Skip to content

/AWS1/CL_EC2=>REPLACENETWORKACLENTRY()

About ReplaceNetworkAclEntry

Replaces an entry (rule) in a network ACL. For more information, see Network ACLs in the Amazon VPC User Guide.

Method Signature

IMPORTING

Required arguments:

IV_EGRESS TYPE /AWS1/EC2BOOLEAN /AWS1/EC2BOOLEAN

Indicates whether to replace the egress rule.

Default: If no value is specified, we replace the ingress rule.

IV_NETWORKACLID TYPE /AWS1/EC2NETWORKACLID /AWS1/EC2NETWORKACLID

The ID of the ACL.

IV_PROTOCOL TYPE /AWS1/EC2STRING /AWS1/EC2STRING

The protocol number. A value of "-1" means all protocols. If you specify "-1" or a protocol number other than "6" (TCP), "17" (UDP), or "1" (ICMP), traffic on all ports is allowed, regardless of any ports or ICMP types or codes that you specify. If you specify protocol "58" (ICMPv6) and specify an IPv4 CIDR block, traffic for all ICMP types and codes allowed, regardless of any that you specify. If you specify protocol "58" (ICMPv6) and specify an IPv6 CIDR block, you must specify an ICMP type and code.

IV_RULEACTION TYPE /AWS1/EC2RULEACTION /AWS1/EC2RULEACTION

Indicates whether to allow or deny the traffic that matches the rule.

IV_RULENUMBER TYPE /AWS1/EC2INTEGER /AWS1/EC2INTEGER

The rule number of the entry to replace.

Optional arguments:

IV_CIDRBLOCK TYPE /AWS1/EC2STRING /AWS1/EC2STRING

The IPv4 network range to allow or deny, in CIDR notation (for example 172.16.0.0/24).

IV_DRYRUN TYPE /AWS1/EC2BOOLEAN /AWS1/EC2BOOLEAN

Checks whether you have the required permissions for the action, without actually making the request, and provides an error response. If you have the required permissions, the error response is DryRunOperation. Otherwise, it is UnauthorizedOperation.

IO_ICMPTYPECODE TYPE REF TO /AWS1/CL_EC2ICMPTYPECODE /AWS1/CL_EC2ICMPTYPECODE

ICMP protocol: The ICMP or ICMPv6 type and code. Required if specifying protocol 1 (ICMP) or protocol 58 (ICMPv6) with an IPv6 CIDR block.

IV_IPV6CIDRBLOCK TYPE /AWS1/EC2STRING /AWS1/EC2STRING

The IPv6 network range to allow or deny, in CIDR notation (for example 2001:bd8:1234:1a00::/64).

IO_PORTRANGE TYPE REF TO /AWS1/CL_EC2PORTRANGE /AWS1/CL_EC2PORTRANGE

TCP or UDP protocols: The range of ports the rule applies to. Required if specifying protocol 6 (TCP) or 17 (UDP).