Class NetworkAclEntry
- All Implemented Interfaces:
Serializable
,SdkPojo
,ToCopyableBuilder<NetworkAclEntry.Builder,
NetworkAclEntry>
Describes a rule in a network ACL.
Each network ACL has a set of numbered ingress rules and a separate set of numbered egress rules. When determining whether a packet should be allowed in or out of a subnet associated with the network ACL, Amazon Web Services processes the entries in the network ACL according to the rule numbers, in ascending order.
When you manage an individual network ACL, you explicitly specify the rule numbers. When you specify the network ACL rules in a Firewall Manager policy, you provide the rules to run first, in the order that you want them to run, and the rules to run last, in the order that you want them to run. Firewall Manager assigns the rule numbers for you when you save the network ACL policy specification.
- See Also:
-
Nested Class Summary
Nested Classes -
Method Summary
Modifier and TypeMethodDescriptionstatic NetworkAclEntry.Builder
builder()
final String
The IPv4 network range to allow or deny, in CIDR notation.final Boolean
egress()
Indicates whether the rule is an egress, or outbound, rule (applied to traffic leaving the subnet).final boolean
final boolean
equalsBySdkFields
(Object obj) Indicates whether some other object is "equal to" this one by SDK fields.final <T> Optional
<T> getValueForField
(String fieldName, Class<T> clazz) final int
hashCode()
final NetworkAclIcmpTypeCode
ICMP protocol: The ICMP type and code.final String
The IPv6 network range to allow or deny, in CIDR notation.final NetworkAclPortRange
TCP or UDP protocols: The range of ports the rule applies to.final String
protocol()
The protocol number.final NetworkAclRuleAction
Indicates whether to allow or deny the traffic that matches the rule.final String
Indicates whether to allow or deny the traffic that matches the rule.static Class
<? extends NetworkAclEntry.Builder> Take this object and create a builder that contains all of the current property values of this object.final String
toString()
Returns a string representation of this object.Methods inherited from interface software.amazon.awssdk.utils.builder.ToCopyableBuilder
copy
-
Method Details
-
icmpTypeCode
ICMP protocol: The ICMP type and code.
- Returns:
- ICMP protocol: The ICMP type and code.
-
protocol
The protocol number. A value of "-1" means all protocols.
- Returns:
- The protocol number. A value of "-1" means all protocols.
-
portRange
TCP or UDP protocols: The range of ports the rule applies to.
- Returns:
- TCP or UDP protocols: The range of ports the rule applies to.
-
cidrBlock
The IPv4 network range to allow or deny, in CIDR notation.
- Returns:
- The IPv4 network range to allow or deny, in CIDR notation.
-
ipv6CidrBlock
The IPv6 network range to allow or deny, in CIDR notation.
- Returns:
- The IPv6 network range to allow or deny, in CIDR notation.
-
ruleAction
Indicates whether to allow or deny the traffic that matches the rule.
If the service returns an enum value that is not available in the current SDK version,
ruleAction
will returnNetworkAclRuleAction.UNKNOWN_TO_SDK_VERSION
. The raw value returned by the service is available fromruleActionAsString()
.- Returns:
- Indicates whether to allow or deny the traffic that matches the rule.
- See Also:
-
ruleActionAsString
Indicates whether to allow or deny the traffic that matches the rule.
If the service returns an enum value that is not available in the current SDK version,
ruleAction
will returnNetworkAclRuleAction.UNKNOWN_TO_SDK_VERSION
. The raw value returned by the service is available fromruleActionAsString()
.- Returns:
- Indicates whether to allow or deny the traffic that matches the rule.
- See Also:
-
egress
Indicates whether the rule is an egress, or outbound, rule (applied to traffic leaving the subnet). If it's not an egress rule, then it's an ingress, or inbound, rule.
- Returns:
- Indicates whether the rule is an egress, or outbound, rule (applied to traffic leaving the subnet). If it's not an egress rule, then it's an ingress, or inbound, rule.
-
toBuilder
Description copied from interface:ToCopyableBuilder
Take this object and create a builder that contains all of the current property values of this object.- Specified by:
toBuilder
in interfaceToCopyableBuilder<NetworkAclEntry.Builder,
NetworkAclEntry> - Returns:
- a builder for type T
-
builder
-
serializableBuilderClass
-
hashCode
-
equals
-
equalsBySdkFields
Description copied from interface:SdkPojo
Indicates whether some other object is "equal to" this one by SDK fields. An SDK field is a modeled, non-inherited field in anSdkPojo
class, and is generated based on a service model.If an
SdkPojo
class does not have any inherited fields,equalsBySdkFields
andequals
are essentially the same.- Specified by:
equalsBySdkFields
in interfaceSdkPojo
- Parameters:
obj
- the object to be compared with- Returns:
- true if the other object equals to this object by sdk fields, false otherwise.
-
toString
-
getValueForField
-
sdkFields
-