- Home
- Documentation
- Sites
- Data Sources
- xcsh_azure_vnet_site (Data Source)
xcsh_azure_vnet_site (Data Source)
Retrieves information about a Azure VNET Site resource in F5 Distributed Cloud for deploying F5 sites within Azure Virtual Network environments. This is a read-only data source.
~> Note: For more information, see the Azure VNET Site API documentation.
Example Usage
Section titled “Example Usage”# AzureVNETSite Data Source Example
terraform { required_version = ">= 1.0"
required_providers { xcsh = { source = "f5-sales-demo/xcsh" version = ">= 0.1.0" } }}
# Look up an existing AzureVNETSite by namedata "xcsh_azure_vnet_site" "example" { name = "example-azure-vnet-site" namespace = "system"}
output "azure_vnet_site_id" { value = data.xcsh_azure_vnet_site.example.id}Argument Reference
Section titled “Argument Reference”-> Syntax Rule: This provider uses OneOf groups for mutually exclusive options. Fields documented as “Optional Block” use block syntax field_name { ... }. Empty OneOf object attributes use field_name = {}; conditional selection uses condition ? {} : null. Boolean attributes (such as add_hsts and http_redirect) use = true or = false.
🔶 High Risk Operations — Some operations on this resource have high danger level. Destructive operations may require confirmation.
~> Dependencies — This resource requires: cloud_credentials.
Metadata Argument Reference
Section titled “Metadata Argument Reference”• name - Required String
Name of the AzureVNETSite
• namespace - Optional String
Namespace where the AzureVNETSite exists
Attributes Reference
Section titled “Attributes Reference”In addition to all arguments above, the following attributes are exported:
• address - Optional String
Site’s geographical address that can be used to determine its latitude and longitude
• admin_password - Optional String
SecretType is used in an object to indicate a sensitive/confidential field
• alternate_region - Optional String
Name of the Azure region which does not support availability zones
• annotations - Optional Map
Annotations applied to this resource
• azure_cred - Optional String
Type establishes a direct reference from one object(the referrer) to another(the referred). Such a reference is in form of tenant/namespace/name
• azure_region - Optional String
Name of the Azure region which supports availability zones
• block_all_services - Optional Object Defaults to map[]
Enable this option. Server applies default when omitted
• blocked_services - Optional String
Disable node local services on this site
• coordinates - Optional String
Coordinates of the site which provides the site physical location
• custom_dns - Optional String
Custom DNS is the configured for specify CE site
• default_blocked_services - Optional Object
Enable this option
• description - Optional String
Description of the AzureVNETSite
• disable_encryption - Optional Object
Configuration parameter for disable encryption
• disk_size - Optional Number
Disk size to be used for this instance in GiB. 80 is 80 GiB. Server applies default when omitted
• enable_encryption - Optional String
Configuration parameter for enable encryption
• id - Optional String
Unique identifier for the resource
• ingress_egress_gw - Optional String
Two interface Azure ingress/egress site
• ingress_egress_gw_ar - Optional String
Two interface Azure ingress/egress site on Alternate Region with no support for zones
• ingress_gw - Optional String
Single interface Azure ingress site on on Recommended Region
• ingress_gw_ar - Optional String
Configuration parameter for ingress gw ar
• kubernetes_upgrade_drain - Optional String
Specify how worker nodes within a site will be upgraded
• labels - Optional Map
Labels applied to this resource
• log_receiver - Optional String
Type establishes a direct reference from one object(the referrer) to another(the referred). Such a reference is in form of tenant/namespace/name
• logs_streaming_disabled - Optional Object Defaults to map[]
Enable this option. Server applies default when omitted
• machine_type - Optional String
Select Instance size based on performance needed. The default setting for Accelerated Networking is enabled, thus make sure you select a Virtual Machine that supports accelerated networking or disable the setting under, Select Ingress Gateway or Ingress/Egress Gateway > advanced OPTIONS
• no_worker_nodes - Optional Object Defaults to map[]
Configuration parameter for no worker nodes. Server applies default when omitted
• nodes_per_az - Optional Number
Desired Worker Nodes Per AZ. Max limit is up to 21
• offline_survivability_mode - Optional String
Offline Survivability allows the Site to continue functioning normally without traffic loss during periods of connectivity loss to the Regional Edge (RE) or the Global Controller (GC). When this feature is enabled, a site can continue to function as is with existing
configuration for upto 7
• os - Optional String
Select the F5XC Operating System Version for the site. By default, latest available OS Version will be used. Refer to release notes to find required released OS versions
• resource_group - Optional String
Azure resource group for resources that will be created
• ssh_key - Optional String
Public SSH key. Public SSH key for accessing the site
• sw - Optional String
Select the F5XC Software Version for the site. By default, latest available F5XC Software Version will be used. Refer to release notes to find required released SW versions
• tags - Optional Map Defaults to map[]
Azure Tags is a label consisting of a user-defined key and value. It helps to manage, identify, organize, search for, and filter resources in Azure console. Server applies default when omitted
• total_nodes - Optional Number
Total number of worker nodes to be deployed across all AZ’s used in the Site
• vnet - Optional String
Defines choice about Azure VNET for a view
• voltstack_cluster - Optional String
App Stack Cluster of single interface Azure nodes
• voltstack_cluster_ar - Optional String
App Stack Cluster of single interface Azure nodes
• blindfold_secret_info - Optional String
BlindfoldSecretInfoType specifies information about the Secret managed by F5XC Secret Management
• clear_secret_info - Optional String
ClearSecretInfoType specifies information about the Secret that is not encrypted
• decryption_provider - Optional String
Name of the Secret Management Access object that contains information about the backend Secret Management service
• location - Optional String
Location is the uri_ref. It could be in URL format for string:/// Or it could be a path if the store provider is an HTTP/HTTPS location
• store_provider - Optional String
Name of the Secret Management Access object that contains information about the store to GET encrypted bytes This field needs to be provided only if the URL scheme is not string:///
• provider_ref - Optional String
Name of the Secret Management Access object that contains information about the store to GET encrypted bytes This field needs to be provided only if the URL scheme is not string:///
• url - Optional String
URL of the secret. Currently supported URL schemes is string:///. For string:/// scheme, Secret needs to be encoded Base64 format. When asked for this secret, caller will GET Secret bytes after Base64 decoding
• name - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then name will hold the referred object’s(e.g. Route’s) name
• namespace - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then namespace will hold the referred object’s(e.g. Route’s) namespace
• tenant - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then tenant will hold the referred object’s(e.g. Route’s) tenant
• blocked_service - Optional List
Disable Node Local Services. Blocking or denial configuration
• dns - Optional Object
Enable this option
• network_type - Optional String Defaults to VIRTUAL_NETWORK_SITE_LOCAL
Possible values are VIRTUAL_NETWORK_SITE_LOCAL, VIRTUAL_NETWORK_SITE_LOCAL_INSIDE, VIRTUAL_NETWORK_PER_SITE, VIRTUAL_NETWORK_PUBLIC, VIRTUAL_NETWORK_GLOBAL, VIRTUAL_NETWORK_SITE_SERVICE, VIRTUAL_NETWORK_VER_INTERNAL,
VIRTUAL_NETWORK_SITE_LOCAL_INSIDE_OUTSIDE, VIRTUAL_NETWORK_IP_AUTO, VIRTUAL_NETWORK_VOLTADN_PRIVATE_NETWORK, VIRTUAL_NETWORK_SRV6_NETWORK, VIRTUAL_NETWORK_IP_FABRIC, VIRTUAL_NETWORK_SEGMENT, VIRTUAL_NETWORK_MANAGEMENT
[Enum:
VIRTUAL_NETWORK_SITE_LOCAL|VIRTUAL_NETWORK_SITE_LOCAL_INSIDE|VIRTUAL_NETWORK_PER_SITE|VIRTUAL_NETWORK_PUBLIC|VIRTUAL_NETWORK_GLOBAL|VIRTUAL_NETWORK_SITE_SERVICE|VIRTUAL_NETWORK_VER_INTERNAL|VIRTUAL_NETWORK_SITE_LOCAL_INSIDE_OUTSIDE|VIRTUAL_NETWORK_IP_AUTO|VIRTUAL_NETWORK_VOLTADN_PRIVATE_NETWORK|VIRTUAL_NETWORK_SRV6_NETWORK|VIRTUAL_NETWORK_IP_FABRIC|VIRTUAL_NETWORK_SEGMENT|VIRTUAL_NETWORK_MANAGEMENT]
Different types of virtual networks understood by the system Virtual-network of type VIRTUAL_NETWORK_SITE_LOCAL provides connectivity to public (outside) network. This is an insecure network and is connected to public internet via NAT Gateways/firwalls Virtual-network of this type is local to
• ssh - Optional Object
Enable this option
• web_user_interface - Optional Object
Enable this option
Coordinates
Section titled “Coordinates”A coordinates block supports the following:
• latitude - Optional Number
Latitude. Latitude of the site location
• longitude - Optional Number
Longitude. Longitude of site location
Custom DNS
Section titled “Custom DNS”A custom_dns block supports the following:
• inside_nameserver - Optional String
Optional DNS server IP to be used for name resolution in inside network
• outside_nameserver - Optional String
Optional DNS server IP to be used for name resolution in outside network
Default Blocked Services
Section titled “Default Blocked Services”A default_blocked_services block supports the following:
Disable Encryption
Section titled “Disable Encryption”A disable_encryption block supports the following:
Enable Encryption
Section titled “Enable Encryption”An enable_encryption block supports the following:
• disk_encryption_set_id - Optional String
Azure Disk Encryption Set to be used to encrypt the disk attached to the VM
• resource_group - Optional String
The resource group in which the Disk Encryption Set is present
Ingress Egress Gw
Section titled “Ingress Egress Gw”An ingress_egress_gw block supports the following:
• accelerated_networking - Optional String
Accelerated Networking to reduce Latency, When Mode is toggled, traffic disruption will be seen
• active_enhanced_firewall_policies - Optional String
List of Enhanced Firewall Policies These policies use session-based rules and provide all OPTIONS available under firewall policies with an additional option for service insertion
• active_forward_proxy_policies - Optional String
Ordered List of Forward Proxy Policies active
• active_network_policies - Optional String
Configuration parameter for active network policies
• az_nodes - Optional List
Only Single AZ or Three AZ(s) nodes are supported currently
• azure_certified_hw - Optional String
[Enum: azure-byol-multi-nic-voltmesh] Azure Certified Hardware. Name for Azure certified hardware. The only possible value is azure-byol-multi-nic-voltmesh
• dc_cluster_group_inside_vn - Optional String
Type establishes a direct reference from one object(the referrer) to another(the referred). Such a reference is in form of tenant/namespace/name
• dc_cluster_group_outside_vn - Optional String
Type establishes a direct reference from one object(the referrer) to another(the referred). Such a reference is in form of tenant/namespace/name
• forward_proxy_allow_all - Optional Object
Configuration parameter for forward proxy allow all
• global_network_list - Optional String
Global Network Connection List. List of global network connections
• hub - Optional String
Hub VNET type. Hub VNET type
• inside_static_routes - Optional String
Configuration parameter for inside static routes
• no_dc_cluster_group - Optional Object
Enable this option
• no_forward_proxy - Optional Object
Configuration parameter for no forward proxy
• no_global_network - Optional Object
Configuration parameter for no global network
• no_inside_static_routes - Optional Object
Configuration parameter for no inside static routes
• no_network_policy - Optional Object
Policy configuration for this feature
• no_outside_static_routes - Optional Object
Configuration parameter for no outside static routes
• not_hub - Optional Object
Enable this option
• outside_static_routes - Optional String
Configuration parameter for outside static routes
• performance_enhancement_mode - Optional String
Optimize the site for L3 or L7 traffic processing. L7 optimized is the default
• sm_connection_public_ip - Optional Object
Enable this option
• sm_connection_pvt_ip - Optional Object
Enable this option
Ingress Egress Gw Accelerated Networking
Section titled “Ingress Egress Gw Accelerated Networking”An accelerated_networking block (within ingress_egress_gw) supports the following:
• disable_spec - Optional Object
Enable this option
• enable - Optional Object
Enable this option
Ingress Egress Gw Accelerated Networking Disable Spec
Section titled “Ingress Egress Gw Accelerated Networking Disable Spec”A disable_spec block (within ingress_egress_gw.accelerated_networking) supports the following:
Ingress Egress Gw Accelerated Networking Enable
Section titled “Ingress Egress Gw Accelerated Networking Enable”An enable block (within ingress_egress_gw.accelerated_networking) supports the following:
Ingress Egress Gw Active Enhanced Firewall Policies
Section titled “Ingress Egress Gw Active Enhanced Firewall Policies”An active_enhanced_firewall_policies block (within ingress_egress_gw) supports the following:
• enhanced_firewall_policies - Optional List
Ordered List of Enhanced Firewall Policies active
Ingress Egress Gw Active Enhanced Firewall Policies Enhanced Firewall Policies
Section titled “Ingress Egress Gw Active Enhanced Firewall Policies Enhanced Firewall Policies”Deeply nested Policies block collapsed for readability.
Ingress Egress Gw Active Forward Proxy Policies
Section titled “Ingress Egress Gw Active Forward Proxy Policies”An active_forward_proxy_policies block (within ingress_egress_gw) supports the following:
• forward_proxy_policies - Optional List
Ordered List of Forward Proxy Policies active
Ingress Egress Gw Active Forward Proxy Policies Forward Proxy Policies
Section titled “Ingress Egress Gw Active Forward Proxy Policies Forward Proxy Policies”Deeply nested Policies block collapsed for readability.
Ingress Egress Gw Active Network Policies
Section titled “Ingress Egress Gw Active Network Policies”An active_network_policies block (within ingress_egress_gw) supports the following:
• network_policies - Optional List
Ordered List of Firewall Policies active for this network firewall
Ingress Egress Gw Active Network Policies Network Policies
Section titled “Ingress Egress Gw Active Network Policies Network Policies”Deeply nested Policies block collapsed for readability.
Ingress Egress Gw Az Nodes
Section titled “Ingress Egress Gw Az Nodes”An az_nodes block (within ingress_egress_gw) supports the following:
• azure_az - Optional String
Possible values are 1, 2, 3
[Enum: 1|2|3] Zone depicting a grouping of datacenters within an Azure region. Expecting numeric input
• inside_subnet - Optional String
Configuration parameter for inside subnet
• outside_subnet - Optional String
Configuration parameter for outside subnet
Ingress Egress Gw Az Nodes Inside Subnet
Section titled “Ingress Egress Gw Az Nodes Inside Subnet”An inside_subnet block (within ingress_egress_gw.az_nodes) supports the following:
• subnet - Optional String
Subnet specification for network segmentation
• subnet_param - Optional String
Parameters for creating a new cloud subnet
Ingress Egress Gw Az Nodes Inside Subnet Subnet
Section titled “Ingress Egress Gw Az Nodes Inside Subnet Subnet”Deeply nested Subnet block collapsed for readability.
Ingress Egress Gw Az Nodes Inside Subnet Subnet VNET Resource Group
Section titled “Ingress Egress Gw Az Nodes Inside Subnet Subnet VNET Resource Group”Deeply nested Group block collapsed for readability.
Ingress Egress Gw Az Nodes Inside Subnet Subnet Param
Section titled “Ingress Egress Gw Az Nodes Inside Subnet Subnet Param”Deeply nested Param block collapsed for readability.
Ingress Egress Gw Az Nodes Outside Subnet
Section titled “Ingress Egress Gw Az Nodes Outside Subnet”An outside_subnet block (within ingress_egress_gw.az_nodes) supports the following:
• subnet - Optional String
Subnet specification for network segmentation
• subnet_param - Optional String
Parameters for creating a new cloud subnet
Ingress Egress Gw Az Nodes Outside Subnet Subnet
Section titled “Ingress Egress Gw Az Nodes Outside Subnet Subnet”Deeply nested Subnet block collapsed for readability.
Ingress Egress Gw Az Nodes Outside Subnet Subnet VNET Resource Group
Section titled “Ingress Egress Gw Az Nodes Outside Subnet Subnet VNET Resource Group”Deeply nested Group block collapsed for readability.
Ingress Egress Gw Az Nodes Outside Subnet Subnet Param
Section titled “Ingress Egress Gw Az Nodes Outside Subnet Subnet Param”Deeply nested Param block collapsed for readability.
Ingress Egress Gw Dc Cluster Group Inside Vn
Section titled “Ingress Egress Gw Dc Cluster Group Inside Vn”Deeply nested Vn block collapsed for readability.
Ingress Egress Gw Dc Cluster Group Outside Vn
Section titled “Ingress Egress Gw Dc Cluster Group Outside Vn”Deeply nested Vn block collapsed for readability.
Ingress Egress Gw Forward Proxy Allow All
Section titled “Ingress Egress Gw Forward Proxy Allow All”A forward_proxy_allow_all block (within ingress_egress_gw) supports the following:
Ingress Egress Gw Global Network List
Section titled “Ingress Egress Gw Global Network List”A global_network_list block (within ingress_egress_gw) supports the following:
• global_network_connections - Optional List
Global Network Connections. Global network connections
Ingress Egress Gw Global Network List Global Network Connections
Section titled “Ingress Egress Gw Global Network List Global Network Connections”Deeply nested Connections block collapsed for readability.
Ingress Egress Gw Global Network List Global Network Connections SLI To Global DR
Section titled “Ingress Egress Gw Global Network List Global Network Connections SLI To Global DR”Deeply nested DR block collapsed for readability.
Ingress Egress Gw Global Network List Global Network Connections SLI To Global DR Global Vn
Section titled “Ingress Egress Gw Global Network List Global Network Connections SLI To Global DR Global Vn”Deeply nested Vn block collapsed for readability.
Ingress Egress Gw Global Network List Global Network Connections Slo To Global DR
Section titled “Ingress Egress Gw Global Network List Global Network Connections Slo To Global DR”Deeply nested DR block collapsed for readability.
Ingress Egress Gw Global Network List Global Network Connections Slo To Global DR Global Vn
Section titled “Ingress Egress Gw Global Network List Global Network Connections Slo To Global DR Global Vn”Deeply nested Vn block collapsed for readability.
Ingress Egress Gw Hub
Section titled “Ingress Egress Gw Hub”A hub block (within ingress_egress_gw) supports the following:
• express_route_disabled - Optional Object
Enable this option
• express_route_enabled - Optional String
Express Route Configuration. Express Route Configuration
• spoke_vnets - Optional List
Spoke VNET Peering (Legacy). Spoke VNET Peering
Ingress Egress Gw Hub Express Route Disabled
Section titled “Ingress Egress Gw Hub Express Route Disabled”An express_route_disabled block (within ingress_egress_gw.hub) supports the following:
Ingress Egress Gw Hub Express Route Enabled
Section titled “Ingress Egress Gw Hub Express Route Enabled”An express_route_enabled block (within ingress_egress_gw.hub) supports the following:
• advertise_to_route_server - Optional Object
Configuration parameter for advertise to route server
• auto_asn - Optional Object
Enable this option
• connections - Optional List
Add the ExpressRoute Circuit Connections to this site
• custom_asn - Optional Number
Set custom ASN for F5XC Site
• do_not_advertise_to_route_server - Optional Object
Configuration parameter for do not advertise to route server
• gateway_subnet - Optional String
Configuration parameter for gateway subnet
• route_server_subnet - Optional String
Configuration parameter for route server subnet
• site_registration_over_express_route - Optional String
CloudLink ADN Network Config
• site_registration_over_internet - Optional Object
Enable this option
• sku_ergw1az - Optional Object
Configuration parameter for sku ergw1az
• sku_ergw2az - Optional Object
Configuration parameter for sku ergw2az
• sku_high_perf - Optional Object
Configuration parameter for sku high perf
• sku_standard - Optional Object
Configuration parameter for sku standard
Ingress Egress Gw Hub Express Route Enabled Advertise To Route Server
Section titled “Ingress Egress Gw Hub Express Route Enabled Advertise To Route Server”Deeply nested Server block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Auto Asn
Section titled “Ingress Egress Gw Hub Express Route Enabled Auto Asn”Deeply nested Asn block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Connections
Section titled “Ingress Egress Gw Hub Express Route Enabled Connections”Deeply nested Connections block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Connections Metadata
Section titled “Ingress Egress Gw Hub Express Route Enabled Connections Metadata”Deeply nested Metadata block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Connections Other Subscription
Section titled “Ingress Egress Gw Hub Express Route Enabled Connections Other Subscription”Deeply nested Subscription block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Connections Other Subscription Authorized Key
Section titled “Ingress Egress Gw Hub Express Route Enabled Connections Other Subscription Authorized Key”Deeply nested Key block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Connections Other Subscription Authorized Key Blindfold Secret Info
Section titled “Ingress Egress Gw Hub Express Route Enabled Connections Other Subscription Authorized Key Blindfold Secret Info”Deeply nested Info block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Connections Other Subscription Authorized Key Clear Secret Info
Section titled “Ingress Egress Gw Hub Express Route Enabled Connections Other Subscription Authorized Key Clear Secret Info”Deeply nested Info block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Do Not Advertise To Route Server
Section titled “Ingress Egress Gw Hub Express Route Enabled Do Not Advertise To Route Server”Deeply nested Server block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Gateway Subnet
Section titled “Ingress Egress Gw Hub Express Route Enabled Gateway Subnet”Deeply nested Subnet block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Gateway Subnet Auto
Section titled “Ingress Egress Gw Hub Express Route Enabled Gateway Subnet Auto”Deeply nested Auto block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Gateway Subnet Subnet
Section titled “Ingress Egress Gw Hub Express Route Enabled Gateway Subnet Subnet”Deeply nested Subnet block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Gateway Subnet Subnet VNET Resource Group
Section titled “Ingress Egress Gw Hub Express Route Enabled Gateway Subnet Subnet VNET Resource Group”Deeply nested Group block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Gateway Subnet Subnet Param
Section titled “Ingress Egress Gw Hub Express Route Enabled Gateway Subnet Subnet Param”Deeply nested Param block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Route Server Subnet
Section titled “Ingress Egress Gw Hub Express Route Enabled Route Server Subnet”Deeply nested Subnet block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Route Server Subnet Auto
Section titled “Ingress Egress Gw Hub Express Route Enabled Route Server Subnet Auto”Deeply nested Auto block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Route Server Subnet Subnet
Section titled “Ingress Egress Gw Hub Express Route Enabled Route Server Subnet Subnet”Deeply nested Subnet block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Route Server Subnet Subnet VNET Resource Group
Section titled “Ingress Egress Gw Hub Express Route Enabled Route Server Subnet Subnet VNET Resource Group”Deeply nested Group block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Route Server Subnet Subnet Param
Section titled “Ingress Egress Gw Hub Express Route Enabled Route Server Subnet Subnet Param”Deeply nested Param block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Site Registration Over Express Route
Section titled “Ingress Egress Gw Hub Express Route Enabled Site Registration Over Express Route”Deeply nested Route block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Site Registration Over internet
Section titled “Ingress Egress Gw Hub Express Route Enabled Site Registration Over internet”Deeply nested internet block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Sku Ergw1az
Section titled “Ingress Egress Gw Hub Express Route Enabled Sku Ergw1az”Deeply nested Ergw1az block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Sku Ergw2az
Section titled “Ingress Egress Gw Hub Express Route Enabled Sku Ergw2az”Deeply nested Ergw2az block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Sku High Perf
Section titled “Ingress Egress Gw Hub Express Route Enabled Sku High Perf”Deeply nested Perf block collapsed for readability.
Ingress Egress Gw Hub Express Route Enabled Sku Standard
Section titled “Ingress Egress Gw Hub Express Route Enabled Sku Standard”Deeply nested Standard block collapsed for readability.
Ingress Egress Gw Hub Spoke Vnets
Section titled “Ingress Egress Gw Hub Spoke Vnets”A spoke_vnets block (within ingress_egress_gw.hub) supports the following:
• auto - Optional Object
Enable this option
• labels - Optional String
Add Labels for each of the VNets peered with transit VNET, these labels can be used in firewall policy These labels used must be from known key and label defined in shared namespace
• manual - Optional Object
Enable this option
• vnet - Optional String
Resource group and name of existing Azure VNET
Ingress Egress Gw Hub Spoke Vnets Auto
Section titled “Ingress Egress Gw Hub Spoke Vnets Auto”An auto block (within ingress_egress_gw.hub.spoke_vnets) supports the following:
Ingress Egress Gw Hub Spoke Vnets Labels
Section titled “Ingress Egress Gw Hub Spoke Vnets Labels”A labels block (within ingress_egress_gw.hub.spoke_vnets) supports the following:
Ingress Egress Gw Hub Spoke Vnets Manual
Section titled “Ingress Egress Gw Hub Spoke Vnets Manual”A manual block (within ingress_egress_gw.hub.spoke_vnets) supports the following:
Ingress Egress Gw Hub Spoke Vnets VNET
Section titled “Ingress Egress Gw Hub Spoke Vnets VNET”A vnet block (within ingress_egress_gw.hub.spoke_vnets) supports the following:
• f5_orchestrated_routing - Optional Object
Enable this option
• manual_routing - Optional Object
Enable this option
• resource_group - Optional String
Existing VNET Resource Group. Resource group of existing VNET
• vnet_name - Optional String
Existing VNET Name. Name of existing VNET
Ingress Egress Gw Hub Spoke Vnets VNET F5 Orchestrated Routing
Section titled “Ingress Egress Gw Hub Spoke Vnets VNET F5 Orchestrated Routing”Deeply nested Routing block collapsed for readability.
Ingress Egress Gw Hub Spoke Vnets VNET Manual Routing
Section titled “Ingress Egress Gw Hub Spoke Vnets VNET Manual Routing”Deeply nested Routing block collapsed for readability.
Ingress Egress Gw Inside Static Routes
Section titled “Ingress Egress Gw Inside Static Routes”An inside_static_routes block (within ingress_egress_gw) supports the following:
• static_route_list - Optional List
List of Static Routes. List of Static routes
Ingress Egress Gw Inside Static Routes Static Route List
Section titled “Ingress Egress Gw Inside Static Routes Static Route List”Deeply nested List block collapsed for readability.
Ingress Egress Gw Inside Static Routes Static Route List Custom Static Route
Section titled “Ingress Egress Gw Inside Static Routes Static Route List Custom Static Route”Deeply nested Route block collapsed for readability.
Ingress Egress Gw Inside Static Routes Static Route List Custom Static Route Labels
Section titled “Ingress Egress Gw Inside Static Routes Static Route List Custom Static Route Labels”Deeply nested Labels block collapsed for readability.
Ingress Egress Gw Inside Static Routes Static Route List Custom Static Route Nexthop
Section titled “Ingress Egress Gw Inside Static Routes Static Route List Custom Static Route Nexthop”Deeply nested Nexthop block collapsed for readability.
Ingress Egress Gw Inside Static Routes Static Route List Custom Static Route Nexthop Interface
Section titled “Ingress Egress Gw Inside Static Routes Static Route List Custom Static Route Nexthop Interface”Deeply nested Interface block collapsed for readability.
Ingress Egress Gw Inside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address
Section titled “Ingress Egress Gw Inside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address”Deeply nested Address block collapsed for readability.
Ingress Egress Gw Inside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv4
Section titled “Ingress Egress Gw Inside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv4”Deeply nested IPv4 block collapsed for readability.
Ingress Egress Gw Inside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv6
Section titled “Ingress Egress Gw Inside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv6”Deeply nested IPv6 block collapsed for readability.
Ingress Egress Gw Inside Static Routes Static Route List Custom Static Route Subnets
Section titled “Ingress Egress Gw Inside Static Routes Static Route List Custom Static Route Subnets”Deeply nested Subnets block collapsed for readability.
Ingress Egress Gw Inside Static Routes Static Route List Custom Static Route Subnets IPv4
Section titled “Ingress Egress Gw Inside Static Routes Static Route List Custom Static Route Subnets IPv4”Deeply nested IPv4 block collapsed for readability.
Ingress Egress Gw Inside Static Routes Static Route List Custom Static Route Subnets IPv6
Section titled “Ingress Egress Gw Inside Static Routes Static Route List Custom Static Route Subnets IPv6”Deeply nested IPv6 block collapsed for readability.
Ingress Egress Gw No Dc Cluster Group
Section titled “Ingress Egress Gw No Dc Cluster Group”A no_dc_cluster_group block (within ingress_egress_gw) supports the following:
Ingress Egress Gw No Forward Proxy
Section titled “Ingress Egress Gw No Forward Proxy”A no_forward_proxy block (within ingress_egress_gw) supports the following:
Ingress Egress Gw No Global Network
Section titled “Ingress Egress Gw No Global Network”A no_global_network block (within ingress_egress_gw) supports the following:
Ingress Egress Gw No Inside Static Routes
Section titled “Ingress Egress Gw No Inside Static Routes”A no_inside_static_routes block (within ingress_egress_gw) supports the following:
Ingress Egress Gw No Network Policy
Section titled “Ingress Egress Gw No Network Policy”A no_network_policy block (within ingress_egress_gw) supports the following:
Ingress Egress Gw No Outside Static Routes
Section titled “Ingress Egress Gw No Outside Static Routes”A no_outside_static_routes block (within ingress_egress_gw) supports the following:
Ingress Egress Gw Not Hub
Section titled “Ingress Egress Gw Not Hub”A not_hub block (within ingress_egress_gw) supports the following:
Ingress Egress Gw Outside Static Routes
Section titled “Ingress Egress Gw Outside Static Routes”An outside_static_routes block (within ingress_egress_gw) supports the following:
• static_route_list - Optional List
List of Static Routes. List of Static routes
Ingress Egress Gw Outside Static Routes Static Route List
Section titled “Ingress Egress Gw Outside Static Routes Static Route List”Deeply nested List block collapsed for readability.
Ingress Egress Gw Outside Static Routes Static Route List Custom Static Route
Section titled “Ingress Egress Gw Outside Static Routes Static Route List Custom Static Route”Deeply nested Route block collapsed for readability.
Ingress Egress Gw Outside Static Routes Static Route List Custom Static Route Labels
Section titled “Ingress Egress Gw Outside Static Routes Static Route List Custom Static Route Labels”Deeply nested Labels block collapsed for readability.
Ingress Egress Gw Outside Static Routes Static Route List Custom Static Route Nexthop
Section titled “Ingress Egress Gw Outside Static Routes Static Route List Custom Static Route Nexthop”Deeply nested Nexthop block collapsed for readability.
Ingress Egress Gw Outside Static Routes Static Route List Custom Static Route Nexthop Interface
Section titled “Ingress Egress Gw Outside Static Routes Static Route List Custom Static Route Nexthop Interface”Deeply nested Interface block collapsed for readability.
Ingress Egress Gw Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address
Section titled “Ingress Egress Gw Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address”Deeply nested Address block collapsed for readability.
Ingress Egress Gw Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv4
Section titled “Ingress Egress Gw Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv4”Deeply nested IPv4 block collapsed for readability.
Ingress Egress Gw Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv6
Section titled “Ingress Egress Gw Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv6”Deeply nested IPv6 block collapsed for readability.
Ingress Egress Gw Outside Static Routes Static Route List Custom Static Route Subnets
Section titled “Ingress Egress Gw Outside Static Routes Static Route List Custom Static Route Subnets”Deeply nested Subnets block collapsed for readability.
Ingress Egress Gw Outside Static Routes Static Route List Custom Static Route Subnets IPv4
Section titled “Ingress Egress Gw Outside Static Routes Static Route List Custom Static Route Subnets IPv4”Deeply nested IPv4 block collapsed for readability.
Ingress Egress Gw Outside Static Routes Static Route List Custom Static Route Subnets IPv6
Section titled “Ingress Egress Gw Outside Static Routes Static Route List Custom Static Route Subnets IPv6”Deeply nested IPv6 block collapsed for readability.
Ingress Egress Gw Performance Enhancement Mode
Section titled “Ingress Egress Gw Performance Enhancement Mode”A performance_enhancement_mode block (within ingress_egress_gw) supports the following:
• perf_mode_l3_enhanced - Optional String
Configuration parameter for perf mode l3 enhanced
• perf_mode_l7_enhanced - Optional String
Configuration parameter for perf mode l7 enhanced
Ingress Egress Gw Performance Enhancement Mode Perf Mode L3 Enhanced
Section titled “Ingress Egress Gw Performance Enhancement Mode Perf Mode L3 Enhanced”Deeply nested Enhanced block collapsed for readability.
Ingress Egress Gw Performance Enhancement Mode Perf Mode L3 Enhanced Jumbo
Section titled “Ingress Egress Gw Performance Enhancement Mode Perf Mode L3 Enhanced Jumbo”Deeply nested Jumbo block collapsed for readability.
Ingress Egress Gw Performance Enhancement Mode Perf Mode L3 Enhanced No Jumbo
Section titled “Ingress Egress Gw Performance Enhancement Mode Perf Mode L3 Enhanced No Jumbo”Deeply nested Jumbo block collapsed for readability.
Ingress Egress Gw Performance Enhancement Mode Perf Mode L7 Enhanced
Section titled “Ingress Egress Gw Performance Enhancement Mode Perf Mode L7 Enhanced”Deeply nested Enhanced block collapsed for readability.
Ingress Egress Gw Performance Enhancement Mode Perf Mode L7 Enhanced Jumbo Disabled
Section titled “Ingress Egress Gw Performance Enhancement Mode Perf Mode L7 Enhanced Jumbo Disabled”Deeply nested Disabled block collapsed for readability.
Ingress Egress Gw Performance Enhancement Mode Perf Mode L7 Enhanced Jumbo Enabled
Section titled “Ingress Egress Gw Performance Enhancement Mode Perf Mode L7 Enhanced Jumbo Enabled”Deeply nested Enabled block collapsed for readability.
Ingress Egress Gw Sm Connection Public IP
Section titled “Ingress Egress Gw Sm Connection Public IP”A sm_connection_public_ip block (within ingress_egress_gw) supports the following:
Ingress Egress Gw Sm Connection Pvt IP
Section titled “Ingress Egress Gw Sm Connection Pvt IP”A sm_connection_pvt_ip block (within ingress_egress_gw) supports the following:
Ingress Egress Gw Ar
Section titled “Ingress Egress Gw Ar”An ingress_egress_gw_ar block supports the following:
• accelerated_networking - Optional String
Accelerated Networking to reduce Latency, When Mode is toggled, traffic disruption will be seen
• active_enhanced_firewall_policies - Optional String
List of Enhanced Firewall Policies These policies use session-based rules and provide all OPTIONS available under firewall policies with an additional option for service insertion
• active_forward_proxy_policies - Optional String
Ordered List of Forward Proxy Policies active
• active_network_policies - Optional String
Configuration parameter for active network policies
• azure_certified_hw - Optional String
[Enum: azure-byol-multi-nic-voltmesh] Azure Certified Hardware. Name for Azure certified hardware. The only possible value is azure-byol-multi-nic-voltmesh
• dc_cluster_group_inside_vn - Optional String
Type establishes a direct reference from one object(the referrer) to another(the referred). Such a reference is in form of tenant/namespace/name
• dc_cluster_group_outside_vn - Optional String
Type establishes a direct reference from one object(the referrer) to another(the referred). Such a reference is in form of tenant/namespace/name
• forward_proxy_allow_all - Optional Object
Configuration parameter for forward proxy allow all
• global_network_list - Optional String
Global Network Connection List. List of global network connections
• hub - Optional String
Hub VNET type. Hub VNET type
• inside_static_routes - Optional String
Configuration parameter for inside static routes
• no_dc_cluster_group - Optional Object
Enable this option
• no_forward_proxy - Optional Object
Configuration parameter for no forward proxy
• no_global_network - Optional Object
Configuration parameter for no global network
• no_inside_static_routes - Optional Object
Configuration parameter for no inside static routes
• no_network_policy - Optional Object
Policy configuration for this feature
• no_outside_static_routes - Optional Object
Configuration parameter for no outside static routes
• node - Optional String
Parameters for creating two interface Node in one AZ
• not_hub - Optional Object
Enable this option
• outside_static_routes - Optional String
Configuration parameter for outside static routes
• performance_enhancement_mode - Optional String
Optimize the site for L3 or L7 traffic processing. L7 optimized is the default
• sm_connection_public_ip - Optional Object
Enable this option
• sm_connection_pvt_ip - Optional Object
Enable this option
Ingress Egress Gw Ar Accelerated Networking
Section titled “Ingress Egress Gw Ar Accelerated Networking”An accelerated_networking block (within ingress_egress_gw_ar) supports the following:
• disable_spec - Optional Object
Enable this option
• enable - Optional Object
Enable this option
Ingress Egress Gw Ar Accelerated Networking Disable Spec
Section titled “Ingress Egress Gw Ar Accelerated Networking Disable Spec”Deeply nested Spec block collapsed for readability.
Ingress Egress Gw Ar Accelerated Networking Enable
Section titled “Ingress Egress Gw Ar Accelerated Networking Enable”An enable block (within ingress_egress_gw_ar.accelerated_networking) supports the following:
Ingress Egress Gw Ar Active Enhanced Firewall Policies
Section titled “Ingress Egress Gw Ar Active Enhanced Firewall Policies”Deeply nested Policies block collapsed for readability.
Ingress Egress Gw Ar Active Enhanced Firewall Policies Enhanced Firewall Policies
Section titled “Ingress Egress Gw Ar Active Enhanced Firewall Policies Enhanced Firewall Policies”Deeply nested Policies block collapsed for readability.
Ingress Egress Gw Ar Active Forward Proxy Policies
Section titled “Ingress Egress Gw Ar Active Forward Proxy Policies”Deeply nested Policies block collapsed for readability.
Ingress Egress Gw Ar Active Forward Proxy Policies Forward Proxy Policies
Section titled “Ingress Egress Gw Ar Active Forward Proxy Policies Forward Proxy Policies”Deeply nested Policies block collapsed for readability.
Ingress Egress Gw Ar Active Network Policies
Section titled “Ingress Egress Gw Ar Active Network Policies”An active_network_policies block (within ingress_egress_gw_ar) supports the following:
• network_policies - Optional List
Ordered List of Firewall Policies active for this network firewall
Ingress Egress Gw Ar Active Network Policies Network Policies
Section titled “Ingress Egress Gw Ar Active Network Policies Network Policies”Deeply nested Policies block collapsed for readability.
Ingress Egress Gw Ar Dc Cluster Group Inside Vn
Section titled “Ingress Egress Gw Ar Dc Cluster Group Inside Vn”Deeply nested Vn block collapsed for readability.
Ingress Egress Gw Ar Dc Cluster Group Outside Vn
Section titled “Ingress Egress Gw Ar Dc Cluster Group Outside Vn”Deeply nested Vn block collapsed for readability.
Ingress Egress Gw Ar Forward Proxy Allow All
Section titled “Ingress Egress Gw Ar Forward Proxy Allow All”Deeply nested All block collapsed for readability.
Ingress Egress Gw Ar Global Network List
Section titled “Ingress Egress Gw Ar Global Network List”A global_network_list block (within ingress_egress_gw_ar) supports the following:
• global_network_connections - Optional List
Global Network Connections. Global network connections
Ingress Egress Gw Ar Global Network List Global Network Connections
Section titled “Ingress Egress Gw Ar Global Network List Global Network Connections”Deeply nested Connections block collapsed for readability.
Ingress Egress Gw Ar Global Network List Global Network Connections SLI To Global DR
Section titled “Ingress Egress Gw Ar Global Network List Global Network Connections SLI To Global DR”Deeply nested DR block collapsed for readability.
Ingress Egress Gw Ar Global Network List Global Network Connections SLI To Global DR Global Vn
Section titled “Ingress Egress Gw Ar Global Network List Global Network Connections SLI To Global DR Global Vn”Deeply nested Vn block collapsed for readability.
Ingress Egress Gw Ar Global Network List Global Network Connections Slo To Global DR
Section titled “Ingress Egress Gw Ar Global Network List Global Network Connections Slo To Global DR”Deeply nested DR block collapsed for readability.
Ingress Egress Gw Ar Global Network List Global Network Connections Slo To Global DR Global Vn
Section titled “Ingress Egress Gw Ar Global Network List Global Network Connections Slo To Global DR Global Vn”Deeply nested Vn block collapsed for readability.
Ingress Egress Gw Ar Hub
Section titled “Ingress Egress Gw Ar Hub”A hub block (within ingress_egress_gw_ar) supports the following:
• express_route_disabled - Optional Object
Enable this option
• express_route_enabled - Optional String
Express Route Configuration. Express Route Configuration
• spoke_vnets - Optional List
Spoke VNET Peering (Legacy). Spoke VNET Peering
Ingress Egress Gw Ar Hub Express Route Disabled
Section titled “Ingress Egress Gw Ar Hub Express Route Disabled”Deeply nested Disabled block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled”Deeply nested Enabled block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Advertise To Route Server
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Advertise To Route Server”Deeply nested Server block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Auto Asn
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Auto Asn”Deeply nested Asn block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Connections
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Connections”Deeply nested Connections block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Connections Metadata
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Connections Metadata”Deeply nested Metadata block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Connections Other Subscription
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Connections Other Subscription”Deeply nested Subscription block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Connections Other Subscription Authorized Key
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Connections Other Subscription Authorized Key”Deeply nested Key block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Connections Other Subscription Authorized Key Blindfold Secret Info
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Connections Other Subscription Authorized Key Blindfold Secret Info”Deeply nested Info block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Connections Other Subscription Authorized Key Clear Secret Info
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Connections Other Subscription Authorized Key Clear Secret Info”Deeply nested Info block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Do Not Advertise To Route Server
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Do Not Advertise To Route Server”Deeply nested Server block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Gateway Subnet
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Gateway Subnet”Deeply nested Subnet block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Gateway Subnet Auto
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Gateway Subnet Auto”Deeply nested Auto block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Gateway Subnet Subnet
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Gateway Subnet Subnet”Deeply nested Subnet block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Gateway Subnet Subnet VNET Resource Group
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Gateway Subnet Subnet VNET Resource Group”Deeply nested Group block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Gateway Subnet Subnet Param
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Gateway Subnet Subnet Param”Deeply nested Param block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Route Server Subnet
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Route Server Subnet”Deeply nested Subnet block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Route Server Subnet Auto
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Route Server Subnet Auto”Deeply nested Auto block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Route Server Subnet Subnet
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Route Server Subnet Subnet”Deeply nested Subnet block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Route Server Subnet Subnet VNET Resource Group
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Route Server Subnet Subnet VNET Resource Group”Deeply nested Group block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Route Server Subnet Subnet Param
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Route Server Subnet Subnet Param”Deeply nested Param block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Site Registration Over Express Route
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Site Registration Over Express Route”Deeply nested Route block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Site Registration Over internet
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Site Registration Over internet”Deeply nested internet block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Sku Ergw1az
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Sku Ergw1az”Deeply nested Ergw1az block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Sku Ergw2az
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Sku Ergw2az”Deeply nested Ergw2az block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Sku High Perf
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Sku High Perf”Deeply nested Perf block collapsed for readability.
Ingress Egress Gw Ar Hub Express Route Enabled Sku Standard
Section titled “Ingress Egress Gw Ar Hub Express Route Enabled Sku Standard”Deeply nested Standard block collapsed for readability.
Ingress Egress Gw Ar Hub Spoke Vnets
Section titled “Ingress Egress Gw Ar Hub Spoke Vnets”A spoke_vnets block (within ingress_egress_gw_ar.hub) supports the following:
• auto - Optional Object
Enable this option
• labels - Optional String
Add Labels for each of the VNets peered with transit VNET, these labels can be used in firewall policy These labels used must be from known key and label defined in shared namespace
• manual - Optional Object
Enable this option
• vnet - Optional String
Resource group and name of existing Azure VNET
Ingress Egress Gw Ar Hub Spoke Vnets Auto
Section titled “Ingress Egress Gw Ar Hub Spoke Vnets Auto”Deeply nested Auto block collapsed for readability.
Ingress Egress Gw Ar Hub Spoke Vnets Labels
Section titled “Ingress Egress Gw Ar Hub Spoke Vnets Labels”Deeply nested Labels block collapsed for readability.
Ingress Egress Gw Ar Hub Spoke Vnets Manual
Section titled “Ingress Egress Gw Ar Hub Spoke Vnets Manual”Deeply nested Manual block collapsed for readability.
Ingress Egress Gw Ar Hub Spoke Vnets VNET
Section titled “Ingress Egress Gw Ar Hub Spoke Vnets VNET”Deeply nested VNET block collapsed for readability.
Ingress Egress Gw Ar Hub Spoke Vnets VNET F5 Orchestrated Routing
Section titled “Ingress Egress Gw Ar Hub Spoke Vnets VNET F5 Orchestrated Routing”Deeply nested Routing block collapsed for readability.
Ingress Egress Gw Ar Hub Spoke Vnets VNET Manual Routing
Section titled “Ingress Egress Gw Ar Hub Spoke Vnets VNET Manual Routing”Deeply nested Routing block collapsed for readability.
Ingress Egress Gw Ar Inside Static Routes
Section titled “Ingress Egress Gw Ar Inside Static Routes”An inside_static_routes block (within ingress_egress_gw_ar) supports the following:
• static_route_list - Optional List
List of Static Routes. List of Static routes
Ingress Egress Gw Ar Inside Static Routes Static Route List
Section titled “Ingress Egress Gw Ar Inside Static Routes Static Route List”Deeply nested List block collapsed for readability.
Ingress Egress Gw Ar Inside Static Routes Static Route List Custom Static Route
Section titled “Ingress Egress Gw Ar Inside Static Routes Static Route List Custom Static Route”Deeply nested Route block collapsed for readability.
Ingress Egress Gw Ar Inside Static Routes Static Route List Custom Static Route Labels
Section titled “Ingress Egress Gw Ar Inside Static Routes Static Route List Custom Static Route Labels”Deeply nested Labels block collapsed for readability.
Ingress Egress Gw Ar Inside Static Routes Static Route List Custom Static Route Nexthop
Section titled “Ingress Egress Gw Ar Inside Static Routes Static Route List Custom Static Route Nexthop”Deeply nested Nexthop block collapsed for readability.
Ingress Egress Gw Ar Inside Static Routes Static Route List Custom Static Route Nexthop Interface
Section titled “Ingress Egress Gw Ar Inside Static Routes Static Route List Custom Static Route Nexthop Interface”Deeply nested Interface block collapsed for readability.
Ingress Egress Gw Ar Inside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address
Section titled “Ingress Egress Gw Ar Inside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address”Deeply nested Address block collapsed for readability.
Ingress Egress Gw Ar Inside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv4
Section titled “Ingress Egress Gw Ar Inside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv4”Deeply nested IPv4 block collapsed for readability.
Ingress Egress Gw Ar Inside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv6
Section titled “Ingress Egress Gw Ar Inside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv6”Deeply nested IPv6 block collapsed for readability.
Ingress Egress Gw Ar Inside Static Routes Static Route List Custom Static Route Subnets
Section titled “Ingress Egress Gw Ar Inside Static Routes Static Route List Custom Static Route Subnets”Deeply nested Subnets block collapsed for readability.
Ingress Egress Gw Ar Inside Static Routes Static Route List Custom Static Route Subnets IPv4
Section titled “Ingress Egress Gw Ar Inside Static Routes Static Route List Custom Static Route Subnets IPv4”Deeply nested IPv4 block collapsed for readability.
Ingress Egress Gw Ar Inside Static Routes Static Route List Custom Static Route Subnets IPv6
Section titled “Ingress Egress Gw Ar Inside Static Routes Static Route List Custom Static Route Subnets IPv6”Deeply nested IPv6 block collapsed for readability.
Ingress Egress Gw Ar No Dc Cluster Group
Section titled “Ingress Egress Gw Ar No Dc Cluster Group”Deeply nested Group block collapsed for readability.
Ingress Egress Gw Ar No Forward Proxy
Section titled “Ingress Egress Gw Ar No Forward Proxy”A no_forward_proxy block (within ingress_egress_gw_ar) supports the following:
Ingress Egress Gw Ar No Global Network
Section titled “Ingress Egress Gw Ar No Global Network”A no_global_network block (within ingress_egress_gw_ar) supports the following:
Ingress Egress Gw Ar No Inside Static Routes
Section titled “Ingress Egress Gw Ar No Inside Static Routes”Deeply nested Routes block collapsed for readability.
Ingress Egress Gw Ar No Network Policy
Section titled “Ingress Egress Gw Ar No Network Policy”A no_network_policy block (within ingress_egress_gw_ar) supports the following:
Ingress Egress Gw Ar No Outside Static Routes
Section titled “Ingress Egress Gw Ar No Outside Static Routes”Deeply nested Routes block collapsed for readability.
Ingress Egress Gw Ar Node
Section titled “Ingress Egress Gw Ar Node”A node block (within ingress_egress_gw_ar) supports the following:
• fault_domain - Optional Number
Namuber of fault domains to be used while creating the availability set
• inside_subnet - Optional String
Configuration parameter for inside subnet
• node_number - Optional Number
Number of main nodes to create, either 1 or 3
• outside_subnet - Optional String
Configuration parameter for outside subnet
• update_domain - Optional Number
Namuber of update domains to be used while creating the availability set
Ingress Egress Gw Ar Node Inside Subnet
Section titled “Ingress Egress Gw Ar Node Inside Subnet”An inside_subnet block (within ingress_egress_gw_ar.node) supports the following:
• subnet - Optional String
Subnet specification for network segmentation
• subnet_param - Optional String
Parameters for creating a new cloud subnet
Ingress Egress Gw Ar Node Inside Subnet Subnet
Section titled “Ingress Egress Gw Ar Node Inside Subnet Subnet”Deeply nested Subnet block collapsed for readability.
Ingress Egress Gw Ar Node Inside Subnet Subnet VNET Resource Group
Section titled “Ingress Egress Gw Ar Node Inside Subnet Subnet VNET Resource Group”Deeply nested Group block collapsed for readability.
Ingress Egress Gw Ar Node Inside Subnet Subnet Param
Section titled “Ingress Egress Gw Ar Node Inside Subnet Subnet Param”Deeply nested Param block collapsed for readability.
Ingress Egress Gw Ar Node Outside Subnet
Section titled “Ingress Egress Gw Ar Node Outside Subnet”An outside_subnet block (within ingress_egress_gw_ar.node) supports the following:
• subnet - Optional String
Subnet specification for network segmentation
• subnet_param - Optional String
Parameters for creating a new cloud subnet
Ingress Egress Gw Ar Node Outside Subnet Subnet
Section titled “Ingress Egress Gw Ar Node Outside Subnet Subnet”Deeply nested Subnet block collapsed for readability.
Ingress Egress Gw Ar Node Outside Subnet Subnet VNET Resource Group
Section titled “Ingress Egress Gw Ar Node Outside Subnet Subnet VNET Resource Group”Deeply nested Group block collapsed for readability.
Ingress Egress Gw Ar Node Outside Subnet Subnet Param
Section titled “Ingress Egress Gw Ar Node Outside Subnet Subnet Param”Deeply nested Param block collapsed for readability.
Ingress Egress Gw Ar Not Hub
Section titled “Ingress Egress Gw Ar Not Hub”A not_hub block (within ingress_egress_gw_ar) supports the following:
Ingress Egress Gw Ar Outside Static Routes
Section titled “Ingress Egress Gw Ar Outside Static Routes”An outside_static_routes block (within ingress_egress_gw_ar) supports the following:
• static_route_list - Optional List
List of Static Routes. List of Static routes
Ingress Egress Gw Ar Outside Static Routes Static Route List
Section titled “Ingress Egress Gw Ar Outside Static Routes Static Route List”Deeply nested List block collapsed for readability.
Ingress Egress Gw Ar Outside Static Routes Static Route List Custom Static Route
Section titled “Ingress Egress Gw Ar Outside Static Routes Static Route List Custom Static Route”Deeply nested Route block collapsed for readability.
Ingress Egress Gw Ar Outside Static Routes Static Route List Custom Static Route Labels
Section titled “Ingress Egress Gw Ar Outside Static Routes Static Route List Custom Static Route Labels”Deeply nested Labels block collapsed for readability.
Ingress Egress Gw Ar Outside Static Routes Static Route List Custom Static Route Nexthop
Section titled “Ingress Egress Gw Ar Outside Static Routes Static Route List Custom Static Route Nexthop”Deeply nested Nexthop block collapsed for readability.
Ingress Egress Gw Ar Outside Static Routes Static Route List Custom Static Route Nexthop Interface
Section titled “Ingress Egress Gw Ar Outside Static Routes Static Route List Custom Static Route Nexthop Interface”Deeply nested Interface block collapsed for readability.
Ingress Egress Gw Ar Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address
Section titled “Ingress Egress Gw Ar Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address”Deeply nested Address block collapsed for readability.
Ingress Egress Gw Ar Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv4
Section titled “Ingress Egress Gw Ar Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv4”Deeply nested IPv4 block collapsed for readability.
Ingress Egress Gw Ar Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv6
Section titled “Ingress Egress Gw Ar Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv6”Deeply nested IPv6 block collapsed for readability.
Ingress Egress Gw Ar Outside Static Routes Static Route List Custom Static Route Subnets
Section titled “Ingress Egress Gw Ar Outside Static Routes Static Route List Custom Static Route Subnets”Deeply nested Subnets block collapsed for readability.
Ingress Egress Gw Ar Outside Static Routes Static Route List Custom Static Route Subnets IPv4
Section titled “Ingress Egress Gw Ar Outside Static Routes Static Route List Custom Static Route Subnets IPv4”Deeply nested IPv4 block collapsed for readability.
Ingress Egress Gw Ar Outside Static Routes Static Route List Custom Static Route Subnets IPv6
Section titled “Ingress Egress Gw Ar Outside Static Routes Static Route List Custom Static Route Subnets IPv6”Deeply nested IPv6 block collapsed for readability.
Ingress Egress Gw Ar Performance Enhancement Mode
Section titled “Ingress Egress Gw Ar Performance Enhancement Mode”A performance_enhancement_mode block (within ingress_egress_gw_ar) supports the following:
• perf_mode_l3_enhanced - Optional String
Configuration parameter for perf mode l3 enhanced
• perf_mode_l7_enhanced - Optional String
Configuration parameter for perf mode l7 enhanced
Ingress Egress Gw Ar Performance Enhancement Mode Perf Mode L3 Enhanced
Section titled “Ingress Egress Gw Ar Performance Enhancement Mode Perf Mode L3 Enhanced”Deeply nested Enhanced block collapsed for readability.
Ingress Egress Gw Ar Performance Enhancement Mode Perf Mode L3 Enhanced Jumbo
Section titled “Ingress Egress Gw Ar Performance Enhancement Mode Perf Mode L3 Enhanced Jumbo”Deeply nested Jumbo block collapsed for readability.
Ingress Egress Gw Ar Performance Enhancement Mode Perf Mode L3 Enhanced No Jumbo
Section titled “Ingress Egress Gw Ar Performance Enhancement Mode Perf Mode L3 Enhanced No Jumbo”Deeply nested Jumbo block collapsed for readability.
Ingress Egress Gw Ar Performance Enhancement Mode Perf Mode L7 Enhanced
Section titled “Ingress Egress Gw Ar Performance Enhancement Mode Perf Mode L7 Enhanced”Deeply nested Enhanced block collapsed for readability.
Ingress Egress Gw Ar Performance Enhancement Mode Perf Mode L7 Enhanced Jumbo Disabled
Section titled “Ingress Egress Gw Ar Performance Enhancement Mode Perf Mode L7 Enhanced Jumbo Disabled”Deeply nested Disabled block collapsed for readability.
Ingress Egress Gw Ar Performance Enhancement Mode Perf Mode L7 Enhanced Jumbo Enabled
Section titled “Ingress Egress Gw Ar Performance Enhancement Mode Perf Mode L7 Enhanced Jumbo Enabled”Deeply nested Enabled block collapsed for readability.
Ingress Egress Gw Ar Sm Connection Public IP
Section titled “Ingress Egress Gw Ar Sm Connection Public IP”Deeply nested IP block collapsed for readability.
Ingress Egress Gw Ar Sm Connection Pvt IP
Section titled “Ingress Egress Gw Ar Sm Connection Pvt IP”Deeply nested IP block collapsed for readability.
Ingress Gw
Section titled “Ingress Gw”An ingress_gw block supports the following:
• accelerated_networking - Optional String
Accelerated Networking to reduce Latency, When Mode is toggled, traffic disruption will be seen. Server applies default when omitted
• az_nodes - Optional List
Only Single AZ or Three AZ(s) nodes are supported currently
• azure_certified_hw - Optional String
[Enum: azure-byol-voltmesh] Azure Certified Hardware. Name for Azure certified hardware. The only possible value is azure-byol-voltmesh
• performance_enhancement_mode - Optional String
Optimize the site for L3 or L7 traffic processing. L7 optimized is the default. Server applies default when omitted
Ingress Gw Accelerated Networking
Section titled “Ingress Gw Accelerated Networking”An accelerated_networking block (within ingress_gw) supports the following:
• disable_spec - Optional Object
Enable this option
• enable - Optional Object
Enable this option
Ingress Gw Accelerated Networking Disable Spec
Section titled “Ingress Gw Accelerated Networking Disable Spec”A disable_spec block (within ingress_gw.accelerated_networking) supports the following:
Ingress Gw Accelerated Networking Enable
Section titled “Ingress Gw Accelerated Networking Enable”An enable block (within ingress_gw.accelerated_networking) supports the following:
Ingress Gw Az Nodes
Section titled “Ingress Gw Az Nodes”An az_nodes block (within ingress_gw) supports the following:
• azure_az - Optional String
Possible values are 1, 2, 3
[Enum: 1|2|3] Zone depicting a grouping of datacenters within an Azure region. Expecting numeric input
• local_subnet - Optional String
Configuration parameter for local subnet
Ingress Gw Az Nodes Local Subnet
Section titled “Ingress Gw Az Nodes Local Subnet”A local_subnet block (within ingress_gw.az_nodes) supports the following:
• subnet - Optional String
Subnet specification for network segmentation
• subnet_param - Optional String
Parameters for creating a new cloud subnet
Ingress Gw Az Nodes Local Subnet Subnet
Section titled “Ingress Gw Az Nodes Local Subnet Subnet”A subnet block (within ingress_gw.az_nodes.local_subnet) supports the following:
• subnet_name - Optional String
Subnet Name. Name of existing subnet
• subnet_resource_grp - Optional String
Specify name of Resource Group
• vnet_resource_group - Optional Object
Configuration parameter for VNET resource group
Ingress Gw Az Nodes Local Subnet Subnet VNET Resource Group
Section titled “Ingress Gw Az Nodes Local Subnet Subnet VNET Resource Group”Deeply nested Group block collapsed for readability.
Ingress Gw Az Nodes Local Subnet Subnet Param
Section titled “Ingress Gw Az Nodes Local Subnet Subnet Param”Deeply nested Param block collapsed for readability.
Ingress Gw Performance Enhancement Mode
Section titled “Ingress Gw Performance Enhancement Mode”A performance_enhancement_mode block (within ingress_gw) supports the following:
• perf_mode_l3_enhanced - Optional String
Configuration parameter for perf mode l3 enhanced
• perf_mode_l7_enhanced - Optional String
Configuration parameter for perf mode l7 enhanced
Ingress Gw Performance Enhancement Mode Perf Mode L3 Enhanced
Section titled “Ingress Gw Performance Enhancement Mode Perf Mode L3 Enhanced”Deeply nested Enhanced block collapsed for readability.
Ingress Gw Performance Enhancement Mode Perf Mode L3 Enhanced Jumbo
Section titled “Ingress Gw Performance Enhancement Mode Perf Mode L3 Enhanced Jumbo”Deeply nested Jumbo block collapsed for readability.
Ingress Gw Performance Enhancement Mode Perf Mode L3 Enhanced No Jumbo
Section titled “Ingress Gw Performance Enhancement Mode Perf Mode L3 Enhanced No Jumbo”Deeply nested Jumbo block collapsed for readability.
Ingress Gw Performance Enhancement Mode Perf Mode L7 Enhanced
Section titled “Ingress Gw Performance Enhancement Mode Perf Mode L7 Enhanced”Deeply nested Enhanced block collapsed for readability.
Ingress Gw Performance Enhancement Mode Perf Mode L7 Enhanced Jumbo Disabled
Section titled “Ingress Gw Performance Enhancement Mode Perf Mode L7 Enhanced Jumbo Disabled”Deeply nested Disabled block collapsed for readability.
Ingress Gw Performance Enhancement Mode Perf Mode L7 Enhanced Jumbo Enabled
Section titled “Ingress Gw Performance Enhancement Mode Perf Mode L7 Enhanced Jumbo Enabled”Deeply nested Enabled block collapsed for readability.
Ingress Gw Ar
Section titled “Ingress Gw Ar”An ingress_gw_ar block supports the following:
• accelerated_networking - Optional String
Accelerated Networking to reduce Latency, When Mode is toggled, traffic disruption will be seen
• azure_certified_hw - Optional String
[Enum: azure-byol-voltmesh] Azure Certified Hardware. Name for Azure certified hardware. The only possible value is azure-byol-voltmesh
• node - Optional String
Parameters for creating Single interface Node for Alternate Region
• performance_enhancement_mode - Optional String
Optimize the site for L3 or L7 traffic processing. L7 optimized is the default
Ingress Gw Ar Accelerated Networking
Section titled “Ingress Gw Ar Accelerated Networking”An accelerated_networking block (within ingress_gw_ar) supports the following:
• disable_spec - Optional Object
Enable this option
• enable - Optional Object
Enable this option
Ingress Gw Ar Accelerated Networking Disable Spec
Section titled “Ingress Gw Ar Accelerated Networking Disable Spec”A disable_spec block (within ingress_gw_ar.accelerated_networking) supports the following:
Ingress Gw Ar Accelerated Networking Enable
Section titled “Ingress Gw Ar Accelerated Networking Enable”An enable block (within ingress_gw_ar.accelerated_networking) supports the following:
Ingress Gw Ar Node
Section titled “Ingress Gw Ar Node”A node block (within ingress_gw_ar) supports the following:
• fault_domain - Optional Number
Namuber of fault domains to be used while creating the availability set
• local_subnet - Optional String
Configuration parameter for local subnet
• node_number - Optional Number
Number of main nodes to create, either 1 or 3
• update_domain - Optional Number
Namuber of update domains to be used while creating the availability set
Ingress Gw Ar Node Local Subnet
Section titled “Ingress Gw Ar Node Local Subnet”A local_subnet block (within ingress_gw_ar.node) supports the following:
• subnet - Optional String
Subnet specification for network segmentation
• subnet_param - Optional String
Parameters for creating a new cloud subnet
Ingress Gw Ar Node Local Subnet Subnet
Section titled “Ingress Gw Ar Node Local Subnet Subnet”A subnet block (within ingress_gw_ar.node.local_subnet) supports the following:
• subnet_name - Optional String
Subnet Name. Name of existing subnet
• subnet_resource_grp - Optional String
Specify name of Resource Group
• vnet_resource_group - Optional Object
Configuration parameter for VNET resource group
Ingress Gw Ar Node Local Subnet Subnet VNET Resource Group
Section titled “Ingress Gw Ar Node Local Subnet Subnet VNET Resource Group”Deeply nested Group block collapsed for readability.
Ingress Gw Ar Node Local Subnet Subnet Param
Section titled “Ingress Gw Ar Node Local Subnet Subnet Param”Deeply nested Param block collapsed for readability.
Ingress Gw Ar Performance Enhancement Mode
Section titled “Ingress Gw Ar Performance Enhancement Mode”A performance_enhancement_mode block (within ingress_gw_ar) supports the following:
• perf_mode_l3_enhanced - Optional String
Configuration parameter for perf mode l3 enhanced
• perf_mode_l7_enhanced - Optional String
Configuration parameter for perf mode l7 enhanced
Ingress Gw Ar Performance Enhancement Mode Perf Mode L3 Enhanced
Section titled “Ingress Gw Ar Performance Enhancement Mode Perf Mode L3 Enhanced”Deeply nested Enhanced block collapsed for readability.
Ingress Gw Ar Performance Enhancement Mode Perf Mode L3 Enhanced Jumbo
Section titled “Ingress Gw Ar Performance Enhancement Mode Perf Mode L3 Enhanced Jumbo”Deeply nested Jumbo block collapsed for readability.
Ingress Gw Ar Performance Enhancement Mode Perf Mode L3 Enhanced No Jumbo
Section titled “Ingress Gw Ar Performance Enhancement Mode Perf Mode L3 Enhanced No Jumbo”Deeply nested Jumbo block collapsed for readability.
Ingress Gw Ar Performance Enhancement Mode Perf Mode L7 Enhanced
Section titled “Ingress Gw Ar Performance Enhancement Mode Perf Mode L7 Enhanced”Deeply nested Enhanced block collapsed for readability.
Ingress Gw Ar Performance Enhancement Mode Perf Mode L7 Enhanced Jumbo Disabled
Section titled “Ingress Gw Ar Performance Enhancement Mode Perf Mode L7 Enhanced Jumbo Disabled”Deeply nested Disabled block collapsed for readability.
Ingress Gw Ar Performance Enhancement Mode Perf Mode L7 Enhanced Jumbo Enabled
Section titled “Ingress Gw Ar Performance Enhancement Mode Perf Mode L7 Enhanced Jumbo Enabled”Deeply nested Enabled block collapsed for readability.
Kubernetes Upgrade Drain
Section titled “Kubernetes Upgrade Drain”A kubernetes_upgrade_drain block supports the following:
• disable_upgrade_drain - Optional Object
Configuration parameter for disable upgrade drain
• enable_upgrade_drain - Optional String
Specify batch upgrade settings for worker nodes within a site
Kubernetes Upgrade Drain Disable Upgrade Drain
Section titled “Kubernetes Upgrade Drain Disable Upgrade Drain”A disable_upgrade_drain block (within kubernetes_upgrade_drain) supports the following:
Kubernetes Upgrade Drain Enable Upgrade Drain
Section titled “Kubernetes Upgrade Drain Enable Upgrade Drain”An enable_upgrade_drain block (within kubernetes_upgrade_drain) supports the following:
• disable_vega_upgrade_mode - Optional Object
Configuration parameter for disable vega upgrade mode
• drain_max_unavailable_node_count - Optional Number
Node Batch Size Count
• drain_max_unavailable_node_percentage - Optional Number
Maximum percentage of nodes unavailable during upgrade draining
• drain_node_timeout - Optional Number
Seconds to wait before initiating upgrade on the next set of nodes. Setting it to 0 will wait indefinitely for all services on nodes to be upgraded gracefully before proceeding to the next set of nodes. (Warning: It may block upgrade if services on a node cannot be gracefully upgraded. It is
• enable_vega_upgrade_mode - Optional Object
Configuration parameter for enable vega upgrade mode
Kubernetes Upgrade Drain Enable Upgrade Drain Disable Vega Upgrade Mode
Section titled “Kubernetes Upgrade Drain Enable Upgrade Drain Disable Vega Upgrade Mode”Deeply nested Mode block collapsed for readability.
Kubernetes Upgrade Drain Enable Upgrade Drain Enable Vega Upgrade Mode
Section titled “Kubernetes Upgrade Drain Enable Upgrade Drain Enable Vega Upgrade Mode”Deeply nested Mode block collapsed for readability.
Log Receiver
Section titled “Log Receiver”A log_receiver block supports the following:
• name - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then name will hold the referred object’s(e.g. Route’s) name
• namespace - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then namespace will hold the referred object’s(e.g. Route’s) namespace
• tenant - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then tenant will hold the referred object’s(e.g. Route’s) tenant
Logs Streaming Disabled
Section titled “Logs Streaming Disabled”A logs_streaming_disabled block supports the following:
No Worker Nodes
Section titled “No Worker Nodes”A no_worker_nodes block supports the following:
Offline Survivability Mode
Section titled “Offline Survivability Mode”An offline_survivability_mode block supports the following:
• enable_offline_survivability_mode - Optional Object
Configuration parameter for enable offline survivability mode
• no_offline_survivability_mode - Optional Object
Configuration parameter for no offline survivability mode
Offline Survivability Mode Enable Offline Survivability Mode
Section titled “Offline Survivability Mode Enable Offline Survivability Mode”An enable_offline_survivability_mode block (within offline_survivability_mode) supports the following:
Offline Survivability Mode No Offline Survivability Mode
Section titled “Offline Survivability Mode No Offline Survivability Mode”A no_offline_survivability_mode block (within offline_survivability_mode) supports the following:
An os block supports the following:
• default_os_version - Optional Object
Enable this option
• operating_system_version - Optional String
Specify a OS version to be used e.g. 9.2024.6
OS Default OS Version
Section titled “OS Default OS Version”A default_os_version block (within os) supports the following:
A sw block supports the following:
• default_sw_version - Optional Object
Enable this option
• volterra_software_version - Optional String
Specify a F5XC Software Version to be used e.g. Crt-20210329-1002
Sw Default Sw Version
Section titled “Sw Default Sw Version”A default_sw_version block (within sw) supports the following:
A vnet block supports the following:
• existing_vnet - Optional String
Resource group and name of existing Azure VNET
• new_vnet - Optional String
Azure VNET Parameters. Parameters to create a new Azure VNET
VNET Existing VNET
Section titled “VNET Existing VNET”An existing_vnet block (within vnet) supports the following:
• f5_orchestrated_routing - Optional Object
Enable this option
• manual_routing - Optional Object
Enable this option
• resource_group - Optional String
Existing VNET Resource Group. Resource group of existing VNET
• vnet_name - Optional String
Existing VNET Name. Name of existing VNET
VNET Existing VNET F5 Orchestrated Routing
Section titled “VNET Existing VNET F5 Orchestrated Routing”A f5_orchestrated_routing block (within vnet.existing_vnet) supports the following:
VNET Existing VNET Manual Routing
Section titled “VNET Existing VNET Manual Routing”A manual_routing block (within vnet.existing_vnet) supports the following:
VNET New VNET
Section titled “VNET New VNET”A new_vnet block (within vnet) supports the following:
• autogenerate - Optional Object
Configuration parameter for autogenerate
• name - Optional String
Specify the VNET Name
• primary_ipv4 - Optional String
IPv4 CIDR block for this VNET. It has to be private address space
VNET New VNET Autogenerate
Section titled “VNET New VNET Autogenerate”An autogenerate block (within vnet.new_vnet) supports the following:
Voltstack Cluster
Section titled “Voltstack Cluster”A voltstack_cluster block supports the following:
• accelerated_networking - Optional String
Accelerated Networking to reduce Latency, When Mode is toggled, traffic disruption will be seen
• active_enhanced_firewall_policies - Optional String
List of Enhanced Firewall Policies These policies use session-based rules and provide all OPTIONS available under firewall policies with an additional option for service insertion
• active_forward_proxy_policies - Optional String
Ordered List of Forward Proxy Policies active
• active_network_policies - Optional String
Configuration parameter for active network policies
• az_nodes - Optional List
Only Single AZ or Three AZ(s) nodes are supported currently
• azure_certified_hw - Optional String
[Enum: azure-byol-voltstack-combo] Azure Certified Hardware. Name for Azure certified hardware. The only possible value is azure-byol-voltstack-combo
• dc_cluster_group - Optional String
Type establishes a direct reference from one object(the referrer) to another(the referred). Such a reference is in form of tenant/namespace/name
• default_storage - Optional Object
Configuration parameter for default storage
• forward_proxy_allow_all - Optional Object
Configuration parameter for forward proxy allow all
• global_network_list - Optional String
Global Network Connection List. List of global network connections
• k8s_cluster - Optional String
Type establishes a direct reference from one object(the referrer) to another(the referred). Such a reference is in form of tenant/namespace/name
• no_dc_cluster_group - Optional Object
Enable this option
• no_forward_proxy - Optional Object
Configuration parameter for no forward proxy
• no_global_network - Optional Object
Configuration parameter for no global network
• no_k8s_cluster - Optional Object
Enable this option
• no_network_policy - Optional Object
Policy configuration for this feature
• no_outside_static_routes - Optional Object
Configuration parameter for no outside static routes
• outside_static_routes - Optional String
Configuration parameter for outside static routes
• sm_connection_public_ip - Optional Object
Enable this option
• sm_connection_pvt_ip - Optional Object
Enable this option
• storage_class_list - Optional String
Add additional custom storage classes in Kubernetes for this site
Voltstack Cluster Accelerated Networking
Section titled “Voltstack Cluster Accelerated Networking”An accelerated_networking block (within voltstack_cluster) supports the following:
• disable_spec - Optional Object
Enable this option
• enable - Optional Object
Enable this option
Voltstack Cluster Accelerated Networking Disable Spec
Section titled “Voltstack Cluster Accelerated Networking Disable Spec”A disable_spec block (within voltstack_cluster.accelerated_networking) supports the following:
Voltstack Cluster Accelerated Networking Enable
Section titled “Voltstack Cluster Accelerated Networking Enable”An enable block (within voltstack_cluster.accelerated_networking) supports the following:
Voltstack Cluster Active Enhanced Firewall Policies
Section titled “Voltstack Cluster Active Enhanced Firewall Policies”An active_enhanced_firewall_policies block (within voltstack_cluster) supports the following:
• enhanced_firewall_policies - Optional List
Ordered List of Enhanced Firewall Policies active
Voltstack Cluster Active Enhanced Firewall Policies Enhanced Firewall Policies
Section titled “Voltstack Cluster Active Enhanced Firewall Policies Enhanced Firewall Policies”Deeply nested Policies block collapsed for readability.
Voltstack Cluster Active Forward Proxy Policies
Section titled “Voltstack Cluster Active Forward Proxy Policies”An active_forward_proxy_policies block (within voltstack_cluster) supports the following:
• forward_proxy_policies - Optional List
Ordered List of Forward Proxy Policies active
Voltstack Cluster Active Forward Proxy Policies Forward Proxy Policies
Section titled “Voltstack Cluster Active Forward Proxy Policies Forward Proxy Policies”Deeply nested Policies block collapsed for readability.
Voltstack Cluster Active Network Policies
Section titled “Voltstack Cluster Active Network Policies”An active_network_policies block (within voltstack_cluster) supports the following:
• network_policies - Optional List
Ordered List of Firewall Policies active for this network firewall
Voltstack Cluster Active Network Policies Network Policies
Section titled “Voltstack Cluster Active Network Policies Network Policies”A network_policies block (within voltstack_cluster.active_network_policies) supports the following:
• name - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then name will hold the referred object’s(e.g. Route’s) name
• namespace - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then namespace will hold the referred object’s(e.g. Route’s) namespace
• tenant - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then tenant will hold the referred object’s(e.g. Route’s) tenant
Voltstack Cluster Az Nodes
Section titled “Voltstack Cluster Az Nodes”An az_nodes block (within voltstack_cluster) supports the following:
• azure_az - Optional String
Possible values are 1, 2, 3
[Enum: 1|2|3] Zone depicting a grouping of datacenters within an Azure region. Expecting numeric input
• local_subnet - Optional String
Configuration parameter for local subnet
Voltstack Cluster Az Nodes Local Subnet
Section titled “Voltstack Cluster Az Nodes Local Subnet”A local_subnet block (within voltstack_cluster.az_nodes) supports the following:
• subnet - Optional String
Subnet specification for network segmentation
• subnet_param - Optional String
Parameters for creating a new cloud subnet
Voltstack Cluster Az Nodes Local Subnet Subnet
Section titled “Voltstack Cluster Az Nodes Local Subnet Subnet”A subnet block (within voltstack_cluster.az_nodes.local_subnet) supports the following:
• subnet_name - Optional String
Subnet Name. Name of existing subnet
• subnet_resource_grp - Optional String
Specify name of Resource Group
• vnet_resource_group - Optional Object
Configuration parameter for VNET resource group
Voltstack Cluster Az Nodes Local Subnet Subnet VNET Resource Group
Section titled “Voltstack Cluster Az Nodes Local Subnet Subnet VNET Resource Group”Deeply nested Group block collapsed for readability.
Voltstack Cluster Az Nodes Local Subnet Subnet Param
Section titled “Voltstack Cluster Az Nodes Local Subnet Subnet Param”Deeply nested Param block collapsed for readability.
Voltstack Cluster Dc Cluster Group
Section titled “Voltstack Cluster Dc Cluster Group”A dc_cluster_group block (within voltstack_cluster) supports the following:
• name - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then name will hold the referred object’s(e.g. Route’s) name
• namespace - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then namespace will hold the referred object’s(e.g. Route’s) namespace
• tenant - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then tenant will hold the referred object’s(e.g. Route’s) tenant
Voltstack Cluster Default Storage
Section titled “Voltstack Cluster Default Storage”A default_storage block (within voltstack_cluster) supports the following:
Voltstack Cluster Forward Proxy Allow All
Section titled “Voltstack Cluster Forward Proxy Allow All”A forward_proxy_allow_all block (within voltstack_cluster) supports the following:
Voltstack Cluster Global Network List
Section titled “Voltstack Cluster Global Network List”A global_network_list block (within voltstack_cluster) supports the following:
• global_network_connections - Optional List
Global Network Connections. Global network connections
Voltstack Cluster Global Network List Global Network Connections
Section titled “Voltstack Cluster Global Network List Global Network Connections”Deeply nested Connections block collapsed for readability.
Voltstack Cluster Global Network List Global Network Connections SLI To Global DR
Section titled “Voltstack Cluster Global Network List Global Network Connections SLI To Global DR”Deeply nested DR block collapsed for readability.
Voltstack Cluster Global Network List Global Network Connections SLI To Global DR Global Vn
Section titled “Voltstack Cluster Global Network List Global Network Connections SLI To Global DR Global Vn”Deeply nested Vn block collapsed for readability.
Voltstack Cluster Global Network List Global Network Connections Slo To Global DR
Section titled “Voltstack Cluster Global Network List Global Network Connections Slo To Global DR”Deeply nested DR block collapsed for readability.
Voltstack Cluster Global Network List Global Network Connections Slo To Global DR Global Vn
Section titled “Voltstack Cluster Global Network List Global Network Connections Slo To Global DR Global Vn”Deeply nested Vn block collapsed for readability.
Voltstack Cluster K8S Cluster
Section titled “Voltstack Cluster K8S Cluster”A k8s_cluster block (within voltstack_cluster) supports the following:
• name - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then name will hold the referred object’s(e.g. Route’s) name
• namespace - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then namespace will hold the referred object’s(e.g. Route’s) namespace
• tenant - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then tenant will hold the referred object’s(e.g. Route’s) tenant
Voltstack Cluster No Dc Cluster Group
Section titled “Voltstack Cluster No Dc Cluster Group”A no_dc_cluster_group block (within voltstack_cluster) supports the following:
Voltstack Cluster No Forward Proxy
Section titled “Voltstack Cluster No Forward Proxy”A no_forward_proxy block (within voltstack_cluster) supports the following:
Voltstack Cluster No Global Network
Section titled “Voltstack Cluster No Global Network”A no_global_network block (within voltstack_cluster) supports the following:
Voltstack Cluster No K8S Cluster
Section titled “Voltstack Cluster No K8S Cluster”A no_k8s_cluster block (within voltstack_cluster) supports the following:
Voltstack Cluster No Network Policy
Section titled “Voltstack Cluster No Network Policy”A no_network_policy block (within voltstack_cluster) supports the following:
Voltstack Cluster No Outside Static Routes
Section titled “Voltstack Cluster No Outside Static Routes”A no_outside_static_routes block (within voltstack_cluster) supports the following:
Voltstack Cluster Outside Static Routes
Section titled “Voltstack Cluster Outside Static Routes”An outside_static_routes block (within voltstack_cluster) supports the following:
• static_route_list - Optional List
List of Static Routes. List of Static routes
Voltstack Cluster Outside Static Routes Static Route List
Section titled “Voltstack Cluster Outside Static Routes Static Route List”Deeply nested List block collapsed for readability.
Voltstack Cluster Outside Static Routes Static Route List Custom Static Route
Section titled “Voltstack Cluster Outside Static Routes Static Route List Custom Static Route”Deeply nested Route block collapsed for readability.
Voltstack Cluster Outside Static Routes Static Route List Custom Static Route Labels
Section titled “Voltstack Cluster Outside Static Routes Static Route List Custom Static Route Labels”Deeply nested Labels block collapsed for readability.
Voltstack Cluster Outside Static Routes Static Route List Custom Static Route Nexthop
Section titled “Voltstack Cluster Outside Static Routes Static Route List Custom Static Route Nexthop”Deeply nested Nexthop block collapsed for readability.
Voltstack Cluster Outside Static Routes Static Route List Custom Static Route Nexthop Interface
Section titled “Voltstack Cluster Outside Static Routes Static Route List Custom Static Route Nexthop Interface”Deeply nested Interface block collapsed for readability.
Voltstack Cluster Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address
Section titled “Voltstack Cluster Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address”Deeply nested Address block collapsed for readability.
Voltstack Cluster Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv4
Section titled “Voltstack Cluster Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv4”Deeply nested IPv4 block collapsed for readability.
Voltstack Cluster Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv6
Section titled “Voltstack Cluster Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv6”Deeply nested IPv6 block collapsed for readability.
Voltstack Cluster Outside Static Routes Static Route List Custom Static Route Subnets
Section titled “Voltstack Cluster Outside Static Routes Static Route List Custom Static Route Subnets”Deeply nested Subnets block collapsed for readability.
Voltstack Cluster Outside Static Routes Static Route List Custom Static Route Subnets IPv4
Section titled “Voltstack Cluster Outside Static Routes Static Route List Custom Static Route Subnets IPv4”Deeply nested IPv4 block collapsed for readability.
Voltstack Cluster Outside Static Routes Static Route List Custom Static Route Subnets IPv6
Section titled “Voltstack Cluster Outside Static Routes Static Route List Custom Static Route Subnets IPv6”Deeply nested IPv6 block collapsed for readability.
Voltstack Cluster Sm Connection Public IP
Section titled “Voltstack Cluster Sm Connection Public IP”A sm_connection_public_ip block (within voltstack_cluster) supports the following:
Voltstack Cluster Sm Connection Pvt IP
Section titled “Voltstack Cluster Sm Connection Pvt IP”A sm_connection_pvt_ip block (within voltstack_cluster) supports the following:
Voltstack Cluster Storage Class List
Section titled “Voltstack Cluster Storage Class List”A storage_class_list block (within voltstack_cluster) supports the following:
• storage_classes - Optional List
List of Storage Classes. List of custom storage classes
Voltstack Cluster Storage Class List Storage Classes
Section titled “Voltstack Cluster Storage Class List Storage Classes”A storage_classes block (within voltstack_cluster.storage_class_list) supports the following:
• default_storage_class - Optional Bool
Make this storage class default storage class for the K8S cluster
• storage_class_name - Optional String
Name of the storage class as it will appear in K8S
Voltstack Cluster Ar
Section titled “Voltstack Cluster Ar”A voltstack_cluster_ar block supports the following:
• accelerated_networking - Optional String
Accelerated Networking to reduce Latency, When Mode is toggled, traffic disruption will be seen
• active_enhanced_firewall_policies - Optional String
List of Enhanced Firewall Policies These policies use session-based rules and provide all OPTIONS available under firewall policies with an additional option for service insertion
• active_forward_proxy_policies - Optional String
Ordered List of Forward Proxy Policies active
• active_network_policies - Optional String
Configuration parameter for active network policies
• azure_certified_hw - Optional String
[Enum: azure-byol-voltstack-combo] Azure Certified Hardware. Name for Azure certified hardware. The only possible value is azure-byol-voltstack-combo
• dc_cluster_group - Optional String
Type establishes a direct reference from one object(the referrer) to another(the referred). Such a reference is in form of tenant/namespace/name
• default_storage - Optional Object
Configuration parameter for default storage
• forward_proxy_allow_all - Optional Object
Configuration parameter for forward proxy allow all
• global_network_list - Optional String
Global Network Connection List. List of global network connections
• k8s_cluster - Optional String
Type establishes a direct reference from one object(the referrer) to another(the referred). Such a reference is in form of tenant/namespace/name
• no_dc_cluster_group - Optional Object
Enable this option
• no_forward_proxy - Optional Object
Configuration parameter for no forward proxy
• no_global_network - Optional Object
Configuration parameter for no global network
• no_k8s_cluster - Optional Object
Enable this option
• no_network_policy - Optional Object
Policy configuration for this feature
• no_outside_static_routes - Optional Object
Configuration parameter for no outside static routes
• node - Optional String
Parameters for creating Single interface Node for Alternate Region
• outside_static_routes - Optional String
Configuration parameter for outside static routes
• sm_connection_public_ip - Optional Object
Enable this option
• sm_connection_pvt_ip - Optional Object
Enable this option
• storage_class_list - Optional String
Add additional custom storage classes in Kubernetes for this site
Voltstack Cluster Ar Accelerated Networking
Section titled “Voltstack Cluster Ar Accelerated Networking”An accelerated_networking block (within voltstack_cluster_ar) supports the following:
• disable_spec - Optional Object
Enable this option
• enable - Optional Object
Enable this option
Voltstack Cluster Ar Accelerated Networking Disable Spec
Section titled “Voltstack Cluster Ar Accelerated Networking Disable Spec”A disable_spec block (within voltstack_cluster_ar.accelerated_networking) supports the following:
Voltstack Cluster Ar Accelerated Networking Enable
Section titled “Voltstack Cluster Ar Accelerated Networking Enable”An enable block (within voltstack_cluster_ar.accelerated_networking) supports the following:
Voltstack Cluster Ar Active Enhanced Firewall Policies
Section titled “Voltstack Cluster Ar Active Enhanced Firewall Policies”An active_enhanced_firewall_policies block (within voltstack_cluster_ar) supports the following:
• enhanced_firewall_policies - Optional List
Ordered List of Enhanced Firewall Policies active
Voltstack Cluster Ar Active Enhanced Firewall Policies Enhanced Firewall Policies
Section titled “Voltstack Cluster Ar Active Enhanced Firewall Policies Enhanced Firewall Policies”Deeply nested Policies block collapsed for readability.
Voltstack Cluster Ar Active Forward Proxy Policies
Section titled “Voltstack Cluster Ar Active Forward Proxy Policies”An active_forward_proxy_policies block (within voltstack_cluster_ar) supports the following:
• forward_proxy_policies - Optional List
Ordered List of Forward Proxy Policies active
Voltstack Cluster Ar Active Forward Proxy Policies Forward Proxy Policies
Section titled “Voltstack Cluster Ar Active Forward Proxy Policies Forward Proxy Policies”Deeply nested Policies block collapsed for readability.
Voltstack Cluster Ar Active Network Policies
Section titled “Voltstack Cluster Ar Active Network Policies”An active_network_policies block (within voltstack_cluster_ar) supports the following:
• network_policies - Optional List
Ordered List of Firewall Policies active for this network firewall
Voltstack Cluster Ar Active Network Policies Network Policies
Section titled “Voltstack Cluster Ar Active Network Policies Network Policies”Deeply nested Policies block collapsed for readability.
Voltstack Cluster Ar Dc Cluster Group
Section titled “Voltstack Cluster Ar Dc Cluster Group”A dc_cluster_group block (within voltstack_cluster_ar) supports the following:
• name - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then name will hold the referred object’s(e.g. Route’s) name
• namespace - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then namespace will hold the referred object’s(e.g. Route’s) namespace
• tenant - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then tenant will hold the referred object’s(e.g. Route’s) tenant
Voltstack Cluster Ar Default Storage
Section titled “Voltstack Cluster Ar Default Storage”A default_storage block (within voltstack_cluster_ar) supports the following:
Voltstack Cluster Ar Forward Proxy Allow All
Section titled “Voltstack Cluster Ar Forward Proxy Allow All”A forward_proxy_allow_all block (within voltstack_cluster_ar) supports the following:
Voltstack Cluster Ar Global Network List
Section titled “Voltstack Cluster Ar Global Network List”A global_network_list block (within voltstack_cluster_ar) supports the following:
• global_network_connections - Optional List
Global Network Connections. Global network connections
Voltstack Cluster Ar Global Network List Global Network Connections
Section titled “Voltstack Cluster Ar Global Network List Global Network Connections”Deeply nested Connections block collapsed for readability.
Voltstack Cluster Ar Global Network List Global Network Connections SLI To Global DR
Section titled “Voltstack Cluster Ar Global Network List Global Network Connections SLI To Global DR”Deeply nested DR block collapsed for readability.
Voltstack Cluster Ar Global Network List Global Network Connections SLI To Global DR Global Vn
Section titled “Voltstack Cluster Ar Global Network List Global Network Connections SLI To Global DR Global Vn”Deeply nested Vn block collapsed for readability.
Voltstack Cluster Ar Global Network List Global Network Connections Slo To Global DR
Section titled “Voltstack Cluster Ar Global Network List Global Network Connections Slo To Global DR”Deeply nested DR block collapsed for readability.
Voltstack Cluster Ar Global Network List Global Network Connections Slo To Global DR Global Vn
Section titled “Voltstack Cluster Ar Global Network List Global Network Connections Slo To Global DR Global Vn”Deeply nested Vn block collapsed for readability.
Voltstack Cluster Ar K8S Cluster
Section titled “Voltstack Cluster Ar K8S Cluster”A k8s_cluster block (within voltstack_cluster_ar) supports the following:
• name - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then name will hold the referred object’s(e.g. Route’s) name
• namespace - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then namespace will hold the referred object’s(e.g. Route’s) namespace
• tenant - Optional String
When a configuration object(e.g. Virtual_host) refers to another(e.g route) then tenant will hold the referred object’s(e.g. Route’s) tenant
Voltstack Cluster Ar No Dc Cluster Group
Section titled “Voltstack Cluster Ar No Dc Cluster Group”A no_dc_cluster_group block (within voltstack_cluster_ar) supports the following:
Voltstack Cluster Ar No Forward Proxy
Section titled “Voltstack Cluster Ar No Forward Proxy”A no_forward_proxy block (within voltstack_cluster_ar) supports the following:
Voltstack Cluster Ar No Global Network
Section titled “Voltstack Cluster Ar No Global Network”A no_global_network block (within voltstack_cluster_ar) supports the following:
Voltstack Cluster Ar No K8S Cluster
Section titled “Voltstack Cluster Ar No K8S Cluster”A no_k8s_cluster block (within voltstack_cluster_ar) supports the following:
Voltstack Cluster Ar No Network Policy
Section titled “Voltstack Cluster Ar No Network Policy”A no_network_policy block (within voltstack_cluster_ar) supports the following:
Voltstack Cluster Ar No Outside Static Routes
Section titled “Voltstack Cluster Ar No Outside Static Routes”A no_outside_static_routes block (within voltstack_cluster_ar) supports the following:
Voltstack Cluster Ar Node
Section titled “Voltstack Cluster Ar Node”A node block (within voltstack_cluster_ar) supports the following:
• fault_domain - Optional Number
Namuber of fault domains to be used while creating the availability set
• local_subnet - Optional String
Configuration parameter for local subnet
• node_number - Optional Number
Number of main nodes to create, either 1 or 3
• update_domain - Optional Number
Namuber of update domains to be used while creating the availability set
Voltstack Cluster Ar Node Local Subnet
Section titled “Voltstack Cluster Ar Node Local Subnet”A local_subnet block (within voltstack_cluster_ar.node) supports the following:
• subnet - Optional String
Subnet specification for network segmentation
• subnet_param - Optional String
Parameters for creating a new cloud subnet
Voltstack Cluster Ar Node Local Subnet Subnet
Section titled “Voltstack Cluster Ar Node Local Subnet Subnet”A subnet block (within voltstack_cluster_ar.node.local_subnet) supports the following:
• subnet_name - Optional String
Subnet Name. Name of existing subnet
• subnet_resource_grp - Optional String
Specify name of Resource Group
• vnet_resource_group - Optional Object
Configuration parameter for VNET resource group
Voltstack Cluster Ar Node Local Subnet Subnet VNET Resource Group
Section titled “Voltstack Cluster Ar Node Local Subnet Subnet VNET Resource Group”Deeply nested Group block collapsed for readability.
Voltstack Cluster Ar Node Local Subnet Subnet Param
Section titled “Voltstack Cluster Ar Node Local Subnet Subnet Param”Deeply nested Param block collapsed for readability.
Voltstack Cluster Ar Outside Static Routes
Section titled “Voltstack Cluster Ar Outside Static Routes”An outside_static_routes block (within voltstack_cluster_ar) supports the following:
• static_route_list - Optional List
List of Static Routes. List of Static routes
Voltstack Cluster Ar Outside Static Routes Static Route List
Section titled “Voltstack Cluster Ar Outside Static Routes Static Route List”Deeply nested List block collapsed for readability.
Voltstack Cluster Ar Outside Static Routes Static Route List Custom Static Route
Section titled “Voltstack Cluster Ar Outside Static Routes Static Route List Custom Static Route”Deeply nested Route block collapsed for readability.
Voltstack Cluster Ar Outside Static Routes Static Route List Custom Static Route Labels
Section titled “Voltstack Cluster Ar Outside Static Routes Static Route List Custom Static Route Labels”Deeply nested Labels block collapsed for readability.
Voltstack Cluster Ar Outside Static Routes Static Route List Custom Static Route Nexthop
Section titled “Voltstack Cluster Ar Outside Static Routes Static Route List Custom Static Route Nexthop”Deeply nested Nexthop block collapsed for readability.
Voltstack Cluster Ar Outside Static Routes Static Route List Custom Static Route Nexthop Interface
Section titled “Voltstack Cluster Ar Outside Static Routes Static Route List Custom Static Route Nexthop Interface”Deeply nested Interface block collapsed for readability.
Voltstack Cluster Ar Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address
Section titled “Voltstack Cluster Ar Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address”Deeply nested Address block collapsed for readability.
Voltstack Cluster Ar Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv4
Section titled “Voltstack Cluster Ar Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv4”Deeply nested IPv4 block collapsed for readability.
Voltstack Cluster Ar Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv6
Section titled “Voltstack Cluster Ar Outside Static Routes Static Route List Custom Static Route Nexthop Nexthop Address IPv6”Deeply nested IPv6 block collapsed for readability.
Voltstack Cluster Ar Outside Static Routes Static Route List Custom Static Route Subnets
Section titled “Voltstack Cluster Ar Outside Static Routes Static Route List Custom Static Route Subnets”Deeply nested Subnets block collapsed for readability.
Voltstack Cluster Ar Outside Static Routes Static Route List Custom Static Route Subnets IPv4
Section titled “Voltstack Cluster Ar Outside Static Routes Static Route List Custom Static Route Subnets IPv4”Deeply nested IPv4 block collapsed for readability.
Voltstack Cluster Ar Outside Static Routes Static Route List Custom Static Route Subnets IPv6
Section titled “Voltstack Cluster Ar Outside Static Routes Static Route List Custom Static Route Subnets IPv6”Deeply nested IPv6 block collapsed for readability.
Voltstack Cluster Ar Sm Connection Public IP
Section titled “Voltstack Cluster Ar Sm Connection Public IP”A sm_connection_public_ip block (within voltstack_cluster_ar) supports the following:
Voltstack Cluster Ar Sm Connection Pvt IP
Section titled “Voltstack Cluster Ar Sm Connection Pvt IP”A sm_connection_pvt_ip block (within voltstack_cluster_ar) supports the following:
Voltstack Cluster Ar Storage Class List
Section titled “Voltstack Cluster Ar Storage Class List”A storage_class_list block (within voltstack_cluster_ar) supports the following:
• storage_classes - Optional List
List of Storage Classes. List of custom storage classes
Voltstack Cluster Ar Storage Class List Storage Classes
Section titled “Voltstack Cluster Ar Storage Class List Storage Classes”Deeply nested Classes block collapsed for readability.
Common Types
Section titled “Common Types”The following type definitions are used throughout this resource. See the full definition here rather than repeated inline.
Object Reference {#common-object-reference}
Section titled “Object Reference {#common-object-reference}”Object references establish a direct reference from one configuration object to another in F5 Distributed Cloud. References use the format tenant/namespace/name.
| Field | Type | Description |
|---|---|---|
name | String | Name of the referenced object |
namespace | String | Namespace containing the referenced object |
tenant | String | Tenant of the referenced object (system-managed) |
Transformers {#common-transformers}
Section titled “Transformers {#common-transformers}”Transformers apply transformations to input values before matching. Multiple transformers can be applied in order.
| Value | Description |
|---|---|
LOWER_CASE | Convert to lowercase |
UPPER_CASE | Convert to uppercase |
BASE64_DECODE | Decodebase64 content |
NORMALIZE_PATH | Normalize URL path |
REMOVE_WHITESPACE | Remove whitespace characters |
URL_DECODE | Decode URL-encoded characters |
TRIM_LEFT | Trim leading whitespace |
TRIM_RIGHT | Trim trailing whitespace |
TRIM | Trim both leading and trailing whitespace |
HTTP Methods {#common-http-methods}
Section titled “HTTP Methods {#common-http-methods}”HTTP methods used for request matching.
| Value | Description |
|---|---|
ANY | Match any HTTP method |
GET | HTTP GET request |
HEAD | HTTP HEAD request |
POST | HTTP POST request |
PUT | HTTP PUT request |
DELETE | HTTP DELETE request |
CONNECT | HTTP CONNECT request |
OPTIONS | HTTP OPTIONS request |
TRACE | HTTP TRACE request |
PATCH | HTTP PATCH request |
COPY | HTTP COPY request (WebDAV) |
TLS Fingerprints {#common-tls-fingerprints}
Section titled “TLS Fingerprints {#common-tls-fingerprints}”TLS fingerprint categories for malicious client detection.
| Value | Description |
|---|---|
TLS_FINGERPRINT_NONE | No fingerprint matching |
ANY_MALICIOUS_FINGERPRINT | Match any known malicious fingerprint |
ADWARE | Adware-associated fingerprints |
DRIDEX | Dridex malware fingerprints |
GOOTKIT | Gootkit malware fingerprints |
RANSOMWARE | Ransomware-associated fingerprints |
TRICKBOT | Trickbot malware fingerprints |
IP Threat Categories {#common-ip-threat-categories}
Section titled “IP Threat Categories {#common-ip-threat-categories}”IP address threat categories for security filtering.
| Value | Description |
|---|---|
SPAM_SOURCES | Known spam sources |
WINDOWS_EXPLOITS | Windows exploit sources |
WEB_ATTACKS | Web attack sources |
BOTNETS | Known botnet IPs |
SCANNERS | Network scanner IPs |
REPUTATION | Poor reputation IPs |
PHISHING | Phishing-related IPs |
PROXY | Anonymous proxy IPs |
MOBILE_THREATS | Mobile threat sources |
TOR_PROXY | Tor exit nodes |
DENIAL_OF_SERVICE | DoS attack sources |
NETWORK | Known bad network ranges |