# List configuration profiles Retrieves all configuration profiles along with their basic metadata and publish status. ## Endpoint `GET /bsp/api/v1/bmp/profiles` ### Request URL ```text https://{server-hostname}:8383/bsp/api/v1/bmp/profiles ``` ### Scope ```text BrowserManager.READ ``` ### Header ```text Authorization: d92d4xxxxxxxxxxxxx15f52 ``` ## Request Parameters ### Request Headers - **Accept** (`string`, Mandatory): `application/json` ### Sample Request ```curl curl --request GET \ --url https://appdomain/bsp/api/v1/bmp/profiles \ --header 'Accept: application/json' \ --header 'Authorization: d92d4xxxxxxxxxxxxx15f52' ``` ## Response Parameters ### HTTP Code 200 Response Body — `application/json` `JSON Object` List of configuration profiles - **profiles** (`JSON Array`): Configuration profiles with name, type, status, platform, and browser details - **paging** (`JSON Object`): Pagination. Contains 'next' URL with skip-token when more results exist ### HTTP Code 400 Response Body — `application/json` `JSON Object` Bad request error for invalid input or constraint violations - **errorcode** (`string`): Error code identifying the specific validation failure - **errormsg** (`string`): Message describing the validation failure ### HTTP Code 401 Response Body — `application/json` `JSON Object` - **errorCode** (`long`): Unauthorized error code returned when authentication credentials are missing, expired, or invalid (authentication=required) - **errorMsg** (`string`): Authentication failure reason ### HTTP Code 403 Response Body — `application/json` `JSON Object` - **errorCode** (`long`): Forbidden error code returned when the authenticated user does not have the required uem-roles (e.g., DataEncryption_Admin or DataEncryptionRecoveryKey_Admin) - **errorMsg** (`string`): Message indicating insufficient privileges to access this resource ### HTTP Code 429 Response Body — `application/json` `JSON Object` - **errorCode** (`long`): Rate limit error code returned when the API call threshold (configured via threshold/duration in security XML) is exceeded; client is locked out for lock-period minutes - **errorMsg** (`string`): Rate limit exceeded message with retry guidance ### HTTP Code 500 Response Body — `application/json` `JSON Object` Internal server error response for profile operations - **error_description** (`string`): Error message describing the server failure - **error_code** (`string`): Error code for internal server errors ## Possible Response Codes - `200` HTTP code - `400` HTTP code - `401` HTTP code - `403` HTTP code - `429` HTTP code - `500` HTTP code ## Sample Responses ### HTTP 200 List of configuration profiles with pagination ```json { "profiles": [ { "platform_type": "1", "profiletype": "64960", "profilestatus": "1", "profileid": "111", "profilename": "ManagedbrowserPolicy 15" }, { "platform_type": "1", "profiletype": "64200", "profilestatus": "1", "profileid": "111", "profilename": "ThreatPreventionPolicy 19" } ], "paging": { "next": "/api/v1/bmp/profiles?skip-token=NTA6NTE6MToxNzc2MTY1MDg0Nzk3" } } ``` No matching profiles found ```json { "profiles": [] } ``` ### HTTP 400 Pagination parameters out of allowed range ```json { "errorcode": "IAM0003", "errormsg": "Invalid request." } ``` ### HTTP 401 API key is missing or invalid ```json { "errorCode": "IAM0001", "errorMsg": "Authentication key is invalid. Please regenerate the key and try again." } ``` ### HTTP 403 Forbidden ```json { "errorCode": "FORBIDDEN", "errorMsg": "User does not have permission to perform this operation" } ``` ### HTTP 429 Rate limit exceeded ```json { "errorCode": "RATE_LIMIT_EXCEEDED", "errorMsg": "Too many requests. Please try again after 5 minutes" } ``` ### HTTP 500 Server error ```json { "error_description": "Internal Server error, Please try again in a moment.", "error_code": "COM0004" } ``` ## Rate Limit ![](https://www.zohowebstatic.com/sites/zweb/images/people/ico-help.png) **Duration:** 1 minute | **Threshold:** 60 | **Lock period:** 5 minutes Duration - Time window for the threshold. Threshold - Number of API calls allowed within the specified duration. Lock Period - Wait time before consecutive API requests.