                \"department\":\"<DEPARTMENT>\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"replace\",\r\n            \"path\": \"email\",\r\n            \"value\":{\r\n                \"work\" : \"<EMAIL_ADDRESS>\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"replace\",\r\n            \"path\": \"addresses\",\r\n            \"value\":{\r\n                \"streetaddress\" : \"<STREET_ADDRESS>\",\r\n                \"locality\" :\"<CITY>\",\r\n                \"region\" :\"<STATE>\",\r\n                \"country\" :\"<COUNTRY>\",\r\n                \"postalcode\": \"<POSTAL_CODE>\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"replace\",\r\n            \"path\": \"phoneNumbers\",\r\n            \"value\":{\r\n                \"telephone\" : \"<TELEPHONE>\",\r\n                \"mobilephone\" : \"<MOBILEPHONE>\",\r\n                \"work\":\"<WORKPHONE>\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"remove\",\r\n            \"path\": \"group\",\r\n            \"value\": [\"<GROUP_1>\",\"<GROUP_2>\",\"<GROUP_3>\"]\r\n        }\r\n    ]\r\n} ","options":{"raw":{"language":"json"}}},"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/empowerID/users/PERSON_LOGIN","description":"<p>Update Person API is an <strong>authenticated</strong> endpoint that updates person objects in EmpowerID.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.user</strong></li>\n</ul>\n","urlObject":{"protocol":"https","path":["v1.0","empowerID","users","PERSON_LOGIN"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"d0baf9f2-7dba-4f17-8494-0d75da5479f1","name":"Update Person","originalRequest":{"method":"PATCH","header":[{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"},{"key":"Content-Type","name":"Content-Type","value":"application/json","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"schemas\": \"urn:ietf:Params:Scim:api:messages:2.0:PatchOp\",\r\n    \"Operations\": [\r\n        {\r\n            \"op\": \"add\",\r\n            \"path\": \"name\",\r\n            \"value\":{\r\n                \"familyName\" : \"Wayne\",\r\n                \"middleName\":\"Lee\",\r\n                \"givenName\" : \"Tom\",\r\n                \"honorificSuffix\":\"Mr.\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"replace\",\r\n            \"path\": \"user\",\r\n            \"value\": {\r\n                \"username\":\"tomwayne\",\r\n                \"title\":\"AQ\",\r\n                \"usertype\":\"bsa\",\r\n                \"preferredlanguage\":\"Chinese\",\r\n                \"active\":false\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"replace\",\r\n            \"path\": \"enterpriseextension\",\r\n            \"value\": {\r\n                \"employeenumber\":\"bb\",\r\n                \"manager\":\"amy.radford\",\r\n                \"division\":\"test\",\r\n                \"department\":\"qs\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"replace\",\r\n            \"path\": \"email\",\r\n            \"value\":{\r\n                \"work\" : \"tomwayne@empowerid.com\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"replace\",\r\n            \"path\": \"addresses\",\r\n            \"value\":{\r\n                \"streetaddress\" : \"5499 Crosshaven drive\",\r\n                \"locality\" :\"Dublin\",\r\n                \"region\" :\"LA\",\r\n                \"country\" :\"US\",\r\n                \"postalcode\": \"48102\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"replace\",\r\n            \"path\": \"phoneNumbers\",\r\n            \"value\":{\r\n                \"telephone\" : \"5135479938\",\r\n                \"mobilephone\" : \"1234567654\",\r\n                \"work\":\"123434567\"\r\n            }\r\n        },\r\n        {\r\n            \"op\": \"remove\",\r\n            \"path\": \"group\",\r\n            \"value\": [\"Airqq33\",\"Backup Operators\",\"EIDAruba-ww\"]\r\n        }\r\n    ]\r\n} ","options":{"raw":{"language":"json"}}},"url":"https://linux-scim-vds.azurewebsites.net/v1/empowerID/Users/ThomasWayne"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"userName\": \"tomwayne\",\n    \"name\": {\n        \"formatted\": \"Thomaswayne\",\n        \"familyName\": \"Wayne\",\n        \"givenName\": \"Tom\",\n        \"middleName\": \"Lee\",\n        \"honorificSuffix\": \"Mr.\"\n    },\n    \"displayName\": \"Thomaswayne\",\n    \"title\": \"AQ\",\n    \"userType\": \"bsa\",\n    \"preferredLanguage\": \"Chinese\",\n    \"locale\": \"en-US\",\n    \"active\": false,\n    \"emails\": [\n        {\n            \"type\": \"work\",\n            \"value\": \"tomwayne@empowerid.com\"\n        },\n        {\n            \"type\": \"personalemail\",\n            \"value\": \"Thomaswayne@homemail.com\"\n        }\n    ],\n    \"phoneNumbers\": [\n        {\n            \"type\": \"telephone\",\n            \"value\": \"5135479938\"\n        },\n        {\n            \"type\": \"mobilephone\",\n            \"value\": \"1234567654\"\n        },\n        {\n            \"type\": \"work\",\n            \"value\": \"123434567\"\n        }\n    ],\n    \"ims\": [],\n    \"photos\": [],\n    \"addresses\": [\n        {\n            \"streetAddress\": \"5499 Crosshaven drive\",\n            \"locality\": \"Dublin\",\n            \"region\": \"LA\",\n            \"postalCode\": \"48102\",\n            \"country\": \"US\"\n        }\n    ],\n    \"groups\": [\n        {\n            \"type\": \"PrimaryOrgRoleOrgZone\",\n            \"display\": \"Any Role in Anywhere\",\n            \"value\": \"Any Role in Anywhere\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"testGroup010\",\n            \"value\": \"EidLabAzure\\\\017dc26f-b764-4e52-a604-09daab1c2868\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID110\",\n            \"value\": \"EidLabAzure\\\\01b6f1e1-65f6-4b19-94ef-a7679beaa181\"\n        },\n        {\n            \"type\": \"Group\",\n            \"display\": \"TestGroupOfficeEID105\",\n            \"value\": \"EidLabAzure\\\\083f05b1-236b-4587-afd9-486a4288a2d7\"\n        },\n        {\n            \"type\": \"OrgRoleOrgZone\",\n            \"display\": \"Any Role in Anywhere\",\n            \"value\": \"Any Role in Anywhere\"\n        },\n        {\n            \"type\": \"ManagementRole\",\n            \"display\": \"ACT-Person-CanUseInAssignments-All\",\n            \"value\": \"ACT-Person-CanUseInAssignments-All\"\n        },\n        {\n            \"type\": \"ManagementRole\",\n            \"display\": \"ACT-Person-Reviewer-DirectReports\",\n            \"value\": \"ACT-Person-Reviewer-DirectReports\"\n        },\n        {\n            \"type\": \"ManagementRole\",\n            \"display\": \"VIS-Person-Self\",\n            \"value\": \"VIS-Person-Self\"\n        }\n    ],\n    \"entitlements\": [],\n    \"roles\": [],\n    \"x509Certificates\": [],\n    \"enterpriseExtension\": {\n        \"organization\": \"5eb659c4-ef64-448a-8d32-8a45a70f184f\",\n        \"division\": \"test\",\n        \"department\": \"qs\",\n        \"manager\": {\n            \"value\": \"amy.radford\",\n            \"displayName\": \"Amy Radford\"\n        },\n        \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User\"\n    },\n    \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:User\",\n    \"schemas\": [\n        \"urn:ietf:params:scim:schemas:core:2.0:User\"\n    ],\n    \"id\": \"tomwayne\",\n    \"meta\": {\n        \"resourceType\": \"User\",\n        \"created\": \"2021-08-04T16:17:05.003\",\n        \"lastModified\": \"2021-08-04T16:21:48.733\"\n    },\n    \"extensions\": []\n}"}],"_postman_id":"d6cb283a-223c-4ccd-b4b0-90fbfe5286b0"},{"name":"Delete Person","id":"d2de2b41-4b70-4a49-90a0-78dcdf339930","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"DELETE","header":[{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n"}],"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/empowerID/users/PERSON_LOGIN","description":"<p>Delete Person API is an <strong>authenticated</strong> endpoint that deletes an existing person object in EmpowerID.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.user</strong></li>\n</ul>\n","urlObject":{"protocol":"https","path":["v1.0","empowerID","users","PERSON_LOGIN"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"ce86b717-2c28-47bf-9d06-6647b36263a9","name":"Delete Person","originalRequest":{"method":"DELETE","header":[{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"}],"url":"https://linux-scim-vds.azurewebsites.net/v1/empowerID/Users/tomwayne"},"status":"No Content","code":204,"_postman_previewlanguage":null,"header":null,"cookie":[],"responseTime":null,"body":null}],"_postman_id":"d2de2b41-4b70-4a49-90a0-78dcdf339930"}],"id":"b5814272-e9df-4b98-a11c-32b3e5f36e6e","description":"<p>Person APIs allow querying and managing of person objects in the EmpowerID Identity Warehouse.</p>\n","_postman_id":"b5814272-e9df-4b98-a11c-32b3e5f36e6e"},{"name":"Groups","item":[{"name":"Get Group","id":"de0398fc-5754-4758-bf86-2be6c5c1141a","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"GET","header":[{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n"}],"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/ACCOUNT_STORE_NAME/groups/GROUP_LOGON_NAME","description":"<p>Get Group API is an <strong>authenticated</strong> endpoint that gets group information in a specific account store in EmpowerID.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.group</strong></li>\n</ul>\n","urlObject":{"protocol":"https","path":["v1.0","ACCOUNT_STORE_NAME","groups","GROUP_LOGON_NAME"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"de91890d-778f-42ec-bdaa-6acda7cb673a","name":"Get Group","originalRequest":{"method":"GET","header":[{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"}],"url":"https://linux-scim-vds.azurewebsites.net/v1.0/devdomain1/groups/CSArchivingAdministrator"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"groupExtension\": {\n        \"groupType\": \"SecurityUniversal\",\n        \"location\": \"CN=CSArchivingAdministrator,CN=Users,DC=devdomain1,DC=com\",\n        \"netBiosName\": \"DEVDOMAIN1\",\n        \"objectType\": \"Group\",\n        \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:empowerIdGroup:2.0:Group\"\n    },\n    \"displayName\": \"CSArchivingAdministrator\",\n    \"members\": [\n        {\n            \"type\": \"Account\",\n            \"display\": \"Jay Bradley\",\n            \"value\": \"jaybradley\"\n        },\n        {\n            \"type\": \"Account\",\n            \"display\": \"Clint Brittain\",\n            \"value\": \"clintbrittai\"\n        }\n    ],\n    \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:Group\",\n    \"schemas\": [\n        \"urn:ietf:params:scim:schemas:core:2.0:Group\"\n    ],\n    \"id\": \"CSArchivingAdministrator\",\n    \"meta\": {\n        \"resourceType\": \"Group\",\n        \"created\": \"2019-03-01T19:28:50\",\n        \"lastModified\": \"2021-07-06T17:14:30.96\"\n    },\n    \"extensions\": []\n}"}],"_postman_id":"de0398fc-5754-4758-bf86-2be6c5c1141a"},{"name":"Query Group","id":"2c1f0aa2-c789-48b4-ae87-f0dff332144a","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"GET","header":[{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n"}],"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/ACCOUNT_STORE_NAME/groups?filter=FILTER_EXPRESSION","description":"<p>Query Group API is an <strong>authenticated</strong> endpoint that queries groups.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li><p>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.group</strong></p>\n</li>\n<li><p>Below table describes the SCIM to EmpowerID group attribute mapping,</p>\n<div class=\"click-to-expand-wrapper is-table-wrapper\"><table>\n<thead>\n<tr>\n<th>SCIM attribute</th>\n<th>EmpowerID attribute</th>\n</tr>\n</thead>\n<tbody>\n<tr>\n<td>displayname</td>\n<td>Name</td>\n</tr>\n<tr>\n<td>objecttype</td>\n<td>objecttype</td>\n</tr>\n<tr>\n<td>externalid</td>\n<td>ExtensionAttribute10</td>\n</tr>\n</tbody>\n</table>\n</div></li>\n</ul>\n","urlObject":{"protocol":"https","path":["v1.0","ACCOUNT_STORE_NAME","groups"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[{"key":"filter","value":"FILTER_EXPRESSION"}],"variable":[]}},"response":[{"id":"9540aa83-9e9d-4bd7-823f-5527783062e3","name":"Query Group","originalRequest":{"method":"GET","header":[{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"}],"url":{"raw":"https://linux-scim-vds.azurewebsites.net/v1.0/devdomain1/groups?filter=displayname eq 'SG-CZPHD-FD'","protocol":"https","host":["linux-scim-vds","azurewebsites","net"],"path":["v1.0","devdomain1","groups"],"query":[{"key":"filter","value":"displayname eq 'SG-CZPHD-FD'"}]}},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"totalResults\": 1,\n    \"resources\": [\n        {\n            \"groupExtension\": {\n                \"groupType\": \"SecurityGlobal\",\n                \"location\": \"CN=SG-CZPHD-FD,OU=_Groups,OU=Czech Republic,OU=EMEA,OU=Users and Groups,OU=PHD,OU=global,OU=OMD,DC=devdomain1,DC=com\",\n                \"netBiosName\": \"DEVDOMAIN1\",\n                \"objectType\": \"Group\",\n                \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:empowerIdGroup:2.0:Group\"\n            },\n            \"displayName\": \"SG-CZPHD-FD\",\n            \"members\": [\n                {\n                    \"type\": \"Account\",\n                    \"display\": \"Šárka Bartošková\",\n                    \"value\": \"sarka.bartoskova\"\n                },\n                {\n                    \"type\": \"Account\",\n                    \"display\": \"Petr Miláček\",\n                    \"value\": \"petr.milacek\"\n                },\n                {\n                    \"type\": \"Account\",\n                    \"display\": \"Martina Popelková\",\n                    \"value\": \"martina.popelkova\"\n                },\n                {\n                    \"type\": \"Account\",\n                    \"display\": \"Veronika Typltová\",\n                    \"value\": \"veronika.typltova\"\n                }\n            ],\n            \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:Group\",\n            \"schemas\": [\n                \"urn:ietf:params:scim:schemas:core:2.0:Group\"\n            ],\n            \"id\": \"SG-CZPHD-FD\",\n            \"meta\": {\n                \"resourceType\": \"Group\",\n                \"created\": \"2019-03-01T19:28:50\",\n                \"lastModified\": \"2021-07-06T17:14:30.96\"\n            },\n            \"extensions\": []\n        }\n    ],\n    \"startIndex\": 0,\n    \"itemsPerPage\": 1,\n    \"schemaIdentifier\": \"urn:ietf:params:scim:api:messages:2.0:ListResponse\",\n    \"schemas\": [\n        \"urn:ietf:params:scim:api:messages:2.0:ListResponse\"\n    ]\n}"}],"_postman_id":"2c1f0aa2-c789-48b4-ae87-f0dff332144a"},{"name":"Create Group","id":"44e89bcb-6412-425c-a1d6-a9655786d499","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"method":"POST","header":[{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n"}],"body":{"mode":"raw","raw":"{\n    \"displayName\": \"<GROUP_NAME>\",\n    \"urn:ietf:params:scim:schemas:extension:empowerIdGroup:2.0:Group\": {\n        \"objectType\": \"Group\",\n        \"groupType\": \"<GROUP_TYPE_NAME>\"\n    }\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/ACCOUNT_STORE_NAME/groups","description":"<p>Create Group API is an <strong>authenticated</strong> endpoint that creates a new group in a specific account store in EmpowerID.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.group</strong></li>\n<li>Listed below are a few <strong>groupTypes</strong>,<ul>\n<li>SecurityUniversal</li>\n<li>SecurityGlobal</li>\n<li>SecurityDomainLocal</li>\n<li>BuiltInLocal</li>\n<li>DistributionGlobal</li>\n<li>DistributionDomainLocal</li>\n<li>DistributionUniversal</li>\n<li>Generic Group</li>\n<li>Office 365 Group</li>\n<li>SAPSingleRole</li>\n<li>SAPCompositeRole</li>\n<li>SAPSingleProfile</li>\n<li>SAPCompositeProfile</li>\n<li>ServiceNowGroup</li>\n<li>SF Permission Set</li>\n<li>SharePointOnlineGroup</li>\n</ul>\n</li>\n</ul>\n","urlObject":{"protocol":"https","path":["v1.0","ACCOUNT_STORE_NAME","groups"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"86b8262d-87e4-403a-86fe-494af11f1933","name":"Create Group","originalRequest":{"method":"POST","header":[{"key":"Content-Type","name":"Content-Type","value":"application/json","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"}],"body":{"mode":"raw","raw":"{\n\t\"displayName\":\"RT_MyTestGroup\",\n\t\"urn:ietf:params:scim:schemas:extension:empowerIdGroup:2.0:Group\":\n\t{\n\t\t\"objectType\":\"Group\",\n\t\t\"groupType\":\"SecurityGlobal\"\n\t}\n}","options":{"raw":{"language":"json"}}},"url":"https://linux-scim-vds.azurewebsites.net/v1.0/devdomain1/groups"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"groupExtension\": {\n        \"groupType\": \"SecurityGlobal\",\n        \"location\": \"CN=RT_MyTestGroup,DC=devdomain1,DC=com\",\n        \"netBiosName\": \"DEVDOMAIN1\",\n        \"objectType\": \"Group\",\n        \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:empowerIdGroup:2.0:Group\"\n    },\n    \"displayName\": \"RT_MyTestGroup\",\n    \"members\": [],\n    \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:Group\",\n    \"schemas\": [\n        \"urn:ietf:params:scim:schemas:core:2.0:Group\"\n    ],\n    \"id\": \"RT_MyTestGroup\",\n    \"meta\": {\n        \"resourceType\": \"Group\",\n        \"created\": \"2021-08-04T19:09:35.6685088Z\",\n        \"lastModified\": \"2021-08-04T19:09:35.6685088Z\"\n    },\n    \"extensions\": []\n}"}],"_postman_id":"44e89bcb-6412-425c-a1d6-a9655786d499"},{"name":"Update Group","id":"da167902-5cb0-4297-afbf-7fcbbb514ef9","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"PATCH","header":[{"key":"Content-Type","value":"application/json"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n"}],"body":{"mode":"raw","raw":"{\n    \"schemas\": [\n        \"urn:ietf:params:scim:api:messages:2.0:PatchOp\"\n    ],\n    \"Operations\": [\n        {\n            \"op\": \"add\",\n            \"path\": \"members\",\n            \"value\": [\n                {                    \n                \t\"type\": \"account\",\n                    \"value\": \"<ACCOUNT_LOGON_NAME>\"\n                }\n            ]\n        },\n        {\n            \"op\": \"remove\",\n            \"path\": \"members\",\n            \"value\": [\n                {                    \n                \t\"type\": \"account\",\n                    \"value\": \"<ACCOUNT_LOGON_NAME>\"\n                }\n            ]\n        }\n    ]\n}"},"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/ACCOUNT_STORE_NAME/groups/GROUP_LOGON_NAME","description":"<p>Update Group API is an <strong>authenticated</strong> endpoint that adds &amp; removes members from a group in a specific account store in EmpowerID.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.group</strong></li>\n</ul>\n","urlObject":{"protocol":"https","path":["v1.0","ACCOUNT_STORE_NAME","groups","GROUP_LOGON_NAME"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"13b1ee5b-93c0-41a2-a64e-109bb88a1416","name":"Update Group","originalRequest":{"method":"POST","header":[{"key":"Content-Type","name":"Content-Type","value":"application/json","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"}],"body":{"mode":"raw","raw":"{\n    \"schemas\": [\n        \"urn:ietf:params:scim:api:messages:2.0:PatchOp\"\n    ],\n    \"Operations\": [\n        {\n            \"op\": \"add\",\n            \"path\": \"members\",\n            \"value\": [\n                {                    \n                \t\"type\": \"account\",\n                    \"value\": \"jaybradley\"\n                },\n                {                    \n                \t\"type\": \"account\",\n                    \"value\": \"clintbrittai\"\n                }\n            ]\n        },\n        {\n            \"op\": \"remove\",\n            \"path\": \"members\",\n            \"value\": [\n                {                    \n                \t\"type\": \"account\",\n                    \"value\": \"fordperfect\"\n                }\n            ]\n        }\n    ]\n}","options":{"raw":{"language":"json"}}},"url":"https://linux-scim-vds.azurewebsites.net/v1.0/devdomain1/groups/RT_MyTestGroup"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"groupExtension\": {\n        \"groupType\": \"SecurityGlobal\",\n        \"location\": \"CN=RT_MyTestGroup,DC=devdomain1,DC=com\",\n        \"netBiosName\": \"DEVDOMAIN1\",\n        \"objectType\": \"Group\",\n        \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:empowerIdGroup:2.0:Group\"\n    },\n    \"displayName\": \"RT_MyTestGroup\",\n    \"members\": [\n        {\n            \"type\": \"Account\",\n            \"display\": \"Jay Bradley\",\n            \"value\": \"jaybradley\"\n        },\n        {\n            \"type\": \"Account\",\n            \"display\": \"Clint Brittain\",\n            \"value\": \"clintbrittai\"\n        },\n        {\n            \"type\": \"Account\",\n            \"display\": \"Martha Wayne\",\n            \"value\": \"marthawayne\"\n        }\n    ],\n    \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:Group\",\n    \"schemas\": [\n        \"urn:ietf:params:scim:schemas:core:2.0:Group\"\n    ],\n    \"id\": \"RT_MyTestGroup\",\n    \"meta\": {\n        \"resourceType\": \"Group\",\n        \"created\": \"2021-08-04T19:09:35.67\",\n        \"lastModified\": \"2021-08-04T20:03:05.887\"\n    },\n    \"extensions\": []\n}"}],"_postman_id":"da167902-5cb0-4297-afbf-7fcbbb514ef9"},{"name":"Delete Group","id":"cea09e6c-cc4c-4e93-a915-744f1105ba40","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"DELETE","header":[{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n"}],"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/ACCOUNT_STORE_NAME/groups/GROUP_LOGON_NAME","description":"<p>Delete Group API is an <strong>authenticated</strong> endpoint that deletes an existing group in a specific account store in EmpowerID.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.group</strong></li>\n</ul>\n","urlObject":{"protocol":"https","path":["v1.0","ACCOUNT_STORE_NAME","groups","GROUP_LOGON_NAME"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"11b4d83b-3829-477b-b086-e2e9d0d8cc61","name":"Delete Group","originalRequest":{"method":"DELETE","header":[{"key":"Content-Type","name":"Content-Type","value":"application/json","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"}],"body":{"mode":"raw","raw":"","options":{"raw":{"language":"json"}}},"url":"https://linux-scim-vds.azurewebsites.net/v1.0/devdomain1/groups/RT_MyTestGroup"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":""}],"_postman_id":"cea09e6c-cc4c-4e93-a915-744f1105ba40"}],"id":"e87f70c9-746c-4595-b35a-385e6c448fcb","description":"<p>Group APIs allow querying and managing of groups and group memberships in systems connected to EmpowerID (e.g. Azure AD, AD, SAP, SalesForce, ServiceNow, etc.)</p>\n","_postman_id":"e87f70c9-746c-4595-b35a-385e6c448fcb"},{"name":"Management Roles","item":[{"name":"Get Management Role","id":"1016a86e-9a29-4865-a5b2-0dc019f706a4","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"GET","header":[{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n"}],"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/empowerID/groups/MGMT_ROLE_NAME","description":"<p>Get Management Role API is an <strong>authenticated</strong> endpoint that gets management role information such as name, display name, parent, members, etc from EmpowerID.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.group</strong></li>\n</ul>\n","urlObject":{"protocol":"https","path":["v1.0","empowerID","groups","MGMT_ROLE_NAME"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"4e64f22d-97bc-47ce-9ef5-b95535a4e5bf","name":"Get Management Role","originalRequest":{"method":"GET","header":[{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"}],"url":"https://linux-scim-vds.azurewebsites.net/v1.0/empowerID/groups/SSRSAdministrator"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"groupExtension\": {\n        \"groupType\": \"Generic\",\n        \"objectType\": \"ManagementRole\",\n        \"parent\": \"99d29856-9ecc-499b-8301-1c5f24ec770e\",\n        \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:empowerIdGroup:2.0:Group\"\n    },\n    \"displayName\": \"SSRSAdministrator\",\n    \"members\": [\n        {\n            \"type\": \"Person\",\n            \"display\": \"scimvdseiduser_617_2\",\n            \"value\": \"scimvdseiduser_617_2@empowerid.biz\"\n        }\n    ],\n    \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:Group\",\n    \"schemas\": [\n        \"urn:ietf:params:scim:schemas:core:2.0:Group\"\n    ],\n    \"id\": \"SSRSAdministrator\",\n    \"meta\": {\n        \"resourceType\": \"Group\",\n        \"created\": \"1980-01-01T00:00:00\",\n        \"lastModified\": \"2021-07-26T15:34:36.39\"\n    },\n    \"extensions\": []\n}"}],"_postman_id":"1016a86e-9a29-4865-a5b2-0dc019f706a4"},{"name":"Create Management Role","id":"2805426d-c330-4b26-a87c-d2ca30260c1b","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n"}],"body":{"mode":"raw","raw":"{\n\t\"displayName\":\"<MGMT_ROLE_NAME>\",\n\t\"urn:ietf:params:scim:schemas:extension:empowerIdGroup:2.0:Group\":\n\t{\n\t\t\"objectType\":\"Management Role\",\n\t\t\"groupType\":\"Generic\",\n\t\t\"parent\":\"<MGMT_ROLE_DEFINITION_GUID>\",\n\t\t\"location\":\"<ORG_ZONE_GUID>\"\n\t}\n}"},"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/empowerID/groups","description":"<p>Create Management Role API is an <strong>authenticated</strong> endpoint that creates a new management role in a specific location under a parent management role definition in EmpowerID.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.group</strong></li>\n</ul>\n","urlObject":{"protocol":"https","path":["v1.0","empowerID","groups"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"084b00f6-bde7-47f9-8234-0fd7265d8ea7","name":"Create Management Role","originalRequest":{"method":"POST","header":[{"key":"Content-Type","name":"Content-Type","value":"application/json","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ","type":"text"}],"body":{"mode":"raw","raw":"{\n\t\"displayName\":\"RT-Password-HelpDesk\",\n\t\"urn:ietf:params:scim:schemas:extension:empowerIdGroup:2.0:Group\":\n\t{\n\t\t\"objectType\":\"Management Role\",\n\t\t\"groupType\":\"Generic\",\n\t\t\"parent\":\"57E300CE-2D01-4749-8666-84BB0A9C7C8B\",\n\t\t\"location\":\"C87CFFF1-23CF-499E-A30E-90005745F763\"\n\t}\n}","options":{"raw":{"language":"json"}}},"url":"https://linux-scim-vds.azurewebsites.net/v1.0/empowerID/groups"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"groupExtension\": {\n        \"groupType\": \"Generic\",\n        \"objectType\": \"ManagementRole\",\n        \"parent\": \"99d29856-9ecc-499b-8301-1c5f24ec770e\",\n        \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:empowerIdGroup:2.0:Group\"\n    },\n    \"displayName\": \"RT-Password-HelpDesk\",\n    \"members\": [],\n    \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:Group\",\n    \"schemas\": [\n        \"urn:ietf:params:scim:schemas:core:2.0:Group\"\n    ],\n    \"id\": \"RT-Password-HelpDesk\",\n    \"meta\": {\n        \"resourceType\": \"Group\",\n        \"created\": \"2021-08-04T20:36:28.8045029Z\",\n        \"lastModified\": \"2021-08-04T20:36:28.8045029Z\"\n    },\n    \"extensions\": []\n}"}],"_postman_id":"2805426d-c330-4b26-a87c-d2ca30260c1b"},{"name":"Update Management Role","id":"342266a0-3894-463f-b1e9-a9e73f5f7dbd","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"PATCH","header":[{"key":"Content-Type","value":"application/json"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n"}],"body":{"mode":"raw","raw":"{\n    \"schemas\": [\n        \"urn:ietf:params:scim:api:messages:2.0:PatchOp\"\n    ],\n    \"Operations\": [\n        {\n            \"op\": \"add\",\n            \"path\": \"members\",\n            \"value\": [\n                {                    \n                \t\"type\": \"person\",\n                    \"value\": \"<PERSON_LOGIN>\"\n                }\n            ]\n        },\n        {\n            \"op\": \"remove\",\n            \"path\": \"members\",\n            \"value\": [\n                {                    \n                \t\"type\": \"person\",\n                    \"value\": \"<PERSON_LOGIN>\"\n                }\n            ]\n        }\n    ]\n}"},"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/empowerID/groups/MGMT_ROLE_NAME","description":"<p>Update Management Role API is an <strong>authenticated</strong> endpoint that adds &amp; removes members from a management role in EmpowerID.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.group</strong></li>\n<li>The response may not show updated assignments until the RBAC process runs, this can take a few minutes. If the Get Management Role API is invoked after RBAC runs, the assignments will be updated accordingly</li>\n</ul>\n","urlObject":{"protocol":"https","path":["v1.0","empowerID","groups","MGMT_ROLE_NAME"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"86619c20-e9e8-492f-b9bd-2cab62cf6536","name":"Update Management Role","originalRequest":{"method":"PATCH","header":[{"key":"Content-Type","name":"Content-Type","value":"application/json","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ","type":"text"}],"body":{"mode":"raw","raw":"{\n    \"schemas\": [\n        \"urn:ietf:params:scim:api:messages:2.0:PatchOp\"\n    ],\n    \"Operations\": [\n        {\n            \"op\": \"add\",\n            \"path\": \"members\",\n            \"value\": [\n                {\n                    \"type\": \"person\",\n                    \"Value\": \"amy.radford\"\n                },\n                {\n                    \"type\": \"person\",\n                    \"Value\": \"tomwarrick\"\n                }\n            ]\n        },\n        {\n            \"op\": \"remove\",\n            \"path\": \"members\",\n            \"value\": [\n                {\n                    \"type\": \"person\",\n                    \"Value\": \"mfauser101\"\n                }\n            ]\n        }\n    ]\n}","options":{"raw":{"language":"json"}}},"url":"https://linux-scim-vds.azurewebsites.net/v1.0/empowerID/groups/RT-Password-HelpDesk"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"groupExtension\": {\n        \"groupType\": \"Generic\",\n        \"objectType\": \"ManagementRole\",\n        \"parent\": \"99d29856-9ecc-499b-8301-1c5f24ec770e\",\n        \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:empowerIdGroup:2.0:Group\"\n    },\n    \"displayName\": \"RT-Password-HelpDesk\",\n    \"members\": [\n        {\n            \"type\": \"Person\",\n            \"display\": \"Amy Radford\",\n            \"value\": \"amy.radford\"\n        },\n        {\n            \"type\": \"Person\",\n            \"display\": \"Tom Warrick\",\n            \"value\": \"tomwarrick\"\n        }\n    ],\n    \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:Group\",\n    \"schemas\": [\n        \"urn:ietf:params:scim:schemas:core:2.0:Group\"\n    ],\n    \"id\": \"RT-Password-HelpDesk\",\n    \"meta\": {\n        \"resourceType\": \"Group\",\n        \"created\": \"2021-08-04T20:36:28.803\",\n        \"lastModified\": \"2021-08-04T20:40:08.573\"\n    },\n    \"extensions\": []\n}"}],"_postman_id":"342266a0-3894-463f-b1e9-a9e73f5f7dbd"},{"name":"Delete Management Role","id":"a62adb65-e1cd-42c7-9696-5acfc5692c25","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"DELETE","header":[{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n"}],"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/empowerID/groups/MGMT_ROLE_NAME","description":"<p>Delete Management Role API is an <strong>authenticated</strong> endpoint that deletes an existing management role in EmpowerID.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.group</strong></li>\n</ul>\n","urlObject":{"protocol":"https","path":["v1.0","empowerID","groups","MGMT_ROLE_NAME"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"6e79f978-9631-495b-9a3e-c69dc1bfcfd3","name":"Delete Management Role","originalRequest":{"method":"DELETE","header":[{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"}],"url":"https://linux-scim-vds.azurewebsites.net/v1.0/empowerID/groups/RT-Password-HelpDesk"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":""}],"_postman_id":"a62adb65-e1cd-42c7-9696-5acfc5692c25"}],"id":"9580544f-0eab-4231-8355-6969c557d7df","description":"<p>Management Role APIs allow querying and managing of management role objects and memberships in the EmpowerID Identity Warehouse.</p>\n","_postman_id":"9580544f-0eab-4231-8355-6969c557d7df"},{"name":"Business Roles & Locations","item":[{"name":"Get Business Role and Location","id":"f00095af-c1d0-45b4-9176-2973936cd2c8","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"GET","header":[{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n"}],"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/empowerID/groups/OROZ_FRIENDLY_NAME","description":"<p>Get Business Role &amp; Locations API is an <strong>authenticated</strong> endpoint that gets role and location information such as name, display name, members, etc from EmpowerID.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.group</strong></li>\n</ul>\n","urlObject":{"protocol":"https","path":["v1.0","empowerID","groups","OROZ_FRIENDLY_NAME"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"6ca55da8-4594-486c-8bc1-0b7c98e30e5e","name":"Get Business Role and Location","originalRequest":{"method":"GET","header":[{"key":"Content-Type","name":"Content-Type","value":"application/json","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"}],"body":{"mode":"raw","raw":"","options":{"raw":{"language":"json"}}},"url":"https://linux-scim-vds.azurewebsites.net/v1.0/empowerID/groups/Contractor in Columbus"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"groupExtension\": {\n        \"objectType\": \"OrgRoleOrgZone\",\n        \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:empowerIdGroup:2.0:Group\"\n    },\n    \"displayName\": \"Contractor in Columbus\",\n    \"members\": [\n        {\n            \"type\": \"Person\",\n            \"display\": \"spaldiuser\",\n            \"value\": \"spaldiFA\"\n        },\n        {\n            \"type\": \"Person\",\n            \"display\": \"Berns, Steve (IT)\",\n            \"value\": \"SteveBerns\"\n        },\n        {\n            \"type\": \"Person\",\n            \"display\": \"fauser1, sp\",\n            \"value\": \"spfauser1\"\n        },\n        {\n            \"type\": \"Person\",\n            \"display\": \"Robin Hoody\",\n            \"value\": \"rhoody\"\n        }\n    ],\n    \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:Group\",\n    \"schemas\": [\n        \"urn:ietf:params:scim:schemas:core:2.0:Group\"\n    ],\n    \"id\": \"Contractor in Columbus\",\n    \"meta\": {\n        \"resourceType\": \"Group\",\n        \"created\": \"2021-06-28T19:04:57.347\",\n        \"lastModified\": \"2021-06-28T19:04:57.52\"\n    },\n    \"extensions\": []\n}"}],"_postman_id":"f00095af-c1d0-45b4-9176-2973936cd2c8"},{"name":"Update Business Role and Location","id":"184fa835-a4c7-4fa5-ae90-c4d7a0809731","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"PATCH","header":[{"key":"Content-Type","value":"application/json"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n"}],"body":{"mode":"raw","raw":"{\n    \"urn:ietf:params:scim:schemas:extension:empowerIdGroup:2.0:Group\": {\n        \"objectType\": \"OrgRoleOrgZone\"\n    },\n    \"schemas\": [\n        \"urn:ietf:params:scim:api:messages:2.0:PatchOp\"\n    ],\n    \"Operations\": [\n        {\n            \"op\": \"add\",\n            \"path\": \"members\",\n            \"value\": [\n                {                    \n                \t\"type\": \"person\",\n                    \"value\": \"<PERSON_LOGIN>\"\n                }\n            ]\n        },\n        {\n            \"op\": \"remove\",\n            \"path\": \"members\",\n            \"value\": [\n                {                    \n                \t\"type\": \"person\",\n                    \"value\": \"<PERSON_LOGIN>\"\n                }\n            ]\n        }\n    ]\n}"},"url":"https://YOUR_SCIM_VDS_DOMAIN/v1.0/empowerID/groups/OROZ_FRIENDLY_NAME","description":"<p>Update Business Role &amp; Location API is an <strong>authenticated</strong> endpoint that adds &amp; removes members from a role and location in EmpowerID.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>SCIM EID VDS</strong> with scope <strong>scimvds.group</strong></li>\n<li>The response may not show updated assignments until the RBAC process runs, which can take a few minutes. If the Get Role &amp; Location API is invoked after RBAC runs, the assignments will be updated accordingly</li>\n</ul>\n","urlObject":{"protocol":"https","path":["v1.0","empowerID","groups","OROZ_FRIENDLY_NAME"],"host":["YOUR_SCIM_VDS_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"656d24d8-4375-439d-8d65-1c0501f82add","name":"Update Business Role and Location","originalRequest":{"method":"PATCH","header":[{"key":"Content-Type","name":"Content-Type","value":"application/json","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZCI......CkQQf6snukRIcXlGoYQ"}],"body":{"mode":"raw","raw":"{\n    \"urn:ietf:params:scim:schemas:extension:empowerIdGroup:2.0:Group\": {\n        \"objectType\": \"OrgRoleOrgZone\"\n    },\n    \"schemas\": [\n        \"urn:ietf:params:scim:api:messages:2.0:PatchOp\"\n    ],\n    \"Operations\": [\n        {\n            \"op\": \"add\",\n            \"path\": \"members\",\n            \"value\": [\n                {\n                    \"type\": \"person\",\n                    \"value\": \"amy.radford\"\n                }\n            ]\n        },\n        {\n            \"op\": \"remove\",\n            \"path\": \"members\",\n            \"value\": [\n                {\n                    \"type\": \"person\",\n                    \"value\": \"rhoody\"\n                },\n                {\n                    \"type\": \"person\",\n                    \"value\": \"nomanager\"\n                }\n            ]\n        }\n    ]\n}","options":{"raw":{"language":"json"}}},"url":"https://linux-scim-vds.azurewebsites.net/v1.0/empowerID/groups/Contractor in Columbus"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"groupExtension\": {\n        \"objectType\": \"OrgRoleOrgZone\",\n        \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:extension:empowerIdGroup:2.0:Group\"\n    },\n    \"displayName\": \"All Non Employee Roles in Avanade\",\n    \"members\": [\n        {\n            \"type\": \"Person\",\n            \"display\": \"spaldiuser\",\n            \"value\": \"spaldiFA\"\n        },\n        {\n            \"type\": \"Person\",\n            \"display\": \"Berns, Steve (IT)\",\n            \"value\": \"SteveBerns\"\n        },\n        {\n            \"type\": \"Person\",\n            \"display\": \"fauser1, sp\",\n            \"value\": \"spfauser1\"\n        },\n        {\n            \"type\": \"Person\",\n            \"display\": \"Aamer Mohammed\",\n            \"value\": \"86cc0498-f09f-4fcf-9d7f-9cf048bbeb91\"\n        },\n        {\n            \"type\": \"Person\",\n            \"display\": \"Amy Radford\",\n            \"value\": \"amy.radford\"\n        },\n        {\n            \"type\": \"Person\",\n            \"display\": \"Barry White\",\n            \"value\": \"BarryWhite\"\n        }\n    ],\n    \"schemaIdentifier\": \"urn:ietf:params:scim:schemas:core:2.0:Group\",\n    \"schemas\": [\n        \"urn:ietf:params:scim:schemas:core:2.0:Group\"\n    ],\n    \"id\": \"All Non Employee Roles in Avanade\",\n    \"meta\": {\n        \"resourceType\": \"Group\",\n        \"created\": \"2020-08-09T23:29:26.63\",\n        \"lastModified\": \"2021-04-02T14:07:14.273\"\n    },\n    \"extensions\": []\n}"}],"_postman_id":"184fa835-a4c7-4fa5-ae90-c4d7a0809731"}],"id":"4d1390c3-31a3-4b0b-999f-80c3a32dfb6f","description":"<p>Business Role &amp; Location APIs allow querying and updating business roles and locations and their memberships in the EmpowerID Identity Warehouse.</p>\n","_postman_id":"4d1390c3-31a3-4b0b-999f-80c3a32dfb6f"}],"id":"9084d80d-ca9a-4771-ab9a-32eb83ec4837","description":"<p>EmpowerID Virtual Directory Server API (or SCIM VDS for short) provides a\nstandards-based service to support provisioning of identity data into downstream Identity and Access Management\nsystems without SCIM support. It eliminates the need to develop and maintain many custom connectors.</p>\n<p>SCIM VDS includes endpoints for Identity Administration — querying and managing identities in the EmpowerID Identity Warehouse and all connected systems.</p>\n<p>Refer to the EmpowerID Docs - <a href=\"https://dotnetworkflow.jira.com/wiki/spaces/EAGV21/pages/1579089933/SCIM+Virtual+Directory\">SCIM Virtual Directory</a> for the setup/configuration process prior to invoking the APIs.</p>\n","event":[{"listen":"prerequest","script":{"id":"c94dd0b0-40ac-4d56-9c3c-d9dae7ad7562","type":"text/javascript","exec":[""]}},{"listen":"test","script":{"id":"ef3fc2c9-e507-4bff-b905-6cf1a0c7b158","type":"text/javascript","exec":[""]}}],"_postman_id":"9084d80d-ca9a-4771-ab9a-32eb83ec4837"},{"name":"Password Policy API","item":[{"name":"Change Password","id":"f79e50b7-7d8d-43b5-bed7-b9d824e4fed7","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json"},{"key":"X-EmpowerID-API-Key","value":"YOUR_API_KEY","type":"text"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","type":"text"}],"body":{"mode":"raw","raw":"{\n  \"CurrentPassword\": \"<string>\",\n  \"NewPassword\": \"<string>\",\n  \"ResetPasswordForAllAccounts\": \"<boolean>\",\n  \"AccountID\": \"<integer>\"\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_DOMAIN/api/services/v1/passwordpolicy/changepassword","description":"<p>ChangePassword API is an <strong>anonymous</strong> endpoint that allows a user with an existing session to change their current password to a new password.</p>\n","urlObject":{"protocol":"https","path":["api","services","v1","passwordpolicy","changepassword"],"host":["YOUR_DOMAIN"],"query":[],"variable":[]}},"response":[{"id":"4388f4b4-aee0-4589-886b-0e6ec3e26647","name":"Change Password Success","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/json"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg","type":"text"}],"body":{"mode":"raw","raw":"{\n  \"CurrentPassword\": \"MyT3stP@ss1\",\n  \"NewPassword\": \"MyT3stP@ss2\",\n  \"ResetPasswordForAllAccounts\": \"false\",\n  \"AccountID\": \"-1\"\n}","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/passwordpolicy/changepassword"},"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"Success\": true,\n    \"Message\": \"Password changed successfully for person: 101, MfaUser\",\n    \"Exception\": null\n}"},{"id":"08ec3255-b429-48b8-93d9-e6298fb43969","name":"Change Password Error","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/json"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg","type":"text"}],"body":{"mode":"raw","raw":"{\n  \"CurrentPassword\": \"MyT3stP@ss\",\n  \"NewPassword\": \"MyPassword\",\n  \"ResetPasswordForAllAccounts\": \"false\",\n  \"AccountID\": \"-1\"\n}","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/passwordpolicy/changepassword"},"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"[\n    {\n        \"SystemName\": \"\",\n        \"UserName\": \"\",\n        \"Action\": \"Change Password\",\n        \"Message\": \"Password does not meet Password Manager Policy\",\n        \"Success\": false\n    }\n]"}],"_postman_id":"f79e50b7-7d8d-43b5-bed7-b9d824e4fed7"},{"name":"Reset My Password","id":"6a0b1303-402e-4549-af2a-01a96ff3ca8d","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json"},{"key":"X-EmpowerID-API-Key","value":"YOUR_API_KEY","description":"<p><strong>Required</strong></p>\n"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n","type":"text"}],"body":{"mode":"raw","raw":"{\n  \"Password\": \"<string>\",\n  \"UnlockAccounts\": \"<boolean>\",\n  \"MustChangePasswordOnNextLogin\": \"<boolean>\"\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_DOMAIN/api/services/v1/passwordpolicy/resetmypassword","description":"<p>ResetMyPassword API is an <strong>authenticated</strong> endpoint that resets the current user's password to new password. Additionally, any associated accounts can be unlocked and must change password on next login can be set to true or false.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>Mobile Client OAuth Application</strong> with scope <strong>mobile.password</strong></li>\n<li>X-EmpowerID-API-Key should be the API Key of the OAuth application <strong>Mobile Client OAuth Application</strong></li>\n</ul>\n","urlObject":{"path":["passwordpolicy","resetmypassword"],"host":["https://YOUR_DOMAIN/api/services/v1"],"query":[],"variable":[]}},"response":[{"id":"21cbcb73-6516-48c8-877c-942a8992309d","name":"Reset My Password Success","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/json"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......","description":"**Required**"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg","description":"**Required**","type":"text"}],"body":{"mode":"raw","raw":"{\n  \"Password\": \"MyT3stP@ss!\",\n  \"UnlockAccounts\": \"true\",\n  \"MustChangePasswordOnNextLogin\": \"true\"\n}","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/passwordpolicy/resetmypassword"},"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"Success\": true,\n    \"Message\": \"EmpowerID\\\\MfaUser101 Password reset successfully\",\n    \"Exception\": null\n}"},{"id":"6854cdd3-51d9-4ddb-af00-659330c9cf3c","name":"Reset My Password Error","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/json"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......","description":"**Required**"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg","description":"**Required**","type":"text"}],"body":{"mode":"raw","raw":"{\n  \"Password\": \"MyPass\",\n  \"UnlockAccounts\": \"true\",\n  \"MustChangePasswordOnNextLogin\": \"true\"\n}","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/passwordpolicy/resetmypassword"},"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"Success\": false,\n    \"Message\": \"<ul>Password does not meet Password Manager Policy\\r\\nEmpowerID\\\\101, MfaUser Person accounts are not locked\\r\\n\",\n    \"Exception\": null\n}"}],"_postman_id":"6a0b1303-402e-4549-af2a-01a96ff3ca8d"},{"name":"Reset Password","id":"1e267582-4359-4220-a5f5-d840b10e9ebd","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json"},{"key":"X-EmpowerID-API-Key","value":"YOUR_API_KEY","description":"<p><strong>Required</strong></p>\n"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n","type":"text"}],"body":{"mode":"raw","raw":"{\n  \"PersonID\": \"<integer>\",\n  \"Password\": \"<string>\",\n  \"UnlockAccounts\": \"<boolean>\",\n  \"MustChangePasswordOnNextLogin\": \"<boolean>\"\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_DOMAIN/api/services/v1/passwordpolicy/resetpassword","description":"<p>ResetPassword API is an <strong>authenticated</strong> endpoint that resets a user's password to new password. Additionally, any associated accounts can be unlocked and must change password on next login can be set to true or false.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>Mobile Client OAuth Application</strong> with scope <strong>mobile.password</strong></li>\n<li>X-EmpowerID-API-Key should be the API Key of the OAuth application <strong>Mobile Client OAuth Application</strong></li>\n</ul>\n","urlObject":{"path":["passwordpolicy","resetpassword"],"host":["https://YOUR_DOMAIN/api/services/v1"],"query":[],"variable":[]}},"response":[],"_postman_id":"1e267582-4359-4220-a5f5-d840b10e9ebd"},{"name":"Create Password Manager Policy","id":"fcd14db4-5809-4c53-87dd-2090399e9b79","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json"},{"key":"X-EmpowerID-API-Key","value":"YOUR_API_KEY","description":"<p><strong>Required</strong></p>\n","type":"text"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n","type":"text"}],"body":{"mode":"raw","raw":"{\n  \"isPasswordReset\": \"<boolean>\",\n  \"bypassPasswordHistory\": \"<boolean>\",\n  \"personId\": \"<integer>\",\n  \"passwordManagerPolicyId\": \"<integer>\",\n  \"isChangePassword\": \"<boolean>\",\n  \"skipPolicy\": \"<boolean>\"\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_DOMAIN/api/services/v1/passwordpolicy/policy","description":"<p>Policy API is an <strong>authenticated</strong> endpoint that creates a new password manager policy in EmpowerID.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>Mobile Client OAuth Application</strong> with scope <strong>mobile.password</strong></li>\n<li>X-EmpowerID-API-Key should be the API Key of the OAuth application <strong>Mobile Client OAuth Application</strong></li>\n</ul>\n","urlObject":{"path":["passwordpolicy","policy"],"host":["https://YOUR_DOMAIN/api/services/v1"],"query":[],"variable":[]}},"response":[],"_postman_id":"fcd14db4-5809-4c53-87dd-2090399e9b79"},{"name":"Get User Information","id":"a3fde6a2-7af8-493f-8e3e-68c63baa33b2","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"X-EmpowerID-API-Key","value":"YOUR_API_KEY","description":"<p><strong>Required</strong></p>\n"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n","type":"text"}],"url":"https://YOUR_DOMAIN/api/services/v1/passwordpolicy/retrieveuserinfo","description":"<p>RetrieveUserInfo API is an <strong>authenticated</strong> endpoint that retrieves the current user's username and email address.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>Mobile Client OAuth Application</strong> with scope <strong>mobile.password</strong></li>\n<li>X-EmpowerID-API-Key should be the API Key of the OAuth application <strong>Mobile Client OAuth Application</strong></li>\n</ul>\n","urlObject":{"path":["passwordpolicy","retrieveuserinfo"],"host":["https://YOUR_DOMAIN/api/services/v1"],"query":[],"variable":[]}},"response":[],"_postman_id":"a3fde6a2-7af8-493f-8e3e-68c63baa33b2"},{"name":"Update User Locale","id":"bec4882f-5b83-475a-8e37-194f627aed83","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json"},{"key":"X-EmpowerID-API-Key","value":"YOUR_API_KEY","description":"<p><strong>Required</strong></p>\n"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n","type":"text"}],"body":{"mode":"raw","raw":"{\n    \"localeId\": \"<integer>\", //OR\n    \"locale\": \"<string>\"\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_DOMAIN/api/services/v1/passwordpolicy/updatelocale","description":"<p>UpdateLocale API is an <strong>authenticated</strong> endpoint that updates the current user's locale.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>Access token should be obtained for OAuth application <strong>Mobile Client OAuth Application</strong> with scope <strong>mobile.password</strong></li>\n<li>X-EmpowerID-API-Key should be the API Key of the OAuth application <strong>Mobile Client OAuth Application</strong></li>\n</ul>\n","urlObject":{"path":["passwordpolicy","updatelocale"],"host":["https://YOUR_DOMAIN/api/services/v1"],"query":[],"variable":[]}},"response":[],"_postman_id":"bec4882f-5b83-475a-8e37-194f627aed83"},{"name":"Validate Policy","id":"af322e77-e195-42bb-a1f7-91d9c193d95f","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"method":"POST","header":[{"key":"Content-Type","value":"application/json"}],"body":{"mode":"raw","raw":"{\n  \"personId\": \"<integer>\",\n  \"password\": \"<string>\",\n  \"isPasswordReset\": \"<boolean>\",\n  \"bypassPasswordHistory\": \"<boolean>\",\n  \"passwordManagerPolicyId\": \"<integer>\",\n  \"isChangePassword\": \"<boolean>\",\n  \"skipPolicy\": \"<boolean>\"\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_DOMAIN/api/services/v1/passwordpolicy/validatepolicy","description":"<p>ValidatePolicy API is an <strong>anonymous</strong> endpoint that validates if a person's password meets the password manager policy requirements and returns the validity of each condition.</p>\n","urlObject":{"path":["passwordpolicy","validatepolicy"],"host":["https://YOUR_DOMAIN/api/services/v1"],"query":[],"variable":[]}},"response":[],"_postman_id":"af322e77-e195-42bb-a1f7-91d9c193d95f"}],"id":"1be64b4d-44ee-4043-ac32-e06770814b64","description":"<p>The Password Policy API endpoints are used to retrieve information about password policies and perform CRUD operations on user passwords.</p>\n","event":[{"listen":"prerequest","script":{"id":"55025464-4072-4513-8a02-efc9512a9b19","type":"text/javascript","exec":[""]}},{"listen":"test","script":{"id":"877a9e09-6358-439f-bdc1-c234ffcd913f","type":"text/javascript","exec":[""]}}],"_postman_id":"1be64b4d-44ee-4043-ac32-e06770814b64"},{"name":"Authorization API","item":[{"name":"Has Access To Resource","id":"abc0ac10-7ab6-4440-91b9-0e6ae01dd267","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"YOUR_API_KEY","description":"<p><strong>Required</strong></p>\n","type":"text"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"<PERSON_ID>\",\r\n    \"resource\": \"<RESOURCE_GUID>\",\r\n    \"operation\": \"<OPERATION_NAME>\",\r\n    \"operationProperties\": null\r\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_DOMAIN/api/services/v1/hasaccess/hasaccesstoresource","description":"<p>Has Access To Resource API is an <strong>authenticated</strong> endpoint that checks if a user has access to a specific resource. The resource can be a protected application, protected control, protected page, protected service (api), document etc.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>X-EmpowerID-API-Key should be the API Key of the OAuth application used to retrieve the access token</li>\n</ul>\n","urlObject":{"path":["hasaccess","hasaccesstoresource"],"host":["https://YOUR_DOMAIN/api/services/v1"],"query":[],"variable":[]}},"response":[{"id":"965e6237-932a-4ff2-b8e0-6b7899e5d000","name":"Has Access To ProtectedControl","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"6064\",\r\n    \"resource\": \"90FE6FBB-EE99-423D-AB86-B0B52113014E\", //ManagementRoleDefinitionViewOnePageUserInterfaceAccess ProtectedControl\r\n    \"operation\": \"Add Resource to Location\",\r\n    \"operationProperties\": null\r\n}","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/hasaccess/hasaccesstoresource"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"false"},{"id":"cb014665-b752-4d4d-b2a4-24038fefc79c","name":"Has Access To API","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"6064\",\r\n    \"resource\": \"5598D660-1526-406C-8C13-3D4FA1116280\", //BusinessRequestItemAPI.CancelRequestItem ProtectedService (API)\r\n    \"operation\": \"use\",\r\n    \"operationProperties\": null\r\n}","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/hasaccess/hasaccesstoresource"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"false"}],"_postman_id":"abc0ac10-7ab6-4440-91b9-0e6ae01dd267"},{"name":"Has Access To Workflow","id":"88972413-f2e9-4af8-9375-433a6c352175","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"YOUR_API_KEY","description":"<p><strong>Required</strong></p>\n","type":"text"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"<PERSON_LOGIN>\",\r\n    \"workflow\": \"<WORKFLOW_NAME>\"\r\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_DOMAIN/api/services/v1/hasaccess/hasaccesstoworkflow","description":"<p>Has Access To Workflow API is an <strong>authenticated</strong> endpoint that checks if a user has access to a specific workflow.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>X-EmpowerID-API-Key should be the API Key of the OAuth application used to retrieve the access token</li>\n</ul>\n","urlObject":{"path":["hasaccess","hasaccesstoworkflow"],"host":["https://YOUR_DOMAIN/api/services/v1"],"query":[],"variable":[]}},"response":[{"id":"de3456b5-624c-424c-a036-8d209a17d2db","name":"Has Access To Workflow","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"amy.radford\",\r\n    \"workflow\": \"AssignGroupToCatalogCategory\"\r\n}","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/hasaccess/hasaccesstoworkflow"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"false"}],"_postman_id":"88972413-f2e9-4af8-9375-433a6c352175"},{"name":"Has Access To Workflows","id":"10fc095f-c679-4731-925d-ddbf2483e03b","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"YOUR_API_KEY","description":"<p><strong>Required</strong></p>\n","type":"text"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"<PERSON_LOGIN>\",\r\n    \"workflows\": \"<WORKFLOW_NAME_1>,<WORKFLOW_NAME_2>,<WORKFLOW_NAME_3>\"\r\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_DOMAIN/api/services/v1/hasaccess/hasaccesstoworkflows","description":"<p>Has Access To Workflows API is an <strong>authenticated</strong> endpoint that checks if a user has access to a set of workflows.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>X-EmpowerID-API-Key should be the API Key of the OAuth application used to retrieve the access token</li>\n</ul>\n","urlObject":{"path":["hasaccess","hasaccesstoworkflows"],"host":["https://YOUR_DOMAIN/api/services/v1"],"query":[],"variable":[]}},"response":[{"id":"4fa32f85-744f-4c6a-9a97-b5ad4ca02047","name":"Has Access To Workflows","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"amy.radford\",\r\n    \"workflows\": \"EditPerson,CreateAsset,CreateGroupsFromFile\"\r\n}","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/hasaccess/hasaccesstoworkflows"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\r\n    \"EditPerson\": false,\r\n    \"CreateAsset\": false,\r\n    \"CreateGroupsFromFile\": true\r\n}"}],"_postman_id":"10fc095f-c679-4731-925d-ddbf2483e03b"},{"name":"Has Access To Page","id":"56dc4c9a-c2f6-4fca-9439-c31b6acd0b63","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"YOUR_API_KEY","description":"<p><strong>Required</strong></p>\n","type":"text"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"<PERSON_LOGIN>\",\r\n    \"page\": \"<PROTECTED_PAGE_GUID>\"\r\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_DOMAIN/api/services/v1/hasaccess/hasaccesstopage","description":"<p>Has Access To Page API is an <strong>authenticated</strong> endpoint that checks if a user has access to a specific protected page.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>X-EmpowerID-API-Key should be the API Key of the OAuth application used to retrieve the access token</li>\n</ul>\n","urlObject":{"path":["hasaccess","hasaccesstopage"],"host":["https://YOUR_DOMAIN/api/services/v1"],"query":[],"variable":[]}},"response":[{"id":"c34b6220-9390-47f9-8c85-58000d2f58aa","name":"Has Access To Page","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"robinallen\",\r\n    \"page\": \"b46b53e6-e576-4f84-aa3d-4bb5378a5f05\"  //AccountInboxSettings page\r\n}","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/hasaccess/hasaccesstopage"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"false"}],"_postman_id":"56dc4c9a-c2f6-4fca-9439-c31b6acd0b63"},{"name":"Has Access To Pages","id":"5e9dedba-cc33-4554-8f28-6106d3e281ad","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"YOUR_API_KEY","description":"<p><strong>Required</strong></p>\n","type":"text"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"<PERSON_LOGIN>\",\r\n    \"pages\": \"<PROTECTED_PAGE_GUID_1>,<PROTECTED_PAGE_GUID_2>\"\r\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_DOMAIN/api/services/v1/hasaccess/hasaccesstopages","description":"<p>Has Access To Pages API is an <strong>authenticated</strong> endpoint that checks if a user has access to a set of protected pages.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>X-EmpowerID-API-Key should be the API Key of the OAuth application used to retrieve the access token</li>\n</ul>\n","urlObject":{"path":["hasaccess","hasaccesstopages"],"host":["https://YOUR_DOMAIN/api/services/v1"],"query":[],"variable":[]}},"response":[{"id":"105ea09d-b0fa-4c53-a621-6a37178fc05e","name":"Has Access To Pages","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"robinallen\",\r\n    \"pages\": \"7C5536CD-9146-4CC0-BC15-3881E95FE604,240E8AAC-9130-4DF4-803F-A7FC990EEEC6\" //CreateRoleMiningCampaign,FindSharedCredentialsPage pages\r\n}","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/hasaccess/hasaccesstopages"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\r\n    \"7C5536CD-9146-4CC0-BC15-3881E95FE604\": false,\r\n    \"240E8AAC-9130-4DF4-803F-A7FC990EEEC6\": true\r\n}"}],"_postman_id":"5e9dedba-cc33-4554-8f28-6106d3e281ad"},{"name":"Get Allowed Controls","id":"ce1e09ac-54ed-4e9f-98e3-d5e9c9102f0b","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"YOUR_API_KEY","description":"<p><strong>Required</strong></p>\n","type":"text"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"<PERSON_LOGIN>\",\r\n    \"application\": \"<PROTECTED_APPLICATION_GUID>\"\r\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_DOMAIN/api/services/v1/hasaccess/getallowedcontrols","description":"<p>Get Allowed Controls API is an <strong>authenticated</strong> endpoint that returns all the visible child controls of a protected application that a user has access to.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>X-EmpowerID-API-Key should be the API Key of the OAuth application used to retrieve the access token</li>\n</ul>\n","urlObject":{"path":["hasaccess","getallowedcontrols"],"host":["https://YOUR_DOMAIN/api/services/v1"],"query":[],"variable":[]}},"response":[{"id":"dd4d5078-22b3-49fa-bd10-f523f2e25276","name":"Get Allowed Controls","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"VA0401\",\r\n    \"application\": \"7ACEF3AB-2C76-4C1A-85DF-52E0EB78B696\"\r\n}","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/hasaccess/getallowedcontrols"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\r\n    \"Results\": [\r\n        \"7acef3ab-2c76-4c1a-85df-52e0eb78b696\",\r\n        \"4bd0110b-d4f0-4390-b63f-b99808330121\",\r\n        \"eeee4b09-ab3f-4ac1-b1d3-06a79ec13551\",\r\n        \"ca944fc2-5320-4281-90b3-f9806ed489bd\",\r\n        \"c27bbd33-d988-4697-868a-7fb3e4cd7536\",\r\n        \"aecba8fc-e4d2-48aa-ab76-d2ef12d5de77\",\r\n        \"0fc7095e-a5ba-481e-913b-87197b35b866\",\r\n        \"37641dac-df82-4c0b-907f-1c6fc5373eda\",\r\n        \"df40df87-d82b-4c93-a851-761ac492a2c5\",\r\n        \"2b9ba7dd-584d-4d80-a155-b50f6c758529\"\r\n    ]\r\n}"}],"_postman_id":"ce1e09ac-54ed-4e9f-98e3-d5e9c9102f0b"},{"name":"Is In Management Role","id":"a1cd78cb-5965-4fee-9abc-28b8da570508","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"YOUR_API_KEY","description":"<p><strong>Required</strong></p>\n","type":"text"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"<PERSON_ID_OR_GUID>\",\r\n    \"managementRole\": \"<MGMT_ROLE_ID_OR_GUID>\"\r\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_DOMAIN/api/services/v1/hasaccess/isinmanagementrole","description":"<p>Is In Management Role API is an <strong>authenticated</strong> endpoint that checks if a user belongs to a specific management role.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>X-EmpowerID-API-Key should be the API Key of the OAuth application used to retrieve the access token</li>\n</ul>\n","urlObject":{"path":["hasaccess","isinmanagementrole"],"host":["https://YOUR_DOMAIN/api/services/v1"],"query":[],"variable":[]}},"response":[{"id":"18244d59-b736-4723-a2ea-dfd6b95773e3","name":"Is In Management Role","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"24\",\r\n    \"managementRole\": \"17374\" //Accounts Payable - Ohio HQ Management Role\r\n}","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/hasaccess/isinmanagementrole"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"true"}],"_postman_id":"a1cd78cb-5965-4fee-9abc-28b8da570508"},{"name":"Has Management Roles","id":"87876130-d92e-4ec0-8dbb-d80bcc5978e3","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"YOUR_API_KEY","description":"<p><strong>Required</strong></p>\n","type":"text"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"<PERSON_ID_OR_GUID>\",\r\n    \"managementRoles\": \"<MGMT_ROLE_ID_OR_GUID_1>,<MGMT_ROLE_ID_OR_GUID_2>\"\r\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_DOMAIN/api/services/v1/hasaccess/hasmanagementroles","description":"<p>Has Management Roles API is an <strong>authenticated</strong> endpoint that checks if a user belongs to a set of management roles.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>X-EmpowerID-API-Key should be the API Key of the OAuth application used to retrieve the access token</li>\n</ul>\n","urlObject":{"path":["hasaccess","hasmanagementroles"],"host":["https://YOUR_DOMAIN/api/services/v1"],"query":[],"variable":[]}},"response":[{"id":"42affeee-2040-4790-869a-12900ed21329","name":"Has Management Roles","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"149233\",\r\n    \"managementRoles\": \"B9CA683A-2FF2-4B75-8C25-1F402B62A2D5,05485CB7-8C28-4A14-96E1-48E42C3550D3\" //VIS-Person-All, EmpowerIDSecurityAlerts roles\r\n}","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/hasaccess/hasmanagementroles"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\r\n    \"B9CA683A-2FF2-4B75-8C25-1F402B62A2D5\": false,\r\n    \"05485CB7-8C28-4A14-96E1-48E42C3550D3\": false\r\n}"}],"_postman_id":"87876130-d92e-4ec0-8dbb-d80bcc5978e3"},{"name":"Is In Group","id":"0b744809-17b1-4e90-9bbb-7ffee8e153f5","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"YOUR_API_KEY","description":"<p><strong>Required</strong></p>\n","type":"text"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"<PERSON_ID_OR_GUID>\",\r\n    \"group\": \"<GROUP_ID_OR_GUID>\"\r\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_DOMAIN/api/services/v1/hasaccess/isingroup","description":"<p>Is In Group API is an <strong>authenticated</strong> endpoint that checks if a user is a member of a specific group.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>X-EmpowerID-API-Key should be the API Key of the OAuth application used to retrieve the access token</li>\n</ul>\n","urlObject":{"path":["hasaccess","isingroup"],"host":["https://YOUR_DOMAIN/api/services/v1"],"query":[],"variable":[]}},"response":[{"id":"ef86cc76-1ff7-4eaf-b8fe-9455bf12ada3","name":"Is In Group","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"8043\",\r\n    \"group\": \"09849bc9-7d36-2b99-3070-c20f1e8b3e78\" //Health Care Provider Group\r\n}","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/hasaccess/isingroup"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"false"}],"_postman_id":"0b744809-17b1-4e90-9bbb-7ffee8e153f5"},{"name":"Has Groups","id":"162cca04-ed0e-4d9d-a48e-1ece1bb3fe66","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"YOUR_API_KEY","description":"<p><strong>Required</strong></p>\n","type":"text"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"<PERSON_ID_OR_GUID>\",\r\n    \"groups\": \"<GROUP_ID_OR_GUID_1>,<GROUP_ID_OR_GUID_2>\"\r\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_DOMAIN/api/services/v1/hasaccess/hasgroups","description":"<p>Has Groups API is an <strong>authenticated</strong> endpoint that checks if a user is a member of a set of groups.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>X-EmpowerID-API-Key should be the API Key of the OAuth application used to retrieve the access token</li>\n</ul>\n","urlObject":{"path":["hasaccess","hasgroups"],"host":["https://YOUR_DOMAIN/api/services/v1"],"query":[],"variable":[]}},"response":[{"id":"e234f85e-8d70-4faa-9a83-380f27c8620b","name":"Has Groups","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"24\",\r\n    \"groups\": \"E46B9D4A-3F9D-4633-88A3-13DCFDA1F8E7,BA0AB645-6B92-4249-B9DF-CBB8888A6881\"  //ISO - G4S Security, RTCUniversalGlobalReadOnlyGroup\r\n}","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/hasaccess/hasgroups"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\r\n    \"E46B9D4A-3F9D-4633-88A3-13DCFDA1F8E7\": false,\r\n    \"BA0AB645-6B92-4249-B9DF-CBB8888A6881\": true\r\n}"}],"_postman_id":"162cca04-ed0e-4d9d-a48e-1ece1bb3fe66"},{"name":"Is In Business Role","id":"faa3419b-03a4-4609-b8b6-8c4cfe1e1297","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"YOUR_API_KEY","description":"<p><strong>Required</strong></p>\n","type":"text"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"<PERSON_ID_OR_GUID>\",\r\n    \"businessRole\": \"<ORGROLE_ID_OR_GUID>\"\r\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_DOMAIN/api/services/v1/hasaccess/isinbusinessrole","description":"<p>Is In Business Role API is an <strong>authenticated</strong> endpoint that checks if a user has a specific business role. This include both primary and secondary business roles.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>X-EmpowerID-API-Key should be the API Key of the OAuth application used to retrieve the access token</li>\n</ul>\n","urlObject":{"path":["hasaccess","isinbusinessrole"],"host":["https://YOUR_DOMAIN/api/services/v1"],"query":[],"variable":[]}},"response":[{"id":"1ef9b7d5-ba43-4ddb-83cf-b6281e678cc0","name":"Is In Business Role","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"2227\",\r\n    \"businessRole\": \"3E65FACD-EC49-453F-AB50-636962D4A5F0\" //Compliance Administrator Role\r\n}","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/hasaccess/isinbusinessrole"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"false"}],"_postman_id":"faa3419b-03a4-4609-b8b6-8c4cfe1e1297"},{"name":"Has Business Roles","id":"3a3a99f7-1104-4bd8-98cc-08afa309c9d5","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"YOUR_API_KEY","description":"<p><strong>Required</strong></p>\n","type":"text"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"<PERSON_ID_OR_GUID>\",\r\n    \"businessroles\": \"<ORGROLE_ID_OR_GUID_1>,<ORGROLE_ID_OR_GUID_2>\"\r\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_DOMAIN/api/services/v1/hasaccess/hasbusinessroles","description":"<p>Has Business Roles API is an <strong>authenticated</strong> endpoint that checks if a user has a set of business roles. This include both primary and secondary business roles.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>X-EmpowerID-API-Key should be the API Key of the OAuth application used to retrieve the access token</li>\n</ul>\n","urlObject":{"path":["hasaccess","hasbusinessroles"],"host":["https://YOUR_DOMAIN/api/services/v1"],"query":[],"variable":[]}},"response":[{"id":"ab84532a-1fc6-4e18-a0f9-16eaad12fe8d","name":"Has Business Roles","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"18560\",\r\n    \"businessRoles\": \"ED308EBA-7F9F-4B8C-A0C5-0ECDB25728F4,003CF90B-F88D-4B84-A810-9D42086437B5\" //Customer, ASPD: National Master Data Supervisor Roles\r\n} ","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/hasaccess/hasbusinessroles"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\r\n    \"ED308EBA-7F9F-4B8C-A0C5-0ECDB25728F4\": true,\r\n    \"003CF90B-F88D-4B84-A810-9D42086437B5\": false\r\n}"}],"_postman_id":"3a3a99f7-1104-4bd8-98cc-08afa309c9d5"},{"name":"Is In Business Role and Location","id":"cfde015c-585e-4479-94e4-16772d18edc1","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"YOUR_API_KEY","description":"<p><strong>Required</strong></p>\n","type":"text"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"<PERSON_ID_OR_GUID>\",\r\n    \"businessRoleAndLocation\": \"<ORGROLE_ORGZONE_ID_OR_GUID>\"\r\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_DOMAIN/api/services/v1/hasaccess/isinbusinessroleandlocation","description":"<p>Is In Business Role and Location API is an <strong>authenticated</strong> endpoint that checks if a user belongs to a specific role and location.</p>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>X-EmpowerID-API-Key should be the API Key of the OAuth application used to retrieve the access token</li>\n</ul>\n","urlObject":{"path":["hasaccess","isinbusinessroleandlocation"],"host":["https://YOUR_DOMAIN/api/services/v1"],"query":[],"variable":[]}},"response":[{"id":"ff76a2b5-2a4d-40fc-8892-657ad46da7b5","name":"Is In Business Role and Location","originalRequest":{"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......","type":"text"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"person\": \"131787\",\r\n    \"businessRoleAndLocation\":\"241C9DB1-0B51-9066-445A-611A133006E4\" //IT Admin in My Organizations \r\n} ","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/hasaccess/isinbusinessroleandlocation"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"false"}],"_postman_id":"cfde015c-585e-4479-94e4-16772d18edc1"}],"id":"6c1ce7ad-9d26-40f2-9660-7daf45d441df","description":"<p>The Authorization APIs check if a user is authorized to access or modify resources defined by RBAC rules.</p>\n","_postman_id":"6c1ce7ad-9d26-40f2-9660-7daf45d441df"},{"name":"Workflow API","item":[{"name":"Start Workflow","id":"416f05f8-c8ca-4d84-b4e2-5234eb7df0c7","protocolProfileBehavior":{"disableBodyPruning":true},"request":{"auth":{"type":"noauth","isInherited":false},"method":"POST","header":[{"key":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"YOUR_API_KEY","description":"<p><strong>Required</strong></p>\n","type":"text"},{"key":"Authorization","value":"Bearer ACCESS_TOKEN","description":"<p><strong>Required</strong></p>\n","type":"text"}],"body":{"mode":"raw","raw":"{\r\n    \"Name\": \"<WORKFLOW_NAME>\",\r\n    \"InputParameters\": {\r\n        \"Target<OBJECT_NAME>\": {\r\n            \"<PROPERTY_1>\": \"<VALUE>\",\r\n            \"<PROPERTY_2>\": \"<VALUE>\",\r\n            \"<PROPERTY_3>\": \"<VALUE>\"\r\n        }\r\n    },\r\n    \"OutputParameters\": [\r\n        {\r\n            \"Target<OBJECT_NAME>\": [\r\n                \"Name\",\r\n                \"FriendlyName\",\r\n                \"<PROPERTY_1>\",\r\n                \"<PROPERTY_2>\"\r\n            ]\r\n        }\r\n    ]\r\n}","options":{"raw":{"language":"json"}}},"url":"https://YOUR_DOMAIN/api/services/v1/workflow/start","description":"<p>Start Workflow API is an <strong>authenticated</strong> endpoint that starts a workflow in EmpowerID. The input parameters will change based on the workflow being invoked.</p>\n<p>The following workflow examples are provided for this API,</p>\n<ul>\n<li>Create Access Level</li>\n<li>Create Protected Application Resource</li>\n<li>Create Protected Page</li>\n<li>Create Protected Page Control</li>\n<li>Create SAML SSO Connection</li>\n</ul>\n<h6 id=\"remarks\">Remarks:</h6>\n<ul>\n<li>X-EmpowerID-API-Key should be the API Key of the OAuth application used to retrieve the access token</li>\n<li>The identity associated with the access token should have sufficient RBAC access to run the workflow</li>\n</ul>\n","urlObject":{"path":["workflow","start"],"host":["https://YOUR_DOMAIN/api/services/v1"],"query":[],"variable":[]}},"response":[{"id":"ba5689d8-6f2e-4ddb-aeb2-b0e735ab6e42","name":"Create Access Level","originalRequest":{"method":"POST","header":[{"key":"Content-Type","name":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg"}],"body":{"mode":"raw","raw":"{ \n  \"Name\": \"ResourceTypeRoleCreate\",\n  \"InputParameters\": \n  {\n    \"TargetResourceTypeRole\" : \n    {\n      \"Description\": \"Test page access level created via API call\", \n      \"FriendlyName\": \"My Page Test Access Level\", \n      \"Name\": \"MyPageTestAccessLevel\",\n      \"Requestable\": \"true\",\n      \"ResourceTypeID\": \"16\",\n      \"ResourceTypeRoleID\": \"-1\"\n    }\n  },\n  \"OutputParameters\": [{\"TargetResourceTypeRole\": [\"Name\", \"FriendlyName\", \"ResourceTypeRoleID\", \"ResourceTypeRoleGUID\"]}]\n}\n","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/workflow/start"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"Id\": 0,\n    \"Name\": \"ResourceTypeRoleCreate\",\n    \"PersonId\": 1871,\n    \"InstanceId\": \"5fdcc9eb-c0cb-4bef-baac-f335c54bc80d\",\n    \"CorrelationId\": \"00000000-0000-0000-0000-000000000000\",\n    \"UIType\": \"None\",\n    \"UIName\": \"\",\n    \"UIData\": null,\n    \"OutputParameters\": {\n        \"TargetResourceTypeRole\": {\n            \"Name\": \"MyPageTestAccessLevel\",\n            \"FriendlyName\": \"My Page Test Access Level\",\n            \"ResourceTypeRoleID\": 3096,\n            \"ResourceTypeRoleGUID\": \"7da88d98-f13a-49c1-8a26-07495c589e34\"\n        }\n    },\n    \"OutputTaskParameters\": null,\n    \"WorkflowState\": \"Completed\",\n    \"DeferredUntil\": \"0001-01-01T00:00:00\",\n    \"Error\": null\n}"},{"id":"ed0ea154-05b0-44be-a7ec-a48435596cb2","name":"Create Protected Application Resource","originalRequest":{"method":"POST","header":[{"key":"Content-Type","name":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg"}],"body":{"mode":"raw","raw":"{ \n  \"Name\": \"CreateApplication\",\n  \"InputParameters\": \n  {\n  \t\"IsApplicationOwner\": \"false\",\n  \t\"TargetProtectedApplication\":\n    {\n      \"ProtectedApplicationResourceTypeID\": 1,  //Protected Application Resource Type\n      \"AccountStoreID\": 0, \n      \"CreateNewAccountStore\": \"false\",\n      \"CreateNewSAMLConnection\": \"false\",\n      \"CreateNewWSFedConnection\": \"false\",\n      \"Description\": \"Test betting application created via API call\", \n      \"FriendlyName\": \"My Test Betting Application\",\n      \"Name\": \"MyTestBettingApplication\",\n      \"OrganizationID\": \"5eb659c4-ef64-448a-8d32-8a45a70f184f\",\n      \"AllowNoAuthForNonProtectedPaths\": \"false\",\n      \"AllowClaimAccount\": \"true\",\n      \"AllowRequestAccount\": \"true\",\n      \"LoginIsEmailAddress\": \"false\",\n      \"IsAllowedForFormsSSO\": \"false\",\n      \"RequiresAccountForSSO\": \"false\",\n      \"UseTargetHostname\": \"false\",\n      \"IsApplicationOwner\": \"false\",\n      \"IsAssignable\": \"true\",\n      \"Requestable\": \"false\",\n      \"ShowInTree\": \"true\"\n    }\n  },\n  \"OutputParameters\": [{\"TargetProtectedApplication\": [\"Name\", \"FriendlyName\", \"ProtectedApplicationResourceID\", \"ProtectedApplicationResourceGUID\", \"ResourceID\"]}]\n}\n","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/workflow/start"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"Id\": 0,\n    \"Name\": \"CreateApplication\",\n    \"PersonId\": 1871,\n    \"InstanceId\": \"cdb641e9-082f-43d2-a223-fd2f6d771acb\",\n    \"CorrelationId\": \"00000000-0000-0000-0000-000000000000\",\n    \"UIType\": \"None\",\n    \"UIName\": \"\",\n    \"UIData\": null,\n    \"OutputParameters\": {\n        \"TargetProtectedApplication\": {\n            \"Name\": \"MyTestBettingApplication\",\n            \"FriendlyName\": \"My Test Betting Application\",\n            \"ProtectedApplicationResourceID\": 22800,\n            \"ProtectedApplicationResourceGUID\": \"39a4fd25-7fc6-4dec-b157-2aa3ca903d16\",\n            \"ResourceID\": 15289\n        }\n    },\n    \"OutputTaskParameters\": null,\n    \"WorkflowState\": \"Completed\",\n    \"DeferredUntil\": \"0001-01-01T00:00:00\",\n    \"Error\": null\n}"},{"id":"99bd4c74-72b0-47b9-acc0-7be656d49368","name":"Create Protected Page","originalRequest":{"method":"POST","header":[{"key":"Content-Type","name":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg"}],"body":{"mode":"raw","raw":"{ \n  \"Name\": \"CreateApplication\",\n  \"InputParameters\": \n  {\n  \t\"IsApplicationOwner\": \"false\",\n  \t\"TargetProtectedApplication\":\n    {\n    \t\"Name\": \"ApplyBetPage\",\n        \"Description\": \"Page for applying a bet\", \n        \"FriendlyName\": \"Apply Bet Page\",\n        \"ParentID\": \"22800\",\n        \"ProtectedApplicationResourceTypeID\": \"2\",  //Protected Page Type\n        \"Requestable\": \"false\"\n    }\n  },\n  \"OutputParameters\": [{\"TargetProtectedApplication\": [\"Name\", \"FriendlyName\", \"ProtectedApplicationResourceID\", \"ProtectedApplicationResourceGUID\", \"ResourceID\"]}]\n}","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/workflow/start"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"Id\": 0,\n    \"Name\": \"CreateApplication\",\n    \"PersonId\": 1871,\n    \"InstanceId\": \"ccc6d07b-5f02-46c7-96bf-3ac95050574a\",\n    \"CorrelationId\": \"00000000-0000-0000-0000-000000000000\",\n    \"UIType\": \"None\",\n    \"UIName\": \"\",\n    \"UIData\": null,\n    \"OutputParameters\": {\n        \"TargetProtectedApplication\": {\n            \"Name\": \"ApplyBetPage\",\n            \"FriendlyName\": \"Apply Bet Page\",\n            \"ProtectedApplicationResourceID\": 22801,\n            \"ProtectedApplicationResourceGUID\": \"52018ca0-1468-42d3-951c-887f6111f011\",\n            \"ResourceID\": 15289\n        }\n    },\n    \"OutputTaskParameters\": null,\n    \"WorkflowState\": \"Completed\",\n    \"DeferredUntil\": \"0001-01-01T00:00:00\",\n    \"Error\": null\n}"},{"id":"f982718a-0ca0-4887-a1cb-9334358dc774","name":"Create Protected Page Control","originalRequest":{"method":"POST","header":[{"key":"Content-Type","name":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg"}],"body":{"mode":"raw","raw":"{ \n  \"Name\": \"CreateApplication\",\n  \"InputParameters\": \n  {\n  \t\"IsApplicationOwner\": \"false\",\n  \t\"TargetProtectedApplication\":\n    {\n    \t\"Name\": \"CountryDropDown\",\n        \"Description\": \"Country Drop Down on apply bet page\", \n        \"FriendlyName\": \"Country Drop Down\",\n        \"ParentID\": \"22801\",\n        \"ProtectedApplicationResourceTypeID\": \"3\",  //Protected Page Control Type\n        \"Requestable\": \"false\"\n    }\n  },\n  \"OutputParameters\": [{\"TargetProtectedApplication\": [\"Name\", \"FriendlyName\", \"ProtectedApplicationResourceID\", \"ProtectedApplicationResourceGUID\", \"ResourceID\"]}]\n}","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/workflow/start"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"Id\": 0,\n    \"Name\": \"CreateApplication\",\n    \"PersonId\": 18971,\n    \"InstanceId\": \"b7de89e4-1d6f-427d-97c2-670570f8bed1\",\n    \"CorrelationId\": \"00000000-0000-0000-0000-000000000000\",\n    \"UIType\": \"None\",\n    \"UIName\": \"\",\n    \"UIData\": null,\n    \"OutputParameters\": {\n        \"TargetProtectedApplication\": {\n            \"Name\": \"CountryDropDown\",\n            \"FriendlyName\": \"Country Drop Down\",\n            \"ProtectedApplicationResourceID\": 22802,\n            \"ProtectedApplicationResourceGUID\": \"21c49802-973b-49c2-96a7-b5af79931d8f\",\n            \"ResourceID\": 15289\n        }\n    },\n    \"OutputTaskParameters\": null,\n    \"WorkflowState\": \"Completed\",\n    \"DeferredUntil\": \"0001-01-01T00:00:00\",\n    \"Error\": null\n}"},{"id":"40b46d68-8af7-4757-bc7f-157725fa2f74","name":"Create SAML SSO Connection","originalRequest":{"method":"POST","header":[{"key":"Content-Type","name":"Content-Type","value":"application/json","type":"text"},{"key":"X-EmpowerID-API-Key","value":"3742b350-8a15-47da-bff4......"},{"key":"Authorization","value":"Bearer eyJhbGciOiJSUzI1NiIsImtpZ......6Up6lnhJ3x1UzP5cyCGDg"}],"body":{"mode":"raw","raw":"{\n    \"Name\": \"CreateSamlSingleSignOn\",\n    \"InputParameters\": {\n        \"TargetSAMLSingleSignOn\": {\n            \"Name\": \"MyTestSAMLApp\",\n            \"FriendlyName\": \"My Test SAML App\",\n            \"Description\": \"Test SAML APP for testing Login and SSO\",\n            \"OrganizationID\": \"5eb659c4-ef64-448a-8d32-8a45a70f184f\",\n            \"ImageURL\": \"~/Images/AppLogos/Genric-1.png\",\n            \"Issuer\": \"EmpowerID\",\n            \"TargetURL\": \"/WebIdPForms/Login/MyTestSAMLApp\",\n            \"LogoutURL\": \"https://mytestsamlapp.net/Saml2/Logout\",\n            \"LogoutSAMLBindingURIIdentifierID\": 2,\n            \"SAMLSingleSignOnTypeID\": \"1\",\n            \"SAMLBindingURIIdentifierID\": \"2\",\n            \"SAMLNameIdentifierFormatID\": \"6\",\n            \"CreateNewAttributeStatement\": false,\n            \"ConditionsDays\": 0,\n            \"ConditionsHours\": 1,\n            \"ConditionsMinutes\": 0,\n            \"ConditionsSeconds\": 0\n        },\n        \"TargetSigningCertificate\": {\n            \"CertificateStoreID\": 178\n        },\n        \"TargetListDataItemSet\": {\n            \"ListDataItemSetID\": 1031\n        },\n        \"HasAttributeStatement\": false,\n        //To create a new tracking only account store\n        \"CreateNewAccountStore\": false,\n        \"TargetAccountStore\": null,\n        //To set an existing account store\n        //\"CreateNewAccountStore\": true,\n        //\"TargetAccountStore\": {\n            //\"AccountStoreID\": 0\n        //},\n        \"AcsUrlsToAdd\": [\n            {\n                \"AssertionConsumerUrl\": \"https://mytestsamlapp.net/SAML2/acs\",\n                \"FriendlyName\": \"ACS page\",\n                \"Priority\": \"0\",\n                \"SAMLBindingURIIdentifierID\": 2\n            }\n        ]\n    },\n    \"OutputParameters\": [{\"TargetSAMLSingleSignOn\": [\"Name\", \"FriendlyName\", \"SAMLSingleSignOnID\", \"SAMLSingleSignOnGUID\"]}]\n}","options":{"raw":{"language":"json"}}},"url":"https://sso.empoweriam.com/api/services/v1/workflow/start"},"status":"OK","code":200,"_postman_previewlanguage":"json","header":null,"cookie":[],"responseTime":null,"body":"{\n    \"Id\": 0,\n    \"Name\": \"CreateSamlSingleSignOn\",\n    \"PersonId\": 1871,\n    \"InstanceId\": \"6023152c-78f6-47a8-ad9a-6e045f558991\",\n    \"CorrelationId\": \"00000000-0000-0000-0000-000000000000\",\n    \"UIType\": \"None\",\n    \"UIName\": \"\",\n    \"UIData\": null,\n    \"OutputParameters\": {\n        \"TargetSAMLSingleSignOn\": {\n            \"Name\": \"MyTestSAMLApp\",\n            \"FriendlyName\": \"My Test SAML App\",\n            \"SAMLSingleSignOnID\": 1691,\n            \"SAMLSingleSignOnGUID\": \"aa47c514-f9b2-4025-aab0-06379fg2f1de\"\n        }\n    },\n    \"OutputTaskParameters\": null,\n    \"WorkflowState\": \"Completed\",\n    \"DeferredUntil\": \"0001-01-01T00:00:00\",\n    \"Error\": null\n}"}],"_postman_id":"416f05f8-c8ca-4d84-b4e2-5234eb7df0c7"}],"id":"cddcda48-7fb8-4704-ae6a-859cc541d38b","description":"<p>Any Out-Of-the-Box or Custom workflow developed in EmpowerID can be invoked via REST API calls provided the caller has sufficient RBAC access to run the workflow. The Workflow API provides examples for invoking a few common workflows as such create application, page, sso connection etc.</p>\n<p>Refer to the EmpowerID Docs - <a href=\"https://dotnetworkflow.jira.com/wiki/spaces/EDG/pages/454252467/Web+API\">Web API</a> for the setup/configuration process prior to invoking the APIs.</p>\n","_postman_id":"cddcda48-7fb8-4704-ae6a-859cc541d38b"}],"event":[{"listen":"prerequest","script":{"id":"5084d6e6-3fe2-44c3-921b-b0f5770acba2","type":"text/javascript","exec":[""]}},{"listen":"test","script":{"id":"26c9edcd-c03f-433a-b81a-9bff9732e25c","type":"text/javascript","exec":[""]}}],"variable":[{"key":"version","value":"v1"},{"key":"baseUrl","value":"https://YOUR_DOMAIN/api/services/v1"},{"key":"environment","value":"YOUR_DOMAIN"},{"key":"api_key","value":"YOUR_API_KEY"},{"key":"client_id","value":"YOUR_CLIENT_ID"},{"key":"client_secret","value":"YOUR_CLIENT_SECRET"},{"key":"access_token","value":"ACCESS_TOKEN"},{"key":"scim_vds_url","value":"YOUR_SCIM_VDS_DOMAIN"},{"key":"acs_name","value":"ACCOUNT_STORE_NAME"},{"key":"account_name","value":"ACCOUNT_LOGON_NAME"},{"key":"person_login","value":"PERSON_LOGIN"},{"key":"group_logon_name","value":"GROUP_LOGON_NAME"},{"key":"mgmt_role_name","value":"MGMT_ROLE_NAME"},{"key":"oroz_friendlyname","value":"OROZ_FRIENDLY_NAME"}]}