| Did this page help you? Yes No Tell us about it... |
Replaces an entry (i.e., rule) in a network ACL. For more information about network ACLs, go to Network ACLs in the Amazon Virtual Private Cloud User Guide.
| Name | Description | Required |
|---|---|---|
|
|
ID of the ACL where the entry will be replaced. Type: String Default: None |
Yes |
|
|
Rule number of the entry to replace. Type: Integer Default: None |
Yes |
|
|
IP protocol the rule applies to. You can use -1 to mean all protocols. Type: Integer Valid Values: |
Yes |
|
|
Whether to allow or deny traffic that matches the rule. Type: String Default: None Valid Values: |
Yes |
Egress
|
Whether this rule applies to egress traffic from the subnet
( Type: Boolean Default: Valid Values: | No |
CidrBlock
|
The CIDR range to allow or deny, in CIDR notation (e.g., 172.16.0.0/24). Type: String Default: None | Yes |
|
|
For the ICMP protocol, the ICMP code. You can use -1 to specify all ICMP codes for the given ICMP type. Type: Integer Default: None Condition: Required if specifying |
Conditional |
|
|
For the ICMP protocol, the ICMP type. You can use -1 to specify all ICMP types. Type: Integer Default: None Condition: Required if specifying |
Conditional |
|
|
The first port in the range. Type: Integer Default: None Condition: Required if specifying |
Conditional |
|
|
The last port in the range. Type: Integer Default: None Condition: Required if specifying |
Conditional |
The elements in the following table are wrapped in a
ReplaceNetworkAclEntryResponse structure.
| Name | Description |
|---|---|
|
|
The ID of the request. Type: String |
|
|
Returns true if the request succeeds. Otherwise, returns an error. Type: xsd:boolean |
This example replaces the egress entry numbered 110 in the network ACL with ID acl-2cb85d45. The new rule denies egress traffic destined for anywhere (0.0.0.0/0) on TCP port 139.
https://ec2.amazonaws.com/?Action=ReplaceNetworkAclEntry &NetworkAclId=acl-2cb85d45 &RuleNumber=110 &Protocol=tcp &RuleAction=deny &Egress=true &CidrBlock=0.0.0.0/0 &PortRange.From=139 &PortRange.To=139 &AUTHPARAMS
<ReplaceNetworkAclEntryResponse xmlns="http://ec2.amazonaws.com/doc/2012-04-01/"> <requestId>59dbff89-35bd-4eac-99ed-be587EXAMPLE</requestId> <return>true</return> </ReplaceNetworkAclEntryResponse>