curl --request POST \
--url https://{tenantDomain}.conductor.one/api/v1/tb-control-plane/discovery \
--header 'Authorization: Bearer <token>' \
--header 'Content-Type: application/json' \
--data '
{
"credentials": [
"<string>"
],
"destinations": {},
"ingressScopes": [
"<string>"
],
"postures": [
"<string>"
],
"principals": [
"<string>"
],
"routes": [
"<string>"
],
"tbInstanceId": "<string>"
}
'import requests
url = "https://{tenantDomain}.conductor.one/api/v1/tb-control-plane/discovery"
payload = {
"credentials": ["<string>"],
"destinations": {},
"ingressScopes": ["<string>"],
"postures": ["<string>"],
"principals": ["<string>"],
"routes": ["<string>"],
"tbInstanceId": "<string>"
}
headers = {
"Authorization": "Bearer <token>",
"Content-Type": "application/json"
}
response = requests.post(url, json=payload, headers=headers)
print(response.text)const options = {
method: 'POST',
headers: {Authorization: 'Bearer <token>', 'Content-Type': 'application/json'},
body: JSON.stringify({
credentials: ['<string>'],
destinations: {},
ingressScopes: ['<string>'],
postures: ['<string>'],
principals: ['<string>'],
routes: ['<string>'],
tbInstanceId: '<string>'
})
};
fetch('https://{tenantDomain}.conductor.one/api/v1/tb-control-plane/discovery', options)
.then(res => res.json())
.then(res => console.log(res))
.catch(err => console.error(err));<?php
$curl = curl_init();
curl_setopt_array($curl, [
CURLOPT_URL => "https://{tenantDomain}.conductor.one/api/v1/tb-control-plane/discovery",
CURLOPT_RETURNTRANSFER => true,
CURLOPT_ENCODING => "",
CURLOPT_MAXREDIRS => 10,
CURLOPT_TIMEOUT => 30,
CURLOPT_HTTP_VERSION => CURL_HTTP_VERSION_1_1,
CURLOPT_CUSTOMREQUEST => "POST",
CURLOPT_POSTFIELDS => json_encode([
'credentials' => [
'<string>'
],
'destinations' => [
],
'ingressScopes' => [
'<string>'
],
'postures' => [
'<string>'
],
'principals' => [
'<string>'
],
'routes' => [
'<string>'
],
'tbInstanceId' => '<string>'
]),
CURLOPT_HTTPHEADER => [
"Authorization: Bearer <token>",
"Content-Type: application/json"
],
]);
$response = curl_exec($curl);
$err = curl_error($curl);
curl_close($curl);
if ($err) {
echo "cURL Error #:" . $err;
} else {
echo $response;
}package main
import (
"fmt"
"strings"
"net/http"
"io"
)
func main() {
url := "https://{tenantDomain}.conductor.one/api/v1/tb-control-plane/discovery"
payload := strings.NewReader("{\n \"credentials\": [\n \"<string>\"\n ],\n \"destinations\": {},\n \"ingressScopes\": [\n \"<string>\"\n ],\n \"postures\": [\n \"<string>\"\n ],\n \"principals\": [\n \"<string>\"\n ],\n \"routes\": [\n \"<string>\"\n ],\n \"tbInstanceId\": \"<string>\"\n}")
req, _ := http.NewRequest("POST", url, payload)
req.Header.Add("Authorization", "Bearer <token>")
req.Header.Add("Content-Type", "application/json")
res, _ := http.DefaultClient.Do(req)
defer res.Body.Close()
body, _ := io.ReadAll(res.Body)
fmt.Println(string(body))
}HttpResponse<String> response = Unirest.post("https://{tenantDomain}.conductor.one/api/v1/tb-control-plane/discovery")
.header("Authorization", "Bearer <token>")
.header("Content-Type", "application/json")
.body("{\n \"credentials\": [\n \"<string>\"\n ],\n \"destinations\": {},\n \"ingressScopes\": [\n \"<string>\"\n ],\n \"postures\": [\n \"<string>\"\n ],\n \"principals\": [\n \"<string>\"\n ],\n \"routes\": [\n \"<string>\"\n ],\n \"tbInstanceId\": \"<string>\"\n}")
.asString();require 'uri'
require 'net/http'
url = URI("https://{tenantDomain}.conductor.one/api/v1/tb-control-plane/discovery")
http = Net::HTTP.new(url.host, url.port)
http.use_ssl = true
request = Net::HTTP::Post.new(url)
request["Authorization"] = 'Bearer <token>'
request["Content-Type"] = 'application/json'
request.body = "{\n \"credentials\": [\n \"<string>\"\n ],\n \"destinations\": {},\n \"ingressScopes\": [\n \"<string>\"\n ],\n \"postures\": [\n \"<string>\"\n ],\n \"principals\": [\n \"<string>\"\n ],\n \"routes\": [\n \"<string>\"\n ],\n \"tbInstanceId\": \"<string>\"\n}"
response = http.request(request)
puts response.read_body{
"snapshot": {
"createdAt": "2023-11-07T05:31:56Z",
"credentials": [
"<string>"
],
"destinations": {},
"ingressScopes": [
"<string>"
],
"postures": [
"<string>"
],
"principals": [
"<string>"
],
"reportedAt": "2023-11-07T05:31:56Z",
"routes": [
"<string>"
],
"tbInstanceId": "<string>",
"tenantId": "<string>",
"updatedAt": "2023-11-07T05:31:56Z"
}
}Push Discovery
PushDiscovery records the vocabulary a Time Bandit instance reports for itself — principal, scope, destination, credential recipe, posture and route names — replacing any prior snapshot. Called by timebanditd when its local configuration changes.
curl --request POST \
--url https://{tenantDomain}.conductor.one/api/v1/tb-control-plane/discovery \
--header 'Authorization: Bearer <token>' \
--header 'Content-Type: application/json' \
--data '
{
"credentials": [
"<string>"
],
"destinations": {},
"ingressScopes": [
"<string>"
],
"postures": [
"<string>"
],
"principals": [
"<string>"
],
"routes": [
"<string>"
],
"tbInstanceId": "<string>"
}
'import requests
url = "https://{tenantDomain}.conductor.one/api/v1/tb-control-plane/discovery"
payload = {
"credentials": ["<string>"],
"destinations": {},
"ingressScopes": ["<string>"],
"postures": ["<string>"],
"principals": ["<string>"],
"routes": ["<string>"],
"tbInstanceId": "<string>"
}
headers = {
"Authorization": "Bearer <token>",
"Content-Type": "application/json"
}
response = requests.post(url, json=payload, headers=headers)
print(response.text)const options = {
method: 'POST',
headers: {Authorization: 'Bearer <token>', 'Content-Type': 'application/json'},
body: JSON.stringify({
credentials: ['<string>'],
destinations: {},
ingressScopes: ['<string>'],
postures: ['<string>'],
principals: ['<string>'],
routes: ['<string>'],
tbInstanceId: '<string>'
})
};
fetch('https://{tenantDomain}.conductor.one/api/v1/tb-control-plane/discovery', options)
.then(res => res.json())
.then(res => console.log(res))
.catch(err => console.error(err));<?php
$curl = curl_init();
curl_setopt_array($curl, [
CURLOPT_URL => "https://{tenantDomain}.conductor.one/api/v1/tb-control-plane/discovery",
CURLOPT_RETURNTRANSFER => true,
CURLOPT_ENCODING => "",
CURLOPT_MAXREDIRS => 10,
CURLOPT_TIMEOUT => 30,
CURLOPT_HTTP_VERSION => CURL_HTTP_VERSION_1_1,
CURLOPT_CUSTOMREQUEST => "POST",
CURLOPT_POSTFIELDS => json_encode([
'credentials' => [
'<string>'
],
'destinations' => [
],
'ingressScopes' => [
'<string>'
],
'postures' => [
'<string>'
],
'principals' => [
'<string>'
],
'routes' => [
'<string>'
],
'tbInstanceId' => '<string>'
]),
CURLOPT_HTTPHEADER => [
"Authorization: Bearer <token>",
"Content-Type: application/json"
],
]);
$response = curl_exec($curl);
$err = curl_error($curl);
curl_close($curl);
if ($err) {
echo "cURL Error #:" . $err;
} else {
echo $response;
}package main
import (
"fmt"
"strings"
"net/http"
"io"
)
func main() {
url := "https://{tenantDomain}.conductor.one/api/v1/tb-control-plane/discovery"
payload := strings.NewReader("{\n \"credentials\": [\n \"<string>\"\n ],\n \"destinations\": {},\n \"ingressScopes\": [\n \"<string>\"\n ],\n \"postures\": [\n \"<string>\"\n ],\n \"principals\": [\n \"<string>\"\n ],\n \"routes\": [\n \"<string>\"\n ],\n \"tbInstanceId\": \"<string>\"\n}")
req, _ := http.NewRequest("POST", url, payload)
req.Header.Add("Authorization", "Bearer <token>")
req.Header.Add("Content-Type", "application/json")
res, _ := http.DefaultClient.Do(req)
defer res.Body.Close()
body, _ := io.ReadAll(res.Body)
fmt.Println(string(body))
}HttpResponse<String> response = Unirest.post("https://{tenantDomain}.conductor.one/api/v1/tb-control-plane/discovery")
.header("Authorization", "Bearer <token>")
.header("Content-Type", "application/json")
.body("{\n \"credentials\": [\n \"<string>\"\n ],\n \"destinations\": {},\n \"ingressScopes\": [\n \"<string>\"\n ],\n \"postures\": [\n \"<string>\"\n ],\n \"principals\": [\n \"<string>\"\n ],\n \"routes\": [\n \"<string>\"\n ],\n \"tbInstanceId\": \"<string>\"\n}")
.asString();require 'uri'
require 'net/http'
url = URI("https://{tenantDomain}.conductor.one/api/v1/tb-control-plane/discovery")
http = Net::HTTP.new(url.host, url.port)
http.use_ssl = true
request = Net::HTTP::Post.new(url)
request["Authorization"] = 'Bearer <token>'
request["Content-Type"] = 'application/json'
request.body = "{\n \"credentials\": [\n \"<string>\"\n ],\n \"destinations\": {},\n \"ingressScopes\": [\n \"<string>\"\n ],\n \"postures\": [\n \"<string>\"\n ],\n \"principals\": [\n \"<string>\"\n ],\n \"routes\": [\n \"<string>\"\n ],\n \"tbInstanceId\": \"<string>\"\n}"
response = http.request(request)
puts response.read_body{
"snapshot": {
"createdAt": "2023-11-07T05:31:56Z",
"credentials": [
"<string>"
],
"destinations": {},
"ingressScopes": [
"<string>"
],
"postures": [
"<string>"
],
"principals": [
"<string>"
],
"reportedAt": "2023-11-07T05:31:56Z",
"routes": [
"<string>"
],
"tbInstanceId": "<string>",
"tenantId": "<string>",
"updatedAt": "2023-11-07T05:31:56Z"
}
}Authorizations
Bearer authentication header of the form Bearer <token>, where <token> is your auth token.
This API uses OAuth2 with the Client Credential flow. Client Credentials must be sent in the BODY, not the headers. For an example of how to implement this, refer to the c1TokenSource.Token() function.
Body
The TBControlPlaneServicePushDiscoveryRequest message.
The credentials field.
The destinations field.
Show child attributes
Show child attributes
The ingressScopes field.
The postures field.
The principals field.
The routes field.
The tbInstanceId field.
Response
Successful response
The TBControlPlaneServicePushDiscoveryResponse message.
TBDiscoverySnapshot is one Time Bandit instance's self-reported vocabulary: the principals, ingress scopes, destinations, credential recipe names, posture names, and route names it knows about. Names only -- never token values or credential material.
Dynamo-only: the control plane has no query pattern that needs Postgres (lookup is always a direct tenant_id+tb_instance_id get).
Show child attributes
Show child attributes
Was this page helpful?