GET Workflow Instances Instance ID

The GET /WorkflowClosed A workflow is a series of steps necessary to complete a process. In Keyfactor Command, it refers to the workflow builder, which allows you to automate event-driven tasks such as when a certificate is requested, revoked or found in a certificate store./Instances/{instanceId} operation retrieves the initiated workflow with the specified instance GUID. Both in progress and completed workflows are returned. On success, the operation returns HTTP 200 OK with  details about the workflow instance.

Tip:  The following permissions (see Security Roles and Claims) are required to use this feature:

/workflows/instances/read/
OR
/workflows/instances/read/pending/
OR
/workflows/instances/read/mine/

Users with /mine/ or /pending/ will only be able to retrieve the workflow instances created by them (/mine/) or assigned to them (/pending/) unless they also have the higher level just /read/.

Table 1177: GET Workflow Instances {instanceId} Input Parameters

Name In Description
instanceId Path

Required.  A string indicating the Keyfactor Command reference GUID of the workflow instance to retrieve.

Use the GET Workflow Instances operation to retrieve a list of all the workflow instances to determine the GUID.

Note:  The integer workflow IDs (returned with GET /Workflow/Instances/{instanceId}) cannot be used with this operation. Only the GUID from GET /Workflow/Instances can be used in this case.

Table 1178: GET Workflow Instances {instanceId} Response Data

Name

Description

Id A string indicating the Keyfactor Command reference GUID of the workflow instance.
Status

A string indicating the current status of the workflow instance. The possible statuses are:

  • CanceledForRestart
  • Complete
  • Failed
  • Rejected
  • Running
  • Waiting for Approval

Current Step ID A string indicating the Keyfactor Command reference GUID of the workflow instance step.
Status Message

A string indicating the current status message for the workflow instance. Possible status messages vary and may include:

  • Access is denied
  • Awaiting # more approvals from approval roles.
  • Either the credentials are invalid, or the CA on [CA host name] is not running

  • Issued

  • Issued. The private key was successfully retained.

  • Post-process Failed: [Message indicating reason for failure most often from the CA]

  • Pre-process failed: [Message indicating details of the failure]

  • Revoked

  • Step ‘Keyfactor-Enroll’ failed: [Message indicating details of the failure]

  • Step ‘Keyfactor-Revoke’ failed:[Message indicating details of the failure]

  • Step [custom step name] failed: [Message indicating details of the failure]

  • Taken Under Submission. The certificate template requires manager approval, and is marked as pending.

  • Workflow rejected by user with Id #.

Signals

An array of objects containing the data used at the point in the workflow step where the workflow needs to continue based on user input. These will vary depending on the type of workflow and the type of step. ClosedShow RequireApproval signal details.

Definition

An object containing the workflow definition. ClosedShow workflow definition details.

Current Step Display Name A string indicating the display name defined for the workflow instance step.
Current Step Unique Name A string indicating the unique name defined for the workflow instance step. This value is unique among the steps in a particular workflow definition. It is intended to be used as a user-friendly reference ID.
Title

A string indicating a description for the action taking place in the step, made up of the InitiatingUserName (either DOMAIN\\username or Timer Service) followed by an indication of the type of action and a specific message about the action. For example:

"KEYEXAMPLE\\jsmith is enrolling for a certificate with CN=appsrvr14.keyexample.com."

Or

"KEYEXAMPLE\\jsmith is revoking certificate with CN=appsrvr12.keyexample.com."
Last Modified A string indicating the date and time on which the initiated instance was last updated. The instance is updated each time a step in the workflow is completed, when signals are received for a step that accepts signals (for example, a requires approval step), or when an instance is stopped or restarted.
Start Date A string indicating the date and time when the instance was initiated.
Initial Data

An object containing the data included in the workflow instance when the workflow was initiated. ClosedShow initial workflow instance data.

Current State Data

An object containing the data included in the workflow instance as it progresses. This will include data input from PowerShell scripts, REST requests, and signals along with the initial data. ClosedShow current state workflow instance data.

Reference Id A integer indicating the Keyfactor Command reference ID for the workflow instance.
Tip:  See the Keyfactor APIClosed An API is a set of functions to allow creation of applications. Keyfactor offers the Keyfactor API, which allows third-party software to integrate with the advanced certificate enrollment and management features of Keyfactor Command. Reference and Utility, which allows you to call API operations and view results. It is primarily intended for validation, testing, and workflow development, and also serves as an interactive supplement to this API documentation. You can access it from the help menu () in the Management Portal.