Queries a list of network ACLs by calling the DescribeNetworkAcls operation.
Try it now
Test
RAM authorization
|
Action |
Access level |
Resource type |
Condition key |
Dependent action |
|
vpc:DescribeNetworkAcls |
list |
*NetworkAcl
|
None | None |
Request parameters
|
Parameter |
Type |
Required |
Description |
Example |
| NetworkAclId |
string |
No |
The ID of the network ACL. |
nacl-bp1lhl0taikrbgnh**** |
| NetworkAclName |
string |
No |
The name of the network ACL. The name must be 1 to 128 characters in length and cannot start with |
acl-1 |
| VpcId |
string |
No |
The ID of the VPC associated with the network ACL. |
vpc-m5ebpc2xh64mqm27e**** |
| ResourceType |
string |
No |
The type of the associated resource. Valid values: VSwitch: vSwitch. The ResourceType and ResourceId parameters must be specified together to take effect. |
VSwitch |
| ResourceId |
string |
No |
The ID of the associated resource. |
vsw-bp1de348lntdwnhbg**** |
| PageNumber |
integer |
No |
The page number of the list. Default value: 1. |
1 |
| PageSize |
integer |
No |
The number of entries per page in a paged query. Maximum value: 50. Default value: 10. |
10 |
| RegionId |
string |
Yes |
The region ID of the network ACL. You can call the DescribeRegions operation to query the region ID. |
cn-hangzhou |
| Tags |
array<object> |
No |
The tags. |
|
|
object |
No |
The tags. |
||
| Key |
string |
No |
The tag key of the resource. You can specify up to 20 tag keys. The tag key cannot be an empty string. A tag key can be up to 128 characters in length and cannot start with |
FinanceDept |
| Value |
string |
No |
The tag value of the resource. You can specify up to 20 tag values. The tag value can be an empty string. The tag value can be up to 128 characters in length and cannot start with |
FinanceJoshua |
| RegionId |
string |
Yes |
The region ID of the network ACL. You can call the DescribeRegions operation to query the region ID. |
cn-hangzhou |
| ClientToken |
string |
No |
The client token that is used to ensure the idempotence of the request. Generate a parameter value from your client to ensure uniqueness across different requests. ClientToken supports only ASCII characters. Note
If you do not specify this parameter, the system uses the RequestId of the API request as the ClientToken. The RequestId may differ for each API request. |
123e4567-e89b-12d3-a456-426655440000 |
Response elements
|
Element |
Type |
Description |
Example |
|
object |
|||
| PageSize |
string |
The number of entries per page in a paging query. |
10 |
| RequestId |
string |
The request ID. |
F7DDDC17-FA06-4AC2-8F35-59D2470FCFC1 |
| PageNumber |
string |
The page number of the list. |
1 |
| TotalCount |
string |
The total number of network ACLs in the list. |
2 |
| NetworkAcls |
object |
||
| NetworkAcl |
array<object> |
The details of the network ACL. |
|
|
array<object> |
The details of the network ACL. |
||
| Status |
string |
The status of the network ACL. Valid values:
|
Available |
| VpcId |
string |
The ID of the associated VPC. |
vpc-m5ebpc2xh64mqm27e**** |
| CreationTime |
string |
The time when the network ACL was created. |
2021-12-25 11:44:17 |
| Description |
string |
The description of the network ACL. |
This is my NetworkAcl. |
| NetworkAclName |
string |
The name of the network ACL. |
acl-1 |
| NetworkAclId |
string |
The ID of the network ACL. |
nacl-a2do9e413e0spxscd**** |
| OwnerId |
integer |
The ID of the Alibaba Cloud account to which the network ACL belongs. |
253460731706911258 |
| RegionId |
string |
The region ID of the network ACL. |
cn-hangzhou |
| IngressAclEntries |
object |
||
| IngressAclEntry |
array<object> |
The configurations of the inbound rules. |
|
|
object |
|||
| NetworkAclEntryId |
string |
The ID of the inbound rule. |
nae-a2dk86arlydmezasw**** |
| EntryType |
string |
The type of the inbound rule.
|
custom |
| NetworkAclEntryName |
string |
The name of the inbound rule. |
acl-3 |
| Policy |
string |
The action to be performed on network traffic that matches the rule. Valid values:
|
accept |
| Description |
string |
The description of the inbound rule. |
This is IngressAclEntries. |
| SourceCidrIp |
string |
The source CIDR block. |
10.0.0.0/24 |
| IpVersion |
string |
The IP version.
|
IPv4 |
| Protocol |
string |
The protocol. Valid values:
|
all |
| Port |
string |
The destination port range of the inbound traffic.
|
-1/-1 |
| EgressAclEntries |
object |
||
| EgressAclEntry |
array<object> |
The outbound rules. |
|
|
object |
|||
| NetworkAclEntryId |
string |
The ID of the outbound rule. |
nae-a2d447uw4tillfvgb**** |
| EntryType |
string |
The type of the inbound rule.
|
custom |
| NetworkAclEntryName |
string |
The name of the outbound rule. |
acl-2 |
| Policy |
string |
The action to be performed on network traffic that matches the rule. Valid values:
|
accept |
| Description |
string |
The description of the outbound rule. |
This is EgressAclEntries. |
| Protocol |
string |
The protocol. Valid values:
|
all |
| DestinationCidrIp |
string |
The destination CIDR block. |
10.0.0.0/24 |
| IpVersion |
string |
The IP version.
|
IPv4 |
| Port |
string |
The destination port range of the outbound traffic.
|
-1/-1 |
| Resources |
object |
||
| Resource |
array<object> |
The resources that are associated with the network ACL. |
|
|
object |
|||
| Status |
string |
The association status of the resource. Valid values:
|
BINDED |
| ResourceType |
string |
The type of resource with which you want to associate the network ACL. |
VSwitch |
| ResourceId |
string |
The ID of the associated resource. |
vsw-bp1de348lntdwcdf**** |
| Tags |
object |
||
| Tag |
array<object> |
The information about the tags. |
|
|
object |
|||
| Key |
string |
The key of tag N added to the resource. |
FinanceDept |
| Value |
string |
The value of tag N added to the resource. |
FinanceJoshua |
Examples
Success response
JSON format
{
"PageSize": "10",
"RequestId": "F7DDDC17-FA06-4AC2-8F35-59D2470FCFC1",
"PageNumber": "1",
"TotalCount": "2",
"NetworkAcls": {
"NetworkAcl": [
{
"Status": "Available",
"VpcId": "vpc-m5ebpc2xh64mqm27e****",
"CreationTime": "2021-12-25 11:44:17",
"Description": "This is my NetworkAcl.",
"NetworkAclName": "acl-1",
"NetworkAclId": "nacl-a2do9e413e0spxscd****",
"OwnerId": 253460731706911260,
"RegionId": "cn-hangzhou",
"IngressAclEntries": {
"IngressAclEntry": [
{
"NetworkAclEntryId": "nae-a2dk86arlydmezasw****",
"EntryType": "custom",
"NetworkAclEntryName": "acl-3\t",
"Policy": "accept",
"Description": "This is IngressAclEntries.",
"SourceCidrIp": "10.0.0.0/24\t",
"IpVersion": "IPv4",
"Protocol": "all",
"Port": "-1/-1\t"
}
]
},
"EgressAclEntries": {
"EgressAclEntry": [
{
"NetworkAclEntryId": "nae-a2d447uw4tillfvgb****",
"EntryType": "custom",
"NetworkAclEntryName": "acl-2\t",
"Policy": "accept",
"Description": "This is EgressAclEntries.",
"Protocol": "all",
"DestinationCidrIp": "10.0.0.0/24\t",
"IpVersion": "IPv4",
"Port": "-1/-1\t"
}
]
},
"Resources": {
"Resource": [
{
"Status": "BINDED",
"ResourceType": "VSwitch",
"ResourceId": "vsw-bp1de348lntdwcdf****"
}
]
},
"Tags": {
"Tag": [
{
"Key": "FinanceDept",
"Value": "FinanceJoshua"
}
]
}
}
]
}
}
Error codes
|
HTTP status code |
Error code |
Error message |
Description |
|---|---|---|---|
| 400 | ParameterMissing.AliUid | ParameterMissing.AliUid | |
| 400 | ParameterMissing.Bid | ParameterMissing.Bid | |
| 400 | ParameterMissing.RegionId | ParameterMissing.RegionId | |
| 400 | ParameterEmpty.RegionId | ParameterEmpty.RegionId | |
| 400 | NotSupport.NetworkAcl | Network acl is not support now. | |
| 500 | InternalError | The request processing has failed due to some unknown error. |
See Error Codes for a complete list.
Release notes
See Release Notes for a complete list.