Palo Alto Networks Control Plane Resource API

The Control Plane Resource API API from Palo Alto Networks — 9 operation(s) for control plane resource api.

Operations 12

GET /mt/manage/5g/control/cert/download Download Security Certificate #
GET /mt/manage/5g/control/proxycert Verify Certificate Status #
POST /mt/manage/5g/control/proxycert/upload Upload Proxy Certificate #
GET /mt/manage/5g/control/radiusProxy Fetch Proxy Secret #
POST /mt/manage/5g/control/radiusProxy Configure Radius Proxy #
GET /mt/manage/5g/control/radiusSecret View Radius Secret #
POST /mt/manage/5g/control/radiusSecret Set Radius Secret #
GET /mt/manage/5g/control/radiusServers List Radius Servers #
GET /mt/manage/5g/control/supported/interfaces List Supported Interfaces #
GET /mt/manage/5g/control/interface Show Selected Interface #
POST /mt/manage/5g/control/interface Assign Network Interface #
PUT /mt/manage/5g/control/interimMsg Update Message Intervals #

Work with this as data

Every API here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for apis

7 MCP tools reach this
  • find_apisBrowse and filter every API in the catalog.
  • get_api_artifactsOne API's artifacts, grouped by type.
  • get_openapiThe primary OpenAPI for this API.
  • find_similar_apisAPIs that look like this one.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This API
curl "https://apis.io/api/v1/apis/palo-alto-networks-control-plane-resource-api-api"
All apis
curl "https://apis.io/api/v1/apis?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.

OpenAPI Specification

palo-alto-networks-control-plane-resource-api-api-openapi.yml Raw ↑
openapi: 3.2.0
info:
  title: SASE 5G Manage Service Control Plane Resource API
  version: '1.0'
  description: 'The SASE 5G Management Service provides the administrative framework required to provision,

    configure, and oversee 5G security infrastructure within the Strata Cloud Manager (SCM) ecosystem.'
servers:
- url: https://stratacloudmanager.paloaltonetworks.com
security:
- JWT: []
tags:
- name: Control Plane Resource API
paths:
  /mt/manage/5g/control/cert/download:
    get:
      tags:
      - Control Plane Resource API
      summary: Download Security Certificate
      description: 'Exports the security certificate required to enable 5G connectivity for a specific region.

        Administrators download this file to the local control plane during the activation phase

        to authenticate regional 5G nodes securely. This step is mandatory before regional

        traffic paths can be established.'
      responses:
        '200':
          description: Success
        '400':
          description: Bad Request
        '404':
          description: Data Not Found
        '500':
          description: Server Error
      operationId: GetMtManage5gControlCertDownload
  /mt/manage/5g/control/proxycert:
    get:
      tags:
      - Control Plane Resource API
      summary: Verify Certificate Status
      description: 'Validates whether a proxy certificate exists within the root TSG configuration.

        Engineers perform this check during pre-activation to ensure the control plane

        is prepared for encrypted signaling before establishing child tenant connectivity.

        This prevents signaling failures during regional onboarding.'
      responses:
        '200':
          description: Success
        '400':
          description: Bad Request
        '404':
          description: Data Not Found
        '500':
          description: Server Error
      operationId: GetMtManage5gControlProxycert
  /mt/manage/5g/control/proxycert/upload:
    post:
      tags:
      - Control Plane Resource API
      summary: Upload Proxy Certificate
      description: 'Injects a proxy certificate into the root TSG via multipart form-data to facilitate

        secure 5G control plane communications. Users execute this during gateway configuration

        to establish encrypted regional signaling paths. The management plane validates the

        file format before committing the record.'
      requestBody:
        content:
          multipart/form-data:
            schema:
              type: object
              properties:
                file:
                  format: binary
                  type: string
                filename:
                  type: string
                tsgId:
                  type: string
                rootTsgId:
                  type: string
            encoding:
              file:
                contentType: application/octet-stream
      responses:
        '200':
          description: Success
        '400':
          description: Bad Request
        '404':
          description: Data Not Found
        '500':
          description: Server Error
      operationId: PostMtManage5gControlProxycertUpload
  /mt/manage/5g/control/radiusProxy:
    get:
      tags:
      - Control Plane Resource API
      summary: Fetch Proxy Secret
      description: 'Retrieves the Radius server shared secret associated with the root TSG. Administrators

        call this during system audits to verify authentication credentials between the 5G

        control plane and Radius infrastructure. The response ensures that the management

        plane retains the correct shared keys for secure access.'
      responses:
        '200':
          description: Success
        '400':
          description: Bad Request
        '404':
          description: Data Not Found
        '500':
          description: Server Error
      operationId: GetMtManage5gControlRadiusproxy
    post:
      tags:
      - Control Plane Resource API
      summary: Configure Radius Proxy
      description: 'Assigns a Radius server shared secret to the root TSG to manage authentication traffic.

        Security teams perform this during integration to bridge 5G access requests with

        existing Radius authentication services. Configuration involves mapping the server

        name to its specific IP Address address within the management plane.'
      requestBody:
        content:
          application/json:
            schema:
              $ref: '#/components/schemas/RadiusProxyRequest'
      responses:
        '200':
          description: Success
        '400':
          description: Bad Request
        '404':
          description: Data Not Found
        '500':
          description: Server Error
      operationId: PostMtManage5gControlRadiusproxy
  /mt/manage/5g/control/radiusSecret:
    get:
      tags:
      - Control Plane Resource API
      summary: View Radius Secret
      description: 'Displays the active Radius server shared secret for the root TSG. Technical leads

        use this when troubleshooting authentication failures to ensure secrets match the

        on-premise Radius server configuration. This visibility is restricted to authorized

        management plane users.'
      responses:
        '200':
          description: Success
        '400':
          description: Bad Request
        '404':
          description: Data Not Found
        '500':
          description: Server Error
      operationId: GetMtManage5gControlRadiussecret
    post:
      tags:
      - Control Plane Resource API
      summary: Set Radius Secret
      description: 'Updates the Radius server shared secret for the root TSG. Administrators use this

        during credential rotation or initial onboarding to secure communication between

        SASE components and external authentication servers. Changes are applied

        immediately across the regional control plane.'
      requestBody:
        content:
          application/json:
            schema:
              $ref: '#/components/schemas/RadiusServerSecretRequest'
      responses:
        '200':
          description: Success
        '400':
          description: Bad Request
        '404':
          description: Data Not Found
        '500':
          description: Server Error
      operationId: PostMtManage5gControlRadiussecret
  /mt/manage/5g/control/radiusServers:
    get:
      tags:
      - Control Plane Resource API
      summary: List Radius Servers
      description: 'Lists Radius server details currently configured for 5G connectivity in a specific

        region. Infrastructure teams audit this information to verify which authentication

        nodes are active within the service environment and ensure regional redundancy.'
      responses:
        '200':
          description: Success
        '400':
          description: Bad Request
        '404':
          description: Data Not Found
        '500':
          description: Server Error
      operationId: GetMtManage5gControlRadiusservers
  /mt/manage/5g/control/supported/interfaces:
    get:
      tags:
      - Control Plane Resource API
      summary: List Supported Interfaces
      description: 'Displays available network interfaces compatible with 5G control plane integration.

        Network engineers reference this list during planning to determine the correct

        connection types for specific 5G deployments within the SASE fabric.'
      responses:
        '200':
          description: Successful response
        '500':
          description: Server Error
      operationId: GetMtManage5gControlSupportedInterfaces
  /mt/manage/5g/control/interface:
    get:
      tags:
      - Control Plane Resource API
      summary: Show Selected Interface
      description: 'Retrieves the specific network interface currently assigned to 5G operations.

        Administrators use this to verify active configuration settings after committing

        interface changes to ensure signal traffic routing matches the intended design.'
      responses:
        '200':
          description: Successful response
        '500':
          description: Server Error
      operationId: GetMtManage5gControlInterface
    post:
      tags:
      - Control Plane Resource API
      summary: Assign Network Interface
      description: 'Defines the interface type (e.g., RADIUS) and reporting intervals used for 5G control

        plane traffic. Users configure these settings during initial setup to customize how

        authentication data flows between regional nodes and the management plane.'
      requestBody:
        content:
          application/json:
            schema:
              $ref: '#/components/schemas/SetInterface'
      responses:
        '200':
          description: Successful response
        '400':
          description: Bad Request
        '500':
          description: Server Error
      operationId: PostMtManage5gControlInterface
  /mt/manage/5g/control/interimMsg:
    put:
      tags:
      - Control Plane Resource API
      summary: Update Message Intervals
      description: 'Modifies the interim message configuration for the active 5G control plane.

        Administrators adjust these reporting frequencies to balance management plane

        traffic with real-time session visibility for active subscriber devices.'
      requestBody:
        content:
          application/json:
            schema:
              $ref: '#/components/schemas/UpdateInterimMsg'
      responses:
        '200':
          description: Successful response
        '400':
          description: Bad Request
        '404':
          description: Data Not Found
        '500':
          description: Server Error
      operationId: PutMtManage5gControlInterimmsg
components:
  schemas:
    SetInterface:
      type: object
      properties:
        interfaceType:
          type: string
          example: RADIUS
        processInterimMsg:
          type: boolean
          default: false
        interimMsgInterval:
          type: integer
          description: How often interim messages will come(in minutes)
      required:
      - interfaceType
    RadiusProxyRequest:
      type: object
      properties:
        name:
          type: string
        ipaddress:
          type: string
    UpdateInterimMsg:
      type: object
      properties:
        processMsg:
          type: boolean
          default: false
        interval:
          type: integer
          description: How often interim messages will come(in minutes)
    RadiusServerSecretRequest:
      type: object
      properties:
        secret:
          type: string
        created_by:
          type: string