Skip to content

/AWS1/CL_FMSORGALUNITSCOPE

Defines the Organizations organizational units (OUs) that the specified Firewall Manager administrator can apply policies to. For more information about OUs in Organizations, see Managing organizational units (OUs) in the Organizations User Guide.

CONSTRUCTOR

IMPORTING

Optional arguments:

it_organizationalunits TYPE /AWS1/CL_FMSORGALUNITIDLIST_W=>TT_ORGANIZATIONALUNITIDLIST TT_ORGANIZATIONALUNITIDLIST

The list of OUs within the organization that the specified Firewall Manager administrator either can or cannot apply policies to, based on the value of OrganizationalUnitScope$ExcludeSpecifiedOrganizationalUnits. If OrganizationalUnitScope$ExcludeSpecifiedOrganizationalUnits is set to true, then the Firewall Manager administrator can apply policies to all OUs in the organization except for the OUs in this list. If OrganizationalUnitScope$ExcludeSpecifiedOrganizationalUnits is set to false, then the Firewall Manager administrator can only apply policies to the OUs in this list.

iv_allorgalunitsenabled TYPE /AWS1/FMSBOOLEAN /AWS1/FMSBOOLEAN

A boolean value that indicates if the administrator can apply policies to all OUs within an organization. If true, the administrator can manage all OUs within the organization. You can either enable management of all OUs through this operation, or you can specify OUs to manage in OrganizationalUnitScope$OrganizationalUnits. You cannot specify both.

iv_excludespecifiedorgalun00 TYPE /AWS1/FMSBOOLEAN /AWS1/FMSBOOLEAN

A boolean value that excludes the OUs in OrganizationalUnitScope$OrganizationalUnits from the administrator's scope. If true, the Firewall Manager administrator can apply policies to all OUs in the organization except for the OUs listed in OrganizationalUnitScope$OrganizationalUnits. You can either specify a list of OUs to exclude by OrganizationalUnitScope$OrganizationalUnits, or you can enable management of all OUs by OrganizationalUnitScope$AllOrganizationalUnitsEnabled. You cannot specify both.


Queryable Attributes

OrganizationalUnits

The list of OUs within the organization that the specified Firewall Manager administrator either can or cannot apply policies to, based on the value of OrganizationalUnitScope$ExcludeSpecifiedOrganizationalUnits. If OrganizationalUnitScope$ExcludeSpecifiedOrganizationalUnits is set to true, then the Firewall Manager administrator can apply policies to all OUs in the organization except for the OUs in this list. If OrganizationalUnitScope$ExcludeSpecifiedOrganizationalUnits is set to false, then the Firewall Manager administrator can only apply policies to the OUs in this list.

Accessible with the following methods

Method Description
GET_ORGANIZATIONALUNITS() Getter for ORGANIZATIONALUNITS, with configurable default
ASK_ORGANIZATIONALUNITS() Getter for ORGANIZATIONALUNITS w/ exceptions if field has no
HAS_ORGANIZATIONALUNITS() Determine if ORGANIZATIONALUNITS has a value

AllOrganizationalUnitsEnabled

A boolean value that indicates if the administrator can apply policies to all OUs within an organization. If true, the administrator can manage all OUs within the organization. You can either enable management of all OUs through this operation, or you can specify OUs to manage in OrganizationalUnitScope$OrganizationalUnits. You cannot specify both.

Accessible with the following methods

Method Description
GET_ALLORGALUNITSENABLED() Getter for ALLORGALUNITSENABLED

ExcludeSpecifiedOrganizationalUnits

A boolean value that excludes the OUs in OrganizationalUnitScope$OrganizationalUnits from the administrator's scope. If true, the Firewall Manager administrator can apply policies to all OUs in the organization except for the OUs listed in OrganizationalUnitScope$OrganizationalUnits. You can either specify a list of OUs to exclude by OrganizationalUnitScope$OrganizationalUnits, or you can enable management of all OUs by OrganizationalUnitScope$AllOrganizationalUnitsEnabled. You cannot specify both.

Accessible with the following methods

Method Description
GET_EXCLUDESPECIFIEDORGALU00() Getter for EXCLUDESPECIFIEDORGALUNITS