Update Firewall Policy
networkfirewall_update_firewall_policy | R Documentation |
Updates the properties of the specified firewall policy¶
Description¶
Updates the properties of the specified firewall policy.
Usage¶
networkfirewall_update_firewall_policy(UpdateToken, FirewallPolicyArn,
FirewallPolicyName, FirewallPolicy, Description, DryRun,
EncryptionConfiguration)
Arguments¶
UpdateToken
[required] A token used for optimistic locking. Network Firewall returns a token to your requests that access the firewall policy. The token marks the state of the policy resource at the time of the request.
To make changes to the policy, you provide the token in your request. Network Firewall uses the token to ensure that the policy hasn't changed since you last retrieved it. If it has changed, the operation fails with an
InvalidTokenException
. If this happens, retrieve the firewall policy again to get a current copy of it with current token. Reapply your changes as needed, then try the operation again using the new token.FirewallPolicyArn
The Amazon Resource Name (ARN) of the firewall policy.
You must specify the ARN or the name, and you can specify both.
FirewallPolicyName
The descriptive name of the firewall policy. You can't change the name of a firewall policy after you create it.
You must specify the ARN or the name, and you can specify both.
FirewallPolicy
[required] The updated firewall policy to use for the firewall. You can't add or remove a TLSInspectionConfiguration after you create a firewall policy. However, you can replace an existing TLS inspection configuration with another
TLSInspectionConfiguration
.Description
A description of the firewall policy.
DryRun
Indicates whether you want Network Firewall to just check the validity of the request, rather than run the request.
If set to
TRUE
, Network Firewall checks whether the request can run successfully, but doesn't actually make the requested changes. The call returns the value that the request would return if you ran it with dry run set toFALSE
, but doesn't make additions or changes to your resources. This option allows you to make sure that you have the required permissions to run the request and that your request parameters are valid.If set to
FALSE
, Network Firewall makes the requested changes to your resources.EncryptionConfiguration
A complex type that contains settings for encryption of your firewall policy resources.
Value¶
A list with the following syntax:
list(
UpdateToken = "string",
FirewallPolicyResponse = list(
FirewallPolicyName = "string",
FirewallPolicyArn = "string",
FirewallPolicyId = "string",
Description = "string",
FirewallPolicyStatus = "ACTIVE"|"DELETING"|"ERROR",
Tags = list(
list(
Key = "string",
Value = "string"
)
),
ConsumedStatelessRuleCapacity = 123,
ConsumedStatefulRuleCapacity = 123,
NumberOfAssociations = 123,
EncryptionConfiguration = list(
KeyId = "string",
Type = "CUSTOMER_KMS"|"AWS_OWNED_KMS_KEY"
),
LastModifiedTime = as.POSIXct(
"2015-01-01"
)
)
)
Request syntax¶
svc$update_firewall_policy(
UpdateToken = "string",
FirewallPolicyArn = "string",
FirewallPolicyName = "string",
FirewallPolicy = list(
StatelessRuleGroupReferences = list(
list(
ResourceArn = "string",
Priority = 123
)
),
StatelessDefaultActions = list(
"string"
),
StatelessFragmentDefaultActions = list(
"string"
),
StatelessCustomActions = list(
list(
ActionName = "string",
ActionDefinition = list(
PublishMetricAction = list(
Dimensions = list(
list(
Value = "string"
)
)
)
)
)
),
StatefulRuleGroupReferences = list(
list(
ResourceArn = "string",
Priority = 123,
Override = list(
Action = "DROP_TO_ALERT"
)
)
),
StatefulDefaultActions = list(
"string"
),
StatefulEngineOptions = list(
RuleOrder = "DEFAULT_ACTION_ORDER"|"STRICT_ORDER",
StreamExceptionPolicy = "DROP"|"CONTINUE"|"REJECT"
),
TLSInspectionConfigurationArn = "string",
PolicyVariables = list(
RuleVariables = list(
list(
Definition = list(
"string"
)
)
)
)
),
Description = "string",
DryRun = TRUE|FALSE,
EncryptionConfiguration = list(
KeyId = "string",
Type = "CUSTOMER_KMS"|"AWS_OWNED_KMS_KEY"
)
)