查詢基準檢查項風險影響的機器列表。
調試
您可以在OpenAPI Explorer中直接運行該介面,免去您計算簽名的困擾。運行成功後,OpenAPI Explorer可以自動產生SDK程式碼範例。
調試
授權資訊
請求參數
|
名稱 |
類型 |
必填 |
描述 |
樣本值 |
| CheckId |
integer |
是 |
檢查項 ID。 |
8 |
| RiskType |
string |
否 |
檢查項所屬類別。 |
cis |
| Status |
integer |
否 |
檢查項狀態。預設為 null。取值:
|
3 |
| Remark |
string |
否 |
機器模糊比對。 |
225 |
| ContainerFieldName |
string |
否 |
容器安全查詢參數名稱。 |
clusterId |
| ContainerFieldValue |
string |
否 |
容器安全查詢參數值。 |
ce89cdd0ea732472a8703821b19e**** |
| Lang |
string |
否 |
請求和接收訊息的語言類型。預設值為 zh。取值:
|
zh |
| CurrentPage |
integer |
否 |
設定從返回結果的第幾頁開始顯示查詢結果。起始值為 1。預設值為 1,表示從第 1 頁開始顯示。 |
1 |
| PageSize |
integer |
否 |
指定分頁查詢時,每頁顯示的資料最大條數。每頁預設顯示的資料條數為 20 條,PageSize 參數值為空白時,將預設返回 20 條資料。 說明
建議 PageSize 取值不要為空白。 |
20 |
| GroupId |
integer |
否 |
要查詢的資產分組 ID。 說明
您可以調用 DescribeAllGroups 介面擷取該參數。 |
1161**** |
| Source |
string |
否 |
資料來源,為空白時預設查詢主機基準結果。取值:
|
agentless |
| UuidList |
array |
否 |
指定伺服器 UUID 清單。 |
|
|
string |
否 |
指定的伺服器的 UUID。 說明
您可以調用DescribeCloudCenterInstances 介面擷取該參數。 |
4fe8e1cd-3c37-4851-b9de-124da32c**** |
|
| ResourceDirectoryAccountId |
integer |
否 |
資來源目錄成員帳號 ID(阿里雲帳號)。 說明
調用 DescribeMonitorAccounts 介面可以擷取該參數。 |
1082098404740323 |
返回參數
|
名稱 |
類型 |
描述 |
樣本值 |
|
object |
警示機器分頁列表 |
||
| List |
array<object> |
警示機器列表。 |
|
|
array<object> |
警示機器。 |
||
| Status |
integer |
檢查項狀態。取值:
|
1 |
| Bind |
boolean |
資產是否已綁定授權。取值:
|
true |
| AuthVersion |
integer |
資產的授權版本。取值:
|
3 |
| PortOpen |
boolean |
該伺服器是否有連接埠對公網開放。取值:
|
true |
| InstanceId |
string |
伺服器執行個體 ID。 |
i-bp1a69mvjujbakxu**** |
| IntranetIp |
string |
受影響資產執行個體的私網 IP 位址。 |
172.25.XX.XX |
| InternetIp |
string |
受影響資產執行個體的公網 IP 位址。 |
8.210.XX.XX |
| InstanceName |
string |
伺服器執行個體名稱。 |
sql-test-0**** |
| Uuid |
string |
伺服器的 uuid。 |
49e25e0f-bb51-4a5a-a1b3-13a4ddaa**** |
| RegionId |
string |
資產所在的地區的 ID。 |
cn-hangzhou |
| Prompt |
string |
基準檢查風險項的檢查提示。 |
There is a weak password (username/password): root/he*****34 |
WarningRiskList
deprecated
|
array<object> |
檢出此檢查項風險的基準列表。 |
|
|
object |
檢出此檢查項風險的基準。 |
||
RiskId
deprecated
|
integer |
基準 ID。 |
72 |
RiskName
deprecated
|
string |
基準的名稱。 |
Alibaba Cloud Linux/Aliyun Linux 2 Baseline for China classified protection of cybersecurity-Level II |
| FixList |
array<object> |
檢出此檢查項風險的可修複基準列表。 |
|
|
object |
檢出此檢查項風險的可修複基準。 |
||
| RiskId |
integer |
基準 ID。 |
72 |
| RiskName |
string |
基準的名稱。 |
Alibaba Cloud Linux/Aliyun Linux 2 Baseline for China classified protection of cybersecurity-Level II |
| ContainerId |
string |
容器 ID。 |
48a6d9a92435a13ad573372c3f3c63b7e04d106458141df9f9215570******** |
| ContainerName |
string |
容器名稱。 |
step-build-ui-build |
| TargetName |
string |
掃描對象名稱。 |
jenkins**** |
| TargetId |
string |
掃描物件識別碼。 |
30**** |
| TargetType |
string |
物件類型。取值:
|
ECS_IMAGE |
| LastScanTime |
integer |
最新掃描的時間戳記,單位為毫秒。 |
1694692471000 |
| LastHandleTime |
integer |
該機器的檢查項風險的最新處理的時間戳記,單位為毫秒。 |
1694692471000 |
| FixStatus |
integer |
是否支援修複。取值:
|
1 |
| AssetType |
string |
雲產品資產的類型。 |
0 |
| PageInfo |
object |
查詢結果的分頁資訊。 |
|
| CurrentPage |
integer |
分頁查詢時,顯示的當前頁的頁碼。 |
1 |
| PageSize |
integer |
分頁查詢時,顯示的每頁資料的最大條數。 |
20 |
| TotalCount |
integer |
查詢到的受影響資產的總數量。 |
107 |
| Count |
integer |
查詢到的受影響資產的當前頁顯示資料條數。 |
4 |
| RequestId |
string |
本次調用請求的 ID,是由阿里雲為該請求產生的唯一識別碼,可用於排查和定位問題。 |
22B5615F-700E-575A-A6D5-DC8D7741**** |
樣本
正常返回樣本
JSON格式
{
"List": [
{
"Status": 1,
"Bind": true,
"AuthVersion": 3,
"PortOpen": true,
"InstanceId": "i-bp1a69mvjujbakxu****",
"IntranetIp": "172.25.XX.XX",
"InternetIp": "8.210.XX.XX",
"InstanceName": "sql-test-0****",
"Uuid": "49e25e0f-bb51-4a5a-a1b3-13a4ddaa****",
"RegionId": "cn-hangzhou",
"Prompt": "There is a weak password (username/password): root/he*****34",
"WarningRiskList": [
{
"RiskId": 72,
"RiskName": "Alibaba Cloud Linux/Aliyun Linux 2 Baseline for China classified protection of cybersecurity-Level II"
}
],
"FixList": [
{
"RiskId": 72,
"RiskName": "Alibaba Cloud Linux/Aliyun Linux 2 Baseline for China classified protection of cybersecurity-Level II"
}
],
"ContainerId": "48a6d9a92435a13ad573372c3f3c63b7e04d106458141df9f9215570********",
"ContainerName": "step-build-ui-build",
"TargetName": "jenkins****",
"TargetId": "30****",
"TargetType": "ECS_IMAGE",
"LastScanTime": 1694692471000,
"LastHandleTime": 1694692471000,
"FixStatus": 1,
"AssetType": "0"
}
],
"PageInfo": {
"CurrentPage": 1,
"PageSize": 20,
"TotalCount": 107,
"Count": 4
},
"RequestId": "22B5615F-700E-575A-A6D5-DC8D7741****"
}
錯誤碼
|
HTTP status code |
錯誤碼 |
錯誤資訊 |
描述 |
|---|---|---|---|
| 400 | RdCheckNoPermission | Resource directory account verification has no permission. | 資來源目錄帳號校正無許可權。 |
| 500 | ServerError | ServerError | 服務故障,請稍後重試! |
| 500 | RdCheckInnerError | Resource directory account service internal error. | 資來源目錄帳號服務內部錯誤。 |
| 403 | NoPermission | caller has no permission | 當前操作未被授權,請聯絡主帳號在RAM控制台進行授權後再執行操作。 |
訪問錯誤中心查看更多錯誤碼。
變更歷史
更多資訊,參考變更詳情。