Prohibited API calls for Bulk Action Creation  

This section lists the API calls that are prohibited when creating bulk action. 

VM and PC

  • /api/2.0/fo/knowledge_base/vuln/?action=list
  • /api/2.0/fo/asset/host/vm/detection/
  • /api/2.0/fo/session/?action=login
  • /api/2.0/fo/subscription/option_profile/?action=export
  • /api/2.0/fo/knowledge_base/qvs/?action=list
  • /api/2.0/fo/asset/host/?action=list
  • /api/2.0/fo/scan/?action=fetch
  • /api/2.0/fo/report/?action=fetch
  • /api/2.0/fo/report/asset/?action=search
  • /api/2.0/fo/report/template/scan/?action=export
  • /api/2.0/fo/report/template/pciscan/?action=export
  • /api/2.0/fo/report/template/patch/?action=export
  • /api/2.0/fo/report/template/map/?action=export
  • /msp/ticket_list.php
  • /msp/ticket_edit.php
  • /msp/ticket_delete.php
  • /msp/ticket_list_deleted.php
  • /msp/get_tickets.php
  • /api/2.0/fo/activity_log/?action=list
  • /msp/map_report.php

PC

  • /api/2.0/fo/scan/compliance/?action=list
  • /api/2.0/fo/compliance/control/?action=list
  • /api/2.0/fo/compliance/policy/?action=list
  • /api/2.0/fo/compliance/policy/?action=export
  • /api/2.0/fo/compliance/posture/info/?action=list
  • /pcrs/1.0/posture/policy/list
  • /pcrs/1.0/posture/hostids
  • /pcrs/1.0/posture/postureInfo
  • /api/2.0/fo/compliance/exception/?action=list
  • /api/2.0/fo/asset/host/cyberscope/fdcc/scan/
  • /api/2.0/fo/asset/host/cyberscope/fdcc/policy/
  • /api/2.0/fo/asset/host/cyberscope/
  • /api/2.0/fo/compliance/scap/arf/
  • /api/2.0/fo/compliance/fdcc_policy/?action=list
  • /api/2.0/fo/scan/compliance/?action=fetch

WAS

  • /qps/rest/3.0/search/was/webapp
  • /qps/rest/3.0/downloadSeleniumScript/was/webapp
  • /qps/rest/3.0/search/was/webappauthrecord
  • /qps/rest/3.0/search/was/catalog
  • /qps/rest/3.0/search/was/wasscan
  • /qps/rest/3.0/get/was/wasscan/<id>
  • /qps/rest/3.0/download/was/wasscan/<id>
  • /qps/rest/2.0/download/was/wasscan/<id>
  • /qps/rest/3.0/get/was/report/<id>
  • /qps/rest/3.0/download/was/report/<id>
  • /qps/rest/3.0/get/was/reporttemplate/<id>
  • /qps/rest/3.0/search/was/finding
  • /qps/rest/3.0/get/was/finding/<id>
  • /qps/rest/3.0/get/was/optionprofile/<id>
  • /qps/rest/3.0/search/was/dnsoverride/
  • /qps/rest/3.0/import/was/burp
  • /qps/rest/3.0/import/was/owaspzap

PM

  • /pm/v1/patchcatalog/patch/products/vulnerability/count
  • /pm/v1/patchcatalog/patches
  • /pm/v1/remediation/insights
  • /pm/v1/patches
  • /pm/v1/assets
  • /pm/v1/vulnerabilities
  • /pm/v1/report/{reportId}/download

GAV/CSAM

  • /rest/2.0/get/am/asset
  • /rest/2.0/search/am/asset
  • /rest/2.0/update/am/asset/business/metadata
  • /rest/2.0/upsert/am/businessapp/metadata
  • /rest/2.0/search/am/easm/vulns
  • /rest/2.0/am/connector/asset/data/sync
  • /am/v1/assets/host/list
  • /am/v1/asset/host/id
  • /am/v1/assets/host/filter/list

FIM

  • /fim/v2/events/search
  • /fim/v2/events/{eventId}
  • /fim/v2/events/ignore/search
  • /fim/v2/events/ignore/{ignoredEventId}
  • /fim/v3/incidents/search
  • /fim/v2/incidents/{incidentId}/events/search
  • /fim/v3/incidents/create
  • /fim/v3/alert/actions/search
  • /fim/v3/alert/rules/search
  • /fim/v3/alert/activities/search
  • /fim/v3/autocorrelation/rules/search
  • /fim/v3/autocorrelation/rules/{autoCorrelationRuleId}
  • /fim/v3/profiles/search
  • /fim/v3/profiles/{profileId}/exportxml
  • /fim/v3/profiles/importxml
  • /fim/v3/profiles/{profileId}/exportjson
  • /fim/v3/profiles/importjson
  • /fim/v3/categories/search
  • /fim/v3/profiles/importcsv
  • /fim/v3/profiles/exportcsv
  • /fim/v3/assets/search

EDR

  • /ioc/events
  • /ioc/events/scroll
  • /ioc/incidents
  • /ioc/incidents/scroll

CS

  • GET /csapi/v1.3/containers
  • /csapi/v1.3/containers/{containerSha}
  • /v1.3/containers/list
  • /v1.3/containers/{containerSha}/software
  • /v1.3/containers/{containerSha}/vuln
  • GET /csapi/v1.3/images
  • /csapi/v1.3/images/{imageSha}
  • /v1.3/images/list
  • /v1.3/images/{imageSha}/software
  • /v1.3/images/{imageSha}/vuln
  • GET /csapi/v1.3/list
  • /csapi/v1.3/list/{listId}/vulns
  • /csapi/v1.3/list/{listId}/vulns/list
  • GET /csapi/v1.3/exception
  • GET /csapi/v1.3/exception/{exceptionId}
  • GET/csapi/v1.3/containers/{containerSha}/exceptions
  • GET /csapi/v1.3/images/{imageSha}/exceptions
  • GET /csapi/v1.3/secretDetector
  • GET /v1.3/registry
  • GET /v1.3/registry/aws/connectors
  • GET /v1.3/registry/gcp/connectors
  • GET /v1.3/registry/{registryId}/repository
  • GET /v1.3/registry/{registryId}/schedule
  • GET /csapi/v1.3/images/{imageSha}/layers/malware
  • GET /images/{imageSha}/layers/{layerHash}/malware/files
  • GET /v1.3/sensors
  • GET /csapi/v1.3/sensors/{sensorId}
  • GET /csapi/v1.3/sensors/profile/associate
  • GET /csapi/v1.3/sensorProfile
  • GET /csapi/v1.3/sensorProfile/{sensorProfileId}/registry
  • GET /csapi/v1.3/sensorProfile/{sensorProfileId}/sensor
  • GET /csapi/v1.3/sensorProfile/sensor/associate
  • GET /csapi/v1.3/centralizedPolicy/{policyId}
  • GET /csapi/v1.3/centralizedPolicy
  • GET /csapi/v1.3/reports
  • GET /csapi/v1.3/reports/jsonReport
  • GET /csapi/v1.3/reports/{reportUuid}/download
  • GET /csapi/v1.3/reports/schedules
  • GET /v1.3/images/{imageSha}/compliance
  • GET /v1.3/containers/{containerSha}/compliance
  • GET /v1.3/controls/{controlId}
  • GET/v1.3/controls

TC

  • /rest/v1/aws/connectors
  • /rest/v1/aws/evaluations/{accountId}
  • /rest/v1/aws/evaluations/{accountId}/resources/{controlId}
  • /rest/v1/report/assessment/list
  • /rest/v1/report/assessment/{reportId}/download
  • /rest/v1/azure/connectors
  • /rest/v1/azure/evaluations/{subscriptionId}
  • /rest/v1/azure/evaluations/{subscriptionId}/resources/{controlId}
  • /rest/v1/controls/metadata/list
  • /rest/v1/gcp/connectors
  • /rest/v1/gcp/evaluations/{projectId}
  • /rest/v1/gcp/evaluations/{projectId}/resources/{controlId}
  • /rest/v1/remediation/activity
  • /rest/v1/reports/report_data/{reportId}
  • /rest/v1/reports/mandates
  • /rest/v1/reports/policies
  • /rest/v1/reports
  • /rest/v1/reports/{reportId}
  • /rest/v1/resource/{resourceType}/AWS
  • /rest/v1/resource/{resourceType}/Azure
  • /rest/v1/resource/{resourceType}/GCP 
  • /rest/v1/oci/evaluations/?tenantId=' '
  • /rest/v1/oci/evaluations/resources/{controlId}/?tenantid=' '
  • /rest/v1/resource/{resourceType}/oci
  • /rest/v1/resource/{resourceType}/uuid/{resourceUuid}/oci
  • /rest/v1/actions/
  • /rest/v1/activities
  • /rest/v1/rules
  • /rest/v1/{cloudType}/evaluations/list/resources
  • /rest/v1/exceptions/list
  • /rest/v1/iac/scanResult?scanUuid=[id]
  • /rest/v1/iac/getScanList
  • /rest/v1/iac/evaluations
  • /rest/v1/iac/evaluations/control/{controlId}

CA

  • /qps/rest/1.0/download/ca/downloadbinary
  • /qps/rest/2.0/search/am/hostasset
  • /qps/rest/2.0/activate/am/asset?module=<value1>,<value2>
  • /qps/rest/2.0/deactivate/am/asset?module=<value1>,<value2>
  • /qps/rest/2.0/uninstall/am/asset
  • /qps/rest/2.0/uninstall/am/hostasset
  • /qps/rest/1.0/search/ca/agentconfig/
  • /qps/rest/1.0/search/ca/agentactkey/

CAR

  • /sm/v1/scripts/{id}
  • /sm/v1/scripts/search
  • /sm/v1/assets/search
  • /sm/v1/assettags/search
  • /sm/v1/jobs/search
  • /sm/v1/assetjobs/search
  • /sm/v1/scripts/activities
  • /sm/v1/scripts/export
  • /sm/v1/scripts/import
  • /sm/v1/script-library/search
  • /sm/v1/script-library/{id}

AM

  • /qps/rest/2.0/search/am/tag
  • /qps/rest/2.0/get/am/hostasset/<id>
  • /qps/rest/2.0/search/am/hostasset
  • /qps/rest/2.0/get/am/asset/<id>
  • /qps/rest/2.0/search/am/asset
  • /qps/rest/2.0/search/am/hostinstancevuln
  • /qps/rest/2.0/search/am/assetdataconnector
  • /qps/rest/2.0/search/am/awsassetdataconnector
  • /qps/rest/2.0/search/am/azureassetdataconnector
  • /qps/rest/3.0/search/am/awsassetdataconnector
  • /qps/rest/3.0/search/am/assetdataconnectorerrors
  • /qps/rest/3.0/download/am/awscloudformationtemplate
  • /qps/rest/3.0/search/am/azureassetdataconnector
  • /qps/rest/3.0/search/am/gcpassetdataconnector