fortimanager.ObjectFirewallAccessproxy6
Explore with Pulumi AI
Configure IPv6 access proxy.
The following variables have sub resource. Avoid using them together, otherwise conflicts and overwrites may occur.
api_gateway
:fortimanager.ObjectFirewallAccessproxy6Apigateway
api_gateway6
:fortimanager.ObjectFirewallAccessproxy6Apigateway6
Example Usage
import * as pulumi from "@pulumi/pulumi";
import * as fortimanager from "@pulumi/fortimanager";
const trname5 = new fortimanager.ObjectFirewallAccessproxy6("trname5", {
apiGateways: [{
httpCookieAge: 30,
id: 1,
}],
authPortal: "enable",
logBlockedTraffic: "enable",
});
import pulumi
import pulumi_fortimanager as fortimanager
trname5 = fortimanager.ObjectFirewallAccessproxy6("trname5",
api_gateways=[{
"http_cookie_age": 30,
"id": 1,
}],
auth_portal="enable",
log_blocked_traffic="enable")
package main
import (
"github.com/pulumi/pulumi-terraform-provider/sdks/go/fortimanager/fortimanager"
"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
)
func main() {
pulumi.Run(func(ctx *pulumi.Context) error {
_, err := fortimanager.NewObjectFirewallAccessproxy6(ctx, "trname5", &fortimanager.ObjectFirewallAccessproxy6Args{
ApiGateways: fortimanager.ObjectFirewallAccessproxy6ApiGatewayTypeArray{
&fortimanager.ObjectFirewallAccessproxy6ApiGatewayTypeArgs{
HttpCookieAge: pulumi.Float64(30),
Id: pulumi.Float64(1),
},
},
AuthPortal: pulumi.String("enable"),
LogBlockedTraffic: pulumi.String("enable"),
})
if err != nil {
return err
}
return nil
})
}
using System.Collections.Generic;
using System.Linq;
using Pulumi;
using Fortimanager = Pulumi.Fortimanager;
return await Deployment.RunAsync(() =>
{
var trname5 = new Fortimanager.ObjectFirewallAccessproxy6("trname5", new()
{
ApiGateways = new[]
{
new Fortimanager.Inputs.ObjectFirewallAccessproxy6ApiGatewayArgs
{
HttpCookieAge = 30,
Id = 1,
},
},
AuthPortal = "enable",
LogBlockedTraffic = "enable",
});
});
package generated_program;
import com.pulumi.Context;
import com.pulumi.Pulumi;
import com.pulumi.core.Output;
import com.pulumi.fortimanager.ObjectFirewallAccessproxy6;
import com.pulumi.fortimanager.ObjectFirewallAccessproxy6Args;
import com.pulumi.fortimanager.inputs.ObjectFirewallAccessproxy6ApiGatewayArgs;
import java.util.List;
import java.util.ArrayList;
import java.util.Map;
import java.io.File;
import java.nio.file.Files;
import java.nio.file.Paths;
public class App {
public static void main(String[] args) {
Pulumi.run(App::stack);
}
public static void stack(Context ctx) {
var trname5 = new ObjectFirewallAccessproxy6("trname5", ObjectFirewallAccessproxy6Args.builder()
.apiGateways(ObjectFirewallAccessproxy6ApiGatewayArgs.builder()
.httpCookieAge(30)
.id(1)
.build())
.authPortal("enable")
.logBlockedTraffic("enable")
.build());
}
}
resources:
trname5:
type: fortimanager:ObjectFirewallAccessproxy6
properties:
apiGateways:
- httpCookieAge: 30
id: 1
authPortal: enable
logBlockedTraffic: enable
Create ObjectFirewallAccessproxy6 Resource
Resources are created with functions called constructors. To learn more about declaring and configuring resources, see Resources.
Constructor syntax
new ObjectFirewallAccessproxy6(name: string, args?: ObjectFirewallAccessproxy6Args, opts?: CustomResourceOptions);
@overload
def ObjectFirewallAccessproxy6(resource_name: str,
args: Optional[ObjectFirewallAccessproxy6Args] = None,
opts: Optional[ResourceOptions] = None)
@overload
def ObjectFirewallAccessproxy6(resource_name: str,
opts: Optional[ResourceOptions] = None,
add_vhost_domain_to_dnsdb: Optional[str] = None,
adom: Optional[str] = None,
api_gateway6s: Optional[Sequence[ObjectFirewallAccessproxy6ApiGateway6Args]] = None,
api_gateways: Optional[Sequence[ObjectFirewallAccessproxy6ApiGatewayArgs]] = None,
auth_portal: Optional[str] = None,
auth_virtual_host: Optional[str] = None,
client_cert: Optional[str] = None,
decrypted_traffic_mirror: Optional[str] = None,
dynamic_sort_subtable: Optional[str] = None,
empty_cert_action: Optional[str] = None,
http_supported_max_version: Optional[str] = None,
log_blocked_traffic: Optional[str] = None,
name: Optional[str] = None,
object_firewall_accessproxy6_id: Optional[str] = None,
scopetype: Optional[str] = None,
svr_pool_multiplex: Optional[str] = None,
svr_pool_server_max_concurrent_request: Optional[float] = None,
svr_pool_server_max_request: Optional[float] = None,
svr_pool_ttl: Optional[float] = None,
user_agent_detect: Optional[str] = None,
vip: Optional[str] = None)
func NewObjectFirewallAccessproxy6(ctx *Context, name string, args *ObjectFirewallAccessproxy6Args, opts ...ResourceOption) (*ObjectFirewallAccessproxy6, error)
public ObjectFirewallAccessproxy6(string name, ObjectFirewallAccessproxy6Args? args = null, CustomResourceOptions? opts = null)
public ObjectFirewallAccessproxy6(String name, ObjectFirewallAccessproxy6Args args)
public ObjectFirewallAccessproxy6(String name, ObjectFirewallAccessproxy6Args args, CustomResourceOptions options)
type: fortimanager:ObjectFirewallAccessproxy6
properties: # The arguments to resource properties.
options: # Bag of options to control resource's behavior.
Parameters
- name string
- The unique name of the resource.
- args ObjectFirewallAccessproxy6Args
- The arguments to resource properties.
- opts CustomResourceOptions
- Bag of options to control resource's behavior.
- resource_name str
- The unique name of the resource.
- args ObjectFirewallAccessproxy6Args
- The arguments to resource properties.
- opts ResourceOptions
- Bag of options to control resource's behavior.
- ctx Context
- Context object for the current deployment.
- name string
- The unique name of the resource.
- args ObjectFirewallAccessproxy6Args
- The arguments to resource properties.
- opts ResourceOption
- Bag of options to control resource's behavior.
- name string
- The unique name of the resource.
- args ObjectFirewallAccessproxy6Args
- The arguments to resource properties.
- opts CustomResourceOptions
- Bag of options to control resource's behavior.
- name String
- The unique name of the resource.
- args ObjectFirewallAccessproxy6Args
- The arguments to resource properties.
- options CustomResourceOptions
- Bag of options to control resource's behavior.
Constructor example
The following reference example uses placeholder values for all input properties.
var objectFirewallAccessproxy6Resource = new Fortimanager.ObjectFirewallAccessproxy6("objectFirewallAccessproxy6Resource", new()
{
AddVhostDomainToDnsdb = "string",
Adom = "string",
ApiGateway6s = new[]
{
new Fortimanager.Inputs.ObjectFirewallAccessproxy6ApiGateway6Args
{
Applications = new[]
{
"string",
},
H2Support = "string",
H3Support = "string",
HttpCookieAge = 0,
HttpCookieDomain = "string",
HttpCookieDomainFromHost = "string",
HttpCookieGeneration = 0,
HttpCookiePath = "string",
HttpCookieShare = "string",
HttpsCookieSecure = "string",
Id = 0,
LdbMethod = "string",
Persistence = "string",
Quic = new Fortimanager.Inputs.ObjectFirewallAccessproxy6ApiGateway6QuicArgs
{
AckDelayExponent = 0,
ActiveConnectionIdLimit = 0,
ActiveMigration = "string",
GreaseQuicBit = "string",
MaxAckDelay = 0,
MaxDatagramFrameSize = 0,
MaxIdleTimeout = 0,
MaxUdpPayloadSize = 0,
},
Realservers = new[]
{
new Fortimanager.Inputs.ObjectFirewallAccessproxy6ApiGateway6RealserverArgs
{
AddrType = "string",
Address = "string",
Domain = "string",
ExternalAuth = "string",
HealthCheck = "string",
HealthCheckProto = "string",
HolddownInterval = "string",
HttpHost = "string",
Id = 0,
Ip = "string",
Mappedport = "string",
Port = 0,
SshClientCert = "string",
SshHostKeyValidation = "string",
SshHostKeys = new[]
{
"string",
},
Status = "string",
TranslateHost = "string",
TunnelEncryption = "string",
Type = "string",
Weight = 0,
},
},
SamlRedirect = "string",
SamlServer = "string",
Service = "string",
SslAlgorithm = "string",
SslCipherSuites = new[]
{
new Fortimanager.Inputs.ObjectFirewallAccessproxy6ApiGateway6SslCipherSuiteArgs
{
Cipher = "string",
Priority = 0,
Versions = new[]
{
"string",
},
},
},
SslDhBits = "string",
SslMaxVersion = "string",
SslMinVersion = "string",
SslRenegotiation = "string",
SslVpnWebPortal = "string",
UrlMap = "string",
UrlMapType = "string",
VirtualHost = "string",
},
},
ApiGateways = new[]
{
new Fortimanager.Inputs.ObjectFirewallAccessproxy6ApiGatewayArgs
{
Applications = new[]
{
"string",
},
H2Support = "string",
H3Support = "string",
HttpCookieAge = 0,
HttpCookieDomain = "string",
HttpCookieDomainFromHost = "string",
HttpCookieGeneration = 0,
HttpCookiePath = "string",
HttpCookieShare = "string",
HttpsCookieSecure = "string",
Id = 0,
LdbMethod = "string",
Persistence = "string",
Quic = new Fortimanager.Inputs.ObjectFirewallAccessproxy6ApiGatewayQuicArgs
{
AckDelayExponent = 0,
ActiveConnectionIdLimit = 0,
ActiveMigration = "string",
GreaseQuicBit = "string",
MaxAckDelay = 0,
MaxDatagramFrameSize = 0,
MaxIdleTimeout = 0,
MaxUdpPayloadSize = 0,
},
Realservers = new[]
{
new Fortimanager.Inputs.ObjectFirewallAccessproxy6ApiGatewayRealserverArgs
{
AddrType = "string",
Address = "string",
Domain = "string",
ExternalAuth = "string",
HealthCheck = "string",
HealthCheckProto = "string",
HolddownInterval = "string",
HttpHost = "string",
Id = 0,
Ip = "string",
Mappedport = "string",
Port = 0,
SshClientCert = "string",
SshHostKeyValidation = "string",
SshHostKeys = new[]
{
"string",
},
Status = "string",
TranslateHost = "string",
TunnelEncryption = "string",
Type = "string",
Weight = 0,
},
},
SamlRedirect = "string",
SamlServer = "string",
Service = "string",
SslAlgorithm = "string",
SslCipherSuites = new[]
{
new Fortimanager.Inputs.ObjectFirewallAccessproxy6ApiGatewaySslCipherSuiteArgs
{
Cipher = "string",
Priority = 0,
Versions = new[]
{
"string",
},
},
},
SslDhBits = "string",
SslMaxVersion = "string",
SslMinVersion = "string",
SslRenegotiation = "string",
SslVpnWebPortal = "string",
UrlMap = "string",
UrlMapType = "string",
VirtualHost = "string",
},
},
AuthPortal = "string",
AuthVirtualHost = "string",
ClientCert = "string",
DecryptedTrafficMirror = "string",
DynamicSortSubtable = "string",
EmptyCertAction = "string",
HttpSupportedMaxVersion = "string",
LogBlockedTraffic = "string",
Name = "string",
ObjectFirewallAccessproxy6Id = "string",
Scopetype = "string",
SvrPoolMultiplex = "string",
SvrPoolServerMaxConcurrentRequest = 0,
SvrPoolServerMaxRequest = 0,
SvrPoolTtl = 0,
UserAgentDetect = "string",
Vip = "string",
});
example, err := fortimanager.NewObjectFirewallAccessproxy6(ctx, "objectFirewallAccessproxy6Resource", &fortimanager.ObjectFirewallAccessproxy6Args{
AddVhostDomainToDnsdb: pulumi.String("string"),
Adom: pulumi.String("string"),
ApiGateway6s: .ObjectFirewallAccessproxy6ApiGateway6TypeArray{
&.ObjectFirewallAccessproxy6ApiGateway6TypeArgs{
Applications: pulumi.StringArray{
pulumi.String("string"),
},
H2Support: pulumi.String("string"),
H3Support: pulumi.String("string"),
HttpCookieAge: pulumi.Float64(0),
HttpCookieDomain: pulumi.String("string"),
HttpCookieDomainFromHost: pulumi.String("string"),
HttpCookieGeneration: pulumi.Float64(0),
HttpCookiePath: pulumi.String("string"),
HttpCookieShare: pulumi.String("string"),
HttpsCookieSecure: pulumi.String("string"),
Id: pulumi.Float64(0),
LdbMethod: pulumi.String("string"),
Persistence: pulumi.String("string"),
Quic: &.ObjectFirewallAccessproxy6ApiGateway6QuicTypeArgs{
AckDelayExponent: pulumi.Float64(0),
ActiveConnectionIdLimit: pulumi.Float64(0),
ActiveMigration: pulumi.String("string"),
GreaseQuicBit: pulumi.String("string"),
MaxAckDelay: pulumi.Float64(0),
MaxDatagramFrameSize: pulumi.Float64(0),
MaxIdleTimeout: pulumi.Float64(0),
MaxUdpPayloadSize: pulumi.Float64(0),
},
Realservers: .ObjectFirewallAccessproxy6ApiGateway6RealserverArray{
&.ObjectFirewallAccessproxy6ApiGateway6RealserverArgs{
AddrType: pulumi.String("string"),
Address: pulumi.String("string"),
Domain: pulumi.String("string"),
ExternalAuth: pulumi.String("string"),
HealthCheck: pulumi.String("string"),
HealthCheckProto: pulumi.String("string"),
HolddownInterval: pulumi.String("string"),
HttpHost: pulumi.String("string"),
Id: pulumi.Float64(0),
Ip: pulumi.String("string"),
Mappedport: pulumi.String("string"),
Port: pulumi.Float64(0),
SshClientCert: pulumi.String("string"),
SshHostKeyValidation: pulumi.String("string"),
SshHostKeys: pulumi.StringArray{
pulumi.String("string"),
},
Status: pulumi.String("string"),
TranslateHost: pulumi.String("string"),
TunnelEncryption: pulumi.String("string"),
Type: pulumi.String("string"),
Weight: pulumi.Float64(0),
},
},
SamlRedirect: pulumi.String("string"),
SamlServer: pulumi.String("string"),
Service: pulumi.String("string"),
SslAlgorithm: pulumi.String("string"),
SslCipherSuites: .ObjectFirewallAccessproxy6ApiGateway6SslCipherSuiteArray{
&.ObjectFirewallAccessproxy6ApiGateway6SslCipherSuiteArgs{
Cipher: pulumi.String("string"),
Priority: pulumi.Float64(0),
Versions: pulumi.StringArray{
pulumi.String("string"),
},
},
},
SslDhBits: pulumi.String("string"),
SslMaxVersion: pulumi.String("string"),
SslMinVersion: pulumi.String("string"),
SslRenegotiation: pulumi.String("string"),
SslVpnWebPortal: pulumi.String("string"),
UrlMap: pulumi.String("string"),
UrlMapType: pulumi.String("string"),
VirtualHost: pulumi.String("string"),
},
},
ApiGateways: .ObjectFirewallAccessproxy6ApiGatewayTypeArray{
&.ObjectFirewallAccessproxy6ApiGatewayTypeArgs{
Applications: pulumi.StringArray{
pulumi.String("string"),
},
H2Support: pulumi.String("string"),
H3Support: pulumi.String("string"),
HttpCookieAge: pulumi.Float64(0),
HttpCookieDomain: pulumi.String("string"),
HttpCookieDomainFromHost: pulumi.String("string"),
HttpCookieGeneration: pulumi.Float64(0),
HttpCookiePath: pulumi.String("string"),
HttpCookieShare: pulumi.String("string"),
HttpsCookieSecure: pulumi.String("string"),
Id: pulumi.Float64(0),
LdbMethod: pulumi.String("string"),
Persistence: pulumi.String("string"),
Quic: &.ObjectFirewallAccessproxy6ApiGatewayQuicTypeArgs{
AckDelayExponent: pulumi.Float64(0),
ActiveConnectionIdLimit: pulumi.Float64(0),
ActiveMigration: pulumi.String("string"),
GreaseQuicBit: pulumi.String("string"),
MaxAckDelay: pulumi.Float64(0),
MaxDatagramFrameSize: pulumi.Float64(0),
MaxIdleTimeout: pulumi.Float64(0),
MaxUdpPayloadSize: pulumi.Float64(0),
},
Realservers: .ObjectFirewallAccessproxy6ApiGatewayRealserverArray{
&.ObjectFirewallAccessproxy6ApiGatewayRealserverArgs{
AddrType: pulumi.String("string"),
Address: pulumi.String("string"),
Domain: pulumi.String("string"),
ExternalAuth: pulumi.String("string"),
HealthCheck: pulumi.String("string"),
HealthCheckProto: pulumi.String("string"),
HolddownInterval: pulumi.String("string"),
HttpHost: pulumi.String("string"),
Id: pulumi.Float64(0),
Ip: pulumi.String("string"),
Mappedport: pulumi.String("string"),
Port: pulumi.Float64(0),
SshClientCert: pulumi.String("string"),
SshHostKeyValidation: pulumi.String("string"),
SshHostKeys: pulumi.StringArray{
pulumi.String("string"),
},
Status: pulumi.String("string"),
TranslateHost: pulumi.String("string"),
TunnelEncryption: pulumi.String("string"),
Type: pulumi.String("string"),
Weight: pulumi.Float64(0),
},
},
SamlRedirect: pulumi.String("string"),
SamlServer: pulumi.String("string"),
Service: pulumi.String("string"),
SslAlgorithm: pulumi.String("string"),
SslCipherSuites: .ObjectFirewallAccessproxy6ApiGatewaySslCipherSuiteArray{
&.ObjectFirewallAccessproxy6ApiGatewaySslCipherSuiteArgs{
Cipher: pulumi.String("string"),
Priority: pulumi.Float64(0),
Versions: pulumi.StringArray{
pulumi.String("string"),
},
},
},
SslDhBits: pulumi.String("string"),
SslMaxVersion: pulumi.String("string"),
SslMinVersion: pulumi.String("string"),
SslRenegotiation: pulumi.String("string"),
SslVpnWebPortal: pulumi.String("string"),
UrlMap: pulumi.String("string"),
UrlMapType: pulumi.String("string"),
VirtualHost: pulumi.String("string"),
},
},
AuthPortal: pulumi.String("string"),
AuthVirtualHost: pulumi.String("string"),
ClientCert: pulumi.String("string"),
DecryptedTrafficMirror: pulumi.String("string"),
DynamicSortSubtable: pulumi.String("string"),
EmptyCertAction: pulumi.String("string"),
HttpSupportedMaxVersion: pulumi.String("string"),
LogBlockedTraffic: pulumi.String("string"),
Name: pulumi.String("string"),
ObjectFirewallAccessproxy6Id: pulumi.String("string"),
Scopetype: pulumi.String("string"),
SvrPoolMultiplex: pulumi.String("string"),
SvrPoolServerMaxConcurrentRequest: pulumi.Float64(0),
SvrPoolServerMaxRequest: pulumi.Float64(0),
SvrPoolTtl: pulumi.Float64(0),
UserAgentDetect: pulumi.String("string"),
Vip: pulumi.String("string"),
})
var objectFirewallAccessproxy6Resource = new ObjectFirewallAccessproxy6("objectFirewallAccessproxy6Resource", ObjectFirewallAccessproxy6Args.builder()
.addVhostDomainToDnsdb("string")
.adom("string")
.apiGateway6s(ObjectFirewallAccessproxy6ApiGateway6Args.builder()
.applications("string")
.h2Support("string")
.h3Support("string")
.httpCookieAge(0)
.httpCookieDomain("string")
.httpCookieDomainFromHost("string")
.httpCookieGeneration(0)
.httpCookiePath("string")
.httpCookieShare("string")
.httpsCookieSecure("string")
.id(0)
.ldbMethod("string")
.persistence("string")
.quic(ObjectFirewallAccessproxy6ApiGateway6QuicArgs.builder()
.ackDelayExponent(0)
.activeConnectionIdLimit(0)
.activeMigration("string")
.greaseQuicBit("string")
.maxAckDelay(0)
.maxDatagramFrameSize(0)
.maxIdleTimeout(0)
.maxUdpPayloadSize(0)
.build())
.realservers(ObjectFirewallAccessproxy6ApiGateway6RealserverArgs.builder()
.addrType("string")
.address("string")
.domain("string")
.externalAuth("string")
.healthCheck("string")
.healthCheckProto("string")
.holddownInterval("string")
.httpHost("string")
.id(0)
.ip("string")
.mappedport("string")
.port(0)
.sshClientCert("string")
.sshHostKeyValidation("string")
.sshHostKeys("string")
.status("string")
.translateHost("string")
.tunnelEncryption("string")
.type("string")
.weight(0)
.build())
.samlRedirect("string")
.samlServer("string")
.service("string")
.sslAlgorithm("string")
.sslCipherSuites(ObjectFirewallAccessproxy6ApiGateway6SslCipherSuiteArgs.builder()
.cipher("string")
.priority(0)
.versions("string")
.build())
.sslDhBits("string")
.sslMaxVersion("string")
.sslMinVersion("string")
.sslRenegotiation("string")
.sslVpnWebPortal("string")
.urlMap("string")
.urlMapType("string")
.virtualHost("string")
.build())
.apiGateways(ObjectFirewallAccessproxy6ApiGatewayArgs.builder()
.applications("string")
.h2Support("string")
.h3Support("string")
.httpCookieAge(0)
.httpCookieDomain("string")
.httpCookieDomainFromHost("string")
.httpCookieGeneration(0)
.httpCookiePath("string")
.httpCookieShare("string")
.httpsCookieSecure("string")
.id(0)
.ldbMethod("string")
.persistence("string")
.quic(ObjectFirewallAccessproxy6ApiGatewayQuicArgs.builder()
.ackDelayExponent(0)
.activeConnectionIdLimit(0)
.activeMigration("string")
.greaseQuicBit("string")
.maxAckDelay(0)
.maxDatagramFrameSize(0)
.maxIdleTimeout(0)
.maxUdpPayloadSize(0)
.build())
.realservers(ObjectFirewallAccessproxy6ApiGatewayRealserverArgs.builder()
.addrType("string")
.address("string")
.domain("string")
.externalAuth("string")
.healthCheck("string")
.healthCheckProto("string")
.holddownInterval("string")
.httpHost("string")
.id(0)
.ip("string")
.mappedport("string")
.port(0)
.sshClientCert("string")
.sshHostKeyValidation("string")
.sshHostKeys("string")
.status("string")
.translateHost("string")
.tunnelEncryption("string")
.type("string")
.weight(0)
.build())
.samlRedirect("string")
.samlServer("string")
.service("string")
.sslAlgorithm("string")
.sslCipherSuites(ObjectFirewallAccessproxy6ApiGatewaySslCipherSuiteArgs.builder()
.cipher("string")
.priority(0)
.versions("string")
.build())
.sslDhBits("string")
.sslMaxVersion("string")
.sslMinVersion("string")
.sslRenegotiation("string")
.sslVpnWebPortal("string")
.urlMap("string")
.urlMapType("string")
.virtualHost("string")
.build())
.authPortal("string")
.authVirtualHost("string")
.clientCert("string")
.decryptedTrafficMirror("string")
.dynamicSortSubtable("string")
.emptyCertAction("string")
.httpSupportedMaxVersion("string")
.logBlockedTraffic("string")
.name("string")
.objectFirewallAccessproxy6Id("string")
.scopetype("string")
.svrPoolMultiplex("string")
.svrPoolServerMaxConcurrentRequest(0)
.svrPoolServerMaxRequest(0)
.svrPoolTtl(0)
.userAgentDetect("string")
.vip("string")
.build());
object_firewall_accessproxy6_resource = fortimanager.ObjectFirewallAccessproxy6("objectFirewallAccessproxy6Resource",
add_vhost_domain_to_dnsdb="string",
adom="string",
api_gateway6s=[{
"applications": ["string"],
"h2_support": "string",
"h3_support": "string",
"http_cookie_age": 0,
"http_cookie_domain": "string",
"http_cookie_domain_from_host": "string",
"http_cookie_generation": 0,
"http_cookie_path": "string",
"http_cookie_share": "string",
"https_cookie_secure": "string",
"id": 0,
"ldb_method": "string",
"persistence": "string",
"quic": {
"ack_delay_exponent": 0,
"active_connection_id_limit": 0,
"active_migration": "string",
"grease_quic_bit": "string",
"max_ack_delay": 0,
"max_datagram_frame_size": 0,
"max_idle_timeout": 0,
"max_udp_payload_size": 0,
},
"realservers": [{
"addr_type": "string",
"address": "string",
"domain": "string",
"external_auth": "string",
"health_check": "string",
"health_check_proto": "string",
"holddown_interval": "string",
"http_host": "string",
"id": 0,
"ip": "string",
"mappedport": "string",
"port": 0,
"ssh_client_cert": "string",
"ssh_host_key_validation": "string",
"ssh_host_keys": ["string"],
"status": "string",
"translate_host": "string",
"tunnel_encryption": "string",
"type": "string",
"weight": 0,
}],
"saml_redirect": "string",
"saml_server": "string",
"service": "string",
"ssl_algorithm": "string",
"ssl_cipher_suites": [{
"cipher": "string",
"priority": 0,
"versions": ["string"],
}],
"ssl_dh_bits": "string",
"ssl_max_version": "string",
"ssl_min_version": "string",
"ssl_renegotiation": "string",
"ssl_vpn_web_portal": "string",
"url_map": "string",
"url_map_type": "string",
"virtual_host": "string",
}],
api_gateways=[{
"applications": ["string"],
"h2_support": "string",
"h3_support": "string",
"http_cookie_age": 0,
"http_cookie_domain": "string",
"http_cookie_domain_from_host": "string",
"http_cookie_generation": 0,
"http_cookie_path": "string",
"http_cookie_share": "string",
"https_cookie_secure": "string",
"id": 0,
"ldb_method": "string",
"persistence": "string",
"quic": {
"ack_delay_exponent": 0,
"active_connection_id_limit": 0,
"active_migration": "string",
"grease_quic_bit": "string",
"max_ack_delay": 0,
"max_datagram_frame_size": 0,
"max_idle_timeout": 0,
"max_udp_payload_size": 0,
},
"realservers": [{
"addr_type": "string",
"address": "string",
"domain": "string",
"external_auth": "string",
"health_check": "string",
"health_check_proto": "string",
"holddown_interval": "string",
"http_host": "string",
"id": 0,
"ip": "string",
"mappedport": "string",
"port": 0,
"ssh_client_cert": "string",
"ssh_host_key_validation": "string",
"ssh_host_keys": ["string"],
"status": "string",
"translate_host": "string",
"tunnel_encryption": "string",
"type": "string",
"weight": 0,
}],
"saml_redirect": "string",
"saml_server": "string",
"service": "string",
"ssl_algorithm": "string",
"ssl_cipher_suites": [{
"cipher": "string",
"priority": 0,
"versions": ["string"],
}],
"ssl_dh_bits": "string",
"ssl_max_version": "string",
"ssl_min_version": "string",
"ssl_renegotiation": "string",
"ssl_vpn_web_portal": "string",
"url_map": "string",
"url_map_type": "string",
"virtual_host": "string",
}],
auth_portal="string",
auth_virtual_host="string",
client_cert="string",
decrypted_traffic_mirror="string",
dynamic_sort_subtable="string",
empty_cert_action="string",
http_supported_max_version="string",
log_blocked_traffic="string",
name="string",
object_firewall_accessproxy6_id="string",
scopetype="string",
svr_pool_multiplex="string",
svr_pool_server_max_concurrent_request=0,
svr_pool_server_max_request=0,
svr_pool_ttl=0,
user_agent_detect="string",
vip="string")
const objectFirewallAccessproxy6Resource = new fortimanager.ObjectFirewallAccessproxy6("objectFirewallAccessproxy6Resource", {
addVhostDomainToDnsdb: "string",
adom: "string",
apiGateway6s: [{
applications: ["string"],
h2Support: "string",
h3Support: "string",
httpCookieAge: 0,
httpCookieDomain: "string",
httpCookieDomainFromHost: "string",
httpCookieGeneration: 0,
httpCookiePath: "string",
httpCookieShare: "string",
httpsCookieSecure: "string",
id: 0,
ldbMethod: "string",
persistence: "string",
quic: {
ackDelayExponent: 0,
activeConnectionIdLimit: 0,
activeMigration: "string",
greaseQuicBit: "string",
maxAckDelay: 0,
maxDatagramFrameSize: 0,
maxIdleTimeout: 0,
maxUdpPayloadSize: 0,
},
realservers: [{
addrType: "string",
address: "string",
domain: "string",
externalAuth: "string",
healthCheck: "string",
healthCheckProto: "string",
holddownInterval: "string",
httpHost: "string",
id: 0,
ip: "string",
mappedport: "string",
port: 0,
sshClientCert: "string",
sshHostKeyValidation: "string",
sshHostKeys: ["string"],
status: "string",
translateHost: "string",
tunnelEncryption: "string",
type: "string",
weight: 0,
}],
samlRedirect: "string",
samlServer: "string",
service: "string",
sslAlgorithm: "string",
sslCipherSuites: [{
cipher: "string",
priority: 0,
versions: ["string"],
}],
sslDhBits: "string",
sslMaxVersion: "string",
sslMinVersion: "string",
sslRenegotiation: "string",
sslVpnWebPortal: "string",
urlMap: "string",
urlMapType: "string",
virtualHost: "string",
}],
apiGateways: [{
applications: ["string"],
h2Support: "string",
h3Support: "string",
httpCookieAge: 0,
httpCookieDomain: "string",
httpCookieDomainFromHost: "string",
httpCookieGeneration: 0,
httpCookiePath: "string",
httpCookieShare: "string",
httpsCookieSecure: "string",
id: 0,
ldbMethod: "string",
persistence: "string",
quic: {
ackDelayExponent: 0,
activeConnectionIdLimit: 0,
activeMigration: "string",
greaseQuicBit: "string",
maxAckDelay: 0,
maxDatagramFrameSize: 0,
maxIdleTimeout: 0,
maxUdpPayloadSize: 0,
},
realservers: [{
addrType: "string",
address: "string",
domain: "string",
externalAuth: "string",
healthCheck: "string",
healthCheckProto: "string",
holddownInterval: "string",
httpHost: "string",
id: 0,
ip: "string",
mappedport: "string",
port: 0,
sshClientCert: "string",
sshHostKeyValidation: "string",
sshHostKeys: ["string"],
status: "string",
translateHost: "string",
tunnelEncryption: "string",
type: "string",
weight: 0,
}],
samlRedirect: "string",
samlServer: "string",
service: "string",
sslAlgorithm: "string",
sslCipherSuites: [{
cipher: "string",
priority: 0,
versions: ["string"],
}],
sslDhBits: "string",
sslMaxVersion: "string",
sslMinVersion: "string",
sslRenegotiation: "string",
sslVpnWebPortal: "string",
urlMap: "string",
urlMapType: "string",
virtualHost: "string",
}],
authPortal: "string",
authVirtualHost: "string",
clientCert: "string",
decryptedTrafficMirror: "string",
dynamicSortSubtable: "string",
emptyCertAction: "string",
httpSupportedMaxVersion: "string",
logBlockedTraffic: "string",
name: "string",
objectFirewallAccessproxy6Id: "string",
scopetype: "string",
svrPoolMultiplex: "string",
svrPoolServerMaxConcurrentRequest: 0,
svrPoolServerMaxRequest: 0,
svrPoolTtl: 0,
userAgentDetect: "string",
vip: "string",
});
type: fortimanager:ObjectFirewallAccessproxy6
properties:
addVhostDomainToDnsdb: string
adom: string
apiGateway6s:
- applications:
- string
h2Support: string
h3Support: string
httpCookieAge: 0
httpCookieDomain: string
httpCookieDomainFromHost: string
httpCookieGeneration: 0
httpCookiePath: string
httpCookieShare: string
httpsCookieSecure: string
id: 0
ldbMethod: string
persistence: string
quic:
ackDelayExponent: 0
activeConnectionIdLimit: 0
activeMigration: string
greaseQuicBit: string
maxAckDelay: 0
maxDatagramFrameSize: 0
maxIdleTimeout: 0
maxUdpPayloadSize: 0
realservers:
- addrType: string
address: string
domain: string
externalAuth: string
healthCheck: string
healthCheckProto: string
holddownInterval: string
httpHost: string
id: 0
ip: string
mappedport: string
port: 0
sshClientCert: string
sshHostKeyValidation: string
sshHostKeys:
- string
status: string
translateHost: string
tunnelEncryption: string
type: string
weight: 0
samlRedirect: string
samlServer: string
service: string
sslAlgorithm: string
sslCipherSuites:
- cipher: string
priority: 0
versions:
- string
sslDhBits: string
sslMaxVersion: string
sslMinVersion: string
sslRenegotiation: string
sslVpnWebPortal: string
urlMap: string
urlMapType: string
virtualHost: string
apiGateways:
- applications:
- string
h2Support: string
h3Support: string
httpCookieAge: 0
httpCookieDomain: string
httpCookieDomainFromHost: string
httpCookieGeneration: 0
httpCookiePath: string
httpCookieShare: string
httpsCookieSecure: string
id: 0
ldbMethod: string
persistence: string
quic:
ackDelayExponent: 0
activeConnectionIdLimit: 0
activeMigration: string
greaseQuicBit: string
maxAckDelay: 0
maxDatagramFrameSize: 0
maxIdleTimeout: 0
maxUdpPayloadSize: 0
realservers:
- addrType: string
address: string
domain: string
externalAuth: string
healthCheck: string
healthCheckProto: string
holddownInterval: string
httpHost: string
id: 0
ip: string
mappedport: string
port: 0
sshClientCert: string
sshHostKeyValidation: string
sshHostKeys:
- string
status: string
translateHost: string
tunnelEncryption: string
type: string
weight: 0
samlRedirect: string
samlServer: string
service: string
sslAlgorithm: string
sslCipherSuites:
- cipher: string
priority: 0
versions:
- string
sslDhBits: string
sslMaxVersion: string
sslMinVersion: string
sslRenegotiation: string
sslVpnWebPortal: string
urlMap: string
urlMapType: string
virtualHost: string
authPortal: string
authVirtualHost: string
clientCert: string
decryptedTrafficMirror: string
dynamicSortSubtable: string
emptyCertAction: string
httpSupportedMaxVersion: string
logBlockedTraffic: string
name: string
objectFirewallAccessproxy6Id: string
scopetype: string
svrPoolMultiplex: string
svrPoolServerMaxConcurrentRequest: 0
svrPoolServerMaxRequest: 0
svrPoolTtl: 0
userAgentDetect: string
vip: string
ObjectFirewallAccessproxy6 Resource Properties
To learn more about resource properties and how to use them, see Inputs and Outputs in the Architecture and Concepts docs.
Inputs
In Python, inputs that are objects can be passed either as argument classes or as dictionary literals.
The ObjectFirewallAccessproxy6 resource accepts the following input properties:
- Add
Vhost stringDomain To Dnsdb - Enable/disable adding vhost/domain to dnsdb for ztna dox tunnel. Valid values:
disable
,enable
. - Adom string
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - Api
Gateway6s List<ObjectFirewall Accessproxy6Api Gateway6> - Api-Gateway6. The structure of
api_gateway6
block is documented below. - Api
Gateways List<ObjectFirewall Accessproxy6Api Gateway> - Api-Gateway. The structure of
api_gateway
block is documented below. - Auth
Portal string - Enable/disable authentication portal. Valid values:
disable
,enable
. - Auth
Virtual stringHost - Virtual host for authentication portal.
- Client
Cert string - Enable/disable to request client certificate. Valid values:
disable
,enable
. - Decrypted
Traffic stringMirror - Decrypted traffic mirror.
- Dynamic
Sort stringSubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- Empty
Cert stringAction - Action of an empty client certificate. Valid values:
block
,accept
,accept-unmanageable
. - Http
Supported stringMax Version - Maximum supported HTTP versions. default = HTTP2 Valid values:
http1
,http2
. - Log
Blocked stringTraffic - Enable/disable logging of blocked traffic. Valid values:
disable
,enable
. - Name string
- Access Proxy name.
- Object
Firewall stringAccessproxy6Id - an identifier for the resource with format {{name}}.
- Scopetype string
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - Svr
Pool stringMultiplex - Enable/disable server pool multiplexing. Share connected server in HTTP, HTTPS, and web-portal api-gateway. Valid values:
disable
,enable
. - Svr
Pool doubleServer Max Concurrent Request - Maximum number of concurrent requests that servers in server pool could handle (default = unlimited).
- Svr
Pool doubleServer Max Request - Maximum number of requests that servers in server pool handle before disconnecting (default = unlimited).
- Svr
Pool doubleTtl - Time-to-live in the server pool for idle connections to servers.
- User
Agent stringDetect - Enable/disable to detect device type by HTTP user-agent if no client certificate provided. Valid values:
disable
,enable
. - Vip string
- Virtual IP name.
- Add
Vhost stringDomain To Dnsdb - Enable/disable adding vhost/domain to dnsdb for ztna dox tunnel. Valid values:
disable
,enable
. - Adom string
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - Api
Gateway6s []ObjectFirewall Accessproxy6Api Gateway6Type Args - Api-Gateway6. The structure of
api_gateway6
block is documented below. - Api
Gateways []ObjectFirewall Accessproxy6Api Gateway Type Args - Api-Gateway. The structure of
api_gateway
block is documented below. - Auth
Portal string - Enable/disable authentication portal. Valid values:
disable
,enable
. - Auth
Virtual stringHost - Virtual host for authentication portal.
- Client
Cert string - Enable/disable to request client certificate. Valid values:
disable
,enable
. - Decrypted
Traffic stringMirror - Decrypted traffic mirror.
- Dynamic
Sort stringSubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- Empty
Cert stringAction - Action of an empty client certificate. Valid values:
block
,accept
,accept-unmanageable
. - Http
Supported stringMax Version - Maximum supported HTTP versions. default = HTTP2 Valid values:
http1
,http2
. - Log
Blocked stringTraffic - Enable/disable logging of blocked traffic. Valid values:
disable
,enable
. - Name string
- Access Proxy name.
- Object
Firewall stringAccessproxy6Id - an identifier for the resource with format {{name}}.
- Scopetype string
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - Svr
Pool stringMultiplex - Enable/disable server pool multiplexing. Share connected server in HTTP, HTTPS, and web-portal api-gateway. Valid values:
disable
,enable
. - Svr
Pool float64Server Max Concurrent Request - Maximum number of concurrent requests that servers in server pool could handle (default = unlimited).
- Svr
Pool float64Server Max Request - Maximum number of requests that servers in server pool handle before disconnecting (default = unlimited).
- Svr
Pool float64Ttl - Time-to-live in the server pool for idle connections to servers.
- User
Agent stringDetect - Enable/disable to detect device type by HTTP user-agent if no client certificate provided. Valid values:
disable
,enable
. - Vip string
- Virtual IP name.
- add
Vhost StringDomain To Dnsdb - Enable/disable adding vhost/domain to dnsdb for ztna dox tunnel. Valid values:
disable
,enable
. - adom String
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - api
Gateway6s List<ObjectFirewall Accessproxy6Api Gateway6> - Api-Gateway6. The structure of
api_gateway6
block is documented below. - api
Gateways List<ObjectFirewall Accessproxy6Api Gateway> - Api-Gateway. The structure of
api_gateway
block is documented below. - auth
Portal String - Enable/disable authentication portal. Valid values:
disable
,enable
. - auth
Virtual StringHost - Virtual host for authentication portal.
- client
Cert String - Enable/disable to request client certificate. Valid values:
disable
,enable
. - decrypted
Traffic StringMirror - Decrypted traffic mirror.
- dynamic
Sort StringSubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- empty
Cert StringAction - Action of an empty client certificate. Valid values:
block
,accept
,accept-unmanageable
. - http
Supported StringMax Version - Maximum supported HTTP versions. default = HTTP2 Valid values:
http1
,http2
. - log
Blocked StringTraffic - Enable/disable logging of blocked traffic. Valid values:
disable
,enable
. - name String
- Access Proxy name.
- object
Firewall StringAccessproxy6Id - an identifier for the resource with format {{name}}.
- scopetype String
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - svr
Pool StringMultiplex - Enable/disable server pool multiplexing. Share connected server in HTTP, HTTPS, and web-portal api-gateway. Valid values:
disable
,enable
. - svr
Pool DoubleServer Max Concurrent Request - Maximum number of concurrent requests that servers in server pool could handle (default = unlimited).
- svr
Pool DoubleServer Max Request - Maximum number of requests that servers in server pool handle before disconnecting (default = unlimited).
- svr
Pool DoubleTtl - Time-to-live in the server pool for idle connections to servers.
- user
Agent StringDetect - Enable/disable to detect device type by HTTP user-agent if no client certificate provided. Valid values:
disable
,enable
. - vip String
- Virtual IP name.
- add
Vhost stringDomain To Dnsdb - Enable/disable adding vhost/domain to dnsdb for ztna dox tunnel. Valid values:
disable
,enable
. - adom string
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - api
Gateway6s ObjectFirewall Accessproxy6Api Gateway6[] - Api-Gateway6. The structure of
api_gateway6
block is documented below. - api
Gateways ObjectFirewall Accessproxy6Api Gateway[] - Api-Gateway. The structure of
api_gateway
block is documented below. - auth
Portal string - Enable/disable authentication portal. Valid values:
disable
,enable
. - auth
Virtual stringHost - Virtual host for authentication portal.
- client
Cert string - Enable/disable to request client certificate. Valid values:
disable
,enable
. - decrypted
Traffic stringMirror - Decrypted traffic mirror.
- dynamic
Sort stringSubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- empty
Cert stringAction - Action of an empty client certificate. Valid values:
block
,accept
,accept-unmanageable
. - http
Supported stringMax Version - Maximum supported HTTP versions. default = HTTP2 Valid values:
http1
,http2
. - log
Blocked stringTraffic - Enable/disable logging of blocked traffic. Valid values:
disable
,enable
. - name string
- Access Proxy name.
- object
Firewall stringAccessproxy6Id - an identifier for the resource with format {{name}}.
- scopetype string
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - svr
Pool stringMultiplex - Enable/disable server pool multiplexing. Share connected server in HTTP, HTTPS, and web-portal api-gateway. Valid values:
disable
,enable
. - svr
Pool numberServer Max Concurrent Request - Maximum number of concurrent requests that servers in server pool could handle (default = unlimited).
- svr
Pool numberServer Max Request - Maximum number of requests that servers in server pool handle before disconnecting (default = unlimited).
- svr
Pool numberTtl - Time-to-live in the server pool for idle connections to servers.
- user
Agent stringDetect - Enable/disable to detect device type by HTTP user-agent if no client certificate provided. Valid values:
disable
,enable
. - vip string
- Virtual IP name.
- add_
vhost_ strdomain_ to_ dnsdb - Enable/disable adding vhost/domain to dnsdb for ztna dox tunnel. Valid values:
disable
,enable
. - adom str
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - api_
gateway6s Sequence[ObjectFirewall Accessproxy6Api Gateway6Args] - Api-Gateway6. The structure of
api_gateway6
block is documented below. - api_
gateways Sequence[ObjectFirewall Accessproxy6Api Gateway Args] - Api-Gateway. The structure of
api_gateway
block is documented below. - auth_
portal str - Enable/disable authentication portal. Valid values:
disable
,enable
. - auth_
virtual_ strhost - Virtual host for authentication portal.
- client_
cert str - Enable/disable to request client certificate. Valid values:
disable
,enable
. - decrypted_
traffic_ strmirror - Decrypted traffic mirror.
- dynamic_
sort_ strsubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- empty_
cert_ straction - Action of an empty client certificate. Valid values:
block
,accept
,accept-unmanageable
. - http_
supported_ strmax_ version - Maximum supported HTTP versions. default = HTTP2 Valid values:
http1
,http2
. - log_
blocked_ strtraffic - Enable/disable logging of blocked traffic. Valid values:
disable
,enable
. - name str
- Access Proxy name.
- object_
firewall_ straccessproxy6_ id - an identifier for the resource with format {{name}}.
- scopetype str
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - svr_
pool_ strmultiplex - Enable/disable server pool multiplexing. Share connected server in HTTP, HTTPS, and web-portal api-gateway. Valid values:
disable
,enable
. - svr_
pool_ floatserver_ max_ concurrent_ request - Maximum number of concurrent requests that servers in server pool could handle (default = unlimited).
- svr_
pool_ floatserver_ max_ request - Maximum number of requests that servers in server pool handle before disconnecting (default = unlimited).
- svr_
pool_ floatttl - Time-to-live in the server pool for idle connections to servers.
- user_
agent_ strdetect - Enable/disable to detect device type by HTTP user-agent if no client certificate provided. Valid values:
disable
,enable
. - vip str
- Virtual IP name.
- add
Vhost StringDomain To Dnsdb - Enable/disable adding vhost/domain to dnsdb for ztna dox tunnel. Valid values:
disable
,enable
. - adom String
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - api
Gateway6s List<Property Map> - Api-Gateway6. The structure of
api_gateway6
block is documented below. - api
Gateways List<Property Map> - Api-Gateway. The structure of
api_gateway
block is documented below. - auth
Portal String - Enable/disable authentication portal. Valid values:
disable
,enable
. - auth
Virtual StringHost - Virtual host for authentication portal.
- client
Cert String - Enable/disable to request client certificate. Valid values:
disable
,enable
. - decrypted
Traffic StringMirror - Decrypted traffic mirror.
- dynamic
Sort StringSubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- empty
Cert StringAction - Action of an empty client certificate. Valid values:
block
,accept
,accept-unmanageable
. - http
Supported StringMax Version - Maximum supported HTTP versions. default = HTTP2 Valid values:
http1
,http2
. - log
Blocked StringTraffic - Enable/disable logging of blocked traffic. Valid values:
disable
,enable
. - name String
- Access Proxy name.
- object
Firewall StringAccessproxy6Id - an identifier for the resource with format {{name}}.
- scopetype String
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - svr
Pool StringMultiplex - Enable/disable server pool multiplexing. Share connected server in HTTP, HTTPS, and web-portal api-gateway. Valid values:
disable
,enable
. - svr
Pool NumberServer Max Concurrent Request - Maximum number of concurrent requests that servers in server pool could handle (default = unlimited).
- svr
Pool NumberServer Max Request - Maximum number of requests that servers in server pool handle before disconnecting (default = unlimited).
- svr
Pool NumberTtl - Time-to-live in the server pool for idle connections to servers.
- user
Agent StringDetect - Enable/disable to detect device type by HTTP user-agent if no client certificate provided. Valid values:
disable
,enable
. - vip String
- Virtual IP name.
Outputs
All input properties are implicitly available as output properties. Additionally, the ObjectFirewallAccessproxy6 resource produces the following output properties:
- Id string
- The provider-assigned unique ID for this managed resource.
- Id string
- The provider-assigned unique ID for this managed resource.
- id String
- The provider-assigned unique ID for this managed resource.
- id string
- The provider-assigned unique ID for this managed resource.
- id str
- The provider-assigned unique ID for this managed resource.
- id String
- The provider-assigned unique ID for this managed resource.
Look up Existing ObjectFirewallAccessproxy6 Resource
Get an existing ObjectFirewallAccessproxy6 resource’s state with the given name, ID, and optional extra properties used to qualify the lookup.
public static get(name: string, id: Input<ID>, state?: ObjectFirewallAccessproxy6State, opts?: CustomResourceOptions): ObjectFirewallAccessproxy6
@staticmethod
def get(resource_name: str,
id: str,
opts: Optional[ResourceOptions] = None,
add_vhost_domain_to_dnsdb: Optional[str] = None,
adom: Optional[str] = None,
api_gateway6s: Optional[Sequence[ObjectFirewallAccessproxy6ApiGateway6Args]] = None,
api_gateways: Optional[Sequence[ObjectFirewallAccessproxy6ApiGatewayArgs]] = None,
auth_portal: Optional[str] = None,
auth_virtual_host: Optional[str] = None,
client_cert: Optional[str] = None,
decrypted_traffic_mirror: Optional[str] = None,
dynamic_sort_subtable: Optional[str] = None,
empty_cert_action: Optional[str] = None,
http_supported_max_version: Optional[str] = None,
log_blocked_traffic: Optional[str] = None,
name: Optional[str] = None,
object_firewall_accessproxy6_id: Optional[str] = None,
scopetype: Optional[str] = None,
svr_pool_multiplex: Optional[str] = None,
svr_pool_server_max_concurrent_request: Optional[float] = None,
svr_pool_server_max_request: Optional[float] = None,
svr_pool_ttl: Optional[float] = None,
user_agent_detect: Optional[str] = None,
vip: Optional[str] = None) -> ObjectFirewallAccessproxy6
func GetObjectFirewallAccessproxy6(ctx *Context, name string, id IDInput, state *ObjectFirewallAccessproxy6State, opts ...ResourceOption) (*ObjectFirewallAccessproxy6, error)
public static ObjectFirewallAccessproxy6 Get(string name, Input<string> id, ObjectFirewallAccessproxy6State? state, CustomResourceOptions? opts = null)
public static ObjectFirewallAccessproxy6 get(String name, Output<String> id, ObjectFirewallAccessproxy6State state, CustomResourceOptions options)
resources: _: type: fortimanager:ObjectFirewallAccessproxy6 get: id: ${id}
- name
- The unique name of the resulting resource.
- id
- The unique provider ID of the resource to lookup.
- state
- Any extra arguments used during the lookup.
- opts
- A bag of options that control this resource's behavior.
- resource_name
- The unique name of the resulting resource.
- id
- The unique provider ID of the resource to lookup.
- name
- The unique name of the resulting resource.
- id
- The unique provider ID of the resource to lookup.
- state
- Any extra arguments used during the lookup.
- opts
- A bag of options that control this resource's behavior.
- name
- The unique name of the resulting resource.
- id
- The unique provider ID of the resource to lookup.
- state
- Any extra arguments used during the lookup.
- opts
- A bag of options that control this resource's behavior.
- name
- The unique name of the resulting resource.
- id
- The unique provider ID of the resource to lookup.
- state
- Any extra arguments used during the lookup.
- opts
- A bag of options that control this resource's behavior.
- Add
Vhost stringDomain To Dnsdb - Enable/disable adding vhost/domain to dnsdb for ztna dox tunnel. Valid values:
disable
,enable
. - Adom string
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - Api
Gateway6s List<ObjectFirewall Accessproxy6Api Gateway6> - Api-Gateway6. The structure of
api_gateway6
block is documented below. - Api
Gateways List<ObjectFirewall Accessproxy6Api Gateway> - Api-Gateway. The structure of
api_gateway
block is documented below. - Auth
Portal string - Enable/disable authentication portal. Valid values:
disable
,enable
. - Auth
Virtual stringHost - Virtual host for authentication portal.
- Client
Cert string - Enable/disable to request client certificate. Valid values:
disable
,enable
. - Decrypted
Traffic stringMirror - Decrypted traffic mirror.
- Dynamic
Sort stringSubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- Empty
Cert stringAction - Action of an empty client certificate. Valid values:
block
,accept
,accept-unmanageable
. - Http
Supported stringMax Version - Maximum supported HTTP versions. default = HTTP2 Valid values:
http1
,http2
. - Log
Blocked stringTraffic - Enable/disable logging of blocked traffic. Valid values:
disable
,enable
. - Name string
- Access Proxy name.
- Object
Firewall stringAccessproxy6Id - an identifier for the resource with format {{name}}.
- Scopetype string
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - Svr
Pool stringMultiplex - Enable/disable server pool multiplexing. Share connected server in HTTP, HTTPS, and web-portal api-gateway. Valid values:
disable
,enable
. - Svr
Pool doubleServer Max Concurrent Request - Maximum number of concurrent requests that servers in server pool could handle (default = unlimited).
- Svr
Pool doubleServer Max Request - Maximum number of requests that servers in server pool handle before disconnecting (default = unlimited).
- Svr
Pool doubleTtl - Time-to-live in the server pool for idle connections to servers.
- User
Agent stringDetect - Enable/disable to detect device type by HTTP user-agent if no client certificate provided. Valid values:
disable
,enable
. - Vip string
- Virtual IP name.
- Add
Vhost stringDomain To Dnsdb - Enable/disable adding vhost/domain to dnsdb for ztna dox tunnel. Valid values:
disable
,enable
. - Adom string
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - Api
Gateway6s []ObjectFirewall Accessproxy6Api Gateway6Type Args - Api-Gateway6. The structure of
api_gateway6
block is documented below. - Api
Gateways []ObjectFirewall Accessproxy6Api Gateway Type Args - Api-Gateway. The structure of
api_gateway
block is documented below. - Auth
Portal string - Enable/disable authentication portal. Valid values:
disable
,enable
. - Auth
Virtual stringHost - Virtual host for authentication portal.
- Client
Cert string - Enable/disable to request client certificate. Valid values:
disable
,enable
. - Decrypted
Traffic stringMirror - Decrypted traffic mirror.
- Dynamic
Sort stringSubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- Empty
Cert stringAction - Action of an empty client certificate. Valid values:
block
,accept
,accept-unmanageable
. - Http
Supported stringMax Version - Maximum supported HTTP versions. default = HTTP2 Valid values:
http1
,http2
. - Log
Blocked stringTraffic - Enable/disable logging of blocked traffic. Valid values:
disable
,enable
. - Name string
- Access Proxy name.
- Object
Firewall stringAccessproxy6Id - an identifier for the resource with format {{name}}.
- Scopetype string
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - Svr
Pool stringMultiplex - Enable/disable server pool multiplexing. Share connected server in HTTP, HTTPS, and web-portal api-gateway. Valid values:
disable
,enable
. - Svr
Pool float64Server Max Concurrent Request - Maximum number of concurrent requests that servers in server pool could handle (default = unlimited).
- Svr
Pool float64Server Max Request - Maximum number of requests that servers in server pool handle before disconnecting (default = unlimited).
- Svr
Pool float64Ttl - Time-to-live in the server pool for idle connections to servers.
- User
Agent stringDetect - Enable/disable to detect device type by HTTP user-agent if no client certificate provided. Valid values:
disable
,enable
. - Vip string
- Virtual IP name.
- add
Vhost StringDomain To Dnsdb - Enable/disable adding vhost/domain to dnsdb for ztna dox tunnel. Valid values:
disable
,enable
. - adom String
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - api
Gateway6s List<ObjectFirewall Accessproxy6Api Gateway6> - Api-Gateway6. The structure of
api_gateway6
block is documented below. - api
Gateways List<ObjectFirewall Accessproxy6Api Gateway> - Api-Gateway. The structure of
api_gateway
block is documented below. - auth
Portal String - Enable/disable authentication portal. Valid values:
disable
,enable
. - auth
Virtual StringHost - Virtual host for authentication portal.
- client
Cert String - Enable/disable to request client certificate. Valid values:
disable
,enable
. - decrypted
Traffic StringMirror - Decrypted traffic mirror.
- dynamic
Sort StringSubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- empty
Cert StringAction - Action of an empty client certificate. Valid values:
block
,accept
,accept-unmanageable
. - http
Supported StringMax Version - Maximum supported HTTP versions. default = HTTP2 Valid values:
http1
,http2
. - log
Blocked StringTraffic - Enable/disable logging of blocked traffic. Valid values:
disable
,enable
. - name String
- Access Proxy name.
- object
Firewall StringAccessproxy6Id - an identifier for the resource with format {{name}}.
- scopetype String
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - svr
Pool StringMultiplex - Enable/disable server pool multiplexing. Share connected server in HTTP, HTTPS, and web-portal api-gateway. Valid values:
disable
,enable
. - svr
Pool DoubleServer Max Concurrent Request - Maximum number of concurrent requests that servers in server pool could handle (default = unlimited).
- svr
Pool DoubleServer Max Request - Maximum number of requests that servers in server pool handle before disconnecting (default = unlimited).
- svr
Pool DoubleTtl - Time-to-live in the server pool for idle connections to servers.
- user
Agent StringDetect - Enable/disable to detect device type by HTTP user-agent if no client certificate provided. Valid values:
disable
,enable
. - vip String
- Virtual IP name.
- add
Vhost stringDomain To Dnsdb - Enable/disable adding vhost/domain to dnsdb for ztna dox tunnel. Valid values:
disable
,enable
. - adom string
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - api
Gateway6s ObjectFirewall Accessproxy6Api Gateway6[] - Api-Gateway6. The structure of
api_gateway6
block is documented below. - api
Gateways ObjectFirewall Accessproxy6Api Gateway[] - Api-Gateway. The structure of
api_gateway
block is documented below. - auth
Portal string - Enable/disable authentication portal. Valid values:
disable
,enable
. - auth
Virtual stringHost - Virtual host for authentication portal.
- client
Cert string - Enable/disable to request client certificate. Valid values:
disable
,enable
. - decrypted
Traffic stringMirror - Decrypted traffic mirror.
- dynamic
Sort stringSubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- empty
Cert stringAction - Action of an empty client certificate. Valid values:
block
,accept
,accept-unmanageable
. - http
Supported stringMax Version - Maximum supported HTTP versions. default = HTTP2 Valid values:
http1
,http2
. - log
Blocked stringTraffic - Enable/disable logging of blocked traffic. Valid values:
disable
,enable
. - name string
- Access Proxy name.
- object
Firewall stringAccessproxy6Id - an identifier for the resource with format {{name}}.
- scopetype string
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - svr
Pool stringMultiplex - Enable/disable server pool multiplexing. Share connected server in HTTP, HTTPS, and web-portal api-gateway. Valid values:
disable
,enable
. - svr
Pool numberServer Max Concurrent Request - Maximum number of concurrent requests that servers in server pool could handle (default = unlimited).
- svr
Pool numberServer Max Request - Maximum number of requests that servers in server pool handle before disconnecting (default = unlimited).
- svr
Pool numberTtl - Time-to-live in the server pool for idle connections to servers.
- user
Agent stringDetect - Enable/disable to detect device type by HTTP user-agent if no client certificate provided. Valid values:
disable
,enable
. - vip string
- Virtual IP name.
- add_
vhost_ strdomain_ to_ dnsdb - Enable/disable adding vhost/domain to dnsdb for ztna dox tunnel. Valid values:
disable
,enable
. - adom str
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - api_
gateway6s Sequence[ObjectFirewall Accessproxy6Api Gateway6Args] - Api-Gateway6. The structure of
api_gateway6
block is documented below. - api_
gateways Sequence[ObjectFirewall Accessproxy6Api Gateway Args] - Api-Gateway. The structure of
api_gateway
block is documented below. - auth_
portal str - Enable/disable authentication portal. Valid values:
disable
,enable
. - auth_
virtual_ strhost - Virtual host for authentication portal.
- client_
cert str - Enable/disable to request client certificate. Valid values:
disable
,enable
. - decrypted_
traffic_ strmirror - Decrypted traffic mirror.
- dynamic_
sort_ strsubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- empty_
cert_ straction - Action of an empty client certificate. Valid values:
block
,accept
,accept-unmanageable
. - http_
supported_ strmax_ version - Maximum supported HTTP versions. default = HTTP2 Valid values:
http1
,http2
. - log_
blocked_ strtraffic - Enable/disable logging of blocked traffic. Valid values:
disable
,enable
. - name str
- Access Proxy name.
- object_
firewall_ straccessproxy6_ id - an identifier for the resource with format {{name}}.
- scopetype str
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - svr_
pool_ strmultiplex - Enable/disable server pool multiplexing. Share connected server in HTTP, HTTPS, and web-portal api-gateway. Valid values:
disable
,enable
. - svr_
pool_ floatserver_ max_ concurrent_ request - Maximum number of concurrent requests that servers in server pool could handle (default = unlimited).
- svr_
pool_ floatserver_ max_ request - Maximum number of requests that servers in server pool handle before disconnecting (default = unlimited).
- svr_
pool_ floatttl - Time-to-live in the server pool for idle connections to servers.
- user_
agent_ strdetect - Enable/disable to detect device type by HTTP user-agent if no client certificate provided. Valid values:
disable
,enable
. - vip str
- Virtual IP name.
- add
Vhost StringDomain To Dnsdb - Enable/disable adding vhost/domain to dnsdb for ztna dox tunnel. Valid values:
disable
,enable
. - adom String
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - api
Gateway6s List<Property Map> - Api-Gateway6. The structure of
api_gateway6
block is documented below. - api
Gateways List<Property Map> - Api-Gateway. The structure of
api_gateway
block is documented below. - auth
Portal String - Enable/disable authentication portal. Valid values:
disable
,enable
. - auth
Virtual StringHost - Virtual host for authentication portal.
- client
Cert String - Enable/disable to request client certificate. Valid values:
disable
,enable
. - decrypted
Traffic StringMirror - Decrypted traffic mirror.
- dynamic
Sort StringSubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- empty
Cert StringAction - Action of an empty client certificate. Valid values:
block
,accept
,accept-unmanageable
. - http
Supported StringMax Version - Maximum supported HTTP versions. default = HTTP2 Valid values:
http1
,http2
. - log
Blocked StringTraffic - Enable/disable logging of blocked traffic. Valid values:
disable
,enable
. - name String
- Access Proxy name.
- object
Firewall StringAccessproxy6Id - an identifier for the resource with format {{name}}.
- scopetype String
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - svr
Pool StringMultiplex - Enable/disable server pool multiplexing. Share connected server in HTTP, HTTPS, and web-portal api-gateway. Valid values:
disable
,enable
. - svr
Pool NumberServer Max Concurrent Request - Maximum number of concurrent requests that servers in server pool could handle (default = unlimited).
- svr
Pool NumberServer Max Request - Maximum number of requests that servers in server pool handle before disconnecting (default = unlimited).
- svr
Pool NumberTtl - Time-to-live in the server pool for idle connections to servers.
- user
Agent StringDetect - Enable/disable to detect device type by HTTP user-agent if no client certificate provided. Valid values:
disable
,enable
. - vip String
- Virtual IP name.
Supporting Types
ObjectFirewallAccessproxy6ApiGateway, ObjectFirewallAccessproxy6ApiGatewayArgs
- Applications List<string>
- SaaS application controlled by this Access Proxy.
- H2Support string
- HTTP2 support, default=Enable. Valid values:
disable
,enable
. - H3Support string
- HTTP3/QUIC support, default=Disable. Valid values:
disable
,enable
. - double
- Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
- string
- Domain that HTTP cookie persistence should apply to.
- string
- Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values:
disable
,enable
. - double
- Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
- string
- Limit HTTP cookie persistence to the specified path.
- string
- Control sharing of cookies across API Gateway. Use of same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values:
disable
,same-ip
. - string
- Enable/disable verification that inserted HTTPS cookies are secure. Valid values:
disable
,enable
. - Id double
- API Gateway ID.
- Ldb
Method string - Method used to distribute sessions to real servers. Valid values:
static
,round-robin
,weighted
,first-alive
,http-host
. - Persistence string
- Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values:
none
,http-cookie
. - Quic
Object
Firewall Accessproxy6Api Gateway Quic - Quic. The structure of
quic
block is documented below. - Realservers
List<Object
Firewall Accessproxy6Api Gateway Realserver> - Realservers. The structure of
realservers
block is documented below. - Saml
Redirect string - Enable/disable SAML redirection after successful authentication. Valid values:
disable
,enable
. - Saml
Server string - SAML service provider configuration for VIP authentication.
- Service string
- Service. Valid values:
http
,https
,tcp-forwarding
,samlsp
,web-portal
,saas
. - Ssl
Algorithm string - Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values:
high
,medium
,low
. - Ssl
Cipher List<ObjectSuites Firewall Accessproxy6Api Gateway Ssl Cipher Suite> - Ssl-Cipher-Suites. The structure of
ssl_cipher_suites
block is documented below. - Ssl
Dh stringBits - Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values:
768
,1024
,1536
,2048
,3072
,4096
. - Ssl
Max stringVersion - Highest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - Ssl
Min stringVersion - Lowest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - Ssl
Renegotiation string - Enable/disable secure renegotiation to comply with RFC 5746. Valid values:
disable
,enable
. - Ssl
Vpn stringWeb Portal - SSL-VPN web portal.
- Url
Map string - URL pattern to match.
- Url
Map stringType - Type of url-map. Valid values:
sub-string
,wildcard
,regex
. - Virtual
Host string - Virtual host.
- Applications []string
- SaaS application controlled by this Access Proxy.
- H2Support string
- HTTP2 support, default=Enable. Valid values:
disable
,enable
. - H3Support string
- HTTP3/QUIC support, default=Disable. Valid values:
disable
,enable
. - float64
- Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
- string
- Domain that HTTP cookie persistence should apply to.
- string
- Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values:
disable
,enable
. - float64
- Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
- string
- Limit HTTP cookie persistence to the specified path.
- string
- Control sharing of cookies across API Gateway. Use of same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values:
disable
,same-ip
. - string
- Enable/disable verification that inserted HTTPS cookies are secure. Valid values:
disable
,enable
. - Id float64
- API Gateway ID.
- Ldb
Method string - Method used to distribute sessions to real servers. Valid values:
static
,round-robin
,weighted
,first-alive
,http-host
. - Persistence string
- Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values:
none
,http-cookie
. - Quic
Object
Firewall Accessproxy6Api Gateway Quic Type - Quic. The structure of
quic
block is documented below. - Realservers
[]Object
Firewall Accessproxy6Api Gateway Realserver - Realservers. The structure of
realservers
block is documented below. - Saml
Redirect string - Enable/disable SAML redirection after successful authentication. Valid values:
disable
,enable
. - Saml
Server string - SAML service provider configuration for VIP authentication.
- Service string
- Service. Valid values:
http
,https
,tcp-forwarding
,samlsp
,web-portal
,saas
. - Ssl
Algorithm string - Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values:
high
,medium
,low
. - Ssl
Cipher []ObjectSuites Firewall Accessproxy6Api Gateway Ssl Cipher Suite - Ssl-Cipher-Suites. The structure of
ssl_cipher_suites
block is documented below. - Ssl
Dh stringBits - Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values:
768
,1024
,1536
,2048
,3072
,4096
. - Ssl
Max stringVersion - Highest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - Ssl
Min stringVersion - Lowest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - Ssl
Renegotiation string - Enable/disable secure renegotiation to comply with RFC 5746. Valid values:
disable
,enable
. - Ssl
Vpn stringWeb Portal - SSL-VPN web portal.
- Url
Map string - URL pattern to match.
- Url
Map stringType - Type of url-map. Valid values:
sub-string
,wildcard
,regex
. - Virtual
Host string - Virtual host.
- applications List<String>
- SaaS application controlled by this Access Proxy.
- h2Support String
- HTTP2 support, default=Enable. Valid values:
disable
,enable
. - h3Support String
- HTTP3/QUIC support, default=Disable. Valid values:
disable
,enable
. - Double
- Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
- String
- Domain that HTTP cookie persistence should apply to.
- String
- Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values:
disable
,enable
. - Double
- Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
- String
- Limit HTTP cookie persistence to the specified path.
- String
- Control sharing of cookies across API Gateway. Use of same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values:
disable
,same-ip
. - String
- Enable/disable verification that inserted HTTPS cookies are secure. Valid values:
disable
,enable
. - id Double
- API Gateway ID.
- ldb
Method String - Method used to distribute sessions to real servers. Valid values:
static
,round-robin
,weighted
,first-alive
,http-host
. - persistence String
- Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values:
none
,http-cookie
. - quic
Object
Firewall Accessproxy6Api Gateway Quic - Quic. The structure of
quic
block is documented below. - realservers
List<Object
Firewall Accessproxy6Api Gateway Realserver> - Realservers. The structure of
realservers
block is documented below. - saml
Redirect String - Enable/disable SAML redirection after successful authentication. Valid values:
disable
,enable
. - saml
Server String - SAML service provider configuration for VIP authentication.
- service String
- Service. Valid values:
http
,https
,tcp-forwarding
,samlsp
,web-portal
,saas
. - ssl
Algorithm String - Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values:
high
,medium
,low
. - ssl
Cipher List<ObjectSuites Firewall Accessproxy6Api Gateway Ssl Cipher Suite> - Ssl-Cipher-Suites. The structure of
ssl_cipher_suites
block is documented below. - ssl
Dh StringBits - Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values:
768
,1024
,1536
,2048
,3072
,4096
. - ssl
Max StringVersion - Highest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl
Min StringVersion - Lowest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl
Renegotiation String - Enable/disable secure renegotiation to comply with RFC 5746. Valid values:
disable
,enable
. - ssl
Vpn StringWeb Portal - SSL-VPN web portal.
- url
Map String - URL pattern to match.
- url
Map StringType - Type of url-map. Valid values:
sub-string
,wildcard
,regex
. - virtual
Host String - Virtual host.
- applications string[]
- SaaS application controlled by this Access Proxy.
- h2Support string
- HTTP2 support, default=Enable. Valid values:
disable
,enable
. - h3Support string
- HTTP3/QUIC support, default=Disable. Valid values:
disable
,enable
. - number
- Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
- string
- Domain that HTTP cookie persistence should apply to.
- string
- Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values:
disable
,enable
. - number
- Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
- string
- Limit HTTP cookie persistence to the specified path.
- string
- Control sharing of cookies across API Gateway. Use of same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values:
disable
,same-ip
. - string
- Enable/disable verification that inserted HTTPS cookies are secure. Valid values:
disable
,enable
. - id number
- API Gateway ID.
- ldb
Method string - Method used to distribute sessions to real servers. Valid values:
static
,round-robin
,weighted
,first-alive
,http-host
. - persistence string
- Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values:
none
,http-cookie
. - quic
Object
Firewall Accessproxy6Api Gateway Quic - Quic. The structure of
quic
block is documented below. - realservers
Object
Firewall Accessproxy6Api Gateway Realserver[] - Realservers. The structure of
realservers
block is documented below. - saml
Redirect string - Enable/disable SAML redirection after successful authentication. Valid values:
disable
,enable
. - saml
Server string - SAML service provider configuration for VIP authentication.
- service string
- Service. Valid values:
http
,https
,tcp-forwarding
,samlsp
,web-portal
,saas
. - ssl
Algorithm string - Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values:
high
,medium
,low
. - ssl
Cipher ObjectSuites Firewall Accessproxy6Api Gateway Ssl Cipher Suite[] - Ssl-Cipher-Suites. The structure of
ssl_cipher_suites
block is documented below. - ssl
Dh stringBits - Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values:
768
,1024
,1536
,2048
,3072
,4096
. - ssl
Max stringVersion - Highest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl
Min stringVersion - Lowest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl
Renegotiation string - Enable/disable secure renegotiation to comply with RFC 5746. Valid values:
disable
,enable
. - ssl
Vpn stringWeb Portal - SSL-VPN web portal.
- url
Map string - URL pattern to match.
- url
Map stringType - Type of url-map. Valid values:
sub-string
,wildcard
,regex
. - virtual
Host string - Virtual host.
- applications Sequence[str]
- SaaS application controlled by this Access Proxy.
- h2_
support str - HTTP2 support, default=Enable. Valid values:
disable
,enable
. - h3_
support str - HTTP3/QUIC support, default=Disable. Valid values:
disable
,enable
. - float
- Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
- str
- Domain that HTTP cookie persistence should apply to.
- str
- Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values:
disable
,enable
. - float
- Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
- str
- Limit HTTP cookie persistence to the specified path.
- str
- Control sharing of cookies across API Gateway. Use of same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values:
disable
,same-ip
. - str
- Enable/disable verification that inserted HTTPS cookies are secure. Valid values:
disable
,enable
. - id float
- API Gateway ID.
- ldb_
method str - Method used to distribute sessions to real servers. Valid values:
static
,round-robin
,weighted
,first-alive
,http-host
. - persistence str
- Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values:
none
,http-cookie
. - quic
Object
Firewall Accessproxy6Api Gateway Quic - Quic. The structure of
quic
block is documented below. - realservers
Sequence[Object
Firewall Accessproxy6Api Gateway Realserver] - Realservers. The structure of
realservers
block is documented below. - saml_
redirect str - Enable/disable SAML redirection after successful authentication. Valid values:
disable
,enable
. - saml_
server str - SAML service provider configuration for VIP authentication.
- service str
- Service. Valid values:
http
,https
,tcp-forwarding
,samlsp
,web-portal
,saas
. - ssl_
algorithm str - Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values:
high
,medium
,low
. - ssl_
cipher_ Sequence[Objectsuites Firewall Accessproxy6Api Gateway Ssl Cipher Suite] - Ssl-Cipher-Suites. The structure of
ssl_cipher_suites
block is documented below. - ssl_
dh_ strbits - Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values:
768
,1024
,1536
,2048
,3072
,4096
. - ssl_
max_ strversion - Highest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl_
min_ strversion - Lowest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl_
renegotiation str - Enable/disable secure renegotiation to comply with RFC 5746. Valid values:
disable
,enable
. - ssl_
vpn_ strweb_ portal - SSL-VPN web portal.
- url_
map str - URL pattern to match.
- url_
map_ strtype - Type of url-map. Valid values:
sub-string
,wildcard
,regex
. - virtual_
host str - Virtual host.
- applications List<String>
- SaaS application controlled by this Access Proxy.
- h2Support String
- HTTP2 support, default=Enable. Valid values:
disable
,enable
. - h3Support String
- HTTP3/QUIC support, default=Disable. Valid values:
disable
,enable
. - Number
- Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
- String
- Domain that HTTP cookie persistence should apply to.
- String
- Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values:
disable
,enable
. - Number
- Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
- String
- Limit HTTP cookie persistence to the specified path.
- String
- Control sharing of cookies across API Gateway. Use of same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values:
disable
,same-ip
. - String
- Enable/disable verification that inserted HTTPS cookies are secure. Valid values:
disable
,enable
. - id Number
- API Gateway ID.
- ldb
Method String - Method used to distribute sessions to real servers. Valid values:
static
,round-robin
,weighted
,first-alive
,http-host
. - persistence String
- Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values:
none
,http-cookie
. - quic Property Map
- Quic. The structure of
quic
block is documented below. - realservers List<Property Map>
- Realservers. The structure of
realservers
block is documented below. - saml
Redirect String - Enable/disable SAML redirection after successful authentication. Valid values:
disable
,enable
. - saml
Server String - SAML service provider configuration for VIP authentication.
- service String
- Service. Valid values:
http
,https
,tcp-forwarding
,samlsp
,web-portal
,saas
. - ssl
Algorithm String - Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values:
high
,medium
,low
. - ssl
Cipher List<Property Map>Suites - Ssl-Cipher-Suites. The structure of
ssl_cipher_suites
block is documented below. - ssl
Dh StringBits - Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values:
768
,1024
,1536
,2048
,3072
,4096
. - ssl
Max StringVersion - Highest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl
Min StringVersion - Lowest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl
Renegotiation String - Enable/disable secure renegotiation to comply with RFC 5746. Valid values:
disable
,enable
. - ssl
Vpn StringWeb Portal - SSL-VPN web portal.
- url
Map String - URL pattern to match.
- url
Map StringType - Type of url-map. Valid values:
sub-string
,wildcard
,regex
. - virtual
Host String - Virtual host.
ObjectFirewallAccessproxy6ApiGateway6, ObjectFirewallAccessproxy6ApiGateway6Args
- Applications List<string>
- H2Support string
- H3Support string
- double
- string
- string
- double
- string
- string
- string
- Id double
- an identifier for the resource with format {{name}}.
- Ldb
Method string - Persistence string
- Quic
Object
Firewall Accessproxy6Api Gateway6Quic - Realservers
List<Object
Firewall Accessproxy6Api Gateway6Realserver> - Saml
Redirect string - Saml
Server string - Service string
- Ssl
Algorithm string - Ssl
Cipher List<ObjectSuites Firewall Accessproxy6Api Gateway6Ssl Cipher Suite> - Ssl
Dh stringBits - Ssl
Max stringVersion - Ssl
Min stringVersion - Ssl
Renegotiation string - Ssl
Vpn stringWeb Portal - Url
Map string - Url
Map stringType - Virtual
Host string
- Applications []string
- H2Support string
- H3Support string
- float64
- string
- string
- float64
- string
- string
- string
- Id float64
- an identifier for the resource with format {{name}}.
- Ldb
Method string - Persistence string
- Quic
Object
Firewall Accessproxy6Api Gateway6Quic Type - Realservers
[]Object
Firewall Accessproxy6Api Gateway6Realserver - Saml
Redirect string - Saml
Server string - Service string
- Ssl
Algorithm string - Ssl
Cipher []ObjectSuites Firewall Accessproxy6Api Gateway6Ssl Cipher Suite - Ssl
Dh stringBits - Ssl
Max stringVersion - Ssl
Min stringVersion - Ssl
Renegotiation string - Ssl
Vpn stringWeb Portal - Url
Map string - Url
Map stringType - Virtual
Host string
- applications List<String>
- h2Support String
- h3Support String
- Double
- String
- String
- Double
- String
- String
- String
- id Double
- an identifier for the resource with format {{name}}.
- ldb
Method String - persistence String
- quic
Object
Firewall Accessproxy6Api Gateway6Quic - realservers
List<Object
Firewall Accessproxy6Api Gateway6Realserver> - saml
Redirect String - saml
Server String - service String
- ssl
Algorithm String - ssl
Cipher List<ObjectSuites Firewall Accessproxy6Api Gateway6Ssl Cipher Suite> - ssl
Dh StringBits - ssl
Max StringVersion - ssl
Min StringVersion - ssl
Renegotiation String - ssl
Vpn StringWeb Portal - url
Map String - url
Map StringType - virtual
Host String
- applications string[]
- h2Support string
- h3Support string
- number
- string
- string
- number
- string
- string
- string
- id number
- an identifier for the resource with format {{name}}.
- ldb
Method string - persistence string
- quic
Object
Firewall Accessproxy6Api Gateway6Quic - realservers
Object
Firewall Accessproxy6Api Gateway6Realserver[] - saml
Redirect string - saml
Server string - service string
- ssl
Algorithm string - ssl
Cipher ObjectSuites Firewall Accessproxy6Api Gateway6Ssl Cipher Suite[] - ssl
Dh stringBits - ssl
Max stringVersion - ssl
Min stringVersion - ssl
Renegotiation string - ssl
Vpn stringWeb Portal - url
Map string - url
Map stringType - virtual
Host string
- applications Sequence[str]
- h2_
support str - h3_
support str - float
- str
- str
- float
- str
- str
- str
- id float
- an identifier for the resource with format {{name}}.
- ldb_
method str - persistence str
- quic
Object
Firewall Accessproxy6Api Gateway6Quic - realservers
Sequence[Object
Firewall Accessproxy6Api Gateway6Realserver] - saml_
redirect str - saml_
server str - service str
- ssl_
algorithm str - ssl_
cipher_ Sequence[Objectsuites Firewall Accessproxy6Api Gateway6Ssl Cipher Suite] - ssl_
dh_ strbits - ssl_
max_ strversion - ssl_
min_ strversion - ssl_
renegotiation str - ssl_
vpn_ strweb_ portal - url_
map str - url_
map_ strtype - virtual_
host str
- applications List<String>
- h2Support String
- h3Support String
- Number
- String
- String
- Number
- String
- String
- String
- id Number
- an identifier for the resource with format {{name}}.
- ldb
Method String - persistence String
- quic Property Map
- realservers List<Property Map>
- saml
Redirect String - saml
Server String - service String
- ssl
Algorithm String - ssl
Cipher List<Property Map>Suites - ssl
Dh StringBits - ssl
Max StringVersion - ssl
Min StringVersion - ssl
Renegotiation String - ssl
Vpn StringWeb Portal - url
Map String - url
Map StringType - virtual
Host String
ObjectFirewallAccessproxy6ApiGateway6Quic, ObjectFirewallAccessproxy6ApiGateway6QuicArgs
- Ack
Delay doubleExponent - ACK delay exponent (1 - 20, default = 3).
- Active
Connection doubleId Limit - Active connection ID limit (1 - 8, default = 2).
- Active
Migration string - Enable/disable active migration (default = disable). Valid values:
disable
,enable
. - Grease
Quic stringBit - Enable/disable grease QUIC bit (default = enable). Valid values:
disable
,enable
. - Max
Ack doubleDelay - Maximum ACK delay in milliseconds (1 - 16383, default = 25).
- Max
Datagram doubleFrame Size - Maximum datagram frame size in bytes (1 - 1500, default = 1500).
- Max
Idle doubleTimeout - Maximum idle timeout milliseconds (1 - 60000, default = 30000).
- Max
Udp doublePayload Size - Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
- Ack
Delay float64Exponent - ACK delay exponent (1 - 20, default = 3).
- Active
Connection float64Id Limit - Active connection ID limit (1 - 8, default = 2).
- Active
Migration string - Enable/disable active migration (default = disable). Valid values:
disable
,enable
. - Grease
Quic stringBit - Enable/disable grease QUIC bit (default = enable). Valid values:
disable
,enable
. - Max
Ack float64Delay - Maximum ACK delay in milliseconds (1 - 16383, default = 25).
- Max
Datagram float64Frame Size - Maximum datagram frame size in bytes (1 - 1500, default = 1500).
- Max
Idle float64Timeout - Maximum idle timeout milliseconds (1 - 60000, default = 30000).
- Max
Udp float64Payload Size - Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
- ack
Delay DoubleExponent - ACK delay exponent (1 - 20, default = 3).
- active
Connection DoubleId Limit - Active connection ID limit (1 - 8, default = 2).
- active
Migration String - Enable/disable active migration (default = disable). Valid values:
disable
,enable
. - grease
Quic StringBit - Enable/disable grease QUIC bit (default = enable). Valid values:
disable
,enable
. - max
Ack DoubleDelay - Maximum ACK delay in milliseconds (1 - 16383, default = 25).
- max
Datagram DoubleFrame Size - Maximum datagram frame size in bytes (1 - 1500, default = 1500).
- max
Idle DoubleTimeout - Maximum idle timeout milliseconds (1 - 60000, default = 30000).
- max
Udp DoublePayload Size - Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
- ack
Delay numberExponent - ACK delay exponent (1 - 20, default = 3).
- active
Connection numberId Limit - Active connection ID limit (1 - 8, default = 2).
- active
Migration string - Enable/disable active migration (default = disable). Valid values:
disable
,enable
. - grease
Quic stringBit - Enable/disable grease QUIC bit (default = enable). Valid values:
disable
,enable
. - max
Ack numberDelay - Maximum ACK delay in milliseconds (1 - 16383, default = 25).
- max
Datagram numberFrame Size - Maximum datagram frame size in bytes (1 - 1500, default = 1500).
- max
Idle numberTimeout - Maximum idle timeout milliseconds (1 - 60000, default = 30000).
- max
Udp numberPayload Size - Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
- ack_
delay_ floatexponent - ACK delay exponent (1 - 20, default = 3).
- active_
connection_ floatid_ limit - Active connection ID limit (1 - 8, default = 2).
- active_
migration str - Enable/disable active migration (default = disable). Valid values:
disable
,enable
. - grease_
quic_ strbit - Enable/disable grease QUIC bit (default = enable). Valid values:
disable
,enable
. - max_
ack_ floatdelay - Maximum ACK delay in milliseconds (1 - 16383, default = 25).
- max_
datagram_ floatframe_ size - Maximum datagram frame size in bytes (1 - 1500, default = 1500).
- max_
idle_ floattimeout - Maximum idle timeout milliseconds (1 - 60000, default = 30000).
- max_
udp_ floatpayload_ size - Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
- ack
Delay NumberExponent - ACK delay exponent (1 - 20, default = 3).
- active
Connection NumberId Limit - Active connection ID limit (1 - 8, default = 2).
- active
Migration String - Enable/disable active migration (default = disable). Valid values:
disable
,enable
. - grease
Quic StringBit - Enable/disable grease QUIC bit (default = enable). Valid values:
disable
,enable
. - max
Ack NumberDelay - Maximum ACK delay in milliseconds (1 - 16383, default = 25).
- max
Datagram NumberFrame Size - Maximum datagram frame size in bytes (1 - 1500, default = 1500).
- max
Idle NumberTimeout - Maximum idle timeout milliseconds (1 - 60000, default = 30000).
- max
Udp NumberPayload Size - Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
ObjectFirewallAccessproxy6ApiGateway6Realserver, ObjectFirewallAccessproxy6ApiGateway6RealserverArgs
- Addr
Type string - Type of address. Valid values:
fqdn
,ip
. - Address string
- Address or address group of the real server.
- Domain string
- Wildcard domain name of the real server.
- External
Auth string - Enable/disable use of external browser as user-agent for SAML user authentication. Valid values:
disable
,enable
. - Health
Check string - Enable to check the responsiveness of the real server before forwarding traffic. Valid values:
disable
,enable
. - Health
Check stringProto - Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values:
ping
,http
,tcp-connect
. - Holddown
Interval string - Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values:
disable
,enable
. - Http
Host string - HTTP server domain name in HTTP header.
- Id double
- Real server ID.
- Ip string
- IPv6 address of the real server.
- Mappedport string
- Port for communicating with the real server.
- Port double
- Port for communicating with the real server.
- Ssh
Client stringCert - Set access-proxy SSH client certificate profile.
- Ssh
Host stringKey Validation - Enable/disable SSH real server host key validation. Valid values:
disable
,enable
. - Ssh
Host List<string>Keys - One or more server host key.
- Status string
- Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values:
active
,standby
,disable
. - Translate
Host string - Enable/disable translation of hostname/IP from virtual server to real server. Valid values:
disable
,enable
. - Tunnel
Encryption string - Tunnel encryption. Valid values:
disable
,enable
. - Type string
- TCP forwarding server type. Valid values:
tcp-forwarding
,ssh
. - Weight double
- Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
- Addr
Type string - Type of address. Valid values:
fqdn
,ip
. - Address string
- Address or address group of the real server.
- Domain string
- Wildcard domain name of the real server.
- External
Auth string - Enable/disable use of external browser as user-agent for SAML user authentication. Valid values:
disable
,enable
. - Health
Check string - Enable to check the responsiveness of the real server before forwarding traffic. Valid values:
disable
,enable
. - Health
Check stringProto - Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values:
ping
,http
,tcp-connect
. - Holddown
Interval string - Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values:
disable
,enable
. - Http
Host string - HTTP server domain name in HTTP header.
- Id float64
- Real server ID.
- Ip string
- IPv6 address of the real server.
- Mappedport string
- Port for communicating with the real server.
- Port float64
- Port for communicating with the real server.
- Ssh
Client stringCert - Set access-proxy SSH client certificate profile.
- Ssh
Host stringKey Validation - Enable/disable SSH real server host key validation. Valid values:
disable
,enable
. - Ssh
Host []stringKeys - One or more server host key.
- Status string
- Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values:
active
,standby
,disable
. - Translate
Host string - Enable/disable translation of hostname/IP from virtual server to real server. Valid values:
disable
,enable
. - Tunnel
Encryption string - Tunnel encryption. Valid values:
disable
,enable
. - Type string
- TCP forwarding server type. Valid values:
tcp-forwarding
,ssh
. - Weight float64
- Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
- addr
Type String - Type of address. Valid values:
fqdn
,ip
. - address String
- Address or address group of the real server.
- domain String
- Wildcard domain name of the real server.
- external
Auth String - Enable/disable use of external browser as user-agent for SAML user authentication. Valid values:
disable
,enable
. - health
Check String - Enable to check the responsiveness of the real server before forwarding traffic. Valid values:
disable
,enable
. - health
Check StringProto - Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values:
ping
,http
,tcp-connect
. - holddown
Interval String - Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values:
disable
,enable
. - http
Host String - HTTP server domain name in HTTP header.
- id Double
- Real server ID.
- ip String
- IPv6 address of the real server.
- mappedport String
- Port for communicating with the real server.
- port Double
- Port for communicating with the real server.
- ssh
Client StringCert - Set access-proxy SSH client certificate profile.
- ssh
Host StringKey Validation - Enable/disable SSH real server host key validation. Valid values:
disable
,enable
. - ssh
Host List<String>Keys - One or more server host key.
- status String
- Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values:
active
,standby
,disable
. - translate
Host String - Enable/disable translation of hostname/IP from virtual server to real server. Valid values:
disable
,enable
. - tunnel
Encryption String - Tunnel encryption. Valid values:
disable
,enable
. - type String
- TCP forwarding server type. Valid values:
tcp-forwarding
,ssh
. - weight Double
- Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
- addr
Type string - Type of address. Valid values:
fqdn
,ip
. - address string
- Address or address group of the real server.
- domain string
- Wildcard domain name of the real server.
- external
Auth string - Enable/disable use of external browser as user-agent for SAML user authentication. Valid values:
disable
,enable
. - health
Check string - Enable to check the responsiveness of the real server before forwarding traffic. Valid values:
disable
,enable
. - health
Check stringProto - Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values:
ping
,http
,tcp-connect
. - holddown
Interval string - Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values:
disable
,enable
. - http
Host string - HTTP server domain name in HTTP header.
- id number
- Real server ID.
- ip string
- IPv6 address of the real server.
- mappedport string
- Port for communicating with the real server.
- port number
- Port for communicating with the real server.
- ssh
Client stringCert - Set access-proxy SSH client certificate profile.
- ssh
Host stringKey Validation - Enable/disable SSH real server host key validation. Valid values:
disable
,enable
. - ssh
Host string[]Keys - One or more server host key.
- status string
- Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values:
active
,standby
,disable
. - translate
Host string - Enable/disable translation of hostname/IP from virtual server to real server. Valid values:
disable
,enable
. - tunnel
Encryption string - Tunnel encryption. Valid values:
disable
,enable
. - type string
- TCP forwarding server type. Valid values:
tcp-forwarding
,ssh
. - weight number
- Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
- addr_
type str - Type of address. Valid values:
fqdn
,ip
. - address str
- Address or address group of the real server.
- domain str
- Wildcard domain name of the real server.
- external_
auth str - Enable/disable use of external browser as user-agent for SAML user authentication. Valid values:
disable
,enable
. - health_
check str - Enable to check the responsiveness of the real server before forwarding traffic. Valid values:
disable
,enable
. - health_
check_ strproto - Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values:
ping
,http
,tcp-connect
. - holddown_
interval str - Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values:
disable
,enable
. - http_
host str - HTTP server domain name in HTTP header.
- id float
- Real server ID.
- ip str
- IPv6 address of the real server.
- mappedport str
- Port for communicating with the real server.
- port float
- Port for communicating with the real server.
- ssh_
client_ strcert - Set access-proxy SSH client certificate profile.
- ssh_
host_ strkey_ validation - Enable/disable SSH real server host key validation. Valid values:
disable
,enable
. - ssh_
host_ Sequence[str]keys - One or more server host key.
- status str
- Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values:
active
,standby
,disable
. - translate_
host str - Enable/disable translation of hostname/IP from virtual server to real server. Valid values:
disable
,enable
. - tunnel_
encryption str - Tunnel encryption. Valid values:
disable
,enable
. - type str
- TCP forwarding server type. Valid values:
tcp-forwarding
,ssh
. - weight float
- Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
- addr
Type String - Type of address. Valid values:
fqdn
,ip
. - address String
- Address or address group of the real server.
- domain String
- Wildcard domain name of the real server.
- external
Auth String - Enable/disable use of external browser as user-agent for SAML user authentication. Valid values:
disable
,enable
. - health
Check String - Enable to check the responsiveness of the real server before forwarding traffic. Valid values:
disable
,enable
. - health
Check StringProto - Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values:
ping
,http
,tcp-connect
. - holddown
Interval String - Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values:
disable
,enable
. - http
Host String - HTTP server domain name in HTTP header.
- id Number
- Real server ID.
- ip String
- IPv6 address of the real server.
- mappedport String
- Port for communicating with the real server.
- port Number
- Port for communicating with the real server.
- ssh
Client StringCert - Set access-proxy SSH client certificate profile.
- ssh
Host StringKey Validation - Enable/disable SSH real server host key validation. Valid values:
disable
,enable
. - ssh
Host List<String>Keys - One or more server host key.
- status String
- Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values:
active
,standby
,disable
. - translate
Host String - Enable/disable translation of hostname/IP from virtual server to real server. Valid values:
disable
,enable
. - tunnel
Encryption String - Tunnel encryption. Valid values:
disable
,enable
. - type String
- TCP forwarding server type. Valid values:
tcp-forwarding
,ssh
. - weight Number
- Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
ObjectFirewallAccessproxy6ApiGateway6SslCipherSuite, ObjectFirewallAccessproxy6ApiGateway6SslCipherSuiteArgs
- Cipher string
- Cipher suite name. Valid values:
TLS-RSA-WITH-RC4-128-MD5
,TLS-RSA-WITH-RC4-128-SHA
,TLS-RSA-WITH-DES-CBC-SHA
,TLS-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA
,TLS-RSA-WITH-AES-256-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA256
,TLS-RSA-WITH-AES-256-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-RSA-WITH-SEED-CBC-SHA
,TLS-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-RSA-WITH-DES-CBC-SHA
,TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-RSA-WITH-SEED-CBC-SHA
,TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-RC4-128-SHA
,TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA
,TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-DHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-128-GCM-SHA256
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384
,TLS-RSA-WITH-AES-128-GCM-SHA256
,TLS-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-DSS-WITH-SEED-CBC-SHA
,TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-DSS-WITH-DES-CBC-SHA
,TLS-AES-128-GCM-SHA256
,TLS-AES-256-GCM-SHA384
,TLS-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA
. - Priority double
- SSL/TLS cipher suites priority.
- Versions List<string>
- SSL/TLS versions that the cipher suite can be used with. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
.
- Cipher string
- Cipher suite name. Valid values:
TLS-RSA-WITH-RC4-128-MD5
,TLS-RSA-WITH-RC4-128-SHA
,TLS-RSA-WITH-DES-CBC-SHA
,TLS-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA
,TLS-RSA-WITH-AES-256-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA256
,TLS-RSA-WITH-AES-256-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-RSA-WITH-SEED-CBC-SHA
,TLS-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-RSA-WITH-DES-CBC-SHA
,TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-RSA-WITH-SEED-CBC-SHA
,TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-RC4-128-SHA
,TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA
,TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-DHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-128-GCM-SHA256
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384
,TLS-RSA-WITH-AES-128-GCM-SHA256
,TLS-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-DSS-WITH-SEED-CBC-SHA
,TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-DSS-WITH-DES-CBC-SHA
,TLS-AES-128-GCM-SHA256
,TLS-AES-256-GCM-SHA384
,TLS-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA
. - Priority float64
- SSL/TLS cipher suites priority.
- Versions []string
- SSL/TLS versions that the cipher suite can be used with. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
.
- cipher String
- Cipher suite name. Valid values:
TLS-RSA-WITH-RC4-128-MD5
,TLS-RSA-WITH-RC4-128-SHA
,TLS-RSA-WITH-DES-CBC-SHA
,TLS-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA
,TLS-RSA-WITH-AES-256-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA256
,TLS-RSA-WITH-AES-256-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-RSA-WITH-SEED-CBC-SHA
,TLS-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-RSA-WITH-DES-CBC-SHA
,TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-RSA-WITH-SEED-CBC-SHA
,TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-RC4-128-SHA
,TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA
,TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-DHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-128-GCM-SHA256
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384
,TLS-RSA-WITH-AES-128-GCM-SHA256
,TLS-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-DSS-WITH-SEED-CBC-SHA
,TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-DSS-WITH-DES-CBC-SHA
,TLS-AES-128-GCM-SHA256
,TLS-AES-256-GCM-SHA384
,TLS-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA
. - priority Double
- SSL/TLS cipher suites priority.
- versions List<String>
- SSL/TLS versions that the cipher suite can be used with. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
.
- cipher string
- Cipher suite name. Valid values:
TLS-RSA-WITH-RC4-128-MD5
,TLS-RSA-WITH-RC4-128-SHA
,TLS-RSA-WITH-DES-CBC-SHA
,TLS-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA
,TLS-RSA-WITH-AES-256-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA256
,TLS-RSA-WITH-AES-256-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-RSA-WITH-SEED-CBC-SHA
,TLS-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-RSA-WITH-DES-CBC-SHA
,TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-RSA-WITH-SEED-CBC-SHA
,TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-RC4-128-SHA
,TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA
,TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-DHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-128-GCM-SHA256
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384
,TLS-RSA-WITH-AES-128-GCM-SHA256
,TLS-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-DSS-WITH-SEED-CBC-SHA
,TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-DSS-WITH-DES-CBC-SHA
,TLS-AES-128-GCM-SHA256
,TLS-AES-256-GCM-SHA384
,TLS-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA
. - priority number
- SSL/TLS cipher suites priority.
- versions string[]
- SSL/TLS versions that the cipher suite can be used with. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
.
- cipher str
- Cipher suite name. Valid values:
TLS-RSA-WITH-RC4-128-MD5
,TLS-RSA-WITH-RC4-128-SHA
,TLS-RSA-WITH-DES-CBC-SHA
,TLS-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA
,TLS-RSA-WITH-AES-256-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA256
,TLS-RSA-WITH-AES-256-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-RSA-WITH-SEED-CBC-SHA
,TLS-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-RSA-WITH-DES-CBC-SHA
,TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-RSA-WITH-SEED-CBC-SHA
,TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-RC4-128-SHA
,TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA
,TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-DHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-128-GCM-SHA256
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384
,TLS-RSA-WITH-AES-128-GCM-SHA256
,TLS-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-DSS-WITH-SEED-CBC-SHA
,TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-DSS-WITH-DES-CBC-SHA
,TLS-AES-128-GCM-SHA256
,TLS-AES-256-GCM-SHA384
,TLS-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA
. - priority float
- SSL/TLS cipher suites priority.
- versions Sequence[str]
- SSL/TLS versions that the cipher suite can be used with. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
.
- cipher String
- Cipher suite name. Valid values:
TLS-RSA-WITH-RC4-128-MD5
,TLS-RSA-WITH-RC4-128-SHA
,TLS-RSA-WITH-DES-CBC-SHA
,TLS-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA
,TLS-RSA-WITH-AES-256-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA256
,TLS-RSA-WITH-AES-256-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-RSA-WITH-SEED-CBC-SHA
,TLS-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-RSA-WITH-DES-CBC-SHA
,TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-RSA-WITH-SEED-CBC-SHA
,TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-RC4-128-SHA
,TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA
,TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-DHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-128-GCM-SHA256
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384
,TLS-RSA-WITH-AES-128-GCM-SHA256
,TLS-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-DSS-WITH-SEED-CBC-SHA
,TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-DSS-WITH-DES-CBC-SHA
,TLS-AES-128-GCM-SHA256
,TLS-AES-256-GCM-SHA384
,TLS-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA
. - priority Number
- SSL/TLS cipher suites priority.
- versions List<String>
- SSL/TLS versions that the cipher suite can be used with. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
.
ObjectFirewallAccessproxy6ApiGatewayQuic, ObjectFirewallAccessproxy6ApiGatewayQuicArgs
- Ack
Delay doubleExponent - ACK delay exponent (1 - 20, default = 3).
- Active
Connection doubleId Limit - Active connection ID limit (1 - 8, default = 2).
- Active
Migration string - Enable/disable active migration (default = disable). Valid values:
disable
,enable
. - Grease
Quic stringBit - Enable/disable grease QUIC bit (default = enable). Valid values:
disable
,enable
. - Max
Ack doubleDelay - Maximum ACK delay in milliseconds (1 - 16383, default = 25).
- Max
Datagram doubleFrame Size - Maximum datagram frame size in bytes (1 - 1500, default = 1500).
- Max
Idle doubleTimeout - Maximum idle timeout milliseconds (1 - 60000, default = 30000).
- Max
Udp doublePayload Size - Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
- Ack
Delay float64Exponent - ACK delay exponent (1 - 20, default = 3).
- Active
Connection float64Id Limit - Active connection ID limit (1 - 8, default = 2).
- Active
Migration string - Enable/disable active migration (default = disable). Valid values:
disable
,enable
. - Grease
Quic stringBit - Enable/disable grease QUIC bit (default = enable). Valid values:
disable
,enable
. - Max
Ack float64Delay - Maximum ACK delay in milliseconds (1 - 16383, default = 25).
- Max
Datagram float64Frame Size - Maximum datagram frame size in bytes (1 - 1500, default = 1500).
- Max
Idle float64Timeout - Maximum idle timeout milliseconds (1 - 60000, default = 30000).
- Max
Udp float64Payload Size - Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
- ack
Delay DoubleExponent - ACK delay exponent (1 - 20, default = 3).
- active
Connection DoubleId Limit - Active connection ID limit (1 - 8, default = 2).
- active
Migration String - Enable/disable active migration (default = disable). Valid values:
disable
,enable
. - grease
Quic StringBit - Enable/disable grease QUIC bit (default = enable). Valid values:
disable
,enable
. - max
Ack DoubleDelay - Maximum ACK delay in milliseconds (1 - 16383, default = 25).
- max
Datagram DoubleFrame Size - Maximum datagram frame size in bytes (1 - 1500, default = 1500).
- max
Idle DoubleTimeout - Maximum idle timeout milliseconds (1 - 60000, default = 30000).
- max
Udp DoublePayload Size - Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
- ack
Delay numberExponent - ACK delay exponent (1 - 20, default = 3).
- active
Connection numberId Limit - Active connection ID limit (1 - 8, default = 2).
- active
Migration string - Enable/disable active migration (default = disable). Valid values:
disable
,enable
. - grease
Quic stringBit - Enable/disable grease QUIC bit (default = enable). Valid values:
disable
,enable
. - max
Ack numberDelay - Maximum ACK delay in milliseconds (1 - 16383, default = 25).
- max
Datagram numberFrame Size - Maximum datagram frame size in bytes (1 - 1500, default = 1500).
- max
Idle numberTimeout - Maximum idle timeout milliseconds (1 - 60000, default = 30000).
- max
Udp numberPayload Size - Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
- ack_
delay_ floatexponent - ACK delay exponent (1 - 20, default = 3).
- active_
connection_ floatid_ limit - Active connection ID limit (1 - 8, default = 2).
- active_
migration str - Enable/disable active migration (default = disable). Valid values:
disable
,enable
. - grease_
quic_ strbit - Enable/disable grease QUIC bit (default = enable). Valid values:
disable
,enable
. - max_
ack_ floatdelay - Maximum ACK delay in milliseconds (1 - 16383, default = 25).
- max_
datagram_ floatframe_ size - Maximum datagram frame size in bytes (1 - 1500, default = 1500).
- max_
idle_ floattimeout - Maximum idle timeout milliseconds (1 - 60000, default = 30000).
- max_
udp_ floatpayload_ size - Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
- ack
Delay NumberExponent - ACK delay exponent (1 - 20, default = 3).
- active
Connection NumberId Limit - Active connection ID limit (1 - 8, default = 2).
- active
Migration String - Enable/disable active migration (default = disable). Valid values:
disable
,enable
. - grease
Quic StringBit - Enable/disable grease QUIC bit (default = enable). Valid values:
disable
,enable
. - max
Ack NumberDelay - Maximum ACK delay in milliseconds (1 - 16383, default = 25).
- max
Datagram NumberFrame Size - Maximum datagram frame size in bytes (1 - 1500, default = 1500).
- max
Idle NumberTimeout - Maximum idle timeout milliseconds (1 - 60000, default = 30000).
- max
Udp NumberPayload Size - Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
ObjectFirewallAccessproxy6ApiGatewayRealserver, ObjectFirewallAccessproxy6ApiGatewayRealserverArgs
- Addr
Type string - Type of address. Valid values:
fqdn
,ip
. - Address string
- Address or address group of the real server.
- Domain string
- Wildcard domain name of the real server.
- External
Auth string - Enable/disable use of external browser as user-agent for SAML user authentication. Valid values:
disable
,enable
. - Health
Check string - Enable to check the responsiveness of the real server before forwarding traffic. Valid values:
disable
,enable
. - Health
Check stringProto - Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values:
ping
,http
,tcp-connect
. - Holddown
Interval string - Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values:
disable
,enable
. - Http
Host string - HTTP server domain name in HTTP header.
- Id double
- Real server ID.
- Ip string
- IPv6 address of the real server.
- Mappedport string
- Port for communicating with the real server.
- Port double
- Port for communicating with the real server.
- Ssh
Client stringCert - Set access-proxy SSH client certificate profile.
- Ssh
Host stringKey Validation - Enable/disable SSH real server host key validation. Valid values:
disable
,enable
. - Ssh
Host List<string>Keys - One or more server host key.
- Status string
- Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values:
active
,standby
,disable
. - Translate
Host string - Enable/disable translation of hostname/IP from virtual server to real server. Valid values:
disable
,enable
. - Tunnel
Encryption string - Tunnel encryption. Valid values:
disable
,enable
. - Type string
- TCP forwarding server type. Valid values:
tcp-forwarding
,ssh
. - Weight double
- Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
- Addr
Type string - Type of address. Valid values:
fqdn
,ip
. - Address string
- Address or address group of the real server.
- Domain string
- Wildcard domain name of the real server.
- External
Auth string - Enable/disable use of external browser as user-agent for SAML user authentication. Valid values:
disable
,enable
. - Health
Check string - Enable to check the responsiveness of the real server before forwarding traffic. Valid values:
disable
,enable
. - Health
Check stringProto - Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values:
ping
,http
,tcp-connect
. - Holddown
Interval string - Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values:
disable
,enable
. - Http
Host string - HTTP server domain name in HTTP header.
- Id float64
- Real server ID.
- Ip string
- IPv6 address of the real server.
- Mappedport string
- Port for communicating with the real server.
- Port float64
- Port for communicating with the real server.
- Ssh
Client stringCert - Set access-proxy SSH client certificate profile.
- Ssh
Host stringKey Validation - Enable/disable SSH real server host key validation. Valid values:
disable
,enable
. - Ssh
Host []stringKeys - One or more server host key.
- Status string
- Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values:
active
,standby
,disable
. - Translate
Host string - Enable/disable translation of hostname/IP from virtual server to real server. Valid values:
disable
,enable
. - Tunnel
Encryption string - Tunnel encryption. Valid values:
disable
,enable
. - Type string
- TCP forwarding server type. Valid values:
tcp-forwarding
,ssh
. - Weight float64
- Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
- addr
Type String - Type of address. Valid values:
fqdn
,ip
. - address String
- Address or address group of the real server.
- domain String
- Wildcard domain name of the real server.
- external
Auth String - Enable/disable use of external browser as user-agent for SAML user authentication. Valid values:
disable
,enable
. - health
Check String - Enable to check the responsiveness of the real server before forwarding traffic. Valid values:
disable
,enable
. - health
Check StringProto - Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values:
ping
,http
,tcp-connect
. - holddown
Interval String - Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values:
disable
,enable
. - http
Host String - HTTP server domain name in HTTP header.
- id Double
- Real server ID.
- ip String
- IPv6 address of the real server.
- mappedport String
- Port for communicating with the real server.
- port Double
- Port for communicating with the real server.
- ssh
Client StringCert - Set access-proxy SSH client certificate profile.
- ssh
Host StringKey Validation - Enable/disable SSH real server host key validation. Valid values:
disable
,enable
. - ssh
Host List<String>Keys - One or more server host key.
- status String
- Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values:
active
,standby
,disable
. - translate
Host String - Enable/disable translation of hostname/IP from virtual server to real server. Valid values:
disable
,enable
. - tunnel
Encryption String - Tunnel encryption. Valid values:
disable
,enable
. - type String
- TCP forwarding server type. Valid values:
tcp-forwarding
,ssh
. - weight Double
- Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
- addr
Type string - Type of address. Valid values:
fqdn
,ip
. - address string
- Address or address group of the real server.
- domain string
- Wildcard domain name of the real server.
- external
Auth string - Enable/disable use of external browser as user-agent for SAML user authentication. Valid values:
disable
,enable
. - health
Check string - Enable to check the responsiveness of the real server before forwarding traffic. Valid values:
disable
,enable
. - health
Check stringProto - Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values:
ping
,http
,tcp-connect
. - holddown
Interval string - Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values:
disable
,enable
. - http
Host string - HTTP server domain name in HTTP header.
- id number
- Real server ID.
- ip string
- IPv6 address of the real server.
- mappedport string
- Port for communicating with the real server.
- port number
- Port for communicating with the real server.
- ssh
Client stringCert - Set access-proxy SSH client certificate profile.
- ssh
Host stringKey Validation - Enable/disable SSH real server host key validation. Valid values:
disable
,enable
. - ssh
Host string[]Keys - One or more server host key.
- status string
- Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values:
active
,standby
,disable
. - translate
Host string - Enable/disable translation of hostname/IP from virtual server to real server. Valid values:
disable
,enable
. - tunnel
Encryption string - Tunnel encryption. Valid values:
disable
,enable
. - type string
- TCP forwarding server type. Valid values:
tcp-forwarding
,ssh
. - weight number
- Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
- addr_
type str - Type of address. Valid values:
fqdn
,ip
. - address str
- Address or address group of the real server.
- domain str
- Wildcard domain name of the real server.
- external_
auth str - Enable/disable use of external browser as user-agent for SAML user authentication. Valid values:
disable
,enable
. - health_
check str - Enable to check the responsiveness of the real server before forwarding traffic. Valid values:
disable
,enable
. - health_
check_ strproto - Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values:
ping
,http
,tcp-connect
. - holddown_
interval str - Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values:
disable
,enable
. - http_
host str - HTTP server domain name in HTTP header.
- id float
- Real server ID.
- ip str
- IPv6 address of the real server.
- mappedport str
- Port for communicating with the real server.
- port float
- Port for communicating with the real server.
- ssh_
client_ strcert - Set access-proxy SSH client certificate profile.
- ssh_
host_ strkey_ validation - Enable/disable SSH real server host key validation. Valid values:
disable
,enable
. - ssh_
host_ Sequence[str]keys - One or more server host key.
- status str
- Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values:
active
,standby
,disable
. - translate_
host str - Enable/disable translation of hostname/IP from virtual server to real server. Valid values:
disable
,enable
. - tunnel_
encryption str - Tunnel encryption. Valid values:
disable
,enable
. - type str
- TCP forwarding server type. Valid values:
tcp-forwarding
,ssh
. - weight float
- Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
- addr
Type String - Type of address. Valid values:
fqdn
,ip
. - address String
- Address or address group of the real server.
- domain String
- Wildcard domain name of the real server.
- external
Auth String - Enable/disable use of external browser as user-agent for SAML user authentication. Valid values:
disable
,enable
. - health
Check String - Enable to check the responsiveness of the real server before forwarding traffic. Valid values:
disable
,enable
. - health
Check StringProto - Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values:
ping
,http
,tcp-connect
. - holddown
Interval String - Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values:
disable
,enable
. - http
Host String - HTTP server domain name in HTTP header.
- id Number
- Real server ID.
- ip String
- IPv6 address of the real server.
- mappedport String
- Port for communicating with the real server.
- port Number
- Port for communicating with the real server.
- ssh
Client StringCert - Set access-proxy SSH client certificate profile.
- ssh
Host StringKey Validation - Enable/disable SSH real server host key validation. Valid values:
disable
,enable
. - ssh
Host List<String>Keys - One or more server host key.
- status String
- Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values:
active
,standby
,disable
. - translate
Host String - Enable/disable translation of hostname/IP from virtual server to real server. Valid values:
disable
,enable
. - tunnel
Encryption String - Tunnel encryption. Valid values:
disable
,enable
. - type String
- TCP forwarding server type. Valid values:
tcp-forwarding
,ssh
. - weight Number
- Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
ObjectFirewallAccessproxy6ApiGatewaySslCipherSuite, ObjectFirewallAccessproxy6ApiGatewaySslCipherSuiteArgs
- Cipher string
- Cipher suite name. Valid values:
TLS-RSA-WITH-RC4-128-MD5
,TLS-RSA-WITH-RC4-128-SHA
,TLS-RSA-WITH-DES-CBC-SHA
,TLS-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA
,TLS-RSA-WITH-AES-256-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA256
,TLS-RSA-WITH-AES-256-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-RSA-WITH-SEED-CBC-SHA
,TLS-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-RSA-WITH-DES-CBC-SHA
,TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-RSA-WITH-SEED-CBC-SHA
,TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-RC4-128-SHA
,TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA
,TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-DHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-128-GCM-SHA256
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384
,TLS-RSA-WITH-AES-128-GCM-SHA256
,TLS-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-DSS-WITH-SEED-CBC-SHA
,TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-DSS-WITH-DES-CBC-SHA
,TLS-AES-128-GCM-SHA256
,TLS-AES-256-GCM-SHA384
,TLS-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA
. - Priority double
- SSL/TLS cipher suites priority.
- Versions List<string>
- SSL/TLS versions that the cipher suite can be used with. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
.
- Cipher string
- Cipher suite name. Valid values:
TLS-RSA-WITH-RC4-128-MD5
,TLS-RSA-WITH-RC4-128-SHA
,TLS-RSA-WITH-DES-CBC-SHA
,TLS-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA
,TLS-RSA-WITH-AES-256-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA256
,TLS-RSA-WITH-AES-256-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-RSA-WITH-SEED-CBC-SHA
,TLS-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-RSA-WITH-DES-CBC-SHA
,TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-RSA-WITH-SEED-CBC-SHA
,TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-RC4-128-SHA
,TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA
,TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-DHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-128-GCM-SHA256
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384
,TLS-RSA-WITH-AES-128-GCM-SHA256
,TLS-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-DSS-WITH-SEED-CBC-SHA
,TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-DSS-WITH-DES-CBC-SHA
,TLS-AES-128-GCM-SHA256
,TLS-AES-256-GCM-SHA384
,TLS-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA
. - Priority float64
- SSL/TLS cipher suites priority.
- Versions []string
- SSL/TLS versions that the cipher suite can be used with. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
.
- cipher String
- Cipher suite name. Valid values:
TLS-RSA-WITH-RC4-128-MD5
,TLS-RSA-WITH-RC4-128-SHA
,TLS-RSA-WITH-DES-CBC-SHA
,TLS-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA
,TLS-RSA-WITH-AES-256-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA256
,TLS-RSA-WITH-AES-256-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-RSA-WITH-SEED-CBC-SHA
,TLS-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-RSA-WITH-DES-CBC-SHA
,TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-RSA-WITH-SEED-CBC-SHA
,TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-RC4-128-SHA
,TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA
,TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-DHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-128-GCM-SHA256
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384
,TLS-RSA-WITH-AES-128-GCM-SHA256
,TLS-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-DSS-WITH-SEED-CBC-SHA
,TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-DSS-WITH-DES-CBC-SHA
,TLS-AES-128-GCM-SHA256
,TLS-AES-256-GCM-SHA384
,TLS-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA
. - priority Double
- SSL/TLS cipher suites priority.
- versions List<String>
- SSL/TLS versions that the cipher suite can be used with. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
.
- cipher string
- Cipher suite name. Valid values:
TLS-RSA-WITH-RC4-128-MD5
,TLS-RSA-WITH-RC4-128-SHA
,TLS-RSA-WITH-DES-CBC-SHA
,TLS-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA
,TLS-RSA-WITH-AES-256-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA256
,TLS-RSA-WITH-AES-256-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-RSA-WITH-SEED-CBC-SHA
,TLS-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-RSA-WITH-DES-CBC-SHA
,TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-RSA-WITH-SEED-CBC-SHA
,TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-RC4-128-SHA
,TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA
,TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-DHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-128-GCM-SHA256
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384
,TLS-RSA-WITH-AES-128-GCM-SHA256
,TLS-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-DSS-WITH-SEED-CBC-SHA
,TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-DSS-WITH-DES-CBC-SHA
,TLS-AES-128-GCM-SHA256
,TLS-AES-256-GCM-SHA384
,TLS-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA
. - priority number
- SSL/TLS cipher suites priority.
- versions string[]
- SSL/TLS versions that the cipher suite can be used with. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
.
- cipher str
- Cipher suite name. Valid values:
TLS-RSA-WITH-RC4-128-MD5
,TLS-RSA-WITH-RC4-128-SHA
,TLS-RSA-WITH-DES-CBC-SHA
,TLS-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA
,TLS-RSA-WITH-AES-256-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA256
,TLS-RSA-WITH-AES-256-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-RSA-WITH-SEED-CBC-SHA
,TLS-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-RSA-WITH-DES-CBC-SHA
,TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-RSA-WITH-SEED-CBC-SHA
,TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-RC4-128-SHA
,TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA
,TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-DHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-128-GCM-SHA256
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384
,TLS-RSA-WITH-AES-128-GCM-SHA256
,TLS-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-DSS-WITH-SEED-CBC-SHA
,TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-DSS-WITH-DES-CBC-SHA
,TLS-AES-128-GCM-SHA256
,TLS-AES-256-GCM-SHA384
,TLS-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA
. - priority float
- SSL/TLS cipher suites priority.
- versions Sequence[str]
- SSL/TLS versions that the cipher suite can be used with. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
.
- cipher String
- Cipher suite name. Valid values:
TLS-RSA-WITH-RC4-128-MD5
,TLS-RSA-WITH-RC4-128-SHA
,TLS-RSA-WITH-DES-CBC-SHA
,TLS-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA
,TLS-RSA-WITH-AES-256-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA256
,TLS-RSA-WITH-AES-256-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-RSA-WITH-SEED-CBC-SHA
,TLS-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-RSA-WITH-DES-CBC-SHA
,TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-RSA-WITH-SEED-CBC-SHA
,TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-RC4-128-SHA
,TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA
,TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-DHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-128-GCM-SHA256
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384
,TLS-RSA-WITH-AES-128-GCM-SHA256
,TLS-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-DSS-WITH-SEED-CBC-SHA
,TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-DSS-WITH-DES-CBC-SHA
,TLS-AES-128-GCM-SHA256
,TLS-AES-256-GCM-SHA384
,TLS-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA
. - priority Number
- SSL/TLS cipher suites priority.
- versions List<String>
- SSL/TLS versions that the cipher suite can be used with. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
.
Import
ObjectFirewall AccessProxy6 can be imported using any of these accepted formats:
$ export “FORTIMANAGER_IMPORT_TABLE”=“true”
$ pulumi import fortimanager:index/objectFirewallAccessproxy6:ObjectFirewallAccessproxy6 labelname {{name}}
$ unset “FORTIMANAGER_IMPORT_TABLE”
-> Hint: The scopetype and adom for import will directly inherit the scopetype and adom configuration of the provider.
To learn more about importing existing cloud resources, see Importing resources.
Package Details
- Repository
- fortimanager fortinetdev/terraform-provider-fortimanager
- License
- Notes
- This Pulumi package is based on the
fortimanager
Terraform Provider.