/AWS1/CL_R5R=>ASSOCIATEFIREWALLRULEGROUP()
¶
About AssociateFirewallRuleGroup¶
Associates a FirewallRuleGroup with a VPC, to provide DNS filtering for the VPC.
Method Signature¶
IMPORTING¶
Required arguments:¶
IV_CREATORREQUESTID
TYPE /AWS1/R5RCREATORREQUESTID
/AWS1/R5RCREATORREQUESTID
¶
A unique string that identifies the request and that allows failed requests to be retried without the risk of running the operation twice.
CreatorRequestId
can be any unique string, for example, a date/time stamp.
IV_FIREWALLRULEGROUPID
TYPE /AWS1/R5RRESOURCEID
/AWS1/R5RRESOURCEID
¶
The unique identifier of the firewall rule group.
IV_VPCID
TYPE /AWS1/R5RRESOURCEID
/AWS1/R5RRESOURCEID
¶
The unique identifier of the VPC that you want to associate with the rule group.
IV_PRIORITY
TYPE /AWS1/R5RPRIORITY
/AWS1/R5RPRIORITY
¶
The setting that determines the processing order of the rule group among the rule groups that you associate with the specified VPC. DNS Firewall filters VPC traffic starting from the rule group with the lowest numeric priority setting.
You must specify a unique priority for each rule group that you associate with a single VPC. To make it easier to insert rule groups later, leave space between the numbers, for example, use 101, 200, and so on. You can change the priority setting for a rule group association after you create it.
The allowed values for
Priority
are between 100 and 9900.
IV_NAME
TYPE /AWS1/R5RNAME
/AWS1/R5RNAME
¶
A name that lets you identify the association, to manage and use it.
Optional arguments:¶
IV_MUTATIONPROTECTION
TYPE /AWS1/R5RMUTATIONPROTECTIONS00
/AWS1/R5RMUTATIONPROTECTIONS00
¶
If enabled, this setting disallows modification or removal of the association, to help prevent against accidentally altering DNS firewall protections. When you create the association, the default setting is
DISABLED
.
IT_TAGS
TYPE /AWS1/CL_R5RTAG=>TT_TAGLIST
TT_TAGLIST
¶
A list of the tag keys and values that you want to associate with the rule group association.