Authorizes SysOM to diagnose ECS instances under the current account. You must call this operation to authorize diagnostics on a specific ECS instance before you can call the InvokeDiagnosis operation to initiate diagnostics on it.
Operation description
Note the following when you invoke this operation to authorize SysOM to diagnose ECS instances:
Each authorization is valid for 7 days. After 7 days, the authorization expires and you must invoke this operation again to re-authorize.
If the SysOM service-linked role (AliyunServiceRoleForSysom) does not exist when you invoke this operation, automatic creation is performed. The Resource Access Management (RAM) user that invokes this operation must have the
ram:CreateServiceLinkedRolepermission.When you invoke this operation to authorize diagnostics on a specific instance, the label
sysom:diagnosisis automatically associated with the target ECS instance. SysOM only allows diagnostics on instances that have this label.
Try it now
Test
RAM authorization
|
Action |
Access level |
Resource type |
Condition key |
Dependent action |
|
sysom:AuthDiagnosis |
none |
*All Resource
|
None | None |
Request syntax
POST /api/v1/openapi/diagnosis/auth HTTP/1.1
Request parameters
|
Parameter |
Type |
Required |
Description |
Example |
| body |
object |
No |
The request body parameters. |
|
| autoCreateRole |
boolean |
No |
Specifies whether to enable automatic creation of the service-linked role. |
|
| autoInstallAgent |
boolean |
No |
Specifies whether to automatically install the latest version of the agent if it is not already installed. |
|
| instances |
array<object> |
Yes |
The list of instances authorized for diagnostics. |
|
|
object |
No |
i-wz9gdv7qmdhntqmc4rjd |
||
| instance |
string |
No |
The instance ID. |
i-wz9b9vucz1iubsz8sjqo |
| region |
string |
No |
The region ID. |
cn-hangzhou |
Response elements
|
Element |
Type |
Description |
Example |
|
object |
The response parameters. |
||
| code |
string |
The status code.
|
Success |
| data |
any |
This operation does not return data. |
{} |
| message |
string |
The error message.
|
SysomOpenAPIAssumeRoleException: EntityNotExist.Role The role not exists: acs:ram::xxxxx:role/aliyunserviceroleforsysom |
| request_id |
string |
The request ID. |
35F91AAB-5FDF-5A22-B211-C7C6B00817D0 |
Examples
Success response
JSON format
{
"code": "Success",
"data": "{}",
"message": "SysomOpenAPIAssumeRoleException: EntityNotExist.Role The role not exists: acs:ram::xxxxx:role/aliyunserviceroleforsysom",
"request_id": "35F91AAB-5FDF-5A22-B211-C7C6B00817D0"
}
Error codes
|
HTTP status code |
Error code |
Error message |
Description |
|---|---|---|---|
| 400 | SysomOpenAPI.NotSupportedAgentVersion | Unsupported sysom agent version. | Unsupported SysOM client version. |
See Error Codes for a complete list.
Release notes
See Release Notes for a complete list.