04-06-2023 12:17 AM
Hi team,
I've followed the instructions and still get authorization errors while using openVulnQuery. So, I've registered an app on apiconsole.cisco.com with app type Service and grant type Client Credentials for Cisco PSIRT openVuln API. Unfortunately, the provided client id and secret don't seem to work.
Using the credentials with Postman, I can get the Bearer token but subsequent queries fail with "Not Authorized".
Using openVulnQuery, I get the following error messages:
requests.exceptions.HTTPError: 401 Client Error: Unauthorized for url: https://cloudsso.cisco.com/as/token.oauth2?client_id=p3bfx...&client_secret=WRCD...
What's wrong here? Any help would be appreciated.
cheers
rene
Solved! Go to Solution.
04-10-2023 07:19 PM - edited 04-10-2023 07:34 PM
Hello Rene,
Application registered before March 1,2023 will be using URL https://cloudsso.cisco.com/as/token.oauth2 (being deprecated). For Application created beginning March 1, 2023 you will use https://id.cisco.com/oauth2/default/v1/token.
See https://raw.githubusercontent.com/api-at-cisco/Images/master/Whats_New_Doc.pdf for more information.
HTH
04-10-2023 07:19 PM - edited 04-10-2023 07:34 PM
Hello Rene,
Application registered before March 1,2023 will be using URL https://cloudsso.cisco.com/as/token.oauth2 (being deprecated). For Application created beginning March 1, 2023 you will use https://id.cisco.com/oauth2/default/v1/token.
See https://raw.githubusercontent.com/api-at-cisco/Images/master/Whats_New_Doc.pdf for more information.
HTH
04-11-2023 12:36 AM
Thanks Paul, great information. I did not recognize the new domain for the API endpoint. It helped to get my Postman queries working now.
openVulnQuery (https://github.com/CiscoPSIRT/openVulnQuery) still does not work with old token generation URL.
cheers
rene
04-11-2023 12:45 AM
04-12-2023 03:25 PM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide