Authenticating the Calling User - REST API

Client applications that use the REST API can authenticate users using either direct or single sign-on authentication.

  • Direct Authentication - When using direct authentication, the REST API must supply a valid username and password in an HTTP Basic Authentication header.
  • Single Sign-On (SSO) Authentication - When using SSO authentication, a user who already has a login session with the client application does not need to provide their login credentials again when calling a TIBCO ActiveMatrix BPM service.