User REST Reference

/user

Methods
GET

Gets the list of Users. Depending on your role, this resource will return the following:

  • A list of all Administrators if the session user has the Administrator Role. If the optional field orgID is provided, then all Security Managers for the organization will be returned instead.
  • A list of all Users within the Organization's context if the session user is not an Administrator

NOTE: All Users returned are "active" Users.

Fields Parameter
Expand

The fields parameter should be specified along the query string, and it takes the syntax

    ?fields=<field>,...

Allowed Fields

*id
**username
**firstname
**lastname
**status
role
title
email
address
city
state
country
phone
fax
createdTime
modifiedTime
lastLogin
lastLoginIP
mustChangePassword
locked
failedLogins
authType
fingerprint
password
description
canUse
canManage
managedUsersGroups
managedObjectsGroups
preferences

ldaps
ldapUsername

Session user is not role "1" (Administrator)

responsibleAsset
group

Legend

* = always comes back

** = comes back if fields list not specified on GET all
Request User Parameters
Expand

Session user is an Administrator

{
	"orgID" : <number> OPTIONAL
}

Session user is not an Administrator

None

Example Response
Administrator
Expand
{
	"type" : "regular",
	"response" : [
		{
			"id" : "1",
			"status" : "0",
			"username" : "admin",
			"ldapUsername" : "",
			"firstname" : "Admin",
			"lastname" : "User",
			"title" : "Application Administrator",
			"email" : "",
			"address" : "",
			"city" : "",
			"state" : "",
			"country" : "",
			"phone" : "",
			"fax" : "",
			"createdTime" : "1432921843",
			"modifiedTime" : "1453473716",
			"lastLogin" : "1454350174",
			"lastLoginIP" : "172.20.0.0",
			"mustChangePassword" : "false",
			"locked" : "false",
			"failedLogins" : "0",
			"authType" : "tns",
			"fingerprint" : null,
			"password" : "SET",
			"preferences" : [
				{
					"name" : "timezone",
					"value" : "America/New_York",
					"tag" : ""
				}
			],
			"canUse" : true,
			"canManage" : true,
			"role" : {
				"id" : "1",
				"name" : "Administrator",
				"description" : "Role defining an administrator of the application"
			},
			"ldap" : {
				"id" : "-1",
				"name" : "",
				"description" : ""
			}
		}
	],
	"error_code" : 0,
	"error_msg" : "",
	"warnings" : [],
	"timestamp" : 1454350178
}
Organization User
Expand
{
	"type" : "regular",
	"response" : [
		{
			"id" : "1",
			"status" : "0",
			"username" : "head",
			"ldapUsername" : "",
			"firstname" : "",
			"lastname" : "",
			"title" : "",
			"email" : "",
			"address" : "",
			"city" : "",
			"state" : "",
			"country" : "",
			"phone" : "",
			"fax" : "",
			"createdTime" : "1433519288",
			"modifiedTime" : "1453477493",
			"lastLogin" : "1454349916",
			"lastLoginIP" : "172.20.0.0",
			"mustChangePassword" : "false",
			"locked" : "false",
			"failedLogins" : "0",
			"authType" : "tns",
			"fingerprint" : null,
			"password" : "SET",
			"managedUsersGroups" : [
				{
					"id" : "-1",
					"name" : "All Groups",
					"description" : "All Groups"
				}
			],
			"managedObjectsGroups" : [
				{
					"id" : "-1",
					"name" : "All Groups",
					"description" : "All Groups"
				}
			],
			"preferences" : [
				{
					"name" : "timezone",
					"value" : "America/Nome",
					"tag" : "system"
				}
			],
			"canUse" : true,
			"canManage" : true,
			"role" : {
				"id" : "2",
				"name" : "Security Manager",
				"description" : "The Security Manager role has full access to all actions at the organization level. A Security Manager has the ability to create new groups and manage existing ones. A Security Manager can also define how users interact with other groups.\n\nThe ability to manage other users and their objects can be configured using group permissions on the Access tab of User add/edit. This includes viewing and stopping running scans and reports."
			},
			"responsibleAsset" : {
				"id" : "19",
				"name" : "Windows Hosts",
				"description" : "The operating system detected has Windows installed.\n\nThis will be helpful for those getting started with SecurityCenter."
			},
			"group" : {
				"id" : "0",
				"name" : "Full Access",
				"description" : "Full Access group"
			},
			"ldap" : {
				"id" : "-1",
				"name" : "",
				"description" : ""
			}
		},
		{
			"id" : "36",
			"status" : "0",
			"username" : "GroupA",
			"firstname" : "",
			"lastname" : "",
			"title" : "",
			"email" : "",
			"address" : "",
			"city" : "",
			"state" : "",
			"country" : "",
			"phone" : "",
			"fax" : "",
			"createdTime" : "1447966099",
			"modifiedTime" : "1453476062",
			"lastLogin" : "1449517376",
			"lastLoginIP" : "172.20.0.0",
			"mustChangePassword" : "false",
			"locked" : "false",
			"failedLogins" : "0",
			"authType" : "tns",
			"fingerprint" : null,
			"password" : "SET",
			"managedUsersGroups" : [
				{
					"id" : "-1",
					"name" : "All Groups",
					"description" : "All Groups"
				}
			],
			"managedObjectsGroups" : [
				{
					"id" : "-1",
					"name" : "All Groups",
					"description" : "All Groups"
				}
			],
			"preferences" : [
				{
					"name" : "timezone",
					"value" : "America/Nome",
					"tag" : "system"
				}
			],
			"canUse" : true,
			"canManage" : true,
			"role" : {
				"id" : "2",
				"name" : "Security Manager",
				"description" : "The Security Manager role has full access to all actions at the organization level. A Security Manager has the ability to create new groups and manage existing ones. A Security Manager can also define how users interact with other groups.\n\nThe ability to manage other users and their objects can be configured using group permissions on the Access tab of User add/edit. This includes viewing and stopping running scans and reports."
			},
			"responsibleAsset" : {
				"id" : "14",
				"name" : "Systems that have been Scanned",
				"description" : "This asset uses the Scan Summary plugin to detect if a host has been scanned by Nessus. The Scan Summary plugin contains the list of tests conducted during the most resent scan."
			},
			"group" : {
				"id" : "2",
				"name" : "Group A",
				"description" : ""
			}
		},
		{
			"id" : "37",
			"status" : "0",
			"username" : "GroupB",
			"ldapUsername" : "",
			"firstname" : "",
			"lastname" : "",
			"title" : "",
			"email" : "",
			"address" : "",
			"city" : "",
			"state" : "",
			"country" : "",
			"phone" : "",
			"fax" : "",
			"createdTime" : "1447966134",
			"modifiedTime" : "1452788397",
			"lastLogin" : "1452528350",
			"lastLoginIP" : "172.20.0.0",
			"mustChangePassword" : "false",
			"locked" : "false",
			"failedLogins" : "0",
			"authType" : "tns",
			"fingerprint" : null,
			"password" : "SET",
			"managedUsersGroups" : [],
			"managedObjectsGroups" : [],
			"preferences" : [
				{
					"name" : "timezone",
					"value" : "America/Nome",
					"tag" : "system"
				}
			],
			"canUse" : true,
			"canManage" : true,
			"role" : {
				"id" : "2",
				"name" : "Security Manager",
				"description" : "The Security Manager role has full access to all actions at the organization level. A Security Manager has the ability to create new groups and manage existing ones. A Security Manager can also define how users interact with other groups.\n\nThe ability to manage other users and their objects can be configured using group permissions on the Access tab of User add/edit. This includes viewing and stopping running scans and reports."
			},
			"responsibleAsset" : {
				"id" : "16",
				"name" : "Linux Hosts",
				"description" : "The operating system detected has Linux installed."
			},
			"group" : {
				"id" : "3",
				"name" : "Group B",
				"description" : ""
			},
			"ldap" : {
				"id" : "-1",
				"name" : "",
				"description" : ""
			}
		}
	],
	"error_code" : 0,
	"error_msg" : "",
	"warnings" : [],
	"timestamp" : 1454350034
}