Prohibited API calls for Bulk Action Creation
This section lists the API calls that are prohibited when creating bulk action.
VM and PC
- /api/2.0/fo/knowledge_base/vuln/?action=list
- /api/2.0/fo/asset/host/vm/detection/
- /api/2.0/fo/session/?action=login
- /api/2.0/fo/subscription/option_profile/?action=export
- /api/2.0/fo/knowledge_base/qvs/?action=list
- /api/2.0/fo/asset/host/?action=list
- /api/2.0/fo/scan/?action=fetch
- /api/2.0/fo/report/?action=fetch
- /api/2.0/fo/report/asset/?action=search
- /api/2.0/fo/report/template/scan/?action=export
- /api/2.0/fo/report/template/pciscan/?action=export
- /api/2.0/fo/report/template/patch/?action=export
- /api/2.0/fo/report/template/map/?action=export
- /msp/ticket_list.php
- /msp/ticket_edit.php
- /msp/ticket_delete.php
- /msp/ticket_list_deleted.php
- /msp/get_tickets.php
- /api/2.0/fo/activity_log/?action=list
- /msp/map_report.php
PC
- /api/2.0/fo/scan/compliance/?action=list
- /api/2.0/fo/compliance/control/?action=list
- /api/2.0/fo/compliance/policy/?action=list
- /api/2.0/fo/compliance/policy/?action=export
- /api/2.0/fo/compliance/posture/info/?action=list
- /pcrs/1.0/posture/policy/list
- /pcrs/1.0/posture/hostids
- /pcrs/1.0/posture/postureInfo
- /api/2.0/fo/compliance/exception/?action=list
- /api/2.0/fo/asset/host/cyberscope/fdcc/scan/
- /api/2.0/fo/asset/host/cyberscope/fdcc/policy/
- /api/2.0/fo/asset/host/cyberscope/
- /api/2.0/fo/compliance/scap/arf/
- /api/2.0/fo/compliance/fdcc_policy/?action=list
- /api/2.0/fo/scan/compliance/?action=fetch
WAS
- /qps/rest/3.0/search/was/webapp
- /qps/rest/3.0/downloadSeleniumScript/was/webapp
- /qps/rest/3.0/search/was/webappauthrecord
- /qps/rest/3.0/search/was/catalog
- /qps/rest/3.0/search/was/wasscan
- /qps/rest/3.0/get/was/wasscan/<id>
- /qps/rest/3.0/download/was/wasscan/<id>
- /qps/rest/2.0/download/was/wasscan/<id>
- /qps/rest/3.0/get/was/report/<id>
- /qps/rest/3.0/download/was/report/<id>
- /qps/rest/3.0/get/was/reporttemplate/<id>
- /qps/rest/3.0/search/was/finding
- /qps/rest/3.0/get/was/finding/<id>
- /qps/rest/3.0/get/was/optionprofile/<id>
- /qps/rest/3.0/search/was/dnsoverride/
- /qps/rest/3.0/import/was/burp
- /qps/rest/3.0/import/was/owaspzap
PM
- /pm/v1/patchcatalog/patch/products/vulnerability/count
- /pm/v1/patchcatalog/patches
- /pm/v1/remediation/insights
- /pm/v1/patches
- /pm/v1/assets
- /pm/v1/vulnerabilities
- /pm/v1/report/{reportId}/download
GAV/CSAM
- /rest/2.0/get/am/asset
- /rest/2.0/search/am/asset
- /rest/2.0/update/am/asset/business/metadata
- /rest/2.0/upsert/am/businessapp/metadata
- /rest/2.0/search/am/easm/vulns
- /rest/2.0/am/connector/asset/data/sync
- /am/v1/assets/host/list
- /am/v1/asset/host/id
- /am/v1/assets/host/filter/list
FIM
- /fim/v2/events/search
- /fim/v2/events/{eventId}
- /fim/v2/events/ignore/search
- /fim/v2/events/ignore/{ignoredEventId}
- /fim/v3/incidents/search
- /fim/v2/incidents/{incidentId}/events/search
- /fim/v3/incidents/create
- /fim/v3/alert/actions/search
- /fim/v3/alert/rules/search
- /fim/v3/alert/activities/search
- /fim/v3/autocorrelation/rules/search
- /fim/v3/autocorrelation/rules/{autoCorrelationRuleId}
- /fim/v3/profiles/search
- /fim/v3/profiles/{profileId}/exportxml
- /fim/v3/profiles/importxml
- /fim/v3/profiles/{profileId}/exportjson
- /fim/v3/profiles/importjson
- /fim/v3/categories/search
- /fim/v3/profiles/importcsv
- /fim/v3/profiles/exportcsv
- /fim/v3/assets/search
EDR
- /ioc/events
- /ioc/events/scroll
- /ioc/incidents
- /ioc/incidents/scroll
CS
- GET /csapi/v1.3/containers
- /csapi/v1.3/containers/{containerSha}
- /v1.3/containers/list
- /v1.3/containers/{containerSha}/software
- /v1.3/containers/{containerSha}/vuln
- GET /csapi/v1.3/images
- /csapi/v1.3/images/{imageSha}
- /v1.3/images/list
- /v1.3/images/{imageSha}/software
- /v1.3/images/{imageSha}/vuln
- GET /csapi/v1.3/list
- /csapi/v1.3/list/{listId}/vulns
- /csapi/v1.3/list/{listId}/vulns/list
- GET /csapi/v1.3/exception
- GET /csapi/v1.3/exception/{exceptionId}
- GET/csapi/v1.3/containers/{containerSha}/exceptions
- GET /csapi/v1.3/images/{imageSha}/exceptions
- GET /csapi/v1.3/secretDetector
- GET /v1.3/registry
- GET /v1.3/registry/aws/connectors
- GET /v1.3/registry/gcp/connectors
- GET /v1.3/registry/{registryId}/repository
- GET /v1.3/registry/{registryId}/schedule
- GET /csapi/v1.3/images/{imageSha}/layers/malware
- GET /images/{imageSha}/layers/{layerHash}/malware/files
- GET /v1.3/sensors
- GET /csapi/v1.3/sensors/{sensorId}
- GET /csapi/v1.3/sensors/profile/associate
- GET /csapi/v1.3/sensorProfile
- GET /csapi/v1.3/sensorProfile/{sensorProfileId}/registry
- GET /csapi/v1.3/sensorProfile/{sensorProfileId}/sensor
- GET /csapi/v1.3/sensorProfile/sensor/associate
- GET /csapi/v1.3/centralizedPolicy/{policyId}
- GET /csapi/v1.3/centralizedPolicy
- GET /csapi/v1.3/reports
- GET /csapi/v1.3/reports/jsonReport
- GET /csapi/v1.3/reports/{reportUuid}/download
- GET /csapi/v1.3/reports/schedules
- GET /v1.3/images/{imageSha}/compliance
- GET /v1.3/containers/{containerSha}/compliance
- GET /v1.3/controls/{controlId}
- GET/v1.3/controls
TC
- /rest/v1/aws/connectors
- /rest/v1/aws/evaluations/{accountId}
- /rest/v1/aws/evaluations/{accountId}/resources/{controlId}
- /rest/v1/report/assessment/list
- /rest/v1/report/assessment/{reportId}/download
- /rest/v1/azure/connectors
- /rest/v1/azure/evaluations/{subscriptionId}
- /rest/v1/azure/evaluations/{subscriptionId}/resources/{controlId}
- /rest/v1/controls/metadata/list
- /rest/v1/gcp/connectors
- /rest/v1/gcp/evaluations/{projectId}
- /rest/v1/gcp/evaluations/{projectId}/resources/{controlId}
- /rest/v1/remediation/activity
- /rest/v1/reports/report_data/{reportId}
- /rest/v1/reports/mandates
- /rest/v1/reports/policies
- /rest/v1/reports
- /rest/v1/reports/{reportId}
- /rest/v1/resource/{resourceType}/AWS
- /rest/v1/resource/{resourceType}/Azure
- /rest/v1/resource/{resourceType}/GCP
- /rest/v1/oci/evaluations/?tenantId=' '
- /rest/v1/oci/evaluations/resources/{controlId}/?tenantid=' '
- /rest/v1/resource/{resourceType}/oci
- /rest/v1/resource/{resourceType}/uuid/{resourceUuid}/oci
- /rest/v1/actions/
- /rest/v1/activities
- /rest/v1/rules
- /rest/v1/{cloudType}/evaluations/list/resources
- /rest/v1/exceptions/list
- /rest/v1/iac/scanResult?scanUuid=[id]
- /rest/v1/iac/getScanList
- /rest/v1/iac/evaluations
- /rest/v1/iac/evaluations/control/{controlId}
CA
- /qps/rest/1.0/download/ca/downloadbinary
- /qps/rest/2.0/search/am/hostasset
- /qps/rest/2.0/activate/am/asset?module=<value1>,<value2>
- /qps/rest/2.0/deactivate/am/asset?module=<value1>,<value2>
- /qps/rest/2.0/uninstall/am/asset
- /qps/rest/2.0/uninstall/am/hostasset
- /qps/rest/1.0/search/ca/agentconfig/
- /qps/rest/1.0/search/ca/agentactkey/
CAR
- /sm/v1/scripts/{id}
- /sm/v1/scripts/search
- /sm/v1/assets/search
- /sm/v1/assettags/search
- /sm/v1/jobs/search
- /sm/v1/assetjobs/search
- /sm/v1/scripts/activities
- /sm/v1/scripts/export
- /sm/v1/scripts/import
- /sm/v1/script-library/search
- /sm/v1/script-library/{id}
AM
- /qps/rest/2.0/search/am/tag
- /qps/rest/2.0/get/am/hostasset/<id>
- /qps/rest/2.0/search/am/hostasset
- /qps/rest/2.0/get/am/asset/<id>
- /qps/rest/2.0/search/am/asset
- /qps/rest/2.0/search/am/hostinstancevuln
- /qps/rest/2.0/search/am/assetdataconnector
- /qps/rest/2.0/search/am/awsassetdataconnector
- /qps/rest/2.0/search/am/azureassetdataconnector
- /qps/rest/3.0/search/am/awsassetdataconnector
- /qps/rest/3.0/search/am/assetdataconnectorerrors
- /qps/rest/3.0/download/am/awscloudformationtemplate
- /qps/rest/3.0/search/am/azureassetdataconnector
- /qps/rest/3.0/search/am/gcpassetdataconnector