Interface NetworkFirewallClient
- All Superinterfaces:
AutoCloseable,AwsClient,SdkAutoCloseable,SdkClient
builder() method.
This is the API Reference for Network Firewall. This guide is for developers who need detailed information about the Network Firewall API actions, data types, and errors.
The REST API requires you to handle connection details, such as calculating signatures, handling request retries, and error handling. For general information about using the Amazon Web Services REST APIs, see Amazon Web Services APIs.
To view the complete list of Amazon Web Services Regions where Network Firewall is available, see Service endpoints and quotas in the Amazon Web Services General Reference.
To access Network Firewall using the IPv4 REST API endpoint:
https://network-firewall.<region>.amazonaws.com
To access Network Firewall using the Dualstack (IPv4 and IPv6) REST API endpoint:
https://network-firewall.<region>.aws.api
Alternatively, you can use one of the Amazon Web Services SDKs to access an API that's tailored to the programming language or platform that you're using. For more information, see Amazon Web Services SDKs.
For descriptions of Network Firewall features, including and step-by-step instructions on how to use them through the Network Firewall console, see the Network Firewall Developer Guide.
Network Firewall is a stateful, managed, network firewall and intrusion detection and prevention service for Amazon Virtual Private Cloud (Amazon VPC). With Network Firewall, you can filter traffic at the perimeter of your VPC. This includes filtering traffic going to and coming from an internet gateway, NAT gateway, or over VPN or Direct Connect. Network Firewall uses rules that are compatible with Suricata, a free, open source network analysis and threat detection engine. Network Firewall supports Suricata version 7.0.3. For information about Suricata, see the Suricata website and the Suricata User Guide.
You can use Network Firewall to monitor and protect your VPC traffic in a number of ways. The following are just a few examples:
-
Allow domains or IP addresses for known Amazon Web Services service endpoints, such as Amazon S3, and block all other forms of traffic.
-
Use custom lists of known bad domains to limit the types of domain names that your applications can access.
-
Perform deep packet inspection on traffic entering or leaving your VPC.
-
Use stateful protocol detection to filter protocols like HTTPS, regardless of the port used.
To enable Network Firewall for your VPCs, you perform steps in both Amazon VPC and in Network Firewall. For information about using Amazon VPC, see Amazon VPC User Guide.
To start using Network Firewall, do the following:
-
(Optional) If you don't already have a VPC that you want to protect, create it in Amazon VPC.
-
In Amazon VPC, in each Availability Zone where you want to have a firewall endpoint, create a subnet for the sole use of Network Firewall.
-
In Network Firewall, define the firewall behavior as follows:
-
Create stateless and stateful rule groups, to define the components of the network traffic filtering behavior that you want your firewall to have.
-
Create a firewall policy that uses your rule groups and specifies additional default traffic filtering behavior.
-
-
In Network Firewall, create a firewall and specify your new firewall policy and VPC subnets. Network Firewall creates a firewall endpoint in each subnet that you specify, with the behavior that's defined in the firewall policy.
-
In Amazon VPC, use ingress routing enhancements to route traffic through the new firewall endpoints.
After your firewall is established, you can add firewall endpoints for new Availability Zones by following the prior steps for the Amazon VPC setup and firewall subnet definitions. You can also add endpoints to Availability Zones that you're using in the firewall, either for the same VPC or for another VPC, by following the prior steps for the Amazon VPC setup, and defining the new VPC subnets as VPC endpoint associations.
-
Field Summary
FieldsModifier and TypeFieldDescriptionstatic final StringValue for looking up the service's metadata from theServiceMetadataProvider.static final String -
Method Summary
Modifier and TypeMethodDescriptionacceptNetworkFirewallTransitGatewayAttachment(Consumer<AcceptNetworkFirewallTransitGatewayAttachmentRequest.Builder> acceptNetworkFirewallTransitGatewayAttachmentRequest) Accepts a transit gateway attachment request for Network Firewall.acceptNetworkFirewallTransitGatewayAttachment(AcceptNetworkFirewallTransitGatewayAttachmentRequest acceptNetworkFirewallTransitGatewayAttachmentRequest) Accepts a transit gateway attachment request for Network Firewall.associateAvailabilityZones(Consumer<AssociateAvailabilityZonesRequest.Builder> associateAvailabilityZonesRequest) Associates the specified Availability Zones with a transit gateway-attached firewall.associateAvailabilityZones(AssociateAvailabilityZonesRequest associateAvailabilityZonesRequest) Associates the specified Availability Zones with a transit gateway-attached firewall.default AssociateFirewallPolicyResponseassociateFirewallPolicy(Consumer<AssociateFirewallPolicyRequest.Builder> associateFirewallPolicyRequest) Associates a FirewallPolicy to a Firewall.default AssociateFirewallPolicyResponseassociateFirewallPolicy(AssociateFirewallPolicyRequest associateFirewallPolicyRequest) Associates a FirewallPolicy to a Firewall.default AssociateSubnetsResponseassociateSubnets(Consumer<AssociateSubnetsRequest.Builder> associateSubnetsRequest) Associates the specified subnets in the Amazon VPC to the firewall.default AssociateSubnetsResponseassociateSubnets(AssociateSubnetsRequest associateSubnetsRequest) Associates the specified subnets in the Amazon VPC to the firewall.static NetworkFirewallClientBuilderbuilder()Create a builder that can be used to configure and create aNetworkFirewallClient.static NetworkFirewallClientcreate()Create aNetworkFirewallClientwith the region loaded from theDefaultAwsRegionProviderChainand credentials loaded from theDefaultCredentialsProvider.default CreateFirewallResponsecreateFirewall(Consumer<CreateFirewallRequest.Builder> createFirewallRequest) Creates an Network Firewall Firewall and accompanying FirewallStatus for a VPC.default CreateFirewallResponsecreateFirewall(CreateFirewallRequest createFirewallRequest) Creates an Network Firewall Firewall and accompanying FirewallStatus for a VPC.default CreateFirewallPolicyResponsecreateFirewallPolicy(Consumer<CreateFirewallPolicyRequest.Builder> createFirewallPolicyRequest) Creates the firewall policy for the firewall according to the specifications.default CreateFirewallPolicyResponsecreateFirewallPolicy(CreateFirewallPolicyRequest createFirewallPolicyRequest) Creates the firewall policy for the firewall according to the specifications.default CreateRuleGroupResponsecreateRuleGroup(Consumer<CreateRuleGroupRequest.Builder> createRuleGroupRequest) Creates the specified stateless or stateful rule group, which includes the rules for network traffic inspection, a capacity setting, and tags.default CreateRuleGroupResponsecreateRuleGroup(CreateRuleGroupRequest createRuleGroupRequest) Creates the specified stateless or stateful rule group, which includes the rules for network traffic inspection, a capacity setting, and tags.createTLSInspectionConfiguration(Consumer<CreateTlsInspectionConfigurationRequest.Builder> createTlsInspectionConfigurationRequest) Creates an Network Firewall TLS inspection configuration.createTLSInspectionConfiguration(CreateTlsInspectionConfigurationRequest createTlsInspectionConfigurationRequest) Creates an Network Firewall TLS inspection configuration.createVpcEndpointAssociation(Consumer<CreateVpcEndpointAssociationRequest.Builder> createVpcEndpointAssociationRequest) Creates a firewall endpoint for an Network Firewall firewall.createVpcEndpointAssociation(CreateVpcEndpointAssociationRequest createVpcEndpointAssociationRequest) Creates a firewall endpoint for an Network Firewall firewall.default DeleteFirewallResponsedeleteFirewall(Consumer<DeleteFirewallRequest.Builder> deleteFirewallRequest) Deletes the specified Firewall and its FirewallStatus.default DeleteFirewallResponsedeleteFirewall(DeleteFirewallRequest deleteFirewallRequest) Deletes the specified Firewall and its FirewallStatus.default DeleteFirewallPolicyResponsedeleteFirewallPolicy(Consumer<DeleteFirewallPolicyRequest.Builder> deleteFirewallPolicyRequest) Deletes the specified FirewallPolicy.default DeleteFirewallPolicyResponsedeleteFirewallPolicy(DeleteFirewallPolicyRequest deleteFirewallPolicyRequest) Deletes the specified FirewallPolicy.deleteNetworkFirewallTransitGatewayAttachment(Consumer<DeleteNetworkFirewallTransitGatewayAttachmentRequest.Builder> deleteNetworkFirewallTransitGatewayAttachmentRequest) Deletes a transit gateway attachment from a Network Firewall.deleteNetworkFirewallTransitGatewayAttachment(DeleteNetworkFirewallTransitGatewayAttachmentRequest deleteNetworkFirewallTransitGatewayAttachmentRequest) Deletes a transit gateway attachment from a Network Firewall.default DeleteResourcePolicyResponsedeleteResourcePolicy(Consumer<DeleteResourcePolicyRequest.Builder> deleteResourcePolicyRequest) Deletes a resource policy that you created in a PutResourcePolicy request.default DeleteResourcePolicyResponsedeleteResourcePolicy(DeleteResourcePolicyRequest deleteResourcePolicyRequest) Deletes a resource policy that you created in a PutResourcePolicy request.default DeleteRuleGroupResponsedeleteRuleGroup(Consumer<DeleteRuleGroupRequest.Builder> deleteRuleGroupRequest) Deletes the specified RuleGroup.default DeleteRuleGroupResponsedeleteRuleGroup(DeleteRuleGroupRequest deleteRuleGroupRequest) Deletes the specified RuleGroup.deleteTLSInspectionConfiguration(Consumer<DeleteTlsInspectionConfigurationRequest.Builder> deleteTlsInspectionConfigurationRequest) Deletes the specified TLSInspectionConfiguration.deleteTLSInspectionConfiguration(DeleteTlsInspectionConfigurationRequest deleteTlsInspectionConfigurationRequest) Deletes the specified TLSInspectionConfiguration.deleteVpcEndpointAssociation(Consumer<DeleteVpcEndpointAssociationRequest.Builder> deleteVpcEndpointAssociationRequest) Deletes the specified VpcEndpointAssociation.deleteVpcEndpointAssociation(DeleteVpcEndpointAssociationRequest deleteVpcEndpointAssociationRequest) Deletes the specified VpcEndpointAssociation.default DescribeFirewallResponsedescribeFirewall(Consumer<DescribeFirewallRequest.Builder> describeFirewallRequest) Returns the data objects for the specified firewall.default DescribeFirewallResponsedescribeFirewall(DescribeFirewallRequest describeFirewallRequest) Returns the data objects for the specified firewall.default DescribeFirewallMetadataResponsedescribeFirewallMetadata(Consumer<DescribeFirewallMetadataRequest.Builder> describeFirewallMetadataRequest) Returns the high-level information about a firewall, including the Availability Zones where the Firewall is currently in use.default DescribeFirewallMetadataResponsedescribeFirewallMetadata(DescribeFirewallMetadataRequest describeFirewallMetadataRequest) Returns the high-level information about a firewall, including the Availability Zones where the Firewall is currently in use.default DescribeFirewallPolicyResponsedescribeFirewallPolicy(Consumer<DescribeFirewallPolicyRequest.Builder> describeFirewallPolicyRequest) Returns the data objects for the specified firewall policy.default DescribeFirewallPolicyResponsedescribeFirewallPolicy(DescribeFirewallPolicyRequest describeFirewallPolicyRequest) Returns the data objects for the specified firewall policy.default DescribeFlowOperationResponsedescribeFlowOperation(Consumer<DescribeFlowOperationRequest.Builder> describeFlowOperationRequest) Returns key information about a specific flow operation.default DescribeFlowOperationResponsedescribeFlowOperation(DescribeFlowOperationRequest describeFlowOperationRequest) Returns key information about a specific flow operation.describeLoggingConfiguration(Consumer<DescribeLoggingConfigurationRequest.Builder> describeLoggingConfigurationRequest) Returns the logging configuration for the specified firewall.describeLoggingConfiguration(DescribeLoggingConfigurationRequest describeLoggingConfigurationRequest) Returns the logging configuration for the specified firewall.default DescribeResourcePolicyResponsedescribeResourcePolicy(Consumer<DescribeResourcePolicyRequest.Builder> describeResourcePolicyRequest) Retrieves a resource policy that you created in a PutResourcePolicy request.default DescribeResourcePolicyResponsedescribeResourcePolicy(DescribeResourcePolicyRequest describeResourcePolicyRequest) Retrieves a resource policy that you created in a PutResourcePolicy request.default DescribeRuleGroupResponsedescribeRuleGroup(Consumer<DescribeRuleGroupRequest.Builder> describeRuleGroupRequest) Returns the data objects for the specified rule group.default DescribeRuleGroupResponsedescribeRuleGroup(DescribeRuleGroupRequest describeRuleGroupRequest) Returns the data objects for the specified rule group.describeRuleGroupMetadata(Consumer<DescribeRuleGroupMetadataRequest.Builder> describeRuleGroupMetadataRequest) High-level information about a rule group, returned by operations like create and describe.describeRuleGroupMetadata(DescribeRuleGroupMetadataRequest describeRuleGroupMetadataRequest) High-level information about a rule group, returned by operations like create and describe.default DescribeRuleGroupSummaryResponsedescribeRuleGroupSummary(Consumer<DescribeRuleGroupSummaryRequest.Builder> describeRuleGroupSummaryRequest) Returns detailed information for a stateful rule group.default DescribeRuleGroupSummaryResponsedescribeRuleGroupSummary(DescribeRuleGroupSummaryRequest describeRuleGroupSummaryRequest) Returns detailed information for a stateful rule group.describeTLSInspectionConfiguration(Consumer<DescribeTlsInspectionConfigurationRequest.Builder> describeTlsInspectionConfigurationRequest) Returns the data objects for the specified TLS inspection configuration.describeTLSInspectionConfiguration(DescribeTlsInspectionConfigurationRequest describeTlsInspectionConfigurationRequest) Returns the data objects for the specified TLS inspection configuration.describeVpcEndpointAssociation(Consumer<DescribeVpcEndpointAssociationRequest.Builder> describeVpcEndpointAssociationRequest) Returns the data object for the specified VPC endpoint association.describeVpcEndpointAssociation(DescribeVpcEndpointAssociationRequest describeVpcEndpointAssociationRequest) Returns the data object for the specified VPC endpoint association.disassociateAvailabilityZones(Consumer<DisassociateAvailabilityZonesRequest.Builder> disassociateAvailabilityZonesRequest) Removes the specified Availability Zone associations from a transit gateway-attached firewall.disassociateAvailabilityZones(DisassociateAvailabilityZonesRequest disassociateAvailabilityZonesRequest) Removes the specified Availability Zone associations from a transit gateway-attached firewall.default DisassociateSubnetsResponsedisassociateSubnets(Consumer<DisassociateSubnetsRequest.Builder> disassociateSubnetsRequest) Removes the specified subnet associations from the firewall.default DisassociateSubnetsResponsedisassociateSubnets(DisassociateSubnetsRequest disassociateSubnetsRequest) Removes the specified subnet associations from the firewall.default GetAnalysisReportResultsResponsegetAnalysisReportResults(Consumer<GetAnalysisReportResultsRequest.Builder> getAnalysisReportResultsRequest) The results of aCOMPLETEDanalysis report generated with StartAnalysisReport.default GetAnalysisReportResultsResponsegetAnalysisReportResults(GetAnalysisReportResultsRequest getAnalysisReportResultsRequest) The results of aCOMPLETEDanalysis report generated with StartAnalysisReport.default GetAnalysisReportResultsIterablegetAnalysisReportResultsPaginator(Consumer<GetAnalysisReportResultsRequest.Builder> getAnalysisReportResultsRequest) This is a variant ofgetAnalysisReportResults(software.amazon.awssdk.services.networkfirewall.model.GetAnalysisReportResultsRequest)operation.default GetAnalysisReportResultsIterablegetAnalysisReportResultsPaginator(GetAnalysisReportResultsRequest getAnalysisReportResultsRequest) This is a variant ofgetAnalysisReportResults(software.amazon.awssdk.services.networkfirewall.model.GetAnalysisReportResultsRequest)operation.default ListAnalysisReportsResponselistAnalysisReports(Consumer<ListAnalysisReportsRequest.Builder> listAnalysisReportsRequest) Returns a list of all traffic analysis reports generated within the last 30 days.default ListAnalysisReportsResponselistAnalysisReports(ListAnalysisReportsRequest listAnalysisReportsRequest) Returns a list of all traffic analysis reports generated within the last 30 days.default ListAnalysisReportsIterablelistAnalysisReportsPaginator(Consumer<ListAnalysisReportsRequest.Builder> listAnalysisReportsRequest) This is a variant oflistAnalysisReports(software.amazon.awssdk.services.networkfirewall.model.ListAnalysisReportsRequest)operation.default ListAnalysisReportsIterablelistAnalysisReportsPaginator(ListAnalysisReportsRequest listAnalysisReportsRequest) This is a variant oflistAnalysisReports(software.amazon.awssdk.services.networkfirewall.model.ListAnalysisReportsRequest)operation.default ListFirewallPoliciesResponselistFirewallPolicies(Consumer<ListFirewallPoliciesRequest.Builder> listFirewallPoliciesRequest) Retrieves the metadata for the firewall policies that you have defined.default ListFirewallPoliciesResponselistFirewallPolicies(ListFirewallPoliciesRequest listFirewallPoliciesRequest) Retrieves the metadata for the firewall policies that you have defined.default ListFirewallPoliciesIterablelistFirewallPoliciesPaginator(Consumer<ListFirewallPoliciesRequest.Builder> listFirewallPoliciesRequest) This is a variant oflistFirewallPolicies(software.amazon.awssdk.services.networkfirewall.model.ListFirewallPoliciesRequest)operation.default ListFirewallPoliciesIterablelistFirewallPoliciesPaginator(ListFirewallPoliciesRequest listFirewallPoliciesRequest) This is a variant oflistFirewallPolicies(software.amazon.awssdk.services.networkfirewall.model.ListFirewallPoliciesRequest)operation.default ListFirewallsResponselistFirewalls(Consumer<ListFirewallsRequest.Builder> listFirewallsRequest) Retrieves the metadata for the firewalls that you have defined.default ListFirewallsResponselistFirewalls(ListFirewallsRequest listFirewallsRequest) Retrieves the metadata for the firewalls that you have defined.default ListFirewallsIterablelistFirewallsPaginator(Consumer<ListFirewallsRequest.Builder> listFirewallsRequest) This is a variant oflistFirewalls(software.amazon.awssdk.services.networkfirewall.model.ListFirewallsRequest)operation.default ListFirewallsIterablelistFirewallsPaginator(ListFirewallsRequest listFirewallsRequest) This is a variant oflistFirewalls(software.amazon.awssdk.services.networkfirewall.model.ListFirewallsRequest)operation.default ListFlowOperationResultsResponselistFlowOperationResults(Consumer<ListFlowOperationResultsRequest.Builder> listFlowOperationResultsRequest) Returns the results of a specific flow operation.default ListFlowOperationResultsResponselistFlowOperationResults(ListFlowOperationResultsRequest listFlowOperationResultsRequest) Returns the results of a specific flow operation.default ListFlowOperationResultsIterablelistFlowOperationResultsPaginator(Consumer<ListFlowOperationResultsRequest.Builder> listFlowOperationResultsRequest) This is a variant oflistFlowOperationResults(software.amazon.awssdk.services.networkfirewall.model.ListFlowOperationResultsRequest)operation.default ListFlowOperationResultsIterablelistFlowOperationResultsPaginator(ListFlowOperationResultsRequest listFlowOperationResultsRequest) This is a variant oflistFlowOperationResults(software.amazon.awssdk.services.networkfirewall.model.ListFlowOperationResultsRequest)operation.default ListFlowOperationsResponselistFlowOperations(Consumer<ListFlowOperationsRequest.Builder> listFlowOperationsRequest) Returns a list of all flow operations ran in a specific firewall.default ListFlowOperationsResponselistFlowOperations(ListFlowOperationsRequest listFlowOperationsRequest) Returns a list of all flow operations ran in a specific firewall.default ListFlowOperationsIterablelistFlowOperationsPaginator(Consumer<ListFlowOperationsRequest.Builder> listFlowOperationsRequest) This is a variant oflistFlowOperations(software.amazon.awssdk.services.networkfirewall.model.ListFlowOperationsRequest)operation.default ListFlowOperationsIterablelistFlowOperationsPaginator(ListFlowOperationsRequest listFlowOperationsRequest) This is a variant oflistFlowOperations(software.amazon.awssdk.services.networkfirewall.model.ListFlowOperationsRequest)operation.default ListRuleGroupsResponselistRuleGroups(Consumer<ListRuleGroupsRequest.Builder> listRuleGroupsRequest) Retrieves the metadata for the rule groups that you have defined.default ListRuleGroupsResponselistRuleGroups(ListRuleGroupsRequest listRuleGroupsRequest) Retrieves the metadata for the rule groups that you have defined.default ListRuleGroupsIterablelistRuleGroupsPaginator(Consumer<ListRuleGroupsRequest.Builder> listRuleGroupsRequest) This is a variant oflistRuleGroups(software.amazon.awssdk.services.networkfirewall.model.ListRuleGroupsRequest)operation.default ListRuleGroupsIterablelistRuleGroupsPaginator(ListRuleGroupsRequest listRuleGroupsRequest) This is a variant oflistRuleGroups(software.amazon.awssdk.services.networkfirewall.model.ListRuleGroupsRequest)operation.default ListTagsForResourceResponselistTagsForResource(Consumer<ListTagsForResourceRequest.Builder> listTagsForResourceRequest) Retrieves the tags associated with the specified resource.default ListTagsForResourceResponselistTagsForResource(ListTagsForResourceRequest listTagsForResourceRequest) Retrieves the tags associated with the specified resource.default ListTagsForResourceIterablelistTagsForResourcePaginator(Consumer<ListTagsForResourceRequest.Builder> listTagsForResourceRequest) This is a variant oflistTagsForResource(software.amazon.awssdk.services.networkfirewall.model.ListTagsForResourceRequest)operation.default ListTagsForResourceIterablelistTagsForResourcePaginator(ListTagsForResourceRequest listTagsForResourceRequest) This is a variant oflistTagsForResource(software.amazon.awssdk.services.networkfirewall.model.ListTagsForResourceRequest)operation.listTLSInspectionConfigurations(Consumer<ListTlsInspectionConfigurationsRequest.Builder> listTlsInspectionConfigurationsRequest) Retrieves the metadata for the TLS inspection configurations that you have defined.listTLSInspectionConfigurations(ListTlsInspectionConfigurationsRequest listTlsInspectionConfigurationsRequest) Retrieves the metadata for the TLS inspection configurations that you have defined.listTLSInspectionConfigurationsPaginator(Consumer<ListTlsInspectionConfigurationsRequest.Builder> listTlsInspectionConfigurationsRequest) This is a variant oflistTLSInspectionConfigurations(software.amazon.awssdk.services.networkfirewall.model.ListTlsInspectionConfigurationsRequest)operation.listTLSInspectionConfigurationsPaginator(ListTlsInspectionConfigurationsRequest listTlsInspectionConfigurationsRequest) This is a variant oflistTLSInspectionConfigurations(software.amazon.awssdk.services.networkfirewall.model.ListTlsInspectionConfigurationsRequest)operation.listVpcEndpointAssociations(Consumer<ListVpcEndpointAssociationsRequest.Builder> listVpcEndpointAssociationsRequest) Retrieves the metadata for the VPC endpoint associations that you have defined.listVpcEndpointAssociations(ListVpcEndpointAssociationsRequest listVpcEndpointAssociationsRequest) Retrieves the metadata for the VPC endpoint associations that you have defined.listVpcEndpointAssociationsPaginator(Consumer<ListVpcEndpointAssociationsRequest.Builder> listVpcEndpointAssociationsRequest) This is a variant oflistVpcEndpointAssociations(software.amazon.awssdk.services.networkfirewall.model.ListVpcEndpointAssociationsRequest)operation.listVpcEndpointAssociationsPaginator(ListVpcEndpointAssociationsRequest listVpcEndpointAssociationsRequest) This is a variant oflistVpcEndpointAssociations(software.amazon.awssdk.services.networkfirewall.model.ListVpcEndpointAssociationsRequest)operation.default PutResourcePolicyResponseputResourcePolicy(Consumer<PutResourcePolicyRequest.Builder> putResourcePolicyRequest) Creates or updates an IAM policy for your rule group, firewall policy, or firewall.default PutResourcePolicyResponseputResourcePolicy(PutResourcePolicyRequest putResourcePolicyRequest) Creates or updates an IAM policy for your rule group, firewall policy, or firewall.rejectNetworkFirewallTransitGatewayAttachment(Consumer<RejectNetworkFirewallTransitGatewayAttachmentRequest.Builder> rejectNetworkFirewallTransitGatewayAttachmentRequest) Rejects a transit gateway attachment request for Network Firewall.rejectNetworkFirewallTransitGatewayAttachment(RejectNetworkFirewallTransitGatewayAttachmentRequest rejectNetworkFirewallTransitGatewayAttachmentRequest) Rejects a transit gateway attachment request for Network Firewall.The SDK service client configuration exposes client settings to the user, e.g., ClientOverrideConfigurationstatic ServiceMetadatadefault StartAnalysisReportResponsestartAnalysisReport(Consumer<StartAnalysisReportRequest.Builder> startAnalysisReportRequest) Generates a traffic analysis report for the timeframe and traffic type you specify.default StartAnalysisReportResponsestartAnalysisReport(StartAnalysisReportRequest startAnalysisReportRequest) Generates a traffic analysis report for the timeframe and traffic type you specify.default StartFlowCaptureResponsestartFlowCapture(Consumer<StartFlowCaptureRequest.Builder> startFlowCaptureRequest) Begins capturing the flows in a firewall, according to the filters you define.default StartFlowCaptureResponsestartFlowCapture(StartFlowCaptureRequest startFlowCaptureRequest) Begins capturing the flows in a firewall, according to the filters you define.default StartFlowFlushResponsestartFlowFlush(Consumer<StartFlowFlushRequest.Builder> startFlowFlushRequest) Begins the flushing of traffic from the firewall, according to the filters you define.default StartFlowFlushResponsestartFlowFlush(StartFlowFlushRequest startFlowFlushRequest) Begins the flushing of traffic from the firewall, according to the filters you define.default TagResourceResponsetagResource(Consumer<TagResourceRequest.Builder> tagResourceRequest) Adds the specified tags to the specified resource.default TagResourceResponsetagResource(TagResourceRequest tagResourceRequest) Adds the specified tags to the specified resource.default UntagResourceResponseuntagResource(Consumer<UntagResourceRequest.Builder> untagResourceRequest) Removes the tags with the specified keys from the specified resource.default UntagResourceResponseuntagResource(UntagResourceRequest untagResourceRequest) Removes the tags with the specified keys from the specified resource.updateAvailabilityZoneChangeProtection(Consumer<UpdateAvailabilityZoneChangeProtectionRequest.Builder> updateAvailabilityZoneChangeProtectionRequest) Modifies theAvailabilityZoneChangeProtectionsetting for a transit gateway-attached firewall.updateAvailabilityZoneChangeProtection(UpdateAvailabilityZoneChangeProtectionRequest updateAvailabilityZoneChangeProtectionRequest) Modifies theAvailabilityZoneChangeProtectionsetting for a transit gateway-attached firewall.updateFirewallAnalysisSettings(Consumer<UpdateFirewallAnalysisSettingsRequest.Builder> updateFirewallAnalysisSettingsRequest) Enables specific types of firewall analysis on a specific firewall you define.updateFirewallAnalysisSettings(UpdateFirewallAnalysisSettingsRequest updateFirewallAnalysisSettingsRequest) Enables specific types of firewall analysis on a specific firewall you define.updateFirewallDeleteProtection(Consumer<UpdateFirewallDeleteProtectionRequest.Builder> updateFirewallDeleteProtectionRequest) Modifies the flag,DeleteProtection, which indicates whether it is possible to delete the firewall.updateFirewallDeleteProtection(UpdateFirewallDeleteProtectionRequest updateFirewallDeleteProtectionRequest) Modifies the flag,DeleteProtection, which indicates whether it is possible to delete the firewall.updateFirewallDescription(Consumer<UpdateFirewallDescriptionRequest.Builder> updateFirewallDescriptionRequest) Modifies the description for the specified firewall.updateFirewallDescription(UpdateFirewallDescriptionRequest updateFirewallDescriptionRequest) Modifies the description for the specified firewall.updateFirewallEncryptionConfiguration(Consumer<UpdateFirewallEncryptionConfigurationRequest.Builder> updateFirewallEncryptionConfigurationRequest) A complex type that contains settings for encryption of your firewall resources.updateFirewallEncryptionConfiguration(UpdateFirewallEncryptionConfigurationRequest updateFirewallEncryptionConfigurationRequest) A complex type that contains settings for encryption of your firewall resources.default UpdateFirewallPolicyResponseupdateFirewallPolicy(Consumer<UpdateFirewallPolicyRequest.Builder> updateFirewallPolicyRequest) Updates the properties of the specified firewall policy.default UpdateFirewallPolicyResponseupdateFirewallPolicy(UpdateFirewallPolicyRequest updateFirewallPolicyRequest) Updates the properties of the specified firewall policy.updateFirewallPolicyChangeProtection(Consumer<UpdateFirewallPolicyChangeProtectionRequest.Builder> updateFirewallPolicyChangeProtectionRequest) Modifies the flag,ChangeProtection, which indicates whether it is possible to change the firewall.updateFirewallPolicyChangeProtection(UpdateFirewallPolicyChangeProtectionRequest updateFirewallPolicyChangeProtectionRequest) Modifies the flag,ChangeProtection, which indicates whether it is possible to change the firewall.updateLoggingConfiguration(Consumer<UpdateLoggingConfigurationRequest.Builder> updateLoggingConfigurationRequest) Sets the logging configuration for the specified firewall.updateLoggingConfiguration(UpdateLoggingConfigurationRequest updateLoggingConfigurationRequest) Sets the logging configuration for the specified firewall.default UpdateRuleGroupResponseupdateRuleGroup(Consumer<UpdateRuleGroupRequest.Builder> updateRuleGroupRequest) Updates the rule settings for the specified rule group.default UpdateRuleGroupResponseupdateRuleGroup(UpdateRuleGroupRequest updateRuleGroupRequest) Updates the rule settings for the specified rule group.updateSubnetChangeProtection(Consumer<UpdateSubnetChangeProtectionRequest.Builder> updateSubnetChangeProtectionRequest) updateSubnetChangeProtection(UpdateSubnetChangeProtectionRequest updateSubnetChangeProtectionRequest) updateTLSInspectionConfiguration(Consumer<UpdateTlsInspectionConfigurationRequest.Builder> updateTlsInspectionConfigurationRequest) Updates the TLS inspection configuration settings for the specified TLS inspection configuration.updateTLSInspectionConfiguration(UpdateTlsInspectionConfigurationRequest updateTlsInspectionConfigurationRequest) Updates the TLS inspection configuration settings for the specified TLS inspection configuration.Methods inherited from interface software.amazon.awssdk.utils.SdkAutoCloseable
closeMethods inherited from interface software.amazon.awssdk.core.SdkClient
serviceName
-
Field Details
-
SERVICE_NAME
- See Also:
-
SERVICE_METADATA_ID
Value for looking up the service's metadata from theServiceMetadataProvider.- See Also:
-
-
Method Details
-
acceptNetworkFirewallTransitGatewayAttachment
default AcceptNetworkFirewallTransitGatewayAttachmentResponse acceptNetworkFirewallTransitGatewayAttachment(AcceptNetworkFirewallTransitGatewayAttachmentRequest acceptNetworkFirewallTransitGatewayAttachmentRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Accepts a transit gateway attachment request for Network Firewall. When you accept the attachment request, Network Firewall creates the necessary routing components to enable traffic flow between the transit gateway and firewall endpoints.
You must accept a transit gateway attachment to complete the creation of a transit gateway-attached firewall, unless auto-accept is enabled on the transit gateway. After acceptance, use DescribeFirewall to verify the firewall status.
To reject an attachment instead of accepting it, use RejectNetworkFirewallTransitGatewayAttachment.
It can take several minutes for the attachment acceptance to complete and the firewall to become available.
- Parameters:
acceptNetworkFirewallTransitGatewayAttachmentRequest-- Returns:
- Result of the AcceptNetworkFirewallTransitGatewayAttachment operation returned by the service.
- See Also:
-
acceptNetworkFirewallTransitGatewayAttachment
default AcceptNetworkFirewallTransitGatewayAttachmentResponse acceptNetworkFirewallTransitGatewayAttachment(Consumer<AcceptNetworkFirewallTransitGatewayAttachmentRequest.Builder> acceptNetworkFirewallTransitGatewayAttachmentRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Accepts a transit gateway attachment request for Network Firewall. When you accept the attachment request, Network Firewall creates the necessary routing components to enable traffic flow between the transit gateway and firewall endpoints.
You must accept a transit gateway attachment to complete the creation of a transit gateway-attached firewall, unless auto-accept is enabled on the transit gateway. After acceptance, use DescribeFirewall to verify the firewall status.
To reject an attachment instead of accepting it, use RejectNetworkFirewallTransitGatewayAttachment.
It can take several minutes for the attachment acceptance to complete and the firewall to become available.
This is a convenience which creates an instance of the
AcceptNetworkFirewallTransitGatewayAttachmentRequest.Builderavoiding the need to create one manually viaAcceptNetworkFirewallTransitGatewayAttachmentRequest.builder()- Parameters:
acceptNetworkFirewallTransitGatewayAttachmentRequest- AConsumerthat will call methods onAcceptNetworkFirewallTransitGatewayAttachmentRequest.Builderto create a request.- Returns:
- Result of the AcceptNetworkFirewallTransitGatewayAttachment operation returned by the service.
- See Also:
-
associateAvailabilityZones
default AssociateAvailabilityZonesResponse associateAvailabilityZones(AssociateAvailabilityZonesRequest associateAvailabilityZonesRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, InvalidOperationException, InsufficientCapacityException, AwsServiceException, SdkClientException, NetworkFirewallException Associates the specified Availability Zones with a transit gateway-attached firewall. For each Availability Zone, Network Firewall creates a firewall endpoint to process traffic. You can specify one or more Availability Zones where you want to deploy the firewall.
After adding Availability Zones, you must update your transit gateway route tables to direct traffic through the new firewall endpoints. Use DescribeFirewall to monitor the status of the new endpoints.
- Parameters:
associateAvailabilityZonesRequest-- Returns:
- Result of the AssociateAvailabilityZones operation returned by the service.
- See Also:
-
associateAvailabilityZones
default AssociateAvailabilityZonesResponse associateAvailabilityZones(Consumer<AssociateAvailabilityZonesRequest.Builder> associateAvailabilityZonesRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, InvalidOperationException, InsufficientCapacityException, AwsServiceException, SdkClientException, NetworkFirewallException Associates the specified Availability Zones with a transit gateway-attached firewall. For each Availability Zone, Network Firewall creates a firewall endpoint to process traffic. You can specify one or more Availability Zones where you want to deploy the firewall.
After adding Availability Zones, you must update your transit gateway route tables to direct traffic through the new firewall endpoints. Use DescribeFirewall to monitor the status of the new endpoints.
This is a convenience which creates an instance of the
AssociateAvailabilityZonesRequest.Builderavoiding the need to create one manually viaAssociateAvailabilityZonesRequest.builder()- Parameters:
associateAvailabilityZonesRequest- AConsumerthat will call methods onAssociateAvailabilityZonesRequest.Builderto create a request.- Returns:
- Result of the AssociateAvailabilityZones operation returned by the service.
- See Also:
-
associateFirewallPolicy
default AssociateFirewallPolicyResponse associateFirewallPolicy(AssociateFirewallPolicyRequest associateFirewallPolicyRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, InvalidOperationException, AwsServiceException, SdkClientException, NetworkFirewallException Associates a FirewallPolicy to a Firewall.
A firewall policy defines how to monitor and manage your VPC network traffic, using a collection of inspection rule groups and other settings. Each firewall requires one firewall policy association, and you can use the same firewall policy for multiple firewalls.
- Parameters:
associateFirewallPolicyRequest-- Returns:
- Result of the AssociateFirewallPolicy operation returned by the service.
- See Also:
-
associateFirewallPolicy
default AssociateFirewallPolicyResponse associateFirewallPolicy(Consumer<AssociateFirewallPolicyRequest.Builder> associateFirewallPolicyRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, InvalidOperationException, AwsServiceException, SdkClientException, NetworkFirewallException Associates a FirewallPolicy to a Firewall.
A firewall policy defines how to monitor and manage your VPC network traffic, using a collection of inspection rule groups and other settings. Each firewall requires one firewall policy association, and you can use the same firewall policy for multiple firewalls.
This is a convenience which creates an instance of the
AssociateFirewallPolicyRequest.Builderavoiding the need to create one manually viaAssociateFirewallPolicyRequest.builder()- Parameters:
associateFirewallPolicyRequest- AConsumerthat will call methods onAssociateFirewallPolicyRequest.Builderto create a request.- Returns:
- Result of the AssociateFirewallPolicy operation returned by the service.
- See Also:
-
associateSubnets
default AssociateSubnetsResponse associateSubnets(AssociateSubnetsRequest associateSubnetsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, InvalidOperationException, InsufficientCapacityException, AwsServiceException, SdkClientException, NetworkFirewallException Associates the specified subnets in the Amazon VPC to the firewall. You can specify one subnet for each of the Availability Zones that the VPC spans.
This request creates an Network Firewall firewall endpoint in each of the subnets. To enable the firewall's protections, you must also modify the VPC's route tables for each subnet's Availability Zone, to redirect the traffic that's coming into and going out of the zone through the firewall endpoint.
- Parameters:
associateSubnetsRequest-- Returns:
- Result of the AssociateSubnets operation returned by the service.
- See Also:
-
associateSubnets
default AssociateSubnetsResponse associateSubnets(Consumer<AssociateSubnetsRequest.Builder> associateSubnetsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, InvalidOperationException, InsufficientCapacityException, AwsServiceException, SdkClientException, NetworkFirewallException Associates the specified subnets in the Amazon VPC to the firewall. You can specify one subnet for each of the Availability Zones that the VPC spans.
This request creates an Network Firewall firewall endpoint in each of the subnets. To enable the firewall's protections, you must also modify the VPC's route tables for each subnet's Availability Zone, to redirect the traffic that's coming into and going out of the zone through the firewall endpoint.
This is a convenience which creates an instance of the
AssociateSubnetsRequest.Builderavoiding the need to create one manually viaAssociateSubnetsRequest.builder()- Parameters:
associateSubnetsRequest- AConsumerthat will call methods onAssociateSubnetsRequest.Builderto create a request.- Returns:
- Result of the AssociateSubnets operation returned by the service.
- See Also:
-
createFirewall
default CreateFirewallResponse createFirewall(CreateFirewallRequest createFirewallRequest) throws InvalidRequestException, LimitExceededException, InternalServerErrorException, ThrottlingException, InsufficientCapacityException, InvalidOperationException, AwsServiceException, SdkClientException, NetworkFirewallException Creates an Network Firewall Firewall and accompanying FirewallStatus for a VPC.
The firewall defines the configuration settings for an Network Firewall firewall. The settings that you can define at creation include the firewall policy, the subnets in your VPC to use for the firewall endpoints, and any tags that are attached to the firewall Amazon Web Services resource.
After you create a firewall, you can provide additional settings, like the logging configuration.
To update the settings for a firewall, you use the operations that apply to the settings themselves, for example UpdateLoggingConfiguration, AssociateSubnets, and UpdateFirewallDeleteProtection.
To manage a firewall's tags, use the standard Amazon Web Services resource tagging operations, ListTagsForResource, TagResource, and UntagResource.
To retrieve information about firewalls, use ListFirewalls and DescribeFirewall.
To generate a report on the last 30 days of traffic monitored by a firewall, use StartAnalysisReport.
- Parameters:
createFirewallRequest-- Returns:
- Result of the CreateFirewall operation returned by the service.
- See Also:
-
createFirewall
default CreateFirewallResponse createFirewall(Consumer<CreateFirewallRequest.Builder> createFirewallRequest) throws InvalidRequestException, LimitExceededException, InternalServerErrorException, ThrottlingException, InsufficientCapacityException, InvalidOperationException, AwsServiceException, SdkClientException, NetworkFirewallException Creates an Network Firewall Firewall and accompanying FirewallStatus for a VPC.
The firewall defines the configuration settings for an Network Firewall firewall. The settings that you can define at creation include the firewall policy, the subnets in your VPC to use for the firewall endpoints, and any tags that are attached to the firewall Amazon Web Services resource.
After you create a firewall, you can provide additional settings, like the logging configuration.
To update the settings for a firewall, you use the operations that apply to the settings themselves, for example UpdateLoggingConfiguration, AssociateSubnets, and UpdateFirewallDeleteProtection.
To manage a firewall's tags, use the standard Amazon Web Services resource tagging operations, ListTagsForResource, TagResource, and UntagResource.
To retrieve information about firewalls, use ListFirewalls and DescribeFirewall.
To generate a report on the last 30 days of traffic monitored by a firewall, use StartAnalysisReport.
This is a convenience which creates an instance of the
CreateFirewallRequest.Builderavoiding the need to create one manually viaCreateFirewallRequest.builder()- Parameters:
createFirewallRequest- AConsumerthat will call methods onCreateFirewallRequest.Builderto create a request.- Returns:
- Result of the CreateFirewall operation returned by the service.
- See Also:
-
createFirewallPolicy
default CreateFirewallPolicyResponse createFirewallPolicy(CreateFirewallPolicyRequest createFirewallPolicyRequest) throws LimitExceededException, InvalidRequestException, ThrottlingException, InternalServerErrorException, InsufficientCapacityException, AwsServiceException, SdkClientException, NetworkFirewallException Creates the firewall policy for the firewall according to the specifications.
An Network Firewall firewall policy defines the behavior of a firewall, in a collection of stateless and stateful rule groups and other settings. You can use one firewall policy for multiple firewalls.
- Parameters:
createFirewallPolicyRequest-- Returns:
- Result of the CreateFirewallPolicy operation returned by the service.
- See Also:
-
createFirewallPolicy
default CreateFirewallPolicyResponse createFirewallPolicy(Consumer<CreateFirewallPolicyRequest.Builder> createFirewallPolicyRequest) throws LimitExceededException, InvalidRequestException, ThrottlingException, InternalServerErrorException, InsufficientCapacityException, AwsServiceException, SdkClientException, NetworkFirewallException Creates the firewall policy for the firewall according to the specifications.
An Network Firewall firewall policy defines the behavior of a firewall, in a collection of stateless and stateful rule groups and other settings. You can use one firewall policy for multiple firewalls.
This is a convenience which creates an instance of the
CreateFirewallPolicyRequest.Builderavoiding the need to create one manually viaCreateFirewallPolicyRequest.builder()- Parameters:
createFirewallPolicyRequest- AConsumerthat will call methods onCreateFirewallPolicyRequest.Builderto create a request.- Returns:
- Result of the CreateFirewallPolicy operation returned by the service.
- See Also:
-
createRuleGroup
default CreateRuleGroupResponse createRuleGroup(CreateRuleGroupRequest createRuleGroupRequest) throws LimitExceededException, InvalidRequestException, ThrottlingException, InternalServerErrorException, InsufficientCapacityException, AwsServiceException, SdkClientException, NetworkFirewallException Creates the specified stateless or stateful rule group, which includes the rules for network traffic inspection, a capacity setting, and tags.
You provide your rule group specification in your request using either
RuleGrouporRules.- Parameters:
createRuleGroupRequest-- Returns:
- Result of the CreateRuleGroup operation returned by the service.
- See Also:
-
createRuleGroup
default CreateRuleGroupResponse createRuleGroup(Consumer<CreateRuleGroupRequest.Builder> createRuleGroupRequest) throws LimitExceededException, InvalidRequestException, ThrottlingException, InternalServerErrorException, InsufficientCapacityException, AwsServiceException, SdkClientException, NetworkFirewallException Creates the specified stateless or stateful rule group, which includes the rules for network traffic inspection, a capacity setting, and tags.
You provide your rule group specification in your request using either
RuleGrouporRules.
This is a convenience which creates an instance of the
CreateRuleGroupRequest.Builderavoiding the need to create one manually viaCreateRuleGroupRequest.builder()- Parameters:
createRuleGroupRequest- AConsumerthat will call methods onCreateRuleGroupRequest.Builderto create a request.- Returns:
- Result of the CreateRuleGroup operation returned by the service.
- See Also:
-
createTLSInspectionConfiguration
default CreateTlsInspectionConfigurationResponse createTLSInspectionConfiguration(CreateTlsInspectionConfigurationRequest createTlsInspectionConfigurationRequest) throws InvalidRequestException, ThrottlingException, InternalServerErrorException, LimitExceededException, InsufficientCapacityException, AwsServiceException, SdkClientException, NetworkFirewallException Creates an Network Firewall TLS inspection configuration. Network Firewall uses TLS inspection configurations to decrypt your firewall's inbound and outbound SSL/TLS traffic. After decryption, Network Firewall inspects the traffic according to your firewall policy's stateful rules, and then re-encrypts it before sending it to its destination. You can enable inspection of your firewall's inbound traffic, outbound traffic, or both. To use TLS inspection with your firewall, you must first import or provision certificates using ACM, create a TLS inspection configuration, add that configuration to a new firewall policy, and then associate that policy with your firewall.
To update the settings for a TLS inspection configuration, use UpdateTLSInspectionConfiguration.
To manage a TLS inspection configuration's tags, use the standard Amazon Web Services resource tagging operations, ListTagsForResource, TagResource, and UntagResource.
To retrieve information about TLS inspection configurations, use ListTLSInspectionConfigurations and DescribeTLSInspectionConfiguration.
For more information about TLS inspection configurations, see Inspecting SSL/TLS traffic with TLS inspection configurations in the Network Firewall Developer Guide.
- Parameters:
createTlsInspectionConfigurationRequest-- Returns:
- Result of the CreateTLSInspectionConfiguration operation returned by the service.
- See Also:
-
createTLSInspectionConfiguration
default CreateTlsInspectionConfigurationResponse createTLSInspectionConfiguration(Consumer<CreateTlsInspectionConfigurationRequest.Builder> createTlsInspectionConfigurationRequest) throws InvalidRequestException, ThrottlingException, InternalServerErrorException, LimitExceededException, InsufficientCapacityException, AwsServiceException, SdkClientException, NetworkFirewallException Creates an Network Firewall TLS inspection configuration. Network Firewall uses TLS inspection configurations to decrypt your firewall's inbound and outbound SSL/TLS traffic. After decryption, Network Firewall inspects the traffic according to your firewall policy's stateful rules, and then re-encrypts it before sending it to its destination. You can enable inspection of your firewall's inbound traffic, outbound traffic, or both. To use TLS inspection with your firewall, you must first import or provision certificates using ACM, create a TLS inspection configuration, add that configuration to a new firewall policy, and then associate that policy with your firewall.
To update the settings for a TLS inspection configuration, use UpdateTLSInspectionConfiguration.
To manage a TLS inspection configuration's tags, use the standard Amazon Web Services resource tagging operations, ListTagsForResource, TagResource, and UntagResource.
To retrieve information about TLS inspection configurations, use ListTLSInspectionConfigurations and DescribeTLSInspectionConfiguration.
For more information about TLS inspection configurations, see Inspecting SSL/TLS traffic with TLS inspection configurations in the Network Firewall Developer Guide.
This is a convenience which creates an instance of the
CreateTlsInspectionConfigurationRequest.Builderavoiding the need to create one manually viaCreateTlsInspectionConfigurationRequest.builder()- Parameters:
createTlsInspectionConfigurationRequest- AConsumerthat will call methods onCreateTlsInspectionConfigurationRequest.Builderto create a request.- Returns:
- Result of the CreateTLSInspectionConfiguration operation returned by the service.
- See Also:
-
createVpcEndpointAssociation
default CreateVpcEndpointAssociationResponse createVpcEndpointAssociation(CreateVpcEndpointAssociationRequest createVpcEndpointAssociationRequest) throws LimitExceededException, InvalidRequestException, ThrottlingException, InternalServerErrorException, InsufficientCapacityException, ResourceNotFoundException, InvalidOperationException, AwsServiceException, SdkClientException, NetworkFirewallException Creates a firewall endpoint for an Network Firewall firewall. This type of firewall endpoint is independent of the firewall endpoints that you specify in the
Firewallitself, and you define it in addition to those endpoints after the firewall has been created. You can define a VPC endpoint association using a different VPC than the one you used in the firewall specifications.- Parameters:
createVpcEndpointAssociationRequest-- Returns:
- Result of the CreateVpcEndpointAssociation operation returned by the service.
- See Also:
-
createVpcEndpointAssociation
default CreateVpcEndpointAssociationResponse createVpcEndpointAssociation(Consumer<CreateVpcEndpointAssociationRequest.Builder> createVpcEndpointAssociationRequest) throws LimitExceededException, InvalidRequestException, ThrottlingException, InternalServerErrorException, InsufficientCapacityException, ResourceNotFoundException, InvalidOperationException, AwsServiceException, SdkClientException, NetworkFirewallException Creates a firewall endpoint for an Network Firewall firewall. This type of firewall endpoint is independent of the firewall endpoints that you specify in the
Firewallitself, and you define it in addition to those endpoints after the firewall has been created. You can define a VPC endpoint association using a different VPC than the one you used in the firewall specifications.
This is a convenience which creates an instance of the
CreateVpcEndpointAssociationRequest.Builderavoiding the need to create one manually viaCreateVpcEndpointAssociationRequest.builder()- Parameters:
createVpcEndpointAssociationRequest- AConsumerthat will call methods onCreateVpcEndpointAssociationRequest.Builderto create a request.- Returns:
- Result of the CreateVpcEndpointAssociation operation returned by the service.
- See Also:
-
deleteFirewall
default DeleteFirewallResponse deleteFirewall(DeleteFirewallRequest deleteFirewallRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, UnsupportedOperationException, InvalidOperationException, AwsServiceException, SdkClientException, NetworkFirewallException Deletes the specified Firewall and its FirewallStatus. This operation requires the firewall's
DeleteProtectionflag to beFALSE. You can't revert this operation.You can check whether a firewall is in use by reviewing the route tables for the Availability Zones where you have firewall subnet mappings. Retrieve the subnet mappings by calling DescribeFirewall. You define and update the route tables through Amazon VPC. As needed, update the route tables for the zones to remove the firewall endpoints. When the route tables no longer use the firewall endpoints, you can remove the firewall safely.
To delete a firewall, remove the delete protection if you need to using UpdateFirewallDeleteProtection, then delete the firewall by calling DeleteFirewall.
- Parameters:
deleteFirewallRequest-- Returns:
- Result of the DeleteFirewall operation returned by the service.
- See Also:
-
deleteFirewall
default DeleteFirewallResponse deleteFirewall(Consumer<DeleteFirewallRequest.Builder> deleteFirewallRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, UnsupportedOperationException, InvalidOperationException, AwsServiceException, SdkClientException, NetworkFirewallException Deletes the specified Firewall and its FirewallStatus. This operation requires the firewall's
DeleteProtectionflag to beFALSE. You can't revert this operation.You can check whether a firewall is in use by reviewing the route tables for the Availability Zones where you have firewall subnet mappings. Retrieve the subnet mappings by calling DescribeFirewall. You define and update the route tables through Amazon VPC. As needed, update the route tables for the zones to remove the firewall endpoints. When the route tables no longer use the firewall endpoints, you can remove the firewall safely.
To delete a firewall, remove the delete protection if you need to using UpdateFirewallDeleteProtection, then delete the firewall by calling DeleteFirewall.
This is a convenience which creates an instance of the
DeleteFirewallRequest.Builderavoiding the need to create one manually viaDeleteFirewallRequest.builder()- Parameters:
deleteFirewallRequest- AConsumerthat will call methods onDeleteFirewallRequest.Builderto create a request.- Returns:
- Result of the DeleteFirewall operation returned by the service.
- See Also:
-
deleteFirewallPolicy
default DeleteFirewallPolicyResponse deleteFirewallPolicy(DeleteFirewallPolicyRequest deleteFirewallPolicyRequest) throws InvalidRequestException, ResourceNotFoundException, ThrottlingException, InternalServerErrorException, UnsupportedOperationException, InvalidOperationException, AwsServiceException, SdkClientException, NetworkFirewallException Deletes the specified FirewallPolicy.
- Parameters:
deleteFirewallPolicyRequest-- Returns:
- Result of the DeleteFirewallPolicy operation returned by the service.
- See Also:
-
deleteFirewallPolicy
default DeleteFirewallPolicyResponse deleteFirewallPolicy(Consumer<DeleteFirewallPolicyRequest.Builder> deleteFirewallPolicyRequest) throws InvalidRequestException, ResourceNotFoundException, ThrottlingException, InternalServerErrorException, UnsupportedOperationException, InvalidOperationException, AwsServiceException, SdkClientException, NetworkFirewallException Deletes the specified FirewallPolicy.
This is a convenience which creates an instance of the
DeleteFirewallPolicyRequest.Builderavoiding the need to create one manually viaDeleteFirewallPolicyRequest.builder()- Parameters:
deleteFirewallPolicyRequest- AConsumerthat will call methods onDeleteFirewallPolicyRequest.Builderto create a request.- Returns:
- Result of the DeleteFirewallPolicy operation returned by the service.
- See Also:
-
deleteNetworkFirewallTransitGatewayAttachment
default DeleteNetworkFirewallTransitGatewayAttachmentResponse deleteNetworkFirewallTransitGatewayAttachment(DeleteNetworkFirewallTransitGatewayAttachmentRequest deleteNetworkFirewallTransitGatewayAttachmentRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Deletes a transit gateway attachment from a Network Firewall. Either the firewall owner or the transit gateway owner can delete the attachment.
After you delete a transit gateway attachment, traffic will no longer flow through the firewall endpoints.
After you initiate the delete operation, use DescribeFirewall to monitor the deletion status.
- Parameters:
deleteNetworkFirewallTransitGatewayAttachmentRequest-- Returns:
- Result of the DeleteNetworkFirewallTransitGatewayAttachment operation returned by the service.
- See Also:
-
deleteNetworkFirewallTransitGatewayAttachment
default DeleteNetworkFirewallTransitGatewayAttachmentResponse deleteNetworkFirewallTransitGatewayAttachment(Consumer<DeleteNetworkFirewallTransitGatewayAttachmentRequest.Builder> deleteNetworkFirewallTransitGatewayAttachmentRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Deletes a transit gateway attachment from a Network Firewall. Either the firewall owner or the transit gateway owner can delete the attachment.
After you delete a transit gateway attachment, traffic will no longer flow through the firewall endpoints.
After you initiate the delete operation, use DescribeFirewall to monitor the deletion status.
This is a convenience which creates an instance of the
DeleteNetworkFirewallTransitGatewayAttachmentRequest.Builderavoiding the need to create one manually viaDeleteNetworkFirewallTransitGatewayAttachmentRequest.builder()- Parameters:
deleteNetworkFirewallTransitGatewayAttachmentRequest- AConsumerthat will call methods onDeleteNetworkFirewallTransitGatewayAttachmentRequest.Builderto create a request.- Returns:
- Result of the DeleteNetworkFirewallTransitGatewayAttachment operation returned by the service.
- See Also:
-
deleteResourcePolicy
default DeleteResourcePolicyResponse deleteResourcePolicy(DeleteResourcePolicyRequest deleteResourcePolicyRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidResourcePolicyException, AwsServiceException, SdkClientException, NetworkFirewallException Deletes a resource policy that you created in a PutResourcePolicy request.
- Parameters:
deleteResourcePolicyRequest-- Returns:
- Result of the DeleteResourcePolicy operation returned by the service.
- See Also:
-
deleteResourcePolicy
default DeleteResourcePolicyResponse deleteResourcePolicy(Consumer<DeleteResourcePolicyRequest.Builder> deleteResourcePolicyRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidResourcePolicyException, AwsServiceException, SdkClientException, NetworkFirewallException Deletes a resource policy that you created in a PutResourcePolicy request.
This is a convenience which creates an instance of the
DeleteResourcePolicyRequest.Builderavoiding the need to create one manually viaDeleteResourcePolicyRequest.builder()- Parameters:
deleteResourcePolicyRequest- AConsumerthat will call methods onDeleteResourcePolicyRequest.Builderto create a request.- Returns:
- Result of the DeleteResourcePolicy operation returned by the service.
- See Also:
-
deleteRuleGroup
default DeleteRuleGroupResponse deleteRuleGroup(DeleteRuleGroupRequest deleteRuleGroupRequest) throws InvalidRequestException, ResourceNotFoundException, ThrottlingException, InternalServerErrorException, UnsupportedOperationException, InvalidOperationException, AwsServiceException, SdkClientException, NetworkFirewallException Deletes the specified RuleGroup.
- Parameters:
deleteRuleGroupRequest-- Returns:
- Result of the DeleteRuleGroup operation returned by the service.
- See Also:
-
deleteRuleGroup
default DeleteRuleGroupResponse deleteRuleGroup(Consumer<DeleteRuleGroupRequest.Builder> deleteRuleGroupRequest) throws InvalidRequestException, ResourceNotFoundException, ThrottlingException, InternalServerErrorException, UnsupportedOperationException, InvalidOperationException, AwsServiceException, SdkClientException, NetworkFirewallException Deletes the specified RuleGroup.
This is a convenience which creates an instance of the
DeleteRuleGroupRequest.Builderavoiding the need to create one manually viaDeleteRuleGroupRequest.builder()- Parameters:
deleteRuleGroupRequest- AConsumerthat will call methods onDeleteRuleGroupRequest.Builderto create a request.- Returns:
- Result of the DeleteRuleGroup operation returned by the service.
- See Also:
-
deleteTLSInspectionConfiguration
default DeleteTlsInspectionConfigurationResponse deleteTLSInspectionConfiguration(DeleteTlsInspectionConfigurationRequest deleteTlsInspectionConfigurationRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidOperationException, AwsServiceException, SdkClientException, NetworkFirewallException Deletes the specified TLSInspectionConfiguration.
- Parameters:
deleteTlsInspectionConfigurationRequest-- Returns:
- Result of the DeleteTLSInspectionConfiguration operation returned by the service.
- See Also:
-
deleteTLSInspectionConfiguration
default DeleteTlsInspectionConfigurationResponse deleteTLSInspectionConfiguration(Consumer<DeleteTlsInspectionConfigurationRequest.Builder> deleteTlsInspectionConfigurationRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidOperationException, AwsServiceException, SdkClientException, NetworkFirewallException Deletes the specified TLSInspectionConfiguration.
This is a convenience which creates an instance of the
DeleteTlsInspectionConfigurationRequest.Builderavoiding the need to create one manually viaDeleteTlsInspectionConfigurationRequest.builder()- Parameters:
deleteTlsInspectionConfigurationRequest- AConsumerthat will call methods onDeleteTlsInspectionConfigurationRequest.Builderto create a request.- Returns:
- Result of the DeleteTLSInspectionConfiguration operation returned by the service.
- See Also:
-
deleteVpcEndpointAssociation
default DeleteVpcEndpointAssociationResponse deleteVpcEndpointAssociation(DeleteVpcEndpointAssociationRequest deleteVpcEndpointAssociationRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidOperationException, AwsServiceException, SdkClientException, NetworkFirewallException Deletes the specified VpcEndpointAssociation.
You can check whether an endpoint association is in use by reviewing the route tables for the Availability Zones where you have the endpoint subnet mapping. You can retrieve the subnet mapping by calling DescribeVpcEndpointAssociation. You define and update the route tables through Amazon VPC. As needed, update the route tables for the Availability Zone to remove the firewall endpoint for the association. When the route tables no longer use the firewall endpoint, you can remove the endpoint association safely.
- Parameters:
deleteVpcEndpointAssociationRequest-- Returns:
- Result of the DeleteVpcEndpointAssociation operation returned by the service.
- See Also:
-
deleteVpcEndpointAssociation
default DeleteVpcEndpointAssociationResponse deleteVpcEndpointAssociation(Consumer<DeleteVpcEndpointAssociationRequest.Builder> deleteVpcEndpointAssociationRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidOperationException, AwsServiceException, SdkClientException, NetworkFirewallException Deletes the specified VpcEndpointAssociation.
You can check whether an endpoint association is in use by reviewing the route tables for the Availability Zones where you have the endpoint subnet mapping. You can retrieve the subnet mapping by calling DescribeVpcEndpointAssociation. You define and update the route tables through Amazon VPC. As needed, update the route tables for the Availability Zone to remove the firewall endpoint for the association. When the route tables no longer use the firewall endpoint, you can remove the endpoint association safely.
This is a convenience which creates an instance of the
DeleteVpcEndpointAssociationRequest.Builderavoiding the need to create one manually viaDeleteVpcEndpointAssociationRequest.builder()- Parameters:
deleteVpcEndpointAssociationRequest- AConsumerthat will call methods onDeleteVpcEndpointAssociationRequest.Builderto create a request.- Returns:
- Result of the DeleteVpcEndpointAssociation operation returned by the service.
- See Also:
-
describeFirewall
default DescribeFirewallResponse describeFirewall(DescribeFirewallRequest describeFirewallRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Returns the data objects for the specified firewall.
- Parameters:
describeFirewallRequest-- Returns:
- Result of the DescribeFirewall operation returned by the service.
- See Also:
-
describeFirewall
default DescribeFirewallResponse describeFirewall(Consumer<DescribeFirewallRequest.Builder> describeFirewallRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Returns the data objects for the specified firewall.
This is a convenience which creates an instance of the
DescribeFirewallRequest.Builderavoiding the need to create one manually viaDescribeFirewallRequest.builder()- Parameters:
describeFirewallRequest- AConsumerthat will call methods onDescribeFirewallRequest.Builderto create a request.- Returns:
- Result of the DescribeFirewall operation returned by the service.
- See Also:
-
describeFirewallMetadata
default DescribeFirewallMetadataResponse describeFirewallMetadata(DescribeFirewallMetadataRequest describeFirewallMetadataRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Returns the high-level information about a firewall, including the Availability Zones where the Firewall is currently in use.
- Parameters:
describeFirewallMetadataRequest-- Returns:
- Result of the DescribeFirewallMetadata operation returned by the service.
- See Also:
-
describeFirewallMetadata
default DescribeFirewallMetadataResponse describeFirewallMetadata(Consumer<DescribeFirewallMetadataRequest.Builder> describeFirewallMetadataRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Returns the high-level information about a firewall, including the Availability Zones where the Firewall is currently in use.
This is a convenience which creates an instance of the
DescribeFirewallMetadataRequest.Builderavoiding the need to create one manually viaDescribeFirewallMetadataRequest.builder()- Parameters:
describeFirewallMetadataRequest- AConsumerthat will call methods onDescribeFirewallMetadataRequest.Builderto create a request.- Returns:
- Result of the DescribeFirewallMetadata operation returned by the service.
- See Also:
-
describeFirewallPolicy
default DescribeFirewallPolicyResponse describeFirewallPolicy(DescribeFirewallPolicyRequest describeFirewallPolicyRequest) throws InvalidRequestException, ResourceNotFoundException, ThrottlingException, InternalServerErrorException, AwsServiceException, SdkClientException, NetworkFirewallException Returns the data objects for the specified firewall policy.
- Parameters:
describeFirewallPolicyRequest-- Returns:
- Result of the DescribeFirewallPolicy operation returned by the service.
- See Also:
-
describeFirewallPolicy
default DescribeFirewallPolicyResponse describeFirewallPolicy(Consumer<DescribeFirewallPolicyRequest.Builder> describeFirewallPolicyRequest) throws InvalidRequestException, ResourceNotFoundException, ThrottlingException, InternalServerErrorException, AwsServiceException, SdkClientException, NetworkFirewallException Returns the data objects for the specified firewall policy.
This is a convenience which creates an instance of the
DescribeFirewallPolicyRequest.Builderavoiding the need to create one manually viaDescribeFirewallPolicyRequest.builder()- Parameters:
describeFirewallPolicyRequest- AConsumerthat will call methods onDescribeFirewallPolicyRequest.Builderto create a request.- Returns:
- Result of the DescribeFirewallPolicy operation returned by the service.
- See Also:
-
describeFlowOperation
default DescribeFlowOperationResponse describeFlowOperation(DescribeFlowOperationRequest describeFlowOperationRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Returns key information about a specific flow operation.
- Parameters:
describeFlowOperationRequest-- Returns:
- Result of the DescribeFlowOperation operation returned by the service.
- See Also:
-
describeFlowOperation
default DescribeFlowOperationResponse describeFlowOperation(Consumer<DescribeFlowOperationRequest.Builder> describeFlowOperationRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Returns key information about a specific flow operation.
This is a convenience which creates an instance of the
DescribeFlowOperationRequest.Builderavoiding the need to create one manually viaDescribeFlowOperationRequest.builder()- Parameters:
describeFlowOperationRequest- AConsumerthat will call methods onDescribeFlowOperationRequest.Builderto create a request.- Returns:
- Result of the DescribeFlowOperation operation returned by the service.
- See Also:
-
describeLoggingConfiguration
default DescribeLoggingConfigurationResponse describeLoggingConfiguration(DescribeLoggingConfigurationRequest describeLoggingConfigurationRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Returns the logging configuration for the specified firewall.
- Parameters:
describeLoggingConfigurationRequest-- Returns:
- Result of the DescribeLoggingConfiguration operation returned by the service.
- See Also:
-
describeLoggingConfiguration
default DescribeLoggingConfigurationResponse describeLoggingConfiguration(Consumer<DescribeLoggingConfigurationRequest.Builder> describeLoggingConfigurationRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Returns the logging configuration for the specified firewall.
This is a convenience which creates an instance of the
DescribeLoggingConfigurationRequest.Builderavoiding the need to create one manually viaDescribeLoggingConfigurationRequest.builder()- Parameters:
describeLoggingConfigurationRequest- AConsumerthat will call methods onDescribeLoggingConfigurationRequest.Builderto create a request.- Returns:
- Result of the DescribeLoggingConfiguration operation returned by the service.
- See Also:
-
describeResourcePolicy
default DescribeResourcePolicyResponse describeResourcePolicy(DescribeResourcePolicyRequest describeResourcePolicyRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Retrieves a resource policy that you created in a PutResourcePolicy request.
- Parameters:
describeResourcePolicyRequest-- Returns:
- Result of the DescribeResourcePolicy operation returned by the service.
- See Also:
-
describeResourcePolicy
default DescribeResourcePolicyResponse describeResourcePolicy(Consumer<DescribeResourcePolicyRequest.Builder> describeResourcePolicyRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Retrieves a resource policy that you created in a PutResourcePolicy request.
This is a convenience which creates an instance of the
DescribeResourcePolicyRequest.Builderavoiding the need to create one manually viaDescribeResourcePolicyRequest.builder()- Parameters:
describeResourcePolicyRequest- AConsumerthat will call methods onDescribeResourcePolicyRequest.Builderto create a request.- Returns:
- Result of the DescribeResourcePolicy operation returned by the service.
- See Also:
-
describeRuleGroup
default DescribeRuleGroupResponse describeRuleGroup(DescribeRuleGroupRequest describeRuleGroupRequest) throws InvalidRequestException, ResourceNotFoundException, ThrottlingException, InternalServerErrorException, AwsServiceException, SdkClientException, NetworkFirewallException Returns the data objects for the specified rule group.
- Parameters:
describeRuleGroupRequest-- Returns:
- Result of the DescribeRuleGroup operation returned by the service.
- See Also:
-
describeRuleGroup
default DescribeRuleGroupResponse describeRuleGroup(Consumer<DescribeRuleGroupRequest.Builder> describeRuleGroupRequest) throws InvalidRequestException, ResourceNotFoundException, ThrottlingException, InternalServerErrorException, AwsServiceException, SdkClientException, NetworkFirewallException Returns the data objects for the specified rule group.
This is a convenience which creates an instance of the
DescribeRuleGroupRequest.Builderavoiding the need to create one manually viaDescribeRuleGroupRequest.builder()- Parameters:
describeRuleGroupRequest- AConsumerthat will call methods onDescribeRuleGroupRequest.Builderto create a request.- Returns:
- Result of the DescribeRuleGroup operation returned by the service.
- See Also:
-
describeRuleGroupMetadata
default DescribeRuleGroupMetadataResponse describeRuleGroupMetadata(DescribeRuleGroupMetadataRequest describeRuleGroupMetadataRequest) throws InvalidRequestException, ResourceNotFoundException, ThrottlingException, InternalServerErrorException, AwsServiceException, SdkClientException, NetworkFirewallException High-level information about a rule group, returned by operations like create and describe. You can use the information provided in the metadata to retrieve and manage a rule group. You can retrieve all objects for a rule group by calling DescribeRuleGroup.
- Parameters:
describeRuleGroupMetadataRequest-- Returns:
- Result of the DescribeRuleGroupMetadata operation returned by the service.
- See Also:
-
describeRuleGroupMetadata
default DescribeRuleGroupMetadataResponse describeRuleGroupMetadata(Consumer<DescribeRuleGroupMetadataRequest.Builder> describeRuleGroupMetadataRequest) throws InvalidRequestException, ResourceNotFoundException, ThrottlingException, InternalServerErrorException, AwsServiceException, SdkClientException, NetworkFirewallException High-level information about a rule group, returned by operations like create and describe. You can use the information provided in the metadata to retrieve and manage a rule group. You can retrieve all objects for a rule group by calling DescribeRuleGroup.
This is a convenience which creates an instance of the
DescribeRuleGroupMetadataRequest.Builderavoiding the need to create one manually viaDescribeRuleGroupMetadataRequest.builder()- Parameters:
describeRuleGroupMetadataRequest- AConsumerthat will call methods onDescribeRuleGroupMetadataRequest.Builderto create a request.- Returns:
- Result of the DescribeRuleGroupMetadata operation returned by the service.
- See Also:
-
describeRuleGroupSummary
default DescribeRuleGroupSummaryResponse describeRuleGroupSummary(DescribeRuleGroupSummaryRequest describeRuleGroupSummaryRequest) throws InvalidRequestException, ResourceNotFoundException, ThrottlingException, InternalServerErrorException, AwsServiceException, SdkClientException, NetworkFirewallException Returns detailed information for a stateful rule group.
For active threat defense Amazon Web Services managed rule groups, this operation provides insight into the protections enabled by the rule group, based on Suricata rule metadata fields. Summaries are available for rule groups you manage and for active threat defense Amazon Web Services managed rule groups.
To modify how threat information appears in summaries, use the
SummaryConfigurationparameter in UpdateRuleGroup.- Parameters:
describeRuleGroupSummaryRequest-- Returns:
- Result of the DescribeRuleGroupSummary operation returned by the service.
- See Also:
-
describeRuleGroupSummary
default DescribeRuleGroupSummaryResponse describeRuleGroupSummary(Consumer<DescribeRuleGroupSummaryRequest.Builder> describeRuleGroupSummaryRequest) throws InvalidRequestException, ResourceNotFoundException, ThrottlingException, InternalServerErrorException, AwsServiceException, SdkClientException, NetworkFirewallException Returns detailed information for a stateful rule group.
For active threat defense Amazon Web Services managed rule groups, this operation provides insight into the protections enabled by the rule group, based on Suricata rule metadata fields. Summaries are available for rule groups you manage and for active threat defense Amazon Web Services managed rule groups.
To modify how threat information appears in summaries, use the
SummaryConfigurationparameter in UpdateRuleGroup.
This is a convenience which creates an instance of the
DescribeRuleGroupSummaryRequest.Builderavoiding the need to create one manually viaDescribeRuleGroupSummaryRequest.builder()- Parameters:
describeRuleGroupSummaryRequest- AConsumerthat will call methods onDescribeRuleGroupSummaryRequest.Builderto create a request.- Returns:
- Result of the DescribeRuleGroupSummary operation returned by the service.
- See Also:
-
describeTLSInspectionConfiguration
default DescribeTlsInspectionConfigurationResponse describeTLSInspectionConfiguration(DescribeTlsInspectionConfigurationRequest describeTlsInspectionConfigurationRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Returns the data objects for the specified TLS inspection configuration.
- Parameters:
describeTlsInspectionConfigurationRequest-- Returns:
- Result of the DescribeTLSInspectionConfiguration operation returned by the service.
- See Also:
-
describeTLSInspectionConfiguration
default DescribeTlsInspectionConfigurationResponse describeTLSInspectionConfiguration(Consumer<DescribeTlsInspectionConfigurationRequest.Builder> describeTlsInspectionConfigurationRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Returns the data objects for the specified TLS inspection configuration.
This is a convenience which creates an instance of the
DescribeTlsInspectionConfigurationRequest.Builderavoiding the need to create one manually viaDescribeTlsInspectionConfigurationRequest.builder()- Parameters:
describeTlsInspectionConfigurationRequest- AConsumerthat will call methods onDescribeTlsInspectionConfigurationRequest.Builderto create a request.- Returns:
- Result of the DescribeTLSInspectionConfiguration operation returned by the service.
- See Also:
-
describeVpcEndpointAssociation
default DescribeVpcEndpointAssociationResponse describeVpcEndpointAssociation(DescribeVpcEndpointAssociationRequest describeVpcEndpointAssociationRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Returns the data object for the specified VPC endpoint association.
- Parameters:
describeVpcEndpointAssociationRequest-- Returns:
- Result of the DescribeVpcEndpointAssociation operation returned by the service.
- See Also:
-
describeVpcEndpointAssociation
default DescribeVpcEndpointAssociationResponse describeVpcEndpointAssociation(Consumer<DescribeVpcEndpointAssociationRequest.Builder> describeVpcEndpointAssociationRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Returns the data object for the specified VPC endpoint association.
This is a convenience which creates an instance of the
DescribeVpcEndpointAssociationRequest.Builderavoiding the need to create one manually viaDescribeVpcEndpointAssociationRequest.builder()- Parameters:
describeVpcEndpointAssociationRequest- AConsumerthat will call methods onDescribeVpcEndpointAssociationRequest.Builderto create a request.- Returns:
- Result of the DescribeVpcEndpointAssociation operation returned by the service.
- See Also:
-
disassociateAvailabilityZones
default DisassociateAvailabilityZonesResponse disassociateAvailabilityZones(DisassociateAvailabilityZonesRequest disassociateAvailabilityZonesRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, InvalidOperationException, AwsServiceException, SdkClientException, NetworkFirewallException Removes the specified Availability Zone associations from a transit gateway-attached firewall. This removes the firewall endpoints from these Availability Zones and stops traffic filtering in those zones. Before removing an Availability Zone, ensure you've updated your transit gateway route tables to redirect traffic appropriately.
If
AvailabilityZoneChangeProtectionis enabled, you must first disable it using UpdateAvailabilityZoneChangeProtection.To verify the status of your Availability Zone changes, use DescribeFirewall.
- Parameters:
disassociateAvailabilityZonesRequest-- Returns:
- Result of the DisassociateAvailabilityZones operation returned by the service.
- See Also:
-
disassociateAvailabilityZones
default DisassociateAvailabilityZonesResponse disassociateAvailabilityZones(Consumer<DisassociateAvailabilityZonesRequest.Builder> disassociateAvailabilityZonesRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, InvalidOperationException, AwsServiceException, SdkClientException, NetworkFirewallException Removes the specified Availability Zone associations from a transit gateway-attached firewall. This removes the firewall endpoints from these Availability Zones and stops traffic filtering in those zones. Before removing an Availability Zone, ensure you've updated your transit gateway route tables to redirect traffic appropriately.
If
AvailabilityZoneChangeProtectionis enabled, you must first disable it using UpdateAvailabilityZoneChangeProtection.To verify the status of your Availability Zone changes, use DescribeFirewall.
This is a convenience which creates an instance of the
DisassociateAvailabilityZonesRequest.Builderavoiding the need to create one manually viaDisassociateAvailabilityZonesRequest.builder()- Parameters:
disassociateAvailabilityZonesRequest- AConsumerthat will call methods onDisassociateAvailabilityZonesRequest.Builderto create a request.- Returns:
- Result of the DisassociateAvailabilityZones operation returned by the service.
- See Also:
-
disassociateSubnets
default DisassociateSubnetsResponse disassociateSubnets(DisassociateSubnetsRequest disassociateSubnetsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, InvalidOperationException, AwsServiceException, SdkClientException, NetworkFirewallException Removes the specified subnet associations from the firewall. This removes the firewall endpoints from the subnets and removes any network filtering protections that the endpoints were providing.
- Parameters:
disassociateSubnetsRequest-- Returns:
- Result of the DisassociateSubnets operation returned by the service.
- See Also:
-
disassociateSubnets
default DisassociateSubnetsResponse disassociateSubnets(Consumer<DisassociateSubnetsRequest.Builder> disassociateSubnetsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, InvalidOperationException, AwsServiceException, SdkClientException, NetworkFirewallException Removes the specified subnet associations from the firewall. This removes the firewall endpoints from the subnets and removes any network filtering protections that the endpoints were providing.
This is a convenience which creates an instance of the
DisassociateSubnetsRequest.Builderavoiding the need to create one manually viaDisassociateSubnetsRequest.builder()- Parameters:
disassociateSubnetsRequest- AConsumerthat will call methods onDisassociateSubnetsRequest.Builderto create a request.- Returns:
- Result of the DisassociateSubnets operation returned by the service.
- See Also:
-
getAnalysisReportResults
default GetAnalysisReportResultsResponse getAnalysisReportResults(GetAnalysisReportResultsRequest getAnalysisReportResultsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException The results of a
COMPLETEDanalysis report generated with StartAnalysisReport.For more information, see AnalysisTypeReportResult.
- Parameters:
getAnalysisReportResultsRequest-- Returns:
- Result of the GetAnalysisReportResults operation returned by the service.
- See Also:
-
getAnalysisReportResults
default GetAnalysisReportResultsResponse getAnalysisReportResults(Consumer<GetAnalysisReportResultsRequest.Builder> getAnalysisReportResultsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException The results of a
COMPLETEDanalysis report generated with StartAnalysisReport.For more information, see AnalysisTypeReportResult.
This is a convenience which creates an instance of the
GetAnalysisReportResultsRequest.Builderavoiding the need to create one manually viaGetAnalysisReportResultsRequest.builder()- Parameters:
getAnalysisReportResultsRequest- AConsumerthat will call methods onGetAnalysisReportResultsRequest.Builderto create a request.- Returns:
- Result of the GetAnalysisReportResults operation returned by the service.
- See Also:
-
getAnalysisReportResultsPaginator
default GetAnalysisReportResultsIterable getAnalysisReportResultsPaginator(GetAnalysisReportResultsRequest getAnalysisReportResultsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException This is a variant of
getAnalysisReportResults(software.amazon.awssdk.services.networkfirewall.model.GetAnalysisReportResultsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.networkfirewall.paginators.GetAnalysisReportResultsIterable responses = client.getAnalysisReportResultsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.networkfirewall.paginators.GetAnalysisReportResultsIterable responses = client .getAnalysisReportResultsPaginator(request); for (software.amazon.awssdk.services.networkfirewall.model.GetAnalysisReportResultsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.networkfirewall.paginators.GetAnalysisReportResultsIterable responses = client.getAnalysisReportResultsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
getAnalysisReportResults(software.amazon.awssdk.services.networkfirewall.model.GetAnalysisReportResultsRequest)operation.- Parameters:
getAnalysisReportResultsRequest-- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
getAnalysisReportResultsPaginator
default GetAnalysisReportResultsIterable getAnalysisReportResultsPaginator(Consumer<GetAnalysisReportResultsRequest.Builder> getAnalysisReportResultsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException This is a variant of
getAnalysisReportResults(software.amazon.awssdk.services.networkfirewall.model.GetAnalysisReportResultsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.networkfirewall.paginators.GetAnalysisReportResultsIterable responses = client.getAnalysisReportResultsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.networkfirewall.paginators.GetAnalysisReportResultsIterable responses = client .getAnalysisReportResultsPaginator(request); for (software.amazon.awssdk.services.networkfirewall.model.GetAnalysisReportResultsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.networkfirewall.paginators.GetAnalysisReportResultsIterable responses = client.getAnalysisReportResultsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
getAnalysisReportResults(software.amazon.awssdk.services.networkfirewall.model.GetAnalysisReportResultsRequest)operation.
This is a convenience which creates an instance of the
GetAnalysisReportResultsRequest.Builderavoiding the need to create one manually viaGetAnalysisReportResultsRequest.builder()- Parameters:
getAnalysisReportResultsRequest- AConsumerthat will call methods onGetAnalysisReportResultsRequest.Builderto create a request.- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listAnalysisReports
default ListAnalysisReportsResponse listAnalysisReports(ListAnalysisReportsRequest listAnalysisReportsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Returns a list of all traffic analysis reports generated within the last 30 days.
- Parameters:
listAnalysisReportsRequest-- Returns:
- Result of the ListAnalysisReports operation returned by the service.
- See Also:
-
listAnalysisReports
default ListAnalysisReportsResponse listAnalysisReports(Consumer<ListAnalysisReportsRequest.Builder> listAnalysisReportsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Returns a list of all traffic analysis reports generated within the last 30 days.
This is a convenience which creates an instance of the
ListAnalysisReportsRequest.Builderavoiding the need to create one manually viaListAnalysisReportsRequest.builder()- Parameters:
listAnalysisReportsRequest- AConsumerthat will call methods onListAnalysisReportsRequest.Builderto create a request.- Returns:
- Result of the ListAnalysisReports operation returned by the service.
- See Also:
-
listAnalysisReportsPaginator
default ListAnalysisReportsIterable listAnalysisReportsPaginator(ListAnalysisReportsRequest listAnalysisReportsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException This is a variant of
listAnalysisReports(software.amazon.awssdk.services.networkfirewall.model.ListAnalysisReportsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.networkfirewall.paginators.ListAnalysisReportsIterable responses = client.listAnalysisReportsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.networkfirewall.paginators.ListAnalysisReportsIterable responses = client .listAnalysisReportsPaginator(request); for (software.amazon.awssdk.services.networkfirewall.model.ListAnalysisReportsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.networkfirewall.paginators.ListAnalysisReportsIterable responses = client.listAnalysisReportsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listAnalysisReports(software.amazon.awssdk.services.networkfirewall.model.ListAnalysisReportsRequest)operation.- Parameters:
listAnalysisReportsRequest-- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listAnalysisReportsPaginator
default ListAnalysisReportsIterable listAnalysisReportsPaginator(Consumer<ListAnalysisReportsRequest.Builder> listAnalysisReportsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException This is a variant of
listAnalysisReports(software.amazon.awssdk.services.networkfirewall.model.ListAnalysisReportsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.networkfirewall.paginators.ListAnalysisReportsIterable responses = client.listAnalysisReportsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.networkfirewall.paginators.ListAnalysisReportsIterable responses = client .listAnalysisReportsPaginator(request); for (software.amazon.awssdk.services.networkfirewall.model.ListAnalysisReportsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.networkfirewall.paginators.ListAnalysisReportsIterable responses = client.listAnalysisReportsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listAnalysisReports(software.amazon.awssdk.services.networkfirewall.model.ListAnalysisReportsRequest)operation.
This is a convenience which creates an instance of the
ListAnalysisReportsRequest.Builderavoiding the need to create one manually viaListAnalysisReportsRequest.builder()- Parameters:
listAnalysisReportsRequest- AConsumerthat will call methods onListAnalysisReportsRequest.Builderto create a request.- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listFirewallPolicies
default ListFirewallPoliciesResponse listFirewallPolicies(ListFirewallPoliciesRequest listFirewallPoliciesRequest) throws InvalidRequestException, ThrottlingException, InternalServerErrorException, AwsServiceException, SdkClientException, NetworkFirewallException Retrieves the metadata for the firewall policies that you have defined. Depending on your setting for max results and the number of firewall policies, a single call might not return the full list.
- Parameters:
listFirewallPoliciesRequest-- Returns:
- Result of the ListFirewallPolicies operation returned by the service.
- See Also:
-
listFirewallPolicies
default ListFirewallPoliciesResponse listFirewallPolicies(Consumer<ListFirewallPoliciesRequest.Builder> listFirewallPoliciesRequest) throws InvalidRequestException, ThrottlingException, InternalServerErrorException, AwsServiceException, SdkClientException, NetworkFirewallException Retrieves the metadata for the firewall policies that you have defined. Depending on your setting for max results and the number of firewall policies, a single call might not return the full list.
This is a convenience which creates an instance of the
ListFirewallPoliciesRequest.Builderavoiding the need to create one manually viaListFirewallPoliciesRequest.builder()- Parameters:
listFirewallPoliciesRequest- AConsumerthat will call methods onListFirewallPoliciesRequest.Builderto create a request.- Returns:
- Result of the ListFirewallPolicies operation returned by the service.
- See Also:
-
listFirewallPoliciesPaginator
default ListFirewallPoliciesIterable listFirewallPoliciesPaginator(ListFirewallPoliciesRequest listFirewallPoliciesRequest) throws InvalidRequestException, ThrottlingException, InternalServerErrorException, AwsServiceException, SdkClientException, NetworkFirewallException This is a variant of
listFirewallPolicies(software.amazon.awssdk.services.networkfirewall.model.ListFirewallPoliciesRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.networkfirewall.paginators.ListFirewallPoliciesIterable responses = client.listFirewallPoliciesPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.networkfirewall.paginators.ListFirewallPoliciesIterable responses = client .listFirewallPoliciesPaginator(request); for (software.amazon.awssdk.services.networkfirewall.model.ListFirewallPoliciesResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.networkfirewall.paginators.ListFirewallPoliciesIterable responses = client.listFirewallPoliciesPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listFirewallPolicies(software.amazon.awssdk.services.networkfirewall.model.ListFirewallPoliciesRequest)operation.- Parameters:
listFirewallPoliciesRequest-- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listFirewallPoliciesPaginator
default ListFirewallPoliciesIterable listFirewallPoliciesPaginator(Consumer<ListFirewallPoliciesRequest.Builder> listFirewallPoliciesRequest) throws InvalidRequestException, ThrottlingException, InternalServerErrorException, AwsServiceException, SdkClientException, NetworkFirewallException This is a variant of
listFirewallPolicies(software.amazon.awssdk.services.networkfirewall.model.ListFirewallPoliciesRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.networkfirewall.paginators.ListFirewallPoliciesIterable responses = client.listFirewallPoliciesPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.networkfirewall.paginators.ListFirewallPoliciesIterable responses = client .listFirewallPoliciesPaginator(request); for (software.amazon.awssdk.services.networkfirewall.model.ListFirewallPoliciesResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.networkfirewall.paginators.ListFirewallPoliciesIterable responses = client.listFirewallPoliciesPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listFirewallPolicies(software.amazon.awssdk.services.networkfirewall.model.ListFirewallPoliciesRequest)operation.
This is a convenience which creates an instance of the
ListFirewallPoliciesRequest.Builderavoiding the need to create one manually viaListFirewallPoliciesRequest.builder()- Parameters:
listFirewallPoliciesRequest- AConsumerthat will call methods onListFirewallPoliciesRequest.Builderto create a request.- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listFirewalls
default ListFirewallsResponse listFirewalls(ListFirewallsRequest listFirewallsRequest) throws InvalidRequestException, InternalServerErrorException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Retrieves the metadata for the firewalls that you have defined. If you provide VPC identifiers in your request, this returns only the firewalls for those VPCs.
Depending on your setting for max results and the number of firewalls, a single call might not return the full list.
- Parameters:
listFirewallsRequest-- Returns:
- Result of the ListFirewalls operation returned by the service.
- See Also:
-
listFirewalls
default ListFirewallsResponse listFirewalls(Consumer<ListFirewallsRequest.Builder> listFirewallsRequest) throws InvalidRequestException, InternalServerErrorException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Retrieves the metadata for the firewalls that you have defined. If you provide VPC identifiers in your request, this returns only the firewalls for those VPCs.
Depending on your setting for max results and the number of firewalls, a single call might not return the full list.
This is a convenience which creates an instance of the
ListFirewallsRequest.Builderavoiding the need to create one manually viaListFirewallsRequest.builder()- Parameters:
listFirewallsRequest- AConsumerthat will call methods onListFirewallsRequest.Builderto create a request.- Returns:
- Result of the ListFirewalls operation returned by the service.
- See Also:
-
listFirewallsPaginator
default ListFirewallsIterable listFirewallsPaginator(ListFirewallsRequest listFirewallsRequest) throws InvalidRequestException, InternalServerErrorException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException This is a variant of
listFirewalls(software.amazon.awssdk.services.networkfirewall.model.ListFirewallsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.networkfirewall.paginators.ListFirewallsIterable responses = client.listFirewallsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.networkfirewall.paginators.ListFirewallsIterable responses = client .listFirewallsPaginator(request); for (software.amazon.awssdk.services.networkfirewall.model.ListFirewallsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.networkfirewall.paginators.ListFirewallsIterable responses = client.listFirewallsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listFirewalls(software.amazon.awssdk.services.networkfirewall.model.ListFirewallsRequest)operation.- Parameters:
listFirewallsRequest-- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listFirewallsPaginator
default ListFirewallsIterable listFirewallsPaginator(Consumer<ListFirewallsRequest.Builder> listFirewallsRequest) throws InvalidRequestException, InternalServerErrorException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException This is a variant of
listFirewalls(software.amazon.awssdk.services.networkfirewall.model.ListFirewallsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.networkfirewall.paginators.ListFirewallsIterable responses = client.listFirewallsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.networkfirewall.paginators.ListFirewallsIterable responses = client .listFirewallsPaginator(request); for (software.amazon.awssdk.services.networkfirewall.model.ListFirewallsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.networkfirewall.paginators.ListFirewallsIterable responses = client.listFirewallsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listFirewalls(software.amazon.awssdk.services.networkfirewall.model.ListFirewallsRequest)operation.
This is a convenience which creates an instance of the
ListFirewallsRequest.Builderavoiding the need to create one manually viaListFirewallsRequest.builder()- Parameters:
listFirewallsRequest- AConsumerthat will call methods onListFirewallsRequest.Builderto create a request.- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listFlowOperationResults
default ListFlowOperationResultsResponse listFlowOperationResults(ListFlowOperationResultsRequest listFlowOperationResultsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Returns the results of a specific flow operation.
Flow operations let you manage the flows tracked in the flow table, also known as the firewall table.
A flow is network traffic that is monitored by a firewall, either by stateful or stateless rules. For traffic to be considered part of a flow, it must share Destination, DestinationPort, Direction, Protocol, Source, and SourcePort.
- Parameters:
listFlowOperationResultsRequest-- Returns:
- Result of the ListFlowOperationResults operation returned by the service.
- See Also:
-
listFlowOperationResults
default ListFlowOperationResultsResponse listFlowOperationResults(Consumer<ListFlowOperationResultsRequest.Builder> listFlowOperationResultsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Returns the results of a specific flow operation.
Flow operations let you manage the flows tracked in the flow table, also known as the firewall table.
A flow is network traffic that is monitored by a firewall, either by stateful or stateless rules. For traffic to be considered part of a flow, it must share Destination, DestinationPort, Direction, Protocol, Source, and SourcePort.
This is a convenience which creates an instance of the
ListFlowOperationResultsRequest.Builderavoiding the need to create one manually viaListFlowOperationResultsRequest.builder()- Parameters:
listFlowOperationResultsRequest- AConsumerthat will call methods onListFlowOperationResultsRequest.Builderto create a request.- Returns:
- Result of the ListFlowOperationResults operation returned by the service.
- See Also:
-
listFlowOperationResultsPaginator
default ListFlowOperationResultsIterable listFlowOperationResultsPaginator(ListFlowOperationResultsRequest listFlowOperationResultsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException This is a variant of
listFlowOperationResults(software.amazon.awssdk.services.networkfirewall.model.ListFlowOperationResultsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.networkfirewall.paginators.ListFlowOperationResultsIterable responses = client.listFlowOperationResultsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.networkfirewall.paginators.ListFlowOperationResultsIterable responses = client .listFlowOperationResultsPaginator(request); for (software.amazon.awssdk.services.networkfirewall.model.ListFlowOperationResultsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.networkfirewall.paginators.ListFlowOperationResultsIterable responses = client.listFlowOperationResultsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listFlowOperationResults(software.amazon.awssdk.services.networkfirewall.model.ListFlowOperationResultsRequest)operation.- Parameters:
listFlowOperationResultsRequest-- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listFlowOperationResultsPaginator
default ListFlowOperationResultsIterable listFlowOperationResultsPaginator(Consumer<ListFlowOperationResultsRequest.Builder> listFlowOperationResultsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException This is a variant of
listFlowOperationResults(software.amazon.awssdk.services.networkfirewall.model.ListFlowOperationResultsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.networkfirewall.paginators.ListFlowOperationResultsIterable responses = client.listFlowOperationResultsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.networkfirewall.paginators.ListFlowOperationResultsIterable responses = client .listFlowOperationResultsPaginator(request); for (software.amazon.awssdk.services.networkfirewall.model.ListFlowOperationResultsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.networkfirewall.paginators.ListFlowOperationResultsIterable responses = client.listFlowOperationResultsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listFlowOperationResults(software.amazon.awssdk.services.networkfirewall.model.ListFlowOperationResultsRequest)operation.
This is a convenience which creates an instance of the
ListFlowOperationResultsRequest.Builderavoiding the need to create one manually viaListFlowOperationResultsRequest.builder()- Parameters:
listFlowOperationResultsRequest- AConsumerthat will call methods onListFlowOperationResultsRequest.Builderto create a request.- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listFlowOperations
default ListFlowOperationsResponse listFlowOperations(ListFlowOperationsRequest listFlowOperationsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Returns a list of all flow operations ran in a specific firewall. You can optionally narrow the request scope by specifying the operation type or Availability Zone associated with a firewall's flow operations.
Flow operations let you manage the flows tracked in the flow table, also known as the firewall table.
A flow is network traffic that is monitored by a firewall, either by stateful or stateless rules. For traffic to be considered part of a flow, it must share Destination, DestinationPort, Direction, Protocol, Source, and SourcePort.
- Parameters:
listFlowOperationsRequest-- Returns:
- Result of the ListFlowOperations operation returned by the service.
- See Also:
-
listFlowOperations
default ListFlowOperationsResponse listFlowOperations(Consumer<ListFlowOperationsRequest.Builder> listFlowOperationsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Returns a list of all flow operations ran in a specific firewall. You can optionally narrow the request scope by specifying the operation type or Availability Zone associated with a firewall's flow operations.
Flow operations let you manage the flows tracked in the flow table, also known as the firewall table.
A flow is network traffic that is monitored by a firewall, either by stateful or stateless rules. For traffic to be considered part of a flow, it must share Destination, DestinationPort, Direction, Protocol, Source, and SourcePort.
This is a convenience which creates an instance of the
ListFlowOperationsRequest.Builderavoiding the need to create one manually viaListFlowOperationsRequest.builder()- Parameters:
listFlowOperationsRequest- AConsumerthat will call methods onListFlowOperationsRequest.Builderto create a request.- Returns:
- Result of the ListFlowOperations operation returned by the service.
- See Also:
-
listFlowOperationsPaginator
default ListFlowOperationsIterable listFlowOperationsPaginator(ListFlowOperationsRequest listFlowOperationsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException This is a variant of
listFlowOperations(software.amazon.awssdk.services.networkfirewall.model.ListFlowOperationsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.networkfirewall.paginators.ListFlowOperationsIterable responses = client.listFlowOperationsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.networkfirewall.paginators.ListFlowOperationsIterable responses = client .listFlowOperationsPaginator(request); for (software.amazon.awssdk.services.networkfirewall.model.ListFlowOperationsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.networkfirewall.paginators.ListFlowOperationsIterable responses = client.listFlowOperationsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listFlowOperations(software.amazon.awssdk.services.networkfirewall.model.ListFlowOperationsRequest)operation.- Parameters:
listFlowOperationsRequest-- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listFlowOperationsPaginator
default ListFlowOperationsIterable listFlowOperationsPaginator(Consumer<ListFlowOperationsRequest.Builder> listFlowOperationsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException This is a variant of
listFlowOperations(software.amazon.awssdk.services.networkfirewall.model.ListFlowOperationsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.networkfirewall.paginators.ListFlowOperationsIterable responses = client.listFlowOperationsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.networkfirewall.paginators.ListFlowOperationsIterable responses = client .listFlowOperationsPaginator(request); for (software.amazon.awssdk.services.networkfirewall.model.ListFlowOperationsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.networkfirewall.paginators.ListFlowOperationsIterable responses = client.listFlowOperationsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listFlowOperations(software.amazon.awssdk.services.networkfirewall.model.ListFlowOperationsRequest)operation.
This is a convenience which creates an instance of the
ListFlowOperationsRequest.Builderavoiding the need to create one manually viaListFlowOperationsRequest.builder()- Parameters:
listFlowOperationsRequest- AConsumerthat will call methods onListFlowOperationsRequest.Builderto create a request.- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listRuleGroups
default ListRuleGroupsResponse listRuleGroups(ListRuleGroupsRequest listRuleGroupsRequest) throws InvalidRequestException, ThrottlingException, InternalServerErrorException, AwsServiceException, SdkClientException, NetworkFirewallException Retrieves the metadata for the rule groups that you have defined. Depending on your setting for max results and the number of rule groups, a single call might not return the full list.
- Parameters:
listRuleGroupsRequest-- Returns:
- Result of the ListRuleGroups operation returned by the service.
- See Also:
-
listRuleGroups
default ListRuleGroupsResponse listRuleGroups(Consumer<ListRuleGroupsRequest.Builder> listRuleGroupsRequest) throws InvalidRequestException, ThrottlingException, InternalServerErrorException, AwsServiceException, SdkClientException, NetworkFirewallException Retrieves the metadata for the rule groups that you have defined. Depending on your setting for max results and the number of rule groups, a single call might not return the full list.
This is a convenience which creates an instance of the
ListRuleGroupsRequest.Builderavoiding the need to create one manually viaListRuleGroupsRequest.builder()- Parameters:
listRuleGroupsRequest- AConsumerthat will call methods onListRuleGroupsRequest.Builderto create a request.- Returns:
- Result of the ListRuleGroups operation returned by the service.
- See Also:
-
listRuleGroupsPaginator
default ListRuleGroupsIterable listRuleGroupsPaginator(ListRuleGroupsRequest listRuleGroupsRequest) throws InvalidRequestException, ThrottlingException, InternalServerErrorException, AwsServiceException, SdkClientException, NetworkFirewallException This is a variant of
listRuleGroups(software.amazon.awssdk.services.networkfirewall.model.ListRuleGroupsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.networkfirewall.paginators.ListRuleGroupsIterable responses = client.listRuleGroupsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.networkfirewall.paginators.ListRuleGroupsIterable responses = client .listRuleGroupsPaginator(request); for (software.amazon.awssdk.services.networkfirewall.model.ListRuleGroupsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.networkfirewall.paginators.ListRuleGroupsIterable responses = client.listRuleGroupsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listRuleGroups(software.amazon.awssdk.services.networkfirewall.model.ListRuleGroupsRequest)operation.- Parameters:
listRuleGroupsRequest-- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listRuleGroupsPaginator
default ListRuleGroupsIterable listRuleGroupsPaginator(Consumer<ListRuleGroupsRequest.Builder> listRuleGroupsRequest) throws InvalidRequestException, ThrottlingException, InternalServerErrorException, AwsServiceException, SdkClientException, NetworkFirewallException This is a variant of
listRuleGroups(software.amazon.awssdk.services.networkfirewall.model.ListRuleGroupsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.networkfirewall.paginators.ListRuleGroupsIterable responses = client.listRuleGroupsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.networkfirewall.paginators.ListRuleGroupsIterable responses = client .listRuleGroupsPaginator(request); for (software.amazon.awssdk.services.networkfirewall.model.ListRuleGroupsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.networkfirewall.paginators.ListRuleGroupsIterable responses = client.listRuleGroupsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listRuleGroups(software.amazon.awssdk.services.networkfirewall.model.ListRuleGroupsRequest)operation.
This is a convenience which creates an instance of the
ListRuleGroupsRequest.Builderavoiding the need to create one manually viaListRuleGroupsRequest.builder()- Parameters:
listRuleGroupsRequest- AConsumerthat will call methods onListRuleGroupsRequest.Builderto create a request.- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listTLSInspectionConfigurations
default ListTlsInspectionConfigurationsResponse listTLSInspectionConfigurations(ListTlsInspectionConfigurationsRequest listTlsInspectionConfigurationsRequest) throws InvalidRequestException, InternalServerErrorException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Retrieves the metadata for the TLS inspection configurations that you have defined. Depending on your setting for max results and the number of TLS inspection configurations, a single call might not return the full list.
- Parameters:
listTlsInspectionConfigurationsRequest-- Returns:
- Result of the ListTLSInspectionConfigurations operation returned by the service.
- See Also:
-
listTLSInspectionConfigurations
default ListTlsInspectionConfigurationsResponse listTLSInspectionConfigurations(Consumer<ListTlsInspectionConfigurationsRequest.Builder> listTlsInspectionConfigurationsRequest) throws InvalidRequestException, InternalServerErrorException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Retrieves the metadata for the TLS inspection configurations that you have defined. Depending on your setting for max results and the number of TLS inspection configurations, a single call might not return the full list.
This is a convenience which creates an instance of the
ListTlsInspectionConfigurationsRequest.Builderavoiding the need to create one manually viaListTlsInspectionConfigurationsRequest.builder()- Parameters:
listTlsInspectionConfigurationsRequest- AConsumerthat will call methods onListTlsInspectionConfigurationsRequest.Builderto create a request.- Returns:
- Result of the ListTLSInspectionConfigurations operation returned by the service.
- See Also:
-
listTLSInspectionConfigurationsPaginator
default ListTLSInspectionConfigurationsIterable listTLSInspectionConfigurationsPaginator(ListTlsInspectionConfigurationsRequest listTlsInspectionConfigurationsRequest) throws InvalidRequestException, InternalServerErrorException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException This is a variant of
listTLSInspectionConfigurations(software.amazon.awssdk.services.networkfirewall.model.ListTlsInspectionConfigurationsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.networkfirewall.paginators.ListTLSInspectionConfigurationsIterable responses = client.listTLSInspectionConfigurationsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.networkfirewall.paginators.ListTLSInspectionConfigurationsIterable responses = client .listTLSInspectionConfigurationsPaginator(request); for (software.amazon.awssdk.services.networkfirewall.model.ListTlsInspectionConfigurationsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.networkfirewall.paginators.ListTLSInspectionConfigurationsIterable responses = client.listTLSInspectionConfigurationsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listTLSInspectionConfigurations(software.amazon.awssdk.services.networkfirewall.model.ListTlsInspectionConfigurationsRequest)operation.- Parameters:
listTlsInspectionConfigurationsRequest-- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listTLSInspectionConfigurationsPaginator
default ListTLSInspectionConfigurationsIterable listTLSInspectionConfigurationsPaginator(Consumer<ListTlsInspectionConfigurationsRequest.Builder> listTlsInspectionConfigurationsRequest) throws InvalidRequestException, InternalServerErrorException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException This is a variant of
listTLSInspectionConfigurations(software.amazon.awssdk.services.networkfirewall.model.ListTlsInspectionConfigurationsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.networkfirewall.paginators.ListTLSInspectionConfigurationsIterable responses = client.listTLSInspectionConfigurationsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.networkfirewall.paginators.ListTLSInspectionConfigurationsIterable responses = client .listTLSInspectionConfigurationsPaginator(request); for (software.amazon.awssdk.services.networkfirewall.model.ListTlsInspectionConfigurationsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.networkfirewall.paginators.ListTLSInspectionConfigurationsIterable responses = client.listTLSInspectionConfigurationsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listTLSInspectionConfigurations(software.amazon.awssdk.services.networkfirewall.model.ListTlsInspectionConfigurationsRequest)operation.
This is a convenience which creates an instance of the
ListTlsInspectionConfigurationsRequest.Builderavoiding the need to create one manually viaListTlsInspectionConfigurationsRequest.builder()- Parameters:
listTlsInspectionConfigurationsRequest- AConsumerthat will call methods onListTlsInspectionConfigurationsRequest.Builderto create a request.- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listTagsForResource
default ListTagsForResourceResponse listTagsForResource(ListTagsForResourceRequest listTagsForResourceRequest) throws ThrottlingException, InternalServerErrorException, ResourceNotFoundException, InvalidRequestException, AwsServiceException, SdkClientException, NetworkFirewallException Retrieves the tags associated with the specified resource. Tags are key:value pairs that you can use to categorize and manage your resources, for purposes like billing. For example, you might set the tag key to "customer" and the value to the customer name or ID. You can specify one or more tags to add to each Amazon Web Services resource, up to 50 tags for a resource.
You can tag the Amazon Web Services resources that you manage through Network Firewall: firewalls, firewall policies, and rule groups.
- Parameters:
listTagsForResourceRequest-- Returns:
- Result of the ListTagsForResource operation returned by the service.
- See Also:
-
listTagsForResource
default ListTagsForResourceResponse listTagsForResource(Consumer<ListTagsForResourceRequest.Builder> listTagsForResourceRequest) throws ThrottlingException, InternalServerErrorException, ResourceNotFoundException, InvalidRequestException, AwsServiceException, SdkClientException, NetworkFirewallException Retrieves the tags associated with the specified resource. Tags are key:value pairs that you can use to categorize and manage your resources, for purposes like billing. For example, you might set the tag key to "customer" and the value to the customer name or ID. You can specify one or more tags to add to each Amazon Web Services resource, up to 50 tags for a resource.
You can tag the Amazon Web Services resources that you manage through Network Firewall: firewalls, firewall policies, and rule groups.
This is a convenience which creates an instance of the
ListTagsForResourceRequest.Builderavoiding the need to create one manually viaListTagsForResourceRequest.builder()- Parameters:
listTagsForResourceRequest- AConsumerthat will call methods onListTagsForResourceRequest.Builderto create a request.- Returns:
- Result of the ListTagsForResource operation returned by the service.
- See Also:
-
listTagsForResourcePaginator
default ListTagsForResourceIterable listTagsForResourcePaginator(ListTagsForResourceRequest listTagsForResourceRequest) throws ThrottlingException, InternalServerErrorException, ResourceNotFoundException, InvalidRequestException, AwsServiceException, SdkClientException, NetworkFirewallException This is a variant of
listTagsForResource(software.amazon.awssdk.services.networkfirewall.model.ListTagsForResourceRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.networkfirewall.paginators.ListTagsForResourceIterable responses = client.listTagsForResourcePaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.networkfirewall.paginators.ListTagsForResourceIterable responses = client .listTagsForResourcePaginator(request); for (software.amazon.awssdk.services.networkfirewall.model.ListTagsForResourceResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.networkfirewall.paginators.ListTagsForResourceIterable responses = client.listTagsForResourcePaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listTagsForResource(software.amazon.awssdk.services.networkfirewall.model.ListTagsForResourceRequest)operation.- Parameters:
listTagsForResourceRequest-- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listTagsForResourcePaginator
default ListTagsForResourceIterable listTagsForResourcePaginator(Consumer<ListTagsForResourceRequest.Builder> listTagsForResourceRequest) throws ThrottlingException, InternalServerErrorException, ResourceNotFoundException, InvalidRequestException, AwsServiceException, SdkClientException, NetworkFirewallException This is a variant of
listTagsForResource(software.amazon.awssdk.services.networkfirewall.model.ListTagsForResourceRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.networkfirewall.paginators.ListTagsForResourceIterable responses = client.listTagsForResourcePaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.networkfirewall.paginators.ListTagsForResourceIterable responses = client .listTagsForResourcePaginator(request); for (software.amazon.awssdk.services.networkfirewall.model.ListTagsForResourceResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.networkfirewall.paginators.ListTagsForResourceIterable responses = client.listTagsForResourcePaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listTagsForResource(software.amazon.awssdk.services.networkfirewall.model.ListTagsForResourceRequest)operation.
This is a convenience which creates an instance of the
ListTagsForResourceRequest.Builderavoiding the need to create one manually viaListTagsForResourceRequest.builder()- Parameters:
listTagsForResourceRequest- AConsumerthat will call methods onListTagsForResourceRequest.Builderto create a request.- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listVpcEndpointAssociations
default ListVpcEndpointAssociationsResponse listVpcEndpointAssociations(ListVpcEndpointAssociationsRequest listVpcEndpointAssociationsRequest) throws InvalidRequestException, ThrottlingException, InternalServerErrorException, AwsServiceException, SdkClientException, NetworkFirewallException Retrieves the metadata for the VPC endpoint associations that you have defined. If you specify a fireawll, this returns only the endpoint associations for that firewall.
Depending on your setting for max results and the number of associations, a single call might not return the full list.
- Parameters:
listVpcEndpointAssociationsRequest-- Returns:
- Result of the ListVpcEndpointAssociations operation returned by the service.
- See Also:
-
listVpcEndpointAssociations
default ListVpcEndpointAssociationsResponse listVpcEndpointAssociations(Consumer<ListVpcEndpointAssociationsRequest.Builder> listVpcEndpointAssociationsRequest) throws InvalidRequestException, ThrottlingException, InternalServerErrorException, AwsServiceException, SdkClientException, NetworkFirewallException Retrieves the metadata for the VPC endpoint associations that you have defined. If you specify a fireawll, this returns only the endpoint associations for that firewall.
Depending on your setting for max results and the number of associations, a single call might not return the full list.
This is a convenience which creates an instance of the
ListVpcEndpointAssociationsRequest.Builderavoiding the need to create one manually viaListVpcEndpointAssociationsRequest.builder()- Parameters:
listVpcEndpointAssociationsRequest- AConsumerthat will call methods onListVpcEndpointAssociationsRequest.Builderto create a request.- Returns:
- Result of the ListVpcEndpointAssociations operation returned by the service.
- See Also:
-
listVpcEndpointAssociationsPaginator
default ListVpcEndpointAssociationsIterable listVpcEndpointAssociationsPaginator(ListVpcEndpointAssociationsRequest listVpcEndpointAssociationsRequest) throws InvalidRequestException, ThrottlingException, InternalServerErrorException, AwsServiceException, SdkClientException, NetworkFirewallException This is a variant of
listVpcEndpointAssociations(software.amazon.awssdk.services.networkfirewall.model.ListVpcEndpointAssociationsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.networkfirewall.paginators.ListVpcEndpointAssociationsIterable responses = client.listVpcEndpointAssociationsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.networkfirewall.paginators.ListVpcEndpointAssociationsIterable responses = client .listVpcEndpointAssociationsPaginator(request); for (software.amazon.awssdk.services.networkfirewall.model.ListVpcEndpointAssociationsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.networkfirewall.paginators.ListVpcEndpointAssociationsIterable responses = client.listVpcEndpointAssociationsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listVpcEndpointAssociations(software.amazon.awssdk.services.networkfirewall.model.ListVpcEndpointAssociationsRequest)operation.- Parameters:
listVpcEndpointAssociationsRequest-- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listVpcEndpointAssociationsPaginator
default ListVpcEndpointAssociationsIterable listVpcEndpointAssociationsPaginator(Consumer<ListVpcEndpointAssociationsRequest.Builder> listVpcEndpointAssociationsRequest) throws InvalidRequestException, ThrottlingException, InternalServerErrorException, AwsServiceException, SdkClientException, NetworkFirewallException This is a variant of
listVpcEndpointAssociations(software.amazon.awssdk.services.networkfirewall.model.ListVpcEndpointAssociationsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.networkfirewall.paginators.ListVpcEndpointAssociationsIterable responses = client.listVpcEndpointAssociationsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.networkfirewall.paginators.ListVpcEndpointAssociationsIterable responses = client .listVpcEndpointAssociationsPaginator(request); for (software.amazon.awssdk.services.networkfirewall.model.ListVpcEndpointAssociationsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.networkfirewall.paginators.ListVpcEndpointAssociationsIterable responses = client.listVpcEndpointAssociationsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listVpcEndpointAssociations(software.amazon.awssdk.services.networkfirewall.model.ListVpcEndpointAssociationsRequest)operation.
This is a convenience which creates an instance of the
ListVpcEndpointAssociationsRequest.Builderavoiding the need to create one manually viaListVpcEndpointAssociationsRequest.builder()- Parameters:
listVpcEndpointAssociationsRequest- AConsumerthat will call methods onListVpcEndpointAssociationsRequest.Builderto create a request.- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
putResourcePolicy
default PutResourcePolicyResponse putResourcePolicy(PutResourcePolicyRequest putResourcePolicyRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidResourcePolicyException, AwsServiceException, SdkClientException, NetworkFirewallException Creates or updates an IAM policy for your rule group, firewall policy, or firewall. Use this to share these resources between accounts. This operation works in conjunction with the Amazon Web Services Resource Access Manager (RAM) service to manage resource sharing for Network Firewall.
For information about using sharing with Network Firewall resources, see Sharing Network Firewall resources in the Network Firewall Developer Guide.
Use this operation to create or update a resource policy for your Network Firewall rule group, firewall policy, or firewall. In the resource policy, you specify the accounts that you want to share the Network Firewall resource with and the operations that you want the accounts to be able to perform.
When you add an account in the resource policy, you then run the following Resource Access Manager (RAM) operations to access and accept the shared resource.
-
GetResourceShareInvitations - Returns the Amazon Resource Names (ARNs) of the resource share invitations.
-
AcceptResourceShareInvitation - Accepts the share invitation for a specified resource share.
For additional information about resource sharing using RAM, see Resource Access Manager User Guide.
- Parameters:
putResourcePolicyRequest-- Returns:
- Result of the PutResourcePolicy operation returned by the service.
- See Also:
-
-
putResourcePolicy
default PutResourcePolicyResponse putResourcePolicy(Consumer<PutResourcePolicyRequest.Builder> putResourcePolicyRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidResourcePolicyException, AwsServiceException, SdkClientException, NetworkFirewallException Creates or updates an IAM policy for your rule group, firewall policy, or firewall. Use this to share these resources between accounts. This operation works in conjunction with the Amazon Web Services Resource Access Manager (RAM) service to manage resource sharing for Network Firewall.
For information about using sharing with Network Firewall resources, see Sharing Network Firewall resources in the Network Firewall Developer Guide.
Use this operation to create or update a resource policy for your Network Firewall rule group, firewall policy, or firewall. In the resource policy, you specify the accounts that you want to share the Network Firewall resource with and the operations that you want the accounts to be able to perform.
When you add an account in the resource policy, you then run the following Resource Access Manager (RAM) operations to access and accept the shared resource.
-
GetResourceShareInvitations - Returns the Amazon Resource Names (ARNs) of the resource share invitations.
-
AcceptResourceShareInvitation - Accepts the share invitation for a specified resource share.
For additional information about resource sharing using RAM, see Resource Access Manager User Guide.
This is a convenience which creates an instance of the
PutResourcePolicyRequest.Builderavoiding the need to create one manually viaPutResourcePolicyRequest.builder()- Parameters:
putResourcePolicyRequest- AConsumerthat will call methods onPutResourcePolicyRequest.Builderto create a request.- Returns:
- Result of the PutResourcePolicy operation returned by the service.
- See Also:
-
-
rejectNetworkFirewallTransitGatewayAttachment
default RejectNetworkFirewallTransitGatewayAttachmentResponse rejectNetworkFirewallTransitGatewayAttachment(RejectNetworkFirewallTransitGatewayAttachmentRequest rejectNetworkFirewallTransitGatewayAttachmentRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Rejects a transit gateway attachment request for Network Firewall. When you reject the attachment request, Network Firewall cancels the creation of routing components between the transit gateway and firewall endpoints.
Only the transit gateway owner can reject the attachment. After rejection, no traffic will flow through the firewall endpoints for this attachment.
Use DescribeFirewall to monitor the rejection status. To accept the attachment instead of rejecting it, use AcceptNetworkFirewallTransitGatewayAttachment.
Once rejected, you cannot reverse this action. To establish connectivity, you must create a new transit gateway-attached firewall.
- Parameters:
rejectNetworkFirewallTransitGatewayAttachmentRequest-- Returns:
- Result of the RejectNetworkFirewallTransitGatewayAttachment operation returned by the service.
- See Also:
-
rejectNetworkFirewallTransitGatewayAttachment
default RejectNetworkFirewallTransitGatewayAttachmentResponse rejectNetworkFirewallTransitGatewayAttachment(Consumer<RejectNetworkFirewallTransitGatewayAttachmentRequest.Builder> rejectNetworkFirewallTransitGatewayAttachmentRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Rejects a transit gateway attachment request for Network Firewall. When you reject the attachment request, Network Firewall cancels the creation of routing components between the transit gateway and firewall endpoints.
Only the transit gateway owner can reject the attachment. After rejection, no traffic will flow through the firewall endpoints for this attachment.
Use DescribeFirewall to monitor the rejection status. To accept the attachment instead of rejecting it, use AcceptNetworkFirewallTransitGatewayAttachment.
Once rejected, you cannot reverse this action. To establish connectivity, you must create a new transit gateway-attached firewall.
This is a convenience which creates an instance of the
RejectNetworkFirewallTransitGatewayAttachmentRequest.Builderavoiding the need to create one manually viaRejectNetworkFirewallTransitGatewayAttachmentRequest.builder()- Parameters:
rejectNetworkFirewallTransitGatewayAttachmentRequest- AConsumerthat will call methods onRejectNetworkFirewallTransitGatewayAttachmentRequest.Builderto create a request.- Returns:
- Result of the RejectNetworkFirewallTransitGatewayAttachment operation returned by the service.
- See Also:
-
startAnalysisReport
default StartAnalysisReportResponse startAnalysisReport(StartAnalysisReportRequest startAnalysisReportRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Generates a traffic analysis report for the timeframe and traffic type you specify.
For information on the contents of a traffic analysis report, see AnalysisReport.
- Parameters:
startAnalysisReportRequest-- Returns:
- Result of the StartAnalysisReport operation returned by the service.
- See Also:
-
startAnalysisReport
default StartAnalysisReportResponse startAnalysisReport(Consumer<StartAnalysisReportRequest.Builder> startAnalysisReportRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Generates a traffic analysis report for the timeframe and traffic type you specify.
For information on the contents of a traffic analysis report, see AnalysisReport.
This is a convenience which creates an instance of the
StartAnalysisReportRequest.Builderavoiding the need to create one manually viaStartAnalysisReportRequest.builder()- Parameters:
startAnalysisReportRequest- AConsumerthat will call methods onStartAnalysisReportRequest.Builderto create a request.- Returns:
- Result of the StartAnalysisReport operation returned by the service.
- See Also:
-
startFlowCapture
default StartFlowCaptureResponse startFlowCapture(StartFlowCaptureRequest startFlowCaptureRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Begins capturing the flows in a firewall, according to the filters you define. Captures are similar, but not identical to snapshots. Capture operations provide visibility into flows that are not closed and are tracked by a firewall's flow table. Unlike snapshots, captures are a time-boxed view.
A flow is network traffic that is monitored by a firewall, either by stateful or stateless rules. For traffic to be considered part of a flow, it must share Destination, DestinationPort, Direction, Protocol, Source, and SourcePort.
To avoid encountering operation limits, you should avoid starting captures with broad filters, like wide IP ranges. Instead, we recommend you define more specific criteria with
FlowFilters, like narrow IP ranges, ports, or protocols.- Parameters:
startFlowCaptureRequest-- Returns:
- Result of the StartFlowCapture operation returned by the service.
- See Also:
-
startFlowCapture
default StartFlowCaptureResponse startFlowCapture(Consumer<StartFlowCaptureRequest.Builder> startFlowCaptureRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Begins capturing the flows in a firewall, according to the filters you define. Captures are similar, but not identical to snapshots. Capture operations provide visibility into flows that are not closed and are tracked by a firewall's flow table. Unlike snapshots, captures are a time-boxed view.
A flow is network traffic that is monitored by a firewall, either by stateful or stateless rules. For traffic to be considered part of a flow, it must share Destination, DestinationPort, Direction, Protocol, Source, and SourcePort.
To avoid encountering operation limits, you should avoid starting captures with broad filters, like wide IP ranges. Instead, we recommend you define more specific criteria with
FlowFilters, like narrow IP ranges, ports, or protocols.
This is a convenience which creates an instance of the
StartFlowCaptureRequest.Builderavoiding the need to create one manually viaStartFlowCaptureRequest.builder()- Parameters:
startFlowCaptureRequest- AConsumerthat will call methods onStartFlowCaptureRequest.Builderto create a request.- Returns:
- Result of the StartFlowCapture operation returned by the service.
- See Also:
-
startFlowFlush
default StartFlowFlushResponse startFlowFlush(StartFlowFlushRequest startFlowFlushRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Begins the flushing of traffic from the firewall, according to the filters you define. When the operation starts, impacted flows are temporarily marked as timed out before the Suricata engine prunes, or flushes, the flows from the firewall table.
While the flush completes, impacted flows are processed as midstream traffic. This may result in a temporary increase in midstream traffic metrics. We recommend that you double check your stream exception policy before you perform a flush operation.
- Parameters:
startFlowFlushRequest-- Returns:
- Result of the StartFlowFlush operation returned by the service.
- See Also:
-
startFlowFlush
default StartFlowFlushResponse startFlowFlush(Consumer<StartFlowFlushRequest.Builder> startFlowFlushRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Begins the flushing of traffic from the firewall, according to the filters you define. When the operation starts, impacted flows are temporarily marked as timed out before the Suricata engine prunes, or flushes, the flows from the firewall table.
While the flush completes, impacted flows are processed as midstream traffic. This may result in a temporary increase in midstream traffic metrics. We recommend that you double check your stream exception policy before you perform a flush operation.
This is a convenience which creates an instance of the
StartFlowFlushRequest.Builderavoiding the need to create one manually viaStartFlowFlushRequest.builder()- Parameters:
startFlowFlushRequest- AConsumerthat will call methods onStartFlowFlushRequest.Builderto create a request.- Returns:
- Result of the StartFlowFlush operation returned by the service.
- See Also:
-
tagResource
default TagResourceResponse tagResource(TagResourceRequest tagResourceRequest) throws ThrottlingException, InternalServerErrorException, ResourceNotFoundException, InvalidRequestException, AwsServiceException, SdkClientException, NetworkFirewallException Adds the specified tags to the specified resource. Tags are key:value pairs that you can use to categorize and manage your resources, for purposes like billing. For example, you might set the tag key to "customer" and the value to the customer name or ID. You can specify one or more tags to add to each Amazon Web Services resource, up to 50 tags for a resource.
You can tag the Amazon Web Services resources that you manage through Network Firewall: firewalls, firewall policies, and rule groups.
- Parameters:
tagResourceRequest-- Returns:
- Result of the TagResource operation returned by the service.
- See Also:
-
tagResource
default TagResourceResponse tagResource(Consumer<TagResourceRequest.Builder> tagResourceRequest) throws ThrottlingException, InternalServerErrorException, ResourceNotFoundException, InvalidRequestException, AwsServiceException, SdkClientException, NetworkFirewallException Adds the specified tags to the specified resource. Tags are key:value pairs that you can use to categorize and manage your resources, for purposes like billing. For example, you might set the tag key to "customer" and the value to the customer name or ID. You can specify one or more tags to add to each Amazon Web Services resource, up to 50 tags for a resource.
You can tag the Amazon Web Services resources that you manage through Network Firewall: firewalls, firewall policies, and rule groups.
This is a convenience which creates an instance of the
TagResourceRequest.Builderavoiding the need to create one manually viaTagResourceRequest.builder()- Parameters:
tagResourceRequest- AConsumerthat will call methods onTagResourceRequest.Builderto create a request.- Returns:
- Result of the TagResource operation returned by the service.
- See Also:
-
untagResource
default UntagResourceResponse untagResource(UntagResourceRequest untagResourceRequest) throws ThrottlingException, InternalServerErrorException, ResourceNotFoundException, InvalidRequestException, AwsServiceException, SdkClientException, NetworkFirewallException Removes the tags with the specified keys from the specified resource. Tags are key:value pairs that you can use to categorize and manage your resources, for purposes like billing. For example, you might set the tag key to "customer" and the value to the customer name or ID. You can specify one or more tags to add to each Amazon Web Services resource, up to 50 tags for a resource.
You can manage tags for the Amazon Web Services resources that you manage through Network Firewall: firewalls, firewall policies, and rule groups.
- Parameters:
untagResourceRequest-- Returns:
- Result of the UntagResource operation returned by the service.
- See Also:
-
untagResource
default UntagResourceResponse untagResource(Consumer<UntagResourceRequest.Builder> untagResourceRequest) throws ThrottlingException, InternalServerErrorException, ResourceNotFoundException, InvalidRequestException, AwsServiceException, SdkClientException, NetworkFirewallException Removes the tags with the specified keys from the specified resource. Tags are key:value pairs that you can use to categorize and manage your resources, for purposes like billing. For example, you might set the tag key to "customer" and the value to the customer name or ID. You can specify one or more tags to add to each Amazon Web Services resource, up to 50 tags for a resource.
You can manage tags for the Amazon Web Services resources that you manage through Network Firewall: firewalls, firewall policies, and rule groups.
This is a convenience which creates an instance of the
UntagResourceRequest.Builderavoiding the need to create one manually viaUntagResourceRequest.builder()- Parameters:
untagResourceRequest- AConsumerthat will call methods onUntagResourceRequest.Builderto create a request.- Returns:
- Result of the UntagResource operation returned by the service.
- See Also:
-
updateAvailabilityZoneChangeProtection
default UpdateAvailabilityZoneChangeProtectionResponse updateAvailabilityZoneChangeProtection(UpdateAvailabilityZoneChangeProtectionRequest updateAvailabilityZoneChangeProtectionRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, ResourceOwnerCheckException, AwsServiceException, SdkClientException, NetworkFirewallException Modifies the
AvailabilityZoneChangeProtectionsetting for a transit gateway-attached firewall. When enabled, this setting prevents accidental changes to the firewall's Availability Zone configuration. This helps protect against disrupting traffic flow in production environments.When enabled, you must disable this protection before using AssociateAvailabilityZones or DisassociateAvailabilityZones to modify the firewall's Availability Zone configuration.
- Parameters:
updateAvailabilityZoneChangeProtectionRequest-- Returns:
- Result of the UpdateAvailabilityZoneChangeProtection operation returned by the service.
- See Also:
-
updateAvailabilityZoneChangeProtection
default UpdateAvailabilityZoneChangeProtectionResponse updateAvailabilityZoneChangeProtection(Consumer<UpdateAvailabilityZoneChangeProtectionRequest.Builder> updateAvailabilityZoneChangeProtectionRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, ResourceOwnerCheckException, AwsServiceException, SdkClientException, NetworkFirewallException Modifies the
AvailabilityZoneChangeProtectionsetting for a transit gateway-attached firewall. When enabled, this setting prevents accidental changes to the firewall's Availability Zone configuration. This helps protect against disrupting traffic flow in production environments.When enabled, you must disable this protection before using AssociateAvailabilityZones or DisassociateAvailabilityZones to modify the firewall's Availability Zone configuration.
This is a convenience which creates an instance of the
UpdateAvailabilityZoneChangeProtectionRequest.Builderavoiding the need to create one manually viaUpdateAvailabilityZoneChangeProtectionRequest.builder()- Parameters:
updateAvailabilityZoneChangeProtectionRequest- AConsumerthat will call methods onUpdateAvailabilityZoneChangeProtectionRequest.Builderto create a request.- Returns:
- Result of the UpdateAvailabilityZoneChangeProtection operation returned by the service.
- See Also:
-
updateFirewallAnalysisSettings
default UpdateFirewallAnalysisSettingsResponse updateFirewallAnalysisSettings(UpdateFirewallAnalysisSettingsRequest updateFirewallAnalysisSettingsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Enables specific types of firewall analysis on a specific firewall you define.
- Parameters:
updateFirewallAnalysisSettingsRequest-- Returns:
- Result of the UpdateFirewallAnalysisSettings operation returned by the service.
- See Also:
-
updateFirewallAnalysisSettings
default UpdateFirewallAnalysisSettingsResponse updateFirewallAnalysisSettings(Consumer<UpdateFirewallAnalysisSettingsRequest.Builder> updateFirewallAnalysisSettingsRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, AwsServiceException, SdkClientException, NetworkFirewallException Enables specific types of firewall analysis on a specific firewall you define.
This is a convenience which creates an instance of the
UpdateFirewallAnalysisSettingsRequest.Builderavoiding the need to create one manually viaUpdateFirewallAnalysisSettingsRequest.builder()- Parameters:
updateFirewallAnalysisSettingsRequest- AConsumerthat will call methods onUpdateFirewallAnalysisSettingsRequest.Builderto create a request.- Returns:
- Result of the UpdateFirewallAnalysisSettings operation returned by the service.
- See Also:
-
updateFirewallDeleteProtection
default UpdateFirewallDeleteProtectionResponse updateFirewallDeleteProtection(UpdateFirewallDeleteProtectionRequest updateFirewallDeleteProtectionRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, ResourceOwnerCheckException, AwsServiceException, SdkClientException, NetworkFirewallException Modifies the flag,
DeleteProtection, which indicates whether it is possible to delete the firewall. If the flag is set toTRUE, the firewall is protected against deletion. This setting helps protect against accidentally deleting a firewall that's in use.- Parameters:
updateFirewallDeleteProtectionRequest-- Returns:
- Result of the UpdateFirewallDeleteProtection operation returned by the service.
- See Also:
-
updateFirewallDeleteProtection
default UpdateFirewallDeleteProtectionResponse updateFirewallDeleteProtection(Consumer<UpdateFirewallDeleteProtectionRequest.Builder> updateFirewallDeleteProtectionRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, ResourceOwnerCheckException, AwsServiceException, SdkClientException, NetworkFirewallException Modifies the flag,
DeleteProtection, which indicates whether it is possible to delete the firewall. If the flag is set toTRUE, the firewall is protected against deletion. This setting helps protect against accidentally deleting a firewall that's in use.
This is a convenience which creates an instance of the
UpdateFirewallDeleteProtectionRequest.Builderavoiding the need to create one manually viaUpdateFirewallDeleteProtectionRequest.builder()- Parameters:
updateFirewallDeleteProtectionRequest- AConsumerthat will call methods onUpdateFirewallDeleteProtectionRequest.Builderto create a request.- Returns:
- Result of the UpdateFirewallDeleteProtection operation returned by the service.
- See Also:
-
updateFirewallDescription
default UpdateFirewallDescriptionResponse updateFirewallDescription(UpdateFirewallDescriptionRequest updateFirewallDescriptionRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, AwsServiceException, SdkClientException, NetworkFirewallException Modifies the description for the specified firewall. Use the description to help you identify the firewall when you're working with it.
- Parameters:
updateFirewallDescriptionRequest-- Returns:
- Result of the UpdateFirewallDescription operation returned by the service.
- See Also:
-
updateFirewallDescription
default UpdateFirewallDescriptionResponse updateFirewallDescription(Consumer<UpdateFirewallDescriptionRequest.Builder> updateFirewallDescriptionRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, AwsServiceException, SdkClientException, NetworkFirewallException Modifies the description for the specified firewall. Use the description to help you identify the firewall when you're working with it.
This is a convenience which creates an instance of the
UpdateFirewallDescriptionRequest.Builderavoiding the need to create one manually viaUpdateFirewallDescriptionRequest.builder()- Parameters:
updateFirewallDescriptionRequest- AConsumerthat will call methods onUpdateFirewallDescriptionRequest.Builderto create a request.- Returns:
- Result of the UpdateFirewallDescription operation returned by the service.
- See Also:
-
updateFirewallEncryptionConfiguration
default UpdateFirewallEncryptionConfigurationResponse updateFirewallEncryptionConfiguration(UpdateFirewallEncryptionConfigurationRequest updateFirewallEncryptionConfigurationRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, ResourceOwnerCheckException, AwsServiceException, SdkClientException, NetworkFirewallException A complex type that contains settings for encryption of your firewall resources.
- Parameters:
updateFirewallEncryptionConfigurationRequest-- Returns:
- Result of the UpdateFirewallEncryptionConfiguration operation returned by the service.
- See Also:
-
updateFirewallEncryptionConfiguration
default UpdateFirewallEncryptionConfigurationResponse updateFirewallEncryptionConfiguration(Consumer<UpdateFirewallEncryptionConfigurationRequest.Builder> updateFirewallEncryptionConfigurationRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, ResourceOwnerCheckException, AwsServiceException, SdkClientException, NetworkFirewallException A complex type that contains settings for encryption of your firewall resources.
This is a convenience which creates an instance of the
UpdateFirewallEncryptionConfigurationRequest.Builderavoiding the need to create one manually viaUpdateFirewallEncryptionConfigurationRequest.builder()- Parameters:
updateFirewallEncryptionConfigurationRequest- AConsumerthat will call methods onUpdateFirewallEncryptionConfigurationRequest.Builderto create a request.- Returns:
- Result of the UpdateFirewallEncryptionConfiguration operation returned by the service.
- See Also:
-
updateFirewallPolicy
default UpdateFirewallPolicyResponse updateFirewallPolicy(UpdateFirewallPolicyRequest updateFirewallPolicyRequest) throws InvalidRequestException, ResourceNotFoundException, ThrottlingException, InternalServerErrorException, InvalidTokenException, AwsServiceException, SdkClientException, NetworkFirewallException Updates the properties of the specified firewall policy.
- Parameters:
updateFirewallPolicyRequest-- Returns:
- Result of the UpdateFirewallPolicy operation returned by the service.
- See Also:
-
updateFirewallPolicy
default UpdateFirewallPolicyResponse updateFirewallPolicy(Consumer<UpdateFirewallPolicyRequest.Builder> updateFirewallPolicyRequest) throws InvalidRequestException, ResourceNotFoundException, ThrottlingException, InternalServerErrorException, InvalidTokenException, AwsServiceException, SdkClientException, NetworkFirewallException Updates the properties of the specified firewall policy.
This is a convenience which creates an instance of the
UpdateFirewallPolicyRequest.Builderavoiding the need to create one manually viaUpdateFirewallPolicyRequest.builder()- Parameters:
updateFirewallPolicyRequest- AConsumerthat will call methods onUpdateFirewallPolicyRequest.Builderto create a request.- Returns:
- Result of the UpdateFirewallPolicy operation returned by the service.
- See Also:
-
updateFirewallPolicyChangeProtection
default UpdateFirewallPolicyChangeProtectionResponse updateFirewallPolicyChangeProtection(UpdateFirewallPolicyChangeProtectionRequest updateFirewallPolicyChangeProtectionRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, ResourceOwnerCheckException, AwsServiceException, SdkClientException, NetworkFirewallException Modifies the flag,
ChangeProtection, which indicates whether it is possible to change the firewall. If the flag is set toTRUE, the firewall is protected from changes. This setting helps protect against accidentally changing a firewall that's in use.- Parameters:
updateFirewallPolicyChangeProtectionRequest-- Returns:
- Result of the UpdateFirewallPolicyChangeProtection operation returned by the service.
- See Also:
-
updateFirewallPolicyChangeProtection
default UpdateFirewallPolicyChangeProtectionResponse updateFirewallPolicyChangeProtection(Consumer<UpdateFirewallPolicyChangeProtectionRequest.Builder> updateFirewallPolicyChangeProtectionRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, ResourceOwnerCheckException, AwsServiceException, SdkClientException, NetworkFirewallException Modifies the flag,
ChangeProtection, which indicates whether it is possible to change the firewall. If the flag is set toTRUE, the firewall is protected from changes. This setting helps protect against accidentally changing a firewall that's in use.
This is a convenience which creates an instance of the
UpdateFirewallPolicyChangeProtectionRequest.Builderavoiding the need to create one manually viaUpdateFirewallPolicyChangeProtectionRequest.builder()- Parameters:
updateFirewallPolicyChangeProtectionRequest- AConsumerthat will call methods onUpdateFirewallPolicyChangeProtectionRequest.Builderto create a request.- Returns:
- Result of the UpdateFirewallPolicyChangeProtection operation returned by the service.
- See Also:
-
updateLoggingConfiguration
default UpdateLoggingConfigurationResponse updateLoggingConfiguration(UpdateLoggingConfigurationRequest updateLoggingConfigurationRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, LogDestinationPermissionException, AwsServiceException, SdkClientException, NetworkFirewallException Sets the logging configuration for the specified firewall.
To change the logging configuration, retrieve the LoggingConfiguration by calling DescribeLoggingConfiguration, then change it and provide the modified object to this update call. You must change the logging configuration one LogDestinationConfig at a time inside the retrieved LoggingConfiguration object.
You can perform only one of the following actions in any call to
UpdateLoggingConfiguration:-
Create a new log destination object by adding a single
LogDestinationConfigarray element toLogDestinationConfigs. -
Delete a log destination object by removing a single
LogDestinationConfigarray element fromLogDestinationConfigs. -
Change the
LogDestinationsetting in a singleLogDestinationConfigarray element.
You can't change the
LogDestinationTypeorLogTypein aLogDestinationConfig. To change these settings, delete the existingLogDestinationConfigobject and create a new one, using two separate calls to this update operation.- Parameters:
updateLoggingConfigurationRequest-- Returns:
- Result of the UpdateLoggingConfiguration operation returned by the service.
- See Also:
-
-
updateLoggingConfiguration
default UpdateLoggingConfigurationResponse updateLoggingConfiguration(Consumer<UpdateLoggingConfigurationRequest.Builder> updateLoggingConfigurationRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, LogDestinationPermissionException, AwsServiceException, SdkClientException, NetworkFirewallException Sets the logging configuration for the specified firewall.
To change the logging configuration, retrieve the LoggingConfiguration by calling DescribeLoggingConfiguration, then change it and provide the modified object to this update call. You must change the logging configuration one LogDestinationConfig at a time inside the retrieved LoggingConfiguration object.
You can perform only one of the following actions in any call to
UpdateLoggingConfiguration:-
Create a new log destination object by adding a single
LogDestinationConfigarray element toLogDestinationConfigs. -
Delete a log destination object by removing a single
LogDestinationConfigarray element fromLogDestinationConfigs. -
Change the
LogDestinationsetting in a singleLogDestinationConfigarray element.
You can't change the
LogDestinationTypeorLogTypein aLogDestinationConfig. To change these settings, delete the existingLogDestinationConfigobject and create a new one, using two separate calls to this update operation.
This is a convenience which creates an instance of the
UpdateLoggingConfigurationRequest.Builderavoiding the need to create one manually viaUpdateLoggingConfigurationRequest.builder()- Parameters:
updateLoggingConfigurationRequest- AConsumerthat will call methods onUpdateLoggingConfigurationRequest.Builderto create a request.- Returns:
- Result of the UpdateLoggingConfiguration operation returned by the service.
- See Also:
-
-
updateRuleGroup
default UpdateRuleGroupResponse updateRuleGroup(UpdateRuleGroupRequest updateRuleGroupRequest) throws ResourceNotFoundException, InvalidRequestException, ThrottlingException, InternalServerErrorException, InvalidTokenException, AwsServiceException, SdkClientException, NetworkFirewallException Updates the rule settings for the specified rule group. You use a rule group by reference in one or more firewall policies. When you modify a rule group, you modify all firewall policies that use the rule group.
To update a rule group, first call DescribeRuleGroup to retrieve the current RuleGroup object, update the object as needed, and then provide the updated object to this call.
- Parameters:
updateRuleGroupRequest-- Returns:
- Result of the UpdateRuleGroup operation returned by the service.
- See Also:
-
updateRuleGroup
default UpdateRuleGroupResponse updateRuleGroup(Consumer<UpdateRuleGroupRequest.Builder> updateRuleGroupRequest) throws ResourceNotFoundException, InvalidRequestException, ThrottlingException, InternalServerErrorException, InvalidTokenException, AwsServiceException, SdkClientException, NetworkFirewallException Updates the rule settings for the specified rule group. You use a rule group by reference in one or more firewall policies. When you modify a rule group, you modify all firewall policies that use the rule group.
To update a rule group, first call DescribeRuleGroup to retrieve the current RuleGroup object, update the object as needed, and then provide the updated object to this call.
This is a convenience which creates an instance of the
UpdateRuleGroupRequest.Builderavoiding the need to create one manually viaUpdateRuleGroupRequest.builder()- Parameters:
updateRuleGroupRequest- AConsumerthat will call methods onUpdateRuleGroupRequest.Builderto create a request.- Returns:
- Result of the UpdateRuleGroup operation returned by the service.
- See Also:
-
updateSubnetChangeProtection
default UpdateSubnetChangeProtectionResponse updateSubnetChangeProtection(UpdateSubnetChangeProtectionRequest updateSubnetChangeProtectionRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, ResourceOwnerCheckException, AwsServiceException, SdkClientException, NetworkFirewallException - Parameters:
updateSubnetChangeProtectionRequest-- Returns:
- Result of the UpdateSubnetChangeProtection operation returned by the service.
- See Also:
-
updateSubnetChangeProtection
default UpdateSubnetChangeProtectionResponse updateSubnetChangeProtection(Consumer<UpdateSubnetChangeProtectionRequest.Builder> updateSubnetChangeProtectionRequest) throws InvalidRequestException, InternalServerErrorException, ResourceNotFoundException, ThrottlingException, InvalidTokenException, ResourceOwnerCheckException, AwsServiceException, SdkClientException, NetworkFirewallException
This is a convenience which creates an instance of the
UpdateSubnetChangeProtectionRequest.Builderavoiding the need to create one manually viaUpdateSubnetChangeProtectionRequest.builder()- Parameters:
updateSubnetChangeProtectionRequest- AConsumerthat will call methods onUpdateSubnetChangeProtectionRequest.Builderto create a request.- Returns:
- Result of the UpdateSubnetChangeProtection operation returned by the service.
- See Also:
-
updateTLSInspectionConfiguration
default UpdateTlsInspectionConfigurationResponse updateTLSInspectionConfiguration(UpdateTlsInspectionConfigurationRequest updateTlsInspectionConfigurationRequest) throws InvalidRequestException, ResourceNotFoundException, ThrottlingException, InternalServerErrorException, InvalidTokenException, AwsServiceException, SdkClientException, NetworkFirewallException Updates the TLS inspection configuration settings for the specified TLS inspection configuration. You use a TLS inspection configuration by referencing it in one or more firewall policies. When you modify a TLS inspection configuration, you modify all firewall policies that use the TLS inspection configuration.
To update a TLS inspection configuration, first call DescribeTLSInspectionConfiguration to retrieve the current TLSInspectionConfiguration object, update the object as needed, and then provide the updated object to this call.
- Parameters:
updateTlsInspectionConfigurationRequest-- Returns:
- Result of the UpdateTLSInspectionConfiguration operation returned by the service.
- See Also:
-
updateTLSInspectionConfiguration
default UpdateTlsInspectionConfigurationResponse updateTLSInspectionConfiguration(Consumer<UpdateTlsInspectionConfigurationRequest.Builder> updateTlsInspectionConfigurationRequest) throws InvalidRequestException, ResourceNotFoundException, ThrottlingException, InternalServerErrorException, InvalidTokenException, AwsServiceException, SdkClientException, NetworkFirewallException Updates the TLS inspection configuration settings for the specified TLS inspection configuration. You use a TLS inspection configuration by referencing it in one or more firewall policies. When you modify a TLS inspection configuration, you modify all firewall policies that use the TLS inspection configuration.
To update a TLS inspection configuration, first call DescribeTLSInspectionConfiguration to retrieve the current TLSInspectionConfiguration object, update the object as needed, and then provide the updated object to this call.
This is a convenience which creates an instance of the
UpdateTlsInspectionConfigurationRequest.Builderavoiding the need to create one manually viaUpdateTlsInspectionConfigurationRequest.builder()- Parameters:
updateTlsInspectionConfigurationRequest- AConsumerthat will call methods onUpdateTlsInspectionConfigurationRequest.Builderto create a request.- Returns:
- Result of the UpdateTLSInspectionConfiguration operation returned by the service.
- See Also:
-
create
Create aNetworkFirewallClientwith the region loaded from theDefaultAwsRegionProviderChainand credentials loaded from theDefaultCredentialsProvider. -
builder
Create a builder that can be used to configure and create aNetworkFirewallClient. -
serviceMetadata
-
serviceClientConfiguration
Description copied from interface:SdkClientThe SDK service client configuration exposes client settings to the user, e.g., ClientOverrideConfiguration- Specified by:
serviceClientConfigurationin interfaceAwsClient- Specified by:
serviceClientConfigurationin interfaceSdkClient- Returns:
- SdkServiceClientConfiguration
-