Traffic Mirror Filter Egress Rule
Provides a VPC Traffic Mirror Filter Egress Rule resource. For information about VPC Traffic Mirror Filter Egress Rule and how to use it, see What is Traffic Mirror Filter Egress Rule.
NOTE: Available since v1.140.0.
Example Usage
Basic Usage
import * as pulumi from "@pulumi/pulumi";
import * as alicloud from "@pulumi/alicloud";
const example = new alicloud.vpc.TrafficMirrorFilter("example", {trafficMirrorFilterName: "example_value"});
const _default = new alicloud.vpc.TrafficMirrorFilterEgressRule("default", {
action: "drop",
priority: 2,
sourceCidrBlock: "10.0.0.0/11",
destinationCidrBlock: "10.0.0.0/12",
trafficMirrorFilterId: example.id,
protocol: "ALL",
});import pulumi
import pulumi_alicloud as alicloud
example = alicloud.vpc.TrafficMirrorFilter("example", traffic_mirror_filter_name="example_value")
default = alicloud.vpc.TrafficMirrorFilterEgressRule("default",
action="drop",
priority=2,
source_cidr_block="10.0.0.0/11",
destination_cidr_block="10.0.0.0/12",
traffic_mirror_filter_id=example.id,
protocol="ALL")using System.Collections.Generic;
using System.Linq;
using Pulumi;
using AliCloud = Pulumi.AliCloud;
return await Deployment.RunAsync(() =>
{
var example = new AliCloud.Vpc.TrafficMirrorFilter("example", new()
{
TrafficMirrorFilterName = "example_value",
});
var @default = new AliCloud.Vpc.TrafficMirrorFilterEgressRule("default", new()
{
Action = "drop",
Priority = 2,
SourceCidrBlock = "10.0.0.0/11",
DestinationCidrBlock = "10.0.0.0/12",
TrafficMirrorFilterId = example.Id,
Protocol = "ALL",
});
});package main
import (
"github.com/pulumi/pulumi-alicloud/sdk/v3/go/alicloud/vpc"
"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
)
func main() {
pulumi.Run(func(ctx *pulumi.Context) error {
example, err := vpc.NewTrafficMirrorFilter(ctx, "example", &vpc.TrafficMirrorFilterArgs{
TrafficMirrorFilterName: pulumi.String("example_value"),
})
if err != nil {
return err
}
_, err = vpc.NewTrafficMirrorFilterEgressRule(ctx, "default", &vpc.TrafficMirrorFilterEgressRuleArgs{
Action: pulumi.String("drop"),
Priority: pulumi.Int(2),
SourceCidrBlock: pulumi.String("10.0.0.0/11"),
DestinationCidrBlock: pulumi.String("10.0.0.0/12"),
TrafficMirrorFilterId: example.ID(),
Protocol: pulumi.String("ALL"),
})
if err != nil {
return err
}
return nil
})
}package generated_program;
import com.pulumi.Context;
import com.pulumi.Pulumi;
import com.pulumi.core.Output;
import com.pulumi.alicloud.vpc.TrafficMirrorFilter;
import com.pulumi.alicloud.vpc.TrafficMirrorFilterArgs;
import com.pulumi.alicloud.vpc.TrafficMirrorFilterEgressRule;
import com.pulumi.alicloud.vpc.TrafficMirrorFilterEgressRuleArgs;
import java.util.List;
import java.util.ArrayList;
import java.util.Map;
import java.io.File;
import java.nio.file.Files;
import java.nio.file.Paths;
public class App {
public static void main(String[] args) {
Pulumi.run(App::stack);
}
public static void stack(Context ctx) {
var example = new TrafficMirrorFilter("example", TrafficMirrorFilterArgs.builder()
.trafficMirrorFilterName("example_value")
.build());
var default_ = new TrafficMirrorFilterEgressRule("default", TrafficMirrorFilterEgressRuleArgs.builder()
.action("drop")
.priority("2")
.sourceCidrBlock("10.0.0.0/11")
.destinationCidrBlock("10.0.0.0/12")
.trafficMirrorFilterId(example.id())
.protocol("ALL")
.build());
}
}resources:
example:
type: alicloud:vpc:TrafficMirrorFilter
properties:
trafficMirrorFilterName: example_value
default:
type: alicloud:vpc:TrafficMirrorFilterEgressRule
properties:
action: drop
priority: '2'
sourceCidrBlock: 10.0.0.0/11
destinationCidrBlock: 10.0.0.0/12
trafficMirrorFilterId: ${example.id}
protocol: ALLImport
VPC Traffic Mirror Filter Egress Rule can be imported using the id, e.g.
$ pulumi import alicloud:vpc/trafficMirrorFilterEgressRule:TrafficMirrorFilterEgressRule example <traffic_mirror_filter_id>:<traffic_mirror_filter_egress_rule_id>Properties
The destination CIDR block of the outbound traffic.
The destination CIDR block of the outbound traffic. Valid values: 1 to 65535. Separate the first port and last port with a forward slash (/), for example, 1/200 or 80/80. A value of -1/-1 indicates that all ports are available. Therefore, do not set the value to -1/-1. NOTE: When protocol is ICMP, this parameter is invalid.
. Field 'rule_action' has been deprecated from provider version 1.211.0. New field 'action' instead.
The source CIDR block of the outbound traffic.
The source port range of the outbound traffic. Valid values: 1 to 65535. Separate the first port and last port with a forward slash (/), for example, 1/200 or 80/80. A value of -1/-1 indicates that all ports are available. Therefore, do not set the value to -1/-1. NOTE: When protocol is ICMP, this parameter is invalid.
The ID of the outbound rule.
The ID of the filter. The following arguments will be discarded. Please use new fields as soon as possible: