Class: Google::Apis::AccesscontextmanagerV1::IngressPolicy
- Inherits:
-
Object
- Object
- Google::Apis::AccesscontextmanagerV1::IngressPolicy
- Includes:
- Core::Hashable, Core::JsonObjectSupport
- Defined in:
- lib/google/apis/accesscontextmanager_v1/classes.rb,
lib/google/apis/accesscontextmanager_v1/representations.rb,
lib/google/apis/accesscontextmanager_v1/representations.rb
Overview
Policy for ingress into ServicePerimeter. IngressPolicies match requests based
on ingress_from and ingress_to stanzas. For an ingress policy to match,
both the ingress_from and ingress_to stanzas must be matched. If an
IngressPolicy matches a request, the request is allowed through the perimeter
boundary from outside the perimeter. For example, access from the internet can
be allowed either based on an AccessLevel or, for traffic hosted on Google
Cloud, the project of the source network. For access from private networks,
using the project of the hosting network is required. Individual ingress
policies can be limited by restricting which services and/or actions they
match using the ingress_to field.
Instance Attribute Summary collapse
-
#ingress_from ⇒ Google::Apis::AccesscontextmanagerV1::IngressFrom
Defines the conditions under which an IngressPolicy matches a request.
-
#ingress_to ⇒ Google::Apis::AccesscontextmanagerV1::IngressTo
Defines the conditions under which an IngressPolicy matches a request.
Instance Method Summary collapse
-
#initialize(**args) ⇒ IngressPolicy
constructor
A new instance of IngressPolicy.
-
#update!(**args) ⇒ Object
Update properties of this object.
Constructor Details
#initialize(**args) ⇒ IngressPolicy
Returns a new instance of IngressPolicy.
705 706 707 |
# File 'lib/google/apis/accesscontextmanager_v1/classes.rb', line 705 def initialize(**args) update!(**args) end |
Instance Attribute Details
#ingress_from ⇒ Google::Apis::AccesscontextmanagerV1::IngressFrom
Defines the conditions under which an IngressPolicy matches a request.
Conditions are based on information about the source of the request. The
request must satisfy what is defined in sources AND identity related fields
in order to match.
Corresponds to the JSON property ingressFrom
695 696 697 |
# File 'lib/google/apis/accesscontextmanager_v1/classes.rb', line 695 def ingress_from @ingress_from end |
#ingress_to ⇒ Google::Apis::AccesscontextmanagerV1::IngressTo
Defines the conditions under which an IngressPolicy matches a request.
Conditions are based on information about the ApiOperation intended to be
performed on the target resource of the request. The request must satisfy what
is defined in operations AND resources in order to match.
Corresponds to the JSON property ingressTo
703 704 705 |
# File 'lib/google/apis/accesscontextmanager_v1/classes.rb', line 703 def ingress_to @ingress_to end |
Instance Method Details
#update!(**args) ⇒ Object
Update properties of this object
710 711 712 713 |
# File 'lib/google/apis/accesscontextmanager_v1/classes.rb', line 710 def update!(**args) @ingress_from = args[:ingress_from] if args.key?(:ingress_from) @ingress_to = args[:ingress_to] if args.key?(:ingress_to) end |