ansible.builtin.panos_sag (v2.5.10) — module

Create a static address group.

| "added in version" 2.4 of ansible.builtin"

Authors: Vinay Venkataraghavan @vinayvenkat

preview | supported by community

Install Ansible via pip

Install with pip install ansible==2.5.10

Description

Create a static address group object in the firewall used for policy rules.


Requirements

Usage examples

  • Success
    Steampunk Spotter scan finished with no errors, warnings or hints.
- name: sag
  panos_sag:
    ip_address: "192.168.1.1"
    password: "admin"
    sag_name: "sag-1"
    static_value: ['test-addresses', ]
    description: "A description for the static address group"
    tags: ["tags to be associated with the group", ]

Inputs

    
tags:
    default: null
    description:
    - Tags to be associated with the address group
    required: false

commit:
    default: true
    description:
    - commit if changed
    required: false

api_key:
    description:
    - API key that can be used instead of I(username)/I(password) credentials.

password:
    default: null
    description:
    - password for authentication
    required: true

sag_name:
    default: null
    description:
    - name of the dynamic address group
    required: true

username:
    default: admin
    description:
    - username for authentication
    required: false

operation:
    default: null
    description:
    - The operation to perform Supported values are I(add)/I(list)/I(delete).
    required: true

ip_address:
    default: null
    description:
    - IP address (or hostname) of PAN-OS device
    required: true

description:
    default: null
    description:
    - The purpose / objective of the static Address Group
    required: false

devicegroup:
    default: None
    description: '- The name of the Panorama device group. The group must exist on Panorama.
      If device group is not defined it is assumed that we are contacting a firewall.

      '
    required: false

static_match_filter:
    default: null
    description:
    - Static filter user by the address group
    required: true