Copyright | (c) 2013-2018 Brendan Hay |
---|---|
License | Mozilla Public License, v. 2.0. |
Maintainer | Brendan Hay <brendan.g.hay+amazonka@gmail.com> |
Stability | auto-generated |
Portability | non-portable (GHC extensions) |
Safe Haskell | None |
Language | Haskell2010 |
Replaces an entry (rule) in a network ACL. For more information about network ACLs, see Network ACLs in the Amazon Virtual Private Cloud User Guide .
- replaceNetworkACLEntry :: Bool -> Text -> Text -> RuleAction -> Int -> ReplaceNetworkACLEntry
- data ReplaceNetworkACLEntry
- rnaeIPv6CidrBlock :: Lens' ReplaceNetworkACLEntry (Maybe Text)
- rnaeICMPTypeCode :: Lens' ReplaceNetworkACLEntry (Maybe ICMPTypeCode)
- rnaePortRange :: Lens' ReplaceNetworkACLEntry (Maybe PortRange)
- rnaeCidrBlock :: Lens' ReplaceNetworkACLEntry (Maybe Text)
- rnaeDryRun :: Lens' ReplaceNetworkACLEntry (Maybe Bool)
- rnaeEgress :: Lens' ReplaceNetworkACLEntry Bool
- rnaeNetworkACLId :: Lens' ReplaceNetworkACLEntry Text
- rnaeProtocol :: Lens' ReplaceNetworkACLEntry Text
- rnaeRuleAction :: Lens' ReplaceNetworkACLEntry RuleAction
- rnaeRuleNumber :: Lens' ReplaceNetworkACLEntry Int
- replaceNetworkACLEntryResponse :: ReplaceNetworkACLEntryResponse
- data ReplaceNetworkACLEntryResponse
Creating a Request
replaceNetworkACLEntry Source #
:: Bool | |
-> Text | |
-> Text | |
-> RuleAction | |
-> Int | |
-> ReplaceNetworkACLEntry |
Creates a value of ReplaceNetworkACLEntry
with the minimum fields required to make a request.
Use one of the following lenses to modify other fields as desired:
rnaeIPv6CidrBlock
- The IPv6 network range to allow or deny, in CIDR notation (for example2001:bd8:1234:1a00::/64
).rnaeICMPTypeCode
- ICMP protocol: The ICMP or ICMPv6 type and code. Required if specifying the ICMP (1) protocol, or protocol 58 (ICMPv6) with an IPv6 CIDR block.rnaePortRange
- TCP or UDP protocols: The range of ports the rule applies to. Required if specifying TCP (6) or UDP (17) for the protocol.rnaeCidrBlock
- The IPv4 network range to allow or deny, in CIDR notation (for example172.16.0.0/24
).rnaeDryRun
- Checks whether you have the required permissions for the action, without actually making the request, and provides an error response. If you have the required permissions, the error response isDryRunOperation
. Otherwise, it isUnauthorizedOperation
.rnaeEgress
- Indicates whether to replace the egress rule. Default: If no value is specified, we replace the ingress rule.rnaeNetworkACLId
- The ID of the ACL.rnaeProtocol
- The IP protocol. You can specifyall
or-1
to mean all protocols. If you specifyall
,-1
, or a protocol number other thantcp
,udp
, oricmp
, traffic on all ports is allowed, regardless of any ports or ICMP types or codes you specify. If you specify protocol58
(ICMPv6) and specify an IPv4 CIDR block, traffic for all ICMP types and codes allowed, regardless of any that you specify. If you specify protocol58
(ICMPv6) and specify an IPv6 CIDR block, you must specify an ICMP type and code.rnaeRuleAction
- Indicates whether to allow or deny the traffic that matches the rule.rnaeRuleNumber
- The rule number of the entry to replace.
data ReplaceNetworkACLEntry Source #
Contains the parameters for ReplaceNetworkAclEntry.
See: replaceNetworkACLEntry
smart constructor.
Request Lenses
rnaeIPv6CidrBlock :: Lens' ReplaceNetworkACLEntry (Maybe Text) Source #
The IPv6 network range to allow or deny, in CIDR notation (for example 2001:bd8:1234:1a00::/64
).
rnaeICMPTypeCode :: Lens' ReplaceNetworkACLEntry (Maybe ICMPTypeCode) Source #
ICMP protocol: The ICMP or ICMPv6 type and code. Required if specifying the ICMP (1) protocol, or protocol 58 (ICMPv6) with an IPv6 CIDR block.
rnaePortRange :: Lens' ReplaceNetworkACLEntry (Maybe PortRange) Source #
TCP or UDP protocols: The range of ports the rule applies to. Required if specifying TCP (6) or UDP (17) for the protocol.
rnaeCidrBlock :: Lens' ReplaceNetworkACLEntry (Maybe Text) Source #
The IPv4 network range to allow or deny, in CIDR notation (for example 172.16.0.0/24
).
rnaeDryRun :: Lens' ReplaceNetworkACLEntry (Maybe Bool) Source #
Checks whether you have the required permissions for the action, without actually making the request, and provides an error response. If you have the required permissions, the error response is DryRunOperation
. Otherwise, it is UnauthorizedOperation
.
rnaeEgress :: Lens' ReplaceNetworkACLEntry Bool Source #
Indicates whether to replace the egress rule. Default: If no value is specified, we replace the ingress rule.
rnaeNetworkACLId :: Lens' ReplaceNetworkACLEntry Text Source #
The ID of the ACL.
rnaeProtocol :: Lens' ReplaceNetworkACLEntry Text Source #
The IP protocol. You can specify all
or -1
to mean all protocols. If you specify all
, -1
, or a protocol number other than tcp
, udp
, or icmp
, traffic on all ports is allowed, regardless of any ports or ICMP types or codes you specify. If you specify protocol 58
(ICMPv6) and specify an IPv4 CIDR block, traffic for all ICMP types and codes allowed, regardless of any that you specify. If you specify protocol 58
(ICMPv6) and specify an IPv6 CIDR block, you must specify an ICMP type and code.
rnaeRuleAction :: Lens' ReplaceNetworkACLEntry RuleAction Source #
Indicates whether to allow or deny the traffic that matches the rule.
rnaeRuleNumber :: Lens' ReplaceNetworkACLEntry Int Source #
The rule number of the entry to replace.
Destructuring the Response
replaceNetworkACLEntryResponse :: ReplaceNetworkACLEntryResponse Source #
Creates a value of ReplaceNetworkACLEntryResponse
with the minimum fields required to make a request.
data ReplaceNetworkACLEntryResponse Source #
See: replaceNetworkACLEntryResponse
smart constructor.