---
nav: wcp_docs
parent_url: /wcp_docs/
title: SOAP API Authentication and Security
layout: subsection
---

Extend apps and Integration apps that call Workday SOAP APIs must use the [API Gateway Base URLs](/wcp_docs/dlh1653340161856.html) for centralized authentication and routing of the SOAP API requests to the correct tenant for Workday security authorization.

## <a id="section_oauth_soap"></a>SOAP API Authentication in Extend Apps

To authenticate Workday SOAP API calls from Extend pages and orchestrations, register your API client on the Developer Site and choose an OAuth authentication flow to generate the access token. See [Call Workday SOAP APIs Using the API Gateway](/wcp_docs/ouv1543606422515.html).

## <a id="section_config_guidelines"></a>SOAP API Authentication in Integration Apps

The most common method is the Default API Credential, which for most integrations is the User Access Token From Initiating User setting. This default setting uses the account under which the integration is running, which is either the:

-   Integration system user, if one is assigned.
-   User who launched the integration, if no integration system user is configured on the Integration System.


## <a id="section_alternatives"></a>SOAP API Authentication in Integrations

To authenticate Workday SOAP API calls from traditional integrations, register your API client for Integrations. See:

-   [Administrator Guide: Register API Client for Integrations](https://doc.workday.com/admin-guide/en-us/authentication-and-security/authentication/oauth/dan1370797831458.html?toc=1.8.1)
-   [Administrator Guide: Integration Security in Workday](https://doc.workday.com/admin-guide/en-us/authentication-and-security/security-for-integrations/dan1370797415412.html?toc=3.0)
-   [Community: API Authentication Methods](https://community-content.workday.com/content/workday-community/en-us/kits-and-tools/products/platform-and-product-extensions/integrations/api-authentication-methods.html)


### Related Information

[Community: Constrained Security Support by Selected Operations](https://community-content.workday.com/en-us/reference/products/platform-and-product-extensions/integrations/constrained-security-support-by-selected-operations.html)

