Reputation: 21
I'm looking to integrate to Workday's REST Api services. Sadly enough, I do not have access to Workday's resource center - where all the documentation resides - it takes forever to get access to there.
I was hoping to get some help from the community regarding the overall process.
My main questions are:
From what I managed to collect online so far (without having access to the workday community center) Ive found that Workday supports an authorization code grant flow, and an implicit grant flow.
I also have a basic question regarding the authorization code grant flow:
If I understand correctly, the authorization code grant works as follows:
If so, I wonder if step 1 is ALWAYS required? by always I mean once per "access token obtainment" or rather just only once?
I also wonder - if user approval is required, how does this formally happen? where does the window of approval pop up if the requests are sent from a remote server?
Are there any workflows which do not require active user approvals for authorization?
thanks!
Upvotes: 2
Views: 1842
Reputation: 1
For #2, assuming you are talking about the scope to include when creating the API Client. You would need to do a security analysis (with something like View Security for Securable Item delivered report)on the fields you want to expose and see the Functional Area the security domain(s) that secure them belong to.
e.g.
You would need to add Recruiting and Talent Pipeline as part of the scope of your API Client
Upvotes: 0