Options
All
  • Public
  • Public/Protected
  • All
Menu

Interface CreateNetworkAclEntryCommandInput

Hierarchy

Index

Properties

Optional CidrBlock

CidrBlock: undefined | string

The IPv4 network range to allow or deny, in CIDR notation (for example 172.16.0.0/24). We modify the specified CIDR block to its canonical form; for example, if you specify 100.68.0.18/18, we modify it to 100.68.0.0/18.

Optional DryRun

DryRun: undefined | false | true

Checks whether you have the required permissions for the action, without actually making the request, and provides an error response. If you have the required permissions, the error response is DryRunOperation. Otherwise, it is UnauthorizedOperation.

Egress

Egress: boolean | undefined

Indicates whether this is an egress rule (rule is applied to traffic leaving the subnet).

Optional IcmpTypeCode

IcmpTypeCode: IcmpTypeCode

ICMP protocol: The ICMP or ICMPv6 type and code. Required if specifying protocol 1 (ICMP) or protocol 58 (ICMPv6) with an IPv6 CIDR block.

Optional Ipv6CidrBlock

Ipv6CidrBlock: undefined | string

The IPv6 network range to allow or deny, in CIDR notation (for example 2001:db8:1234:1a00::/64).

NetworkAclId

NetworkAclId: string | undefined

The ID of the network ACL.

Optional PortRange

PortRange: PortRange

TCP or UDP protocols: The range of ports the rule applies to. Required if specifying protocol 6 (TCP) or 17 (UDP).

Protocol

Protocol: string | undefined

The protocol number. A value of "-1" means all protocols. If you specify "-1" or a protocol number other than "6" (TCP), "17" (UDP), or "1" (ICMP), traffic on all ports is allowed, regardless of any ports or ICMP types or codes that you specify. If you specify protocol "58" (ICMPv6) and specify an IPv4 CIDR block, traffic for all ICMP types and codes allowed, regardless of any that you specify. If you specify protocol "58" (ICMPv6) and specify an IPv6 CIDR block, you must specify an ICMP type and code.

RuleAction

RuleAction: RuleAction | string | undefined

Indicates whether to allow or deny the traffic that matches the rule.

RuleNumber

RuleNumber: number | undefined

The rule number for the entry (for example, 100). ACL entries are processed in ascending order by rule number.

Constraints: Positive integer from 1 to 32766. The range 32767 to 65535 is reserved for internal use.