Interface CfnNetworkAclEntryProps
- All Superinterfaces:
software.amazon.jsii.JsiiSerializable
- All Known Implementing Classes:
CfnNetworkAclEntryProps.Jsii$Proxy
@Generated(value="jsii-pacmak/1.106.0 (build e852934)",
date="2025-01-25T00:20:54.279Z")
@Stability(Stable)
public interface CfnNetworkAclEntryProps
extends software.amazon.jsii.JsiiSerializable
Properties for defining a
CfnNetworkAclEntry
.
Example:
// The code below shows an example of how to instantiate this type. // The values are placeholders you should change. import software.amazon.awscdk.services.ec2.*; CfnNetworkAclEntryProps cfnNetworkAclEntryProps = CfnNetworkAclEntryProps.builder() .networkAclId("networkAclId") .protocol(123) .ruleAction("ruleAction") .ruleNumber(123) // the properties below are optional .cidrBlock("cidrBlock") .egress(false) .icmp(IcmpProperty.builder() .code(123) .type(123) .build()) .ipv6CidrBlock("ipv6CidrBlock") .portRange(PortRangeProperty.builder() .from(123) .to(123) .build()) .build();
- See Also:
-
Nested Class Summary
Modifier and TypeInterfaceDescriptionstatic final class
A builder forCfnNetworkAclEntryProps
static final class
An implementation forCfnNetworkAclEntryProps
-
Method Summary
Modifier and TypeMethodDescriptionbuilder()
default String
The IPv4 CIDR range to allow or deny, in CIDR notation (for example, 172.16.0.0/24).default Object
Whether this rule applies to egress traffic from the subnet (true
) or ingress traffic to the subnet (false
).default Object
getIcmp()
The Internet Control Message Protocol (ICMP) code and type.default String
The IPv6 network range to allow or deny, in CIDR notation.The ID of the ACL for the entry.default Object
The range of port numbers for the UDP/TCP protocol.The IP protocol that the rule applies to.Whether to allow or deny traffic that matches the rule;Rule number to assign to the entry, such as 100.Methods inherited from interface software.amazon.jsii.JsiiSerializable
$jsii$toJson
-
Method Details
-
getNetworkAclId
The ID of the ACL for the entry.- See Also:
-
getProtocol
The IP protocol that the rule applies to.You must specify -1 or a protocol number. You can specify -1 for all protocols.
If you specify -1, all ports are opened and the
PortRange
property is ignored.- See Also:
-
getRuleAction
Whether to allow or deny traffic that matches the rule;valid values are "allow" or "deny".
- See Also:
-
getRuleNumber
Rule number to assign to the entry, such as 100.ACL entries are processed in ascending order by rule number. Entries can't use the same rule number unless one is an egress rule and the other is an ingress rule.
- See Also:
-
getCidrBlock
The IPv4 CIDR range to allow or deny, in CIDR notation (for example, 172.16.0.0/24). You must specify an IPv4 CIDR block or an IPv6 CIDR block.- See Also:
-
getEgress
Whether this rule applies to egress traffic from the subnet (true
) or ingress traffic to the subnet (false
).By default, AWS CloudFormation specifies
false
.- See Also:
-
getIcmp
The Internet Control Message Protocol (ICMP) code and type.Required if specifying 1 (ICMP) for the protocol parameter.
- See Also:
-
getIpv6CidrBlock
The IPv6 network range to allow or deny, in CIDR notation.You must specify an IPv4 CIDR block or an IPv6 CIDR block.
- See Also:
-
getPortRange
The range of port numbers for the UDP/TCP protocol.Required if specifying 6 (TCP) or 17 (UDP) for the protocol parameter.
- See Also:
-
builder
- Returns:
- a
CfnNetworkAclEntryProps.Builder
ofCfnNetworkAclEntryProps
-