Traffic Mirror Filter Ingress Rule
Provides a VPC Traffic Mirror Filter Ingress Rule resource. Traffic mirror entry rule. For information about VPC Traffic Mirror Filter Ingress Rule and how to use it, see What is Traffic Mirror Filter Ingress Rule.
NOTE: Available since v1.141.0.
Example Usage
Basic Usage
package generated_program;
import com.pulumi.Context;
import com.pulumi.Pulumi;
import com.pulumi.core.Output;
import com.pulumi.alicloud.vpc.TrafficMirrorFilter;
import com.pulumi.alicloud.vpc.TrafficMirrorFilterArgs;
import com.pulumi.alicloud.vpc.TrafficMirrorFilterIngressRule;
import com.pulumi.alicloud.vpc.TrafficMirrorFilterIngressRuleArgs;
import java.util.List;
import java.util.ArrayList;
import java.util.Map;
import java.io.File;
import java.nio.file.Files;
import java.nio.file.Paths;
public class App {
public static void main(String[] args) {
Pulumi.run(App::stack);
}
public static void stack(Context ctx) {
var exampleTrafficMirrorFilter = new TrafficMirrorFilter("exampleTrafficMirrorFilter", TrafficMirrorFilterArgs.builder()
.trafficMirrorFilterName("example_value")
.build());
var exampleTrafficMirrorFilterIngressRule = new TrafficMirrorFilterIngressRule("exampleTrafficMirrorFilterIngressRule", TrafficMirrorFilterIngressRuleArgs.builder()
.trafficMirrorFilterId(exampleTrafficMirrorFilter.id())
.priority("1")
.ruleAction("accept")
.protocol("UDP")
.destinationCidrBlock("10.0.0.0/24")
.sourceCidrBlock("10.0.0.0/24")
.destinationPortRange("1/120")
.sourcePortRange("1/120")
.build());
}
}
Import
VPC Traffic Mirror Filter Ingress Rule can be imported using the id, e.g.
$ pulumi import alicloud:vpc/trafficMirrorFilterIngressRule:TrafficMirrorFilterIngressRule example <traffic_mirror_filter_id>:<traffic_mirror_filter_ingress_rule_id>
Properties
The destination CIDR block of the inbound traffic. Valid values: 1
to 65535
. Separate the first port and last port with a forward slash (/), for example, 1/200
or 80/80
. A value of -1/-1
indicates that all ports are available. Therefore, do not set the value to -1/-1
. NOTE: When protocol
is ICMP
, this parameter is invalid.
The source port range of the inbound traffic. Valid values: 1
to 65535
. Separate the first port and last port with a forward slash (/), for example, 1/200
or 80/80
. A value of -1/-1
indicates that all ports are available. Therefore, do not set the value to -1/-1
. NOTE: When protocol
is ICMP
, this parameter is invalid.