Retrieve Details of all Security Rules in a Container



Retrieves details of the security rules that are in the specified container and match the specified query criteria. If you don't specify any query criteria, then details of all the security rules in the container are displayed. To filter the search results, you can pass one or more of the following query parameters, by appending them to the URI in the following syntax:


Required Role: To complete this task, you must have the Compute_Monitor or Compute_Operations role. If this role isn't assigned to you or you're not sure, then ask your system administrator to ensure that the role is assigned to you in Oracle Cloud My Services. See Modifying User Roles in Managing and Monitoring Oracle Cloud.


Supported Media Types
Path Parameters
  • /Compute-identity_domain/user or /Compute-identity_domain/ for user-defined security rules.

Query Parameters
  • The three-part name of the security application: (/Compute-identity_domain/user/object_name) for user-defined security applications and /oracle/public/object_name for predefined security applications.

  • A description of the security rule.

  • Indicates whether the security rule is enabled (set to false) or disabled (true). The default setting is false.

  • The three-part name (/Compute-identity_domain/user/object_name) of the destination security list or security IP list.

    You must use the prefix seclist: or seciplist: to identify the list type.

    Note: You can specify a security IP list as the destination in a secrule, provided src_list is a security list that has DENY as its outbound policy.

    You cannot specify any of the security IP lists in the /oracle/public container as a destination in a secrule.

  • The three-part name of the object (/Compute-identity_domain/user/object).
  • The three-part name (/Compute-identity_domain/user/object_name) of the source security list or security IP list.

    You must use the prefix seclist: or seciplist: to identify the list type.

Header Parameters
Back to Top


Supported Media Types

200 Response

OK. See Status Codes for information about other possible HTTP status codes.
Body ()
Root Schema : SecRule-list-response
Type: object
Show Source
Nested Schema : result
Type: array
Show Source
Nested Schema : SecRule-response
Type: object
Show Source
  • Set this parameter to PERMIT.

  • The three-part name of the security application: (/Compute-identity_domain/user/object_name) for user-defined security applications and /oracle/public/object_name for predefined security applications.

  • A description of the security rule.

  • Indicates whether the security rule is enabled (set to false) or disabled (true). The default setting is false.

  • The three-part name (/Compute-identity_domain/user/object_name) of the destination security list or security IP list.

    You must use the prefix seclist: or seciplist: to identify the list type.

    Note: You can specify a security IP list as the destination in a secrule, provided src_list is a security list that has DENY as its outbound policy.

    You cannot specify any of the security IP lists in the /oracle/public container as a destination in a secrule.

  • The three-part name of the object (/Compute-identity_domain/user/object).
  • The three-part name (/Compute-identity_domain/user/object_name) of the source security list or security IP list.

    You must use the prefix seclist: or seciplist: to identify the list type.

  • Uniform Resource Identifier
Back to Top


cURL Command

The following example shows how to retrieve details about all security rules in the /Compute-acme/ container by submitting a GET request on the REST resource using cURL. For more information about cURL, see Use cURL.

Enter the command on a single line. Line breaks are used in this example for readability.

curl -X GET 
     -H "Cookie: $COMPUTE_COOKIE"
     -H "Accept: application/oracle-compute-v3+json"
  • COMPUTE_COOKIE is the name of the variable in which you stored the authentication cookie earlier. For information about retrieving the authentication cookie and storing it in a variable, see Authentication.

  • is an example REST endpoint URL. Change this value to the REST endpoint URL of your Compute Classic site. For information about finding out REST endpoint URL for your site, see Send Requests.

  • acme and are example values. Replace acme with the identity domain ID of your Compute Classic account, and with your user name.

Example of Response Body

The following example shows the response body in JSON format.

  "result": [
      "dst_list": "seclist:/Compute-acme/",
      "name": "/Compute-acme/",
      "src_list": "seciplist:/Compute-acme/",
      "uri": "",
      "disabled": false,
      "application": "/Compute-acme/",
      "action": "PERMIT"
Back to Top