ansible / ansible.builtin / v2.8.11 / module / avi_wafpolicy Module for setup of WafPolicy Avi RESTful Object | "added in version" 2.5 of ansible.builtin" Authors: Gaurav Rastogi (@grastogi23) <grastogi@avinetworks.com> preview | supported by communityansible.builtin.avi_wafpolicy (v2.8.11) — module
pip
Install with pip install ansible==2.8.11
This module is used to configure WafPolicy object
more examples at U(https://github.com/avinetworks/devops)
- name: Example to create WafPolicy object avi_wafpolicy: controller: 10.10.25.42 username: admin password: something state: present name: sample_wafpolicy
url: description: - Avi controller URL of the object. mode: description: - Waf policy mode. - This can be detection or enforcement. - Enum options - WAF_MODE_DETECTION_ONLY, WAF_MODE_ENFORCEMENT. - Field introduced in 17.2.1. - Default value when not specified in API or module is interpreted by Avi Controller as WAF_MODE_DETECTION_ONLY. required: true name: description: - Field introduced in 17.2.1. required: true uuid: description: - Field introduced in 17.2.1. state: choices: - absent - present default: present description: - The state that should be applied on the entity. tenant: default: admin description: - Name of tenant used for all Avi API calls and context of object. type: str password: default: '' description: - Password of Avi user in Avi controller. The default value is the environment variable C(AVI_PASSWORD). type: str username: default: '' description: - Username used for accessing Avi controller. The default value is the environment variable C(AVI_USERNAME). type: str controller: default: '' description: - IP address or hostname of the controller. The default value is the environment variable C(AVI_CONTROLLER). type: str created_by: description: - Creator name. - Field introduced in 17.2.4. crs_groups: description: - Waf rules are categorized in to groups based on their characterization. - These groups are system created with crs groups. - Field introduced in 17.2.1. tenant_ref: description: - It is a reference to an object of type tenant. - Field introduced in 17.2.1. api_context: description: - Avi API context that includes current session ID and CSRF Token. - This allows user to perform single login and re-use the session. type: dict api_version: default: 16.4.4 description: - Avi API version of to use for Avi API and objects. type: str description: description: - Field introduced in 17.2.1. tenant_uuid: default: '' description: - UUID of tenant used for all Avi API calls and context of object. type: str paranoia_level: description: - Waf ruleset paranoia mode. - This is used to select rules based on the paranoia-level tag. - Enum options - WAF_PARANOIA_LEVEL_LOW, WAF_PARANOIA_LEVEL_MEDIUM, WAF_PARANOIA_LEVEL_HIGH, WAF_PARANOIA_LEVEL_EXTREME. - Field introduced in 17.2.1. - Default value when not specified in API or module is interpreted by Avi Controller as WAF_PARANOIA_LEVEL_LOW. pre_crs_groups: description: - Waf rules are categorized in to groups based on their characterization. - These groups are created by the user and will be enforced before the crs groups. - Field introduced in 17.2.1. avi_credentials: description: - Avi Credentials dictionary which can be used in lieu of enumerating Avi Controller login details. suboptions: api_version: default: 16.4.4 description: - Avi controller version controller: description: - Avi controller IP or SQDN csrftoken: description: - Avi controller API csrftoken to reuse existing session with session id password: description: - Avi controller password port: description: - Avi controller port session_id: description: - Avi controller API session id to reuse existing session with csrftoken tenant: default: admin description: - Avi controller tenant tenant_uuid: description: - Avi controller tenant UUID timeout: default: 300 description: - Avi controller request timeout token: description: - Avi controller API token username: description: - Avi controller username type: dict post_crs_groups: description: - Waf rules are categorized in to groups based on their characterization. - These groups are created by the user and will be enforced after the crs groups. - Field introduced in 17.2.1. waf_profile_ref: description: - Waf profile for waf policy. - It is a reference to an object of type wafprofile. - Field introduced in 17.2.1. required: true avi_api_patch_op: choices: - add - replace - delete description: - Patch operation to use when using avi_api_update_method as patch. version_added: '2.5' version_added_collection: ansible.builtin avi_api_update_method: choices: - put - patch default: put description: - Default method for object update is HTTP PUT. - Setting to patch will override that behavior to use HTTP PATCH. version_added: '2.5' version_added_collection: ansible.builtin avi_disable_session_cache_as_fact: default: false description: - It disables avi session information to be cached as a fact. type: bool
obj: description: WafPolicy (api/wafpolicy) object returned: success, changed type: dict