1. Packages
  2. Fortimanager Provider
  3. API Docs
  4. ObjectSwitchcontrollerSecuritypolicyLocalaccess
fortimanager 1.15.0 published on Thursday, Nov 13, 2025 by fortinetdev
fortimanager logo
fortimanager 1.15.0 published on Thursday, Nov 13, 2025 by fortinetdev

    Configure allowaccess list for mgmt and internal interfaces on managed FortiSwitch units.

    Create ObjectSwitchcontrollerSecuritypolicyLocalaccess Resource

    Resources are created with functions called constructors. To learn more about declaring and configuring resources, see Resources.

    Constructor syntax

    new ObjectSwitchcontrollerSecuritypolicyLocalaccess(name: string, args?: ObjectSwitchcontrollerSecuritypolicyLocalaccessArgs, opts?: CustomResourceOptions);
    @overload
    def ObjectSwitchcontrollerSecuritypolicyLocalaccess(resource_name: str,
                                                        args: Optional[ObjectSwitchcontrollerSecuritypolicyLocalaccessArgs] = None,
                                                        opts: Optional[ResourceOptions] = None)
    
    @overload
    def ObjectSwitchcontrollerSecuritypolicyLocalaccess(resource_name: str,
                                                        opts: Optional[ResourceOptions] = None,
                                                        adom: Optional[str] = None,
                                                        internal_allowaccesses: Optional[Sequence[str]] = None,
                                                        mgmt_allowaccesses: Optional[Sequence[str]] = None,
                                                        name: Optional[str] = None,
                                                        object_switchcontroller_securitypolicy_localaccess_id: Optional[str] = None,
                                                        scopetype: Optional[str] = None)
    func NewObjectSwitchcontrollerSecuritypolicyLocalaccess(ctx *Context, name string, args *ObjectSwitchcontrollerSecuritypolicyLocalaccessArgs, opts ...ResourceOption) (*ObjectSwitchcontrollerSecuritypolicyLocalaccess, error)
    public ObjectSwitchcontrollerSecuritypolicyLocalaccess(string name, ObjectSwitchcontrollerSecuritypolicyLocalaccessArgs? args = null, CustomResourceOptions? opts = null)
    public ObjectSwitchcontrollerSecuritypolicyLocalaccess(String name, ObjectSwitchcontrollerSecuritypolicyLocalaccessArgs args)
    public ObjectSwitchcontrollerSecuritypolicyLocalaccess(String name, ObjectSwitchcontrollerSecuritypolicyLocalaccessArgs args, CustomResourceOptions options)
    
    type: fortimanager:ObjectSwitchcontrollerSecuritypolicyLocalaccess
    properties: # The arguments to resource properties.
    options: # Bag of options to control resource's behavior.
    
    

    Parameters

    name string
    The unique name of the resource.
    args ObjectSwitchcontrollerSecuritypolicyLocalaccessArgs
    The arguments to resource properties.
    opts CustomResourceOptions
    Bag of options to control resource's behavior.
    resource_name str
    The unique name of the resource.
    args ObjectSwitchcontrollerSecuritypolicyLocalaccessArgs
    The arguments to resource properties.
    opts ResourceOptions
    Bag of options to control resource's behavior.
    ctx Context
    Context object for the current deployment.
    name string
    The unique name of the resource.
    args ObjectSwitchcontrollerSecuritypolicyLocalaccessArgs
    The arguments to resource properties.
    opts ResourceOption
    Bag of options to control resource's behavior.
    name string
    The unique name of the resource.
    args ObjectSwitchcontrollerSecuritypolicyLocalaccessArgs
    The arguments to resource properties.
    opts CustomResourceOptions
    Bag of options to control resource's behavior.
    name String
    The unique name of the resource.
    args ObjectSwitchcontrollerSecuritypolicyLocalaccessArgs
    The arguments to resource properties.
    options CustomResourceOptions
    Bag of options to control resource's behavior.

    Constructor example

    The following reference example uses placeholder values for all input properties.

    var objectSwitchcontrollerSecuritypolicyLocalaccessResource = new Fortimanager.ObjectSwitchcontrollerSecuritypolicyLocalaccess("objectSwitchcontrollerSecuritypolicyLocalaccessResource", new()
    {
        Adom = "string",
        InternalAllowaccesses = new[]
        {
            "string",
        },
        MgmtAllowaccesses = new[]
        {
            "string",
        },
        Name = "string",
        ObjectSwitchcontrollerSecuritypolicyLocalaccessId = "string",
        Scopetype = "string",
    });
    
    example, err := fortimanager.NewObjectSwitchcontrollerSecuritypolicyLocalaccess(ctx, "objectSwitchcontrollerSecuritypolicyLocalaccessResource", &fortimanager.ObjectSwitchcontrollerSecuritypolicyLocalaccessArgs{
    	Adom: pulumi.String("string"),
    	InternalAllowaccesses: pulumi.StringArray{
    		pulumi.String("string"),
    	},
    	MgmtAllowaccesses: pulumi.StringArray{
    		pulumi.String("string"),
    	},
    	Name: pulumi.String("string"),
    	ObjectSwitchcontrollerSecuritypolicyLocalaccessId: pulumi.String("string"),
    	Scopetype: pulumi.String("string"),
    })
    
    var objectSwitchcontrollerSecuritypolicyLocalaccessResource = new ObjectSwitchcontrollerSecuritypolicyLocalaccess("objectSwitchcontrollerSecuritypolicyLocalaccessResource", ObjectSwitchcontrollerSecuritypolicyLocalaccessArgs.builder()
        .adom("string")
        .internalAllowaccesses("string")
        .mgmtAllowaccesses("string")
        .name("string")
        .objectSwitchcontrollerSecuritypolicyLocalaccessId("string")
        .scopetype("string")
        .build());
    
    object_switchcontroller_securitypolicy_localaccess_resource = fortimanager.ObjectSwitchcontrollerSecuritypolicyLocalaccess("objectSwitchcontrollerSecuritypolicyLocalaccessResource",
        adom="string",
        internal_allowaccesses=["string"],
        mgmt_allowaccesses=["string"],
        name="string",
        object_switchcontroller_securitypolicy_localaccess_id="string",
        scopetype="string")
    
    const objectSwitchcontrollerSecuritypolicyLocalaccessResource = new fortimanager.ObjectSwitchcontrollerSecuritypolicyLocalaccess("objectSwitchcontrollerSecuritypolicyLocalaccessResource", {
        adom: "string",
        internalAllowaccesses: ["string"],
        mgmtAllowaccesses: ["string"],
        name: "string",
        objectSwitchcontrollerSecuritypolicyLocalaccessId: "string",
        scopetype: "string",
    });
    
    type: fortimanager:ObjectSwitchcontrollerSecuritypolicyLocalaccess
    properties:
        adom: string
        internalAllowaccesses:
            - string
        mgmtAllowaccesses:
            - string
        name: string
        objectSwitchcontrollerSecuritypolicyLocalaccessId: string
        scopetype: string
    

    ObjectSwitchcontrollerSecuritypolicyLocalaccess Resource Properties

    To learn more about resource properties and how to use them, see Inputs and Outputs in the Architecture and Concepts docs.

    Inputs

    In Python, inputs that are objects can be passed either as argument classes or as dictionary literals.

    The ObjectSwitchcontrollerSecuritypolicyLocalaccess resource accepts the following input properties:

    Adom string
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    InternalAllowaccesses List<string>
    Allowed access on the switch internal interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    MgmtAllowaccesses List<string>
    Allowed access on the switch management interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    Name string
    Policy name.
    ObjectSwitchcontrollerSecuritypolicyLocalaccessId string
    an identifier for the resource with format {{name}}.
    Scopetype string
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    Adom string
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    InternalAllowaccesses []string
    Allowed access on the switch internal interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    MgmtAllowaccesses []string
    Allowed access on the switch management interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    Name string
    Policy name.
    ObjectSwitchcontrollerSecuritypolicyLocalaccessId string
    an identifier for the resource with format {{name}}.
    Scopetype string
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    adom String
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    internalAllowaccesses List<String>
    Allowed access on the switch internal interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    mgmtAllowaccesses List<String>
    Allowed access on the switch management interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    name String
    Policy name.
    objectSwitchcontrollerSecuritypolicyLocalaccessId String
    an identifier for the resource with format {{name}}.
    scopetype String
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    adom string
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    internalAllowaccesses string[]
    Allowed access on the switch internal interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    mgmtAllowaccesses string[]
    Allowed access on the switch management interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    name string
    Policy name.
    objectSwitchcontrollerSecuritypolicyLocalaccessId string
    an identifier for the resource with format {{name}}.
    scopetype string
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    adom str
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    internal_allowaccesses Sequence[str]
    Allowed access on the switch internal interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    mgmt_allowaccesses Sequence[str]
    Allowed access on the switch management interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    name str
    Policy name.
    object_switchcontroller_securitypolicy_localaccess_id str
    an identifier for the resource with format {{name}}.
    scopetype str
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    adom String
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    internalAllowaccesses List<String>
    Allowed access on the switch internal interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    mgmtAllowaccesses List<String>
    Allowed access on the switch management interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    name String
    Policy name.
    objectSwitchcontrollerSecuritypolicyLocalaccessId String
    an identifier for the resource with format {{name}}.
    scopetype String
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.

    Outputs

    All input properties are implicitly available as output properties. Additionally, the ObjectSwitchcontrollerSecuritypolicyLocalaccess resource produces the following output properties:

    Id string
    The provider-assigned unique ID for this managed resource.
    Id string
    The provider-assigned unique ID for this managed resource.
    id String
    The provider-assigned unique ID for this managed resource.
    id string
    The provider-assigned unique ID for this managed resource.
    id str
    The provider-assigned unique ID for this managed resource.
    id String
    The provider-assigned unique ID for this managed resource.

    Look up Existing ObjectSwitchcontrollerSecuritypolicyLocalaccess Resource

    Get an existing ObjectSwitchcontrollerSecuritypolicyLocalaccess resource’s state with the given name, ID, and optional extra properties used to qualify the lookup.

    public static get(name: string, id: Input<ID>, state?: ObjectSwitchcontrollerSecuritypolicyLocalaccessState, opts?: CustomResourceOptions): ObjectSwitchcontrollerSecuritypolicyLocalaccess
    @staticmethod
    def get(resource_name: str,
            id: str,
            opts: Optional[ResourceOptions] = None,
            adom: Optional[str] = None,
            internal_allowaccesses: Optional[Sequence[str]] = None,
            mgmt_allowaccesses: Optional[Sequence[str]] = None,
            name: Optional[str] = None,
            object_switchcontroller_securitypolicy_localaccess_id: Optional[str] = None,
            scopetype: Optional[str] = None) -> ObjectSwitchcontrollerSecuritypolicyLocalaccess
    func GetObjectSwitchcontrollerSecuritypolicyLocalaccess(ctx *Context, name string, id IDInput, state *ObjectSwitchcontrollerSecuritypolicyLocalaccessState, opts ...ResourceOption) (*ObjectSwitchcontrollerSecuritypolicyLocalaccess, error)
    public static ObjectSwitchcontrollerSecuritypolicyLocalaccess Get(string name, Input<string> id, ObjectSwitchcontrollerSecuritypolicyLocalaccessState? state, CustomResourceOptions? opts = null)
    public static ObjectSwitchcontrollerSecuritypolicyLocalaccess get(String name, Output<String> id, ObjectSwitchcontrollerSecuritypolicyLocalaccessState state, CustomResourceOptions options)
    resources:  _:    type: fortimanager:ObjectSwitchcontrollerSecuritypolicyLocalaccess    get:      id: ${id}
    name
    The unique name of the resulting resource.
    id
    The unique provider ID of the resource to lookup.
    state
    Any extra arguments used during the lookup.
    opts
    A bag of options that control this resource's behavior.
    resource_name
    The unique name of the resulting resource.
    id
    The unique provider ID of the resource to lookup.
    name
    The unique name of the resulting resource.
    id
    The unique provider ID of the resource to lookup.
    state
    Any extra arguments used during the lookup.
    opts
    A bag of options that control this resource's behavior.
    name
    The unique name of the resulting resource.
    id
    The unique provider ID of the resource to lookup.
    state
    Any extra arguments used during the lookup.
    opts
    A bag of options that control this resource's behavior.
    name
    The unique name of the resulting resource.
    id
    The unique provider ID of the resource to lookup.
    state
    Any extra arguments used during the lookup.
    opts
    A bag of options that control this resource's behavior.
    The following state arguments are supported:
    Adom string
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    InternalAllowaccesses List<string>
    Allowed access on the switch internal interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    MgmtAllowaccesses List<string>
    Allowed access on the switch management interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    Name string
    Policy name.
    ObjectSwitchcontrollerSecuritypolicyLocalaccessId string
    an identifier for the resource with format {{name}}.
    Scopetype string
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    Adom string
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    InternalAllowaccesses []string
    Allowed access on the switch internal interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    MgmtAllowaccesses []string
    Allowed access on the switch management interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    Name string
    Policy name.
    ObjectSwitchcontrollerSecuritypolicyLocalaccessId string
    an identifier for the resource with format {{name}}.
    Scopetype string
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    adom String
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    internalAllowaccesses List<String>
    Allowed access on the switch internal interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    mgmtAllowaccesses List<String>
    Allowed access on the switch management interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    name String
    Policy name.
    objectSwitchcontrollerSecuritypolicyLocalaccessId String
    an identifier for the resource with format {{name}}.
    scopetype String
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    adom string
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    internalAllowaccesses string[]
    Allowed access on the switch internal interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    mgmtAllowaccesses string[]
    Allowed access on the switch management interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    name string
    Policy name.
    objectSwitchcontrollerSecuritypolicyLocalaccessId string
    an identifier for the resource with format {{name}}.
    scopetype string
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    adom str
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    internal_allowaccesses Sequence[str]
    Allowed access on the switch internal interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    mgmt_allowaccesses Sequence[str]
    Allowed access on the switch management interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    name str
    Policy name.
    object_switchcontroller_securitypolicy_localaccess_id str
    an identifier for the resource with format {{name}}.
    scopetype str
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    adom String
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    internalAllowaccesses List<String>
    Allowed access on the switch internal interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    mgmtAllowaccesses List<String>
    Allowed access on the switch management interface. Valid values: https, ping, ssh, snmp, http, telnet, radius-acct.
    name String
    Policy name.
    objectSwitchcontrollerSecuritypolicyLocalaccessId String
    an identifier for the resource with format {{name}}.
    scopetype String
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.

    Import

    ObjectSwitchController SecurityPolicyLocalAccess can be imported using any of these accepted formats:

    $ export “FORTIMANAGER_IMPORT_TABLE”=“true”

    $ pulumi import fortimanager:index/objectSwitchcontrollerSecuritypolicyLocalaccess:ObjectSwitchcontrollerSecuritypolicyLocalaccess labelname {{name}}
    

    $ unset “FORTIMANAGER_IMPORT_TABLE”

    -> Hint: The scopetype and adom for import will directly inherit the scopetype and adom configuration of the provider.

    To learn more about importing existing cloud resources, see Importing resources.

    Package Details

    Repository
    fortimanager fortinetdev/terraform-provider-fortimanager
    License
    Notes
    This Pulumi package is based on the fortimanager Terraform Provider.
    fortimanager logo
    fortimanager 1.15.0 published on Thursday, Nov 13, 2025 by fortinetdev
      Meet Neo: Your AI Platform Teammate