Skip to main content

network_acls

Creates, updates, deletes or gets a network_acl resource or lists network_acls in a region

Overview

Namenetwork_acls
TypeResource
DescriptionSpecifies a network ACL for your VPC.
Idaws.ec2.network_acls

Fields

NameDatatypeDescription
idstring
tagsarrayThe tags for the network ACL.
vpc_idstringThe ID of the VPC for the network ACL.
regionstringAWS region.

Methods

NameAccessible byRequired Params
create_resourceINSERTVpcId, region
delete_resourceDELETEdata__Identifier, region
update_resourceUPDATEdata__Identifier, data__PatchDocument, region
list_resourcesSELECTregion
get_resourceSELECTdata__Identifier, region

SELECT examples

Gets all network_acls in a region.

SELECT
region,
id,
tags,
vpc_id
FROM aws.ec2.network_acls
WHERE region = 'us-east-1';

Gets all properties from an individual network_acl.

SELECT
region,
id,
tags,
vpc_id
FROM aws.ec2.network_acls
WHERE region = 'us-east-1' AND data__Identifier = '<Id>';

INSERT example

Use the following StackQL query and manifest file to create a new network_acl resource, using stack-deploy.

/*+ create */
INSERT INTO aws.ec2.network_acls (
VpcId,
region
)
SELECT
'{{ VpcId }}',
'{{ region }}';

DELETE example

/*+ delete */
DELETE FROM aws.ec2.network_acls
WHERE data__Identifier = '<Id>'
AND region = 'us-east-1';

Permissions

To operate on the network_acls resource, the following permissions are required:

Create

ec2:CreateNetworkAcl,
ec2:DescribeNetworkAcls,
ec2:CreateTags

Read

ec2:DescribeNetworkAcls,
ec2:DescribeTags

Update

ec2:DescribeNetworkAcls,
ec2:DeleteTags,
ec2:CreateTags

Delete

ec2:DeleteTags,
ec2:DeleteNetworkAcl,
ec2:DescribeNetworkAcls

List

ec2:DescribeNetworkAcls