fortimanager.ObjectFirewallAccessproxyApigateway6
Explore with Pulumi AI
Set IPv6 API Gateway.
This resource is a sub resource for variable
api_gateway6
of resourcefortimanager.ObjectFirewallAccessproxy
. Conflict and overwrite may occur if use both of them. The following variables have sub resource. Avoid using them together, otherwise conflicts and overwrites may occur.
quic
:fortimanager.ObjectFirewallAccessproxyApigateway6Quic
realservers
:fortimanager.ObjectFirewallAccessproxyApigateway6Realservers
ssl_cipher_suites
:fortimanager.ObjectFirewallAccessproxyApigateway6Sslciphersuites
Example Usage
import * as pulumi from "@pulumi/pulumi";
import * as fortimanager from "@pulumi/fortimanager";
const trnameObjectFirewallAccessproxy = new fortimanager.ObjectFirewallAccessproxy("trnameObjectFirewallAccessproxy", {});
const trnameObjectFirewallAccessproxyApigateway6 = new fortimanager.ObjectFirewallAccessproxyApigateway6("trnameObjectFirewallAccessproxyApigateway6", {
accessProxy: trnameObjectFirewallAccessproxy.name,
fosid: 1,
httpCookieAge: 70,
httpCookieDomain: "domin",
httpCookieDomainFromHost: "enable",
}, {
dependsOn: [trnameObjectFirewallAccessproxy],
});
import pulumi
import pulumi_fortimanager as fortimanager
trname_object_firewall_accessproxy = fortimanager.ObjectFirewallAccessproxy("trnameObjectFirewallAccessproxy")
trname_object_firewall_accessproxy_apigateway6 = fortimanager.ObjectFirewallAccessproxyApigateway6("trnameObjectFirewallAccessproxyApigateway6",
access_proxy=trname_object_firewall_accessproxy.name,
fosid=1,
http_cookie_age=70,
http_cookie_domain="domin",
http_cookie_domain_from_host="enable",
opts = pulumi.ResourceOptions(depends_on=[trname_object_firewall_accessproxy]))
package main
import (
"github.com/pulumi/pulumi-terraform-provider/sdks/go/fortimanager/fortimanager"
"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
)
func main() {
pulumi.Run(func(ctx *pulumi.Context) error {
trnameObjectFirewallAccessproxy, err := fortimanager.NewObjectFirewallAccessproxy(ctx, "trnameObjectFirewallAccessproxy", nil)
if err != nil {
return err
}
_, err = fortimanager.NewObjectFirewallAccessproxyApigateway6(ctx, "trnameObjectFirewallAccessproxyApigateway6", &fortimanager.ObjectFirewallAccessproxyApigateway6Args{
AccessProxy: trnameObjectFirewallAccessproxy.Name,
Fosid: pulumi.Float64(1),
HttpCookieAge: pulumi.Float64(70),
HttpCookieDomain: pulumi.String("domin"),
HttpCookieDomainFromHost: pulumi.String("enable"),
}, pulumi.DependsOn([]pulumi.Resource{
trnameObjectFirewallAccessproxy,
}))
if err != nil {
return err
}
return nil
})
}
using System.Collections.Generic;
using System.Linq;
using Pulumi;
using Fortimanager = Pulumi.Fortimanager;
return await Deployment.RunAsync(() =>
{
var trnameObjectFirewallAccessproxy = new Fortimanager.ObjectFirewallAccessproxy("trnameObjectFirewallAccessproxy");
var trnameObjectFirewallAccessproxyApigateway6 = new Fortimanager.ObjectFirewallAccessproxyApigateway6("trnameObjectFirewallAccessproxyApigateway6", new()
{
AccessProxy = trnameObjectFirewallAccessproxy.Name,
Fosid = 1,
HttpCookieAge = 70,
HttpCookieDomain = "domin",
HttpCookieDomainFromHost = "enable",
}, new CustomResourceOptions
{
DependsOn =
{
trnameObjectFirewallAccessproxy,
},
});
});
package generated_program;
import com.pulumi.Context;
import com.pulumi.Pulumi;
import com.pulumi.core.Output;
import com.pulumi.fortimanager.ObjectFirewallAccessproxy;
import com.pulumi.fortimanager.ObjectFirewallAccessproxyApigateway6;
import com.pulumi.fortimanager.ObjectFirewallAccessproxyApigateway6Args;
import com.pulumi.resources.CustomResourceOptions;
import java.util.List;
import java.util.ArrayList;
import java.util.Map;
import java.io.File;
import java.nio.file.Files;
import java.nio.file.Paths;
public class App {
public static void main(String[] args) {
Pulumi.run(App::stack);
}
public static void stack(Context ctx) {
var trnameObjectFirewallAccessproxy = new ObjectFirewallAccessproxy("trnameObjectFirewallAccessproxy");
var trnameObjectFirewallAccessproxyApigateway6 = new ObjectFirewallAccessproxyApigateway6("trnameObjectFirewallAccessproxyApigateway6", ObjectFirewallAccessproxyApigateway6Args.builder()
.accessProxy(trnameObjectFirewallAccessproxy.name())
.fosid(1)
.httpCookieAge(70)
.httpCookieDomain("domin")
.httpCookieDomainFromHost("enable")
.build(), CustomResourceOptions.builder()
.dependsOn(trnameObjectFirewallAccessproxy)
.build());
}
}
resources:
trnameObjectFirewallAccessproxyApigateway6:
type: fortimanager:ObjectFirewallAccessproxyApigateway6
properties:
accessProxy: ${trnameObjectFirewallAccessproxy.name}
fosid: 1
httpCookieAge: 70
httpCookieDomain: domin
httpCookieDomainFromHost: enable
options:
dependsOn:
- ${trnameObjectFirewallAccessproxy}
trnameObjectFirewallAccessproxy:
type: fortimanager:ObjectFirewallAccessproxy
Create ObjectFirewallAccessproxyApigateway6 Resource
Resources are created with functions called constructors. To learn more about declaring and configuring resources, see Resources.
Constructor syntax
new ObjectFirewallAccessproxyApigateway6(name: string, args: ObjectFirewallAccessproxyApigateway6Args, opts?: CustomResourceOptions);
@overload
def ObjectFirewallAccessproxyApigateway6(resource_name: str,
args: ObjectFirewallAccessproxyApigateway6Args,
opts: Optional[ResourceOptions] = None)
@overload
def ObjectFirewallAccessproxyApigateway6(resource_name: str,
opts: Optional[ResourceOptions] = None,
access_proxy: Optional[str] = None,
adom: Optional[str] = None,
applications: Optional[Sequence[str]] = None,
dynamic_sort_subtable: Optional[str] = None,
fosid: Optional[float] = None,
h2_support: Optional[str] = None,
h3_support: Optional[str] = None,
http_cookie_age: Optional[float] = None,
http_cookie_domain: Optional[str] = None,
http_cookie_domain_from_host: Optional[str] = None,
http_cookie_generation: Optional[float] = None,
http_cookie_path: Optional[str] = None,
http_cookie_share: Optional[str] = None,
https_cookie_secure: Optional[str] = None,
ldb_method: Optional[str] = None,
object_firewall_accessproxy_apigateway6_id: Optional[str] = None,
persistence: Optional[str] = None,
quic: Optional[ObjectFirewallAccessproxyApigateway6QuicArgs] = None,
realservers: Optional[Sequence[ObjectFirewallAccessproxyApigateway6RealserverArgs]] = None,
saml_redirect: Optional[str] = None,
saml_server: Optional[str] = None,
scopetype: Optional[str] = None,
service: Optional[str] = None,
ssl_algorithm: Optional[str] = None,
ssl_cipher_suites: Optional[Sequence[ObjectFirewallAccessproxyApigateway6SslCipherSuiteArgs]] = None,
ssl_dh_bits: Optional[str] = None,
ssl_max_version: Optional[str] = None,
ssl_min_version: Optional[str] = None,
ssl_renegotiation: Optional[str] = None,
ssl_vpn_web_portal: Optional[str] = None,
url_map: Optional[str] = None,
url_map_type: Optional[str] = None,
virtual_host: Optional[str] = None)
func NewObjectFirewallAccessproxyApigateway6(ctx *Context, name string, args ObjectFirewallAccessproxyApigateway6Args, opts ...ResourceOption) (*ObjectFirewallAccessproxyApigateway6, error)
public ObjectFirewallAccessproxyApigateway6(string name, ObjectFirewallAccessproxyApigateway6Args args, CustomResourceOptions? opts = null)
public ObjectFirewallAccessproxyApigateway6(String name, ObjectFirewallAccessproxyApigateway6Args args)
public ObjectFirewallAccessproxyApigateway6(String name, ObjectFirewallAccessproxyApigateway6Args args, CustomResourceOptions options)
type: fortimanager:ObjectFirewallAccessproxyApigateway6
properties: # The arguments to resource properties.
options: # Bag of options to control resource's behavior.
Parameters
- name string
- The unique name of the resource.
- args ObjectFirewallAccessproxyApigateway6Args
- The arguments to resource properties.
- opts CustomResourceOptions
- Bag of options to control resource's behavior.
- resource_name str
- The unique name of the resource.
- args ObjectFirewallAccessproxyApigateway6Args
- The arguments to resource properties.
- opts ResourceOptions
- Bag of options to control resource's behavior.
- ctx Context
- Context object for the current deployment.
- name string
- The unique name of the resource.
- args ObjectFirewallAccessproxyApigateway6Args
- The arguments to resource properties.
- opts ResourceOption
- Bag of options to control resource's behavior.
- name string
- The unique name of the resource.
- args ObjectFirewallAccessproxyApigateway6Args
- The arguments to resource properties.
- opts CustomResourceOptions
- Bag of options to control resource's behavior.
- name String
- The unique name of the resource.
- args ObjectFirewallAccessproxyApigateway6Args
- The arguments to resource properties.
- options CustomResourceOptions
- Bag of options to control resource's behavior.
Constructor example
The following reference example uses placeholder values for all input properties.
var objectFirewallAccessproxyApigateway6Resource = new Fortimanager.ObjectFirewallAccessproxyApigateway6("objectFirewallAccessproxyApigateway6Resource", new()
{
AccessProxy = "string",
Adom = "string",
Applications = new[]
{
"string",
},
DynamicSortSubtable = "string",
Fosid = 0,
H2Support = "string",
H3Support = "string",
HttpCookieAge = 0,
HttpCookieDomain = "string",
HttpCookieDomainFromHost = "string",
HttpCookieGeneration = 0,
HttpCookiePath = "string",
HttpCookieShare = "string",
HttpsCookieSecure = "string",
LdbMethod = "string",
ObjectFirewallAccessproxyApigateway6Id = "string",
Persistence = "string",
Quic = new Fortimanager.Inputs.ObjectFirewallAccessproxyApigateway6QuicArgs
{
AckDelayExponent = 0,
ActiveConnectionIdLimit = 0,
ActiveMigration = "string",
GreaseQuicBit = "string",
MaxAckDelay = 0,
MaxDatagramFrameSize = 0,
MaxIdleTimeout = 0,
MaxUdpPayloadSize = 0,
},
Realservers = new[]
{
new Fortimanager.Inputs.ObjectFirewallAccessproxyApigateway6RealserverArgs
{
AddrType = "string",
Address = "string",
Domain = "string",
ExternalAuth = "string",
HealthCheck = "string",
HealthCheckProto = "string",
HolddownInterval = "string",
HttpHost = "string",
Id = 0,
Ip = "string",
Mappedport = "string",
Port = 0,
SshClientCert = "string",
SshHostKey = "string",
SshHostKeyValidation = "string",
Status = "string",
TranslateHost = "string",
TunnelEncryption = "string",
Type = "string",
Weight = 0,
},
},
SamlRedirect = "string",
SamlServer = "string",
Scopetype = "string",
Service = "string",
SslAlgorithm = "string",
SslCipherSuites = new[]
{
new Fortimanager.Inputs.ObjectFirewallAccessproxyApigateway6SslCipherSuiteArgs
{
Cipher = "string",
Priority = 0,
Versions = new[]
{
"string",
},
},
},
SslDhBits = "string",
SslMaxVersion = "string",
SslMinVersion = "string",
SslRenegotiation = "string",
SslVpnWebPortal = "string",
UrlMap = "string",
UrlMapType = "string",
VirtualHost = "string",
});
example, err := fortimanager.NewObjectFirewallAccessproxyApigateway6(ctx, "objectFirewallAccessproxyApigateway6Resource", &fortimanager.ObjectFirewallAccessproxyApigateway6Args{
AccessProxy: pulumi.String("string"),
Adom: pulumi.String("string"),
Applications: pulumi.StringArray{
pulumi.String("string"),
},
DynamicSortSubtable: pulumi.String("string"),
Fosid: pulumi.Float64(0),
H2Support: pulumi.String("string"),
H3Support: pulumi.String("string"),
HttpCookieAge: pulumi.Float64(0),
HttpCookieDomain: pulumi.String("string"),
HttpCookieDomainFromHost: pulumi.String("string"),
HttpCookieGeneration: pulumi.Float64(0),
HttpCookiePath: pulumi.String("string"),
HttpCookieShare: pulumi.String("string"),
HttpsCookieSecure: pulumi.String("string"),
LdbMethod: pulumi.String("string"),
ObjectFirewallAccessproxyApigateway6Id: pulumi.String("string"),
Persistence: pulumi.String("string"),
Quic: &.ObjectFirewallAccessproxyApigateway6QuicTypeArgs{
AckDelayExponent: pulumi.Float64(0),
ActiveConnectionIdLimit: pulumi.Float64(0),
ActiveMigration: pulumi.String("string"),
GreaseQuicBit: pulumi.String("string"),
MaxAckDelay: pulumi.Float64(0),
MaxDatagramFrameSize: pulumi.Float64(0),
MaxIdleTimeout: pulumi.Float64(0),
MaxUdpPayloadSize: pulumi.Float64(0),
},
Realservers: .ObjectFirewallAccessproxyApigateway6RealserverArray{
&.ObjectFirewallAccessproxyApigateway6RealserverArgs{
AddrType: pulumi.String("string"),
Address: pulumi.String("string"),
Domain: pulumi.String("string"),
ExternalAuth: pulumi.String("string"),
HealthCheck: pulumi.String("string"),
HealthCheckProto: pulumi.String("string"),
HolddownInterval: pulumi.String("string"),
HttpHost: pulumi.String("string"),
Id: pulumi.Float64(0),
Ip: pulumi.String("string"),
Mappedport: pulumi.String("string"),
Port: pulumi.Float64(0),
SshClientCert: pulumi.String("string"),
SshHostKey: pulumi.String("string"),
SshHostKeyValidation: pulumi.String("string"),
Status: pulumi.String("string"),
TranslateHost: pulumi.String("string"),
TunnelEncryption: pulumi.String("string"),
Type: pulumi.String("string"),
Weight: pulumi.Float64(0),
},
},
SamlRedirect: pulumi.String("string"),
SamlServer: pulumi.String("string"),
Scopetype: pulumi.String("string"),
Service: pulumi.String("string"),
SslAlgorithm: pulumi.String("string"),
SslCipherSuites: .ObjectFirewallAccessproxyApigateway6SslCipherSuiteArray{
&.ObjectFirewallAccessproxyApigateway6SslCipherSuiteArgs{
Cipher: pulumi.String("string"),
Priority: pulumi.Float64(0),
Versions: pulumi.StringArray{
pulumi.String("string"),
},
},
},
SslDhBits: pulumi.String("string"),
SslMaxVersion: pulumi.String("string"),
SslMinVersion: pulumi.String("string"),
SslRenegotiation: pulumi.String("string"),
SslVpnWebPortal: pulumi.String("string"),
UrlMap: pulumi.String("string"),
UrlMapType: pulumi.String("string"),
VirtualHost: pulumi.String("string"),
})
var objectFirewallAccessproxyApigateway6Resource = new ObjectFirewallAccessproxyApigateway6("objectFirewallAccessproxyApigateway6Resource", ObjectFirewallAccessproxyApigateway6Args.builder()
.accessProxy("string")
.adom("string")
.applications("string")
.dynamicSortSubtable("string")
.fosid(0)
.h2Support("string")
.h3Support("string")
.httpCookieAge(0)
.httpCookieDomain("string")
.httpCookieDomainFromHost("string")
.httpCookieGeneration(0)
.httpCookiePath("string")
.httpCookieShare("string")
.httpsCookieSecure("string")
.ldbMethod("string")
.objectFirewallAccessproxyApigateway6Id("string")
.persistence("string")
.quic(ObjectFirewallAccessproxyApigateway6QuicArgs.builder()
.ackDelayExponent(0)
.activeConnectionIdLimit(0)
.activeMigration("string")
.greaseQuicBit("string")
.maxAckDelay(0)
.maxDatagramFrameSize(0)
.maxIdleTimeout(0)
.maxUdpPayloadSize(0)
.build())
.realservers(ObjectFirewallAccessproxyApigateway6RealserverArgs.builder()
.addrType("string")
.address("string")
.domain("string")
.externalAuth("string")
.healthCheck("string")
.healthCheckProto("string")
.holddownInterval("string")
.httpHost("string")
.id(0)
.ip("string")
.mappedport("string")
.port(0)
.sshClientCert("string")
.sshHostKey("string")
.sshHostKeyValidation("string")
.status("string")
.translateHost("string")
.tunnelEncryption("string")
.type("string")
.weight(0)
.build())
.samlRedirect("string")
.samlServer("string")
.scopetype("string")
.service("string")
.sslAlgorithm("string")
.sslCipherSuites(ObjectFirewallAccessproxyApigateway6SslCipherSuiteArgs.builder()
.cipher("string")
.priority(0)
.versions("string")
.build())
.sslDhBits("string")
.sslMaxVersion("string")
.sslMinVersion("string")
.sslRenegotiation("string")
.sslVpnWebPortal("string")
.urlMap("string")
.urlMapType("string")
.virtualHost("string")
.build());
object_firewall_accessproxy_apigateway6_resource = fortimanager.ObjectFirewallAccessproxyApigateway6("objectFirewallAccessproxyApigateway6Resource",
access_proxy="string",
adom="string",
applications=["string"],
dynamic_sort_subtable="string",
fosid=0,
h2_support="string",
h3_support="string",
http_cookie_age=0,
http_cookie_domain="string",
http_cookie_domain_from_host="string",
http_cookie_generation=0,
http_cookie_path="string",
http_cookie_share="string",
https_cookie_secure="string",
ldb_method="string",
object_firewall_accessproxy_apigateway6_id="string",
persistence="string",
quic={
"ack_delay_exponent": 0,
"active_connection_id_limit": 0,
"active_migration": "string",
"grease_quic_bit": "string",
"max_ack_delay": 0,
"max_datagram_frame_size": 0,
"max_idle_timeout": 0,
"max_udp_payload_size": 0,
},
realservers=[{
"addr_type": "string",
"address": "string",
"domain": "string",
"external_auth": "string",
"health_check": "string",
"health_check_proto": "string",
"holddown_interval": "string",
"http_host": "string",
"id": 0,
"ip": "string",
"mappedport": "string",
"port": 0,
"ssh_client_cert": "string",
"ssh_host_key": "string",
"ssh_host_key_validation": "string",
"status": "string",
"translate_host": "string",
"tunnel_encryption": "string",
"type": "string",
"weight": 0,
}],
saml_redirect="string",
saml_server="string",
scopetype="string",
service="string",
ssl_algorithm="string",
ssl_cipher_suites=[{
"cipher": "string",
"priority": 0,
"versions": ["string"],
}],
ssl_dh_bits="string",
ssl_max_version="string",
ssl_min_version="string",
ssl_renegotiation="string",
ssl_vpn_web_portal="string",
url_map="string",
url_map_type="string",
virtual_host="string")
const objectFirewallAccessproxyApigateway6Resource = new fortimanager.ObjectFirewallAccessproxyApigateway6("objectFirewallAccessproxyApigateway6Resource", {
accessProxy: "string",
adom: "string",
applications: ["string"],
dynamicSortSubtable: "string",
fosid: 0,
h2Support: "string",
h3Support: "string",
httpCookieAge: 0,
httpCookieDomain: "string",
httpCookieDomainFromHost: "string",
httpCookieGeneration: 0,
httpCookiePath: "string",
httpCookieShare: "string",
httpsCookieSecure: "string",
ldbMethod: "string",
objectFirewallAccessproxyApigateway6Id: "string",
persistence: "string",
quic: {
ackDelayExponent: 0,
activeConnectionIdLimit: 0,
activeMigration: "string",
greaseQuicBit: "string",
maxAckDelay: 0,
maxDatagramFrameSize: 0,
maxIdleTimeout: 0,
maxUdpPayloadSize: 0,
},
realservers: [{
addrType: "string",
address: "string",
domain: "string",
externalAuth: "string",
healthCheck: "string",
healthCheckProto: "string",
holddownInterval: "string",
httpHost: "string",
id: 0,
ip: "string",
mappedport: "string",
port: 0,
sshClientCert: "string",
sshHostKey: "string",
sshHostKeyValidation: "string",
status: "string",
translateHost: "string",
tunnelEncryption: "string",
type: "string",
weight: 0,
}],
samlRedirect: "string",
samlServer: "string",
scopetype: "string",
service: "string",
sslAlgorithm: "string",
sslCipherSuites: [{
cipher: "string",
priority: 0,
versions: ["string"],
}],
sslDhBits: "string",
sslMaxVersion: "string",
sslMinVersion: "string",
sslRenegotiation: "string",
sslVpnWebPortal: "string",
urlMap: "string",
urlMapType: "string",
virtualHost: "string",
});
type: fortimanager:ObjectFirewallAccessproxyApigateway6
properties:
accessProxy: string
adom: string
applications:
- string
dynamicSortSubtable: string
fosid: 0
h2Support: string
h3Support: string
httpCookieAge: 0
httpCookieDomain: string
httpCookieDomainFromHost: string
httpCookieGeneration: 0
httpCookiePath: string
httpCookieShare: string
httpsCookieSecure: string
ldbMethod: string
objectFirewallAccessproxyApigateway6Id: string
persistence: string
quic:
ackDelayExponent: 0
activeConnectionIdLimit: 0
activeMigration: string
greaseQuicBit: string
maxAckDelay: 0
maxDatagramFrameSize: 0
maxIdleTimeout: 0
maxUdpPayloadSize: 0
realservers:
- addrType: string
address: string
domain: string
externalAuth: string
healthCheck: string
healthCheckProto: string
holddownInterval: string
httpHost: string
id: 0
ip: string
mappedport: string
port: 0
sshClientCert: string
sshHostKey: string
sshHostKeyValidation: string
status: string
translateHost: string
tunnelEncryption: string
type: string
weight: 0
samlRedirect: string
samlServer: string
scopetype: string
service: string
sslAlgorithm: string
sslCipherSuites:
- cipher: string
priority: 0
versions:
- string
sslDhBits: string
sslMaxVersion: string
sslMinVersion: string
sslRenegotiation: string
sslVpnWebPortal: string
urlMap: string
urlMapType: string
virtualHost: string
ObjectFirewallAccessproxyApigateway6 Resource Properties
To learn more about resource properties and how to use them, see Inputs and Outputs in the Architecture and Concepts docs.
Inputs
In Python, inputs that are objects can be passed either as argument classes or as dictionary literals.
The ObjectFirewallAccessproxyApigateway6 resource accepts the following input properties:
- Access
Proxy string - Access Proxy.
- Adom string
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - Applications List<string>
- SaaS application controlled by this Access Proxy.
- Dynamic
Sort stringSubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- Fosid double
- API Gateway ID.
- H2Support string
- HTTP2 support, default=Enable. Valid values:
disable
,enable
. - H3Support string
- HTTP3/QUIC support, default=Disable. Valid values:
disable
,enable
. - double
- Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
- string
- Domain that HTTP cookie persistence should apply to.
- string
- Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values:
disable
,enable
. - double
- Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
- string
- Limit HTTP cookie persistence to the specified path.
- string
- Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values:
disable
,same-ip
. - string
- Enable/disable verification that inserted HTTPS cookies are secure. Valid values:
disable
,enable
. - Ldb
Method string - Method used to distribute sessions to real servers. Valid values:
static
,round-robin
,weighted
,first-alive
,http-host
. - Object
Firewall stringAccessproxy Apigateway6Id - an identifier for the resource with format {{fosid}}.
- Persistence string
- Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values:
none
,http-cookie
. - Quic
Object
Firewall Accessproxy Apigateway6Quic - Quic. The structure of
quic
block is documented below. - Realservers
List<Object
Firewall Accessproxy Apigateway6Realserver> - Realservers. The structure of
realservers
block is documented below. - Saml
Redirect string - Enable/disable SAML redirection after successful authentication. Valid values:
disable
,enable
. - Saml
Server string - SAML service provider configuration for VIP authentication.
- Scopetype string
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - Service string
- Service. Valid values:
http
,https
,tcp-forwarding
,samlsp
. - Ssl
Algorithm string - Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values:
high
,medium
,low
. - Ssl
Cipher List<ObjectSuites Firewall Accessproxy Apigateway6Ssl Cipher Suite> - Ssl-Cipher-Suites. The structure of
ssl_cipher_suites
block is documented below. - Ssl
Dh stringBits - Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values:
768
,1024
,1536
,2048
,3072
,4096
. - Ssl
Max stringVersion - Highest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - Ssl
Min stringVersion - Lowest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - Ssl
Renegotiation string - Enable/disable secure renegotiation to comply with RFC 5746. Valid values:
disable
,enable
. - Ssl
Vpn stringWeb Portal - SSL-VPN web portal.
- Url
Map string - URL pattern to match.
- Url
Map stringType - Type of url-map. Valid values:
sub-string
,wildcard
,regex
. - Virtual
Host string - Virtual host.
- Access
Proxy string - Access Proxy.
- Adom string
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - Applications []string
- SaaS application controlled by this Access Proxy.
- Dynamic
Sort stringSubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- Fosid float64
- API Gateway ID.
- H2Support string
- HTTP2 support, default=Enable. Valid values:
disable
,enable
. - H3Support string
- HTTP3/QUIC support, default=Disable. Valid values:
disable
,enable
. - float64
- Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
- string
- Domain that HTTP cookie persistence should apply to.
- string
- Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values:
disable
,enable
. - float64
- Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
- string
- Limit HTTP cookie persistence to the specified path.
- string
- Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values:
disable
,same-ip
. - string
- Enable/disable verification that inserted HTTPS cookies are secure. Valid values:
disable
,enable
. - Ldb
Method string - Method used to distribute sessions to real servers. Valid values:
static
,round-robin
,weighted
,first-alive
,http-host
. - Object
Firewall stringAccessproxy Apigateway6Id - an identifier for the resource with format {{fosid}}.
- Persistence string
- Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values:
none
,http-cookie
. - Quic
Object
Firewall Accessproxy Apigateway6Quic Type Args - Quic. The structure of
quic
block is documented below. - Realservers
[]Object
Firewall Accessproxy Apigateway6Realserver Args - Realservers. The structure of
realservers
block is documented below. - Saml
Redirect string - Enable/disable SAML redirection after successful authentication. Valid values:
disable
,enable
. - Saml
Server string - SAML service provider configuration for VIP authentication.
- Scopetype string
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - Service string
- Service. Valid values:
http
,https
,tcp-forwarding
,samlsp
. - Ssl
Algorithm string - Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values:
high
,medium
,low
. - Ssl
Cipher []ObjectSuites Firewall Accessproxy Apigateway6Ssl Cipher Suite Args - Ssl-Cipher-Suites. The structure of
ssl_cipher_suites
block is documented below. - Ssl
Dh stringBits - Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values:
768
,1024
,1536
,2048
,3072
,4096
. - Ssl
Max stringVersion - Highest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - Ssl
Min stringVersion - Lowest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - Ssl
Renegotiation string - Enable/disable secure renegotiation to comply with RFC 5746. Valid values:
disable
,enable
. - Ssl
Vpn stringWeb Portal - SSL-VPN web portal.
- Url
Map string - URL pattern to match.
- Url
Map stringType - Type of url-map. Valid values:
sub-string
,wildcard
,regex
. - Virtual
Host string - Virtual host.
- access
Proxy String - Access Proxy.
- adom String
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - applications List<String>
- SaaS application controlled by this Access Proxy.
- dynamic
Sort StringSubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- fosid Double
- API Gateway ID.
- h2Support String
- HTTP2 support, default=Enable. Valid values:
disable
,enable
. - h3Support String
- HTTP3/QUIC support, default=Disable. Valid values:
disable
,enable
. - Double
- Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
- String
- Domain that HTTP cookie persistence should apply to.
- String
- Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values:
disable
,enable
. - Double
- Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
- String
- Limit HTTP cookie persistence to the specified path.
- String
- Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values:
disable
,same-ip
. - String
- Enable/disable verification that inserted HTTPS cookies are secure. Valid values:
disable
,enable
. - ldb
Method String - Method used to distribute sessions to real servers. Valid values:
static
,round-robin
,weighted
,first-alive
,http-host
. - object
Firewall StringAccessproxy Apigateway6Id - an identifier for the resource with format {{fosid}}.
- persistence String
- Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values:
none
,http-cookie
. - quic
Object
Firewall Accessproxy Apigateway6Quic - Quic. The structure of
quic
block is documented below. - realservers
List<Object
Firewall Accessproxy Apigateway6Realserver> - Realservers. The structure of
realservers
block is documented below. - saml
Redirect String - Enable/disable SAML redirection after successful authentication. Valid values:
disable
,enable
. - saml
Server String - SAML service provider configuration for VIP authentication.
- scopetype String
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - service String
- Service. Valid values:
http
,https
,tcp-forwarding
,samlsp
. - ssl
Algorithm String - Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values:
high
,medium
,low
. - ssl
Cipher List<ObjectSuites Firewall Accessproxy Apigateway6Ssl Cipher Suite> - Ssl-Cipher-Suites. The structure of
ssl_cipher_suites
block is documented below. - ssl
Dh StringBits - Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values:
768
,1024
,1536
,2048
,3072
,4096
. - ssl
Max StringVersion - Highest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl
Min StringVersion - Lowest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl
Renegotiation String - Enable/disable secure renegotiation to comply with RFC 5746. Valid values:
disable
,enable
. - ssl
Vpn StringWeb Portal - SSL-VPN web portal.
- url
Map String - URL pattern to match.
- url
Map StringType - Type of url-map. Valid values:
sub-string
,wildcard
,regex
. - virtual
Host String - Virtual host.
- access
Proxy string - Access Proxy.
- adom string
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - applications string[]
- SaaS application controlled by this Access Proxy.
- dynamic
Sort stringSubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- fosid number
- API Gateway ID.
- h2Support string
- HTTP2 support, default=Enable. Valid values:
disable
,enable
. - h3Support string
- HTTP3/QUIC support, default=Disable. Valid values:
disable
,enable
. - number
- Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
- string
- Domain that HTTP cookie persistence should apply to.
- string
- Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values:
disable
,enable
. - number
- Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
- string
- Limit HTTP cookie persistence to the specified path.
- string
- Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values:
disable
,same-ip
. - string
- Enable/disable verification that inserted HTTPS cookies are secure. Valid values:
disable
,enable
. - ldb
Method string - Method used to distribute sessions to real servers. Valid values:
static
,round-robin
,weighted
,first-alive
,http-host
. - object
Firewall stringAccessproxy Apigateway6Id - an identifier for the resource with format {{fosid}}.
- persistence string
- Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values:
none
,http-cookie
. - quic
Object
Firewall Accessproxy Apigateway6Quic - Quic. The structure of
quic
block is documented below. - realservers
Object
Firewall Accessproxy Apigateway6Realserver[] - Realservers. The structure of
realservers
block is documented below. - saml
Redirect string - Enable/disable SAML redirection after successful authentication. Valid values:
disable
,enable
. - saml
Server string - SAML service provider configuration for VIP authentication.
- scopetype string
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - service string
- Service. Valid values:
http
,https
,tcp-forwarding
,samlsp
. - ssl
Algorithm string - Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values:
high
,medium
,low
. - ssl
Cipher ObjectSuites Firewall Accessproxy Apigateway6Ssl Cipher Suite[] - Ssl-Cipher-Suites. The structure of
ssl_cipher_suites
block is documented below. - ssl
Dh stringBits - Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values:
768
,1024
,1536
,2048
,3072
,4096
. - ssl
Max stringVersion - Highest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl
Min stringVersion - Lowest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl
Renegotiation string - Enable/disable secure renegotiation to comply with RFC 5746. Valid values:
disable
,enable
. - ssl
Vpn stringWeb Portal - SSL-VPN web portal.
- url
Map string - URL pattern to match.
- url
Map stringType - Type of url-map. Valid values:
sub-string
,wildcard
,regex
. - virtual
Host string - Virtual host.
- access_
proxy str - Access Proxy.
- adom str
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - applications Sequence[str]
- SaaS application controlled by this Access Proxy.
- dynamic_
sort_ strsubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- fosid float
- API Gateway ID.
- h2_
support str - HTTP2 support, default=Enable. Valid values:
disable
,enable
. - h3_
support str - HTTP3/QUIC support, default=Disable. Valid values:
disable
,enable
. - float
- Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
- str
- Domain that HTTP cookie persistence should apply to.
- str
- Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values:
disable
,enable
. - float
- Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
- str
- Limit HTTP cookie persistence to the specified path.
- str
- Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values:
disable
,same-ip
. - str
- Enable/disable verification that inserted HTTPS cookies are secure. Valid values:
disable
,enable
. - ldb_
method str - Method used to distribute sessions to real servers. Valid values:
static
,round-robin
,weighted
,first-alive
,http-host
. - object_
firewall_ straccessproxy_ apigateway6_ id - an identifier for the resource with format {{fosid}}.
- persistence str
- Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values:
none
,http-cookie
. - quic
Object
Firewall Accessproxy Apigateway6Quic Args - Quic. The structure of
quic
block is documented below. - realservers
Sequence[Object
Firewall Accessproxy Apigateway6Realserver Args] - Realservers. The structure of
realservers
block is documented below. - saml_
redirect str - Enable/disable SAML redirection after successful authentication. Valid values:
disable
,enable
. - saml_
server str - SAML service provider configuration for VIP authentication.
- scopetype str
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - service str
- Service. Valid values:
http
,https
,tcp-forwarding
,samlsp
. - ssl_
algorithm str - Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values:
high
,medium
,low
. - ssl_
cipher_ Sequence[Objectsuites Firewall Accessproxy Apigateway6Ssl Cipher Suite Args] - Ssl-Cipher-Suites. The structure of
ssl_cipher_suites
block is documented below. - ssl_
dh_ strbits - Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values:
768
,1024
,1536
,2048
,3072
,4096
. - ssl_
max_ strversion - Highest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl_
min_ strversion - Lowest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl_
renegotiation str - Enable/disable secure renegotiation to comply with RFC 5746. Valid values:
disable
,enable
. - ssl_
vpn_ strweb_ portal - SSL-VPN web portal.
- url_
map str - URL pattern to match.
- url_
map_ strtype - Type of url-map. Valid values:
sub-string
,wildcard
,regex
. - virtual_
host str - Virtual host.
- access
Proxy String - Access Proxy.
- adom String
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - applications List<String>
- SaaS application controlled by this Access Proxy.
- dynamic
Sort StringSubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- fosid Number
- API Gateway ID.
- h2Support String
- HTTP2 support, default=Enable. Valid values:
disable
,enable
. - h3Support String
- HTTP3/QUIC support, default=Disable. Valid values:
disable
,enable
. - Number
- Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
- String
- Domain that HTTP cookie persistence should apply to.
- String
- Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values:
disable
,enable
. - Number
- Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
- String
- Limit HTTP cookie persistence to the specified path.
- String
- Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values:
disable
,same-ip
. - String
- Enable/disable verification that inserted HTTPS cookies are secure. Valid values:
disable
,enable
. - ldb
Method String - Method used to distribute sessions to real servers. Valid values:
static
,round-robin
,weighted
,first-alive
,http-host
. - object
Firewall StringAccessproxy Apigateway6Id - an identifier for the resource with format {{fosid}}.
- persistence String
- Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values:
none
,http-cookie
. - quic Property Map
- Quic. The structure of
quic
block is documented below. - realservers List<Property Map>
- Realservers. The structure of
realservers
block is documented below. - saml
Redirect String - Enable/disable SAML redirection after successful authentication. Valid values:
disable
,enable
. - saml
Server String - SAML service provider configuration for VIP authentication.
- scopetype String
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - service String
- Service. Valid values:
http
,https
,tcp-forwarding
,samlsp
. - ssl
Algorithm String - Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values:
high
,medium
,low
. - ssl
Cipher List<Property Map>Suites - Ssl-Cipher-Suites. The structure of
ssl_cipher_suites
block is documented below. - ssl
Dh StringBits - Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values:
768
,1024
,1536
,2048
,3072
,4096
. - ssl
Max StringVersion - Highest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl
Min StringVersion - Lowest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl
Renegotiation String - Enable/disable secure renegotiation to comply with RFC 5746. Valid values:
disable
,enable
. - ssl
Vpn StringWeb Portal - SSL-VPN web portal.
- url
Map String - URL pattern to match.
- url
Map StringType - Type of url-map. Valid values:
sub-string
,wildcard
,regex
. - virtual
Host String - Virtual host.
Outputs
All input properties are implicitly available as output properties. Additionally, the ObjectFirewallAccessproxyApigateway6 resource produces the following output properties:
- Id string
- The provider-assigned unique ID for this managed resource.
- Id string
- The provider-assigned unique ID for this managed resource.
- id String
- The provider-assigned unique ID for this managed resource.
- id string
- The provider-assigned unique ID for this managed resource.
- id str
- The provider-assigned unique ID for this managed resource.
- id String
- The provider-assigned unique ID for this managed resource.
Look up Existing ObjectFirewallAccessproxyApigateway6 Resource
Get an existing ObjectFirewallAccessproxyApigateway6 resource’s state with the given name, ID, and optional extra properties used to qualify the lookup.
public static get(name: string, id: Input<ID>, state?: ObjectFirewallAccessproxyApigateway6State, opts?: CustomResourceOptions): ObjectFirewallAccessproxyApigateway6
@staticmethod
def get(resource_name: str,
id: str,
opts: Optional[ResourceOptions] = None,
access_proxy: Optional[str] = None,
adom: Optional[str] = None,
applications: Optional[Sequence[str]] = None,
dynamic_sort_subtable: Optional[str] = None,
fosid: Optional[float] = None,
h2_support: Optional[str] = None,
h3_support: Optional[str] = None,
http_cookie_age: Optional[float] = None,
http_cookie_domain: Optional[str] = None,
http_cookie_domain_from_host: Optional[str] = None,
http_cookie_generation: Optional[float] = None,
http_cookie_path: Optional[str] = None,
http_cookie_share: Optional[str] = None,
https_cookie_secure: Optional[str] = None,
ldb_method: Optional[str] = None,
object_firewall_accessproxy_apigateway6_id: Optional[str] = None,
persistence: Optional[str] = None,
quic: Optional[ObjectFirewallAccessproxyApigateway6QuicArgs] = None,
realservers: Optional[Sequence[ObjectFirewallAccessproxyApigateway6RealserverArgs]] = None,
saml_redirect: Optional[str] = None,
saml_server: Optional[str] = None,
scopetype: Optional[str] = None,
service: Optional[str] = None,
ssl_algorithm: Optional[str] = None,
ssl_cipher_suites: Optional[Sequence[ObjectFirewallAccessproxyApigateway6SslCipherSuiteArgs]] = None,
ssl_dh_bits: Optional[str] = None,
ssl_max_version: Optional[str] = None,
ssl_min_version: Optional[str] = None,
ssl_renegotiation: Optional[str] = None,
ssl_vpn_web_portal: Optional[str] = None,
url_map: Optional[str] = None,
url_map_type: Optional[str] = None,
virtual_host: Optional[str] = None) -> ObjectFirewallAccessproxyApigateway6
func GetObjectFirewallAccessproxyApigateway6(ctx *Context, name string, id IDInput, state *ObjectFirewallAccessproxyApigateway6State, opts ...ResourceOption) (*ObjectFirewallAccessproxyApigateway6, error)
public static ObjectFirewallAccessproxyApigateway6 Get(string name, Input<string> id, ObjectFirewallAccessproxyApigateway6State? state, CustomResourceOptions? opts = null)
public static ObjectFirewallAccessproxyApigateway6 get(String name, Output<String> id, ObjectFirewallAccessproxyApigateway6State state, CustomResourceOptions options)
resources: _: type: fortimanager:ObjectFirewallAccessproxyApigateway6 get: id: ${id}
- name
- The unique name of the resulting resource.
- id
- The unique provider ID of the resource to lookup.
- state
- Any extra arguments used during the lookup.
- opts
- A bag of options that control this resource's behavior.
- resource_name
- The unique name of the resulting resource.
- id
- The unique provider ID of the resource to lookup.
- name
- The unique name of the resulting resource.
- id
- The unique provider ID of the resource to lookup.
- state
- Any extra arguments used during the lookup.
- opts
- A bag of options that control this resource's behavior.
- name
- The unique name of the resulting resource.
- id
- The unique provider ID of the resource to lookup.
- state
- Any extra arguments used during the lookup.
- opts
- A bag of options that control this resource's behavior.
- name
- The unique name of the resulting resource.
- id
- The unique provider ID of the resource to lookup.
- state
- Any extra arguments used during the lookup.
- opts
- A bag of options that control this resource's behavior.
- Access
Proxy string - Access Proxy.
- Adom string
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - Applications List<string>
- SaaS application controlled by this Access Proxy.
- Dynamic
Sort stringSubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- Fosid double
- API Gateway ID.
- H2Support string
- HTTP2 support, default=Enable. Valid values:
disable
,enable
. - H3Support string
- HTTP3/QUIC support, default=Disable. Valid values:
disable
,enable
. - double
- Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
- string
- Domain that HTTP cookie persistence should apply to.
- string
- Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values:
disable
,enable
. - double
- Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
- string
- Limit HTTP cookie persistence to the specified path.
- string
- Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values:
disable
,same-ip
. - string
- Enable/disable verification that inserted HTTPS cookies are secure. Valid values:
disable
,enable
. - Ldb
Method string - Method used to distribute sessions to real servers. Valid values:
static
,round-robin
,weighted
,first-alive
,http-host
. - Object
Firewall stringAccessproxy Apigateway6Id - an identifier for the resource with format {{fosid}}.
- Persistence string
- Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values:
none
,http-cookie
. - Quic
Object
Firewall Accessproxy Apigateway6Quic - Quic. The structure of
quic
block is documented below. - Realservers
List<Object
Firewall Accessproxy Apigateway6Realserver> - Realservers. The structure of
realservers
block is documented below. - Saml
Redirect string - Enable/disable SAML redirection after successful authentication. Valid values:
disable
,enable
. - Saml
Server string - SAML service provider configuration for VIP authentication.
- Scopetype string
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - Service string
- Service. Valid values:
http
,https
,tcp-forwarding
,samlsp
. - Ssl
Algorithm string - Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values:
high
,medium
,low
. - Ssl
Cipher List<ObjectSuites Firewall Accessproxy Apigateway6Ssl Cipher Suite> - Ssl-Cipher-Suites. The structure of
ssl_cipher_suites
block is documented below. - Ssl
Dh stringBits - Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values:
768
,1024
,1536
,2048
,3072
,4096
. - Ssl
Max stringVersion - Highest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - Ssl
Min stringVersion - Lowest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - Ssl
Renegotiation string - Enable/disable secure renegotiation to comply with RFC 5746. Valid values:
disable
,enable
. - Ssl
Vpn stringWeb Portal - SSL-VPN web portal.
- Url
Map string - URL pattern to match.
- Url
Map stringType - Type of url-map. Valid values:
sub-string
,wildcard
,regex
. - Virtual
Host string - Virtual host.
- Access
Proxy string - Access Proxy.
- Adom string
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - Applications []string
- SaaS application controlled by this Access Proxy.
- Dynamic
Sort stringSubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- Fosid float64
- API Gateway ID.
- H2Support string
- HTTP2 support, default=Enable. Valid values:
disable
,enable
. - H3Support string
- HTTP3/QUIC support, default=Disable. Valid values:
disable
,enable
. - float64
- Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
- string
- Domain that HTTP cookie persistence should apply to.
- string
- Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values:
disable
,enable
. - float64
- Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
- string
- Limit HTTP cookie persistence to the specified path.
- string
- Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values:
disable
,same-ip
. - string
- Enable/disable verification that inserted HTTPS cookies are secure. Valid values:
disable
,enable
. - Ldb
Method string - Method used to distribute sessions to real servers. Valid values:
static
,round-robin
,weighted
,first-alive
,http-host
. - Object
Firewall stringAccessproxy Apigateway6Id - an identifier for the resource with format {{fosid}}.
- Persistence string
- Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values:
none
,http-cookie
. - Quic
Object
Firewall Accessproxy Apigateway6Quic Type Args - Quic. The structure of
quic
block is documented below. - Realservers
[]Object
Firewall Accessproxy Apigateway6Realserver Args - Realservers. The structure of
realservers
block is documented below. - Saml
Redirect string - Enable/disable SAML redirection after successful authentication. Valid values:
disable
,enable
. - Saml
Server string - SAML service provider configuration for VIP authentication.
- Scopetype string
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - Service string
- Service. Valid values:
http
,https
,tcp-forwarding
,samlsp
. - Ssl
Algorithm string - Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values:
high
,medium
,low
. - Ssl
Cipher []ObjectSuites Firewall Accessproxy Apigateway6Ssl Cipher Suite Args - Ssl-Cipher-Suites. The structure of
ssl_cipher_suites
block is documented below. - Ssl
Dh stringBits - Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values:
768
,1024
,1536
,2048
,3072
,4096
. - Ssl
Max stringVersion - Highest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - Ssl
Min stringVersion - Lowest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - Ssl
Renegotiation string - Enable/disable secure renegotiation to comply with RFC 5746. Valid values:
disable
,enable
. - Ssl
Vpn stringWeb Portal - SSL-VPN web portal.
- Url
Map string - URL pattern to match.
- Url
Map stringType - Type of url-map. Valid values:
sub-string
,wildcard
,regex
. - Virtual
Host string - Virtual host.
- access
Proxy String - Access Proxy.
- adom String
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - applications List<String>
- SaaS application controlled by this Access Proxy.
- dynamic
Sort StringSubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- fosid Double
- API Gateway ID.
- h2Support String
- HTTP2 support, default=Enable. Valid values:
disable
,enable
. - h3Support String
- HTTP3/QUIC support, default=Disable. Valid values:
disable
,enable
. - Double
- Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
- String
- Domain that HTTP cookie persistence should apply to.
- String
- Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values:
disable
,enable
. - Double
- Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
- String
- Limit HTTP cookie persistence to the specified path.
- String
- Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values:
disable
,same-ip
. - String
- Enable/disable verification that inserted HTTPS cookies are secure. Valid values:
disable
,enable
. - ldb
Method String - Method used to distribute sessions to real servers. Valid values:
static
,round-robin
,weighted
,first-alive
,http-host
. - object
Firewall StringAccessproxy Apigateway6Id - an identifier for the resource with format {{fosid}}.
- persistence String
- Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values:
none
,http-cookie
. - quic
Object
Firewall Accessproxy Apigateway6Quic - Quic. The structure of
quic
block is documented below. - realservers
List<Object
Firewall Accessproxy Apigateway6Realserver> - Realservers. The structure of
realservers
block is documented below. - saml
Redirect String - Enable/disable SAML redirection after successful authentication. Valid values:
disable
,enable
. - saml
Server String - SAML service provider configuration for VIP authentication.
- scopetype String
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - service String
- Service. Valid values:
http
,https
,tcp-forwarding
,samlsp
. - ssl
Algorithm String - Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values:
high
,medium
,low
. - ssl
Cipher List<ObjectSuites Firewall Accessproxy Apigateway6Ssl Cipher Suite> - Ssl-Cipher-Suites. The structure of
ssl_cipher_suites
block is documented below. - ssl
Dh StringBits - Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values:
768
,1024
,1536
,2048
,3072
,4096
. - ssl
Max StringVersion - Highest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl
Min StringVersion - Lowest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl
Renegotiation String - Enable/disable secure renegotiation to comply with RFC 5746. Valid values:
disable
,enable
. - ssl
Vpn StringWeb Portal - SSL-VPN web portal.
- url
Map String - URL pattern to match.
- url
Map StringType - Type of url-map. Valid values:
sub-string
,wildcard
,regex
. - virtual
Host String - Virtual host.
- access
Proxy string - Access Proxy.
- adom string
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - applications string[]
- SaaS application controlled by this Access Proxy.
- dynamic
Sort stringSubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- fosid number
- API Gateway ID.
- h2Support string
- HTTP2 support, default=Enable. Valid values:
disable
,enable
. - h3Support string
- HTTP3/QUIC support, default=Disable. Valid values:
disable
,enable
. - number
- Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
- string
- Domain that HTTP cookie persistence should apply to.
- string
- Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values:
disable
,enable
. - number
- Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
- string
- Limit HTTP cookie persistence to the specified path.
- string
- Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values:
disable
,same-ip
. - string
- Enable/disable verification that inserted HTTPS cookies are secure. Valid values:
disable
,enable
. - ldb
Method string - Method used to distribute sessions to real servers. Valid values:
static
,round-robin
,weighted
,first-alive
,http-host
. - object
Firewall stringAccessproxy Apigateway6Id - an identifier for the resource with format {{fosid}}.
- persistence string
- Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values:
none
,http-cookie
. - quic
Object
Firewall Accessproxy Apigateway6Quic - Quic. The structure of
quic
block is documented below. - realservers
Object
Firewall Accessproxy Apigateway6Realserver[] - Realservers. The structure of
realservers
block is documented below. - saml
Redirect string - Enable/disable SAML redirection after successful authentication. Valid values:
disable
,enable
. - saml
Server string - SAML service provider configuration for VIP authentication.
- scopetype string
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - service string
- Service. Valid values:
http
,https
,tcp-forwarding
,samlsp
. - ssl
Algorithm string - Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values:
high
,medium
,low
. - ssl
Cipher ObjectSuites Firewall Accessproxy Apigateway6Ssl Cipher Suite[] - Ssl-Cipher-Suites. The structure of
ssl_cipher_suites
block is documented below. - ssl
Dh stringBits - Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values:
768
,1024
,1536
,2048
,3072
,4096
. - ssl
Max stringVersion - Highest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl
Min stringVersion - Lowest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl
Renegotiation string - Enable/disable secure renegotiation to comply with RFC 5746. Valid values:
disable
,enable
. - ssl
Vpn stringWeb Portal - SSL-VPN web portal.
- url
Map string - URL pattern to match.
- url
Map stringType - Type of url-map. Valid values:
sub-string
,wildcard
,regex
. - virtual
Host string - Virtual host.
- access_
proxy str - Access Proxy.
- adom str
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - applications Sequence[str]
- SaaS application controlled by this Access Proxy.
- dynamic_
sort_ strsubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- fosid float
- API Gateway ID.
- h2_
support str - HTTP2 support, default=Enable. Valid values:
disable
,enable
. - h3_
support str - HTTP3/QUIC support, default=Disable. Valid values:
disable
,enable
. - float
- Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
- str
- Domain that HTTP cookie persistence should apply to.
- str
- Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values:
disable
,enable
. - float
- Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
- str
- Limit HTTP cookie persistence to the specified path.
- str
- Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values:
disable
,same-ip
. - str
- Enable/disable verification that inserted HTTPS cookies are secure. Valid values:
disable
,enable
. - ldb_
method str - Method used to distribute sessions to real servers. Valid values:
static
,round-robin
,weighted
,first-alive
,http-host
. - object_
firewall_ straccessproxy_ apigateway6_ id - an identifier for the resource with format {{fosid}}.
- persistence str
- Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values:
none
,http-cookie
. - quic
Object
Firewall Accessproxy Apigateway6Quic Args - Quic. The structure of
quic
block is documented below. - realservers
Sequence[Object
Firewall Accessproxy Apigateway6Realserver Args] - Realservers. The structure of
realservers
block is documented below. - saml_
redirect str - Enable/disable SAML redirection after successful authentication. Valid values:
disable
,enable
. - saml_
server str - SAML service provider configuration for VIP authentication.
- scopetype str
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - service str
- Service. Valid values:
http
,https
,tcp-forwarding
,samlsp
. - ssl_
algorithm str - Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values:
high
,medium
,low
. - ssl_
cipher_ Sequence[Objectsuites Firewall Accessproxy Apigateway6Ssl Cipher Suite Args] - Ssl-Cipher-Suites. The structure of
ssl_cipher_suites
block is documented below. - ssl_
dh_ strbits - Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values:
768
,1024
,1536
,2048
,3072
,4096
. - ssl_
max_ strversion - Highest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl_
min_ strversion - Lowest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl_
renegotiation str - Enable/disable secure renegotiation to comply with RFC 5746. Valid values:
disable
,enable
. - ssl_
vpn_ strweb_ portal - SSL-VPN web portal.
- url_
map str - URL pattern to match.
- url_
map_ strtype - Type of url-map. Valid values:
sub-string
,wildcard
,regex
. - virtual_
host str - Virtual host.
- access
Proxy String - Access Proxy.
- adom String
- Adom. This value is valid only when the
scopetype
isadom
, otherwise the value of adom in the provider will be inherited. - applications List<String>
- SaaS application controlled by this Access Proxy.
- dynamic
Sort StringSubtable - true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
- fosid Number
- API Gateway ID.
- h2Support String
- HTTP2 support, default=Enable. Valid values:
disable
,enable
. - h3Support String
- HTTP3/QUIC support, default=Disable. Valid values:
disable
,enable
. - Number
- Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
- String
- Domain that HTTP cookie persistence should apply to.
- String
- Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values:
disable
,enable
. - Number
- Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
- String
- Limit HTTP cookie persistence to the specified path.
- String
- Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values:
disable
,same-ip
. - String
- Enable/disable verification that inserted HTTPS cookies are secure. Valid values:
disable
,enable
. - ldb
Method String - Method used to distribute sessions to real servers. Valid values:
static
,round-robin
,weighted
,first-alive
,http-host
. - object
Firewall StringAccessproxy Apigateway6Id - an identifier for the resource with format {{fosid}}.
- persistence String
- Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values:
none
,http-cookie
. - quic Property Map
- Quic. The structure of
quic
block is documented below. - realservers List<Property Map>
- Realservers. The structure of
realservers
block is documented below. - saml
Redirect String - Enable/disable SAML redirection after successful authentication. Valid values:
disable
,enable
. - saml
Server String - SAML service provider configuration for VIP authentication.
- scopetype String
- The scope of application of the resource. Valid values:
inherit
,adom
,global
. Theinherit
means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value isinherit
. - service String
- Service. Valid values:
http
,https
,tcp-forwarding
,samlsp
. - ssl
Algorithm String - Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values:
high
,medium
,low
. - ssl
Cipher List<Property Map>Suites - Ssl-Cipher-Suites. The structure of
ssl_cipher_suites
block is documented below. - ssl
Dh StringBits - Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values:
768
,1024
,1536
,2048
,3072
,4096
. - ssl
Max StringVersion - Highest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl
Min StringVersion - Lowest SSL/TLS version acceptable from a server. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
. - ssl
Renegotiation String - Enable/disable secure renegotiation to comply with RFC 5746. Valid values:
disable
,enable
. - ssl
Vpn StringWeb Portal - SSL-VPN web portal.
- url
Map String - URL pattern to match.
- url
Map StringType - Type of url-map. Valid values:
sub-string
,wildcard
,regex
. - virtual
Host String - Virtual host.
Supporting Types
ObjectFirewallAccessproxyApigateway6Quic, ObjectFirewallAccessproxyApigateway6QuicArgs
- Ack
Delay doubleExponent - ACK delay exponent (1 - 20, default = 3).
- Active
Connection doubleId Limit - Active connection ID limit (1 - 8, default = 2).
- Active
Migration string - Enable/disable active migration (default = disable). Valid values:
disable
,enable
. - Grease
Quic stringBit - Enable/disable grease QUIC bit (default = enable). Valid values:
disable
,enable
. - Max
Ack doubleDelay - Maximum ACK delay in milliseconds (1 - 16383, default = 25).
- Max
Datagram doubleFrame Size - Maximum datagram frame size in bytes (1 - 1500, default = 1500).
- Max
Idle doubleTimeout - Maximum idle timeout milliseconds (1 - 60000, default = 30000).
- Max
Udp doublePayload Size - Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
- Ack
Delay float64Exponent - ACK delay exponent (1 - 20, default = 3).
- Active
Connection float64Id Limit - Active connection ID limit (1 - 8, default = 2).
- Active
Migration string - Enable/disable active migration (default = disable). Valid values:
disable
,enable
. - Grease
Quic stringBit - Enable/disable grease QUIC bit (default = enable). Valid values:
disable
,enable
. - Max
Ack float64Delay - Maximum ACK delay in milliseconds (1 - 16383, default = 25).
- Max
Datagram float64Frame Size - Maximum datagram frame size in bytes (1 - 1500, default = 1500).
- Max
Idle float64Timeout - Maximum idle timeout milliseconds (1 - 60000, default = 30000).
- Max
Udp float64Payload Size - Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
- ack
Delay DoubleExponent - ACK delay exponent (1 - 20, default = 3).
- active
Connection DoubleId Limit - Active connection ID limit (1 - 8, default = 2).
- active
Migration String - Enable/disable active migration (default = disable). Valid values:
disable
,enable
. - grease
Quic StringBit - Enable/disable grease QUIC bit (default = enable). Valid values:
disable
,enable
. - max
Ack DoubleDelay - Maximum ACK delay in milliseconds (1 - 16383, default = 25).
- max
Datagram DoubleFrame Size - Maximum datagram frame size in bytes (1 - 1500, default = 1500).
- max
Idle DoubleTimeout - Maximum idle timeout milliseconds (1 - 60000, default = 30000).
- max
Udp DoublePayload Size - Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
- ack
Delay numberExponent - ACK delay exponent (1 - 20, default = 3).
- active
Connection numberId Limit - Active connection ID limit (1 - 8, default = 2).
- active
Migration string - Enable/disable active migration (default = disable). Valid values:
disable
,enable
. - grease
Quic stringBit - Enable/disable grease QUIC bit (default = enable). Valid values:
disable
,enable
. - max
Ack numberDelay - Maximum ACK delay in milliseconds (1 - 16383, default = 25).
- max
Datagram numberFrame Size - Maximum datagram frame size in bytes (1 - 1500, default = 1500).
- max
Idle numberTimeout - Maximum idle timeout milliseconds (1 - 60000, default = 30000).
- max
Udp numberPayload Size - Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
- ack_
delay_ floatexponent - ACK delay exponent (1 - 20, default = 3).
- active_
connection_ floatid_ limit - Active connection ID limit (1 - 8, default = 2).
- active_
migration str - Enable/disable active migration (default = disable). Valid values:
disable
,enable
. - grease_
quic_ strbit - Enable/disable grease QUIC bit (default = enable). Valid values:
disable
,enable
. - max_
ack_ floatdelay - Maximum ACK delay in milliseconds (1 - 16383, default = 25).
- max_
datagram_ floatframe_ size - Maximum datagram frame size in bytes (1 - 1500, default = 1500).
- max_
idle_ floattimeout - Maximum idle timeout milliseconds (1 - 60000, default = 30000).
- max_
udp_ floatpayload_ size - Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
- ack
Delay NumberExponent - ACK delay exponent (1 - 20, default = 3).
- active
Connection NumberId Limit - Active connection ID limit (1 - 8, default = 2).
- active
Migration String - Enable/disable active migration (default = disable). Valid values:
disable
,enable
. - grease
Quic StringBit - Enable/disable grease QUIC bit (default = enable). Valid values:
disable
,enable
. - max
Ack NumberDelay - Maximum ACK delay in milliseconds (1 - 16383, default = 25).
- max
Datagram NumberFrame Size - Maximum datagram frame size in bytes (1 - 1500, default = 1500).
- max
Idle NumberTimeout - Maximum idle timeout milliseconds (1 - 60000, default = 30000).
- max
Udp NumberPayload Size - Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
ObjectFirewallAccessproxyApigateway6Realserver, ObjectFirewallAccessproxyApigateway6RealserverArgs
- Addr
Type string - Type of address. Valid values:
fqdn
,ip
. - Address string
- Address or address group of the real server.
- Domain string
- Wildcard domain name of the real server.
- External
Auth string - Enable/disable use of external browser as user-agent for SAML user authentication. Valid values:
disable
,enable
. - Health
Check string - Enable to check the responsiveness of the real server before forwarding traffic. Valid values:
disable
,enable
. - Health
Check stringProto - Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values:
ping
,http
,tcp-connect
. - Holddown
Interval string - Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values:
disable
,enable
. - Http
Host string - HTTP server domain name in HTTP header.
- Id double
- Real server ID.
- Ip string
- IPv6 address of the real server.
- Mappedport string
- Port for communicating with the real server.
- Port double
- Port for communicating with the real server.
- Ssh
Client stringCert - Set access-proxy SSH client certificate profile.
- Ssh
Host stringKey - One or more server host key.
- Ssh
Host stringKey Validation - Enable/disable SSH real server host key validation. Valid values:
disable
,enable
. - Status string
- Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values:
active
,standby
,disable
. - Translate
Host string - Enable/disable translation of hostname/IP from virtual server to real server. Valid values:
disable
,enable
. - Tunnel
Encryption string - Tunnel encryption. Valid values:
disable
,enable
. - Type string
- TCP forwarding server type. Valid values:
tcp-forwarding
,ssh
. - Weight double
- Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
- Addr
Type string - Type of address. Valid values:
fqdn
,ip
. - Address string
- Address or address group of the real server.
- Domain string
- Wildcard domain name of the real server.
- External
Auth string - Enable/disable use of external browser as user-agent for SAML user authentication. Valid values:
disable
,enable
. - Health
Check string - Enable to check the responsiveness of the real server before forwarding traffic. Valid values:
disable
,enable
. - Health
Check stringProto - Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values:
ping
,http
,tcp-connect
. - Holddown
Interval string - Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values:
disable
,enable
. - Http
Host string - HTTP server domain name in HTTP header.
- Id float64
- Real server ID.
- Ip string
- IPv6 address of the real server.
- Mappedport string
- Port for communicating with the real server.
- Port float64
- Port for communicating with the real server.
- Ssh
Client stringCert - Set access-proxy SSH client certificate profile.
- Ssh
Host stringKey - One or more server host key.
- Ssh
Host stringKey Validation - Enable/disable SSH real server host key validation. Valid values:
disable
,enable
. - Status string
- Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values:
active
,standby
,disable
. - Translate
Host string - Enable/disable translation of hostname/IP from virtual server to real server. Valid values:
disable
,enable
. - Tunnel
Encryption string - Tunnel encryption. Valid values:
disable
,enable
. - Type string
- TCP forwarding server type. Valid values:
tcp-forwarding
,ssh
. - Weight float64
- Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
- addr
Type String - Type of address. Valid values:
fqdn
,ip
. - address String
- Address or address group of the real server.
- domain String
- Wildcard domain name of the real server.
- external
Auth String - Enable/disable use of external browser as user-agent for SAML user authentication. Valid values:
disable
,enable
. - health
Check String - Enable to check the responsiveness of the real server before forwarding traffic. Valid values:
disable
,enable
. - health
Check StringProto - Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values:
ping
,http
,tcp-connect
. - holddown
Interval String - Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values:
disable
,enable
. - http
Host String - HTTP server domain name in HTTP header.
- id Double
- Real server ID.
- ip String
- IPv6 address of the real server.
- mappedport String
- Port for communicating with the real server.
- port Double
- Port for communicating with the real server.
- ssh
Client StringCert - Set access-proxy SSH client certificate profile.
- ssh
Host StringKey - One or more server host key.
- ssh
Host StringKey Validation - Enable/disable SSH real server host key validation. Valid values:
disable
,enable
. - status String
- Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values:
active
,standby
,disable
. - translate
Host String - Enable/disable translation of hostname/IP from virtual server to real server. Valid values:
disable
,enable
. - tunnel
Encryption String - Tunnel encryption. Valid values:
disable
,enable
. - type String
- TCP forwarding server type. Valid values:
tcp-forwarding
,ssh
. - weight Double
- Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
- addr
Type string - Type of address. Valid values:
fqdn
,ip
. - address string
- Address or address group of the real server.
- domain string
- Wildcard domain name of the real server.
- external
Auth string - Enable/disable use of external browser as user-agent for SAML user authentication. Valid values:
disable
,enable
. - health
Check string - Enable to check the responsiveness of the real server before forwarding traffic. Valid values:
disable
,enable
. - health
Check stringProto - Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values:
ping
,http
,tcp-connect
. - holddown
Interval string - Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values:
disable
,enable
. - http
Host string - HTTP server domain name in HTTP header.
- id number
- Real server ID.
- ip string
- IPv6 address of the real server.
- mappedport string
- Port for communicating with the real server.
- port number
- Port for communicating with the real server.
- ssh
Client stringCert - Set access-proxy SSH client certificate profile.
- ssh
Host stringKey - One or more server host key.
- ssh
Host stringKey Validation - Enable/disable SSH real server host key validation. Valid values:
disable
,enable
. - status string
- Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values:
active
,standby
,disable
. - translate
Host string - Enable/disable translation of hostname/IP from virtual server to real server. Valid values:
disable
,enable
. - tunnel
Encryption string - Tunnel encryption. Valid values:
disable
,enable
. - type string
- TCP forwarding server type. Valid values:
tcp-forwarding
,ssh
. - weight number
- Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
- addr_
type str - Type of address. Valid values:
fqdn
,ip
. - address str
- Address or address group of the real server.
- domain str
- Wildcard domain name of the real server.
- external_
auth str - Enable/disable use of external browser as user-agent for SAML user authentication. Valid values:
disable
,enable
. - health_
check str - Enable to check the responsiveness of the real server before forwarding traffic. Valid values:
disable
,enable
. - health_
check_ strproto - Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values:
ping
,http
,tcp-connect
. - holddown_
interval str - Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values:
disable
,enable
. - http_
host str - HTTP server domain name in HTTP header.
- id float
- Real server ID.
- ip str
- IPv6 address of the real server.
- mappedport str
- Port for communicating with the real server.
- port float
- Port for communicating with the real server.
- ssh_
client_ strcert - Set access-proxy SSH client certificate profile.
- ssh_
host_ strkey - One or more server host key.
- ssh_
host_ strkey_ validation - Enable/disable SSH real server host key validation. Valid values:
disable
,enable
. - status str
- Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values:
active
,standby
,disable
. - translate_
host str - Enable/disable translation of hostname/IP from virtual server to real server. Valid values:
disable
,enable
. - tunnel_
encryption str - Tunnel encryption. Valid values:
disable
,enable
. - type str
- TCP forwarding server type. Valid values:
tcp-forwarding
,ssh
. - weight float
- Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
- addr
Type String - Type of address. Valid values:
fqdn
,ip
. - address String
- Address or address group of the real server.
- domain String
- Wildcard domain name of the real server.
- external
Auth String - Enable/disable use of external browser as user-agent for SAML user authentication. Valid values:
disable
,enable
. - health
Check String - Enable to check the responsiveness of the real server before forwarding traffic. Valid values:
disable
,enable
. - health
Check StringProto - Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values:
ping
,http
,tcp-connect
. - holddown
Interval String - Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values:
disable
,enable
. - http
Host String - HTTP server domain name in HTTP header.
- id Number
- Real server ID.
- ip String
- IPv6 address of the real server.
- mappedport String
- Port for communicating with the real server.
- port Number
- Port for communicating with the real server.
- ssh
Client StringCert - Set access-proxy SSH client certificate profile.
- ssh
Host StringKey - One or more server host key.
- ssh
Host StringKey Validation - Enable/disable SSH real server host key validation. Valid values:
disable
,enable
. - status String
- Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values:
active
,standby
,disable
. - translate
Host String - Enable/disable translation of hostname/IP from virtual server to real server. Valid values:
disable
,enable
. - tunnel
Encryption String - Tunnel encryption. Valid values:
disable
,enable
. - type String
- TCP forwarding server type. Valid values:
tcp-forwarding
,ssh
. - weight Number
- Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
ObjectFirewallAccessproxyApigateway6SslCipherSuite, ObjectFirewallAccessproxyApigateway6SslCipherSuiteArgs
- Cipher string
- Cipher suite name. Valid values:
TLS-RSA-WITH-RC4-128-MD5
,TLS-RSA-WITH-RC4-128-SHA
,TLS-RSA-WITH-DES-CBC-SHA
,TLS-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA
,TLS-RSA-WITH-AES-256-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA256
,TLS-RSA-WITH-AES-256-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-RSA-WITH-SEED-CBC-SHA
,TLS-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-RSA-WITH-DES-CBC-SHA
,TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-RSA-WITH-SEED-CBC-SHA
,TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-RC4-128-SHA
,TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA
,TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-DHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-128-GCM-SHA256
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384
,TLS-RSA-WITH-AES-128-GCM-SHA256
,TLS-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-DSS-WITH-SEED-CBC-SHA
,TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-DSS-WITH-DES-CBC-SHA
,TLS-AES-128-GCM-SHA256
,TLS-AES-256-GCM-SHA384
,TLS-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA
. - Priority double
- SSL/TLS cipher suites priority.
- Versions List<string>
- SSL/TLS versions that the cipher suite can be used with. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
.
- Cipher string
- Cipher suite name. Valid values:
TLS-RSA-WITH-RC4-128-MD5
,TLS-RSA-WITH-RC4-128-SHA
,TLS-RSA-WITH-DES-CBC-SHA
,TLS-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA
,TLS-RSA-WITH-AES-256-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA256
,TLS-RSA-WITH-AES-256-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-RSA-WITH-SEED-CBC-SHA
,TLS-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-RSA-WITH-DES-CBC-SHA
,TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-RSA-WITH-SEED-CBC-SHA
,TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-RC4-128-SHA
,TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA
,TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-DHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-128-GCM-SHA256
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384
,TLS-RSA-WITH-AES-128-GCM-SHA256
,TLS-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-DSS-WITH-SEED-CBC-SHA
,TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-DSS-WITH-DES-CBC-SHA
,TLS-AES-128-GCM-SHA256
,TLS-AES-256-GCM-SHA384
,TLS-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA
. - Priority float64
- SSL/TLS cipher suites priority.
- Versions []string
- SSL/TLS versions that the cipher suite can be used with. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
.
- cipher String
- Cipher suite name. Valid values:
TLS-RSA-WITH-RC4-128-MD5
,TLS-RSA-WITH-RC4-128-SHA
,TLS-RSA-WITH-DES-CBC-SHA
,TLS-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA
,TLS-RSA-WITH-AES-256-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA256
,TLS-RSA-WITH-AES-256-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-RSA-WITH-SEED-CBC-SHA
,TLS-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-RSA-WITH-DES-CBC-SHA
,TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-RSA-WITH-SEED-CBC-SHA
,TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-RC4-128-SHA
,TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA
,TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-DHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-128-GCM-SHA256
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384
,TLS-RSA-WITH-AES-128-GCM-SHA256
,TLS-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-DSS-WITH-SEED-CBC-SHA
,TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-DSS-WITH-DES-CBC-SHA
,TLS-AES-128-GCM-SHA256
,TLS-AES-256-GCM-SHA384
,TLS-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA
. - priority Double
- SSL/TLS cipher suites priority.
- versions List<String>
- SSL/TLS versions that the cipher suite can be used with. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
.
- cipher string
- Cipher suite name. Valid values:
TLS-RSA-WITH-RC4-128-MD5
,TLS-RSA-WITH-RC4-128-SHA
,TLS-RSA-WITH-DES-CBC-SHA
,TLS-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA
,TLS-RSA-WITH-AES-256-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA256
,TLS-RSA-WITH-AES-256-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-RSA-WITH-SEED-CBC-SHA
,TLS-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-RSA-WITH-DES-CBC-SHA
,TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-RSA-WITH-SEED-CBC-SHA
,TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-RC4-128-SHA
,TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA
,TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-DHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-128-GCM-SHA256
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384
,TLS-RSA-WITH-AES-128-GCM-SHA256
,TLS-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-DSS-WITH-SEED-CBC-SHA
,TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-DSS-WITH-DES-CBC-SHA
,TLS-AES-128-GCM-SHA256
,TLS-AES-256-GCM-SHA384
,TLS-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA
. - priority number
- SSL/TLS cipher suites priority.
- versions string[]
- SSL/TLS versions that the cipher suite can be used with. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
.
- cipher str
- Cipher suite name. Valid values:
TLS-RSA-WITH-RC4-128-MD5
,TLS-RSA-WITH-RC4-128-SHA
,TLS-RSA-WITH-DES-CBC-SHA
,TLS-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA
,TLS-RSA-WITH-AES-256-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA256
,TLS-RSA-WITH-AES-256-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-RSA-WITH-SEED-CBC-SHA
,TLS-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-RSA-WITH-DES-CBC-SHA
,TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-RSA-WITH-SEED-CBC-SHA
,TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-RC4-128-SHA
,TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA
,TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-DHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-128-GCM-SHA256
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384
,TLS-RSA-WITH-AES-128-GCM-SHA256
,TLS-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-DSS-WITH-SEED-CBC-SHA
,TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-DSS-WITH-DES-CBC-SHA
,TLS-AES-128-GCM-SHA256
,TLS-AES-256-GCM-SHA384
,TLS-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA
. - priority float
- SSL/TLS cipher suites priority.
- versions Sequence[str]
- SSL/TLS versions that the cipher suite can be used with. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
.
- cipher String
- Cipher suite name. Valid values:
TLS-RSA-WITH-RC4-128-MD5
,TLS-RSA-WITH-RC4-128-SHA
,TLS-RSA-WITH-DES-CBC-SHA
,TLS-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA
,TLS-RSA-WITH-AES-256-CBC-SHA
,TLS-RSA-WITH-AES-128-CBC-SHA256
,TLS-RSA-WITH-AES-256-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-RSA-WITH-SEED-CBC-SHA
,TLS-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-RSA-WITH-DES-CBC-SHA
,TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA
,TLS-DHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-DHE-RSA-WITH-AES-256-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-RSA-WITH-SEED-CBC-SHA
,TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-RC4-128-SHA
,TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA
,TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256
,TLS-DHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-DHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA
,TLS-DHE-DSS-WITH-AES-128-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-128-GCM-SHA256
,TLS-DHE-DSS-WITH-AES-256-CBC-SHA256
,TLS-DHE-DSS-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA
,TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384
,TLS-RSA-WITH-AES-128-GCM-SHA256
,TLS-RSA-WITH-AES-256-GCM-SHA384
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA
,TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256
,TLS-DHE-DSS-WITH-SEED-CBC-SHA
,TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256
,TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384
,TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256
,TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384
,TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA
,TLS-DHE-DSS-WITH-DES-CBC-SHA
,TLS-AES-128-GCM-SHA256
,TLS-AES-256-GCM-SHA384
,TLS-CHACHA20-POLY1305-SHA256
,TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA
. - priority Number
- SSL/TLS cipher suites priority.
- versions List<String>
- SSL/TLS versions that the cipher suite can be used with. Valid values:
tls-1.0
,tls-1.1
,tls-1.2
,tls-1.3
.
Import
ObjectFirewall AccessProxyApiGateway6 can be imported using any of these accepted formats:
Set import_options = [“access_proxy=YOUR_VALUE”] in the provider section.
$ export “FORTIMANAGER_IMPORT_TABLE”=“true”
$ pulumi import fortimanager:index/objectFirewallAccessproxyApigateway6:ObjectFirewallAccessproxyApigateway6 labelname {{fosid}}
$ unset “FORTIMANAGER_IMPORT_TABLE”
-> Hint: The scopetype and adom for import will directly inherit the scopetype and adom configuration of the provider.
To learn more about importing existing cloud resources, see Importing resources.
Package Details
- Repository
- fortimanager fortinetdev/terraform-provider-fortimanager
- License
- Notes
- This Pulumi package is based on the
fortimanager
Terraform Provider.