1. Registry
  2. Packages
  3. AWS Cloud Control
  4. API Docs
  5. ec2
  6. ClientVpnAuthorizationRule

We recommend new projects start with resources from the AWS provider.

Viewing docs for AWS Cloud Control v1.82.0
published on Monday, Oct 5, 2026 by Pulumi
aws-native logo aws-native logo AWS Cloud Control

We recommend new projects start with resources from the AWS provider.

Viewing docs for AWS Cloud Control v1.82.0
published on Monday, Oct 5, 2026 by Pulumi

    Resource Type definition for AWS::EC2::ClientVpnAuthorizationRule

    Create ClientVpnAuthorizationRule Resource

    Resources are created with functions called constructors. To learn more about declaring and configuring resources, see Resources.

    Constructor syntax

    new ClientVpnAuthorizationRule(name: string, args: ClientVpnAuthorizationRuleArgs, opts?: CustomResourceOptions);
    @overload
    def ClientVpnAuthorizationRule(resource_name: str,
                                   args: ClientVpnAuthorizationRuleArgs,
                                   opts: Optional[ResourceOptions] = None)
    
    @overload
    def ClientVpnAuthorizationRule(resource_name: str,
                                   opts: Optional[ResourceOptions] = None,
                                   client_vpn_endpoint_id: Optional[str] = None,
                                   target_network_cidr: Optional[str] = None,
                                   access_group_id: Optional[str] = None,
                                   authorize_all_groups: Optional[bool] = None,
                                   description: Optional[str] = None)
    func NewClientVpnAuthorizationRule(ctx *Context, name string, args ClientVpnAuthorizationRuleArgs, opts ...ResourceOption) (*ClientVpnAuthorizationRule, error)
    public ClientVpnAuthorizationRule(string name, ClientVpnAuthorizationRuleArgs args, CustomResourceOptions? opts = null)
    public ClientVpnAuthorizationRule(String name, ClientVpnAuthorizationRuleArgs args)
    public ClientVpnAuthorizationRule(String name, ClientVpnAuthorizationRuleArgs args, CustomResourceOptions options)
    
    type: aws-native:ec2:ClientVpnAuthorizationRule
    properties: # The arguments to resource properties.
    options: # Bag of options to control resource's behavior.
    
    
    resource "aws-native_ec2_client_vpn_authorization_rule" "name" {
        # resource properties
    }

    Parameters

    name string
    The unique name of the resource.
    args ClientVpnAuthorizationRuleArgs
    The arguments to resource properties.
    opts CustomResourceOptions
    Bag of options to control resource's behavior.
    resource_name str
    The unique name of the resource.
    args ClientVpnAuthorizationRuleArgs
    The arguments to resource properties.
    opts ResourceOptions
    Bag of options to control resource's behavior.
    ctx Context
    Context object for the current deployment.
    name string
    The unique name of the resource.
    args ClientVpnAuthorizationRuleArgs
    The arguments to resource properties.
    opts ResourceOption
    Bag of options to control resource's behavior.
    name string
    The unique name of the resource.
    args ClientVpnAuthorizationRuleArgs
    The arguments to resource properties.
    opts CustomResourceOptions
    Bag of options to control resource's behavior.
    name String
    The unique name of the resource.
    args ClientVpnAuthorizationRuleArgs
    The arguments to resource properties.
    options CustomResourceOptions
    Bag of options to control resource's behavior.

    ClientVpnAuthorizationRule Resource Properties

    To learn more about resource properties and how to use them, see Inputs and Outputs in the Architecture and Concepts docs.

    Inputs

    In Python, inputs that are objects can be passed either as argument classes or as dictionary literals.

    The ClientVpnAuthorizationRule resource accepts the following input properties:

    ClientVpnEndpointId string
    The ID of the Client VPN endpoint.
    TargetNetworkCidr string
    The IPv4 address range, in CIDR notation, of the network for which access is being authorized.
    AccessGroupId string
    The ID of the group to grant access to, for example, the Active Directory group or identity provider (IdP) group. Required if AuthorizeAllGroups is false or not specified.
    AuthorizeAllGroups bool
    Indicates whether to grant access to all clients. Specify true to grant all clients who successfully establish a VPN connection access to the network. Must be set to true if AccessGroupId is not specified.
    Description string
    A brief description of the authorization rule.
    ClientVpnEndpointId string
    The ID of the Client VPN endpoint.
    TargetNetworkCidr string
    The IPv4 address range, in CIDR notation, of the network for which access is being authorized.
    AccessGroupId string
    The ID of the group to grant access to, for example, the Active Directory group or identity provider (IdP) group. Required if AuthorizeAllGroups is false or not specified.
    AuthorizeAllGroups bool
    Indicates whether to grant access to all clients. Specify true to grant all clients who successfully establish a VPN connection access to the network. Must be set to true if AccessGroupId is not specified.
    Description string
    A brief description of the authorization rule.
    client_vpn_endpoint_id string
    The ID of the Client VPN endpoint.
    target_network_cidr string
    The IPv4 address range, in CIDR notation, of the network for which access is being authorized.
    access_group_id string
    The ID of the group to grant access to, for example, the Active Directory group or identity provider (IdP) group. Required if AuthorizeAllGroups is false or not specified.
    authorize_all_groups bool
    Indicates whether to grant access to all clients. Specify true to grant all clients who successfully establish a VPN connection access to the network. Must be set to true if AccessGroupId is not specified.
    description string
    A brief description of the authorization rule.
    clientVpnEndpointId String
    The ID of the Client VPN endpoint.
    targetNetworkCidr String
    The IPv4 address range, in CIDR notation, of the network for which access is being authorized.
    accessGroupId String
    The ID of the group to grant access to, for example, the Active Directory group or identity provider (IdP) group. Required if AuthorizeAllGroups is false or not specified.
    authorizeAllGroups Boolean
    Indicates whether to grant access to all clients. Specify true to grant all clients who successfully establish a VPN connection access to the network. Must be set to true if AccessGroupId is not specified.
    description String
    A brief description of the authorization rule.
    clientVpnEndpointId string
    The ID of the Client VPN endpoint.
    targetNetworkCidr string
    The IPv4 address range, in CIDR notation, of the network for which access is being authorized.
    accessGroupId string
    The ID of the group to grant access to, for example, the Active Directory group or identity provider (IdP) group. Required if AuthorizeAllGroups is false or not specified.
    authorizeAllGroups boolean
    Indicates whether to grant access to all clients. Specify true to grant all clients who successfully establish a VPN connection access to the network. Must be set to true if AccessGroupId is not specified.
    description string
    A brief description of the authorization rule.
    client_vpn_endpoint_id str
    The ID of the Client VPN endpoint.
    target_network_cidr str
    The IPv4 address range, in CIDR notation, of the network for which access is being authorized.
    access_group_id str
    The ID of the group to grant access to, for example, the Active Directory group or identity provider (IdP) group. Required if AuthorizeAllGroups is false or not specified.
    authorize_all_groups bool
    Indicates whether to grant access to all clients. Specify true to grant all clients who successfully establish a VPN connection access to the network. Must be set to true if AccessGroupId is not specified.
    description str
    A brief description of the authorization rule.
    clientVpnEndpointId String
    The ID of the Client VPN endpoint.
    targetNetworkCidr String
    The IPv4 address range, in CIDR notation, of the network for which access is being authorized.
    accessGroupId String
    The ID of the group to grant access to, for example, the Active Directory group or identity provider (IdP) group. Required if AuthorizeAllGroups is false or not specified.
    authorizeAllGroups Boolean
    Indicates whether to grant access to all clients. Specify true to grant all clients who successfully establish a VPN connection access to the network. Must be set to true if AccessGroupId is not specified.
    description String
    A brief description of the authorization rule.

    Outputs

    All input properties are implicitly available as output properties. Additionally, the ClientVpnAuthorizationRule resource produces the following output properties:

    AwsId string
    The ID of the Client VPN Authorization Rule.
    Id string
    The provider-assigned unique ID for this managed resource.
    AwsId string
    The ID of the Client VPN Authorization Rule.
    Id string
    The provider-assigned unique ID for this managed resource.
    aws_id string
    The ID of the Client VPN Authorization Rule.
    id string
    The provider-assigned unique ID for this managed resource.
    awsId String
    The ID of the Client VPN Authorization Rule.
    id String
    The provider-assigned unique ID for this managed resource.
    awsId string
    The ID of the Client VPN Authorization Rule.
    id string
    The provider-assigned unique ID for this managed resource.
    aws_id str
    The ID of the Client VPN Authorization Rule.
    id str
    The provider-assigned unique ID for this managed resource.
    awsId String
    The ID of the Client VPN Authorization Rule.
    id String
    The provider-assigned unique ID for this managed resource.

    Package Details

    Repository
    AWS Native pulumi/pulumi-aws-native
    License
    Apache-2.0
    aws-native logo aws-native logo AWS Cloud Control

    We recommend new projects start with resources from the AWS provider.

    Viewing docs for AWS Cloud Control v1.82.0
    published on Monday, Oct 5, 2026 by Pulumi

      Try Pulumi Cloud free.
      Your team will thank you.

      Start free trial