None
This object has no children.
This object has no members.
The name of the parent Template for this acl entry
Format: free
SDK attribute: ACLTemplateName
The action of the ACL entry DROP or FORWARD or REDIRECT.
Allowed values: DROP , FORWARD , REDIRECT
SDK attribute: action
Overrides the source IP for Ingress and destination IP for Egress, macentries will use this adress as the match criteria.
Format: free
SDK attribute: addressOverride
The associated application ID
Format: free
SDK attribute: associatedApplicationID
The associated application object ID
Format: free
SDK attribute: associatedApplicationObjectID
Associated Firewall Acl ID
Format: free
SDK attribute: associatedfirewallACLID
Description of the ACL entry
Format: free
SDK attribute: description
destination IPV6 address
Format: free
SDK attribute: destinationIpv6Value
The destination port to be matched if protocol is UDP or TCP. Value should be either * or single port number or a port range
Format: free
Max length: 255
SDK attribute: destinationPort
Network Type - either PolicyGroup or Network
Allowed values: MACROGROUP, NETWORK, NETWORKPOLICYGROUP, POLICYGROUP
SDK attribute: destinationType
In case of PG this will be its EVPNBGPCommunity String, incase of network it will be network cidr
Format: free
SDK attribute: destinationValue
Destination network - available in version 1.0 api
Format: free
SDK attribute: destNetwork
In case of PG this will be its EVPNBGPCommunity String, incase of network it will be network cidr
Format: free
SDK attribute: destPgId
In case of PG this will be its EVPNBGPCommunity String, incase of network it will be network cidr
Format: free
SDK attribute: destPgType
The name of the domain/domain template for the aclTemplateNames parent
Format: free
SDK attribute: domainName
DSCP match condition to be set in the rule. It is either * or from 0-63
Format: free
SDK attribute: DSCP
The name of the enterprise for the domains parent
Format: free
SDK attribute: enterpriseName
Ether type of the packet to be matched. etherType can be * or a valid hexadecimal value
Format: free
SDK attribute: etherType
Is flow logging enabled for this particular template
SDK attribute: flowLoggingEnabled
The ICMP Code when protocol selected is ICMP
Format: free
SDK attribute: ICMPCode
The ICMP Type when protocol selected is ICMP
Format: free
SDK attribute: ICMPType
Overrides the source IPV6 for Ingress and destination IPV6 for Egress, macentries will use this adress as the match criteria.
Format: free
SDK attribute: IPv6AddressOverride
The ID of the location entity (Subnet/Zone/VportTag)
Format: free
SDK attribute: locationID
Type of the location entity - ANY or SUBNET or ZONE or VPORTTAG
Allowed values: ANY, POLICYGROUP, REDIRECTIONTARGET, SUBNET, VPORTTAG, ZONE
SDK attribute: locationType
This is the ID of the mirrorDestrination entity associated with this entity
Format: free
SDK attribute: mirrorDestinationID
The destination network entity that is referenced(subnet/zone/macro)
Format: free
SDK attribute: networkID
Type of the source network - VM_SUBNET or VM_ZONE or VM_DOMAIN or SUBNET or ZONE or ENTERPRISE_NETWORK or PUBLIC_NETWORK or ANY
Allowed values: ANY, ENDPOINT_DOMAIN, ENDPOINT_SUBNET, ENDPOINT_ZONE, ENTERPRISE_NETWORK, INTERNET_POLICYGROUP, NETWORK, NETWORK_MACRO_GROUP, POLICYGROUP, PUBLIC_NETWORK, SUBNET, ZONE
SDK attribute: networkType
The priority of the ACL entry that determines the order of entries
Format: free
SDK attribute: priority
source IPV6 address
Format: free
SDK attribute: sourceIpv6Value
Source network - available in version 1.0 api
Format: free
SDK attribute: sourceNetwork
In case of PG this will be its EVPNBGPCommunity String, incase of network it will be network cidr
Format: free
SDK attribute: sourcePgId
in case of PG this will be its EVPNBGPCommunity String, incase of network itdomainfip will be network cidr
Format: free
SDK attribute: sourcePgType
Source port to be matched if protocol is UDP or TCP. Value can be either * or single port number or a port range
Format: free
Max length: 255
SDK attribute: sourcePort
Location Type - either PolicyGroup or Network
Allowed values: MACROGROUP, NETWORK, NETWORKPOLICYGROUP, POLICYGROUP
SDK attribute: sourceType
In case of PG this will be its EVPNBGPCommunity String, incase of network it will be network cidr
Format: free
SDK attribute: sourceValue
true means that this ACL entry is stateful, so there will be a corresponding rule that will be created by OVS in the network. false means that there is no correspondingrule created by OVS in the network
Default value: false
SDK attribute: stateful
The statsID that is created in the VSD and identifies this ACL Template Entry.. This is auto-generated by VSD
Format: free
SDK attribute: statsID
Is stats logging enabled for this particular template
SDK attribute: statsLoggingEnabled