# Venafi SSH Management APIs API

**Canonical:** https://apis.io/apis/venafi/venafi-ssh-management-apis-api/  
**Provider:** Venafi — https://apis.io/providers/venafi/  
**Base URL:** https://api.venafi.cloud  
**Documentation:** https://developer.venafi.com/tlsprotectcloud/reference/tls-protect-overview

Venafi SSH Management APIs API is one of 58 APIs that [Venafi](https://apis.io/providers/venafi/) publishes on the [APIs.io](https://apis.io/) network, described by a machine-readable OpenAPI specification. Tagged areas include SSH Management APIs. The published artifact set on APIs.io includes an OpenAPI specification and API documentation.

The SSH Management APIs allow to manage device keys and keysets. This interface is valid only if you purchased SSH Manager for Machines. All product-supported operations are exposed via this API, including key operations (addition, removal, and editing of keys), rotation and methods to get the actual state of data. For more information about the SSH objects, see the Web SDK Object class reference.

## Operations (36)

| Method | Path | Summary |
|---|---|---|
| GET | `/vedsdk/ssh/rules` | Search key authorization rules |
| POST | `/vedsdk/ssh/TestDeviceConnection` | Returns connection status for provided devices |
| POST | `/vedsdk/ssh/ImportKeyUsageData` | Imports key usage from a Unix or Linux host syslog |
| POST | `/vedsdk/ssh/KeyUsage` | Finds all key usage records matching the specified filtering criteria |
| POST | `/vedsdk/ssh/RemoveKey` | Marks a key for deletion |
| POST | `/vedsdk/ssh/CancelKeyOperation` | Cancels any running key operation. Can also rollback a key to its original state |
| POST | `/vedsdk/ssh/RetryKeyOperation` | Retries any failing operation (addition, removal, editing) on specified key |
| POST | `/vedsdk/ssh/Rotate` | Starts Synchronous Rotation of a specific keyset |
| POST | `/vedsdk/ssh/RotateNonBlocking` | Submits Rotation request of specific keyset |
| POST | `/vedsdk/ssh/RollbackNonBlocking` | Submits Rollback request of specific keyset |
| POST | `/vedsdk/ssh/CancelRotation` | Cancels rotation of the specified keyset if it is running, or rolls back the… |
| POST | `/vedsdk/ssh/RetryRotation` | Retries rotation of specified keyset |
| POST | `/vedsdk/ssh/EditKeyOptions` | Changes Source Restrictions, and Forced commands in an authorized keys file |
| POST | `/vedsdk/ssh/EditSelfServiceAuthorizedKey` | Changes location, notes, Source Restrictions, and Forced commands in an… |
| POST | `/vedsdk/ssh/AddSelfServicePrivateKey` | Assigns an existing keyset to a policy folder |
| POST | `/vedsdk/ssh/AddSelfServiceAuthorizedKey` | Add an authorization key to a keyset |
| POST | `/vedsdk/ssh/ConfirmSelfServiceKeyInstallation` | Verifies that a user manually installed a private key |
| POST | `/vedsdk/ssh/MoveKeysetsToPolicy` | Moves a list of keysets to a policy folder |
| POST | `/vedsdk/ssh/ExportSelfServiceAuthorizedKey` | Downloads an authorized key |
| POST | `/vedsdk/ssh/ExportSelfServicePrivateKey` | Downloads a private key |
| POST | `/vedsdk/ssh/SkipKeyRotation` | Skip key rotation |
| POST | `/vedsdk/ssh/AddUserPrivateKey` | Installs a new user private key on a device |
| POST | `/vedsdk/ssh/AddHostPrivateKey` | Creates and installs a new private key on a host device |
| POST | `/vedsdk/ssh/AddAuthorizedKey` | Creates an Open SSH Authorized key for provisioning to a device |
| POST | `/vedsdk/ssh/AddKnownHostKey` | Creates a public key for a host |
| POST | `/vedsdk/ssh/ImportAuthorizedKey` | Adds or reuses a Base64 public key for a device |
| POST | `/vedsdk/ssh/ImportPrivateKey` | Adds or reuses a Base64 private key for a device |
| POST | `/vedsdk/ssh/ChangePrivateKeyPassphrase` | Changes the private key passphrase for a keyset |
| POST | `/vedsdk/ssh/SetUnmatchedKeysetPassphrase` | Sets the passphrase on a keyset that is missing the encrypted private key |
| POST | `/vedsdk/ssh/DeleteUnmatchedKeyset` | Deletes an unmatched keyset that is missing the encrypted private key… |
| POST | `/vedsdk/ssh/KeyDetails` | Returns detailed key data |
| POST | `/vedsdk/ssh/Devices` | Finds devices in the Policy tree that match the filtering criteria |
| GET | `/vedsdk/ssh/KeysetDetails` | Provides information about every device that shares the same keyset |
| POST | `/vedsdk/ssh/KeysetDetails` | Returns private and public key pairs that identify details about a device |
| POST | `/vedsdk/ssh/ApproveKeyOperation` | Approves any key operation that has a Pending Approval status in a workflow |
| POST | `/vedsdk/ssh/RejectKeyOperation` | Rejects any key operation that has a Pending Approval status in a workflow |

## Machine-readable artifacts (4)

- **OpenAPI** — https://raw.githubusercontent.com/api-evangelist/venafi/refs/heads/main/openapi/venafi-ssh-management-apis-api-openapi.yml
- **Documentation** — https://developer.venafi.com/tlsprotectcloud/reference/tls-protect-overview
- **Webhooks** — https://raw.githubusercontent.com/api-evangelist/venafi/refs/heads/main/asyncapi/venafi-certificate-manager-saas-webhooks.yml
- **Documentation** — https://docs.venafi.com/Docs/currentSDK/TopNav/Content/SDK/WebSDK/cco-sdk-GettingStarted.php

## Other Venafi APIs (12)

- [Venafi Access Management APIs API](https://apis.io/apis/venafi/venafi-access-management-apis-api/)
- [Venafi AlgorithmSelector APIs API](https://apis.io/apis/venafi/venafi-algorithmselector-apis-api/)
- [Venafi Application API](https://apis.io/apis/venafi/venafi-application-api/)
- [Venafi Authentication Server APIs API](https://apis.io/apis/venafi/venafi-authentication-server-apis-api/)
- [Venafi Certificate Approvals API](https://apis.io/apis/venafi/venafi-certificate-approvals-api/)
- [Venafi Certificate Auto-renewal Monitoring API](https://apis.io/apis/venafi/venafi-certificate-auto-renewal-monitoring-api/)
- [Venafi Certificate Discovery API](https://apis.io/apis/venafi/venafi-certificate-discovery-api/)
- [Venafi Certificate Expiration Reports API](https://apis.io/apis/venafi/venafi-certificate-expiration-reports-api/)
- [Venafi Certificate Import API](https://apis.io/apis/venafi/venafi-certificate-import-api/)
- [Venafi Certificate Installations API](https://apis.io/apis/venafi/venafi-certificate-installations-api/)
- [Venafi Certificate Inventory Monitoring API](https://apis.io/apis/venafi/venafi-certificate-inventory-monitoring-api/)
- [Venafi Certificate Management APIs API](https://apis.io/apis/venafi/venafi-certificate-management-apis-api/)

## Tags

SSH Management APIs

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/apis/venafi/venafi-ssh-management-apis-api/). The API's provider profile, Kin Score and agent-readiness rating are at https://apis.io/providers/venafi/.
