security

GET /v1/ip-allow

Which addresses may open a shell on your sites.

所有 security 端点

身份验证

请将 API 密钥作为 bearer 令牌发送。此端点在规范中未指明具体的权限,因此请为您的密钥赋予所需的最小权限,并通过检查响应来确认,而不是盲目假设。

您的组织 ID 应填在此处

此端点将 org_id 作为查询参数。不填则调用涵盖您的整个租户子树;发送该参数则将调用范围缩小到一个组织。

您的组织ID位于控制面板的API密钥屏幕上,就在密钥本身的旁边。这是您在每次调用时使用的相同ID。

免费试用

将尖括号中的内容替换为您自己的值,并将键占位符替换为您仪表板中的一个键。

curl -X GET https://api.zinndigital.com/v1/ip-allow \
  -H "Authorization: Bearer zdk_live_…"

已登录?您仪表板中的 API 控制台会自动填入您真实的组织 ID 和您自己的密钥,并针对实时 API 运行请求,以便您查看实际的响应。 在 API 控制台中打开此端点

详细信息

Your organisation's SSH/SFTP allow-list (#1493). While it is EMPTY your sites are reachable from anywhere; adding the first entry is what turns the restriction on. `restricted` says which of those two states you are in, in so many words. A client that inferred it from an empty array would be guessing at the difference between "open to the whole internet" and "locked down", which are opposite facts. `staff_ranges` is a COUNT, not the addresses. Zinn® support and provisioning are unioned into the effective list so a narrow entry of yours cannot lock us out of the site you have just called us about - but our infrastructure's ranges are not published to tenants.

参数

名称类型必填内容简介
org_id (query)stringThe organization to act on. Omitted (or empty) means your own. A reseller managing a client org must name it - defaulting silently would edit the reseller's own list while the s…

响应

名称类型必填内容简介
entriesIpAllowEntry[]
restrictedbooleanfalse = your sites are reachable from any address. An empty list is NOT a deny-all.
staff_rangesintegerHow many Zinn® support ranges are unioned in.