FirewallPolicyRuleGroupArgs

data class FirewallPolicyRuleGroupArgs(val firewallPolicyName: Output<String>? = null, val id: Output<String>? = null, val name: Output<String>? = null, val priority: Output<Int>? = null, val resourceGroupName: Output<String>? = null, val ruleGroupName: Output<String>? = null, val rules: Output<List<Either<FirewallPolicyFilterRuleArgs, FirewallPolicyNatRuleArgs>>>? = null) : ConvertibleToJava<FirewallPolicyRuleGroupArgs>

Rule Group resource. Uses Azure REST API version 2020-04-01. In version 2.x of the Azure Native provider, it used API version 2020-04-01. Other available API versions: 2019-06-01, 2019-07-01, 2019-08-01, 2019-09-01, 2019-11-01, 2019-12-01, 2020-03-01. These can be accessed by generating a local SDK package using the CLI command pulumi package add azure-native network [ApiVersion]. See the ../../../version-guide/#accessing-any-api-version-via-local-packages for details.

Example Usage

Create FirewallPolicyRuleGroup

using System.Collections.Generic;
using System.Linq;
using Pulumi;
using AzureNative = Pulumi.AzureNative;
return await Deployment.RunAsync(() =>
{
var firewallPolicyRuleGroup = new AzureNative.Network.FirewallPolicyRuleGroup("firewallPolicyRuleGroup", new()
{
FirewallPolicyName = "firewallPolicy",
Priority = 110,
ResourceGroupName = "rg1",
RuleGroupName = "ruleGroup1",
Rules = new[]
{
new AzureNative.Network.Inputs.FirewallPolicyFilterRuleArgs
{
Action = new AzureNative.Network.Inputs.FirewallPolicyFilterRuleActionArgs
{
Type = AzureNative.Network.FirewallPolicyFilterRuleActionType.Deny,
},
Name = "Example-Filter-Rule",
RuleConditions = new[]
{
new AzureNative.Network.Inputs.NetworkRuleConditionArgs
{
DestinationAddresses = new[]
{
"*",
},
DestinationPorts = new[]
{
"*",
},
IpProtocols = new[]
{
AzureNative.Network.FirewallPolicyRuleConditionNetworkProtocol.TCP,
},
Name = "network-condition1",
RuleConditionType = "NetworkRuleCondition",
SourceAddresses = new[]
{
"10.1.25.0/24",
},
},
},
RuleType = "FirewallPolicyFilterRule",
},
},
});
});
package main
import (
network "github.com/pulumi/pulumi-azure-native-sdk/network/v2"
"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
)
func main() {
pulumi.Run(func(ctx *pulumi.Context) error {
_, err := network.NewFirewallPolicyRuleGroup(ctx, "firewallPolicyRuleGroup", &network.FirewallPolicyRuleGroupArgs{
FirewallPolicyName: pulumi.String("firewallPolicy"),
Priority: pulumi.Int(110),
ResourceGroupName: pulumi.String("rg1"),
RuleGroupName: pulumi.String("ruleGroup1"),
Rules: pulumi.Array{
network.FirewallPolicyFilterRule{
Action: network.FirewallPolicyFilterRuleAction{
Type: network.FirewallPolicyFilterRuleActionTypeDeny,
},
Name: "Example-Filter-Rule",
RuleConditions: []interface{}{
network.NetworkRuleCondition{
DestinationAddresses: []string{
"*",
},
DestinationPorts: []string{
"*",
},
IpProtocols: []network.FirewallPolicyRuleConditionNetworkProtocol{
network.FirewallPolicyRuleConditionNetworkProtocolTCP,
},
Name: "network-condition1",
RuleConditionType: "NetworkRuleCondition",
SourceAddresses: []string{
"10.1.25.0/24",
},
},
},
RuleType: "FirewallPolicyFilterRule",
},
},
})
if err != nil {
return err
}
return nil
})
}
package generated_program;
import com.pulumi.Context;
import com.pulumi.Pulumi;
import com.pulumi.core.Output;
import com.pulumi.azurenative.network.FirewallPolicyRuleGroup;
import com.pulumi.azurenative.network.FirewallPolicyRuleGroupArgs;
import java.util.List;
import java.util.ArrayList;
import java.util.Map;
import java.io.File;
import java.nio.file.Files;
import java.nio.file.Paths;
public class App {
public static void main(String[] args) {
Pulumi.run(App::stack);
}
public static void stack(Context ctx) {
var firewallPolicyRuleGroup = new FirewallPolicyRuleGroup("firewallPolicyRuleGroup", FirewallPolicyRuleGroupArgs.builder()
.firewallPolicyName("firewallPolicy")
.priority(110)
.resourceGroupName("rg1")
.ruleGroupName("ruleGroup1")
.rules(FirewallPolicyFilterRuleArgs.builder()
.action(FirewallPolicyFilterRuleActionArgs.builder()
.type("Deny")
.build())
.name("Example-Filter-Rule")
.ruleConditions(NetworkRuleConditionArgs.builder()
.destinationAddresses("*")
.destinationPorts("*")
.ipProtocols("TCP")
.name("network-condition1")
.ruleConditionType("NetworkRuleCondition")
.sourceAddresses("10.1.25.0/24")
.build())
.ruleType("FirewallPolicyFilterRule")
.build())
.build());
}
}

Create FirewallPolicyRuleGroup With IpGroups

using System.Collections.Generic;
using System.Linq;
using Pulumi;
using AzureNative = Pulumi.AzureNative;
return await Deployment.RunAsync(() =>
{
var firewallPolicyRuleGroup = new AzureNative.Network.FirewallPolicyRuleGroup("firewallPolicyRuleGroup", new()
{
FirewallPolicyName = "firewallPolicy",
Priority = 110,
ResourceGroupName = "rg1",
RuleGroupName = "ruleGroup1",
Rules = new[]
{
new AzureNative.Network.Inputs.FirewallPolicyFilterRuleArgs
{
Action = new AzureNative.Network.Inputs.FirewallPolicyFilterRuleActionArgs
{
Type = AzureNative.Network.FirewallPolicyFilterRuleActionType.Deny,
},
Name = "Example-Filter-Rule",
RuleConditions = new[]
{
new AzureNative.Network.Inputs.NetworkRuleConditionArgs
{
DestinationIpGroups = new[]
{
"/subscriptions/subid/providers/Microsoft.Network/resourceGroup/rg1/ipGroups/ipGroups2",
},
DestinationPorts = new[]
{
"*",
},
IpProtocols = new[]
{
AzureNative.Network.FirewallPolicyRuleConditionNetworkProtocol.TCP,
},
Name = "network-condition1",
RuleConditionType = "NetworkRuleCondition",
SourceIpGroups = new[]
{
"/subscriptions/subid/providers/Microsoft.Network/resourceGroup/rg1/ipGroups/ipGroups1",
},
},
},
RuleType = "FirewallPolicyFilterRule",
},
},
});
});
package main
import (
network "github.com/pulumi/pulumi-azure-native-sdk/network/v2"
"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
)
func main() {
pulumi.Run(func(ctx *pulumi.Context) error {
_, err := network.NewFirewallPolicyRuleGroup(ctx, "firewallPolicyRuleGroup", &network.FirewallPolicyRuleGroupArgs{
FirewallPolicyName: pulumi.String("firewallPolicy"),
Priority: pulumi.Int(110),
ResourceGroupName: pulumi.String("rg1"),
RuleGroupName: pulumi.String("ruleGroup1"),
Rules: pulumi.Array{
network.FirewallPolicyFilterRule{
Action: network.FirewallPolicyFilterRuleAction{
Type: network.FirewallPolicyFilterRuleActionTypeDeny,
},
Name: "Example-Filter-Rule",
RuleConditions: []interface{}{
network.NetworkRuleCondition{
DestinationIpGroups: []string{
"/subscriptions/subid/providers/Microsoft.Network/resourceGroup/rg1/ipGroups/ipGroups2",
},
DestinationPorts: []string{
"*",
},
IpProtocols: []network.FirewallPolicyRuleConditionNetworkProtocol{
network.FirewallPolicyRuleConditionNetworkProtocolTCP,
},
Name: "network-condition1",
RuleConditionType: "NetworkRuleCondition",
SourceIpGroups: []string{
"/subscriptions/subid/providers/Microsoft.Network/resourceGroup/rg1/ipGroups/ipGroups1",
},
},
},
RuleType: "FirewallPolicyFilterRule",
},
},
})
if err != nil {
return err
}
return nil
})
}
package generated_program;
import com.pulumi.Context;
import com.pulumi.Pulumi;
import com.pulumi.core.Output;
import com.pulumi.azurenative.network.FirewallPolicyRuleGroup;
import com.pulumi.azurenative.network.FirewallPolicyRuleGroupArgs;
import java.util.List;
import java.util.ArrayList;
import java.util.Map;
import java.io.File;
import java.nio.file.Files;
import java.nio.file.Paths;
public class App {
public static void main(String[] args) {
Pulumi.run(App::stack);
}
public static void stack(Context ctx) {
var firewallPolicyRuleGroup = new FirewallPolicyRuleGroup("firewallPolicyRuleGroup", FirewallPolicyRuleGroupArgs.builder()
.firewallPolicyName("firewallPolicy")
.priority(110)
.resourceGroupName("rg1")
.ruleGroupName("ruleGroup1")
.rules(FirewallPolicyFilterRuleArgs.builder()
.action(FirewallPolicyFilterRuleActionArgs.builder()
.type("Deny")
.build())
.name("Example-Filter-Rule")
.ruleConditions(NetworkRuleConditionArgs.builder()
.destinationIpGroups("/subscriptions/subid/providers/Microsoft.Network/resourceGroup/rg1/ipGroups/ipGroups2")
.destinationPorts("*")
.ipProtocols("TCP")
.name("network-condition1")
.ruleConditionType("NetworkRuleCondition")
.sourceIpGroups("/subscriptions/subid/providers/Microsoft.Network/resourceGroup/rg1/ipGroups/ipGroups1")
.build())
.ruleType("FirewallPolicyFilterRule")
.build())
.build());
}
}

Import

An existing resource can be imported using its type token, name, and identifier, e.g.

$ pulumi import azure-native:network:FirewallPolicyRuleGroup ruleGroup1 /subscriptions/{subscriptionId}/resourceGroups/{resourceGroupName}/providers/Microsoft.Network/firewallPolicies/{firewallPolicyName}/ruleGroups/{ruleGroupName}

Constructors

Link copied to clipboard
constructor(firewallPolicyName: Output<String>? = null, id: Output<String>? = null, name: Output<String>? = null, priority: Output<Int>? = null, resourceGroupName: Output<String>? = null, ruleGroupName: Output<String>? = null, rules: Output<List<Either<FirewallPolicyFilterRuleArgs, FirewallPolicyNatRuleArgs>>>? = null)

Properties

Link copied to clipboard
val firewallPolicyName: Output<String>? = null

The name of the Firewall Policy.

Link copied to clipboard
val id: Output<String>? = null

Resource ID.

Link copied to clipboard
val name: Output<String>? = null

The name of the resource that is unique within a resource group. This name can be used to access the resource.

Link copied to clipboard
val priority: Output<Int>? = null

Priority of the Firewall Policy Rule Group resource.

Link copied to clipboard
val resourceGroupName: Output<String>? = null

The name of the resource group.

Link copied to clipboard
val ruleGroupName: Output<String>? = null

The name of the FirewallPolicyRuleGroup.

Link copied to clipboard

Group of Firewall Policy rules.

Functions

Link copied to clipboard
open override fun toJava(): FirewallPolicyRuleGroupArgs