Associating Subnets with a Network ACL
Scenarios
You can associate a subnet with a network ACL. If it is enabled, it controls traffic in and out of the subnet.
Associating subnets with a network ACL may affect how and where traffic is directed. Be careful with this operation as it may interrupt services.
Notes and Constraints
- You can associate a network ACL with multiple subnets. However, a subnet can only be associated with one network ACL at a time.
- After a network ACL is associated with a subnet, the default rules deny all traffic to and from the subnet until you add custom rules to allow traffic. For details, see Adding a Network ACL Rule.
Procedure
- Log in to the management console.
- Click in the upper left corner and select the desired region and project.
- Click in the upper left corner and choose Networking > Virtual Private Cloud.
The Virtual Private Cloud page is displayed.
- Associate a subnet with a network ACL using either of the following methods:
- Method 1
- In the navigation pane on the left, click Subnets.
The Subnets page is displayed.
- In the subnet list, locate the row that contains the subnet and click Associate under the Network ACL column.
The Associate Network ACL page is displayed.
- Select a network ACL from the drop-down list.
If there is no network ACL, click in the drop-down list to create one.
- Click OK.
The subnet list is displayed. You can view the associated network ACL of the subnet.
- In the navigation pane on the left, click Subnets.
- Method 2
- In the navigation pane on the left, choose Access Control > Network ACLs.
The network ACL list is displayed.
- In the subnet list, locate the row that contains the network ACL and click Associate Subnet in the Operation column.
The Associated Subnets tab is displayed.
- On the Associated Subnets tab, click Associate.
The Associate Subnet dialog box is displayed.
- In the Associate Subnet dialog box, select the subnet from the subnet list and click OK.
In the associated subnet list, you can view all subnets associated with the network ACL.
A subnet with a network ACL associated will not be displayed in the subnet list of the Associate Subnet dialog box for you to select. If you want to associate such a subnet with another network ACL, you must first disassociate the subnet from the original network ACL.
- In the navigation pane on the left, choose Access Control > Network ACLs.
- Method 1
Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.