Creating a Network ACL
Function
This API is used to create a network ACL.
Calling Method
For details, see Calling APIs.
URI
POST /v3/{project_id}/vpc/firewalls
| Parameter | Mandatory | Type | Description | 
|---|---|---|---|
| project_id | Yes | String | Project ID. For details about how to obtain a project ID, see Obtaining a Project ID. | 
Request Parameters
| Parameter | Mandatory | Type | Description | 
|---|---|---|---|
| firewall | Yes | CreateFirewallOption object | Request body for creating a network ACL. | 
| dry_run | No | Boolean | 
 | 
| Parameter | Mandatory | Type | Description | 
|---|---|---|---|
| name | Yes | String | 
 | 
| description | No | String | 
 | 
| enterprise_project_id | No | String | 
 | 
| tags | No | Array of ResourceTag objects | 
 | 
| admin_state_up | No | Boolean | 
 | 
Response Parameters
Status code: 201
| Parameter | Type | Description | 
|---|---|---|
| firewall | FirewallDetail object | Response body for creating a network ACL. | 
| request_id | String | Request ID. | 
| Parameter | Type | Description | 
|---|---|---|
| id | String | 
 | 
| name | String | 
 | 
| description | String | 
 | 
| project_id | String | 
 | 
| created_at | String | 
 | 
| updated_at | String | 
 | 
| admin_state_up | Boolean | 
 | 
| status | String | 
 | 
| enterprise_project_id | String | 
 | 
| tags | Array of ResourceTag objects | 
 | 
| associations | Array of FirewallAssociation objects | 
 | 
| ingress_rules | Array of FirewallRuleDetail objects | 
 | 
| egress_rules | Array of FirewallRuleDetail objects | 
 | 
| Parameter | Type | Description | 
|---|---|---|
| key | String | 
 Minimum: 1 Maximum: 128 | 
| value | String | 
 Maximum: 255 | 
| Parameter | Type | Description | 
|---|---|---|
| virsubnet_id | String | 
 | 
| Parameter | Type | Description | 
|---|---|---|
| id | String | 
 | 
| name | String | 
 | 
| description | String | 
 | 
| action | String | 
 | 
| project_id | String | 
 | 
| protocol | String | 
 | 
| ip_version | Integer | 
 | 
| source_ip_address | String | 
 | 
| destination_ip_address | String | 
 | 
| source_port | String | 
 | 
| destination_port | String | 
 | 
| source_address_group_id | String | 
 | 
| destination_address_group_id | String | 
 | 
| enabled | Boolean | 
 | 
Example Requests
Create a network ACL named network_acl_test1.
POST https://{Endpoint}/v3/{project_id}/vpc/firewalls
{
  "firewall" : {
    "name" : "network_acl_test1",
    "description" : "network_acl_test1",
    "enterprise_project_id" : "158ad39a-dab7-45a3-9b5a-2836b3cf93f9"
  }
}
  Example Responses
Status code: 201
Normal response to the POST operation. For more status codes, see Status Codes.
{
  "firewall" : {
    "id" : "e9a7731d-5bd9-4250-a524-b9a076fd5629",
    "name" : "network_acl_test1",
    "description" : "network_acl_test1",
    "project_id" : "9476ea5a8a9849c38358e43c0c3a9e12",
    "created_at" : "2022-04-07T07:30:46.000+00:00",
    "updated_at" : "2022-04-07T07:30:46.000+00:00",
    "admin_state_up" : true,
    "enterprise_project_id" : "158ad39a-dab7-45a3-9b5a-2836b3cf93f9",
    "status" : "ACTIVE",
    "tags" : [ ],
    "ingress_rules" : [ ],
    "egress_rules" : [ ],
    "associations" : [ ]
  }
}
  SDK Sample Code
The SDK sample code is as follows.
Create a network ACL named network_acl_test1.
| 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 | package com.huaweicloud.sdk.test; import com.huaweicloud.sdk.core.auth.ICredential; import com.huaweicloud.sdk.core.auth.BasicCredentials; import com.huaweicloud.sdk.core.exception.ConnectionException; import com.huaweicloud.sdk.core.exception.RequestTimeoutException; import com.huaweicloud.sdk.core.exception.ServiceResponseException; import com.huaweicloud.sdk.vpc.v3.region.VpcRegion; import com.huaweicloud.sdk.vpc.v3.*; import com.huaweicloud.sdk.vpc.v3.model.*; public class CreateFirewallSolution { public static void main(String[] args) { // The AK and SK used for authentication are hard-coded or stored in plaintext, which has great security risks. It is recommended that the AK and SK be stored in ciphertext in configuration files or environment variables and decrypted during use to ensure security. // In this example, AK and SK are stored in environment variables for authentication. Before running this example, set environment variables CLOUD_SDK_AK and CLOUD_SDK_SK in the local environment String ak = System.getenv("CLOUD_SDK_AK"); String sk = System.getenv("CLOUD_SDK_SK"); String projectId = "{project_id}"; ICredential auth = new BasicCredentials() .withProjectId(projectId) .withAk(ak) .withSk(sk); VpcClient client = VpcClient.newBuilder() .withCredential(auth) .withRegion(VpcRegion.valueOf("<YOUR REGION>")) .build(); CreateFirewallRequest request = new CreateFirewallRequest(); CreateFirewallRequestBody body = new CreateFirewallRequestBody(); CreateFirewallOption firewallbody = new CreateFirewallOption(); firewallbody.withName("network_acl_test1") .withDescription("network_acl_test1") .withEnterpriseProjectId("158ad39a-dab7-45a3-9b5a-2836b3cf93f9"); body.withFirewall(firewallbody); request.withBody(body); try { CreateFirewallResponse response = client.createFirewall(request); System.out.println(response.toString()); } catch (ConnectionException e) { e.printStackTrace(); } catch (RequestTimeoutException e) { e.printStackTrace(); } catch (ServiceResponseException e) { e.printStackTrace(); System.out.println(e.getHttpStatusCode()); System.out.println(e.getRequestId()); System.out.println(e.getErrorCode()); System.out.println(e.getErrorMsg()); } } } | 
Create a network ACL named network_acl_test1.
| 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 | # coding: utf-8 import os from huaweicloudsdkcore.auth.credentials import BasicCredentials from huaweicloudsdkvpc.v3.region.vpc_region import VpcRegion from huaweicloudsdkcore.exceptions import exceptions from huaweicloudsdkvpc.v3 import * if __name__ == "__main__": # The AK and SK used for authentication are hard-coded or stored in plaintext, which has great security risks. It is recommended that the AK and SK be stored in ciphertext in configuration files or environment variables and decrypted during use to ensure security. # In this example, AK and SK are stored in environment variables for authentication. Before running this example, set environment variables CLOUD_SDK_AK and CLOUD_SDK_SK in the local environment ak = os.environ["CLOUD_SDK_AK"] sk = os.environ["CLOUD_SDK_SK"] projectId = "{project_id}" credentials = BasicCredentials(ak, sk, projectId) client = VpcClient.new_builder() \ .with_credentials(credentials) \ .with_region(VpcRegion.value_of("<YOUR REGION>")) \ .build() try: request = CreateFirewallRequest() firewallbody = CreateFirewallOption( name="network_acl_test1", description="network_acl_test1", enterprise_project_id="158ad39a-dab7-45a3-9b5a-2836b3cf93f9" ) request.body = CreateFirewallRequestBody( firewall=firewallbody ) response = client.create_firewall(request) print(response) except exceptions.ClientRequestException as e: print(e.status_code) print(e.request_id) print(e.error_code) print(e.error_msg) | 
Create a network ACL named network_acl_test1.
| 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 | package main import ( "fmt" "github.com/huaweicloud/huaweicloud-sdk-go-v3/core/auth/basic" vpc "github.com/huaweicloud/huaweicloud-sdk-go-v3/services/vpc/v3" "github.com/huaweicloud/huaweicloud-sdk-go-v3/services/vpc/v3/model" region "github.com/huaweicloud/huaweicloud-sdk-go-v3/services/vpc/v3/region" ) func main() { // The AK and SK used for authentication are hard-coded or stored in plaintext, which has great security risks. It is recommended that the AK and SK be stored in ciphertext in configuration files or environment variables and decrypted during use to ensure security. // In this example, AK and SK are stored in environment variables for authentication. Before running this example, set environment variables CLOUD_SDK_AK and CLOUD_SDK_SK in the local environment ak := os.Getenv("CLOUD_SDK_AK") sk := os.Getenv("CLOUD_SDK_SK") projectId := "{project_id}" auth := basic.NewCredentialsBuilder(). WithAk(ak). WithSk(sk). WithProjectId(projectId). Build() client := vpc.NewVpcClient( vpc.VpcClientBuilder(). WithRegion(region.ValueOf("<YOUR REGION>")). WithCredential(auth). Build()) request := &model.CreateFirewallRequest{} descriptionFirewall:= "network_acl_test1" enterpriseProjectIdFirewall:= "158ad39a-dab7-45a3-9b5a-2836b3cf93f9" firewallbody := &model.CreateFirewallOption{ Name: "network_acl_test1", Description: &descriptionFirewall, EnterpriseProjectId: &enterpriseProjectIdFirewall, } request.Body = &model.CreateFirewallRequestBody{ Firewall: firewallbody, } response, err := client.CreateFirewall(request) if err == nil { fmt.Printf("%+v\n", response) } else { fmt.Println(err) } } | 
For SDK sample code of more programming languages, see the Sample Code tab in API Explorer. SDK sample code can be automatically generated.
Status Codes
| Status Code | Description | 
|---|---|
| 201 | Normal response to the POST operation. For more status codes, see Status Codes. | 
Error Codes
See Error Codes.
Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot 
    