Standar API dan SDK siap pakai dalam berbagai bahasa
Spesifikasi OpenAPI produk ini (Sddp/2019-01-03) mematuhi standar RPC. Alibaba Cloud menyediakan SDK siap pakai untuk berbagai bahasa pemrograman populer guna mengabstraksi kompleksitas tingkat rendah seperti request signing. Hal ini memungkinkan developer untuk memanggil API menggunakan sintaks khusus tanpa perlu menangani detail HTTP secara langsung.
Signature kustom
Jika SDK tidak mendukung kebutuhan spesifik Anda, seperti signature kustom, Anda harus menandatangani request secara manual menggunakan signature mechanism. Perhatikan bahwa proses penandatanganan manual memerlukan upaya yang signifikan (estimasi 5 hari kerja). Untuk mendapatkan dukungan, bergabunglah dengan grup DingTalk kami (ID: 147535001692).
Sebelum Anda mulai
Akun Alibaba Cloud memiliki hak administratif penuh. Jika pasangan AccessKey dikompromikan, semua resource terkait dapat terekspos terhadap akses tidak sah, sehingga menimbulkan risiko keamanan yang signifikan. Buat Resource Access Management (RAM) user dengan akses khusus API dan gunakan kebijakan RAM untuk menerapkan principle of least privilege (PoLP). Gunakan akun Alibaba Cloud hanya jika benar-benar diperlukan.
Untuk memanggil API secara aman, konfigurasikan hal berikut:
Akun RAM user
Pasangan AccessKey untuk akun tersebut
Audit data
|
API |
Judul |
Deskripsi |
| DescribeAuditLogs | DescribeAuditLogs | Queries a list of audit alert logs. |
Peran tertaut layanan
|
API |
Judul |
Deskripsi |
| CreateSlrRole | CreateSlrRole | Call CreateSlrRole to create a service-linked role for Data Security Center (DSC). This role authorizes DSC to access your cloud resources. |
Otorisasi
|
API |
Judul |
Deskripsi |
| DeleteDataLimit | DeleteDataLimit | Revokes the scan authorization for a data asset, such as a database, instance, or bucket. |
| DescribeDataLimits | DescribeDataLimits | Queries the list of data assets for authorized instances, databases, and buckets. |
| ModifyDataLimit | ModifyDataLimit | You can call ModifyDataLimit to modify the configuration items of a connection authorization in Data Security Center (DSC). |
| DescribeDataLimitDetail | DescribeDataLimitDetail | Queries the details of a data asset, such as a MaxCompute project, an ApsaraDB RDS database, or an Object Storage Service (OSS) bucket, that you authorize Data Security Center (DSC) to access. |
| CreateDataLimit | CreateDataLimit | You can call the CreateDataLimit operation to grant permissions to scan databases, projects, and buckets. |
| DescribeDataLimitSet | DescribeDataLimitSet | Call the DescribeDataLimitSet operation to query the authorization list for unstructured assets or the list of regions supported by Data Security Center. |
| DescribeInstanceSources | DescribeInstanceSources | Queries a list of data assets. |
| DescribeParentInstance | DescribeParentInstance | Call this operation to query for assets and their authorization status. |
Konfigurasi deteksi
|
API |
Judul |
Deskripsi |
| ScanOssObjectV1 | ScanOssObjectV1 | The ScanOssObjectV1 operation creates a scan task to detect sensitive data in a specified object. |
| CreateScanTask | CreateScanTask | You can call the CreateScanTask operation to create a custom scan task to detect sensitive data in authorized assets. |
| ModifyDefaultLevel | ModifyDefaultLevel | Modifies the rules that define threat levels for sensitive data. This includes the default threat level for unidentified data and the threat levels for data that is classified as sensitive. |
| ModifyRuleStatus | ModifyRuleStatus | Enables or disables sensitive data detection rules. |
| ModifyRule | ModifyRule | Modifies a custom sensitive data detection rule in Data Security Center (DSC). |
| DeleteRule | DeleteRule | Deletes a custom sensitive data detection rule. |
| CreateRule | CreateRule | Call CreateRule to create a custom sensitive data detection rule. |
Deteksi data
|
API |
Judul |
Deskripsi |
| DescribeRules | DescribeRules | Queries a list of sensitive data detection rules. |
| DescribeRiskLevels | DescribeRiskLevels | Call the DescribeRiskLevels operation to retrieve a list of risk levels for sensitive data. |
| DescribeDataAssets | DescribeDataAssets | Searches for data assets on the Overview page of Data Security Center (DSC). |
| DescribeInstances | DescribeInstances | Retrieves a list of authorized MaxCompute, RDS, and OSS data asset instances. |
| DescribeTables | DescribeTables | Queries tables in data assets, such as MaxCompute and RDS, that Data Security Center is authorized to access. |
| DescribeColumns | DescribeColumns | Call the DescribeColumns operation to query data in the columns of data assets, such as MaxCompute and RDS tables, that are authorized for Data Security Center. |
| DescribeColumnsV2 | Query Data in Columns of Data Assets V2 | The DescribeColumnsV2 operation queries data in the columns of data asset tables, such as those in MaxCompute and RDS, that are authorized in Data Security Center. |
| DescribeOssObjects | DescribeOssObjects | Call this operation to query a list of authorized OSS objects. |
| DescribeOssObjectDetail | DescribeOssObjectDetail | Obtains detailed information about an authorized OSS object in Data Security Center. |
| DescribeOssObjectDetailV2 | DescribeOssObjectDetailV2 | Obtains detailed information about an authorized OSS object in Data Security Center. |
| DescribePackages | DescribePackages | You can call this API to query information about MaxCompute packages that are authorized for scanning. This information includes the package name, the owner's account, and the risk level. |
| DescribeCategoryTemplateList | Query Industry Template List | Lists industry-specific templates. |
| DescribeCategoryTemplateRuleList | DescribeCategoryTemplateRuleList | Queries a paginated list of rules in a data classification template. |
| DescribeTemplateAllRules | Query All Models List of Industry Templates | You can call this operation to query all models in an industry template. |
| DescribeDocTypes | DescribeDocTypes | Queries a list of file types supported by Object Storage Service (OSS). |
| DescribeDataObjects | Query Data Object List | Queries data detection results for tables and files across your connected data assets. |
| DescribeDataObjectColumnDetail | Query Data Object Column Details | Queries the detection results for columns in a data table. |
| DescribeDataObjectColumnDetailV2 | Query Data Object Column Details V2 | Queries the detection results for the columns of a data table. |
Konfigurasi keamanan
|
API |
Judul |
Deskripsi |
| CreateConfig | CreateConfig | Modifies the configurations of a common configuration item for alerts. |
| DescribeConfigs | DescribeConfigs | Queries configuration items for anomaly alerts. |
| ModifyReportTaskStatus | ModifyReportTaskStatus | You can call the ModifyReportTaskStatus operation to enable or disable report tasks. |
| DescribeUserStatus | DescribeUserStatus | Queries the status of a user account. |
| DisableUserConfig | DisableUserConfig | You can call the DisableUserConfig operation to disable a user configuration. After a configuration is disabled, you can call the CreateConfig operation and specify the same Code parameter to restore the general anomaly alert configuration. |
Peringatan anomali
|
API |
Judul |
Deskripsi |
| ModifyEventTypeStatus | ModifyEventTypeStatus | This operation enables anomalous activity detection for subtypes. |
| ModifyEventStatus | ModifyEventStatus | Handles anomalous activities. |
| DescribeEvents | DescribeEvents | Lists anomalous events. |
| DescribeEventDetail | DescribeEventDetail | Retrieves the details of an anomalous event, including its occurrence time, description, and handling status. |
| DescribeEventTypes | DescribeEventTypes | Queries anomalous activity types. |
Penyamaran data
|
API |
Judul |
Deskripsi |
| DescribeDataMaskingTasks | DescribeDataMaskingTasks | Call DescribeDataMaskingTasks to retrieve a list of data masking tasks. |
| DescribeDataMaskingRunHistory | DescribeDataMaskingRunHistory | You can call DescribeDataMaskingRunHistory to query the execution history of data masking tasks. |
| ExecDatamask | ExecDatamask | You can call the ExecDatamask operation to dynamically mask data. |
| StopMaskingProcess | StopMaskingProcess | You can call the StopMaskingProcess operation to stop a data masking task. You can call the ManualTriggerMaskingProcess operation to restart a stopped task using its unique resource ID. |
| ManualTriggerMaskingProcess | ManualTriggerMaskingProcess | Triggers a data masking task. |
Lainnya
|
API |
Judul |
Deskripsi |
| DescribeIdentifyTaskStatus | Get Identification Task Status | Retrieves the completion status of a detection task based on the task ID. You can obtain the task ID from the Id field in the return value of a CreateScanTask or ScanOssObjectV1 API call. |
| MaskOssImage | MaskOssImage | The MaskOssImage operation masks images in OSS objects. |
| RestoreOssImage | RestoreOssImage | You can call the RestoreOssImage operation to restore desensitized images. |