Operations - List
Lists all operations available Azure Security Insights Resource Provider.
GET https://management.azure.com/providers/Microsoft.SecurityInsights/operations?api-version=2024-03-01
URI Parameters
Name | In | Required | Type | Description |
---|---|---|---|---|
api-version
|
query | True |
string |
The API version to use for this operation. |
Responses
Name | Type | Description |
---|---|---|
200 OK |
OK. Successfully retrieved operations list. |
|
Other Status Codes |
Error response describing why the operation failed. |
Security
azure_auth
Azure Active Directory OAuth2 Flow
Type:
oauth2
Flow:
implicit
Authorization URL:
https://login.microsoftonline.com/common/oauth2/authorize
Scopes
Name | Description |
---|---|
user_impersonation | impersonate your user account |
Examples
Get all operations.
Sample Request
GET https://management.azure.com/providers/Microsoft.SecurityInsights/operations?api-version=2024-03-01
Sample Response
{
"value": [
{
"name": "Microsoft.SecurityInsights/operations/read",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Operations",
"operation": "Get Operations",
"description": "Gets operations"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/automationRules/read",
"display": {
"provider": "Microsoft Security Insights",
"resource": "AutomationRules",
"operation": "Get Automation Rules",
"description": "Gets an automation rule"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/automationRules/write",
"display": {
"provider": "Microsoft Security Insights",
"resource": "AutomationRules",
"operation": "Update Automation Rules",
"description": "Updates an automation rule"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/automationRules/delete",
"display": {
"provider": "Microsoft Security Insights",
"resource": "AutomationRules",
"operation": "Delete Automation Rules",
"description": "Deletes an automation rule"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/Bookmarks/read",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Bookmarks",
"operation": "Get Bookmarks",
"description": "Gets bookmarks"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/Bookmarks/write",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Bookmarks",
"operation": "Update Bookmarks",
"description": "Updates bookmarks"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/Bookmarks/delete",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Bookmarks",
"operation": "Delete Bookmarks",
"description": "Deletes bookmarks"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/Bookmarks/expand/action",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Bookmarks",
"operation": "Expand on entity",
"description": "Gets related entities of an entity by a specific expansion"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/bookmarks/relations/read",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Bookmark Relations",
"operation": "Get Bookmark Relations",
"description": "Gets a bookmark relation"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/bookmarks/relations/write",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Bookmark Relations",
"operation": "Update Bookmark Relations",
"description": "Updates a bookmark relation"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/bookmarks/relations/delete",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Bookmark Relations",
"operation": "Delete Bookmark Relations",
"description": "Deletes a bookmark relation"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/alertRules/read",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Alert Rules",
"operation": "Get Alert Rules",
"description": "Gets the alert rules"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/alertRules/write",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Alert Rules",
"operation": "Update Alert Rules",
"description": "Updates alert rules"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/alertRules/delete",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Alert Rules",
"operation": "Delete Alert Rules",
"description": "Deletes alert rules"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/alertRules/actions/read",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Alert Rules Actions",
"operation": "Get Alert Rule Response Actions",
"description": "Gets the response actions of an alert rule"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/alertRules/actions/write",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Alert Rules Actions",
"operation": "Update Alert Rule Response Actions",
"description": "Updates the response actions of an alert rule"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/alertRules/actions/delete",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Alert Rules Actions",
"operation": "Delete Alert Rule Response Actions",
"description": "Deletes the response actions of an alert rule"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/dataConnectors/read",
"display": {
"provider": "Microsoft Security Insights",
"resource": "DataConnectors",
"operation": "Get Data Connectors",
"description": "Gets the data connectors"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/dataConnectors/write",
"display": {
"provider": "Microsoft Security Insights",
"resource": "DataConnectors",
"operation": "Update Data Connectors",
"description": "Updates a data connector"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/dataConnectors/delete",
"display": {
"provider": "Microsoft Security Insights",
"resource": "DataConnectors",
"operation": "Delete a Data Connector",
"description": "Deletes a data connector"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/dataConnectorsCheckRequirements/action",
"display": {
"provider": "Microsoft Security Insights",
"resource": "DataConnectorsCheckRequirements",
"operation": "Check user authorization and license",
"description": "Check user authorization and license"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/incidents/read",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Incidents",
"operation": "Get Incidents",
"description": "Gets an incident"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/incidents/write",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Incidents",
"operation": "Update Incidents",
"description": "Updates an incident"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/incidents/delete",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Incidents",
"operation": "Delete Incidents",
"description": "Deletes an incident"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/incidents/comments/read",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Incident Comments",
"operation": "Get Incident Comments",
"description": "Gets the incident comments"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/incidents/comments/write",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Incident Comments",
"operation": "Create Incident Comments",
"description": "Creates a comment on the incident"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/incidents/comments/delete",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Incident Comments",
"operation": "Delete Incident Comment",
"description": "Deletes a comment on the incident"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/incidents/relations/read",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Incident Relations",
"operation": "Get Incident Relations",
"description": "Gets a relation between the incident and related resources"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/incidents/relations/write",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Incident Relations",
"operation": "Update Incident Relations",
"description": "Updates a relation between the incident and related resources"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/incidents/relations/delete",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Incident Relations",
"operation": "Delete Incident Relations",
"description": "Deletes a relation between the incident and related resources"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/threatintelligence/read",
"display": {
"provider": "Microsoft Security Insights",
"resource": "ThreatIntelligence",
"operation": "Get Threat Intelligence",
"description": "Gets Threat Intelligence"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/threatintelligence/write",
"display": {
"provider": "Microsoft Security Insights",
"resource": "ThreatIntelligence",
"operation": "Update Threat Intelligence",
"description": "Updates Threat Intelligence"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/threatintelligence/delete",
"display": {
"provider": "Microsoft Security Insights",
"resource": "ThreatIntelligence",
"operation": "Delete Threat Intelligence",
"description": "Deletes Threat Intelligence"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/threatintelligence/query/action",
"display": {
"provider": "Microsoft Security Insights",
"resource": "ThreatIntelligence",
"operation": "Query Threat Intelligence",
"description": "Query Threat Intelligence"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/threatintelligence/metrics/action",
"display": {
"provider": "Microsoft Security Insights",
"resource": "ThreatIntelligence",
"operation": "Collect Threat Intelligence Metrics",
"description": "Collect Threat Intelligence Metrics"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/threatintelligence/bulkDelete/action",
"display": {
"provider": "Microsoft Security Insights",
"resource": "ThreatIntelligence",
"operation": "Bulk Delete Threat Intelligence",
"description": "Bulk Delete Threat Intelligence"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/threatintelligence/bulkTag/action",
"display": {
"provider": "Microsoft Security Insights",
"resource": "ThreatIntelligence",
"operation": "Bulk Tags Threat Intelligence",
"description": "Bulk Tags Threat Intelligence"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/threatintelligence/indicators/write",
"display": {
"provider": "Microsoft Security Insights",
"resource": "ThreatIntelligence",
"operation": "Update Threat Intelligence Indicators",
"description": "Updates Threat Intelligence Indicators"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/threatintelligence/indicators/delete",
"display": {
"provider": "Microsoft Security Insights",
"resource": "ThreatIntelligence",
"operation": "Delete Threat Intelligence Indicators",
"description": "Deletes Threat Intelligence Indicators"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/threatintelligence/indicators/query/action",
"display": {
"provider": "Microsoft Security Insights",
"resource": "ThreatIntelligence",
"operation": "Query Threat Intelligence Indicators",
"description": "Query Threat Intelligence Indicators"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/threatintelligence/indicators/metrics/action",
"display": {
"provider": "Microsoft Security Insights",
"resource": "ThreatIntelligence",
"operation": "Get Threat Intelligence Indicator Metrics",
"description": "Get Threat Intelligence Indicator Metrics"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/threatintelligence/indicators/bulkDelete/action",
"display": {
"provider": "Microsoft Security Insights",
"resource": "ThreatIntelligence",
"operation": "Bulk Delete Threat Intelligence Indicators",
"description": "Bulk Delete Threat Intelligence Indicators"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/threatintelligence/indicators/bulkTag/action",
"display": {
"provider": "Microsoft Security Insights",
"resource": "ThreatIntelligence",
"operation": "Bulk Tags Threat Intelligence Indicators",
"description": "Bulk Tags Threat Intelligence Indicators"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/threatintelligence/indicators/read",
"display": {
"provider": "Microsoft Security Insights",
"resource": "ThreatIntelligence",
"operation": "Get Threat Intelligence Indicators",
"description": "Gets Threat Intelligence Indicators"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/threatintelligence/metrics/read",
"display": {
"provider": "Microsoft Security Insights",
"resource": "ThreatIntelligence",
"operation": "Collect Threat Intelligence Metrics",
"description": "Collect Threat Intelligence Metrics"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/threatintelligence/createIndicator/action",
"display": {
"provider": "Microsoft Security Insights",
"resource": "ThreatIntelligence",
"operation": "Create Threat Intelligence Indicator",
"description": "Create Threat Intelligence Indicator"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/threatintelligence/indicators/appendTags/action",
"display": {
"provider": "Microsoft Security Insights",
"resource": "ThreatIntelligence",
"operation": "Append tags to Threat Intelligence Indicator",
"description": "Append tags to Threat Intelligence Indicator"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/threatintelligence/indicators/replaceTags/action",
"display": {
"provider": "Microsoft Security Insights",
"resource": "ThreatIntelligence",
"operation": "Replace Tags of Threat Intelligence Indicator",
"description": "Replace Tags of Threat Intelligence Indicator"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/threatintelligence/queryIndicators/action",
"display": {
"provider": "Microsoft Security Insights",
"resource": "ThreatIntelligence",
"operation": "Query Threat Intelligence Indicators",
"description": "Query Threat Intelligence Indicators"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/Watchlists/read",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Watchlists",
"operation": "Get Watchlists",
"description": "Gets Watchlists"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/Watchlists/write",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Watchlists",
"operation": "Create Watchlists",
"description": "Create Watchlists"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/Watchlists/delete",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Watchlists",
"operation": "Delete Watchlists",
"description": "Deletes Watchlists"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/onboardingStates/read",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Onboarding States",
"operation": "Get Onboarding States",
"description": "Gets an onboarding state"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/onboardingStates/write",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Onboarding States",
"operation": "Update Onboarding States",
"description": "Updates an onboarding state"
},
"origin": "user"
},
{
"name": "Microsoft.SecurityInsights/onboardingStates/delete",
"display": {
"provider": "Microsoft Security Insights",
"resource": "Onboarding States",
"operation": "Delete Onboarding States",
"description": "Deletes an onboarding state"
},
"origin": "user"
}
]
}
Definitions
Name | Description |
---|---|
Cloud |
Error response structure. |
Cloud |
Error details. |
Display |
Properties of the operation |
Operation |
Operation provided by provider |
Operations |
Lists the operations available in the SecurityInsights RP. |
CloudError
Error response structure.
Name | Type | Description |
---|---|---|
error |
Error data |
CloudErrorBody
Error details.
Name | Type | Description |
---|---|---|
code |
string |
An identifier for the error. Codes are invariant and are intended to be consumed programmatically. |
message |
string |
A message describing the error, intended to be suitable for display in a user interface. |
Display
Properties of the operation
Name | Type | Description |
---|---|---|
description |
string |
Description of the operation |
operation |
string |
Operation name |
provider |
string |
Provider name |
resource |
string |
Resource name |
Operation
Operation provided by provider
Name | Type | Description |
---|---|---|
display |
Properties of the operation |
|
isDataAction |
boolean |
Indicates whether the operation is a data action |
name |
string |
Name of the operation |
origin |
string |
The origin of the operation |
OperationsList
Lists the operations available in the SecurityInsights RP.
Name | Type | Description |
---|---|---|
nextLink |
string |
URL to fetch the next set of operations. |
value |
Array of operations |