Queries the details of a specified check item.
Try it now
Test
RAM authorization
|
Action |
Access level |
Resource type |
Condition key |
Dependent action |
|
yundun-sas:DescribeCheckWarningDetail |
get |
*All Resource
|
None | None |
Request parameters
|
Parameter |
Type |
Required |
Description |
Example |
| SourceIp |
string |
No |
The source IP address of the request. |
103.25.XX.XX |
| Lang |
string |
No |
The language of the request and response. Valid values:
|
zh |
| CheckWarningId |
integer |
No |
The alert ID of the check item. Note
To query the details of a specified check item, provide the alert ID of the check item. You can call the DescribeCheckWarnings operation to obtain this ID. Important This parameter is required when both Uuid and CheckId are empty. |
98675301 |
| ResourceDirectoryAccountId |
integer |
No |
The Alibaba Cloud account ID of the member accounts in the resource folder. Note
You can invoke the DescribeMonitorAccounts operation to obtain this parameter. |
16670360956***** |
| Uuid |
string |
No |
The UUID of the server to query. Note
You can call the DescribeCloudCenterInstances operation to obtain this parameter. Important When this parameter is specified, the CheckId parameter is required. |
06125d19-6a02-4451-9f65-2083996e**** |
| CheckId |
string |
No |
The ID of the check item. Note
You can call the ListCheckItemWarningSummary operation to obtain the check item ID. Important When this parameter is specified, the Uuid parameter is required. |
1 |
| ContainerName |
string |
No |
The container name. |
test_container |
Response elements
|
Element |
Type |
Description |
Example |
|
object |
The response parameters. |
||
| Advice |
string |
The hardening suggestion for the baseline check risk item. |
You can fix it in the following ways:↵1. To configure authentication for redis service, click the redis.conf Configure complex password in requirepass, and then restart redis.↵2. In redis configuration file redis.conf The configuration is as follows: bind 127.0.0.1, only allow local access, and then restart redis |
| Type |
string |
The type of the baseline check item. Note
You can call the DescribeRiskType operation to view all baseline types. |
Security audit |
| RequestId |
string |
The request ID. Alibaba Cloud generates a unique identifier for each request. You can use the request ID to troubleshoot issues. |
BE120DAB-F4E7-4C53-ADC3-A97578ABF384 |
| Description |
string |
The supplementary description of the baseline check risk item. |
The redis port is open to the outside world and there is no authentication option configured. In addition to directly obtaining all the information in the database, unauthorized users can also attack the system through unauthorized access vulnerability. |
| Item |
string |
The name of the check item. |
Redis unauthorized access |
| CheckId |
integer |
The ID of the check item. |
946 |
| Level |
string |
The risk level of the check item. Valid values:
|
high |
| Prompt |
string |
The check prompt for the baseline check risk item. |
weak passwords (username@host/password):root@****/12*** |
| CheckDetailColumns |
array<object> |
The check content details. |
|
|
array<object> |
The check content details. |
||
| Type |
string |
The display type. Valid values:
|
text |
| Key |
string |
The key of the check content. |
Containername |
| ShowName |
string |
The display name corresponding to the check content key. |
ContainerName |
| Grids |
array<object> |
The list of check content. |
|
|
object |
The check content. |
||
| Type |
string |
The display type. Valid values:
|
text |
| Key |
string |
The key of the check content. |
Username |
| ShowName |
string |
The display name corresponding to the check content key. |
UserName |
| CheckDetailAssetInfo |
array<object> |
The list of checked asset details. |
|
|
object |
The checked asset details. |
||
|
string |
The check asset details. |
[{"Containerid":"8ee88e****","Containername":"jenkins-birdge","WeakPasswords":[{"Username":"admin","Maskweakpassword":"1qaz****23"}]}] |
Examples
Success response
JSON format
{
"Advice": "You can fix it in the following ways:↵1. To configure authentication for redis service, click the redis.conf Configure complex password in requirepass, and then restart redis.↵2. In redis configuration file redis.conf The configuration is as follows: bind 127.0.0.1, only allow local access, and then restart redis",
"Type": "Security audit",
"RequestId": "BE120DAB-F4E7-4C53-ADC3-A97578ABF384",
"Description": "The redis port is open to the outside world and there is no authentication option configured. In addition to directly obtaining all the information in the database, unauthorized users can also attack the system through unauthorized access vulnerability.",
"Item": "Redis unauthorized access",
"CheckId": 946,
"Level": "high",
"Prompt": "weak passwords (username@host/password):root@****/12***",
"CheckDetailColumns": [
{
"Type": "text",
"Key": "Containername",
"ShowName": "ContainerName",
"Grids": [
{
"Type": "text",
"Key": "Username",
"ShowName": "UserName"
}
]
}
],
"CheckDetailAssetInfo": [
{
"key": "[{\"Containerid\":\"8ee88e****\",\"Containername\":\"jenkins-birdge\",\"WeakPasswords\":[{\"Username\":\"admin\",\"Maskweakpassword\":\"1qaz****23\"}]}]"
}
]
}
Error codes
|
HTTP status code |
Error code |
Error message |
Description |
|---|---|---|---|
| 400 | ConsoleError | The error message is %s %s. | |
| 400 | RdCheckNoPermission | Resource directory account verification has no permission. | |
| 500 | RdCheckInnerError | Resource directory account service internal error. | |
| 500 | ServerError | ServerError | |
| 403 | NoPermission | caller has no permission |
See Error Codes for a complete list.
Release notes
See Release Notes for a complete list.