Skip to main content

List identity rare access

GET 

/intelligence/v1/identities/:id/outliers/rare-access

Continuation endpoint for the parent response's outliers.rareAccess.next link. Resolves the identity's first outlier, then returns one page of rare access items for the supplied limit and offset values. Pass count=true to receive X-Total-Count (including 0 on empty pages). An identity with no outlier returns an empty array with X-Total-Count: 0 when count=true. Requires tenant license idn:response-and-remediation and the IDA-outliers license.

Not applicable to non-human identities (no outliers slice on the NHI envelope).

Request

Responses

One page of rare access items.

Response Headers
    X-Total-Count

    Total number of rare-access items for the resolved outlier; present only when count=true was sent (including 0 on empty pages).