Network ServicesSecurity Group

QuerySecurityGroup

GET/zstack/v1/security-groups
GET/zstack/v1/security-groups/{uuid}

Headers

Authorization: OAuth the-session-uuid

Curl Example

curl -H "Content-Type: application/json;charset=UTF-8" \
-H "Authorization: OAuth 1f3fcf6a885148b69702e52d22de9606" \
-X GET http://localhost:8080/zstack/v1/security-groups?q=name=web&q=state=Enabled
curl -H "Content-Type: application/json;charset=UTF-8" \
-H "Authorization: OAuth a0c4c995a9e34c639cc72732bcd7bd2f" \
-X GET http://localhost:8080/zstack/v1/security-groups/af0d90237c084afaa16f997847579152

Queryable Fields

Run the CLI tool, type QuerySecurityGroup and press the Tab key to view all queryable fields and cross-table queryable resource names.

API Response

Response Example

{
  "inventories": [
    {
      "uuid": "6f757e65fed243babeac0be896e77caf",
      "name": "web",
      "description": "for test",
      "state": "Enabled",
      "createDate": "Jun 7, 2017 9:20:34 PM",
      "lastOpDate": "Jun 7, 2017 9:20:34 PM",
      "internalId": 0.0
    }
  ]
}
NameTypeDescriptionStarting Version
errorErrorCodeError code. If not null, the operation failed. If null, the operation succeeded. See error0.6
inventoriesListSee inventories0.6

error

NameTypeDescriptionStarting Version
codeStringError code number, a globally unique identifier for the error, for example SYS.1000, HOST.10010.6
descriptionStringBrief description of the error0.6
detailsStringDetailed error information0.6
elaborationStringReserved field, defaults to null0.6
opaqueLinkedHashMapReserved field, defaults to null0.6
causeErrorCodeRoot error: the source error that caused the current error. If there is no original error, this field is null0.6

inventories

NameTypeDescriptionStarting Version
uuidStringThe UUID of the resource, uniquely identifying the resource0.6
nameStringThe resource name0.6
descriptionStringThe detailed description of the resource0.6
stateString 0.6
ipVersionIntegerThe IP version number3.1.0
createDateTimestampThe creation time0.6
lastOpDateTimestampThe last modification time0.6
attachedL3NetworkUuidsSet 0.6
rulesListSee rules0.6

rules

NameTypeDescriptionStarting Version
uuidStringThe UUID of the resource, uniquely identifying the resource0.6
securityGroupUuidStringThe security group UUID0.6
typeStringThe traffic type0.6
ipVersionIntegerThe IP version number3.1.0
startPortIntegerFor TCP/UDP, it is the start port number of the port range; for ICMP, it is the ICMP type0.6
endPortIntegerFor TCP/UDP, it is the end port number of the port range; for ICMP, it is the ICMP code0.6
protocolStringThe traffic protocol type0.6
stateStringThe availability state of the rule, not implemented in the current version0.6
allowedCidrStringThe allowed CIDR. It has different meanings depending on the traffic type. For Ingress, it is the source CIDR allowed to access the VM NIC. For Egress, it is the destination CIDR that traffic is allowed to reach from the VM NIC0.6
remoteSecurityGroupUuidString 0.6
createDateTimestampThe creation time0.6
lastOpDateTimestampThe last modification time0.6

SDK Examples

Java SDK

QuerySecurityGroupAction action = new QuerySecurityGroupAction();
action.conditions = asList("name=web","state=Enabled");
action.sessionId = "604cf540e620468fa3fad7098196bb96";
QuerySecurityGroupAction.Result res = action.call();

Python SDK

QuerySecurityGroupAction action = QuerySecurityGroupAction()
action.conditions = ["name=web","state=Enabled"]
action.sessionId = "55a3657d35f14ee4b41401bd7ada15a7"
QuerySecurityGroupAction.Result res = action.call()