Not sure if I'm talking about absolutely the same issue, but, at least, recently I've faced some related one.
Taking an API reference as a background (
https://apidocs.symantec.com/home/saep#_symantec_endpoint_protection_manager_rest_api_reference ), methods 3.127 (GET /api/v1/stats/autoresolved/{reportType}/{startTime}/to/{endTime}) and 3.143 (GET /api/v1/version) worked fine.
But, for example, method 3.65 (GET /api/v1/groups) resulted in "The user is not authorized to access this resource" (unfortunately, I don't remember, which HTTP response status it gave - 401 or not), despite the fact, that I was authorized to API as one of SEPM admins and that admin is able to do all admin's stuff via SEPM GUI.
Did not open any support cases about this, though.
Original Message:
Sent: 03-23-2020 11:40 AM
From: kirby hawkes
Subject: System Administrator getting 401-unauthorized error from API call
I am a System Administrator and while some API calls work, some are returning 401-Unathorized error.
Get version info - works:
https://xx.xx.xx.xx:8446/sepm/api/v1/version
Get domain info - works:
https://xx.xx.xx.xx:8446/sepm/api/v1/domains
Get client info (method 1) - does not work:
https://xx.xx.xx.xx:8446/sepm/api/v1/computers
Get client info (method 2) - does not work:
https://xx.xx.xx.xx:8446/sepm/api/v1/groups/FCBA64A90A1B2A1B01B4A6FE5DA8D8D6/computers
Invoke-RestMethod : The remote server returned an error: (401) Unauthorized.