GoogleNetworkSecurityGatewaySecurityPolicyRule class final

Factory wrapper for google_network_security_gateway_security_policy_rule.

The GatewaySecurityPolicyRule resource is in a nested collection within a GatewaySecurityPolicy and represents a traffic matching condition and associated action to perform.

Network Security gateway security policy rule — a CEL session matcher plus ALLOW/DENY on a GoogleNetworkSecurityGatewaySecurityPolicy.

Creating a rule does not provision a Secure Web Proxy gateway or inspect live traffic. Data-plane SKUs fire only when an SWP gateway is attached and processes bytes.

Enable networksecurity.googleapis.com via GoogleProjectService before apply. Location must match the parent policy.

Example:

GoogleNetworkSecurityGatewaySecurityPolicyRule(
  'allow_example',
  name: TfArg.literal('terradart-allow-example'),
  location: TfArg.literal('us-central1'),
  gatewaySecurityPolicy: policy.ref,
  enabled: TfArg.literal(true),
  priority: TfArg.literal(1),
  sessionMatcher: TfArg.literal("host() == 'example.com'"),
  basicProfile: NetworkSecurityGatewaySecurityPolicyRuleBasicProfile.allow,
);
Inheritance

Constructors

GoogleNetworkSecurityGatewaySecurityPolicyRule(String localName, {required TfArg<String> name, required TfArg<String> location, required RefTo<GoogleNetworkSecurityGatewaySecurityPolicy> gatewaySecurityPolicy, required TfArg<bool> enabled, required TfArg<num> priority, required TfArg<String> sessionMatcher, required NetworkSecurityGatewaySecurityPolicyRuleBasicProfile basicProfile, TfArg<String>? applicationMatcher, TfArg<String>? description, TfArg<bool>? tlsInspectionEnabled, TfArg<String>? deletionPolicy, TfArg<String>? project, LifecycleOptions? lifecycle, List<TfAddressed>? dependsOn, StackProvider? provider, TfTimeouts? timeouts})

Properties

applicationMatcher → TfRef<String>
Reference to application_matcher attribute.
no setter
argMap → Map<String, TfArg?>
Argument-name → TfArg map. Keys are snake_case (Terraform JSON name). Synth emits these keys directly; the factory is responsible for the camelCase → snake_case translation at construction time.
finalinherited
basicProfile → TfRef<String>
Reference to basic_profile attribute.
no setter
createTime → TfRef<String>
Reference to create_time attribute.
no setter
defaultProvider → String
The provider name a block without provider uses: by default the prefix of terraformType (google for google_pubsub_topic).
no setterinherited
deletionPolicy → TfRef<String>
Reference to deletion_policy attribute.
no setter
dependsOn → List<TfAddressed>?
Optional depends_on = [...]: the resources, data sources and module calls this block waits for, e.g. dependsOn: [api, ...apiDeps]. Terraform takes whole blocks only, so an entry is never an attribute.
finalinherited
description → TfRef<String>
Reference to description attribute.
no setter
enabled → TfRef<bool>
Reference to enabled attribute.
no setter
gatewaySecurityPolicy → TfRef<String>
Reference to gateway_security_policy attribute.
no setter
hashCode → int
The hash code for this object.
no setterinherited
id → TfRef<String>
Reference to id attribute.
no setter
kind → ResourceKind
Always ResourceKind.resource. Overridden by Data.
no setterinherited
lifecycle → LifecycleOptions?
Optional lifecycle { ... } block.
finalinherited
localName → String
User-supplied local name within a Stack.
finalinherited
location → TfRef<String>
Reference to location attribute.
no setter
name → TfRef<String>
Reference to name attribute.
no setter
priority → TfRef<num>
Reference to priority attribute.
no setter
project → TfRef<String>
Reference to project attribute.
no setter
provider → StackProvider?
Optional Terraform provider meta-argument: the provider configuration this block uses, e.g. the aliased GoogleProvider(alias: 'eu') the Stack registered with addProvider.
finalinherited
ref → RefTo<GoogleNetworkSecurityGatewaySecurityPolicyRule>
A reference to this resource, for arguments typed RefTo<GoogleNetworkSecurityGatewaySecurityPolicyRule>.
no setter
runtimeType → Type
A representation of the runtime type of the object.
no setterinherited
Reference to self_link attribute.
no setter
sensitiveFields → Set<String>
Field names that are @Sensitive per the IR-derived per-resource constant. Curated factories override with a baked-in static const Set<String> (file-private in v0.5+).
no setteroverride
sessionMatcher → TfRef<String>
Reference to session_matcher attribute.
no setter
supportsDeletionProtection → bool
Capability flag: true when this resource's underlying Terraform schema has a deletion_protection boolean attribute that the synth-time devMode flow can flip to false. Defaults to false; the codegen emitter overrides this to true for wrappers whose schema includes the attribute.
no setterinherited
terraformType → String
Terraform resource type, e.g. google_pubsub_topic.
finalinherited
tfAddress → String
Terraform address <terraformType>.<localName>, e.g. google_pubsub_topic.orders.
no setterinherited
timeouts → TfTimeouts?
Optional timeouts { ... } block: how long Terraform waits for each operation. Provider-neutral like lifecycle — synth copies the duration strings verbatim, and terraform validate decides whether this resource's schema declares the operations set here.
finalinherited
tlsInspectionEnabled → TfRef<bool>
Reference to tls_inspection_enabled attribute.
no setter
updateTime → TfRef<String>
Reference to update_time attribute.
no setter

Methods

noSuchMethod(Invocation invocation) → dynamic
Invoked when a nonexistent method or property is accessed.
inherited
toString() → String
A string representation of this object.
inherited

Operators

operator ==(Object other) → bool
The equality operator.
inherited

Constants

tfType → const String