
Research
/Security News
Contagious Interview Campaign Escalates With 67 Malicious npm Packages and New Malware Loader
North Korean threat actors deploy 67 malicious npm packages using the newly discovered XORIndex malware loader.
ntnx-security-py-client
Advanced tools
The Python client for Nutanix Security APIs is designed for Python client application developers offering them simple and flexible access to APIs that manage security features, such as encryption, certificates, or platform hardening.
Python 3.6, 3.7, 3.8 and 3.9 are fully supported and tested.
virtualenv is a tool to create isolated Python environments. The basic problem it addresses is one of dependencies and versions, and indirectly permissions. virtualenv can help you install this client without needing system install permissions. It creates an environment that has its own installation directories without sharing libraries with other virtualenv environments or the system installation.
To install virtualenv via pip run:
$ pip3 install virtualenv
Create the virtualenv and activate it
$ virtualenv -p python3 <my-env>
$ source <my-env>/bin/activate
Install the Nutanix client into the virtualenv
<my-env>/bin/pip install ntnx-security-py-client
To install virtualenv via pip run:
> pip install virtualenv
Create the virtualenv and activate it
> virtualenv <my-env>
> myenv\Scripts\activate
Install the Nutanix SDK into the virtualenv
<your-env>\Scripts\pip.exe install ntnx-security-py-client
Then import the package:
import ntnx_security_py_client
The python client for Nutanix Security APIs can be configured with the following parameters
Parameter | Description | Required | Default Value |
---|---|---|---|
scheme | URI scheme for connecting to the cluster (HTTP or HTTPS using SSL/TLS) | No | https |
host | IPv4/IPv6 address or FQDN of the cluster to which the client will connect to | Yes | N/A |
port | Port on the cluster to which the client will connect to | No | 9440 |
username | Username to connect to a cluster | Yes | N/A |
password | Password to connect to a cluster | Yes | N/A |
debug | Runs the client in debug mode if specified | No | False |
verify_ssl | Verify SSL certificate of cluster the client will connect to | No | True |
max_retry_attempts | Maximum number of retry attempts while connecting to the cluster | No | 5 |
backoff_factor | A backoff factor to apply between attempts after the second try. | No | 3 |
max_redirects | Maximum number of redirects to follow | No | 10 |
logger_file | File location to which debug logs are written to | No | N/A |
connect_timeout | Connection timeout in milliseconds for all operations | No | 30000 |
read_timeout | Read timeout in milliseconds for all operations | No | 30000 |
download_directory | Directory where downloaded files will be stored in | No | Current Working Directory |
download_chunk_size | Chunk size in bytes for files to download | No | 8*1024 bytes |
config = Configuration()
config.host = '10.19.50.27' # IPv4/IPv6 address or FQDN of the cluster
config.port = 9440 # Port to which to connect to
config.username = 'admin' # UserName to connect to the cluster
config.password = 'password' # Password to connect to the cluster
api_client = ApiClient(configuration=config)
config = Configuration()
# Configure the cluster as shown previously along with the following proxy configuration
# ...
config.proxy_scheme = "https"
config.proxy_host = "127.0.0.1"
config.proxy_port = 8080
config.proxy_username = "proxy_admin"
config.proxy_password = "proxy_password"
api_client = ApiClient(configuration=config)
Nutanix APIs currently support two type of authentication schemes:
config = Configuration()
config.set_api_key('abcde12345')
api_client = ApiClient(configuration=config)
The python client can be configured to send additional headers on each request.
client = ApiClient(configuration=config)
client.add_default_header(header_name='Accept-Encoding', header_value='gzip, deflate, br')
The client can be configured to retry requests that fail with the following status codes. The numbers of seconds before which the next retry is attempted is determined by the retryInterval:
The client will also redirect requests that fail with 302 - Found to the new location specified in the response header Location
.
{backoff factor} * (2 * ({number of retries so far} - 1))
config = Configuration()
config.max_retry_attempts = 3 # Max retry attempts while reconnecting on a loss of connection
config.backoff_factor = 3 # Backoff factor to use during retry attempts
config.max_redirects = 3 # Max number of redirects to follow
client = ApiClient(configuration=config)
# Initialize the API
approval_policies_api_instance = ApprovalPoliciesApi(api_client=client) # client configured in previous step
extId = 'extId_example' # UUID.
# Get an approval policy details
try:
api_response = approval_policies_api_instance.get_approval_policy_by_ext_id(extId)
except ApiException as e:
Headers can be configured globally on the python client using the method to set default headers. However, sometimes headers need to be set on an individual operation basis. Nutanix APIs require that concurrent updates are protected using ETag headers.
# Initialize the API
approval_policies_api_instance = ApprovalPoliciesApi(api_client=client) # client configured in previous step
extId = 'extId_example' # UUID.
# Get an approval policy details
try:
api_response = approval_policies_api_instance.get_approval_policy_by_ext_id(extId)
except ApiException as e:
# Extract E-Tag Header
etag_value = ApiClient.get_etag(api_response)
# Update the details of a specific approval policy
try:
# The body parameter in the following operation is received from the previous GET request's response which needs to be updated.
api_response = approval_policies_api_instance.update_approval_policy_by_ext_id(body, extId, if_match=etag_value) # Use the extracted etag value
except ApiException as e:
List Operations for Nutanix APIs support pagination, filtering, sorting and projections. The table below details the parameters that can be used to set the options for pagination etc.
Parameter | Description |
---|---|
_page | specifies the page number of the result set. Must be a positive integer between 0 and the maximum number of pages that are available for that resource. Any number out of this range will lead to no results being returned. |
_limit | specifies the total number of records returned in the result set. Must be a positive integer between 0 and 100. Any number out of this range will lead to a validation error. If the limit is not provided a default value of 50 records will be returned in the result set |
_filter | allows clients to filter a collection of resources. The expression specified with $filter is evaluated for each resource in the collection, and only items where the expression evaluates to true are included in the response. Expression specified with the $filter must conform to the OData V4.01 URL conventions. |
_orderby | allows clients to specify the sort criteria for the returned list of objects. Resources can be sorted in ascending order using asc or descending order using desc. If asc or desc are not specified the resources will be sorted in ascending order by default. For example, 'orderby=templateName desc' would get all templates sorted by templateName in desc order. |
_select | allows clients to request a specific set of properties for each entity or complex type. Expression specified with the $select must conform to the OData V4.01 URL conventions. If a $select expression consists of a single select item that is an asterisk (i.e., *), then all properties on the matching resource will be returned. |
_expand | allows clients to request related resources when a resource that satisfies a particular request is retrieved. Each expanded item is evaluated relative to the entity containing the property being expanded. Other query options can be applied to an expanded property by appending a semicolon-separated list of query options, enclosed in parentheses, to the property name. Permissible system query options are $filter,$select and $orderby. |
# Initialize the API
approval_policies_api_instance = ApprovalPoliciesApi(api_client=client) # client configured in previous step
extId = 'extId_example' # UUID.
# List approval policies
try:
api_response = approval_policies_api_instance.list_approval_policies(
_page=page, # if page parameter is present
_limit=limit, # if limit parameter is present
_filter=_filter, # if filter parameter is present
_orderby=_orderby, # if orderby parameter is present
_select=select, # if select parameter is present
_expand=expand) # if expand parameter is present
except ApiException as e:
The list of filterable and sortable fields with expansion keys can be found in the documentation here.
This library has a full set of API Reference Documentation. This documentation is auto-generated, and the location may change.
This library is licensed under Apache 2.0 license. Full license text is available in LICENSE.
In case of issues please reach out to us at the mailing list
FAQs
Nutanix Security APIs
We found that ntnx-security-py-client demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
/Security News
North Korean threat actors deploy 67 malicious npm packages using the newly discovered XORIndex malware loader.
Security News
Meet Socket at Black Hat & DEF CON 2025 for 1:1s, insider security talks at Allegiant Stadium, and a private dinner with top minds in software supply chain security.
Security News
CAI is a new open source AI framework that automates penetration testing tasks like scanning and exploitation up to 3,600× faster than humans.