Traffic Mirror Filter Egress Rule
Provides a VPC Traffic Mirror Filter Egress Rule resource. For information about VPC Traffic Mirror Filter Egress Rule and how to use it, see What is Traffic Mirror Filter Egress Rule.
NOTE: Available since v1.140.0.
Example Usage
Basic Usage
import * as pulumi from "@pulumi/pulumi";
import * as alicloud from "@pulumi/alicloud";
const example = new alicloud.vpc.TrafficMirrorFilter("example", {trafficMirrorFilterName: "example_value"});
const _default = new alicloud.vpc.TrafficMirrorFilterEgressRule("default", {
action: "drop",
priority: 2,
sourceCidrBlock: "10.0.0.0/11",
destinationCidrBlock: "10.0.0.0/12",
trafficMirrorFilterId: example.id,
protocol: "ALL",
});
import pulumi
import pulumi_alicloud as alicloud
example = alicloud.vpc.TrafficMirrorFilter("example", traffic_mirror_filter_name="example_value")
default = alicloud.vpc.TrafficMirrorFilterEgressRule("default",
action="drop",
priority=2,
source_cidr_block="10.0.0.0/11",
destination_cidr_block="10.0.0.0/12",
traffic_mirror_filter_id=example.id,
protocol="ALL")
using System.Collections.Generic;
using System.Linq;
using Pulumi;
using AliCloud = Pulumi.AliCloud;
return await Deployment.RunAsync(() =>
{
var example = new AliCloud.Vpc.TrafficMirrorFilter("example", new()
{
TrafficMirrorFilterName = "example_value",
});
var @default = new AliCloud.Vpc.TrafficMirrorFilterEgressRule("default", new()
{
Action = "drop",
Priority = 2,
SourceCidrBlock = "10.0.0.0/11",
DestinationCidrBlock = "10.0.0.0/12",
TrafficMirrorFilterId = example.Id,
Protocol = "ALL",
});
});
package main
import (
"github.com/pulumi/pulumi-alicloud/sdk/v3/go/alicloud/vpc"
"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
)
func main() {
pulumi.Run(func(ctx *pulumi.Context) error {
example, err := vpc.NewTrafficMirrorFilter(ctx, "example", &vpc.TrafficMirrorFilterArgs{
TrafficMirrorFilterName: pulumi.String("example_value"),
})
if err != nil {
return err
}
_, err = vpc.NewTrafficMirrorFilterEgressRule(ctx, "default", &vpc.TrafficMirrorFilterEgressRuleArgs{
Action: pulumi.String("drop"),
Priority: pulumi.Int(2),
SourceCidrBlock: pulumi.String("10.0.0.0/11"),
DestinationCidrBlock: pulumi.String("10.0.0.0/12"),
TrafficMirrorFilterId: example.ID(),
Protocol: pulumi.String("ALL"),
})
if err != nil {
return err
}
return nil
})
}
package generated_program;
import com.pulumi.Context;
import com.pulumi.Pulumi;
import com.pulumi.core.Output;
import com.pulumi.alicloud.vpc.TrafficMirrorFilter;
import com.pulumi.alicloud.vpc.TrafficMirrorFilterArgs;
import com.pulumi.alicloud.vpc.TrafficMirrorFilterEgressRule;
import com.pulumi.alicloud.vpc.TrafficMirrorFilterEgressRuleArgs;
import java.util.List;
import java.util.ArrayList;
import java.util.Map;
import java.io.File;
import java.nio.file.Files;
import java.nio.file.Paths;
public class App {
public static void main(String[] args) {
Pulumi.run(App::stack);
}
public static void stack(Context ctx) {
var example = new TrafficMirrorFilter("example", TrafficMirrorFilterArgs.builder()
.trafficMirrorFilterName("example_value")
.build());
var default_ = new TrafficMirrorFilterEgressRule("default", TrafficMirrorFilterEgressRuleArgs.builder()
.action("drop")
.priority("2")
.sourceCidrBlock("10.0.0.0/11")
.destinationCidrBlock("10.0.0.0/12")
.trafficMirrorFilterId(example.id())
.protocol("ALL")
.build());
}
}
resources:
example:
type: alicloud:vpc:TrafficMirrorFilter
properties:
trafficMirrorFilterName: example_value
default:
type: alicloud:vpc:TrafficMirrorFilterEgressRule
properties:
action: drop
priority: '2'
sourceCidrBlock: 10.0.0.0/11
destinationCidrBlock: 10.0.0.0/12
trafficMirrorFilterId: ${example.id}
protocol: ALL
Import
VPC Traffic Mirror Filter Egress Rule can be imported using the id, e.g.
$ pulumi import alicloud:vpc/trafficMirrorFilterEgressRule:TrafficMirrorFilterEgressRule example <traffic_mirror_filter_id>:<traffic_mirror_filter_egress_rule_id>
Properties
The destination CIDR block of the outbound traffic.
The destination CIDR block of the outbound traffic. Valid values: 1
to 65535
. Separate the first port and last port with a forward slash (/), for example, 1/200
or 80/80
. A value of -1/-1
indicates that all ports are available. Therefore, do not set the value to -1/-1
. NOTE: When protocol
is ICMP
, this parameter is invalid.
. Field 'rule_action' has been deprecated from provider version 1.211.0. New field 'action' instead.
The source CIDR block of the outbound traffic.
The source port range of the outbound traffic. Valid values: 1
to 65535
. Separate the first port and last port with a forward slash (/), for example, 1/200
or 80/80
. A value of -1/-1
indicates that all ports are available. Therefore, do not set the value to -1/-1
. NOTE: When protocol
is ICMP
, this parameter is invalid.
The ID of the outbound rule.
The ID of the filter. The following arguments will be discarded. Please use new fields as soon as possible: