The SOAP Headers

Web Reports uses request and response headers in all SOAP methods except for GetRelevanceResult. Headers are used to send login information to verify that the user associated with the SOAP request has the correct permissions to run it. The data that is returned from the SOAP call is filtered by those permissions.

Two kinds of headers are used, login or authentication. A login header takes a user name and a password to authenticate. The server replies to the request with a response header that contains a session token. In subsequent requests, until the user's session times out, SOAP requests can be authenticated by using an authentication header that requires a user name and the provided session token.

Request Header

Name Type Occurs Description
RequestHeaderElement LoginHeader or AuthenticationHeader 1 Login information to verify that a user has permission to perform this action.

Request example:

<s:Envelope xmlns:s="">
      <h:RequestHeaderElement xsi:type="LoginHeader"
   <s:Body xmlns:xsi="" xmlns:xsd="">

Response Header

Name Type Occurs Description
RequestHeaderElement ResponseHeader 1 Contains a session token passed back by the server so that subsequent requests do not need to pass the user's password to the server.

Response example:

<?xml version="1.0" encoding="UTF-8"?>
<soapenv:Envelope xmlns:soapenv="">

Subsequent requests:

<s:Envelope xmlns:s="">
      <h:RequestHeaderElement xsi:type="AuthenticationHeader"
   <s:Body xmlns:xsi="" xmlns:xsd="">