v1
latestOpenAPI 3.0.12026-07-24310590875.6 KBmfa
Validate MFA challenge
Validate the MFA challenge for creating an MFA-trusted API sign in session. This validation requires the challengeId and token from POST /v3/mfa/challenge.
After the validation is complete, your API session is MFA trusted.
There are two stages in the BILL MFA process.
- MFA setup: Add a valid phone number for setting up MFA in the organization (with POST /v3/mfa/setup), and then complete the setup by validating the entered phone number (with POST /v3/mfa/validate). At this point, the phone number is registered for the MFA sign in operation.
- MFA sign in: Generate an MFA challenge (with POST /v3/mfa/challenge), and then complete MFA sign in by validating the MFA challenge (with POST /v3/mfa/challenge/validate). At this point, your API session is MFA trusted.
Note: In the production environment, BILL requires an MFA-trusted API session for a set of API operations.
- Enable vendor autoPay
- Enable recurring bill autoPayment
- Create a payment or bulk payment
- Create a bank account for a BILL organization
- Reset MFA (Complete MFA setup and MFA sign-in again)
post/v3/mfa/challenge/validate
Headers
sessionIdstring nullable
API session ID generated with /v3/login
Example:{{session_id}}
devKeystring nullable
Developer key generated with your BILL developer account
Example:{{developer_key}}
Request body
Example request
{
"challengeId": "{{mfa_challenge_id}}",
"token": "{{mfa_token}}",
"device": "{{mfa_device_name}}",
"machineName": "{{mfa_machine_name}}",
"rememberMe": true
}Response
Validate MFA challenge response