Traffic Mirror Filter Egress Rule
Provides a VPC Traffic Mirror Filter Egress Rule resource. For information about VPC Traffic Mirror Filter Egress Rule and how to use it, see What is Traffic Mirror Filter Egress Rule.
NOTE: Available since v1.140.0.
Example Usage
Basic Usage
package generated_program;
import com.pulumi.Context;
import com.pulumi.Pulumi;
import com.pulumi.core.Output;
import com.pulumi.alicloud.vpc.TrafficMirrorFilter;
import com.pulumi.alicloud.vpc.TrafficMirrorFilterArgs;
import com.pulumi.alicloud.vpc.TrafficMirrorFilterEgressRule;
import com.pulumi.alicloud.vpc.TrafficMirrorFilterEgressRuleArgs;
import java.util.List;
import java.util.ArrayList;
import java.util.Map;
import java.io.File;
import java.nio.file.Files;
import java.nio.file.Paths;
public class App {
public static void main(String[] args) {
Pulumi.run(App::stack);
}
public static void stack(Context ctx) {
var example = new TrafficMirrorFilter("example", TrafficMirrorFilterArgs.builder()
.trafficMirrorFilterName("example_value")
.build());
var default_ = new TrafficMirrorFilterEgressRule("default", TrafficMirrorFilterEgressRuleArgs.builder()
.action("drop")
.priority("2")
.sourceCidrBlock("10.0.0.0/11")
.destinationCidrBlock("10.0.0.0/12")
.trafficMirrorFilterId(example.id())
.protocol("ALL")
.build());
}
}
Import
VPC Traffic Mirror Filter Egress Rule can be imported using the id, e.g.
$ pulumi import alicloud:vpc/trafficMirrorFilterEgressRule:TrafficMirrorFilterEgressRule example <traffic_mirror_filter_id>:<traffic_mirror_filter_egress_rule_id>
Properties
The destination CIDR block of the outbound traffic. Valid values: 1
to 65535
. Separate the first port and last port with a forward slash (/), for example, 1/200
or 80/80
. A value of -1/-1
indicates that all ports are available. Therefore, do not set the value to -1/-1
. NOTE: When protocol
is ICMP
, this parameter is invalid.
The source port range of the outbound traffic. Valid values: 1
to 65535
. Separate the first port and last port with a forward slash (/), for example, 1/200
or 80/80
. A value of -1/-1
indicates that all ports are available. Therefore, do not set the value to -1/-1
. NOTE: When protocol
is ICMP
, this parameter is invalid.