Network ServicesSecurity Group

QuerySecurityGroupRule

GET/zstack/v1/security-groups/rules
GET/zstack/v1/security-groups/rules/{uuid}

Headers

Authorization: OAuth the-session-uuid

Curl Example

curl -H "Content-Type: application/json;charset=UTF-8" \
-H "Authorization: OAuth 9aa7adfe564e4acda956ef90430b0f1b" \
-X GET http://localhost:8080/zstack/v1/security-groups/rules?q=endPort=22&q=state=Enabled
curl -H "Content-Type: application/json;charset=UTF-8" \
-H "Authorization: OAuth 36a86c5b46784b169fe82d7c990ae1a7" \
-X GET http://localhost:8080/zstack/v1/security-groups/rules/ae59353d95f744b5b4396e1783ddb918

Queryable Fields

Run the CLI tool, type QuerySecurityGroupRule and press the Tab key to view all queryable fields and cross-table queryable resource names.

API Response

Response Example

{
  "inventories": [
    {
      "uuid": "b3a99fc1548b41778258153cfd70f4b7",
      "securityGroupUuid": "629d55f78c9f4b0e8e3504b9834ca1bb",
      "type": "Ingress",
      "startPort": 22.0,
      "endPort": 22.0,
      "protocol": "TCP",
      "state": "Enabled",
      "allowedCidr": "0.0.0.0/0",
      "createDate": "Jun 7, 2017 9:20:25 PM",
      "lastOpDate": "Jun 7, 2017 9:20:25 PM"
    }
  ]
}
NameTypeDescriptionStarting Version
errorErrorCodeError code. If not null, the operation failed. If null, the operation succeeded. See error0.6
inventoriesListSee inventories0.6

error

NameTypeDescriptionStarting Version
codeStringError code number, a globally unique identifier for the error, for example SYS.1000, HOST.10010.6
descriptionStringBrief description of the error0.6
detailsStringDetailed error information0.6
elaborationStringReserved field, defaults to null0.6
opaqueLinkedHashMapReserved field, defaults to null0.6
causeErrorCodeRoot error: the source error that caused the current error. If there is no original error, this field is null0.6

inventories

NameTypeDescriptionStarting Version
uuidStringThe UUID of the resource, uniquely identifying the resource0.6
securityGroupUuidStringThe security group UUID0.6
typeStringThe traffic type0.6
ipVersionIntegerThe IP version number3.1.0
startPortIntegerFor TCP/UDP, it is the start port number of the port range; for ICMP, it is the ICMP type0.6
endPortIntegerFor TCP/UDP, it is the end port number of the port range; for ICMP, it is the ICMP type0.6
protocolStringThe traffic protocol type0.6
stateStringThe availability state of the rule, not implemented in the current version0.6
allowedCidrStringThe allowed CIDR. The meaning of the allowed CIDR varies depending on the traffic type. For Ingress traffic, the allowed CIDR is the source CIDR that is permitted to access the VM NIC. For Egress traffic, the allowed CIDR is the destination CIDR that traffic from the VM NIC is permitted to reach0.6
remoteSecurityGroupUuidString 0.6
createDateTimestampThe creation time0.6
lastOpDateTimestampThe last modification time0.6

SDK Examples

Java SDK

QuerySecurityGroupRuleAction action = new QuerySecurityGroupRuleAction();
action.conditions = asList("endPort=22","state=Enabled");
action.sessionId = "362452e4e8a746ce981a5a54c7390445";
QuerySecurityGroupRuleAction.Result res = action.call();

Python SDK

QuerySecurityGroupRuleAction action = QuerySecurityGroupRuleAction()
action.conditions = ["endPort=22","state=Enabled"]
action.sessionId = "37e099aa344c40ca947d11dff7ec2b91"
QuerySecurityGroupRuleAction.Result res = action.call()