Get All Endpoint Permissions
Returns all API endpoints with their currently assigned roles
Authorization
BearerAuth In: header
Response Body
application/json
application/json
application/json
application/json
application/json
application/json
curl -X GET "https://example.com/v1/rbac/endpoint-role/endpoints"[
{
"endpoint": "/v1/accounts/%",
"method": "GET",
"roles": [
"Administrator",
"User",
"StandardUser"
],
"is_unassigned": false
}
]{
"status": 400,
"code": "rbac_m.endpoint_not_found",
"message": "Invalid input",
"details": [
{
"field": "roles",
"rule": "required",
"param": "string",
"message": "roles is required"
}
],
"class": "validation",
"retryable": false
}{
"status": 400,
"code": "rbac_m.endpoint_not_found",
"message": "Invalid input",
"details": [
{
"field": "roles",
"rule": "required",
"param": "string",
"message": "roles is required"
}
],
"class": "validation",
"retryable": false
}{
"status": 400,
"code": "rbac_m.endpoint_not_found",
"message": "Invalid input",
"details": [
{
"field": "roles",
"rule": "required",
"param": "string",
"message": "roles is required"
}
],
"class": "validation",
"retryable": false
}{
"status": 400,
"code": "rbac_m.endpoint_not_found",
"message": "Invalid input",
"details": [
{
"field": "roles",
"rule": "required",
"param": "string",
"message": "roles is required"
}
],
"class": "validation",
"retryable": false
}{
"overall_status": "unhealthy",
"message": "Service is shutting down",
"timestamp": "2019-08-24T14:15:22Z"
}Removes the endpoint together with every API permission that references it. The cascade is NOT atomic: RemoveAPIEndpoint opens Conn.Transaction(...) but discards the handle it is given and issues both deletes on the outer *gorm.DB, so a failure on the second leaves the grants deleted and the endpoint in place behind a 500 common.database_error. Neither this route nor the PUT on the same path invalidates the API-permission cache, which CanCallAPIv0 reads and which is written with a 24-hour TTL: an actor whose grants went with the endpoint keeps passing the check until that entry expires. The api-permission routes do invalidate.
Returns all API endpoints that only have Administrator role access. These endpoints need role assignments for regular users.