Queries statistics on risks generated by check items by paging.
Try it now
Test
RAM authorization
|
Action |
Access level |
Resource type |
Condition key |
Dependent action |
|
yundun-sas:ListCheckItemWarningSummary |
list |
*All Resource
|
None | None |
Request parameters
|
Parameter |
Type |
Required |
Description |
Example |
| RiskType |
string |
No |
The baseline category name. |
weak_password |
| CheckType |
string |
No |
The check item category name. |
hc.check.type.attack_defense |
| CheckWarningStatus |
integer |
No |
The risk status. Default value: null, which indicates that all statuses are queried. Valid values:
|
3 |
| CheckLevel |
string |
No |
The risk level. Default value: null, which indicates that all levels are queried. Valid values:
|
medium |
| CheckItemFuzzy |
string |
No |
The fuzzy match for the check item name. |
password |
| ContainerFieldName |
string |
No |
The container security query parameter name. |
clusterId |
| ContainerFieldValue |
string |
No |
The container security query parameter value. |
c471f0f61b9c04f8380556e922cf1**** |
| Lang |
string |
No |
The language of the content within the request and response. Default value: zh. Valid values:
|
zh |
| CurrentPage |
integer |
No |
The page number of the page to return. Default value: 1, which indicates that query results are displayed starting from page 1. |
1 |
| PageSize |
integer |
No |
The maximum number of entries per page when paging. Default value: 20. If the PageSize parameter is left empty, 20 entries are returned per page. Note
Do not leave PageSize empty. |
20 |
| GroupId |
integer |
No |
The ID of the asset group to query. Note
You can call the DescribeAllGroups operation to obtain this parameter. |
1161**** |
| Source |
string |
No |
The data source. Default value: default. Valid values:
|
agentless |
| UuidList |
array |
No |
The list of server UUIDs to query. Note
You can call the DescribeCloudCenterInstances operation to obtain the UUID of a server. |
|
|
string |
No |
The UUID of the server to query. Note
You can call the DescribeCloudCenterInstances operation to obtain the UUID of a server. |
4fe8e1cd-3c37-4851-b9de-124da32c**** |
|
| CheckWarningStatusList |
array |
No |
The list of risk statuses. If both this parameter and CheckWarningStatus are specified, only CheckWarningStatus takes effect. |
|
|
integer |
No |
The risk status. Valid values:
|
1 |
|
| StartTime |
integer |
No |
The start time for filtering alerts. This parameter takes effect only when you query historical processed alerts. Specify a UNIX timestamp in milliseconds. |
1732793158366 |
| ResourceDirectoryAccountId |
integer |
No |
The ID of the member accounts in the resource directory (Alibaba Cloud account). Note
You can call the DescribeMonitorAccounts operation to obtain this parameter. |
1232428423234**** |
Response elements
|
Element |
Type |
Description |
Example |
|
object |
The paginated list of check item risk statistics. |
||
| List |
array<object> |
The list of check item risk statistics information. |
|
|
object |
The check item risk statistics information. |
||
RiskType
deprecated
|
string |
The baseline category. |
weak_password |
Alias
deprecated
|
string |
The baseline category name. |
week_pa**** |
| CheckId |
integer |
The check item ID. |
696 |
| CheckItem |
string |
The check item description. |
Config the Event Audit policys |
| CheckLevel |
string |
The risk level of the check item. Valid values:
|
high |
| CheckType |
string |
The check item category. |
Security audit |
| Advice |
string |
The suggestion for the check item. |
In the Administrative Tools window, double-click Local Security Policy. In the Local Security Policy window that appears, choose Security Settings\\Local Policies\\Audit Policy, configure all audit policies as: `Success, Failure`. |
| Description |
string |
The detailed description of the check item. |
Config the Event Audit policys |
| Status |
integer |
The risk status of the check item. Valid values:
|
1 |
| WarningMachineCount |
integer |
The number of machines affected by the check item risk. |
20 |
| ContainerCheckItem |
boolean |
Indicates whether the check item belongs to the container runtime category. Valid values:
|
true |
| AffiliatedRiskTypes |
array |
The list of affiliated baseline categories. |
|
|
string |
The affiliated baseline category. |
CIS Compliance checks |
|
| AffiliatedRisks |
array |
The list of affiliated baselines. |
|
|
string |
The affiliated baseline. |
CIS Ubuntu Linux 14 LTS Benchmark |
|
| EnableRisks |
array |
The list of baselines enabled for the check item. |
|
|
string |
The baseline enabled for the check item. |
CIS Ubuntu Linux 14 LTS Benchmark |
|
| PageInfo |
object |
The pagination information of the query result. |
|
| CurrentPage |
integer |
The page number of the current page when paging. |
1 |
| PageSize |
integer |
The maximum number of entries per page when paging. |
20 |
| TotalCount |
integer |
The total number of check items returned. |
149 |
| Count |
integer |
The number of check items displayed on the current page. |
4 |
| RequestId |
string |
The request ID, which is a unique identifier generated by Alibaba Cloud for the request. You can use this ID to troubleshoot issues. |
DC97C9EC-4B7D-5EFF-8A5E-A5CCC9ED**** |
Examples
Success response
JSON format
{
"List": [
{
"RiskType": "weak_password",
"Alias": "week_pa****",
"CheckId": 696,
"CheckItem": "Config the Event Audit policys",
"CheckLevel": "high",
"CheckType": "Security audit",
"Advice": "In the Administrative Tools window, double-click Local Security Policy. In the Local Security Policy window that appears, choose Security Settings\\\\Local Policies\\\\Audit Policy, configure all audit policies as: `Success, Failure`.",
"Description": "Config the Event Audit policys",
"Status": 1,
"WarningMachineCount": 20,
"ContainerCheckItem": true,
"AffiliatedRiskTypes": [
"CIS Compliance checks"
],
"AffiliatedRisks": [
"CIS Ubuntu Linux 14 LTS Benchmark"
],
"EnableRisks": [
"CIS Ubuntu Linux 14 LTS Benchmark\n"
]
}
],
"PageInfo": {
"CurrentPage": 1,
"PageSize": 20,
"TotalCount": 149,
"Count": 4
},
"RequestId": "DC97C9EC-4B7D-5EFF-8A5E-A5CCC9ED****"
}
Error codes
|
HTTP status code |
Error code |
Error message |
Description |
|---|---|---|---|
| 400 | RdCheckNoPermission | Resource directory account verification has no permission. | |
| 500 | ServerError | ServerError | |
| 500 | RdCheckInnerError | Resource directory account service internal error. | |
| 403 | NoPermission | caller has no permission | You are not authorized to do this operation. |
See Error Codes for a complete list.
Release notes
See Release Notes for a complete list.