Class CfnRuleGroup.RuleDefinitionProperty.Jsii$Proxy
- All Implemented Interfaces:
CfnRuleGroup.RuleDefinitionProperty,software.amazon.jsii.JsiiSerializable
- Enclosing interface:
CfnRuleGroup.RuleDefinitionProperty
CfnRuleGroup.RuleDefinitionProperty-
Nested Class Summary
Nested classes/interfaces inherited from class software.amazon.jsii.JsiiObject
software.amazon.jsii.JsiiObject.InitializationModeNested classes/interfaces inherited from interface software.amazon.awscdk.services.networkfirewall.CfnRuleGroup.RuleDefinitionProperty
CfnRuleGroup.RuleDefinitionProperty.Builder, CfnRuleGroup.RuleDefinitionProperty.Jsii$Proxy -
Constructor Summary
ConstructorsModifierConstructorDescriptionprotectedConstructor that initializes the object based on literal property values passed by theCfnRuleGroup.RuleDefinitionProperty.Builder.protectedJsii$Proxy(software.amazon.jsii.JsiiObjectRef objRef) Constructor that initializes the object based on values retrieved from the JsiiObject. -
Method Summary
Modifier and TypeMethodDescriptioncom.fasterxml.jackson.databind.JsonNodefinal booleanThe actions to take on a packet that matches one of the stateless rule definition's match attributes.final ObjectCriteria for Network Firewall to use to inspect an individual packet in stateless rule inspection.final inthashCode()Methods inherited from class software.amazon.jsii.JsiiObject
jsiiAsyncCall, jsiiAsyncCall, jsiiCall, jsiiCall, jsiiGet, jsiiGet, jsiiSet, jsiiStaticCall, jsiiStaticCall, jsiiStaticGet, jsiiStaticGet, jsiiStaticSet, jsiiStaticSet
-
Constructor Details
-
Jsii$Proxy
protected Jsii$Proxy(software.amazon.jsii.JsiiObjectRef objRef) Constructor that initializes the object based on values retrieved from the JsiiObject.- Parameters:
objRef- Reference to the JSII managed object.
-
Jsii$Proxy
Constructor that initializes the object based on literal property values passed by theCfnRuleGroup.RuleDefinitionProperty.Builder.
-
-
Method Details
-
getActions
Description copied from interface:CfnRuleGroup.RuleDefinitionPropertyThe actions to take on a packet that matches one of the stateless rule definition's match attributes.You must specify a standard action and you can add custom actions.
Network Firewall only forwards a packet for stateful rule inspection if you specify
aws:forward_to_sfefor a rule that the packet matches, or if the packet doesn't match any stateless rule and you specifyaws:forward_to_sfefor theStatelessDefaultActionssetting for the firewall policy.For every rule, you must specify exactly one of the following standard actions.
- aws:pass - Discontinues all inspection of the packet and permits it to go to its intended destination.
- aws:drop - Discontinues all inspection of the packet and blocks it from going to its intended destination.
- aws:forward_to_sfe - Discontinues stateless inspection of the packet and forwards it to the stateful rule engine for inspection.
Additionally, you can specify a custom action. To do this, you define a custom action by name and type, then provide the name you've assigned to the action in this
Actionssetting.To provide more than one action in this setting, separate the settings with a comma. For example, if you have a publish metrics custom action that you've named
MyMetricsAction, then you could specify the standard actionaws:passcombined with the custom action using[“aws:pass”, “MyMetricsAction”].- Specified by:
getActionsin interfaceCfnRuleGroup.RuleDefinitionProperty- See Also:
-
getMatchAttributes
Description copied from interface:CfnRuleGroup.RuleDefinitionPropertyCriteria for Network Firewall to use to inspect an individual packet in stateless rule inspection.Each match attributes set can include one or more items such as IP address, CIDR range, port number, protocol, and TCP flags.
Returns union: either
IResolvableorCfnRuleGroup.MatchAttributesProperty- Specified by:
getMatchAttributesin interfaceCfnRuleGroup.RuleDefinitionProperty- See Also:
-
$jsii$toJson
@Internal public com.fasterxml.jackson.databind.JsonNode $jsii$toJson()- Specified by:
$jsii$toJsonin interfacesoftware.amazon.jsii.JsiiSerializable
-
equals
-
hashCode
public final int hashCode()
-