Revokes the permission that allows a transit router to connect to a cross-account network instance.
Operation description
The RevokeInstanceFromTransitRouter operation only supports revoking the permission that allows a transit router to connect to cross-account virtual private cloud (VPC) instances, virtual border router (VBR) instances, IPsec connections, and Express Connect Router (ECR) instances.
To revoke the permission that allows a transit router to connect to a cross-account Cloud Connect Network (CCN) instance, call the RevokeInstanceFromCbn operation.
Before you begin
Before you call the RevokeInstanceFromTransitRouter operation, make sure that the connection between the transit router and the VPC-connected instance is deleted.
To delete the connection between an Enterprise Edition transit router and a VPC instance, see DeleteTransitRouterVpcAttachment.
To delete the connection between an Enterprise Edition transit router and a VBR instance, see DeleteTransitRouterVbrAttachment.
To delete the connection between an Enterprise Edition transit router and an IPsec connection, see DeleteTransitRouterVpnAttachment.
To delete the connection between an Enterprise Edition transit router and an ECR instance, see DeleteTransitRouterEcrAttachment.
To delete the connection between a Basic Edition transit router and a VPC-connected instance, see DetachCenChildInstance.
Try it now
Test
RAM authorization
|
Action |
Access level |
Resource type |
Condition key |
Dependent action |
|
cen:RevokeInstanceFromTransitRouter |
delete |
*All Resource
|
None | None |
Request parameters
|
Parameter |
Type |
Required |
Description |
Example |
| CenId |
string |
Yes |
The ID of the Cloud Enterprise Network (CEN) instance to which the transit router belongs. |
cen-44m0p68spvlrqq**** |
| InstanceId |
string |
Yes |
The network instance ID. |
vpc-bp1h8vbrbcgohcju5**** |
| InstanceType |
string |
Yes |
The type of the network instance. Valid values:
|
VPC |
| RegionId |
string |
No |
The region ID of the network instance. You can call the DescribeChildInstanceRegions operation to query region IDs. |
cn-hangzhou |
| CenOwnerId |
integer |
Yes |
The ID of the Alibaba Cloud account to which the CEN instance belongs. |
1250123456123456 |
Response elements
|
Element |
Type |
Description |
Example |
|
object |
The response parameters. |
||
| RequestId |
string |
The request ID. |
AA4BFFD1-5090-5896-935F-4B353557F1A8 |
Examples
Success response
JSON format
{
"RequestId": "AA4BFFD1-5090-5896-935F-4B353557F1A8"
}
Error codes
|
HTTP status code |
Error code |
Error message |
Description |
|---|---|---|---|
| 400 | IncorrectStatus.Cen | The status of Cen is incorrect. | The error message returned because the status of the specified CEN instance does not support this operation. Try again later. |
| 400 | OperationDenied.AttachmentExist | Operation is not allowed because the specified instance has already been attached to CEN. | Operation is not allowed because the specified instance has already been attached to CEN. |
| 400 | InvalidParameter | Invalid parameter. | The error message returned because the parameter is set to an invalid value. |
| 400 | Unauthorized | The AccessKeyId is unauthorized. | The error message returned because you do not have the permissions to perform this operation. |
| 400 | InvalidParameter.CenId | The specified parameter CenId is invalid. |
See Error Codes for a complete list.
Release notes
See Release Notes for a complete list.