# Fetch quarantine policy rules and configured actions Retrieves quarantine policy rules in human-readable format and configured quarantine actions with network restriction details. ## Endpoint `GET /dcapi/compliance/quarantine/policy/{grpResourceId}/ruleActionDetails` ## Request ### Request URL `https://{server-hostname}:8383/dcapi/compliance/quarantine/policy/{grpResourceId}/ruleActionDetails` ### Scope `VulnerabilityMgmt.READ` ### Header `Authorization: d92d4xxxxxxxxxxxxx15f52` ### Request Parameters #### Path Parameters - **grpResourceId** `string` — Mandatory Custom group resource ID. Fetch from [Get Quarantine Rule Details](https://www.manageengine.com/products/desktop-central/help/api/onpremise/get-quarantine-rule-details.html). ### Sample Request ```curl curl --request GET \ --url https://appdomain/dcapi/compliance/quarantine/policy/{grpResourceId}/ruleActionDetails \ --header 'Authorization: d92d4xxxxxxxxxxxxx15f52' ``` ## Response ### HTTP 200 Response Body — `application/json` - `quarantineRules` `array` List of quarantine rules in human-readable format. Each item is a map with ruleN keys. - `quarantineActions` `JSON Array` List of quarantine action configurations. #### Sample Response: HTTP 200 Quarantine policy rules and action configuration: ```json { "quarantineActions": [ { "actionType": "Quarantine", "allowAccessToVPN": "corporate-vpn", "lastModifiedTime": "Mar 20, 2026 02:30 PM", "allowAccessToCertainDomain": "*.company.com", "allowAccessToCertainIP": "10.0.0.0/24", "quarantineNetwork": "Block all & allow access to custom Domain,IP and VPN" } ], "quarantineRules": [ { "rule1": "OS Patch - Critical - More than 30 Days" }, { "rule2": "Software - TeamViewer - Installed" }, { "rule3": "Vulnerability - CVSS Value - is Above 7.0" }, { "rule4": "Vulnerability - Exploit Availability - Exploit Available" } ] } ``` Audit-only quarantine policy (no network restrictions): ```json { "quarantineActions": [ { "actionType": "Audit Only", "lastModifiedTime": "Mar 25, 2026 09:00 AM" } ], "quarantineRules": [ { "rule1": "OS Patch - Critical - More than 15 Days" } ] } ``` ### HTTP 401 Response Body — `application/json` - `errorCode` `long` Unauthorized error code returned when authentication credentials are missing, expired, or invalid (authentication=required). - `errorMsg` `string` Authentication failure reason. #### Sample Response: HTTP 401 Authentication credentials are missing or invalid: ```json { "errorMessage": "Authentication required", "errorCode": "UNAUTHORIZED" } ``` ### HTTP 403 Response Body — `application/json` - `errorCode` `long` Forbidden error code returned when the authenticated user does not have the required uem-roles (e.g., DataEncryption_Admin or DataEncryptionRecoveryKey_Admin). - `errorMsg` `string` Message indicating insufficient privileges to access this resource. #### Sample Response: HTTP 403 Quarantine is not available in VMP Professional Edition: ```json { "errorMessage": "You do not have enough permission to perform this action. Upgrade to Enterprise Edition to use these features.", "errorCode": "FORBIDDEN" } ``` ### HTTP 429 Response Body — `application/json` - `errorCode` `long` Rate limit error code returned when the API call threshold (configured via threshold/duration in security XML) is exceeded; client is locked out for lock-period minutes. - `errorMsg` `string` Rate limit exceeded message with retry guidance. #### Sample Response: HTTP 429 API call threshold exceeded: ```json { "errorMessage": "Rate limit exceeded. Retry after some time", "errorCode": "TOO_MANY_REQUESTS" } ``` ### Possible Response Codes - `200` — HTTP code - `401` — HTTP code - `403` — HTTP code - `429` — HTTP code ## Rate Limits ![](https://www.zohowebstatic.com/sites/zweb/images/people/ico-help.png) **Duration:** 1 minute | **Threshold:** 30 | **Lock period:** 5 minutes Duration - Time window for the threshold. Threshold - Number of API calls allowed within the specified duration. Lock Period - Wait time before consecutive API requests.