The following table lists the elements that you can use in rules for the edge gateway firewall and the distributed firewall.

See Schema for Edge Gateway Firewall Configuration and Schema for Distributed Firewall Configuration for information about their schemas.

FIREWALL RULE ELEMENTS AND KEYWORDS

Element

Keyword for API

Used In

All edge gateways

ALL_EDGES

appliedToList

Application

Application

service

Application group

ApplicationGroup

service

Data center

Datacenter

source, destination, appliedToList

Distributed firewall

DISTRIBUTED_FIREWALL

appliedToList

Edge gateway ID

Edge

appliedToList

IP set

IPSet

source, destination

IPv4 addresses

IPv4Address

source, destination

IPv6 addresses

IPv6Address

source, destination

MAC set

MACSet

source, destination

Network (vCloud Director organization network)

Network

appliedToList

Virtual machine

VirtualMachine

source, destination, appliedToList

vNIC

Vnic

source, destination, appliedToList

For a description of the components of the rules for the edge gateway firewall and the distributed firewall, see Add an Edge Gateway Firewall Rule and Add a Trust Groups Firewall Rule in the vCloud Air Advanced Networking Services Guide.