---
title: "POST /api/v1/agent-vault/proxies/{proxyId}/token-auth/enrollment-token"
method: POST
path: "/api/v1/agent-vault/proxies/{proxyId}/token-auth/enrollment-token"
tags: ["Agent Vault Proxies"]
---

# POST /api/v1/agent-vault/proxies/{proxyId}/token-auth/enrollment-token

`POST /api/v1/agent-vault/proxies/{proxyId}/token-auth/enrollment-token`

Issue a replacement enrollment token for an Agent Vault proxy

## Path parameters

- `proxyId` string, uuid, required

## Response `200`

Default Response

- object
  - `token` string, required — A one-time token the proxy enrolls with. Shown once, and valid for one hour.
  - `expiresAt` string, date-time, required

## Other responses

- `400` — Default Response
- `401` — Default Response
- `403` — Default Response
- `404` — Default Response
- `422` — Default Response
- `500` — Default Response

## Changes

- **2026-09-22** `62b0ba9edfe9` — 1 info
  - endpoint added

[Change history](https://skmtc.dev/infisical/apis/infisical-api/changes/api/v1/agent-vault/proxies/:proxyId/token-auth/enrollment-token/post.md)

---

[API](https://skmtc.dev/infisical/apis/infisical-api.md) · [All operations](https://skmtc.dev/infisical/apis/infisical-api/llms.txt) · [OpenAPI document](https://skmtc.dev/infisical/apis/infisical-api/revisions/b1861c910818?raw)
