1. Packages
  2. Fortimanager Provider
  3. API Docs
  4. ObjectFirewallAccessproxyApigateway6
fortimanager 1.13.0 published on Thursday, Mar 13, 2025 by fortinetdev

fortimanager.ObjectFirewallAccessproxyApigateway6

Explore with Pulumi AI

Set IPv6 API Gateway.

This resource is a sub resource for variable api_gateway6 of resource fortimanager.ObjectFirewallAccessproxy. Conflict and overwrite may occur if use both of them. The following variables have sub resource. Avoid using them together, otherwise conflicts and overwrites may occur.

  • quic: fortimanager.ObjectFirewallAccessproxyApigateway6Quic
  • realservers: fortimanager.ObjectFirewallAccessproxyApigateway6Realservers
  • ssl_cipher_suites: fortimanager.ObjectFirewallAccessproxyApigateway6Sslciphersuites

Example Usage

import * as pulumi from "@pulumi/pulumi";
import * as fortimanager from "@pulumi/fortimanager";

const trnameObjectFirewallAccessproxy = new fortimanager.ObjectFirewallAccessproxy("trnameObjectFirewallAccessproxy", {});
const trnameObjectFirewallAccessproxyApigateway6 = new fortimanager.ObjectFirewallAccessproxyApigateway6("trnameObjectFirewallAccessproxyApigateway6", {
    accessProxy: trnameObjectFirewallAccessproxy.name,
    fosid: 1,
    httpCookieAge: 70,
    httpCookieDomain: "domin",
    httpCookieDomainFromHost: "enable",
}, {
    dependsOn: [trnameObjectFirewallAccessproxy],
});
Copy
import pulumi
import pulumi_fortimanager as fortimanager

trname_object_firewall_accessproxy = fortimanager.ObjectFirewallAccessproxy("trnameObjectFirewallAccessproxy")
trname_object_firewall_accessproxy_apigateway6 = fortimanager.ObjectFirewallAccessproxyApigateway6("trnameObjectFirewallAccessproxyApigateway6",
    access_proxy=trname_object_firewall_accessproxy.name,
    fosid=1,
    http_cookie_age=70,
    http_cookie_domain="domin",
    http_cookie_domain_from_host="enable",
    opts = pulumi.ResourceOptions(depends_on=[trname_object_firewall_accessproxy]))
Copy
package main

import (
	"github.com/pulumi/pulumi-terraform-provider/sdks/go/fortimanager/fortimanager"
	"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
)

func main() {
	pulumi.Run(func(ctx *pulumi.Context) error {
		trnameObjectFirewallAccessproxy, err := fortimanager.NewObjectFirewallAccessproxy(ctx, "trnameObjectFirewallAccessproxy", nil)
		if err != nil {
			return err
		}
		_, err = fortimanager.NewObjectFirewallAccessproxyApigateway6(ctx, "trnameObjectFirewallAccessproxyApigateway6", &fortimanager.ObjectFirewallAccessproxyApigateway6Args{
			AccessProxy:              trnameObjectFirewallAccessproxy.Name,
			Fosid:                    pulumi.Float64(1),
			HttpCookieAge:            pulumi.Float64(70),
			HttpCookieDomain:         pulumi.String("domin"),
			HttpCookieDomainFromHost: pulumi.String("enable"),
		}, pulumi.DependsOn([]pulumi.Resource{
			trnameObjectFirewallAccessproxy,
		}))
		if err != nil {
			return err
		}
		return nil
	})
}
Copy
using System.Collections.Generic;
using System.Linq;
using Pulumi;
using Fortimanager = Pulumi.Fortimanager;

return await Deployment.RunAsync(() => 
{
    var trnameObjectFirewallAccessproxy = new Fortimanager.ObjectFirewallAccessproxy("trnameObjectFirewallAccessproxy");

    var trnameObjectFirewallAccessproxyApigateway6 = new Fortimanager.ObjectFirewallAccessproxyApigateway6("trnameObjectFirewallAccessproxyApigateway6", new()
    {
        AccessProxy = trnameObjectFirewallAccessproxy.Name,
        Fosid = 1,
        HttpCookieAge = 70,
        HttpCookieDomain = "domin",
        HttpCookieDomainFromHost = "enable",
    }, new CustomResourceOptions
    {
        DependsOn =
        {
            trnameObjectFirewallAccessproxy,
        },
    });

});
Copy
package generated_program;

import com.pulumi.Context;
import com.pulumi.Pulumi;
import com.pulumi.core.Output;
import com.pulumi.fortimanager.ObjectFirewallAccessproxy;
import com.pulumi.fortimanager.ObjectFirewallAccessproxyApigateway6;
import com.pulumi.fortimanager.ObjectFirewallAccessproxyApigateway6Args;
import com.pulumi.resources.CustomResourceOptions;
import java.util.List;
import java.util.ArrayList;
import java.util.Map;
import java.io.File;
import java.nio.file.Files;
import java.nio.file.Paths;

public class App {
    public static void main(String[] args) {
        Pulumi.run(App::stack);
    }

    public static void stack(Context ctx) {
        var trnameObjectFirewallAccessproxy = new ObjectFirewallAccessproxy("trnameObjectFirewallAccessproxy");

        var trnameObjectFirewallAccessproxyApigateway6 = new ObjectFirewallAccessproxyApigateway6("trnameObjectFirewallAccessproxyApigateway6", ObjectFirewallAccessproxyApigateway6Args.builder()
            .accessProxy(trnameObjectFirewallAccessproxy.name())
            .fosid(1)
            .httpCookieAge(70)
            .httpCookieDomain("domin")
            .httpCookieDomainFromHost("enable")
            .build(), CustomResourceOptions.builder()
                .dependsOn(trnameObjectFirewallAccessproxy)
                .build());

    }
}
Copy
resources:
  trnameObjectFirewallAccessproxyApigateway6:
    type: fortimanager:ObjectFirewallAccessproxyApigateway6
    properties:
      accessProxy: ${trnameObjectFirewallAccessproxy.name}
      fosid: 1
      httpCookieAge: 70
      httpCookieDomain: domin
      httpCookieDomainFromHost: enable
    options:
      dependsOn:
        - ${trnameObjectFirewallAccessproxy}
  trnameObjectFirewallAccessproxy:
    type: fortimanager:ObjectFirewallAccessproxy
Copy

Create ObjectFirewallAccessproxyApigateway6 Resource

Resources are created with functions called constructors. To learn more about declaring and configuring resources, see Resources.

Constructor syntax

new ObjectFirewallAccessproxyApigateway6(name: string, args: ObjectFirewallAccessproxyApigateway6Args, opts?: CustomResourceOptions);
@overload
def ObjectFirewallAccessproxyApigateway6(resource_name: str,
                                         args: ObjectFirewallAccessproxyApigateway6Args,
                                         opts: Optional[ResourceOptions] = None)

@overload
def ObjectFirewallAccessproxyApigateway6(resource_name: str,
                                         opts: Optional[ResourceOptions] = None,
                                         access_proxy: Optional[str] = None,
                                         adom: Optional[str] = None,
                                         applications: Optional[Sequence[str]] = None,
                                         dynamic_sort_subtable: Optional[str] = None,
                                         fosid: Optional[float] = None,
                                         h2_support: Optional[str] = None,
                                         h3_support: Optional[str] = None,
                                         http_cookie_age: Optional[float] = None,
                                         http_cookie_domain: Optional[str] = None,
                                         http_cookie_domain_from_host: Optional[str] = None,
                                         http_cookie_generation: Optional[float] = None,
                                         http_cookie_path: Optional[str] = None,
                                         http_cookie_share: Optional[str] = None,
                                         https_cookie_secure: Optional[str] = None,
                                         ldb_method: Optional[str] = None,
                                         object_firewall_accessproxy_apigateway6_id: Optional[str] = None,
                                         persistence: Optional[str] = None,
                                         quic: Optional[ObjectFirewallAccessproxyApigateway6QuicArgs] = None,
                                         realservers: Optional[Sequence[ObjectFirewallAccessproxyApigateway6RealserverArgs]] = None,
                                         saml_redirect: Optional[str] = None,
                                         saml_server: Optional[str] = None,
                                         scopetype: Optional[str] = None,
                                         service: Optional[str] = None,
                                         ssl_algorithm: Optional[str] = None,
                                         ssl_cipher_suites: Optional[Sequence[ObjectFirewallAccessproxyApigateway6SslCipherSuiteArgs]] = None,
                                         ssl_dh_bits: Optional[str] = None,
                                         ssl_max_version: Optional[str] = None,
                                         ssl_min_version: Optional[str] = None,
                                         ssl_renegotiation: Optional[str] = None,
                                         ssl_vpn_web_portal: Optional[str] = None,
                                         url_map: Optional[str] = None,
                                         url_map_type: Optional[str] = None,
                                         virtual_host: Optional[str] = None)
func NewObjectFirewallAccessproxyApigateway6(ctx *Context, name string, args ObjectFirewallAccessproxyApigateway6Args, opts ...ResourceOption) (*ObjectFirewallAccessproxyApigateway6, error)
public ObjectFirewallAccessproxyApigateway6(string name, ObjectFirewallAccessproxyApigateway6Args args, CustomResourceOptions? opts = null)
public ObjectFirewallAccessproxyApigateway6(String name, ObjectFirewallAccessproxyApigateway6Args args)
public ObjectFirewallAccessproxyApigateway6(String name, ObjectFirewallAccessproxyApigateway6Args args, CustomResourceOptions options)
type: fortimanager:ObjectFirewallAccessproxyApigateway6
properties: # The arguments to resource properties.
options: # Bag of options to control resource's behavior.

Parameters

name This property is required. string
The unique name of the resource.
args This property is required. ObjectFirewallAccessproxyApigateway6Args
The arguments to resource properties.
opts CustomResourceOptions
Bag of options to control resource's behavior.
resource_name This property is required. str
The unique name of the resource.
args This property is required. ObjectFirewallAccessproxyApigateway6Args
The arguments to resource properties.
opts ResourceOptions
Bag of options to control resource's behavior.
ctx Context
Context object for the current deployment.
name This property is required. string
The unique name of the resource.
args This property is required. ObjectFirewallAccessproxyApigateway6Args
The arguments to resource properties.
opts ResourceOption
Bag of options to control resource's behavior.
name This property is required. string
The unique name of the resource.
args This property is required. ObjectFirewallAccessproxyApigateway6Args
The arguments to resource properties.
opts CustomResourceOptions
Bag of options to control resource's behavior.
name This property is required. String
The unique name of the resource.
args This property is required. ObjectFirewallAccessproxyApigateway6Args
The arguments to resource properties.
options CustomResourceOptions
Bag of options to control resource's behavior.

Constructor example

The following reference example uses placeholder values for all input properties.

var objectFirewallAccessproxyApigateway6Resource = new Fortimanager.ObjectFirewallAccessproxyApigateway6("objectFirewallAccessproxyApigateway6Resource", new()
{
    AccessProxy = "string",
    Adom = "string",
    Applications = new[]
    {
        "string",
    },
    DynamicSortSubtable = "string",
    Fosid = 0,
    H2Support = "string",
    H3Support = "string",
    HttpCookieAge = 0,
    HttpCookieDomain = "string",
    HttpCookieDomainFromHost = "string",
    HttpCookieGeneration = 0,
    HttpCookiePath = "string",
    HttpCookieShare = "string",
    HttpsCookieSecure = "string",
    LdbMethod = "string",
    ObjectFirewallAccessproxyApigateway6Id = "string",
    Persistence = "string",
    Quic = new Fortimanager.Inputs.ObjectFirewallAccessproxyApigateway6QuicArgs
    {
        AckDelayExponent = 0,
        ActiveConnectionIdLimit = 0,
        ActiveMigration = "string",
        GreaseQuicBit = "string",
        MaxAckDelay = 0,
        MaxDatagramFrameSize = 0,
        MaxIdleTimeout = 0,
        MaxUdpPayloadSize = 0,
    },
    Realservers = new[]
    {
        new Fortimanager.Inputs.ObjectFirewallAccessproxyApigateway6RealserverArgs
        {
            AddrType = "string",
            Address = "string",
            Domain = "string",
            ExternalAuth = "string",
            HealthCheck = "string",
            HealthCheckProto = "string",
            HolddownInterval = "string",
            HttpHost = "string",
            Id = 0,
            Ip = "string",
            Mappedport = "string",
            Port = 0,
            SshClientCert = "string",
            SshHostKey = "string",
            SshHostKeyValidation = "string",
            Status = "string",
            TranslateHost = "string",
            TunnelEncryption = "string",
            Type = "string",
            Weight = 0,
        },
    },
    SamlRedirect = "string",
    SamlServer = "string",
    Scopetype = "string",
    Service = "string",
    SslAlgorithm = "string",
    SslCipherSuites = new[]
    {
        new Fortimanager.Inputs.ObjectFirewallAccessproxyApigateway6SslCipherSuiteArgs
        {
            Cipher = "string",
            Priority = 0,
            Versions = new[]
            {
                "string",
            },
        },
    },
    SslDhBits = "string",
    SslMaxVersion = "string",
    SslMinVersion = "string",
    SslRenegotiation = "string",
    SslVpnWebPortal = "string",
    UrlMap = "string",
    UrlMapType = "string",
    VirtualHost = "string",
});
Copy
example, err := fortimanager.NewObjectFirewallAccessproxyApigateway6(ctx, "objectFirewallAccessproxyApigateway6Resource", &fortimanager.ObjectFirewallAccessproxyApigateway6Args{
AccessProxy: pulumi.String("string"),
Adom: pulumi.String("string"),
Applications: pulumi.StringArray{
pulumi.String("string"),
},
DynamicSortSubtable: pulumi.String("string"),
Fosid: pulumi.Float64(0),
H2Support: pulumi.String("string"),
H3Support: pulumi.String("string"),
HttpCookieAge: pulumi.Float64(0),
HttpCookieDomain: pulumi.String("string"),
HttpCookieDomainFromHost: pulumi.String("string"),
HttpCookieGeneration: pulumi.Float64(0),
HttpCookiePath: pulumi.String("string"),
HttpCookieShare: pulumi.String("string"),
HttpsCookieSecure: pulumi.String("string"),
LdbMethod: pulumi.String("string"),
ObjectFirewallAccessproxyApigateway6Id: pulumi.String("string"),
Persistence: pulumi.String("string"),
Quic: &.ObjectFirewallAccessproxyApigateway6QuicTypeArgs{
AckDelayExponent: pulumi.Float64(0),
ActiveConnectionIdLimit: pulumi.Float64(0),
ActiveMigration: pulumi.String("string"),
GreaseQuicBit: pulumi.String("string"),
MaxAckDelay: pulumi.Float64(0),
MaxDatagramFrameSize: pulumi.Float64(0),
MaxIdleTimeout: pulumi.Float64(0),
MaxUdpPayloadSize: pulumi.Float64(0),
},
Realservers: .ObjectFirewallAccessproxyApigateway6RealserverArray{
&.ObjectFirewallAccessproxyApigateway6RealserverArgs{
AddrType: pulumi.String("string"),
Address: pulumi.String("string"),
Domain: pulumi.String("string"),
ExternalAuth: pulumi.String("string"),
HealthCheck: pulumi.String("string"),
HealthCheckProto: pulumi.String("string"),
HolddownInterval: pulumi.String("string"),
HttpHost: pulumi.String("string"),
Id: pulumi.Float64(0),
Ip: pulumi.String("string"),
Mappedport: pulumi.String("string"),
Port: pulumi.Float64(0),
SshClientCert: pulumi.String("string"),
SshHostKey: pulumi.String("string"),
SshHostKeyValidation: pulumi.String("string"),
Status: pulumi.String("string"),
TranslateHost: pulumi.String("string"),
TunnelEncryption: pulumi.String("string"),
Type: pulumi.String("string"),
Weight: pulumi.Float64(0),
},
},
SamlRedirect: pulumi.String("string"),
SamlServer: pulumi.String("string"),
Scopetype: pulumi.String("string"),
Service: pulumi.String("string"),
SslAlgorithm: pulumi.String("string"),
SslCipherSuites: .ObjectFirewallAccessproxyApigateway6SslCipherSuiteArray{
&.ObjectFirewallAccessproxyApigateway6SslCipherSuiteArgs{
Cipher: pulumi.String("string"),
Priority: pulumi.Float64(0),
Versions: pulumi.StringArray{
pulumi.String("string"),
},
},
},
SslDhBits: pulumi.String("string"),
SslMaxVersion: pulumi.String("string"),
SslMinVersion: pulumi.String("string"),
SslRenegotiation: pulumi.String("string"),
SslVpnWebPortal: pulumi.String("string"),
UrlMap: pulumi.String("string"),
UrlMapType: pulumi.String("string"),
VirtualHost: pulumi.String("string"),
})
Copy
var objectFirewallAccessproxyApigateway6Resource = new ObjectFirewallAccessproxyApigateway6("objectFirewallAccessproxyApigateway6Resource", ObjectFirewallAccessproxyApigateway6Args.builder()
    .accessProxy("string")
    .adom("string")
    .applications("string")
    .dynamicSortSubtable("string")
    .fosid(0)
    .h2Support("string")
    .h3Support("string")
    .httpCookieAge(0)
    .httpCookieDomain("string")
    .httpCookieDomainFromHost("string")
    .httpCookieGeneration(0)
    .httpCookiePath("string")
    .httpCookieShare("string")
    .httpsCookieSecure("string")
    .ldbMethod("string")
    .objectFirewallAccessproxyApigateway6Id("string")
    .persistence("string")
    .quic(ObjectFirewallAccessproxyApigateway6QuicArgs.builder()
        .ackDelayExponent(0)
        .activeConnectionIdLimit(0)
        .activeMigration("string")
        .greaseQuicBit("string")
        .maxAckDelay(0)
        .maxDatagramFrameSize(0)
        .maxIdleTimeout(0)
        .maxUdpPayloadSize(0)
        .build())
    .realservers(ObjectFirewallAccessproxyApigateway6RealserverArgs.builder()
        .addrType("string")
        .address("string")
        .domain("string")
        .externalAuth("string")
        .healthCheck("string")
        .healthCheckProto("string")
        .holddownInterval("string")
        .httpHost("string")
        .id(0)
        .ip("string")
        .mappedport("string")
        .port(0)
        .sshClientCert("string")
        .sshHostKey("string")
        .sshHostKeyValidation("string")
        .status("string")
        .translateHost("string")
        .tunnelEncryption("string")
        .type("string")
        .weight(0)
        .build())
    .samlRedirect("string")
    .samlServer("string")
    .scopetype("string")
    .service("string")
    .sslAlgorithm("string")
    .sslCipherSuites(ObjectFirewallAccessproxyApigateway6SslCipherSuiteArgs.builder()
        .cipher("string")
        .priority(0)
        .versions("string")
        .build())
    .sslDhBits("string")
    .sslMaxVersion("string")
    .sslMinVersion("string")
    .sslRenegotiation("string")
    .sslVpnWebPortal("string")
    .urlMap("string")
    .urlMapType("string")
    .virtualHost("string")
    .build());
Copy
object_firewall_accessproxy_apigateway6_resource = fortimanager.ObjectFirewallAccessproxyApigateway6("objectFirewallAccessproxyApigateway6Resource",
    access_proxy="string",
    adom="string",
    applications=["string"],
    dynamic_sort_subtable="string",
    fosid=0,
    h2_support="string",
    h3_support="string",
    http_cookie_age=0,
    http_cookie_domain="string",
    http_cookie_domain_from_host="string",
    http_cookie_generation=0,
    http_cookie_path="string",
    http_cookie_share="string",
    https_cookie_secure="string",
    ldb_method="string",
    object_firewall_accessproxy_apigateway6_id="string",
    persistence="string",
    quic={
        "ack_delay_exponent": 0,
        "active_connection_id_limit": 0,
        "active_migration": "string",
        "grease_quic_bit": "string",
        "max_ack_delay": 0,
        "max_datagram_frame_size": 0,
        "max_idle_timeout": 0,
        "max_udp_payload_size": 0,
    },
    realservers=[{
        "addr_type": "string",
        "address": "string",
        "domain": "string",
        "external_auth": "string",
        "health_check": "string",
        "health_check_proto": "string",
        "holddown_interval": "string",
        "http_host": "string",
        "id": 0,
        "ip": "string",
        "mappedport": "string",
        "port": 0,
        "ssh_client_cert": "string",
        "ssh_host_key": "string",
        "ssh_host_key_validation": "string",
        "status": "string",
        "translate_host": "string",
        "tunnel_encryption": "string",
        "type": "string",
        "weight": 0,
    }],
    saml_redirect="string",
    saml_server="string",
    scopetype="string",
    service="string",
    ssl_algorithm="string",
    ssl_cipher_suites=[{
        "cipher": "string",
        "priority": 0,
        "versions": ["string"],
    }],
    ssl_dh_bits="string",
    ssl_max_version="string",
    ssl_min_version="string",
    ssl_renegotiation="string",
    ssl_vpn_web_portal="string",
    url_map="string",
    url_map_type="string",
    virtual_host="string")
Copy
const objectFirewallAccessproxyApigateway6Resource = new fortimanager.ObjectFirewallAccessproxyApigateway6("objectFirewallAccessproxyApigateway6Resource", {
    accessProxy: "string",
    adom: "string",
    applications: ["string"],
    dynamicSortSubtable: "string",
    fosid: 0,
    h2Support: "string",
    h3Support: "string",
    httpCookieAge: 0,
    httpCookieDomain: "string",
    httpCookieDomainFromHost: "string",
    httpCookieGeneration: 0,
    httpCookiePath: "string",
    httpCookieShare: "string",
    httpsCookieSecure: "string",
    ldbMethod: "string",
    objectFirewallAccessproxyApigateway6Id: "string",
    persistence: "string",
    quic: {
        ackDelayExponent: 0,
        activeConnectionIdLimit: 0,
        activeMigration: "string",
        greaseQuicBit: "string",
        maxAckDelay: 0,
        maxDatagramFrameSize: 0,
        maxIdleTimeout: 0,
        maxUdpPayloadSize: 0,
    },
    realservers: [{
        addrType: "string",
        address: "string",
        domain: "string",
        externalAuth: "string",
        healthCheck: "string",
        healthCheckProto: "string",
        holddownInterval: "string",
        httpHost: "string",
        id: 0,
        ip: "string",
        mappedport: "string",
        port: 0,
        sshClientCert: "string",
        sshHostKey: "string",
        sshHostKeyValidation: "string",
        status: "string",
        translateHost: "string",
        tunnelEncryption: "string",
        type: "string",
        weight: 0,
    }],
    samlRedirect: "string",
    samlServer: "string",
    scopetype: "string",
    service: "string",
    sslAlgorithm: "string",
    sslCipherSuites: [{
        cipher: "string",
        priority: 0,
        versions: ["string"],
    }],
    sslDhBits: "string",
    sslMaxVersion: "string",
    sslMinVersion: "string",
    sslRenegotiation: "string",
    sslVpnWebPortal: "string",
    urlMap: "string",
    urlMapType: "string",
    virtualHost: "string",
});
Copy
type: fortimanager:ObjectFirewallAccessproxyApigateway6
properties:
    accessProxy: string
    adom: string
    applications:
        - string
    dynamicSortSubtable: string
    fosid: 0
    h2Support: string
    h3Support: string
    httpCookieAge: 0
    httpCookieDomain: string
    httpCookieDomainFromHost: string
    httpCookieGeneration: 0
    httpCookiePath: string
    httpCookieShare: string
    httpsCookieSecure: string
    ldbMethod: string
    objectFirewallAccessproxyApigateway6Id: string
    persistence: string
    quic:
        ackDelayExponent: 0
        activeConnectionIdLimit: 0
        activeMigration: string
        greaseQuicBit: string
        maxAckDelay: 0
        maxDatagramFrameSize: 0
        maxIdleTimeout: 0
        maxUdpPayloadSize: 0
    realservers:
        - addrType: string
          address: string
          domain: string
          externalAuth: string
          healthCheck: string
          healthCheckProto: string
          holddownInterval: string
          httpHost: string
          id: 0
          ip: string
          mappedport: string
          port: 0
          sshClientCert: string
          sshHostKey: string
          sshHostKeyValidation: string
          status: string
          translateHost: string
          tunnelEncryption: string
          type: string
          weight: 0
    samlRedirect: string
    samlServer: string
    scopetype: string
    service: string
    sslAlgorithm: string
    sslCipherSuites:
        - cipher: string
          priority: 0
          versions:
            - string
    sslDhBits: string
    sslMaxVersion: string
    sslMinVersion: string
    sslRenegotiation: string
    sslVpnWebPortal: string
    urlMap: string
    urlMapType: string
    virtualHost: string
Copy

ObjectFirewallAccessproxyApigateway6 Resource Properties

To learn more about resource properties and how to use them, see Inputs and Outputs in the Architecture and Concepts docs.

Inputs

In Python, inputs that are objects can be passed either as argument classes or as dictionary literals.

The ObjectFirewallAccessproxyApigateway6 resource accepts the following input properties:

AccessProxy This property is required. string
Access Proxy.
Adom string
Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
Applications List<string>
SaaS application controlled by this Access Proxy.
DynamicSortSubtable string
true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
Fosid double
API Gateway ID.
H2Support string
HTTP2 support, default=Enable. Valid values: disable, enable.
H3Support string
HTTP3/QUIC support, default=Disable. Valid values: disable, enable.
HttpCookieAge double
Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
HttpCookieDomain string
Domain that HTTP cookie persistence should apply to.
HttpCookieDomainFromHost string
Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values: disable, enable.
HttpCookieGeneration double
Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
HttpCookiePath string
Limit HTTP cookie persistence to the specified path.
HttpCookieShare string
Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values: disable, same-ip.
HttpsCookieSecure string
Enable/disable verification that inserted HTTPS cookies are secure. Valid values: disable, enable.
LdbMethod string
Method used to distribute sessions to real servers. Valid values: static, round-robin, weighted, first-alive, http-host.
ObjectFirewallAccessproxyApigateway6Id string
an identifier for the resource with format {{fosid}}.
Persistence string
Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values: none, http-cookie.
Quic ObjectFirewallAccessproxyApigateway6Quic
Quic. The structure of quic block is documented below.
Realservers List<ObjectFirewallAccessproxyApigateway6Realserver>
Realservers. The structure of realservers block is documented below.
SamlRedirect string
Enable/disable SAML redirection after successful authentication. Valid values: disable, enable.
SamlServer string
SAML service provider configuration for VIP authentication.
Scopetype string
The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
Service string
Service. Valid values: http, https, tcp-forwarding, samlsp.
SslAlgorithm string
Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values: high, medium, low.
SslCipherSuites List<ObjectFirewallAccessproxyApigateway6SslCipherSuite>
Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
SslDhBits string
Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
SslMaxVersion string
Highest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
SslMinVersion string
Lowest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
SslRenegotiation string
Enable/disable secure renegotiation to comply with RFC 5746. Valid values: disable, enable.
SslVpnWebPortal string
SSL-VPN web portal.
UrlMap string
URL pattern to match.
UrlMapType string
Type of url-map. Valid values: sub-string, wildcard, regex.
VirtualHost string
Virtual host.
AccessProxy This property is required. string
Access Proxy.
Adom string
Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
Applications []string
SaaS application controlled by this Access Proxy.
DynamicSortSubtable string
true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
Fosid float64
API Gateway ID.
H2Support string
HTTP2 support, default=Enable. Valid values: disable, enable.
H3Support string
HTTP3/QUIC support, default=Disable. Valid values: disable, enable.
HttpCookieAge float64
Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
HttpCookieDomain string
Domain that HTTP cookie persistence should apply to.
HttpCookieDomainFromHost string
Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values: disable, enable.
HttpCookieGeneration float64
Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
HttpCookiePath string
Limit HTTP cookie persistence to the specified path.
HttpCookieShare string
Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values: disable, same-ip.
HttpsCookieSecure string
Enable/disable verification that inserted HTTPS cookies are secure. Valid values: disable, enable.
LdbMethod string
Method used to distribute sessions to real servers. Valid values: static, round-robin, weighted, first-alive, http-host.
ObjectFirewallAccessproxyApigateway6Id string
an identifier for the resource with format {{fosid}}.
Persistence string
Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values: none, http-cookie.
Quic ObjectFirewallAccessproxyApigateway6QuicTypeArgs
Quic. The structure of quic block is documented below.
Realservers []ObjectFirewallAccessproxyApigateway6RealserverArgs
Realservers. The structure of realservers block is documented below.
SamlRedirect string
Enable/disable SAML redirection after successful authentication. Valid values: disable, enable.
SamlServer string
SAML service provider configuration for VIP authentication.
Scopetype string
The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
Service string
Service. Valid values: http, https, tcp-forwarding, samlsp.
SslAlgorithm string
Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values: high, medium, low.
SslCipherSuites []ObjectFirewallAccessproxyApigateway6SslCipherSuiteArgs
Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
SslDhBits string
Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
SslMaxVersion string
Highest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
SslMinVersion string
Lowest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
SslRenegotiation string
Enable/disable secure renegotiation to comply with RFC 5746. Valid values: disable, enable.
SslVpnWebPortal string
SSL-VPN web portal.
UrlMap string
URL pattern to match.
UrlMapType string
Type of url-map. Valid values: sub-string, wildcard, regex.
VirtualHost string
Virtual host.
accessProxy This property is required. String
Access Proxy.
adom String
Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
applications List<String>
SaaS application controlled by this Access Proxy.
dynamicSortSubtable String
true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
fosid Double
API Gateway ID.
h2Support String
HTTP2 support, default=Enable. Valid values: disable, enable.
h3Support String
HTTP3/QUIC support, default=Disable. Valid values: disable, enable.
httpCookieAge Double
Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
httpCookieDomain String
Domain that HTTP cookie persistence should apply to.
httpCookieDomainFromHost String
Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values: disable, enable.
httpCookieGeneration Double
Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
httpCookiePath String
Limit HTTP cookie persistence to the specified path.
httpCookieShare String
Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values: disable, same-ip.
httpsCookieSecure String
Enable/disable verification that inserted HTTPS cookies are secure. Valid values: disable, enable.
ldbMethod String
Method used to distribute sessions to real servers. Valid values: static, round-robin, weighted, first-alive, http-host.
objectFirewallAccessproxyApigateway6Id String
an identifier for the resource with format {{fosid}}.
persistence String
Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values: none, http-cookie.
quic ObjectFirewallAccessproxyApigateway6Quic
Quic. The structure of quic block is documented below.
realservers List<ObjectFirewallAccessproxyApigateway6Realserver>
Realservers. The structure of realservers block is documented below.
samlRedirect String
Enable/disable SAML redirection after successful authentication. Valid values: disable, enable.
samlServer String
SAML service provider configuration for VIP authentication.
scopetype String
The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
service String
Service. Valid values: http, https, tcp-forwarding, samlsp.
sslAlgorithm String
Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values: high, medium, low.
sslCipherSuites List<ObjectFirewallAccessproxyApigateway6SslCipherSuite>
Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
sslDhBits String
Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
sslMaxVersion String
Highest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
sslMinVersion String
Lowest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
sslRenegotiation String
Enable/disable secure renegotiation to comply with RFC 5746. Valid values: disable, enable.
sslVpnWebPortal String
SSL-VPN web portal.
urlMap String
URL pattern to match.
urlMapType String
Type of url-map. Valid values: sub-string, wildcard, regex.
virtualHost String
Virtual host.
accessProxy This property is required. string
Access Proxy.
adom string
Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
applications string[]
SaaS application controlled by this Access Proxy.
dynamicSortSubtable string
true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
fosid number
API Gateway ID.
h2Support string
HTTP2 support, default=Enable. Valid values: disable, enable.
h3Support string
HTTP3/QUIC support, default=Disable. Valid values: disable, enable.
httpCookieAge number
Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
httpCookieDomain string
Domain that HTTP cookie persistence should apply to.
httpCookieDomainFromHost string
Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values: disable, enable.
httpCookieGeneration number
Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
httpCookiePath string
Limit HTTP cookie persistence to the specified path.
httpCookieShare string
Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values: disable, same-ip.
httpsCookieSecure string
Enable/disable verification that inserted HTTPS cookies are secure. Valid values: disable, enable.
ldbMethod string
Method used to distribute sessions to real servers. Valid values: static, round-robin, weighted, first-alive, http-host.
objectFirewallAccessproxyApigateway6Id string
an identifier for the resource with format {{fosid}}.
persistence string
Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values: none, http-cookie.
quic ObjectFirewallAccessproxyApigateway6Quic
Quic. The structure of quic block is documented below.
realservers ObjectFirewallAccessproxyApigateway6Realserver[]
Realservers. The structure of realservers block is documented below.
samlRedirect string
Enable/disable SAML redirection after successful authentication. Valid values: disable, enable.
samlServer string
SAML service provider configuration for VIP authentication.
scopetype string
The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
service string
Service. Valid values: http, https, tcp-forwarding, samlsp.
sslAlgorithm string
Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values: high, medium, low.
sslCipherSuites ObjectFirewallAccessproxyApigateway6SslCipherSuite[]
Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
sslDhBits string
Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
sslMaxVersion string
Highest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
sslMinVersion string
Lowest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
sslRenegotiation string
Enable/disable secure renegotiation to comply with RFC 5746. Valid values: disable, enable.
sslVpnWebPortal string
SSL-VPN web portal.
urlMap string
URL pattern to match.
urlMapType string
Type of url-map. Valid values: sub-string, wildcard, regex.
virtualHost string
Virtual host.
access_proxy This property is required. str
Access Proxy.
adom str
Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
applications Sequence[str]
SaaS application controlled by this Access Proxy.
dynamic_sort_subtable str
true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
fosid float
API Gateway ID.
h2_support str
HTTP2 support, default=Enable. Valid values: disable, enable.
h3_support str
HTTP3/QUIC support, default=Disable. Valid values: disable, enable.
http_cookie_age float
Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
http_cookie_domain str
Domain that HTTP cookie persistence should apply to.
http_cookie_domain_from_host str
Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values: disable, enable.
http_cookie_generation float
Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
http_cookie_path str
Limit HTTP cookie persistence to the specified path.
http_cookie_share str
Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values: disable, same-ip.
https_cookie_secure str
Enable/disable verification that inserted HTTPS cookies are secure. Valid values: disable, enable.
ldb_method str
Method used to distribute sessions to real servers. Valid values: static, round-robin, weighted, first-alive, http-host.
object_firewall_accessproxy_apigateway6_id str
an identifier for the resource with format {{fosid}}.
persistence str
Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values: none, http-cookie.
quic ObjectFirewallAccessproxyApigateway6QuicArgs
Quic. The structure of quic block is documented below.
realservers Sequence[ObjectFirewallAccessproxyApigateway6RealserverArgs]
Realservers. The structure of realservers block is documented below.
saml_redirect str
Enable/disable SAML redirection after successful authentication. Valid values: disable, enable.
saml_server str
SAML service provider configuration for VIP authentication.
scopetype str
The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
service str
Service. Valid values: http, https, tcp-forwarding, samlsp.
ssl_algorithm str
Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values: high, medium, low.
ssl_cipher_suites Sequence[ObjectFirewallAccessproxyApigateway6SslCipherSuiteArgs]
Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
ssl_dh_bits str
Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
ssl_max_version str
Highest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
ssl_min_version str
Lowest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
ssl_renegotiation str
Enable/disable secure renegotiation to comply with RFC 5746. Valid values: disable, enable.
ssl_vpn_web_portal str
SSL-VPN web portal.
url_map str
URL pattern to match.
url_map_type str
Type of url-map. Valid values: sub-string, wildcard, regex.
virtual_host str
Virtual host.
accessProxy This property is required. String
Access Proxy.
adom String
Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
applications List<String>
SaaS application controlled by this Access Proxy.
dynamicSortSubtable String
true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
fosid Number
API Gateway ID.
h2Support String
HTTP2 support, default=Enable. Valid values: disable, enable.
h3Support String
HTTP3/QUIC support, default=Disable. Valid values: disable, enable.
httpCookieAge Number
Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
httpCookieDomain String
Domain that HTTP cookie persistence should apply to.
httpCookieDomainFromHost String
Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values: disable, enable.
httpCookieGeneration Number
Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
httpCookiePath String
Limit HTTP cookie persistence to the specified path.
httpCookieShare String
Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values: disable, same-ip.
httpsCookieSecure String
Enable/disable verification that inserted HTTPS cookies are secure. Valid values: disable, enable.
ldbMethod String
Method used to distribute sessions to real servers. Valid values: static, round-robin, weighted, first-alive, http-host.
objectFirewallAccessproxyApigateway6Id String
an identifier for the resource with format {{fosid}}.
persistence String
Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values: none, http-cookie.
quic Property Map
Quic. The structure of quic block is documented below.
realservers List<Property Map>
Realservers. The structure of realservers block is documented below.
samlRedirect String
Enable/disable SAML redirection after successful authentication. Valid values: disable, enable.
samlServer String
SAML service provider configuration for VIP authentication.
scopetype String
The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
service String
Service. Valid values: http, https, tcp-forwarding, samlsp.
sslAlgorithm String
Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values: high, medium, low.
sslCipherSuites List<Property Map>
Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
sslDhBits String
Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
sslMaxVersion String
Highest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
sslMinVersion String
Lowest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
sslRenegotiation String
Enable/disable secure renegotiation to comply with RFC 5746. Valid values: disable, enable.
sslVpnWebPortal String
SSL-VPN web portal.
urlMap String
URL pattern to match.
urlMapType String
Type of url-map. Valid values: sub-string, wildcard, regex.
virtualHost String
Virtual host.

Outputs

All input properties are implicitly available as output properties. Additionally, the ObjectFirewallAccessproxyApigateway6 resource produces the following output properties:

Id string
The provider-assigned unique ID for this managed resource.
Id string
The provider-assigned unique ID for this managed resource.
id String
The provider-assigned unique ID for this managed resource.
id string
The provider-assigned unique ID for this managed resource.
id str
The provider-assigned unique ID for this managed resource.
id String
The provider-assigned unique ID for this managed resource.

Look up Existing ObjectFirewallAccessproxyApigateway6 Resource

Get an existing ObjectFirewallAccessproxyApigateway6 resource’s state with the given name, ID, and optional extra properties used to qualify the lookup.

public static get(name: string, id: Input<ID>, state?: ObjectFirewallAccessproxyApigateway6State, opts?: CustomResourceOptions): ObjectFirewallAccessproxyApigateway6
@staticmethod
def get(resource_name: str,
        id: str,
        opts: Optional[ResourceOptions] = None,
        access_proxy: Optional[str] = None,
        adom: Optional[str] = None,
        applications: Optional[Sequence[str]] = None,
        dynamic_sort_subtable: Optional[str] = None,
        fosid: Optional[float] = None,
        h2_support: Optional[str] = None,
        h3_support: Optional[str] = None,
        http_cookie_age: Optional[float] = None,
        http_cookie_domain: Optional[str] = None,
        http_cookie_domain_from_host: Optional[str] = None,
        http_cookie_generation: Optional[float] = None,
        http_cookie_path: Optional[str] = None,
        http_cookie_share: Optional[str] = None,
        https_cookie_secure: Optional[str] = None,
        ldb_method: Optional[str] = None,
        object_firewall_accessproxy_apigateway6_id: Optional[str] = None,
        persistence: Optional[str] = None,
        quic: Optional[ObjectFirewallAccessproxyApigateway6QuicArgs] = None,
        realservers: Optional[Sequence[ObjectFirewallAccessproxyApigateway6RealserverArgs]] = None,
        saml_redirect: Optional[str] = None,
        saml_server: Optional[str] = None,
        scopetype: Optional[str] = None,
        service: Optional[str] = None,
        ssl_algorithm: Optional[str] = None,
        ssl_cipher_suites: Optional[Sequence[ObjectFirewallAccessproxyApigateway6SslCipherSuiteArgs]] = None,
        ssl_dh_bits: Optional[str] = None,
        ssl_max_version: Optional[str] = None,
        ssl_min_version: Optional[str] = None,
        ssl_renegotiation: Optional[str] = None,
        ssl_vpn_web_portal: Optional[str] = None,
        url_map: Optional[str] = None,
        url_map_type: Optional[str] = None,
        virtual_host: Optional[str] = None) -> ObjectFirewallAccessproxyApigateway6
func GetObjectFirewallAccessproxyApigateway6(ctx *Context, name string, id IDInput, state *ObjectFirewallAccessproxyApigateway6State, opts ...ResourceOption) (*ObjectFirewallAccessproxyApigateway6, error)
public static ObjectFirewallAccessproxyApigateway6 Get(string name, Input<string> id, ObjectFirewallAccessproxyApigateway6State? state, CustomResourceOptions? opts = null)
public static ObjectFirewallAccessproxyApigateway6 get(String name, Output<String> id, ObjectFirewallAccessproxyApigateway6State state, CustomResourceOptions options)
resources:  _:    type: fortimanager:ObjectFirewallAccessproxyApigateway6    get:      id: ${id}
name This property is required.
The unique name of the resulting resource.
id This property is required.
The unique provider ID of the resource to lookup.
state
Any extra arguments used during the lookup.
opts
A bag of options that control this resource's behavior.
resource_name This property is required.
The unique name of the resulting resource.
id This property is required.
The unique provider ID of the resource to lookup.
name This property is required.
The unique name of the resulting resource.
id This property is required.
The unique provider ID of the resource to lookup.
state
Any extra arguments used during the lookup.
opts
A bag of options that control this resource's behavior.
name This property is required.
The unique name of the resulting resource.
id This property is required.
The unique provider ID of the resource to lookup.
state
Any extra arguments used during the lookup.
opts
A bag of options that control this resource's behavior.
name This property is required.
The unique name of the resulting resource.
id This property is required.
The unique provider ID of the resource to lookup.
state
Any extra arguments used during the lookup.
opts
A bag of options that control this resource's behavior.
The following state arguments are supported:
AccessProxy string
Access Proxy.
Adom string
Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
Applications List<string>
SaaS application controlled by this Access Proxy.
DynamicSortSubtable string
true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
Fosid double
API Gateway ID.
H2Support string
HTTP2 support, default=Enable. Valid values: disable, enable.
H3Support string
HTTP3/QUIC support, default=Disable. Valid values: disable, enable.
HttpCookieAge double
Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
HttpCookieDomain string
Domain that HTTP cookie persistence should apply to.
HttpCookieDomainFromHost string
Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values: disable, enable.
HttpCookieGeneration double
Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
HttpCookiePath string
Limit HTTP cookie persistence to the specified path.
HttpCookieShare string
Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values: disable, same-ip.
HttpsCookieSecure string
Enable/disable verification that inserted HTTPS cookies are secure. Valid values: disable, enable.
LdbMethod string
Method used to distribute sessions to real servers. Valid values: static, round-robin, weighted, first-alive, http-host.
ObjectFirewallAccessproxyApigateway6Id string
an identifier for the resource with format {{fosid}}.
Persistence string
Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values: none, http-cookie.
Quic ObjectFirewallAccessproxyApigateway6Quic
Quic. The structure of quic block is documented below.
Realservers List<ObjectFirewallAccessproxyApigateway6Realserver>
Realservers. The structure of realservers block is documented below.
SamlRedirect string
Enable/disable SAML redirection after successful authentication. Valid values: disable, enable.
SamlServer string
SAML service provider configuration for VIP authentication.
Scopetype string
The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
Service string
Service. Valid values: http, https, tcp-forwarding, samlsp.
SslAlgorithm string
Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values: high, medium, low.
SslCipherSuites List<ObjectFirewallAccessproxyApigateway6SslCipherSuite>
Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
SslDhBits string
Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
SslMaxVersion string
Highest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
SslMinVersion string
Lowest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
SslRenegotiation string
Enable/disable secure renegotiation to comply with RFC 5746. Valid values: disable, enable.
SslVpnWebPortal string
SSL-VPN web portal.
UrlMap string
URL pattern to match.
UrlMapType string
Type of url-map. Valid values: sub-string, wildcard, regex.
VirtualHost string
Virtual host.
AccessProxy string
Access Proxy.
Adom string
Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
Applications []string
SaaS application controlled by this Access Proxy.
DynamicSortSubtable string
true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
Fosid float64
API Gateway ID.
H2Support string
HTTP2 support, default=Enable. Valid values: disable, enable.
H3Support string
HTTP3/QUIC support, default=Disable. Valid values: disable, enable.
HttpCookieAge float64
Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
HttpCookieDomain string
Domain that HTTP cookie persistence should apply to.
HttpCookieDomainFromHost string
Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values: disable, enable.
HttpCookieGeneration float64
Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
HttpCookiePath string
Limit HTTP cookie persistence to the specified path.
HttpCookieShare string
Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values: disable, same-ip.
HttpsCookieSecure string
Enable/disable verification that inserted HTTPS cookies are secure. Valid values: disable, enable.
LdbMethod string
Method used to distribute sessions to real servers. Valid values: static, round-robin, weighted, first-alive, http-host.
ObjectFirewallAccessproxyApigateway6Id string
an identifier for the resource with format {{fosid}}.
Persistence string
Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values: none, http-cookie.
Quic ObjectFirewallAccessproxyApigateway6QuicTypeArgs
Quic. The structure of quic block is documented below.
Realservers []ObjectFirewallAccessproxyApigateway6RealserverArgs
Realservers. The structure of realservers block is documented below.
SamlRedirect string
Enable/disable SAML redirection after successful authentication. Valid values: disable, enable.
SamlServer string
SAML service provider configuration for VIP authentication.
Scopetype string
The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
Service string
Service. Valid values: http, https, tcp-forwarding, samlsp.
SslAlgorithm string
Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values: high, medium, low.
SslCipherSuites []ObjectFirewallAccessproxyApigateway6SslCipherSuiteArgs
Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
SslDhBits string
Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
SslMaxVersion string
Highest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
SslMinVersion string
Lowest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
SslRenegotiation string
Enable/disable secure renegotiation to comply with RFC 5746. Valid values: disable, enable.
SslVpnWebPortal string
SSL-VPN web portal.
UrlMap string
URL pattern to match.
UrlMapType string
Type of url-map. Valid values: sub-string, wildcard, regex.
VirtualHost string
Virtual host.
accessProxy String
Access Proxy.
adom String
Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
applications List<String>
SaaS application controlled by this Access Proxy.
dynamicSortSubtable String
true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
fosid Double
API Gateway ID.
h2Support String
HTTP2 support, default=Enable. Valid values: disable, enable.
h3Support String
HTTP3/QUIC support, default=Disable. Valid values: disable, enable.
httpCookieAge Double
Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
httpCookieDomain String
Domain that HTTP cookie persistence should apply to.
httpCookieDomainFromHost String
Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values: disable, enable.
httpCookieGeneration Double
Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
httpCookiePath String
Limit HTTP cookie persistence to the specified path.
httpCookieShare String
Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values: disable, same-ip.
httpsCookieSecure String
Enable/disable verification that inserted HTTPS cookies are secure. Valid values: disable, enable.
ldbMethod String
Method used to distribute sessions to real servers. Valid values: static, round-robin, weighted, first-alive, http-host.
objectFirewallAccessproxyApigateway6Id String
an identifier for the resource with format {{fosid}}.
persistence String
Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values: none, http-cookie.
quic ObjectFirewallAccessproxyApigateway6Quic
Quic. The structure of quic block is documented below.
realservers List<ObjectFirewallAccessproxyApigateway6Realserver>
Realservers. The structure of realservers block is documented below.
samlRedirect String
Enable/disable SAML redirection after successful authentication. Valid values: disable, enable.
samlServer String
SAML service provider configuration for VIP authentication.
scopetype String
The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
service String
Service. Valid values: http, https, tcp-forwarding, samlsp.
sslAlgorithm String
Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values: high, medium, low.
sslCipherSuites List<ObjectFirewallAccessproxyApigateway6SslCipherSuite>
Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
sslDhBits String
Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
sslMaxVersion String
Highest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
sslMinVersion String
Lowest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
sslRenegotiation String
Enable/disable secure renegotiation to comply with RFC 5746. Valid values: disable, enable.
sslVpnWebPortal String
SSL-VPN web portal.
urlMap String
URL pattern to match.
urlMapType String
Type of url-map. Valid values: sub-string, wildcard, regex.
virtualHost String
Virtual host.
accessProxy string
Access Proxy.
adom string
Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
applications string[]
SaaS application controlled by this Access Proxy.
dynamicSortSubtable string
true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
fosid number
API Gateway ID.
h2Support string
HTTP2 support, default=Enable. Valid values: disable, enable.
h3Support string
HTTP3/QUIC support, default=Disable. Valid values: disable, enable.
httpCookieAge number
Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
httpCookieDomain string
Domain that HTTP cookie persistence should apply to.
httpCookieDomainFromHost string
Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values: disable, enable.
httpCookieGeneration number
Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
httpCookiePath string
Limit HTTP cookie persistence to the specified path.
httpCookieShare string
Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values: disable, same-ip.
httpsCookieSecure string
Enable/disable verification that inserted HTTPS cookies are secure. Valid values: disable, enable.
ldbMethod string
Method used to distribute sessions to real servers. Valid values: static, round-robin, weighted, first-alive, http-host.
objectFirewallAccessproxyApigateway6Id string
an identifier for the resource with format {{fosid}}.
persistence string
Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values: none, http-cookie.
quic ObjectFirewallAccessproxyApigateway6Quic
Quic. The structure of quic block is documented below.
realservers ObjectFirewallAccessproxyApigateway6Realserver[]
Realservers. The structure of realservers block is documented below.
samlRedirect string
Enable/disable SAML redirection after successful authentication. Valid values: disable, enable.
samlServer string
SAML service provider configuration for VIP authentication.
scopetype string
The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
service string
Service. Valid values: http, https, tcp-forwarding, samlsp.
sslAlgorithm string
Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values: high, medium, low.
sslCipherSuites ObjectFirewallAccessproxyApigateway6SslCipherSuite[]
Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
sslDhBits string
Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
sslMaxVersion string
Highest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
sslMinVersion string
Lowest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
sslRenegotiation string
Enable/disable secure renegotiation to comply with RFC 5746. Valid values: disable, enable.
sslVpnWebPortal string
SSL-VPN web portal.
urlMap string
URL pattern to match.
urlMapType string
Type of url-map. Valid values: sub-string, wildcard, regex.
virtualHost string
Virtual host.
access_proxy str
Access Proxy.
adom str
Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
applications Sequence[str]
SaaS application controlled by this Access Proxy.
dynamic_sort_subtable str
true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
fosid float
API Gateway ID.
h2_support str
HTTP2 support, default=Enable. Valid values: disable, enable.
h3_support str
HTTP3/QUIC support, default=Disable. Valid values: disable, enable.
http_cookie_age float
Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
http_cookie_domain str
Domain that HTTP cookie persistence should apply to.
http_cookie_domain_from_host str
Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values: disable, enable.
http_cookie_generation float
Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
http_cookie_path str
Limit HTTP cookie persistence to the specified path.
http_cookie_share str
Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values: disable, same-ip.
https_cookie_secure str
Enable/disable verification that inserted HTTPS cookies are secure. Valid values: disable, enable.
ldb_method str
Method used to distribute sessions to real servers. Valid values: static, round-robin, weighted, first-alive, http-host.
object_firewall_accessproxy_apigateway6_id str
an identifier for the resource with format {{fosid}}.
persistence str
Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values: none, http-cookie.
quic ObjectFirewallAccessproxyApigateway6QuicArgs
Quic. The structure of quic block is documented below.
realservers Sequence[ObjectFirewallAccessproxyApigateway6RealserverArgs]
Realservers. The structure of realservers block is documented below.
saml_redirect str
Enable/disable SAML redirection after successful authentication. Valid values: disable, enable.
saml_server str
SAML service provider configuration for VIP authentication.
scopetype str
The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
service str
Service. Valid values: http, https, tcp-forwarding, samlsp.
ssl_algorithm str
Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values: high, medium, low.
ssl_cipher_suites Sequence[ObjectFirewallAccessproxyApigateway6SslCipherSuiteArgs]
Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
ssl_dh_bits str
Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
ssl_max_version str
Highest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
ssl_min_version str
Lowest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
ssl_renegotiation str
Enable/disable secure renegotiation to comply with RFC 5746. Valid values: disable, enable.
ssl_vpn_web_portal str
SSL-VPN web portal.
url_map str
URL pattern to match.
url_map_type str
Type of url-map. Valid values: sub-string, wildcard, regex.
virtual_host str
Virtual host.
accessProxy String
Access Proxy.
adom String
Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
applications List<String>
SaaS application controlled by this Access Proxy.
dynamicSortSubtable String
true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
fosid Number
API Gateway ID.
h2Support String
HTTP2 support, default=Enable. Valid values: disable, enable.
h3Support String
HTTP3/QUIC support, default=Disable. Valid values: disable, enable.
httpCookieAge Number
Time in minutes that client web browsers should keep a cookie. Default is 60 minutes. 0 = no time limit.
httpCookieDomain String
Domain that HTTP cookie persistence should apply to.
httpCookieDomainFromHost String
Enable/disable use of HTTP cookie domain from host field in HTTP. Valid values: disable, enable.
httpCookieGeneration Number
Generation of HTTP cookie to be accepted. Changing invalidates all existing cookies.
httpCookiePath String
Limit HTTP cookie persistence to the specified path.
httpCookieShare String
Control sharing of cookies across API Gateway. same-ip means a cookie from one virtual server can be used by another. Disable stops cookie sharing. Valid values: disable, same-ip.
httpsCookieSecure String
Enable/disable verification that inserted HTTPS cookies are secure. Valid values: disable, enable.
ldbMethod String
Method used to distribute sessions to real servers. Valid values: static, round-robin, weighted, first-alive, http-host.
objectFirewallAccessproxyApigateway6Id String
an identifier for the resource with format {{fosid}}.
persistence String
Configure how to make sure that clients connect to the same server every time they make a request that is part of the same session. Valid values: none, http-cookie.
quic Property Map
Quic. The structure of quic block is documented below.
realservers List<Property Map>
Realservers. The structure of realservers block is documented below.
samlRedirect String
Enable/disable SAML redirection after successful authentication. Valid values: disable, enable.
samlServer String
SAML service provider configuration for VIP authentication.
scopetype String
The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
service String
Service. Valid values: http, https, tcp-forwarding, samlsp.
sslAlgorithm String
Permitted encryption algorithms for the server side of SSL full mode sessions according to encryption strength. Valid values: high, medium, low.
sslCipherSuites List<Property Map>
Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
sslDhBits String
Number of bits to use in the Diffie-Hellman exchange for RSA encryption of SSL sessions. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
sslMaxVersion String
Highest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
sslMinVersion String
Lowest SSL/TLS version acceptable from a server. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
sslRenegotiation String
Enable/disable secure renegotiation to comply with RFC 5746. Valid values: disable, enable.
sslVpnWebPortal String
SSL-VPN web portal.
urlMap String
URL pattern to match.
urlMapType String
Type of url-map. Valid values: sub-string, wildcard, regex.
virtualHost String
Virtual host.

Supporting Types

ObjectFirewallAccessproxyApigateway6Quic
, ObjectFirewallAccessproxyApigateway6QuicArgs

AckDelayExponent double
ACK delay exponent (1 - 20, default = 3).
ActiveConnectionIdLimit double
Active connection ID limit (1 - 8, default = 2).
ActiveMigration string
Enable/disable active migration (default = disable). Valid values: disable, enable.
GreaseQuicBit string
Enable/disable grease QUIC bit (default = enable). Valid values: disable, enable.
MaxAckDelay double
Maximum ACK delay in milliseconds (1 - 16383, default = 25).
MaxDatagramFrameSize double
Maximum datagram frame size in bytes (1 - 1500, default = 1500).
MaxIdleTimeout double
Maximum idle timeout milliseconds (1 - 60000, default = 30000).
MaxUdpPayloadSize double
Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
AckDelayExponent float64
ACK delay exponent (1 - 20, default = 3).
ActiveConnectionIdLimit float64
Active connection ID limit (1 - 8, default = 2).
ActiveMigration string
Enable/disable active migration (default = disable). Valid values: disable, enable.
GreaseQuicBit string
Enable/disable grease QUIC bit (default = enable). Valid values: disable, enable.
MaxAckDelay float64
Maximum ACK delay in milliseconds (1 - 16383, default = 25).
MaxDatagramFrameSize float64
Maximum datagram frame size in bytes (1 - 1500, default = 1500).
MaxIdleTimeout float64
Maximum idle timeout milliseconds (1 - 60000, default = 30000).
MaxUdpPayloadSize float64
Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
ackDelayExponent Double
ACK delay exponent (1 - 20, default = 3).
activeConnectionIdLimit Double
Active connection ID limit (1 - 8, default = 2).
activeMigration String
Enable/disable active migration (default = disable). Valid values: disable, enable.
greaseQuicBit String
Enable/disable grease QUIC bit (default = enable). Valid values: disable, enable.
maxAckDelay Double
Maximum ACK delay in milliseconds (1 - 16383, default = 25).
maxDatagramFrameSize Double
Maximum datagram frame size in bytes (1 - 1500, default = 1500).
maxIdleTimeout Double
Maximum idle timeout milliseconds (1 - 60000, default = 30000).
maxUdpPayloadSize Double
Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
ackDelayExponent number
ACK delay exponent (1 - 20, default = 3).
activeConnectionIdLimit number
Active connection ID limit (1 - 8, default = 2).
activeMigration string
Enable/disable active migration (default = disable). Valid values: disable, enable.
greaseQuicBit string
Enable/disable grease QUIC bit (default = enable). Valid values: disable, enable.
maxAckDelay number
Maximum ACK delay in milliseconds (1 - 16383, default = 25).
maxDatagramFrameSize number
Maximum datagram frame size in bytes (1 - 1500, default = 1500).
maxIdleTimeout number
Maximum idle timeout milliseconds (1 - 60000, default = 30000).
maxUdpPayloadSize number
Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
ack_delay_exponent float
ACK delay exponent (1 - 20, default = 3).
active_connection_id_limit float
Active connection ID limit (1 - 8, default = 2).
active_migration str
Enable/disable active migration (default = disable). Valid values: disable, enable.
grease_quic_bit str
Enable/disable grease QUIC bit (default = enable). Valid values: disable, enable.
max_ack_delay float
Maximum ACK delay in milliseconds (1 - 16383, default = 25).
max_datagram_frame_size float
Maximum datagram frame size in bytes (1 - 1500, default = 1500).
max_idle_timeout float
Maximum idle timeout milliseconds (1 - 60000, default = 30000).
max_udp_payload_size float
Maximum UDP payload size in bytes (1200 - 1500, default = 1500).
ackDelayExponent Number
ACK delay exponent (1 - 20, default = 3).
activeConnectionIdLimit Number
Active connection ID limit (1 - 8, default = 2).
activeMigration String
Enable/disable active migration (default = disable). Valid values: disable, enable.
greaseQuicBit String
Enable/disable grease QUIC bit (default = enable). Valid values: disable, enable.
maxAckDelay Number
Maximum ACK delay in milliseconds (1 - 16383, default = 25).
maxDatagramFrameSize Number
Maximum datagram frame size in bytes (1 - 1500, default = 1500).
maxIdleTimeout Number
Maximum idle timeout milliseconds (1 - 60000, default = 30000).
maxUdpPayloadSize Number
Maximum UDP payload size in bytes (1200 - 1500, default = 1500).

ObjectFirewallAccessproxyApigateway6Realserver
, ObjectFirewallAccessproxyApigateway6RealserverArgs

AddrType string
Type of address. Valid values: fqdn, ip.
Address string
Address or address group of the real server.
Domain string
Wildcard domain name of the real server.
ExternalAuth string
Enable/disable use of external browser as user-agent for SAML user authentication. Valid values: disable, enable.
HealthCheck string
Enable to check the responsiveness of the real server before forwarding traffic. Valid values: disable, enable.
HealthCheckProto string
Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values: ping, http, tcp-connect.
HolddownInterval string
Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values: disable, enable.
HttpHost string
HTTP server domain name in HTTP header.
Id double
Real server ID.
Ip string
IPv6 address of the real server.
Mappedport string
Port for communicating with the real server.
Port double
Port for communicating with the real server.
SshClientCert string
Set access-proxy SSH client certificate profile.
SshHostKey string
One or more server host key.
SshHostKeyValidation string
Enable/disable SSH real server host key validation. Valid values: disable, enable.
Status string
Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values: active, standby, disable.
TranslateHost string
Enable/disable translation of hostname/IP from virtual server to real server. Valid values: disable, enable.
TunnelEncryption string
Tunnel encryption. Valid values: disable, enable.
Type string
TCP forwarding server type. Valid values: tcp-forwarding, ssh.
Weight double
Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
AddrType string
Type of address. Valid values: fqdn, ip.
Address string
Address or address group of the real server.
Domain string
Wildcard domain name of the real server.
ExternalAuth string
Enable/disable use of external browser as user-agent for SAML user authentication. Valid values: disable, enable.
HealthCheck string
Enable to check the responsiveness of the real server before forwarding traffic. Valid values: disable, enable.
HealthCheckProto string
Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values: ping, http, tcp-connect.
HolddownInterval string
Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values: disable, enable.
HttpHost string
HTTP server domain name in HTTP header.
Id float64
Real server ID.
Ip string
IPv6 address of the real server.
Mappedport string
Port for communicating with the real server.
Port float64
Port for communicating with the real server.
SshClientCert string
Set access-proxy SSH client certificate profile.
SshHostKey string
One or more server host key.
SshHostKeyValidation string
Enable/disable SSH real server host key validation. Valid values: disable, enable.
Status string
Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values: active, standby, disable.
TranslateHost string
Enable/disable translation of hostname/IP from virtual server to real server. Valid values: disable, enable.
TunnelEncryption string
Tunnel encryption. Valid values: disable, enable.
Type string
TCP forwarding server type. Valid values: tcp-forwarding, ssh.
Weight float64
Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
addrType String
Type of address. Valid values: fqdn, ip.
address String
Address or address group of the real server.
domain String
Wildcard domain name of the real server.
externalAuth String
Enable/disable use of external browser as user-agent for SAML user authentication. Valid values: disable, enable.
healthCheck String
Enable to check the responsiveness of the real server before forwarding traffic. Valid values: disable, enable.
healthCheckProto String
Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values: ping, http, tcp-connect.
holddownInterval String
Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values: disable, enable.
httpHost String
HTTP server domain name in HTTP header.
id Double
Real server ID.
ip String
IPv6 address of the real server.
mappedport String
Port for communicating with the real server.
port Double
Port for communicating with the real server.
sshClientCert String
Set access-proxy SSH client certificate profile.
sshHostKey String
One or more server host key.
sshHostKeyValidation String
Enable/disable SSH real server host key validation. Valid values: disable, enable.
status String
Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values: active, standby, disable.
translateHost String
Enable/disable translation of hostname/IP from virtual server to real server. Valid values: disable, enable.
tunnelEncryption String
Tunnel encryption. Valid values: disable, enable.
type String
TCP forwarding server type. Valid values: tcp-forwarding, ssh.
weight Double
Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
addrType string
Type of address. Valid values: fqdn, ip.
address string
Address or address group of the real server.
domain string
Wildcard domain name of the real server.
externalAuth string
Enable/disable use of external browser as user-agent for SAML user authentication. Valid values: disable, enable.
healthCheck string
Enable to check the responsiveness of the real server before forwarding traffic. Valid values: disable, enable.
healthCheckProto string
Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values: ping, http, tcp-connect.
holddownInterval string
Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values: disable, enable.
httpHost string
HTTP server domain name in HTTP header.
id number
Real server ID.
ip string
IPv6 address of the real server.
mappedport string
Port for communicating with the real server.
port number
Port for communicating with the real server.
sshClientCert string
Set access-proxy SSH client certificate profile.
sshHostKey string
One or more server host key.
sshHostKeyValidation string
Enable/disable SSH real server host key validation. Valid values: disable, enable.
status string
Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values: active, standby, disable.
translateHost string
Enable/disable translation of hostname/IP from virtual server to real server. Valid values: disable, enable.
tunnelEncryption string
Tunnel encryption. Valid values: disable, enable.
type string
TCP forwarding server type. Valid values: tcp-forwarding, ssh.
weight number
Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
addr_type str
Type of address. Valid values: fqdn, ip.
address str
Address or address group of the real server.
domain str
Wildcard domain name of the real server.
external_auth str
Enable/disable use of external browser as user-agent for SAML user authentication. Valid values: disable, enable.
health_check str
Enable to check the responsiveness of the real server before forwarding traffic. Valid values: disable, enable.
health_check_proto str
Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values: ping, http, tcp-connect.
holddown_interval str
Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values: disable, enable.
http_host str
HTTP server domain name in HTTP header.
id float
Real server ID.
ip str
IPv6 address of the real server.
mappedport str
Port for communicating with the real server.
port float
Port for communicating with the real server.
ssh_client_cert str
Set access-proxy SSH client certificate profile.
ssh_host_key str
One or more server host key.
ssh_host_key_validation str
Enable/disable SSH real server host key validation. Valid values: disable, enable.
status str
Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values: active, standby, disable.
translate_host str
Enable/disable translation of hostname/IP from virtual server to real server. Valid values: disable, enable.
tunnel_encryption str
Tunnel encryption. Valid values: disable, enable.
type str
TCP forwarding server type. Valid values: tcp-forwarding, ssh.
weight float
Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.
addrType String
Type of address. Valid values: fqdn, ip.
address String
Address or address group of the real server.
domain String
Wildcard domain name of the real server.
externalAuth String
Enable/disable use of external browser as user-agent for SAML user authentication. Valid values: disable, enable.
healthCheck String
Enable to check the responsiveness of the real server before forwarding traffic. Valid values: disable, enable.
healthCheckProto String
Protocol of the health check monitor to use when polling to determine server's connectivity status. Valid values: ping, http, tcp-connect.
holddownInterval String
Enable/disable holddown timer. Server will be considered active and reachable once the holddown period has expired (30 seconds). Valid values: disable, enable.
httpHost String
HTTP server domain name in HTTP header.
id Number
Real server ID.
ip String
IPv6 address of the real server.
mappedport String
Port for communicating with the real server.
port Number
Port for communicating with the real server.
sshClientCert String
Set access-proxy SSH client certificate profile.
sshHostKey String
One or more server host key.
sshHostKeyValidation String
Enable/disable SSH real server host key validation. Valid values: disable, enable.
status String
Set the status of the real server to active so that it can accept traffic, or on standby or disabled so no traffic is sent. Valid values: active, standby, disable.
translateHost String
Enable/disable translation of hostname/IP from virtual server to real server. Valid values: disable, enable.
tunnelEncryption String
Tunnel encryption. Valid values: disable, enable.
type String
TCP forwarding server type. Valid values: tcp-forwarding, ssh.
weight Number
Weight of the real server. If weighted load balancing is enabled, the server with the highest weight gets more connections.

ObjectFirewallAccessproxyApigateway6SslCipherSuite
, ObjectFirewallAccessproxyApigateway6SslCipherSuiteArgs

Cipher string
Cipher suite name. Valid values: TLS-RSA-WITH-RC4-128-MD5, TLS-RSA-WITH-RC4-128-SHA, TLS-RSA-WITH-DES-CBC-SHA, TLS-RSA-WITH-3DES-EDE-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA, TLS-RSA-WITH-AES-256-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA256, TLS-RSA-WITH-AES-256-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-RSA-WITH-SEED-CBC-SHA, TLS-RSA-WITH-ARIA-128-CBC-SHA256, TLS-RSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-RSA-WITH-DES-CBC-SHA, TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA, TLS-DHE-RSA-WITH-AES-256-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA256, TLS-DHE-RSA-WITH-AES-256-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-RSA-WITH-SEED-CBC-SHA, TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-RC4-128-SHA, TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA, TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-AES-128-GCM-SHA256, TLS-DHE-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-AES-128-CBC-SHA, TLS-DHE-DSS-WITH-AES-256-CBC-SHA, TLS-DHE-DSS-WITH-AES-128-CBC-SHA256, TLS-DHE-DSS-WITH-AES-128-GCM-SHA256, TLS-DHE-DSS-WITH-AES-256-CBC-SHA256, TLS-DHE-DSS-WITH-AES-256-GCM-SHA384, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384, TLS-RSA-WITH-AES-128-GCM-SHA256, TLS-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-DSS-WITH-SEED-CBC-SHA, TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA, TLS-DHE-DSS-WITH-DES-CBC-SHA, TLS-AES-128-GCM-SHA256, TLS-AES-256-GCM-SHA384, TLS-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA.
Priority double
SSL/TLS cipher suites priority.
Versions List<string>
SSL/TLS versions that the cipher suite can be used with. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
Cipher string
Cipher suite name. Valid values: TLS-RSA-WITH-RC4-128-MD5, TLS-RSA-WITH-RC4-128-SHA, TLS-RSA-WITH-DES-CBC-SHA, TLS-RSA-WITH-3DES-EDE-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA, TLS-RSA-WITH-AES-256-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA256, TLS-RSA-WITH-AES-256-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-RSA-WITH-SEED-CBC-SHA, TLS-RSA-WITH-ARIA-128-CBC-SHA256, TLS-RSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-RSA-WITH-DES-CBC-SHA, TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA, TLS-DHE-RSA-WITH-AES-256-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA256, TLS-DHE-RSA-WITH-AES-256-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-RSA-WITH-SEED-CBC-SHA, TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-RC4-128-SHA, TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA, TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-AES-128-GCM-SHA256, TLS-DHE-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-AES-128-CBC-SHA, TLS-DHE-DSS-WITH-AES-256-CBC-SHA, TLS-DHE-DSS-WITH-AES-128-CBC-SHA256, TLS-DHE-DSS-WITH-AES-128-GCM-SHA256, TLS-DHE-DSS-WITH-AES-256-CBC-SHA256, TLS-DHE-DSS-WITH-AES-256-GCM-SHA384, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384, TLS-RSA-WITH-AES-128-GCM-SHA256, TLS-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-DSS-WITH-SEED-CBC-SHA, TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA, TLS-DHE-DSS-WITH-DES-CBC-SHA, TLS-AES-128-GCM-SHA256, TLS-AES-256-GCM-SHA384, TLS-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA.
Priority float64
SSL/TLS cipher suites priority.
Versions []string
SSL/TLS versions that the cipher suite can be used with. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
cipher String
Cipher suite name. Valid values: TLS-RSA-WITH-RC4-128-MD5, TLS-RSA-WITH-RC4-128-SHA, TLS-RSA-WITH-DES-CBC-SHA, TLS-RSA-WITH-3DES-EDE-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA, TLS-RSA-WITH-AES-256-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA256, TLS-RSA-WITH-AES-256-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-RSA-WITH-SEED-CBC-SHA, TLS-RSA-WITH-ARIA-128-CBC-SHA256, TLS-RSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-RSA-WITH-DES-CBC-SHA, TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA, TLS-DHE-RSA-WITH-AES-256-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA256, TLS-DHE-RSA-WITH-AES-256-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-RSA-WITH-SEED-CBC-SHA, TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-RC4-128-SHA, TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA, TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-AES-128-GCM-SHA256, TLS-DHE-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-AES-128-CBC-SHA, TLS-DHE-DSS-WITH-AES-256-CBC-SHA, TLS-DHE-DSS-WITH-AES-128-CBC-SHA256, TLS-DHE-DSS-WITH-AES-128-GCM-SHA256, TLS-DHE-DSS-WITH-AES-256-CBC-SHA256, TLS-DHE-DSS-WITH-AES-256-GCM-SHA384, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384, TLS-RSA-WITH-AES-128-GCM-SHA256, TLS-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-DSS-WITH-SEED-CBC-SHA, TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA, TLS-DHE-DSS-WITH-DES-CBC-SHA, TLS-AES-128-GCM-SHA256, TLS-AES-256-GCM-SHA384, TLS-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA.
priority Double
SSL/TLS cipher suites priority.
versions List<String>
SSL/TLS versions that the cipher suite can be used with. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
cipher string
Cipher suite name. Valid values: TLS-RSA-WITH-RC4-128-MD5, TLS-RSA-WITH-RC4-128-SHA, TLS-RSA-WITH-DES-CBC-SHA, TLS-RSA-WITH-3DES-EDE-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA, TLS-RSA-WITH-AES-256-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA256, TLS-RSA-WITH-AES-256-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-RSA-WITH-SEED-CBC-SHA, TLS-RSA-WITH-ARIA-128-CBC-SHA256, TLS-RSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-RSA-WITH-DES-CBC-SHA, TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA, TLS-DHE-RSA-WITH-AES-256-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA256, TLS-DHE-RSA-WITH-AES-256-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-RSA-WITH-SEED-CBC-SHA, TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-RC4-128-SHA, TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA, TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-AES-128-GCM-SHA256, TLS-DHE-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-AES-128-CBC-SHA, TLS-DHE-DSS-WITH-AES-256-CBC-SHA, TLS-DHE-DSS-WITH-AES-128-CBC-SHA256, TLS-DHE-DSS-WITH-AES-128-GCM-SHA256, TLS-DHE-DSS-WITH-AES-256-CBC-SHA256, TLS-DHE-DSS-WITH-AES-256-GCM-SHA384, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384, TLS-RSA-WITH-AES-128-GCM-SHA256, TLS-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-DSS-WITH-SEED-CBC-SHA, TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA, TLS-DHE-DSS-WITH-DES-CBC-SHA, TLS-AES-128-GCM-SHA256, TLS-AES-256-GCM-SHA384, TLS-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA.
priority number
SSL/TLS cipher suites priority.
versions string[]
SSL/TLS versions that the cipher suite can be used with. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
cipher str
Cipher suite name. Valid values: TLS-RSA-WITH-RC4-128-MD5, TLS-RSA-WITH-RC4-128-SHA, TLS-RSA-WITH-DES-CBC-SHA, TLS-RSA-WITH-3DES-EDE-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA, TLS-RSA-WITH-AES-256-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA256, TLS-RSA-WITH-AES-256-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-RSA-WITH-SEED-CBC-SHA, TLS-RSA-WITH-ARIA-128-CBC-SHA256, TLS-RSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-RSA-WITH-DES-CBC-SHA, TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA, TLS-DHE-RSA-WITH-AES-256-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA256, TLS-DHE-RSA-WITH-AES-256-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-RSA-WITH-SEED-CBC-SHA, TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-RC4-128-SHA, TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA, TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-AES-128-GCM-SHA256, TLS-DHE-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-AES-128-CBC-SHA, TLS-DHE-DSS-WITH-AES-256-CBC-SHA, TLS-DHE-DSS-WITH-AES-128-CBC-SHA256, TLS-DHE-DSS-WITH-AES-128-GCM-SHA256, TLS-DHE-DSS-WITH-AES-256-CBC-SHA256, TLS-DHE-DSS-WITH-AES-256-GCM-SHA384, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384, TLS-RSA-WITH-AES-128-GCM-SHA256, TLS-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-DSS-WITH-SEED-CBC-SHA, TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA, TLS-DHE-DSS-WITH-DES-CBC-SHA, TLS-AES-128-GCM-SHA256, TLS-AES-256-GCM-SHA384, TLS-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA.
priority float
SSL/TLS cipher suites priority.
versions Sequence[str]
SSL/TLS versions that the cipher suite can be used with. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.
cipher String
Cipher suite name. Valid values: TLS-RSA-WITH-RC4-128-MD5, TLS-RSA-WITH-RC4-128-SHA, TLS-RSA-WITH-DES-CBC-SHA, TLS-RSA-WITH-3DES-EDE-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA, TLS-RSA-WITH-AES-256-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA256, TLS-RSA-WITH-AES-256-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-RSA-WITH-SEED-CBC-SHA, TLS-RSA-WITH-ARIA-128-CBC-SHA256, TLS-RSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-RSA-WITH-DES-CBC-SHA, TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA, TLS-DHE-RSA-WITH-AES-256-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA256, TLS-DHE-RSA-WITH-AES-256-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-RSA-WITH-SEED-CBC-SHA, TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-RC4-128-SHA, TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA, TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-AES-128-GCM-SHA256, TLS-DHE-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-AES-128-CBC-SHA, TLS-DHE-DSS-WITH-AES-256-CBC-SHA, TLS-DHE-DSS-WITH-AES-128-CBC-SHA256, TLS-DHE-DSS-WITH-AES-128-GCM-SHA256, TLS-DHE-DSS-WITH-AES-256-CBC-SHA256, TLS-DHE-DSS-WITH-AES-256-GCM-SHA384, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384, TLS-RSA-WITH-AES-128-GCM-SHA256, TLS-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-DSS-WITH-SEED-CBC-SHA, TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA, TLS-DHE-DSS-WITH-DES-CBC-SHA, TLS-AES-128-GCM-SHA256, TLS-AES-256-GCM-SHA384, TLS-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA.
priority Number
SSL/TLS cipher suites priority.
versions List<String>
SSL/TLS versions that the cipher suite can be used with. Valid values: tls-1.0, tls-1.1, tls-1.2, tls-1.3.

Import

ObjectFirewall AccessProxyApiGateway6 can be imported using any of these accepted formats:

Set import_options = [“access_proxy=YOUR_VALUE”] in the provider section.

$ export “FORTIMANAGER_IMPORT_TABLE”=“true”

$ pulumi import fortimanager:index/objectFirewallAccessproxyApigateway6:ObjectFirewallAccessproxyApigateway6 labelname {{fosid}}
Copy

$ unset “FORTIMANAGER_IMPORT_TABLE”

-> Hint: The scopetype and adom for import will directly inherit the scopetype and adom configuration of the provider.

To learn more about importing existing cloud resources, see Importing resources.

Package Details

Repository
fortimanager fortinetdev/terraform-provider-fortimanager
License
Notes
This Pulumi package is based on the fortimanager Terraform Provider.