Get Permissions Next Page
POST/api/v1/permission/page
Given a request parameter pageToken, returns the next page of permissions data. You can find the value for pageToken from the response object of a previous request to Get Permissions.
Request
- application/json
Body
required
Model for Permission Search Page Request DTO
Maximun number of items to return
Page token from the response object of an earlier request to get permissions.
Responses
- 200
- 201
- 401
- 403
- 404
OK
- application/json
- text/plain
- Schema
- Example (from schema)
Schema
- Array [
- Array [
- ]
- ]
items object[]
Requested permissions list
Accessed resource count
Destination cloud account
Destination cloud region
Destination cloud resource RRN
Destination cloud service name
Destination cloud type
Destination cloud resource id
Destination cloud resource name
Destination cloud resource type
Effective action name
exceptions object[]
Permission exception list
Message code
Granted by cloud entity id
Granted by cloud entity name
Granted by cloud entity rrn
Granted by cloud entity type
Granted by cloud policy Id
Granted by cloud policy name
Granted by cloud policy rrn
Granted by cloud policy type
Granted by cloud type
Message id
Is destination cloud resource name a wildcard
Last accessed data
Source cloud account
Source cloud region
Source cloud resource RRN
Source cloud service name
Source cloud type
Source IDP domain
Source IDP email
Source IDP group
Source idp RRN
Possible values: [AZURE_AD
, OKTA
, UNKNOWN
]
Source IDP service
Source IDP user name
Is source public
Source cloud resource id
Source cloud resource name
Source cloud resource type
Next page token
Searched destination cloud resource names
Total row count
{
"items": [
{
"accessedResourcesCount": 0,
"destCloudAccount": "123456789",
"destCloudRegion": "AWS London",
"destCloudResourceRrn": "rrn::other:eu-west-2:123456789012::my-function",
"destCloudServiceName": "iam",
"destCloudType": "AWS",
"destResourceId": "arn:aws:iam::111111:user/john",
"destResourceName": "john",
"destResourceType": "user",
"effectiveActionName": "string",
"exceptions": [
{
"messageCode": "LIMITED_BY_DENY_STATEMENT"
}
],
"grantedByCloudEntityId": "arn:aws:iam::<account>:role/my-role",
"grantedByCloudEntityName": "my-role",
"grantedByCloudEntityRrn": "rrn::other::123456789:AIDAIDAIDAIDAIDAIDAID",
"grantedByCloudEntityType": "user",
"grantedByCloudPolicyId": "arn:aws:iam::aws:policy/aws-policy",
"grantedByCloudPolicyName": "my-policy",
"grantedByCloudPolicyRrn": "rrn::iamPolicy::123456789012::arn:aws:iam:eu-west-2",
"grantedByCloudPolicyType": "Customer Managed Policy",
"grantedByCloudType": "AWS",
"id": "13",
"isWildCardDestCloudResourceName": false,
"lastAccessDate": "string",
"sourceCloudAccount": "123456789",
"sourceCloudRegion": "AWS London",
"sourceCloudResourceRrn": "rrn::iamUser::123456789012::AIDAIDAIDAIDAIDAIDAID",
"sourceCloudServiceName": "iam",
"sourceCloudType": "AWS",
"sourceIdpDomain": "string",
"sourceIdpEmail": "string",
"sourceIdpGroup": "string",
"sourceIdpRrn": "rrn::other::idp-account-id::idp-user-id",
"sourceIdpService": "AZURE_AD",
"sourceIdpUsername": "string",
"sourcePublic": false,
"sourceResourceId": "arn:aws:iam::111111:user/john",
"sourceResourceName": "john",
"sourceResourceType": "user"
}
],
"nextPageToken": "++fdfkjsdlfsdfdFDSFDFSDFdfdssfdFDS",
"searchedDestCloudResourceNames": [],
"totalRows": 1243
}
- Schema
- Example (from schema)
Schema
- Array [
- Array [
- ]
- ]
items object[]
Requested permissions list
Accessed resource count
Destination cloud account
Destination cloud region
Destination cloud resource RRN
Destination cloud service name
Destination cloud type
Destination cloud resource id
Destination cloud resource name
Destination cloud resource type
Effective action name
exceptions object[]
Permission exception list
Message code
Granted by cloud entity id
Granted by cloud entity name
Granted by cloud entity rrn
Granted by cloud entity type
Granted by cloud policy Id
Granted by cloud policy name
Granted by cloud policy rrn
Granted by cloud policy type
Granted by cloud type
Message id
Is destination cloud resource name a wildcard
Last accessed data
Source cloud account
Source cloud region
Source cloud resource RRN
Source cloud service name
Source cloud type
Source IDP domain
Source IDP email
Source IDP group
Source idp RRN
Possible values: [AZURE_AD
, OKTA
, UNKNOWN
]
Source IDP service
Source IDP user name
Is source public
Source cloud resource id
Source cloud resource name
Source cloud resource type
Next page token
Searched destination cloud resource names
Total row count
{
"items": [
{
"accessedResourcesCount": 0,
"destCloudAccount": "123456789",
"destCloudRegion": "AWS London",
"destCloudResourceRrn": "rrn::other:eu-west-2:123456789012::my-function",
"destCloudServiceName": "iam",
"destCloudType": "AWS",
"destResourceId": "arn:aws:iam::111111:user/john",
"destResourceName": "john",
"destResourceType": "user",
"effectiveActionName": "string",
"exceptions": [
{
"messageCode": "LIMITED_BY_DENY_STATEMENT"
}
],
"grantedByCloudEntityId": "arn:aws:iam::<account>:role/my-role",
"grantedByCloudEntityName": "my-role",
"grantedByCloudEntityRrn": "rrn::other::123456789:AIDAIDAIDAIDAIDAIDAID",
"grantedByCloudEntityType": "user",
"grantedByCloudPolicyId": "arn:aws:iam::aws:policy/aws-policy",
"grantedByCloudPolicyName": "my-policy",
"grantedByCloudPolicyRrn": "rrn::iamPolicy::123456789012::arn:aws:iam:eu-west-2",
"grantedByCloudPolicyType": "Customer Managed Policy",
"grantedByCloudType": "AWS",
"id": "13",
"isWildCardDestCloudResourceName": false,
"lastAccessDate": "string",
"sourceCloudAccount": "123456789",
"sourceCloudRegion": "AWS London",
"sourceCloudResourceRrn": "rrn::iamUser::123456789012::AIDAIDAIDAIDAIDAIDAID",
"sourceCloudServiceName": "iam",
"sourceCloudType": "AWS",
"sourceIdpDomain": "string",
"sourceIdpEmail": "string",
"sourceIdpGroup": "string",
"sourceIdpRrn": "rrn::other::idp-account-id::idp-user-id",
"sourceIdpService": "AZURE_AD",
"sourceIdpUsername": "string",
"sourcePublic": false,
"sourceResourceId": "arn:aws:iam::111111:user/john",
"sourceResourceName": "john",
"sourceResourceType": "user"
}
],
"nextPageToken": "++fdfkjsdlfsdfdFDSFDFSDFdfdssfdFDS",
"searchedDestCloudResourceNames": [],
"totalRows": 1243
}
Created
Unauthorize
Forbidden
Not Found