Adds IP entries to an access control list (ACL).
Operation description
-
Each ACL can contain IP addresses or CIDR blocks. The following limits apply:
-
Maximum IP entries that can be added per request per account: 20
-
Maximum IP entries per ACL: 1,000
-
-
AddEntriesToAcl is an asynchronous operation. After a request is sent, the system returns a request ID and runs the task in the background. Call the ListAclEntries operation to query the task status.
-
If the ACL is in the Adding state, the IP entries are being added.
-
If the ACL is in the Available state, the IP entries are added.
-
Try it now
Test
RAM authorization
|
Action |
Access level |
Resource type |
Condition key |
Dependent action |
|
alb:AddEntriesToAcl |
create |
*Acl
|
None | None |
Request parameters
|
Parameter |
Type |
Required |
Description |
Example |
| AclId |
string |
Yes |
The ID of the ACL. |
nacl-hp34s2h0xx1ht4nwo**** |
| AclEntries |
array<object> |
Yes |
The ACL entries that you want to add. You can add at most 20 entries in each call. |
|
|
object |
No |
The ACL entry. |
||
| Description |
string |
No |
The description of the ACL entry. The description must be 2 to 256 characters in length, and can contain letters, digits, commas (,), periods (.), semicolons (;), forward slashes (/), at signs (@), underscores (_), and hyphens (-). You can add at most 20 entries in each call. |
test-entry |
| Entry |
string |
Yes |
The CIDR block in the ACL entry. |
10.0.1.0/24 |
| ClientToken |
string |
No |
The client token used to ensure the idempotence of the request. You can use the client to generate the token, but the token must be unique across requests. The token can contain only ASCII characters. Note
If you do not specify this parameter, the system automatically uses the request ID as the client token. The request ID may be different for each request. |
5A2CFF0E-5718-45B5-9D4D-70B3FF3898 |
| DryRun |
boolean |
No |
Specifies whether to perform only a dry run without performing the actual request. Valid values:
|
false |
Response elements
|
Element |
Type |
Description |
Example |
|
object |
The response parameters. |
||
| JobId |
string |
The asynchronous task ID. |
72dcd26b-f12d-4c27-b3af-18f6aed5**** |
| RequestId |
string |
The request ID. |
365F4154-92F6-4AE4-92F8-7FF34B540710 |
Examples
Success response
JSON format
{
"JobId": "72dcd26b-f12d-4c27-b3af-18f6aed5****",
"RequestId": "365F4154-92F6-4AE4-92F8-7FF34B540710"
}
Error codes
|
HTTP status code |
Error code |
Error message |
Description |
|---|---|---|---|
| 400 | ResourceAlreadyExist.AclEntry | The specified resource %s already exists. | |
| 400 | ResourceQuotaExceeded.AclEntriesNum | The quota of %s is exceeded for resource %s, usage %s/%s. | |
| 400 | IncorrectStatus.Acl | The status of %s [%s] is incorrect. | |
| 400 | ResourceQuotaExceeded.ListenerAclEntriesNum | The quota of %s is exceeded for resource %s, usage %s/%s. | The quota of %s is exceeded for resource %s, usage %s/%s. |
| 400 | ResourceQuotaExceeded.LoadBalancerAclEntriesNum | The quota of %s is exceeded for resource %s, usage %s/%s. | The quota of %s is exceeded for resource %s, usage %s/%s. |
| 404 | ResourceNotFound.Acl | The specified resource %s is not found. |
See Error Codes for a complete list.
Release notes
See Release Notes for a complete list.