A local user that is a member of SonicWALL Administrators can authenticate to SonicOS API but when the user logs in as a regular web login session, cannot get information from SonicOS management API. Sending a GET to retrieve some information available in management sessions fails. Also, sending a POST to /config-mode or /non-config-mode fails with an unauthorized response. The start-management API is used to resolve this by taking the user's session to a management session.