Palo Alto Networks Audits API is one of 741 APIs that Palo Alto Networks publishes on the APIs.io network, described by a machine-readable OpenAPI specification.
Tagged areas include Audits. The published artifact set on APIs.io includes an OpenAPI specification.
This API exposes
96 operations
across 96 paths,
and defines 64 schemas.
It is described by OpenAPI 3.2.0, at version 1.0.
Requests are made against a single base URL, PATH_TO_CONSOLE.
The identity and technical contract details declared by the specification.
shared.ContainerNetworkFirewallSubtypeAudits
object
ContainerNetworkFirewallSubtypeAudits represents the container network firewall sub type audits per profile
2 properties
prisma.AssetType
integer
AssetType is the integral value that we need to pass to PC in the UAI and Unified Alerts integrations to identify the asset type Mappings of the asset types ag…
kubeaudit.EventUserInfo
object
EventUserInfo holds the information about the user that authenticated to Kubernentes
3 properties
mitre.Technique
string
Technique is the MITRE framework attack technique
shared.ContainerNetworkFirewallProfileAudits
object
ContainerNetworkFirewallProfileAudits represents the container network firewall profile audits
10 properties
-_shared.AppFirewallAudit
array
waas.Protection
string
Protection is the type of protection
admission.Audit
object
Audit represents an admission audit
16 properties
shared.FileMetadata
object
FileMetadata represents the metadata of a single file/directory
3 properties
kubeaudit.Audit
object
Audit represents a Kubernetes audit - this is the data that is stored for matched audits
14 properties
types.MgmtAuditFilters
object
MgmtAuditFilters are filters for management audit queries
2 properties
-_shared.HostNetworkFirewallProfileAudits
array
shared.RuntimeAttackType
string
RuntimeAttackType is the sub-category of the attack (e.g., malware process, process not in model, etc...)
shared.HostNetworkFirewallSubtypeAudits
object
HostNetworkFirewallSubtypeAudits represents the host network firewall sub type audits per profile
2 properties
types.AuditTimeslice
object
AuditTimeslice counts the number of audit events for a given time period
3 properties
shared.RuntimeSeverity
string
RuntimeSeverity represents the runtime severity
common.CloudProvider
string
CloudProvider specifies the cloud provider name
-_shared.ContainerNetworkFirewallProfileAudits
array
waas.AttackType
string
AttackType is the type of the attack
waas.OWASPTop10
string
OWASPTop10 represents OWASP top 10 attacks
prisma.ServiceProvider
string
ServiceProvider represents service provider id or "other" in case it is non cloud.
shared.TrustAudits
object
TrustAudits represents the trust profile audits
10 properties
shared.Incident
object
Incident represents an incident
31 properties
shared.MgmtType
string
MgmtType represents management audit types
shared.AppFirewallAudit
object
AppFirewallAudit represents a firewall audit event
60 properties
waas.FirewallType
string
FirewallType represents the firewall type
shared.LogInspectionEvent
object
LogInspectionEvent is a log inspection event detected according to the log inspection rules
9 properties
shared.FileIntegrityEvent
object
FileIntegrityEvent represents a single file integrity event detected according to the file integrity monitoring rules
15 properties
prisma.CloudType
integer
CloudType is the prisma cloud type of the resource that is used for policy verdict creation Cloud type values are documented here - https://docs.google.com/spr…
-_shared.TrustAudits
array
shared.TrustRegistryRepoAudits
object
TrustRegistryRepoAudits represents the trust registry/repo audits per profile
2 properties
shared.FileIntegrityEventType
string
FileIntegrityEventType represents the type of the file integrity event
shared.LambdaRuntimeType
string
LambdaRuntimeType represents the runtime type of the serverless function The constants used are taken from: https://docs.aws.amazon.com/lambda/latest/dg/APICre…
runtime.FSFileType
integer
FSFileType represents the file type
waas.Effect
string
Effect is the effect that will be used in the rule
cnnf.HostAudit
object
HostAudit represents a host network firewall audit event
14 properties
shared.HostNetworkFirewallProfileAudits
object
HostNetworkFirewallProfileAudits represents the host network firewall profile audits
10 properties
shared.MgmtAudit
object
MgmtAudit represents a management audit in the system
8 properties
-_shared.RuntimeAudit
array
shared.IncidentType
string
IncidentType is the type of the incident
shared.RuntimeType
string
RuntimeType represents the runtime protection type
runtime.RuleEffect
string
RuleEffect is the effect that will be used in the runtime rule
waas.HTTPFieldType
string
HTTPFieldType indicates type of http field
common.ProfileHash
integer
ProfileHash represents the profile hash It is allowed to contain up to uint32 numbers, and represented by int64 since mongodb does not support unsigned data ty…
shared.IncidentCategory
string
IncidentCategory is the incident category
waas.OWASPAPITop10
string
OWASPAPITop10 represents OWASP API top 10 attacks
vuln.Effect
string
Effect specifies relevant action for a vulnerability
shared.Audit
object
Audit represents an event in the system
17 properties
shared.TrustAudit
object
TrustAudit represents a trust audit
10 properties
-_shared.LogInspectionEvent
array
cnnf.ContainerAudit
object
ContainerAudit represents a network firewall audit event
18 properties
waas.HTTPField
object
HTTPField is used to perform checks on flags and fields
3 properties
cnnf.NetworkFirewallAttackType
string
NetworkFirewallAttackType is the network firewall type of attack
-_shared.FileIntegrityEvent
array
-_types.AuditTimeslice
array
shared.RuntimeAudit
object
RuntimeAudit represents a runtime audit event (fires when a runtime policy is violated)
50 properties
cnnf.RuleID
integer
RuleID represents the ID of each container network firewall policy rule
common.RuntimeResource
object
RuntimeResource represents on which resource in the system a rule applies (e.g., specific host or image) Empty resource or wildcard () represents all resources…
9 properties
The full machine-readable OpenAPI contract behind this narrative.
Other APIs Palo Alto Networks publishes across the network.