To change the certificate revocation list refresh interval, send the following request:
POST https://<IA_IP_address>:<port_number>/config/v1/auth/x509/crl/refresh
Note
To use this request, your user account must have sudo access.
Required headers:
Cookie: px=<token> X-Username: <user> X-Role: <role> Content type: application/json
Request body:
{
"retrievalInterval": int
}Options
IA_IP_address—The IP address of the NDR appliance running the NDR API.
port_number—The port number of the NDR appliance running the NDR API.
token—This token authenticates the session. By default, the session times out after 24 hours.
user—The user ID.
role—The user's role.
Content type—Response should be in JSON.
Example
POST https://xxx.xxx.xxx.xxx:443/config/v1/auth/x509/crl/refresh
POST https://xxx.xxx.xxx.xxx:443/config/v1/auth/x509/crl/refresh
Required headers:
Cookie: px=xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx X-Username: wheel X-Role: wheel
Update CRL refresh interval: Response
HTTP/1.1 [Response Code] [Response Message]
Server: [Server]
Date: [Date]
Content-Type: [Content Type]
{
"retrievalInterval": int
}Response fields
Response code—A standard HTTP response code.
200—Request successful; the configuration was successful.
Response message—A standard HTTP response message.
OK—Request successful; the configuration was successful.
Server—The server being used.
Date—Standard HTML date format.
Content type—The response format.
2fa_state—The two-factor authentication state of the specified user.
Example
HTTP/1.1 200 OK
Server: nginx
Date: Fri, 16 Aug 2019 11:31:49 GMT
Content-Type: application/json; charset=utf-8
{
"retrievalInterval": 0
}cURL code sample: Update CRL refresh interval
curl -k -X POST --cookie "px=xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx" -H "Content-Type: application/json" -H "X-Username: wheel" -H "X-Role: wheel" https://xxx.xxx.xxx.xxx:443/config/v1/auth/x509/crl/refresh -d @request.json
This cURL sample includes the following options:
-k—This option explicitly allows cURL to perform insecure SSL connections and transfers, which allows you to test your SSL connection without installing a CA certificate.-X POST—Specifies using the POST method.--cookie "px=xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx"—This option specifies the authentication token for this session.-H "Content-Type: application/json"—Specifies that the response should be in JSON.-H "X-Username: wheel"—User name.-H "X-Role: wheel"—User role.https://xxx.xxx.xxx.xxx:443/config/v1/auth/x509/crl/refresh—The CRL request URL. Replacexxx.xxx.xxx.xxxwith the IP address of your NDR appliance.-d @request.json—Specifies the file containing the request body.
Results
This example changes the CRL refresh interval.