All Products
Search
Document Center

Security Center:DescribeCheckFixDetails

Last Updated:Jun 15, 2026

Queries the configurable parameters for fixing a specified check item.

Try it now

Try this API in OpenAPI Explorer, no manual signing needed. Successful calls auto-generate SDK code matching your parameters. Download it with built-in credential security for local usage.

Test

RAM authorization

The table below describes the authorization required to call this API. You can define it in a Resource Access Management (RAM) policy. The table's columns are detailed below:

  • Action: The actions can be used in the Action element of RAM permission policy statements to grant permissions to perform the operation.

  • API: The API that you can call to perform the action.

  • Access level: The predefined level of access granted for each API. Valid values: create, list, get, update, and delete.

  • Resource type: The type of the resource that supports authorization to perform the action. It indicates if the action supports resource-level permission. The specified resource must be compatible with the action. Otherwise, the policy will be ineffective.

    • For APIs with resource-level permissions, required resource types are marked with an asterisk (*). Specify the corresponding Alibaba Cloud Resource Name (ARN) in the Resource element of the policy.

    • For APIs without resource-level permissions, it is shown as All Resources. Use an asterisk (*) in the Resource element of the policy.

  • Condition key: The condition keys defined by the service. The key allows for granular control, applying to either actions alone or actions associated with specific resources. In addition to service-specific condition keys, Alibaba Cloud provides a set of common condition keys applicable across all RAM-supported services.

  • Dependent action: The dependent actions required to run the action. To complete the action, the RAM user or the RAM role must have the permissions to perform all dependent actions.

Action

Access level

Resource type

Condition key

Dependent action

yundun-sas:DescribeCheckFixDetails

get

*All Resource

*

None None

Request parameters

Parameter

Type

Required

Description

Example

RiskId

integer

No

The ID of the baseline.

Note

You can call the DescribeCheckWarningSummary operation to obtain the baseline ID.

51

CheckIds

string

No

The ID of the check item.

Note

You can call the DescribeRiskType operation to obtain the check item ID.

58

Lang

string

No

The language type of the request and response. Default value: zh. Valid values:

  • zh: Chinese

  • en: English.

zh

Response elements

Element

Type

Description

Example

object

The result of the check item fix parameter list.

CheckFixDetails

array<object>

The list of check item fix parameters.

array<object>

The check item fix parameter.

CheckId

integer

The ID of the check item.

58

CheckItem

string

The description of the check item.

Ensure password reuse is limited

CheckDesc

string

The detailed description of the check item.

Force users not to reuse recently used passwords to reduce the risk of password guessing attacks

Rules

array<object>

The list of rules supported by the check item.

array<object>

The rule supported by the check item.

RuleId

string

The ID of the rule.

pwd_reuse.system_auth

RuleDesc

string

The description of the rule.

(/etc/system-auth)Force users not to reuse the number of recently used passwords between 5 and 24

VarName

string

The name of the variable.

open

DefaultValue

integer

The default value of the rule.

1

Optional

integer

Indicates whether the rule is optional. Valid values:

  • 1: yes

  • 0: no

1

CheckId

integer

The ID of the risk item.

58

Value

integer

The specified value of the rule parameter.

5

ParamList

array<object>

An array that consists of the rule parameters.

object

The information about the rule parameter.

ParamName

string

The name of the rule parameter.

range_val

ParamDesc

string

The description of the rule parameter.

The setting value is 0 means no definition, 1 means success, 2 means failure, 3 means success and failure

ParamDefaultValue

string

The default value of the rule parameter.

5

ParamType

integer

The type of the rule parameter. Valid values:

  • 1: input

  • 2: selection

1

MinValue

integer

The minimum value of the rule parameter.

5

MaxValue

integer

The maximum value of the rule parameter.

24

EnumValue

string

The options that can be selected for the rule parameter if the value of the ParamType parameter is 2.

0,1,2,3

Value

string

The specified value of the rule parameter.

18

RuleId

string

The ID of the rule.

pwd_reuse.system_auth

Count

integer

The number of check items that support fixing.

20

RequestId

string

The request ID. Alibaba Cloud generates a unique ID for each request. You can use the ID to troubleshoot issues.

0DBF1E27-98D8-5EC2-9CF3-4A2E26F6****

Examples

Success response

JSON format

{
  "CheckFixDetails": [
    {
      "CheckId": 58,
      "CheckItem": "Ensure password reuse is limited",
      "CheckDesc": "Force users not to reuse recently used passwords to reduce the risk of password guessing attacks",
      "Rules": [
        {
          "RuleId": "pwd_reuse.system_auth",
          "RuleDesc": "(/etc/system-auth)Force users not to reuse the number of recently used passwords between 5 and 24",
          "VarName": "open",
          "DefaultValue": 1,
          "Optional": 1,
          "CheckId": 58,
          "Value": 5,
          "ParamList": [
            {
              "ParamName": "range_val",
              "ParamDesc": "The setting value is 0 means no definition, 1 means success, 2 means failure, 3 means success and failure",
              "ParamDefaultValue": "5",
              "ParamType": 1,
              "MinValue": 5,
              "MaxValue": 24,
              "EnumValue": "0,1,2,3",
              "Value": "18",
              "RuleId": "pwd_reuse.system_auth"
            }
          ]
        }
      ]
    }
  ],
  "Count": 20,
  "RequestId": "0DBF1E27-98D8-5EC2-9CF3-4A2E26F6****"
}

Error codes

HTTP status code

Error code

Error message

Description

500 ServerError ServerError
403 NoPermission caller has no permission

See Error Codes for a complete list.

Release notes

See Release Notes for a complete list.