Viewing docs for Cloudflare v6.21.0
published on Thursday, Sep 17, 2026 by Pulumi
published on Thursday, Sep 17, 2026 by Pulumi
Viewing docs for Cloudflare v6.21.0
published on Thursday, Sep 17, 2026 by Pulumi
published on Thursday, Sep 17, 2026 by Pulumi
Accepted Permissions
Cloud Email Security: ReadCloud Email Security: Write
Example Usage
import * as pulumi from "@pulumi/pulumi";
import * as cloudflare from "@pulumi/cloudflare";
const exampleEmailSecurityAllowPolicies = cloudflare.getEmailSecurityAllowPolicies({
accountId: "023e105f4ecef8ad9ca31a8372d0c353",
direction: "asc",
isAcceptableSender: true,
isExemptRecipient: true,
isTrustedSender: true,
order: "pattern",
pattern: "pattern",
patternType: "EMAIL",
search: "search",
verifySender: true,
});
import pulumi
import pulumi_cloudflare as cloudflare
example_email_security_allow_policies = cloudflare.get_email_security_allow_policies(account_id="023e105f4ecef8ad9ca31a8372d0c353",
direction="asc",
is_acceptable_sender=True,
is_exempt_recipient=True,
is_trusted_sender=True,
order="pattern",
pattern="pattern",
pattern_type="EMAIL",
search="search",
verify_sender=True)
package main
import (
"github.com/pulumi/pulumi-cloudflare/sdk/v6/go/cloudflare"
"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
)
func main() {
pulumi.Run(func(ctx *pulumi.Context) error {
_, err := cloudflare.GetEmailSecurityAllowPolicies(ctx, &cloudflare.LookupEmailSecurityAllowPoliciesArgs{
AccountId: "023e105f4ecef8ad9ca31a8372d0c353",
Direction: pulumi.StringRef("asc"),
IsAcceptableSender: pulumi.BoolRef(true),
IsExemptRecipient: pulumi.BoolRef(true),
IsTrustedSender: pulumi.BoolRef(true),
Order: pulumi.StringRef("pattern"),
Pattern: pulumi.StringRef("pattern"),
PatternType: pulumi.StringRef("EMAIL"),
Search: pulumi.StringRef("search"),
VerifySender: pulumi.BoolRef(true),
}, nil)
if err != nil {
return err
}
return nil
})
}
using System.Collections.Generic;
using System.Linq;
using Pulumi;
using Cloudflare = Pulumi.Cloudflare;
return await Deployment.RunAsync(() =>
{
var exampleEmailSecurityAllowPolicies = Cloudflare.GetEmailSecurityAllowPolicies.Invoke(new()
{
AccountId = "023e105f4ecef8ad9ca31a8372d0c353",
Direction = "asc",
IsAcceptableSender = true,
IsExemptRecipient = true,
IsTrustedSender = true,
Order = "pattern",
Pattern = "pattern",
PatternType = "EMAIL",
Search = "search",
VerifySender = true,
});
});
package generated_program;
import com.pulumi.Context;
import com.pulumi.Pulumi;
import com.pulumi.core.Output;
import com.pulumi.cloudflare.CloudflareFunctions;
import com.pulumi.cloudflare.inputs.GetEmailSecurityAllowPoliciesArgs;
import java.util.ArrayList;
import java.util.Arrays;
import java.util.Map;
import java.io.File;
import java.nio.file.Files;
import java.nio.file.Paths;
public class App {
public static void main(String[] args) {
Pulumi.run(App::stack);
}
public static void stack(Context ctx) {
final var exampleEmailSecurityAllowPolicies = CloudflareFunctions.getEmailSecurityAllowPolicies(GetEmailSecurityAllowPoliciesArgs.builder()
.accountId("023e105f4ecef8ad9ca31a8372d0c353")
.direction("asc")
.isAcceptableSender(true)
.isExemptRecipient(true)
.isTrustedSender(true)
.order("pattern")
.pattern("pattern")
.patternType("EMAIL")
.search("search")
.verifySender(true)
.build());
}
}
variables:
exampleEmailSecurityAllowPolicies:
fn::invoke:
function: cloudflare:getEmailSecurityAllowPolicies
arguments:
accountId: 023e105f4ecef8ad9ca31a8372d0c353
direction: asc
isAcceptableSender: true
isExemptRecipient: true
isTrustedSender: true
order: pattern
pattern: pattern
patternType: EMAIL
search: search
verifySender: true
pulumi {
required_providers {
cloudflare = {
source = "pulumi/cloudflare"
}
}
}
data "cloudflare_getemailsecurityallowpolicies" "exampleEmailSecurityAllowPolicies" {
account_id = "023e105f4ecef8ad9ca31a8372d0c353"
direction = "asc"
is_acceptable_sender = true
is_exempt_recipient = true
is_trusted_sender = true
order = "pattern"
pattern = "pattern"
pattern_type = "EMAIL"
search = "search"
verify_sender = true
}
Using getEmailSecurityAllowPolicies
Two invocation forms are available. The direct form accepts plain arguments and either blocks until the result value is available, or returns a Promise-wrapped result. The output form accepts Input-wrapped arguments and returns an Output-wrapped result.
function getEmailSecurityAllowPolicies(args: GetEmailSecurityAllowPoliciesArgs, opts?: InvokeOptions): Promise<GetEmailSecurityAllowPoliciesResult>
function getEmailSecurityAllowPoliciesOutput(args: GetEmailSecurityAllowPoliciesOutputArgs, opts?: InvokeOutputOptions): Output<GetEmailSecurityAllowPoliciesResult>def get_email_security_allow_policies(account_id: Optional[str] = None,
direction: Optional[str] = None,
is_acceptable_sender: Optional[bool] = None,
is_exempt_recipient: Optional[bool] = None,
is_trusted_sender: Optional[bool] = None,
max_items: Optional[int] = None,
order: Optional[str] = None,
pattern: Optional[str] = None,
pattern_type: Optional[str] = None,
search: Optional[str] = None,
verify_sender: Optional[bool] = None,
opts: Optional[InvokeOptions] = None) -> GetEmailSecurityAllowPoliciesResult
def get_email_security_allow_policies_output(account_id: pulumi.Input[Optional[str]] = None,
direction: pulumi.Input[Optional[str]] = None,
is_acceptable_sender: pulumi.Input[Optional[bool]] = None,
is_exempt_recipient: pulumi.Input[Optional[bool]] = None,
is_trusted_sender: pulumi.Input[Optional[bool]] = None,
max_items: pulumi.Input[Optional[int]] = None,
order: pulumi.Input[Optional[str]] = None,
pattern: pulumi.Input[Optional[str]] = None,
pattern_type: pulumi.Input[Optional[str]] = None,
search: pulumi.Input[Optional[str]] = None,
verify_sender: pulumi.Input[Optional[bool]] = None,
opts: Optional[InvokeOutputOptions] = None) -> Output[GetEmailSecurityAllowPoliciesResult]func LookupEmailSecurityAllowPolicies(ctx *Context, args *LookupEmailSecurityAllowPoliciesArgs, opts ...InvokeOption) (*LookupEmailSecurityAllowPoliciesResult, error)
func LookupEmailSecurityAllowPoliciesOutput(ctx *Context, args *LookupEmailSecurityAllowPoliciesOutputArgs, opts ...InvokeOption) LookupEmailSecurityAllowPoliciesResultOutput> Note: This function is named LookupEmailSecurityAllowPolicies in the Go SDK.
public static class GetEmailSecurityAllowPolicies
{
public static Task<GetEmailSecurityAllowPoliciesResult> InvokeAsync(GetEmailSecurityAllowPoliciesArgs args, InvokeOptions? opts = null)
public static Output<GetEmailSecurityAllowPoliciesResult> Invoke(GetEmailSecurityAllowPoliciesInvokeArgs args, InvokeOptions? opts = null)
public static Output<GetEmailSecurityAllowPoliciesResult> Invoke(GetEmailSecurityAllowPoliciesInvokeArgs args, InvokeOutputOptions opts)
}public static CompletableFuture<GetEmailSecurityAllowPoliciesResult> getEmailSecurityAllowPolicies(GetEmailSecurityAllowPoliciesArgs args, InvokeOptions options)
public static Output<GetEmailSecurityAllowPoliciesResult> getEmailSecurityAllowPolicies(GetEmailSecurityAllowPoliciesArgs args, InvokeOptions options)
public static Output<GetEmailSecurityAllowPoliciesResult> getEmailSecurityAllowPolicies(GetEmailSecurityAllowPoliciesArgs args, InvokeOutputOptions options)
fn::invoke:
function: cloudflare:index/getEmailSecurityAllowPolicies:getEmailSecurityAllowPolicies
arguments:
# arguments dictionarydata "cloudflare_get_email_security_allow_policies" "name" {
# arguments
}The following arguments are supported:
- Account
Id string - Direction string
- Is
Acceptable boolSender - Is
Exempt boolRecipient - Is
Trusted boolSender - Max
Items int - Order string
- Pattern string
- Pattern
Type string - Search string
- Verify
Sender bool
- Account
Id string - Direction string
- Is
Acceptable boolSender - Is
Exempt boolRecipient - Is
Trusted boolSender - Max
Items int - Order string
- Pattern string
- Pattern
Type string - Search string
- Verify
Sender bool
- account_
id string - direction string
- is_
acceptable_ boolsender - is_
exempt_ boolrecipient - is_
trusted_ boolsender - max_
items number - order string
- pattern string
- pattern_
type string - search string
- verify_
sender bool
- account
Id String - direction String
- is
Acceptable BooleanSender - is
Exempt BooleanRecipient - is
Trusted BooleanSender - max
Items Integer - order String
- pattern String
- pattern
Type String - search String
- verify
Sender Boolean
- account
Id string - direction string
- is
Acceptable booleanSender - is
Exempt booleanRecipient - is
Trusted booleanSender - max
Items number - order string
- pattern string
- pattern
Type string - search string
- verify
Sender boolean
- account_
id str - direction str
- is_
acceptable_ boolsender - is_
exempt_ boolrecipient - is_
trusted_ boolsender - max_
items int - order str
- pattern str
- pattern_
type str - search str
- verify_
sender bool
- account
Id String - direction String
- is
Acceptable BooleanSender - is
Exempt BooleanRecipient - is
Trusted BooleanSender - max
Items Number - order String
- pattern String
- pattern
Type String - search String
- verify
Sender Boolean
getEmailSecurityAllowPolicies Result
The following output properties are available:
- Account
Id string - Results
List<Get
Email Security Allow Policies Result> - Direction string
- Is
Acceptable boolSender - Is
Exempt boolRecipient - Is
Trusted boolSender - Max
Items int - Order string
- Pattern string
- Pattern
Type string - Search string
- Verify
Sender bool
- Account
Id string - Results
[]Get
Email Security Allow Policies Result - Direction string
- Is
Acceptable boolSender - Is
Exempt boolRecipient - Is
Trusted boolSender - Max
Items int - Order string
- Pattern string
- Pattern
Type string - Search string
- Verify
Sender bool
- account_
id string - results list(object)
- direction string
- is_
acceptable_ boolsender - is_
exempt_ boolrecipient - is_
trusted_ boolsender - max_
items number - order string
- pattern string
- pattern_
type string - search string
- verify_
sender bool
- account
Id String - results
List<Get
Email Security Allow Policies Result> - direction String
- is
Acceptable BooleanSender - is
Exempt BooleanRecipient - is
Trusted BooleanSender - max
Items Integer - order String
- pattern String
- pattern
Type String - search String
- verify
Sender Boolean
- account
Id string - results
Get
Email Security Allow Policies Result[] - direction string
- is
Acceptable booleanSender - is
Exempt booleanRecipient - is
Trusted booleanSender - max
Items number - order string
- pattern string
- pattern
Type string - search string
- verify
Sender boolean
- account_
id str - results
Sequence[Get
Email Security Allow Policies Result] - direction str
- is_
acceptable_ boolsender - is_
exempt_ boolrecipient - is_
trusted_ boolsender - max_
items int - order str
- pattern str
- pattern_
type str - search str
- verify_
sender bool
- account
Id String - results List<Property Map>
- direction String
- is
Acceptable BooleanSender - is
Exempt BooleanRecipient - is
Trusted BooleanSender - max
Items Number - order String
- pattern String
- pattern
Type String - search String
- verify
Sender Boolean
Supporting Types
GetEmailSecurityAllowPoliciesResult
- Comments string
- Created
At string - Id string
- Allow policy identifier.
- Is
Acceptable boolSender - Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
- Is
Exempt boolRecipient - Bypasses all detections for messages to this recipient.
- Is
Recipient bool - Deprecated as of July 1, 2025. Use
isExemptRecipientinstead. End of life: July 1, 2026. - Is
Regex bool - Is
Sender bool - Deprecated as of July 1, 2025. Use
isTrustedSenderinstead. End of life: July 1, 2026. - Is
Spoof bool - Deprecated as of July 1, 2025. Use
isAcceptableSenderinstead. End of life: July 1, 2026. - Is
Trusted boolSender - Bypasses all detections and link following for messages from this sender.
- Last
Modified string - Deprecated, use
modifiedAtinstead. End of life: November 1, 2026. - Modified
At string - Pattern string
- The pattern value to match. The format depends on
patternType: a valid email address for EMAIL (e.g.user@example.com), a valid domain name for DOMAIN (e.g.example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g.1.2.3.4,1.2.3.0/24,2606:4700:4700::1111, or2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents. - Pattern
Type string - Type of pattern matching.
- EMAIL: matches a full email address (e.g.
user@example.com) - DOMAIN: matches a domain name (e.g.
example.com) - IP: matches a plain IPv4 or IPv6 address (e.g.
1.2.3.4or2606:4700:4700::1111) or CIDR block (e.g.1.2.3.0/24or2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents. - UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
- EMAIL: matches a full email address (e.g.
- Verify
Sender bool - Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.
- Comments string
- Created
At string - Id string
- Allow policy identifier.
- Is
Acceptable boolSender - Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
- Is
Exempt boolRecipient - Bypasses all detections for messages to this recipient.
- Is
Recipient bool - Deprecated as of July 1, 2025. Use
isExemptRecipientinstead. End of life: July 1, 2026. - Is
Regex bool - Is
Sender bool - Deprecated as of July 1, 2025. Use
isTrustedSenderinstead. End of life: July 1, 2026. - Is
Spoof bool - Deprecated as of July 1, 2025. Use
isAcceptableSenderinstead. End of life: July 1, 2026. - Is
Trusted boolSender - Bypasses all detections and link following for messages from this sender.
- Last
Modified string - Deprecated, use
modifiedAtinstead. End of life: November 1, 2026. - Modified
At string - Pattern string
- The pattern value to match. The format depends on
patternType: a valid email address for EMAIL (e.g.user@example.com), a valid domain name for DOMAIN (e.g.example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g.1.2.3.4,1.2.3.0/24,2606:4700:4700::1111, or2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents. - Pattern
Type string - Type of pattern matching.
- EMAIL: matches a full email address (e.g.
user@example.com) - DOMAIN: matches a domain name (e.g.
example.com) - IP: matches a plain IPv4 or IPv6 address (e.g.
1.2.3.4or2606:4700:4700::1111) or CIDR block (e.g.1.2.3.0/24or2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents. - UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
- EMAIL: matches a full email address (e.g.
- Verify
Sender bool - Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.
- comments string
- created_
at string - id string
- Allow policy identifier.
- is_
acceptable_ boolsender - Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
- is_
exempt_ boolrecipient - Bypasses all detections for messages to this recipient.
- is_
recipient bool - Deprecated as of July 1, 2025. Use
isExemptRecipientinstead. End of life: July 1, 2026. - is_
regex bool - is_
sender bool - Deprecated as of July 1, 2025. Use
isTrustedSenderinstead. End of life: July 1, 2026. - is_
spoof bool - Deprecated as of July 1, 2025. Use
isAcceptableSenderinstead. End of life: July 1, 2026. - is_
trusted_ boolsender - Bypasses all detections and link following for messages from this sender.
- last_
modified string - Deprecated, use
modifiedAtinstead. End of life: November 1, 2026. - modified_
at string - pattern string
- The pattern value to match. The format depends on
patternType: a valid email address for EMAIL (e.g.user@example.com), a valid domain name for DOMAIN (e.g.example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g.1.2.3.4,1.2.3.0/24,2606:4700:4700::1111, or2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents. - pattern_
type string - Type of pattern matching.
- EMAIL: matches a full email address (e.g.
user@example.com) - DOMAIN: matches a domain name (e.g.
example.com) - IP: matches a plain IPv4 or IPv6 address (e.g.
1.2.3.4or2606:4700:4700::1111) or CIDR block (e.g.1.2.3.0/24or2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents. - UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
- EMAIL: matches a full email address (e.g.
- verify_
sender bool - Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.
- comments String
- created
At String - id String
- Allow policy identifier.
- is
Acceptable BooleanSender - Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
- is
Exempt BooleanRecipient - Bypasses all detections for messages to this recipient.
- is
Recipient Boolean - Deprecated as of July 1, 2025. Use
isExemptRecipientinstead. End of life: July 1, 2026. - is
Regex Boolean - is
Sender Boolean - Deprecated as of July 1, 2025. Use
isTrustedSenderinstead. End of life: July 1, 2026. - is
Spoof Boolean - Deprecated as of July 1, 2025. Use
isAcceptableSenderinstead. End of life: July 1, 2026. - is
Trusted BooleanSender - Bypasses all detections and link following for messages from this sender.
- last
Modified String - Deprecated, use
modifiedAtinstead. End of life: November 1, 2026. - modified
At String - pattern String
- The pattern value to match. The format depends on
patternType: a valid email address for EMAIL (e.g.user@example.com), a valid domain name for DOMAIN (e.g.example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g.1.2.3.4,1.2.3.0/24,2606:4700:4700::1111, or2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents. - pattern
Type String - Type of pattern matching.
- EMAIL: matches a full email address (e.g.
user@example.com) - DOMAIN: matches a domain name (e.g.
example.com) - IP: matches a plain IPv4 or IPv6 address (e.g.
1.2.3.4or2606:4700:4700::1111) or CIDR block (e.g.1.2.3.0/24or2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents. - UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
- EMAIL: matches a full email address (e.g.
- verify
Sender Boolean - Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.
- comments string
- created
At string - id string
- Allow policy identifier.
- is
Acceptable booleanSender - Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
- is
Exempt booleanRecipient - Bypasses all detections for messages to this recipient.
- is
Recipient boolean - Deprecated as of July 1, 2025. Use
isExemptRecipientinstead. End of life: July 1, 2026. - is
Regex boolean - is
Sender boolean - Deprecated as of July 1, 2025. Use
isTrustedSenderinstead. End of life: July 1, 2026. - is
Spoof boolean - Deprecated as of July 1, 2025. Use
isAcceptableSenderinstead. End of life: July 1, 2026. - is
Trusted booleanSender - Bypasses all detections and link following for messages from this sender.
- last
Modified string - Deprecated, use
modifiedAtinstead. End of life: November 1, 2026. - modified
At string - pattern string
- The pattern value to match. The format depends on
patternType: a valid email address for EMAIL (e.g.user@example.com), a valid domain name for DOMAIN (e.g.example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g.1.2.3.4,1.2.3.0/24,2606:4700:4700::1111, or2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents. - pattern
Type string - Type of pattern matching.
- EMAIL: matches a full email address (e.g.
user@example.com) - DOMAIN: matches a domain name (e.g.
example.com) - IP: matches a plain IPv4 or IPv6 address (e.g.
1.2.3.4or2606:4700:4700::1111) or CIDR block (e.g.1.2.3.0/24or2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents. - UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
- EMAIL: matches a full email address (e.g.
- verify
Sender boolean - Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.
- comments str
- created_
at str - id str
- Allow policy identifier.
- is_
acceptable_ boolsender - Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
- is_
exempt_ boolrecipient - Bypasses all detections for messages to this recipient.
- is_
recipient bool - Deprecated as of July 1, 2025. Use
isExemptRecipientinstead. End of life: July 1, 2026. - is_
regex bool - is_
sender bool - Deprecated as of July 1, 2025. Use
isTrustedSenderinstead. End of life: July 1, 2026. - is_
spoof bool - Deprecated as of July 1, 2025. Use
isAcceptableSenderinstead. End of life: July 1, 2026. - is_
trusted_ boolsender - Bypasses all detections and link following for messages from this sender.
- last_
modified str - Deprecated, use
modifiedAtinstead. End of life: November 1, 2026. - modified_
at str - pattern str
- The pattern value to match. The format depends on
patternType: a valid email address for EMAIL (e.g.user@example.com), a valid domain name for DOMAIN (e.g.example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g.1.2.3.4,1.2.3.0/24,2606:4700:4700::1111, or2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents. - pattern_
type str - Type of pattern matching.
- EMAIL: matches a full email address (e.g.
user@example.com) - DOMAIN: matches a domain name (e.g.
example.com) - IP: matches a plain IPv4 or IPv6 address (e.g.
1.2.3.4or2606:4700:4700::1111) or CIDR block (e.g.1.2.3.0/24or2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents. - UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
- EMAIL: matches a full email address (e.g.
- verify_
sender bool - Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.
- comments String
- created
At String - id String
- Allow policy identifier.
- is
Acceptable BooleanSender - Exempts messages from this sender from Spam, Spoof and Bulk dispositions only; Malicious and Suspicious dispositions still apply.
- is
Exempt BooleanRecipient - Bypasses all detections for messages to this recipient.
- is
Recipient Boolean - Deprecated as of July 1, 2025. Use
isExemptRecipientinstead. End of life: July 1, 2026. - is
Regex Boolean - is
Sender Boolean - Deprecated as of July 1, 2025. Use
isTrustedSenderinstead. End of life: July 1, 2026. - is
Spoof Boolean - Deprecated as of July 1, 2025. Use
isAcceptableSenderinstead. End of life: July 1, 2026. - is
Trusted BooleanSender - Bypasses all detections and link following for messages from this sender.
- last
Modified String - Deprecated, use
modifiedAtinstead. End of life: November 1, 2026. - modified
At String - pattern String
- The pattern value to match. The format depends on
patternType: a valid email address for EMAIL (e.g.user@example.com), a valid domain name for DOMAIN (e.g.example.com), or a plain IPv4 or IPv6 address or CIDR block for IP (e.g.1.2.3.4,1.2.3.0/24,2606:4700:4700::1111, or2606:4700:4700::/48); the API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents. - pattern
Type String - Type of pattern matching.
- EMAIL: matches a full email address (e.g.
user@example.com) - DOMAIN: matches a domain name (e.g.
example.com) - IP: matches a plain IPv4 or IPv6 address (e.g.
1.2.3.4or2606:4700:4700::1111) or CIDR block (e.g.1.2.3.0/24or2606:4700:4700::/48). The API rejects private or unique-local, loopback, link-local, unspecified, and IPv4 broadcast addresses, including their IPv4-mapped IPv6 equivalents. - UNKNOWN: deprecated; you cannot use this when creating or updating policies, but it may appear on existing entries. Available values: "EMAIL", "DOMAIN", "IP", "UNKNOWN".
- EMAIL: matches a full email address (e.g.
- verify
Sender Boolean - Enforce DMARC, SPF or DKIM authentication. When on, Email Security only honors policies that pass authentication.
Package Details
- Repository
- Cloudflare pulumi/pulumi-cloudflare
- License
- Apache-2.0
- Notes
- This Pulumi package is based on the
cloudflareTerraform Provider.
Viewing docs for Cloudflare v6.21.0
published on Thursday, Sep 17, 2026 by Pulumi
published on Thursday, Sep 17, 2026 by Pulumi