VMware VSHIELD MANAGER 4.1.0 UPDATE 1 - API Uživatelský manuál Strana 53

  • Stažení
  • Přidat do mých příruček
  • Tisk
  • Strana
    / 90
  • Tabulka s obsahem
  • KNIHY
  • Hodnocené. / 5. Na základě hodnocení zákazníků
Zobrazit stránku 52
VMware, Inc. 53
Chapter 6 vShield App Management
ANY</DestinationPorts><Protocol>UDP</Protocol><Action>ALLOW</Action><Log>false
</Log><Notes></Notes></Rule><Rule><ID>1005</ID><Precedence>Default</Precedence>
<Position>1</Position><Source ref="ANY" exclude="false"/><Destination ref="ANY"
exclude="false"/><SourcePorts>ANY</SourcePorts><Application type="UNICAST">
ANY</Application><DestinationPorts>ANY</DestinationPorts><Protocol>ARP</Protocol>
<Action>ALLOW</Action><Log>false</Log><Notes></Notes></Rule><Rule><ID>1006</ID>
<Precedence>Default</Precedence><Position>2</Position><Source ref="ANY"
exclude="false"/><Destination ref="ANY" exclude="false"/><SourcePorts>ANY
</SourcePorts><Application type="UNICAST">ANY</Application>
<DestinationPorts>ANY</DestinationPorts><Protocol>OTHER IPv4</Protocol><Action>
ALLOW</Action><Log>false</Log><Notes></Notes></Rule><Rule><ID>1007</ID>
<Precedence>Default</Precedence><Position>3</Position><Source ref="ANY"
exclude="false"/><Destination ref="ANY" exclude="false"/><SourcePorts>ANY
</SourcePorts><Application type="UNICAST">ANY</Application>
<DestinationPorts>ANY</DestinationPorts><Protocol>OTHER LAYER 3</Protocol><Action>
ALLOW</Action><Log>false</Log><Notes></Notes></Rule></RuleSet>
</vshieldZonesFirewallConfiguration>
Example 6-3. Posting a Firewall Rule Set at the Datacenter Level with Destination IP as a VLAN Container
Example:
POST /api/1.0/zones/datacenter-7/firewall/rules
content-type: application/xml; charset=UTF-8
Authorization: Basic YWRtaW46ZGVmYXVsdA==
Host: 192.168.102.134
content-length: 655
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<vshieldZonesFirewallConfiguration><ContainerAssociation><Container id="No Vlan
(0)"><Name>No Vlan (0)</Name></Container><Container id="vShield"><InstanceId>
datacenter-7</InstanceId></Container><Container id="ANY"><Name>ANY</Name>
</Container></ContainerAssociation><RuleSet><Rule><ID>0</ID><Precedence>High
</Precedence><Position>1</Position><Source ref="vShield" exclude="true"/>
<Destination ref="No Vlan (0)" exclude="false"/><SourcePorts>ANY
</SourcePorts><Application type="UNICAST">MS-RPC</Application>
<DestinationPorts>135</DestinationPorts><Protocol>TCP</Protocol><Action>DENY
</Action><Log>false</Log><Notes></Notes></Rule><Rule><ID>1001</ID><Precedence>
Default</Precedence><Position>1</Position><Source ref="ANY" exclude="false"/>
<Destination ref="ANY" exclude="false"/><SourcePorts>68</SourcePorts>
<Application type="UNICAST">DHCP-Server</Application><DestinationPorts>67
</DestinationPorts><Protocol>UDP</Protocol><Action>ALLOW</Action><Log>false</Log>
<Notes></Notes></Rule><Rule><ID>1002</ID><Precedence>Default</Precedence>
<Position>2</Position><Source ref="ANY" exclude="false"/><Destination ref="ANY"
exclude="false"/><SourcePorts>67</SourcePorts><Application type="UNICAST">
DHCP-Client</Application><DestinationPorts>68</DestinationPorts><Protocol>UDP
</Protocol><Action>ALLOW</Action><Log>false</Log><Notes></Notes></Rule><Rule><ID>
1003</ID><Precedence>Default</Precedence><Position>3</Position><Source ref="ANY"
exclude="false"/><Destination ref="ANY" exclude="false"/><SourcePorts>ANY
</SourcePorts><Application type="UNICAST">ANY</Application><DestinationPorts>
ANY</DestinationPorts><Protocol>TCP</Protocol><Action>ALLOW</Action><Log>false
</Log><Notes></Notes></Rule><Rule><ID>1004</ID><Precedence>Default</Precedence>
<Position>4</Position><Source ref="ANY" exclude="false"/><Destination ref="ANY"
exclude="false"/><SourcePorts>ANY</SourcePorts><Application type="UNICAST">
ANY</Application><DestinationPorts>ANY</DestinationPorts><Protocol>UDP</Protocol>
<Action>ALLOW</Action><Log>false</Log><Notes></Notes></Rule><Rule><ID>1005</ID>
<Precedence>Default</Precedence><Position>1</Position><Source ref="ANY"
exclude="false"/><Destination ref="ANY" exclude="false"/><SourcePorts>ANY
</SourcePorts><Application type="UNICAST">ANY</Application>
<DestinationPorts>ANY</DestinationPorts><Protocol>ARP</Protocol><Action>ALLOW
</Action><Log>false</Log><Notes></Notes></Rule><Rule><ID>1006</ID><Precedence>
Default</Precedence><Position>2</Position><Source ref="ANY" exclude="false"/>
<Destination ref="ANY" exclude="false"/><SourcePorts>ANY</SourcePorts>
<Application type="UNICAST">ANY</Application><DestinationPorts>ANY
</DestinationPorts><Protocol>OTHER IPv4</Protocol><Action>ALLOW</Action><Log>false
</Log><Notes></Notes></Rule><Rule><ID>1007</ID><Precedence>Default</Precedence>
<Position>3</Position><Source ref="ANY" exclude="false"/><Destination ref="ANY"
Zobrazit stránku 52
1 2 ... 48 49 50 51 52 53 54 55 56 57 58 ... 89 90

Komentáře k této Příručce

Žádné komentáře