1. Packages
  2. Fortimanager Provider
  3. API Docs
  4. ObjectZtnaTrafficforwardproxy
fortimanager 1.15.0 published on Thursday, Nov 13, 2025 by fortinetdev
fortimanager logo
fortimanager 1.15.0 published on Thursday, Nov 13, 2025 by fortinetdev

    Configure ZTNA traffic forward proxy.

    The following variables have sub resource. Avoid using them together, otherwise conflicts and overwrites may occur.

    • quic: fortimanager.ObjectZtnaTrafficforwardproxyQuic
    • ssl_cipher_suites: fortimanager.ObjectZtnaTrafficforwardproxySslciphersuites
    • ssl_server_cipher_suites: fortimanager.ObjectZtnaTrafficforwardproxySslserverciphersuites

    Create ObjectZtnaTrafficforwardproxy Resource

    Resources are created with functions called constructors. To learn more about declaring and configuring resources, see Resources.

    Constructor syntax

    new ObjectZtnaTrafficforwardproxy(name: string, args?: ObjectZtnaTrafficforwardproxyArgs, opts?: CustomResourceOptions);
    @overload
    def ObjectZtnaTrafficforwardproxy(resource_name: str,
                                      args: Optional[ObjectZtnaTrafficforwardproxyArgs] = None,
                                      opts: Optional[ResourceOptions] = None)
    
    @overload
    def ObjectZtnaTrafficforwardproxy(resource_name: str,
                                      opts: Optional[ResourceOptions] = None,
                                      adom: Optional[str] = None,
                                      auth_portal: Optional[str] = None,
                                      auth_virtual_hosts: Optional[Sequence[str]] = None,
                                      client_cert: Optional[str] = None,
                                      comment: Optional[str] = None,
                                      decrypted_traffic_mirrors: Optional[Sequence[str]] = None,
                                      dynamic_sort_subtable: Optional[str] = None,
                                      empty_cert_action: Optional[str] = None,
                                      h3_support: Optional[str] = None,
                                      hosts: Optional[Sequence[str]] = None,
                                      interfaces: Optional[Sequence[str]] = None,
                                      log_blocked_traffic: Optional[str] = None,
                                      name: Optional[str] = None,
                                      object_ztna_trafficforwardproxy_id: Optional[str] = None,
                                      port: Optional[str] = None,
                                      quic: Optional[ObjectZtnaTrafficforwardproxyQuicArgs] = None,
                                      scopetype: Optional[str] = None,
                                      ssl_accept_ffdhe_groups: Optional[str] = None,
                                      ssl_algorithm: Optional[str] = None,
                                      ssl_certificates: Optional[Sequence[str]] = None,
                                      ssl_cipher_suites: Optional[Sequence[ObjectZtnaTrafficforwardproxySslCipherSuiteArgs]] = None,
                                      ssl_client_fallback: Optional[str] = None,
                                      ssl_client_rekey_count: Optional[float] = None,
                                      ssl_client_renegotiation: Optional[str] = None,
                                      ssl_client_session_state_max: Optional[float] = None,
                                      ssl_client_session_state_timeout: Optional[float] = None,
                                      ssl_client_session_state_type: Optional[str] = None,
                                      ssl_dh_bits: Optional[str] = None,
                                      ssl_hpkp: Optional[str] = None,
                                      ssl_hpkp_age: Optional[float] = None,
                                      ssl_hpkp_backups: Optional[Sequence[str]] = None,
                                      ssl_hpkp_include_subdomains: Optional[str] = None,
                                      ssl_hpkp_primaries: Optional[Sequence[str]] = None,
                                      ssl_hpkp_report_uri: Optional[str] = None,
                                      ssl_hsts: Optional[str] = None,
                                      ssl_hsts_age: Optional[float] = None,
                                      ssl_hsts_include_subdomains: Optional[str] = None,
                                      ssl_http_location_conversion: Optional[str] = None,
                                      ssl_http_match_host: Optional[str] = None,
                                      ssl_max_version: Optional[str] = None,
                                      ssl_min_version: Optional[str] = None,
                                      ssl_mode: Optional[str] = None,
                                      ssl_pfs: Optional[str] = None,
                                      ssl_send_empty_frags: Optional[str] = None,
                                      ssl_server_algorithm: Optional[str] = None,
                                      ssl_server_cipher_suites: Optional[Sequence[ObjectZtnaTrafficforwardproxySslServerCipherSuiteArgs]] = None,
                                      ssl_server_max_version: Optional[str] = None,
                                      ssl_server_min_version: Optional[str] = None,
                                      ssl_server_renegotiation: Optional[str] = None,
                                      ssl_server_session_state_max: Optional[float] = None,
                                      ssl_server_session_state_timeout: Optional[float] = None,
                                      ssl_server_session_state_type: Optional[str] = None,
                                      status: Optional[str] = None,
                                      svr_pool_multiplex: Optional[str] = None,
                                      svr_pool_server_max_concurrent_request: Optional[float] = None,
                                      svr_pool_server_max_request: Optional[float] = None,
                                      svr_pool_ttl: Optional[float] = None,
                                      user_agent_detect: Optional[str] = None,
                                      vip6s: Optional[Sequence[str]] = None,
                                      vips: Optional[Sequence[str]] = None)
    func NewObjectZtnaTrafficforwardproxy(ctx *Context, name string, args *ObjectZtnaTrafficforwardproxyArgs, opts ...ResourceOption) (*ObjectZtnaTrafficforwardproxy, error)
    public ObjectZtnaTrafficforwardproxy(string name, ObjectZtnaTrafficforwardproxyArgs? args = null, CustomResourceOptions? opts = null)
    public ObjectZtnaTrafficforwardproxy(String name, ObjectZtnaTrafficforwardproxyArgs args)
    public ObjectZtnaTrafficforwardproxy(String name, ObjectZtnaTrafficforwardproxyArgs args, CustomResourceOptions options)
    
    type: fortimanager:ObjectZtnaTrafficforwardproxy
    properties: # The arguments to resource properties.
    options: # Bag of options to control resource's behavior.
    
    

    Parameters

    name string
    The unique name of the resource.
    args ObjectZtnaTrafficforwardproxyArgs
    The arguments to resource properties.
    opts CustomResourceOptions
    Bag of options to control resource's behavior.
    resource_name str
    The unique name of the resource.
    args ObjectZtnaTrafficforwardproxyArgs
    The arguments to resource properties.
    opts ResourceOptions
    Bag of options to control resource's behavior.
    ctx Context
    Context object for the current deployment.
    name string
    The unique name of the resource.
    args ObjectZtnaTrafficforwardproxyArgs
    The arguments to resource properties.
    opts ResourceOption
    Bag of options to control resource's behavior.
    name string
    The unique name of the resource.
    args ObjectZtnaTrafficforwardproxyArgs
    The arguments to resource properties.
    opts CustomResourceOptions
    Bag of options to control resource's behavior.
    name String
    The unique name of the resource.
    args ObjectZtnaTrafficforwardproxyArgs
    The arguments to resource properties.
    options CustomResourceOptions
    Bag of options to control resource's behavior.

    Constructor example

    The following reference example uses placeholder values for all input properties.

    var objectZtnaTrafficforwardproxyResource = new Fortimanager.ObjectZtnaTrafficforwardproxy("objectZtnaTrafficforwardproxyResource", new()
    {
        Adom = "string",
        AuthPortal = "string",
        AuthVirtualHosts = new[]
        {
            "string",
        },
        ClientCert = "string",
        Comment = "string",
        DecryptedTrafficMirrors = new[]
        {
            "string",
        },
        DynamicSortSubtable = "string",
        EmptyCertAction = "string",
        H3Support = "string",
        Hosts = new[]
        {
            "string",
        },
        Interfaces = new[]
        {
            "string",
        },
        LogBlockedTraffic = "string",
        Name = "string",
        ObjectZtnaTrafficforwardproxyId = "string",
        Port = "string",
        Quic = new Fortimanager.Inputs.ObjectZtnaTrafficforwardproxyQuicArgs
        {
            AckDelayExponent = 0,
            ActiveConnectionIdLimit = 0,
            ActiveMigration = "string",
            GreaseQuicBit = "string",
            MaxAckDelay = 0,
            MaxDatagramFrameSize = 0,
            MaxIdleTimeout = 0,
            MaxUdpPayloadSize = 0,
        },
        Scopetype = "string",
        SslAcceptFfdheGroups = "string",
        SslAlgorithm = "string",
        SslCertificates = new[]
        {
            "string",
        },
        SslCipherSuites = new[]
        {
            new Fortimanager.Inputs.ObjectZtnaTrafficforwardproxySslCipherSuiteArgs
            {
                Cipher = "string",
                Priority = 0,
                Versions = new[]
                {
                    "string",
                },
            },
        },
        SslClientFallback = "string",
        SslClientRekeyCount = 0,
        SslClientRenegotiation = "string",
        SslClientSessionStateMax = 0,
        SslClientSessionStateTimeout = 0,
        SslClientSessionStateType = "string",
        SslDhBits = "string",
        SslHpkp = "string",
        SslHpkpAge = 0,
        SslHpkpBackups = new[]
        {
            "string",
        },
        SslHpkpIncludeSubdomains = "string",
        SslHpkpPrimaries = new[]
        {
            "string",
        },
        SslHpkpReportUri = "string",
        SslHsts = "string",
        SslHstsAge = 0,
        SslHstsIncludeSubdomains = "string",
        SslHttpLocationConversion = "string",
        SslHttpMatchHost = "string",
        SslMaxVersion = "string",
        SslMinVersion = "string",
        SslMode = "string",
        SslPfs = "string",
        SslSendEmptyFrags = "string",
        SslServerAlgorithm = "string",
        SslServerCipherSuites = new[]
        {
            new Fortimanager.Inputs.ObjectZtnaTrafficforwardproxySslServerCipherSuiteArgs
            {
                Cipher = "string",
                Priority = 0,
                Versions = new[]
                {
                    "string",
                },
            },
        },
        SslServerMaxVersion = "string",
        SslServerMinVersion = "string",
        SslServerRenegotiation = "string",
        SslServerSessionStateMax = 0,
        SslServerSessionStateTimeout = 0,
        SslServerSessionStateType = "string",
        Status = "string",
        SvrPoolMultiplex = "string",
        SvrPoolServerMaxConcurrentRequest = 0,
        SvrPoolServerMaxRequest = 0,
        SvrPoolTtl = 0,
        UserAgentDetect = "string",
        Vip6s = new[]
        {
            "string",
        },
        Vips = new[]
        {
            "string",
        },
    });
    
    example, err := fortimanager.NewObjectZtnaTrafficforwardproxy(ctx, "objectZtnaTrafficforwardproxyResource", &fortimanager.ObjectZtnaTrafficforwardproxyArgs{
    	Adom:       pulumi.String("string"),
    	AuthPortal: pulumi.String("string"),
    	AuthVirtualHosts: pulumi.StringArray{
    		pulumi.String("string"),
    	},
    	ClientCert: pulumi.String("string"),
    	Comment:    pulumi.String("string"),
    	DecryptedTrafficMirrors: pulumi.StringArray{
    		pulumi.String("string"),
    	},
    	DynamicSortSubtable: pulumi.String("string"),
    	EmptyCertAction:     pulumi.String("string"),
    	H3Support:           pulumi.String("string"),
    	Hosts: pulumi.StringArray{
    		pulumi.String("string"),
    	},
    	Interfaces: pulumi.StringArray{
    		pulumi.String("string"),
    	},
    	LogBlockedTraffic:               pulumi.String("string"),
    	Name:                            pulumi.String("string"),
    	ObjectZtnaTrafficforwardproxyId: pulumi.String("string"),
    	Port:                            pulumi.String("string"),
    	Quic: &fortimanager.ObjectZtnaTrafficforwardproxyQuicTypeArgs{
    		AckDelayExponent:        pulumi.Float64(0),
    		ActiveConnectionIdLimit: pulumi.Float64(0),
    		ActiveMigration:         pulumi.String("string"),
    		GreaseQuicBit:           pulumi.String("string"),
    		MaxAckDelay:             pulumi.Float64(0),
    		MaxDatagramFrameSize:    pulumi.Float64(0),
    		MaxIdleTimeout:          pulumi.Float64(0),
    		MaxUdpPayloadSize:       pulumi.Float64(0),
    	},
    	Scopetype:            pulumi.String("string"),
    	SslAcceptFfdheGroups: pulumi.String("string"),
    	SslAlgorithm:         pulumi.String("string"),
    	SslCertificates: pulumi.StringArray{
    		pulumi.String("string"),
    	},
    	SslCipherSuites: fortimanager.ObjectZtnaTrafficforwardproxySslCipherSuiteArray{
    		&fortimanager.ObjectZtnaTrafficforwardproxySslCipherSuiteArgs{
    			Cipher:   pulumi.String("string"),
    			Priority: pulumi.Float64(0),
    			Versions: pulumi.StringArray{
    				pulumi.String("string"),
    			},
    		},
    	},
    	SslClientFallback:            pulumi.String("string"),
    	SslClientRekeyCount:          pulumi.Float64(0),
    	SslClientRenegotiation:       pulumi.String("string"),
    	SslClientSessionStateMax:     pulumi.Float64(0),
    	SslClientSessionStateTimeout: pulumi.Float64(0),
    	SslClientSessionStateType:    pulumi.String("string"),
    	SslDhBits:                    pulumi.String("string"),
    	SslHpkp:                      pulumi.String("string"),
    	SslHpkpAge:                   pulumi.Float64(0),
    	SslHpkpBackups: pulumi.StringArray{
    		pulumi.String("string"),
    	},
    	SslHpkpIncludeSubdomains: pulumi.String("string"),
    	SslHpkpPrimaries: pulumi.StringArray{
    		pulumi.String("string"),
    	},
    	SslHpkpReportUri:          pulumi.String("string"),
    	SslHsts:                   pulumi.String("string"),
    	SslHstsAge:                pulumi.Float64(0),
    	SslHstsIncludeSubdomains:  pulumi.String("string"),
    	SslHttpLocationConversion: pulumi.String("string"),
    	SslHttpMatchHost:          pulumi.String("string"),
    	SslMaxVersion:             pulumi.String("string"),
    	SslMinVersion:             pulumi.String("string"),
    	SslMode:                   pulumi.String("string"),
    	SslPfs:                    pulumi.String("string"),
    	SslSendEmptyFrags:         pulumi.String("string"),
    	SslServerAlgorithm:        pulumi.String("string"),
    	SslServerCipherSuites: fortimanager.ObjectZtnaTrafficforwardproxySslServerCipherSuiteArray{
    		&fortimanager.ObjectZtnaTrafficforwardproxySslServerCipherSuiteArgs{
    			Cipher:   pulumi.String("string"),
    			Priority: pulumi.Float64(0),
    			Versions: pulumi.StringArray{
    				pulumi.String("string"),
    			},
    		},
    	},
    	SslServerMaxVersion:               pulumi.String("string"),
    	SslServerMinVersion:               pulumi.String("string"),
    	SslServerRenegotiation:            pulumi.String("string"),
    	SslServerSessionStateMax:          pulumi.Float64(0),
    	SslServerSessionStateTimeout:      pulumi.Float64(0),
    	SslServerSessionStateType:         pulumi.String("string"),
    	Status:                            pulumi.String("string"),
    	SvrPoolMultiplex:                  pulumi.String("string"),
    	SvrPoolServerMaxConcurrentRequest: pulumi.Float64(0),
    	SvrPoolServerMaxRequest:           pulumi.Float64(0),
    	SvrPoolTtl:                        pulumi.Float64(0),
    	UserAgentDetect:                   pulumi.String("string"),
    	Vip6s: pulumi.StringArray{
    		pulumi.String("string"),
    	},
    	Vips: pulumi.StringArray{
    		pulumi.String("string"),
    	},
    })
    
    var objectZtnaTrafficforwardproxyResource = new ObjectZtnaTrafficforwardproxy("objectZtnaTrafficforwardproxyResource", ObjectZtnaTrafficforwardproxyArgs.builder()
        .adom("string")
        .authPortal("string")
        .authVirtualHosts("string")
        .clientCert("string")
        .comment("string")
        .decryptedTrafficMirrors("string")
        .dynamicSortSubtable("string")
        .emptyCertAction("string")
        .h3Support("string")
        .hosts("string")
        .interfaces("string")
        .logBlockedTraffic("string")
        .name("string")
        .objectZtnaTrafficforwardproxyId("string")
        .port("string")
        .quic(ObjectZtnaTrafficforwardproxyQuicArgs.builder()
            .ackDelayExponent(0.0)
            .activeConnectionIdLimit(0.0)
            .activeMigration("string")
            .greaseQuicBit("string")
            .maxAckDelay(0.0)
            .maxDatagramFrameSize(0.0)
            .maxIdleTimeout(0.0)
            .maxUdpPayloadSize(0.0)
            .build())
        .scopetype("string")
        .sslAcceptFfdheGroups("string")
        .sslAlgorithm("string")
        .sslCertificates("string")
        .sslCipherSuites(ObjectZtnaTrafficforwardproxySslCipherSuiteArgs.builder()
            .cipher("string")
            .priority(0.0)
            .versions("string")
            .build())
        .sslClientFallback("string")
        .sslClientRekeyCount(0.0)
        .sslClientRenegotiation("string")
        .sslClientSessionStateMax(0.0)
        .sslClientSessionStateTimeout(0.0)
        .sslClientSessionStateType("string")
        .sslDhBits("string")
        .sslHpkp("string")
        .sslHpkpAge(0.0)
        .sslHpkpBackups("string")
        .sslHpkpIncludeSubdomains("string")
        .sslHpkpPrimaries("string")
        .sslHpkpReportUri("string")
        .sslHsts("string")
        .sslHstsAge(0.0)
        .sslHstsIncludeSubdomains("string")
        .sslHttpLocationConversion("string")
        .sslHttpMatchHost("string")
        .sslMaxVersion("string")
        .sslMinVersion("string")
        .sslMode("string")
        .sslPfs("string")
        .sslSendEmptyFrags("string")
        .sslServerAlgorithm("string")
        .sslServerCipherSuites(ObjectZtnaTrafficforwardproxySslServerCipherSuiteArgs.builder()
            .cipher("string")
            .priority(0.0)
            .versions("string")
            .build())
        .sslServerMaxVersion("string")
        .sslServerMinVersion("string")
        .sslServerRenegotiation("string")
        .sslServerSessionStateMax(0.0)
        .sslServerSessionStateTimeout(0.0)
        .sslServerSessionStateType("string")
        .status("string")
        .svrPoolMultiplex("string")
        .svrPoolServerMaxConcurrentRequest(0.0)
        .svrPoolServerMaxRequest(0.0)
        .svrPoolTtl(0.0)
        .userAgentDetect("string")
        .vip6s("string")
        .vips("string")
        .build());
    
    object_ztna_trafficforwardproxy_resource = fortimanager.ObjectZtnaTrafficforwardproxy("objectZtnaTrafficforwardproxyResource",
        adom="string",
        auth_portal="string",
        auth_virtual_hosts=["string"],
        client_cert="string",
        comment="string",
        decrypted_traffic_mirrors=["string"],
        dynamic_sort_subtable="string",
        empty_cert_action="string",
        h3_support="string",
        hosts=["string"],
        interfaces=["string"],
        log_blocked_traffic="string",
        name="string",
        object_ztna_trafficforwardproxy_id="string",
        port="string",
        quic={
            "ack_delay_exponent": 0,
            "active_connection_id_limit": 0,
            "active_migration": "string",
            "grease_quic_bit": "string",
            "max_ack_delay": 0,
            "max_datagram_frame_size": 0,
            "max_idle_timeout": 0,
            "max_udp_payload_size": 0,
        },
        scopetype="string",
        ssl_accept_ffdhe_groups="string",
        ssl_algorithm="string",
        ssl_certificates=["string"],
        ssl_cipher_suites=[{
            "cipher": "string",
            "priority": 0,
            "versions": ["string"],
        }],
        ssl_client_fallback="string",
        ssl_client_rekey_count=0,
        ssl_client_renegotiation="string",
        ssl_client_session_state_max=0,
        ssl_client_session_state_timeout=0,
        ssl_client_session_state_type="string",
        ssl_dh_bits="string",
        ssl_hpkp="string",
        ssl_hpkp_age=0,
        ssl_hpkp_backups=["string"],
        ssl_hpkp_include_subdomains="string",
        ssl_hpkp_primaries=["string"],
        ssl_hpkp_report_uri="string",
        ssl_hsts="string",
        ssl_hsts_age=0,
        ssl_hsts_include_subdomains="string",
        ssl_http_location_conversion="string",
        ssl_http_match_host="string",
        ssl_max_version="string",
        ssl_min_version="string",
        ssl_mode="string",
        ssl_pfs="string",
        ssl_send_empty_frags="string",
        ssl_server_algorithm="string",
        ssl_server_cipher_suites=[{
            "cipher": "string",
            "priority": 0,
            "versions": ["string"],
        }],
        ssl_server_max_version="string",
        ssl_server_min_version="string",
        ssl_server_renegotiation="string",
        ssl_server_session_state_max=0,
        ssl_server_session_state_timeout=0,
        ssl_server_session_state_type="string",
        status="string",
        svr_pool_multiplex="string",
        svr_pool_server_max_concurrent_request=0,
        svr_pool_server_max_request=0,
        svr_pool_ttl=0,
        user_agent_detect="string",
        vip6s=["string"],
        vips=["string"])
    
    const objectZtnaTrafficforwardproxyResource = new fortimanager.ObjectZtnaTrafficforwardproxy("objectZtnaTrafficforwardproxyResource", {
        adom: "string",
        authPortal: "string",
        authVirtualHosts: ["string"],
        clientCert: "string",
        comment: "string",
        decryptedTrafficMirrors: ["string"],
        dynamicSortSubtable: "string",
        emptyCertAction: "string",
        h3Support: "string",
        hosts: ["string"],
        interfaces: ["string"],
        logBlockedTraffic: "string",
        name: "string",
        objectZtnaTrafficforwardproxyId: "string",
        port: "string",
        quic: {
            ackDelayExponent: 0,
            activeConnectionIdLimit: 0,
            activeMigration: "string",
            greaseQuicBit: "string",
            maxAckDelay: 0,
            maxDatagramFrameSize: 0,
            maxIdleTimeout: 0,
            maxUdpPayloadSize: 0,
        },
        scopetype: "string",
        sslAcceptFfdheGroups: "string",
        sslAlgorithm: "string",
        sslCertificates: ["string"],
        sslCipherSuites: [{
            cipher: "string",
            priority: 0,
            versions: ["string"],
        }],
        sslClientFallback: "string",
        sslClientRekeyCount: 0,
        sslClientRenegotiation: "string",
        sslClientSessionStateMax: 0,
        sslClientSessionStateTimeout: 0,
        sslClientSessionStateType: "string",
        sslDhBits: "string",
        sslHpkp: "string",
        sslHpkpAge: 0,
        sslHpkpBackups: ["string"],
        sslHpkpIncludeSubdomains: "string",
        sslHpkpPrimaries: ["string"],
        sslHpkpReportUri: "string",
        sslHsts: "string",
        sslHstsAge: 0,
        sslHstsIncludeSubdomains: "string",
        sslHttpLocationConversion: "string",
        sslHttpMatchHost: "string",
        sslMaxVersion: "string",
        sslMinVersion: "string",
        sslMode: "string",
        sslPfs: "string",
        sslSendEmptyFrags: "string",
        sslServerAlgorithm: "string",
        sslServerCipherSuites: [{
            cipher: "string",
            priority: 0,
            versions: ["string"],
        }],
        sslServerMaxVersion: "string",
        sslServerMinVersion: "string",
        sslServerRenegotiation: "string",
        sslServerSessionStateMax: 0,
        sslServerSessionStateTimeout: 0,
        sslServerSessionStateType: "string",
        status: "string",
        svrPoolMultiplex: "string",
        svrPoolServerMaxConcurrentRequest: 0,
        svrPoolServerMaxRequest: 0,
        svrPoolTtl: 0,
        userAgentDetect: "string",
        vip6s: ["string"],
        vips: ["string"],
    });
    
    type: fortimanager:ObjectZtnaTrafficforwardproxy
    properties:
        adom: string
        authPortal: string
        authVirtualHosts:
            - string
        clientCert: string
        comment: string
        decryptedTrafficMirrors:
            - string
        dynamicSortSubtable: string
        emptyCertAction: string
        h3Support: string
        hosts:
            - string
        interfaces:
            - string
        logBlockedTraffic: string
        name: string
        objectZtnaTrafficforwardproxyId: string
        port: string
        quic:
            ackDelayExponent: 0
            activeConnectionIdLimit: 0
            activeMigration: string
            greaseQuicBit: string
            maxAckDelay: 0
            maxDatagramFrameSize: 0
            maxIdleTimeout: 0
            maxUdpPayloadSize: 0
        scopetype: string
        sslAcceptFfdheGroups: string
        sslAlgorithm: string
        sslCertificates:
            - string
        sslCipherSuites:
            - cipher: string
              priority: 0
              versions:
                - string
        sslClientFallback: string
        sslClientRekeyCount: 0
        sslClientRenegotiation: string
        sslClientSessionStateMax: 0
        sslClientSessionStateTimeout: 0
        sslClientSessionStateType: string
        sslDhBits: string
        sslHpkp: string
        sslHpkpAge: 0
        sslHpkpBackups:
            - string
        sslHpkpIncludeSubdomains: string
        sslHpkpPrimaries:
            - string
        sslHpkpReportUri: string
        sslHsts: string
        sslHstsAge: 0
        sslHstsIncludeSubdomains: string
        sslHttpLocationConversion: string
        sslHttpMatchHost: string
        sslMaxVersion: string
        sslMinVersion: string
        sslMode: string
        sslPfs: string
        sslSendEmptyFrags: string
        sslServerAlgorithm: string
        sslServerCipherSuites:
            - cipher: string
              priority: 0
              versions:
                - string
        sslServerMaxVersion: string
        sslServerMinVersion: string
        sslServerRenegotiation: string
        sslServerSessionStateMax: 0
        sslServerSessionStateTimeout: 0
        sslServerSessionStateType: string
        status: string
        svrPoolMultiplex: string
        svrPoolServerMaxConcurrentRequest: 0
        svrPoolServerMaxRequest: 0
        svrPoolTtl: 0
        userAgentDetect: string
        vip6s:
            - string
        vips:
            - string
    

    ObjectZtnaTrafficforwardproxy Resource Properties

    To learn more about resource properties and how to use them, see Inputs and Outputs in the Architecture and Concepts docs.

    Inputs

    In Python, inputs that are objects can be passed either as argument classes or as dictionary literals.

    The ObjectZtnaTrafficforwardproxy resource accepts the following input properties:

    Adom string
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    AuthPortal string
    Enable/disable authentication portal. Valid values: disable, enable.
    AuthVirtualHosts List<string>
    Virtual host for authentication portal.
    ClientCert string
    Client-Cert. Valid values: disable, enable.
    Comment string
    Comment.
    DecryptedTrafficMirrors List<string>
    Decrypted traffic mirror.
    DynamicSortSubtable string
    true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
    EmptyCertAction string
    Empty-Cert-Action. Valid values: accept, block, accept-unmanageable.
    H3Support string
    H3-Support. Valid values: disable, enable.
    Hosts List<string>
    Virtual or real host name.
    Interfaces List<string>
    Interface.
    LogBlockedTraffic string
    Enable/disable logging of blocked traffic. Valid values: disable, enable.
    Name string
    ZTNA proxy name.
    ObjectZtnaTrafficforwardproxyId string
    an identifier for the resource with format {{name}}.
    Port string
    Port.
    Quic ObjectZtnaTrafficforwardproxyQuic
    Quic. The structure of quic block is documented below.
    Scopetype string
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    SslAcceptFfdheGroups string
    Ssl-Accept-Ffdhe-Groups. Valid values: disable, enable.
    SslAlgorithm string
    Ssl-Algorithm. Valid values: high, low, medium, custom.
    SslCertificates List<string>
    Ssl-Certificate.
    SslCipherSuites List<ObjectZtnaTrafficforwardproxySslCipherSuite>
    Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
    SslClientFallback string
    Ssl-Client-Fallback. Valid values: disable, enable.
    SslClientRekeyCount double
    Ssl-Client-Rekey-Count.
    SslClientRenegotiation string
    Ssl-Client-Renegotiation. Valid values: allow, deny, secure.
    SslClientSessionStateMax double
    Ssl-Client-Session-State-Max.
    SslClientSessionStateTimeout double
    Ssl-Client-Session-State-Timeout.
    SslClientSessionStateType string
    Ssl-Client-Session-State-Type. Valid values: disable, time, count, both.
    SslDhBits string
    Ssl-Dh-Bits. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
    SslHpkp string
    Ssl-Hpkp. Valid values: disable, enable, report-only.
    SslHpkpAge double
    Ssl-Hpkp-Age.
    SslHpkpBackups List<string>
    Ssl-Hpkp-Backup.
    SslHpkpIncludeSubdomains string
    Ssl-Hpkp-Include-Subdomains. Valid values: disable, enable.
    SslHpkpPrimaries List<string>
    Ssl-Hpkp-Primary.
    SslHpkpReportUri string
    Ssl-Hpkp-Report-Uri.
    SslHsts string
    Ssl-Hsts. Valid values: disable, enable.
    SslHstsAge double
    Ssl-Hsts-Age.
    SslHstsIncludeSubdomains string
    Ssl-Hsts-Include-Subdomains. Valid values: disable, enable.
    SslHttpLocationConversion string
    Ssl-Http-Location-Conversion. Valid values: disable, enable.
    SslHttpMatchHost string
    Ssl-Http-Match-Host. Valid values: disable, enable.
    SslMaxVersion string
    Ssl-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    SslMinVersion string
    Ssl-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    SslMode string
    Ssl-Mode. Valid values: half, full.
    SslPfs string
    Ssl-Pfs. Valid values: require, deny, allow.
    SslSendEmptyFrags string
    Ssl-Send-Empty-Frags. Valid values: disable, enable.
    SslServerAlgorithm string
    Ssl-Server-Algorithm. Valid values: high, low, medium, custom, client.
    SslServerCipherSuites List<ObjectZtnaTrafficforwardproxySslServerCipherSuite>
    Ssl-Server-Cipher-Suites. The structure of ssl_server_cipher_suites block is documented below.
    SslServerMaxVersion string
    Ssl-Server-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    SslServerMinVersion string
    Ssl-Server-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    SslServerRenegotiation string
    Ssl-Server-Renegotiation. Valid values: disable, enable.
    SslServerSessionStateMax double
    Ssl-Server-Session-State-Max.
    SslServerSessionStateTimeout double
    Ssl-Server-Session-State-Timeout.
    SslServerSessionStateType string
    Ssl-Server-Session-State-Type. Valid values: disable, time, count, both.
    Status string
    Status. Valid values: disable, enable.
    SvrPoolMultiplex string
    Svr-Pool-Multiplex. Valid values: disable, enable.
    SvrPoolServerMaxConcurrentRequest double
    Svr-Pool-Server-Max-Concurrent-Request.
    SvrPoolServerMaxRequest double
    Svr-Pool-Server-Max-Request.
    SvrPoolTtl double
    Svr-Pool-Ttl.
    UserAgentDetect string
    User-Agent-Detect. Valid values: disable, enable.
    Vip6s List<string>
    Virtual IPv6 name.
    Vips List<string>
    Virtual IP name.
    Adom string
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    AuthPortal string
    Enable/disable authentication portal. Valid values: disable, enable.
    AuthVirtualHosts []string
    Virtual host for authentication portal.
    ClientCert string
    Client-Cert. Valid values: disable, enable.
    Comment string
    Comment.
    DecryptedTrafficMirrors []string
    Decrypted traffic mirror.
    DynamicSortSubtable string
    true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
    EmptyCertAction string
    Empty-Cert-Action. Valid values: accept, block, accept-unmanageable.
    H3Support string
    H3-Support. Valid values: disable, enable.
    Hosts []string
    Virtual or real host name.
    Interfaces []string
    Interface.
    LogBlockedTraffic string
    Enable/disable logging of blocked traffic. Valid values: disable, enable.
    Name string
    ZTNA proxy name.
    ObjectZtnaTrafficforwardproxyId string
    an identifier for the resource with format {{name}}.
    Port string
    Port.
    Quic ObjectZtnaTrafficforwardproxyQuicTypeArgs
    Quic. The structure of quic block is documented below.
    Scopetype string
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    SslAcceptFfdheGroups string
    Ssl-Accept-Ffdhe-Groups. Valid values: disable, enable.
    SslAlgorithm string
    Ssl-Algorithm. Valid values: high, low, medium, custom.
    SslCertificates []string
    Ssl-Certificate.
    SslCipherSuites []ObjectZtnaTrafficforwardproxySslCipherSuiteArgs
    Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
    SslClientFallback string
    Ssl-Client-Fallback. Valid values: disable, enable.
    SslClientRekeyCount float64
    Ssl-Client-Rekey-Count.
    SslClientRenegotiation string
    Ssl-Client-Renegotiation. Valid values: allow, deny, secure.
    SslClientSessionStateMax float64
    Ssl-Client-Session-State-Max.
    SslClientSessionStateTimeout float64
    Ssl-Client-Session-State-Timeout.
    SslClientSessionStateType string
    Ssl-Client-Session-State-Type. Valid values: disable, time, count, both.
    SslDhBits string
    Ssl-Dh-Bits. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
    SslHpkp string
    Ssl-Hpkp. Valid values: disable, enable, report-only.
    SslHpkpAge float64
    Ssl-Hpkp-Age.
    SslHpkpBackups []string
    Ssl-Hpkp-Backup.
    SslHpkpIncludeSubdomains string
    Ssl-Hpkp-Include-Subdomains. Valid values: disable, enable.
    SslHpkpPrimaries []string
    Ssl-Hpkp-Primary.
    SslHpkpReportUri string
    Ssl-Hpkp-Report-Uri.
    SslHsts string
    Ssl-Hsts. Valid values: disable, enable.
    SslHstsAge float64
    Ssl-Hsts-Age.
    SslHstsIncludeSubdomains string
    Ssl-Hsts-Include-Subdomains. Valid values: disable, enable.
    SslHttpLocationConversion string
    Ssl-Http-Location-Conversion. Valid values: disable, enable.
    SslHttpMatchHost string
    Ssl-Http-Match-Host. Valid values: disable, enable.
    SslMaxVersion string
    Ssl-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    SslMinVersion string
    Ssl-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    SslMode string
    Ssl-Mode. Valid values: half, full.
    SslPfs string
    Ssl-Pfs. Valid values: require, deny, allow.
    SslSendEmptyFrags string
    Ssl-Send-Empty-Frags. Valid values: disable, enable.
    SslServerAlgorithm string
    Ssl-Server-Algorithm. Valid values: high, low, medium, custom, client.
    SslServerCipherSuites []ObjectZtnaTrafficforwardproxySslServerCipherSuiteArgs
    Ssl-Server-Cipher-Suites. The structure of ssl_server_cipher_suites block is documented below.
    SslServerMaxVersion string
    Ssl-Server-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    SslServerMinVersion string
    Ssl-Server-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    SslServerRenegotiation string
    Ssl-Server-Renegotiation. Valid values: disable, enable.
    SslServerSessionStateMax float64
    Ssl-Server-Session-State-Max.
    SslServerSessionStateTimeout float64
    Ssl-Server-Session-State-Timeout.
    SslServerSessionStateType string
    Ssl-Server-Session-State-Type. Valid values: disable, time, count, both.
    Status string
    Status. Valid values: disable, enable.
    SvrPoolMultiplex string
    Svr-Pool-Multiplex. Valid values: disable, enable.
    SvrPoolServerMaxConcurrentRequest float64
    Svr-Pool-Server-Max-Concurrent-Request.
    SvrPoolServerMaxRequest float64
    Svr-Pool-Server-Max-Request.
    SvrPoolTtl float64
    Svr-Pool-Ttl.
    UserAgentDetect string
    User-Agent-Detect. Valid values: disable, enable.
    Vip6s []string
    Virtual IPv6 name.
    Vips []string
    Virtual IP name.
    adom String
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    authPortal String
    Enable/disable authentication portal. Valid values: disable, enable.
    authVirtualHosts List<String>
    Virtual host for authentication portal.
    clientCert String
    Client-Cert. Valid values: disable, enable.
    comment String
    Comment.
    decryptedTrafficMirrors List<String>
    Decrypted traffic mirror.
    dynamicSortSubtable String
    true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
    emptyCertAction String
    Empty-Cert-Action. Valid values: accept, block, accept-unmanageable.
    h3Support String
    H3-Support. Valid values: disable, enable.
    hosts List<String>
    Virtual or real host name.
    interfaces List<String>
    Interface.
    logBlockedTraffic String
    Enable/disable logging of blocked traffic. Valid values: disable, enable.
    name String
    ZTNA proxy name.
    objectZtnaTrafficforwardproxyId String
    an identifier for the resource with format {{name}}.
    port String
    Port.
    quic ObjectZtnaTrafficforwardproxyQuic
    Quic. The structure of quic block is documented below.
    scopetype String
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    sslAcceptFfdheGroups String
    Ssl-Accept-Ffdhe-Groups. Valid values: disable, enable.
    sslAlgorithm String
    Ssl-Algorithm. Valid values: high, low, medium, custom.
    sslCertificates List<String>
    Ssl-Certificate.
    sslCipherSuites List<ObjectZtnaTrafficforwardproxySslCipherSuite>
    Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
    sslClientFallback String
    Ssl-Client-Fallback. Valid values: disable, enable.
    sslClientRekeyCount Double
    Ssl-Client-Rekey-Count.
    sslClientRenegotiation String
    Ssl-Client-Renegotiation. Valid values: allow, deny, secure.
    sslClientSessionStateMax Double
    Ssl-Client-Session-State-Max.
    sslClientSessionStateTimeout Double
    Ssl-Client-Session-State-Timeout.
    sslClientSessionStateType String
    Ssl-Client-Session-State-Type. Valid values: disable, time, count, both.
    sslDhBits String
    Ssl-Dh-Bits. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
    sslHpkp String
    Ssl-Hpkp. Valid values: disable, enable, report-only.
    sslHpkpAge Double
    Ssl-Hpkp-Age.
    sslHpkpBackups List<String>
    Ssl-Hpkp-Backup.
    sslHpkpIncludeSubdomains String
    Ssl-Hpkp-Include-Subdomains. Valid values: disable, enable.
    sslHpkpPrimaries List<String>
    Ssl-Hpkp-Primary.
    sslHpkpReportUri String
    Ssl-Hpkp-Report-Uri.
    sslHsts String
    Ssl-Hsts. Valid values: disable, enable.
    sslHstsAge Double
    Ssl-Hsts-Age.
    sslHstsIncludeSubdomains String
    Ssl-Hsts-Include-Subdomains. Valid values: disable, enable.
    sslHttpLocationConversion String
    Ssl-Http-Location-Conversion. Valid values: disable, enable.
    sslHttpMatchHost String
    Ssl-Http-Match-Host. Valid values: disable, enable.
    sslMaxVersion String
    Ssl-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    sslMinVersion String
    Ssl-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    sslMode String
    Ssl-Mode. Valid values: half, full.
    sslPfs String
    Ssl-Pfs. Valid values: require, deny, allow.
    sslSendEmptyFrags String
    Ssl-Send-Empty-Frags. Valid values: disable, enable.
    sslServerAlgorithm String
    Ssl-Server-Algorithm. Valid values: high, low, medium, custom, client.
    sslServerCipherSuites List<ObjectZtnaTrafficforwardproxySslServerCipherSuite>
    Ssl-Server-Cipher-Suites. The structure of ssl_server_cipher_suites block is documented below.
    sslServerMaxVersion String
    Ssl-Server-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    sslServerMinVersion String
    Ssl-Server-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    sslServerRenegotiation String
    Ssl-Server-Renegotiation. Valid values: disable, enable.
    sslServerSessionStateMax Double
    Ssl-Server-Session-State-Max.
    sslServerSessionStateTimeout Double
    Ssl-Server-Session-State-Timeout.
    sslServerSessionStateType String
    Ssl-Server-Session-State-Type. Valid values: disable, time, count, both.
    status String
    Status. Valid values: disable, enable.
    svrPoolMultiplex String
    Svr-Pool-Multiplex. Valid values: disable, enable.
    svrPoolServerMaxConcurrentRequest Double
    Svr-Pool-Server-Max-Concurrent-Request.
    svrPoolServerMaxRequest Double
    Svr-Pool-Server-Max-Request.
    svrPoolTtl Double
    Svr-Pool-Ttl.
    userAgentDetect String
    User-Agent-Detect. Valid values: disable, enable.
    vip6s List<String>
    Virtual IPv6 name.
    vips List<String>
    Virtual IP name.
    adom string
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    authPortal string
    Enable/disable authentication portal. Valid values: disable, enable.
    authVirtualHosts string[]
    Virtual host for authentication portal.
    clientCert string
    Client-Cert. Valid values: disable, enable.
    comment string
    Comment.
    decryptedTrafficMirrors string[]
    Decrypted traffic mirror.
    dynamicSortSubtable string
    true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
    emptyCertAction string
    Empty-Cert-Action. Valid values: accept, block, accept-unmanageable.
    h3Support string
    H3-Support. Valid values: disable, enable.
    hosts string[]
    Virtual or real host name.
    interfaces string[]
    Interface.
    logBlockedTraffic string
    Enable/disable logging of blocked traffic. Valid values: disable, enable.
    name string
    ZTNA proxy name.
    objectZtnaTrafficforwardproxyId string
    an identifier for the resource with format {{name}}.
    port string
    Port.
    quic ObjectZtnaTrafficforwardproxyQuic
    Quic. The structure of quic block is documented below.
    scopetype string
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    sslAcceptFfdheGroups string
    Ssl-Accept-Ffdhe-Groups. Valid values: disable, enable.
    sslAlgorithm string
    Ssl-Algorithm. Valid values: high, low, medium, custom.
    sslCertificates string[]
    Ssl-Certificate.
    sslCipherSuites ObjectZtnaTrafficforwardproxySslCipherSuite[]
    Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
    sslClientFallback string
    Ssl-Client-Fallback. Valid values: disable, enable.
    sslClientRekeyCount number
    Ssl-Client-Rekey-Count.
    sslClientRenegotiation string
    Ssl-Client-Renegotiation. Valid values: allow, deny, secure.
    sslClientSessionStateMax number
    Ssl-Client-Session-State-Max.
    sslClientSessionStateTimeout number
    Ssl-Client-Session-State-Timeout.
    sslClientSessionStateType string
    Ssl-Client-Session-State-Type. Valid values: disable, time, count, both.
    sslDhBits string
    Ssl-Dh-Bits. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
    sslHpkp string
    Ssl-Hpkp. Valid values: disable, enable, report-only.
    sslHpkpAge number
    Ssl-Hpkp-Age.
    sslHpkpBackups string[]
    Ssl-Hpkp-Backup.
    sslHpkpIncludeSubdomains string
    Ssl-Hpkp-Include-Subdomains. Valid values: disable, enable.
    sslHpkpPrimaries string[]
    Ssl-Hpkp-Primary.
    sslHpkpReportUri string
    Ssl-Hpkp-Report-Uri.
    sslHsts string
    Ssl-Hsts. Valid values: disable, enable.
    sslHstsAge number
    Ssl-Hsts-Age.
    sslHstsIncludeSubdomains string
    Ssl-Hsts-Include-Subdomains. Valid values: disable, enable.
    sslHttpLocationConversion string
    Ssl-Http-Location-Conversion. Valid values: disable, enable.
    sslHttpMatchHost string
    Ssl-Http-Match-Host. Valid values: disable, enable.
    sslMaxVersion string
    Ssl-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    sslMinVersion string
    Ssl-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    sslMode string
    Ssl-Mode. Valid values: half, full.
    sslPfs string
    Ssl-Pfs. Valid values: require, deny, allow.
    sslSendEmptyFrags string
    Ssl-Send-Empty-Frags. Valid values: disable, enable.
    sslServerAlgorithm string
    Ssl-Server-Algorithm. Valid values: high, low, medium, custom, client.
    sslServerCipherSuites ObjectZtnaTrafficforwardproxySslServerCipherSuite[]
    Ssl-Server-Cipher-Suites. The structure of ssl_server_cipher_suites block is documented below.
    sslServerMaxVersion string
    Ssl-Server-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    sslServerMinVersion string
    Ssl-Server-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    sslServerRenegotiation string
    Ssl-Server-Renegotiation. Valid values: disable, enable.
    sslServerSessionStateMax number
    Ssl-Server-Session-State-Max.
    sslServerSessionStateTimeout number
    Ssl-Server-Session-State-Timeout.
    sslServerSessionStateType string
    Ssl-Server-Session-State-Type. Valid values: disable, time, count, both.
    status string
    Status. Valid values: disable, enable.
    svrPoolMultiplex string
    Svr-Pool-Multiplex. Valid values: disable, enable.
    svrPoolServerMaxConcurrentRequest number
    Svr-Pool-Server-Max-Concurrent-Request.
    svrPoolServerMaxRequest number
    Svr-Pool-Server-Max-Request.
    svrPoolTtl number
    Svr-Pool-Ttl.
    userAgentDetect string
    User-Agent-Detect. Valid values: disable, enable.
    vip6s string[]
    Virtual IPv6 name.
    vips string[]
    Virtual IP name.
    adom str
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    auth_portal str
    Enable/disable authentication portal. Valid values: disable, enable.
    auth_virtual_hosts Sequence[str]
    Virtual host for authentication portal.
    client_cert str
    Client-Cert. Valid values: disable, enable.
    comment str
    Comment.
    decrypted_traffic_mirrors Sequence[str]
    Decrypted traffic mirror.
    dynamic_sort_subtable str
    true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
    empty_cert_action str
    Empty-Cert-Action. Valid values: accept, block, accept-unmanageable.
    h3_support str
    H3-Support. Valid values: disable, enable.
    hosts Sequence[str]
    Virtual or real host name.
    interfaces Sequence[str]
    Interface.
    log_blocked_traffic str
    Enable/disable logging of blocked traffic. Valid values: disable, enable.
    name str
    ZTNA proxy name.
    object_ztna_trafficforwardproxy_id str
    an identifier for the resource with format {{name}}.
    port str
    Port.
    quic ObjectZtnaTrafficforwardproxyQuicArgs
    Quic. The structure of quic block is documented below.
    scopetype str
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    ssl_accept_ffdhe_groups str
    Ssl-Accept-Ffdhe-Groups. Valid values: disable, enable.
    ssl_algorithm str
    Ssl-Algorithm. Valid values: high, low, medium, custom.
    ssl_certificates Sequence[str]
    Ssl-Certificate.
    ssl_cipher_suites Sequence[ObjectZtnaTrafficforwardproxySslCipherSuiteArgs]
    Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
    ssl_client_fallback str
    Ssl-Client-Fallback. Valid values: disable, enable.
    ssl_client_rekey_count float
    Ssl-Client-Rekey-Count.
    ssl_client_renegotiation str
    Ssl-Client-Renegotiation. Valid values: allow, deny, secure.
    ssl_client_session_state_max float
    Ssl-Client-Session-State-Max.
    ssl_client_session_state_timeout float
    Ssl-Client-Session-State-Timeout.
    ssl_client_session_state_type str
    Ssl-Client-Session-State-Type. Valid values: disable, time, count, both.
    ssl_dh_bits str
    Ssl-Dh-Bits. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
    ssl_hpkp str
    Ssl-Hpkp. Valid values: disable, enable, report-only.
    ssl_hpkp_age float
    Ssl-Hpkp-Age.
    ssl_hpkp_backups Sequence[str]
    Ssl-Hpkp-Backup.
    ssl_hpkp_include_subdomains str
    Ssl-Hpkp-Include-Subdomains. Valid values: disable, enable.
    ssl_hpkp_primaries Sequence[str]
    Ssl-Hpkp-Primary.
    ssl_hpkp_report_uri str
    Ssl-Hpkp-Report-Uri.
    ssl_hsts str
    Ssl-Hsts. Valid values: disable, enable.
    ssl_hsts_age float
    Ssl-Hsts-Age.
    ssl_hsts_include_subdomains str
    Ssl-Hsts-Include-Subdomains. Valid values: disable, enable.
    ssl_http_location_conversion str
    Ssl-Http-Location-Conversion. Valid values: disable, enable.
    ssl_http_match_host str
    Ssl-Http-Match-Host. Valid values: disable, enable.
    ssl_max_version str
    Ssl-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    ssl_min_version str
    Ssl-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    ssl_mode str
    Ssl-Mode. Valid values: half, full.
    ssl_pfs str
    Ssl-Pfs. Valid values: require, deny, allow.
    ssl_send_empty_frags str
    Ssl-Send-Empty-Frags. Valid values: disable, enable.
    ssl_server_algorithm str
    Ssl-Server-Algorithm. Valid values: high, low, medium, custom, client.
    ssl_server_cipher_suites Sequence[ObjectZtnaTrafficforwardproxySslServerCipherSuiteArgs]
    Ssl-Server-Cipher-Suites. The structure of ssl_server_cipher_suites block is documented below.
    ssl_server_max_version str
    Ssl-Server-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    ssl_server_min_version str
    Ssl-Server-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    ssl_server_renegotiation str
    Ssl-Server-Renegotiation. Valid values: disable, enable.
    ssl_server_session_state_max float
    Ssl-Server-Session-State-Max.
    ssl_server_session_state_timeout float
    Ssl-Server-Session-State-Timeout.
    ssl_server_session_state_type str
    Ssl-Server-Session-State-Type. Valid values: disable, time, count, both.
    status str
    Status. Valid values: disable, enable.
    svr_pool_multiplex str
    Svr-Pool-Multiplex. Valid values: disable, enable.
    svr_pool_server_max_concurrent_request float
    Svr-Pool-Server-Max-Concurrent-Request.
    svr_pool_server_max_request float
    Svr-Pool-Server-Max-Request.
    svr_pool_ttl float
    Svr-Pool-Ttl.
    user_agent_detect str
    User-Agent-Detect. Valid values: disable, enable.
    vip6s Sequence[str]
    Virtual IPv6 name.
    vips Sequence[str]
    Virtual IP name.
    adom String
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    authPortal String
    Enable/disable authentication portal. Valid values: disable, enable.
    authVirtualHosts List<String>
    Virtual host for authentication portal.
    clientCert String
    Client-Cert. Valid values: disable, enable.
    comment String
    Comment.
    decryptedTrafficMirrors List<String>
    Decrypted traffic mirror.
    dynamicSortSubtable String
    true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
    emptyCertAction String
    Empty-Cert-Action. Valid values: accept, block, accept-unmanageable.
    h3Support String
    H3-Support. Valid values: disable, enable.
    hosts List<String>
    Virtual or real host name.
    interfaces List<String>
    Interface.
    logBlockedTraffic String
    Enable/disable logging of blocked traffic. Valid values: disable, enable.
    name String
    ZTNA proxy name.
    objectZtnaTrafficforwardproxyId String
    an identifier for the resource with format {{name}}.
    port String
    Port.
    quic Property Map
    Quic. The structure of quic block is documented below.
    scopetype String
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    sslAcceptFfdheGroups String
    Ssl-Accept-Ffdhe-Groups. Valid values: disable, enable.
    sslAlgorithm String
    Ssl-Algorithm. Valid values: high, low, medium, custom.
    sslCertificates List<String>
    Ssl-Certificate.
    sslCipherSuites List<Property Map>
    Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
    sslClientFallback String
    Ssl-Client-Fallback. Valid values: disable, enable.
    sslClientRekeyCount Number
    Ssl-Client-Rekey-Count.
    sslClientRenegotiation String
    Ssl-Client-Renegotiation. Valid values: allow, deny, secure.
    sslClientSessionStateMax Number
    Ssl-Client-Session-State-Max.
    sslClientSessionStateTimeout Number
    Ssl-Client-Session-State-Timeout.
    sslClientSessionStateType String
    Ssl-Client-Session-State-Type. Valid values: disable, time, count, both.
    sslDhBits String
    Ssl-Dh-Bits. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
    sslHpkp String
    Ssl-Hpkp. Valid values: disable, enable, report-only.
    sslHpkpAge Number
    Ssl-Hpkp-Age.
    sslHpkpBackups List<String>
    Ssl-Hpkp-Backup.
    sslHpkpIncludeSubdomains String
    Ssl-Hpkp-Include-Subdomains. Valid values: disable, enable.
    sslHpkpPrimaries List<String>
    Ssl-Hpkp-Primary.
    sslHpkpReportUri String
    Ssl-Hpkp-Report-Uri.
    sslHsts String
    Ssl-Hsts. Valid values: disable, enable.
    sslHstsAge Number
    Ssl-Hsts-Age.
    sslHstsIncludeSubdomains String
    Ssl-Hsts-Include-Subdomains. Valid values: disable, enable.
    sslHttpLocationConversion String
    Ssl-Http-Location-Conversion. Valid values: disable, enable.
    sslHttpMatchHost String
    Ssl-Http-Match-Host. Valid values: disable, enable.
    sslMaxVersion String
    Ssl-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    sslMinVersion String
    Ssl-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    sslMode String
    Ssl-Mode. Valid values: half, full.
    sslPfs String
    Ssl-Pfs. Valid values: require, deny, allow.
    sslSendEmptyFrags String
    Ssl-Send-Empty-Frags. Valid values: disable, enable.
    sslServerAlgorithm String
    Ssl-Server-Algorithm. Valid values: high, low, medium, custom, client.
    sslServerCipherSuites List<Property Map>
    Ssl-Server-Cipher-Suites. The structure of ssl_server_cipher_suites block is documented below.
    sslServerMaxVersion String
    Ssl-Server-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    sslServerMinVersion String
    Ssl-Server-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    sslServerRenegotiation String
    Ssl-Server-Renegotiation. Valid values: disable, enable.
    sslServerSessionStateMax Number
    Ssl-Server-Session-State-Max.
    sslServerSessionStateTimeout Number
    Ssl-Server-Session-State-Timeout.
    sslServerSessionStateType String
    Ssl-Server-Session-State-Type. Valid values: disable, time, count, both.
    status String
    Status. Valid values: disable, enable.
    svrPoolMultiplex String
    Svr-Pool-Multiplex. Valid values: disable, enable.
    svrPoolServerMaxConcurrentRequest Number
    Svr-Pool-Server-Max-Concurrent-Request.
    svrPoolServerMaxRequest Number
    Svr-Pool-Server-Max-Request.
    svrPoolTtl Number
    Svr-Pool-Ttl.
    userAgentDetect String
    User-Agent-Detect. Valid values: disable, enable.
    vip6s List<String>
    Virtual IPv6 name.
    vips List<String>
    Virtual IP name.

    Outputs

    All input properties are implicitly available as output properties. Additionally, the ObjectZtnaTrafficforwardproxy resource produces the following output properties:

    Id string
    The provider-assigned unique ID for this managed resource.
    Id string
    The provider-assigned unique ID for this managed resource.
    id String
    The provider-assigned unique ID for this managed resource.
    id string
    The provider-assigned unique ID for this managed resource.
    id str
    The provider-assigned unique ID for this managed resource.
    id String
    The provider-assigned unique ID for this managed resource.

    Look up Existing ObjectZtnaTrafficforwardproxy Resource

    Get an existing ObjectZtnaTrafficforwardproxy resource’s state with the given name, ID, and optional extra properties used to qualify the lookup.

    public static get(name: string, id: Input<ID>, state?: ObjectZtnaTrafficforwardproxyState, opts?: CustomResourceOptions): ObjectZtnaTrafficforwardproxy
    @staticmethod
    def get(resource_name: str,
            id: str,
            opts: Optional[ResourceOptions] = None,
            adom: Optional[str] = None,
            auth_portal: Optional[str] = None,
            auth_virtual_hosts: Optional[Sequence[str]] = None,
            client_cert: Optional[str] = None,
            comment: Optional[str] = None,
            decrypted_traffic_mirrors: Optional[Sequence[str]] = None,
            dynamic_sort_subtable: Optional[str] = None,
            empty_cert_action: Optional[str] = None,
            h3_support: Optional[str] = None,
            hosts: Optional[Sequence[str]] = None,
            interfaces: Optional[Sequence[str]] = None,
            log_blocked_traffic: Optional[str] = None,
            name: Optional[str] = None,
            object_ztna_trafficforwardproxy_id: Optional[str] = None,
            port: Optional[str] = None,
            quic: Optional[ObjectZtnaTrafficforwardproxyQuicArgs] = None,
            scopetype: Optional[str] = None,
            ssl_accept_ffdhe_groups: Optional[str] = None,
            ssl_algorithm: Optional[str] = None,
            ssl_certificates: Optional[Sequence[str]] = None,
            ssl_cipher_suites: Optional[Sequence[ObjectZtnaTrafficforwardproxySslCipherSuiteArgs]] = None,
            ssl_client_fallback: Optional[str] = None,
            ssl_client_rekey_count: Optional[float] = None,
            ssl_client_renegotiation: Optional[str] = None,
            ssl_client_session_state_max: Optional[float] = None,
            ssl_client_session_state_timeout: Optional[float] = None,
            ssl_client_session_state_type: Optional[str] = None,
            ssl_dh_bits: Optional[str] = None,
            ssl_hpkp: Optional[str] = None,
            ssl_hpkp_age: Optional[float] = None,
            ssl_hpkp_backups: Optional[Sequence[str]] = None,
            ssl_hpkp_include_subdomains: Optional[str] = None,
            ssl_hpkp_primaries: Optional[Sequence[str]] = None,
            ssl_hpkp_report_uri: Optional[str] = None,
            ssl_hsts: Optional[str] = None,
            ssl_hsts_age: Optional[float] = None,
            ssl_hsts_include_subdomains: Optional[str] = None,
            ssl_http_location_conversion: Optional[str] = None,
            ssl_http_match_host: Optional[str] = None,
            ssl_max_version: Optional[str] = None,
            ssl_min_version: Optional[str] = None,
            ssl_mode: Optional[str] = None,
            ssl_pfs: Optional[str] = None,
            ssl_send_empty_frags: Optional[str] = None,
            ssl_server_algorithm: Optional[str] = None,
            ssl_server_cipher_suites: Optional[Sequence[ObjectZtnaTrafficforwardproxySslServerCipherSuiteArgs]] = None,
            ssl_server_max_version: Optional[str] = None,
            ssl_server_min_version: Optional[str] = None,
            ssl_server_renegotiation: Optional[str] = None,
            ssl_server_session_state_max: Optional[float] = None,
            ssl_server_session_state_timeout: Optional[float] = None,
            ssl_server_session_state_type: Optional[str] = None,
            status: Optional[str] = None,
            svr_pool_multiplex: Optional[str] = None,
            svr_pool_server_max_concurrent_request: Optional[float] = None,
            svr_pool_server_max_request: Optional[float] = None,
            svr_pool_ttl: Optional[float] = None,
            user_agent_detect: Optional[str] = None,
            vip6s: Optional[Sequence[str]] = None,
            vips: Optional[Sequence[str]] = None) -> ObjectZtnaTrafficforwardproxy
    func GetObjectZtnaTrafficforwardproxy(ctx *Context, name string, id IDInput, state *ObjectZtnaTrafficforwardproxyState, opts ...ResourceOption) (*ObjectZtnaTrafficforwardproxy, error)
    public static ObjectZtnaTrafficforwardproxy Get(string name, Input<string> id, ObjectZtnaTrafficforwardproxyState? state, CustomResourceOptions? opts = null)
    public static ObjectZtnaTrafficforwardproxy get(String name, Output<String> id, ObjectZtnaTrafficforwardproxyState state, CustomResourceOptions options)
    resources:  _:    type: fortimanager:ObjectZtnaTrafficforwardproxy    get:      id: ${id}
    name
    The unique name of the resulting resource.
    id
    The unique provider ID of the resource to lookup.
    state
    Any extra arguments used during the lookup.
    opts
    A bag of options that control this resource's behavior.
    resource_name
    The unique name of the resulting resource.
    id
    The unique provider ID of the resource to lookup.
    name
    The unique name of the resulting resource.
    id
    The unique provider ID of the resource to lookup.
    state
    Any extra arguments used during the lookup.
    opts
    A bag of options that control this resource's behavior.
    name
    The unique name of the resulting resource.
    id
    The unique provider ID of the resource to lookup.
    state
    Any extra arguments used during the lookup.
    opts
    A bag of options that control this resource's behavior.
    name
    The unique name of the resulting resource.
    id
    The unique provider ID of the resource to lookup.
    state
    Any extra arguments used during the lookup.
    opts
    A bag of options that control this resource's behavior.
    The following state arguments are supported:
    Adom string
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    AuthPortal string
    Enable/disable authentication portal. Valid values: disable, enable.
    AuthVirtualHosts List<string>
    Virtual host for authentication portal.
    ClientCert string
    Client-Cert. Valid values: disable, enable.
    Comment string
    Comment.
    DecryptedTrafficMirrors List<string>
    Decrypted traffic mirror.
    DynamicSortSubtable string
    true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
    EmptyCertAction string
    Empty-Cert-Action. Valid values: accept, block, accept-unmanageable.
    H3Support string
    H3-Support. Valid values: disable, enable.
    Hosts List<string>
    Virtual or real host name.
    Interfaces List<string>
    Interface.
    LogBlockedTraffic string
    Enable/disable logging of blocked traffic. Valid values: disable, enable.
    Name string
    ZTNA proxy name.
    ObjectZtnaTrafficforwardproxyId string
    an identifier for the resource with format {{name}}.
    Port string
    Port.
    Quic ObjectZtnaTrafficforwardproxyQuic
    Quic. The structure of quic block is documented below.
    Scopetype string
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    SslAcceptFfdheGroups string
    Ssl-Accept-Ffdhe-Groups. Valid values: disable, enable.
    SslAlgorithm string
    Ssl-Algorithm. Valid values: high, low, medium, custom.
    SslCertificates List<string>
    Ssl-Certificate.
    SslCipherSuites List<ObjectZtnaTrafficforwardproxySslCipherSuite>
    Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
    SslClientFallback string
    Ssl-Client-Fallback. Valid values: disable, enable.
    SslClientRekeyCount double
    Ssl-Client-Rekey-Count.
    SslClientRenegotiation string
    Ssl-Client-Renegotiation. Valid values: allow, deny, secure.
    SslClientSessionStateMax double
    Ssl-Client-Session-State-Max.
    SslClientSessionStateTimeout double
    Ssl-Client-Session-State-Timeout.
    SslClientSessionStateType string
    Ssl-Client-Session-State-Type. Valid values: disable, time, count, both.
    SslDhBits string
    Ssl-Dh-Bits. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
    SslHpkp string
    Ssl-Hpkp. Valid values: disable, enable, report-only.
    SslHpkpAge double
    Ssl-Hpkp-Age.
    SslHpkpBackups List<string>
    Ssl-Hpkp-Backup.
    SslHpkpIncludeSubdomains string
    Ssl-Hpkp-Include-Subdomains. Valid values: disable, enable.
    SslHpkpPrimaries List<string>
    Ssl-Hpkp-Primary.
    SslHpkpReportUri string
    Ssl-Hpkp-Report-Uri.
    SslHsts string
    Ssl-Hsts. Valid values: disable, enable.
    SslHstsAge double
    Ssl-Hsts-Age.
    SslHstsIncludeSubdomains string
    Ssl-Hsts-Include-Subdomains. Valid values: disable, enable.
    SslHttpLocationConversion string
    Ssl-Http-Location-Conversion. Valid values: disable, enable.
    SslHttpMatchHost string
    Ssl-Http-Match-Host. Valid values: disable, enable.
    SslMaxVersion string
    Ssl-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    SslMinVersion string
    Ssl-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    SslMode string
    Ssl-Mode. Valid values: half, full.
    SslPfs string
    Ssl-Pfs. Valid values: require, deny, allow.
    SslSendEmptyFrags string
    Ssl-Send-Empty-Frags. Valid values: disable, enable.
    SslServerAlgorithm string
    Ssl-Server-Algorithm. Valid values: high, low, medium, custom, client.
    SslServerCipherSuites List<ObjectZtnaTrafficforwardproxySslServerCipherSuite>
    Ssl-Server-Cipher-Suites. The structure of ssl_server_cipher_suites block is documented below.
    SslServerMaxVersion string
    Ssl-Server-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    SslServerMinVersion string
    Ssl-Server-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    SslServerRenegotiation string
    Ssl-Server-Renegotiation. Valid values: disable, enable.
    SslServerSessionStateMax double
    Ssl-Server-Session-State-Max.
    SslServerSessionStateTimeout double
    Ssl-Server-Session-State-Timeout.
    SslServerSessionStateType string
    Ssl-Server-Session-State-Type. Valid values: disable, time, count, both.
    Status string
    Status. Valid values: disable, enable.
    SvrPoolMultiplex string
    Svr-Pool-Multiplex. Valid values: disable, enable.
    SvrPoolServerMaxConcurrentRequest double
    Svr-Pool-Server-Max-Concurrent-Request.
    SvrPoolServerMaxRequest double
    Svr-Pool-Server-Max-Request.
    SvrPoolTtl double
    Svr-Pool-Ttl.
    UserAgentDetect string
    User-Agent-Detect. Valid values: disable, enable.
    Vip6s List<string>
    Virtual IPv6 name.
    Vips List<string>
    Virtual IP name.
    Adom string
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    AuthPortal string
    Enable/disable authentication portal. Valid values: disable, enable.
    AuthVirtualHosts []string
    Virtual host for authentication portal.
    ClientCert string
    Client-Cert. Valid values: disable, enable.
    Comment string
    Comment.
    DecryptedTrafficMirrors []string
    Decrypted traffic mirror.
    DynamicSortSubtable string
    true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
    EmptyCertAction string
    Empty-Cert-Action. Valid values: accept, block, accept-unmanageable.
    H3Support string
    H3-Support. Valid values: disable, enable.
    Hosts []string
    Virtual or real host name.
    Interfaces []string
    Interface.
    LogBlockedTraffic string
    Enable/disable logging of blocked traffic. Valid values: disable, enable.
    Name string
    ZTNA proxy name.
    ObjectZtnaTrafficforwardproxyId string
    an identifier for the resource with format {{name}}.
    Port string
    Port.
    Quic ObjectZtnaTrafficforwardproxyQuicTypeArgs
    Quic. The structure of quic block is documented below.
    Scopetype string
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    SslAcceptFfdheGroups string
    Ssl-Accept-Ffdhe-Groups. Valid values: disable, enable.
    SslAlgorithm string
    Ssl-Algorithm. Valid values: high, low, medium, custom.
    SslCertificates []string
    Ssl-Certificate.
    SslCipherSuites []ObjectZtnaTrafficforwardproxySslCipherSuiteArgs
    Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
    SslClientFallback string
    Ssl-Client-Fallback. Valid values: disable, enable.
    SslClientRekeyCount float64
    Ssl-Client-Rekey-Count.
    SslClientRenegotiation string
    Ssl-Client-Renegotiation. Valid values: allow, deny, secure.
    SslClientSessionStateMax float64
    Ssl-Client-Session-State-Max.
    SslClientSessionStateTimeout float64
    Ssl-Client-Session-State-Timeout.
    SslClientSessionStateType string
    Ssl-Client-Session-State-Type. Valid values: disable, time, count, both.
    SslDhBits string
    Ssl-Dh-Bits. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
    SslHpkp string
    Ssl-Hpkp. Valid values: disable, enable, report-only.
    SslHpkpAge float64
    Ssl-Hpkp-Age.
    SslHpkpBackups []string
    Ssl-Hpkp-Backup.
    SslHpkpIncludeSubdomains string
    Ssl-Hpkp-Include-Subdomains. Valid values: disable, enable.
    SslHpkpPrimaries []string
    Ssl-Hpkp-Primary.
    SslHpkpReportUri string
    Ssl-Hpkp-Report-Uri.
    SslHsts string
    Ssl-Hsts. Valid values: disable, enable.
    SslHstsAge float64
    Ssl-Hsts-Age.
    SslHstsIncludeSubdomains string
    Ssl-Hsts-Include-Subdomains. Valid values: disable, enable.
    SslHttpLocationConversion string
    Ssl-Http-Location-Conversion. Valid values: disable, enable.
    SslHttpMatchHost string
    Ssl-Http-Match-Host. Valid values: disable, enable.
    SslMaxVersion string
    Ssl-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    SslMinVersion string
    Ssl-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    SslMode string
    Ssl-Mode. Valid values: half, full.
    SslPfs string
    Ssl-Pfs. Valid values: require, deny, allow.
    SslSendEmptyFrags string
    Ssl-Send-Empty-Frags. Valid values: disable, enable.
    SslServerAlgorithm string
    Ssl-Server-Algorithm. Valid values: high, low, medium, custom, client.
    SslServerCipherSuites []ObjectZtnaTrafficforwardproxySslServerCipherSuiteArgs
    Ssl-Server-Cipher-Suites. The structure of ssl_server_cipher_suites block is documented below.
    SslServerMaxVersion string
    Ssl-Server-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    SslServerMinVersion string
    Ssl-Server-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    SslServerRenegotiation string
    Ssl-Server-Renegotiation. Valid values: disable, enable.
    SslServerSessionStateMax float64
    Ssl-Server-Session-State-Max.
    SslServerSessionStateTimeout float64
    Ssl-Server-Session-State-Timeout.
    SslServerSessionStateType string
    Ssl-Server-Session-State-Type. Valid values: disable, time, count, both.
    Status string
    Status. Valid values: disable, enable.
    SvrPoolMultiplex string
    Svr-Pool-Multiplex. Valid values: disable, enable.
    SvrPoolServerMaxConcurrentRequest float64
    Svr-Pool-Server-Max-Concurrent-Request.
    SvrPoolServerMaxRequest float64
    Svr-Pool-Server-Max-Request.
    SvrPoolTtl float64
    Svr-Pool-Ttl.
    UserAgentDetect string
    User-Agent-Detect. Valid values: disable, enable.
    Vip6s []string
    Virtual IPv6 name.
    Vips []string
    Virtual IP name.
    adom String
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    authPortal String
    Enable/disable authentication portal. Valid values: disable, enable.
    authVirtualHosts List<String>
    Virtual host for authentication portal.
    clientCert String
    Client-Cert. Valid values: disable, enable.
    comment String
    Comment.
    decryptedTrafficMirrors List<String>
    Decrypted traffic mirror.
    dynamicSortSubtable String
    true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
    emptyCertAction String
    Empty-Cert-Action. Valid values: accept, block, accept-unmanageable.
    h3Support String
    H3-Support. Valid values: disable, enable.
    hosts List<String>
    Virtual or real host name.
    interfaces List<String>
    Interface.
    logBlockedTraffic String
    Enable/disable logging of blocked traffic. Valid values: disable, enable.
    name String
    ZTNA proxy name.
    objectZtnaTrafficforwardproxyId String
    an identifier for the resource with format {{name}}.
    port String
    Port.
    quic ObjectZtnaTrafficforwardproxyQuic
    Quic. The structure of quic block is documented below.
    scopetype String
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    sslAcceptFfdheGroups String
    Ssl-Accept-Ffdhe-Groups. Valid values: disable, enable.
    sslAlgorithm String
    Ssl-Algorithm. Valid values: high, low, medium, custom.
    sslCertificates List<String>
    Ssl-Certificate.
    sslCipherSuites List<ObjectZtnaTrafficforwardproxySslCipherSuite>
    Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
    sslClientFallback String
    Ssl-Client-Fallback. Valid values: disable, enable.
    sslClientRekeyCount Double
    Ssl-Client-Rekey-Count.
    sslClientRenegotiation String
    Ssl-Client-Renegotiation. Valid values: allow, deny, secure.
    sslClientSessionStateMax Double
    Ssl-Client-Session-State-Max.
    sslClientSessionStateTimeout Double
    Ssl-Client-Session-State-Timeout.
    sslClientSessionStateType String
    Ssl-Client-Session-State-Type. Valid values: disable, time, count, both.
    sslDhBits String
    Ssl-Dh-Bits. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
    sslHpkp String
    Ssl-Hpkp. Valid values: disable, enable, report-only.
    sslHpkpAge Double
    Ssl-Hpkp-Age.
    sslHpkpBackups List<String>
    Ssl-Hpkp-Backup.
    sslHpkpIncludeSubdomains String
    Ssl-Hpkp-Include-Subdomains. Valid values: disable, enable.
    sslHpkpPrimaries List<String>
    Ssl-Hpkp-Primary.
    sslHpkpReportUri String
    Ssl-Hpkp-Report-Uri.
    sslHsts String
    Ssl-Hsts. Valid values: disable, enable.
    sslHstsAge Double
    Ssl-Hsts-Age.
    sslHstsIncludeSubdomains String
    Ssl-Hsts-Include-Subdomains. Valid values: disable, enable.
    sslHttpLocationConversion String
    Ssl-Http-Location-Conversion. Valid values: disable, enable.
    sslHttpMatchHost String
    Ssl-Http-Match-Host. Valid values: disable, enable.
    sslMaxVersion String
    Ssl-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    sslMinVersion String
    Ssl-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    sslMode String
    Ssl-Mode. Valid values: half, full.
    sslPfs String
    Ssl-Pfs. Valid values: require, deny, allow.
    sslSendEmptyFrags String
    Ssl-Send-Empty-Frags. Valid values: disable, enable.
    sslServerAlgorithm String
    Ssl-Server-Algorithm. Valid values: high, low, medium, custom, client.
    sslServerCipherSuites List<ObjectZtnaTrafficforwardproxySslServerCipherSuite>
    Ssl-Server-Cipher-Suites. The structure of ssl_server_cipher_suites block is documented below.
    sslServerMaxVersion String
    Ssl-Server-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    sslServerMinVersion String
    Ssl-Server-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    sslServerRenegotiation String
    Ssl-Server-Renegotiation. Valid values: disable, enable.
    sslServerSessionStateMax Double
    Ssl-Server-Session-State-Max.
    sslServerSessionStateTimeout Double
    Ssl-Server-Session-State-Timeout.
    sslServerSessionStateType String
    Ssl-Server-Session-State-Type. Valid values: disable, time, count, both.
    status String
    Status. Valid values: disable, enable.
    svrPoolMultiplex String
    Svr-Pool-Multiplex. Valid values: disable, enable.
    svrPoolServerMaxConcurrentRequest Double
    Svr-Pool-Server-Max-Concurrent-Request.
    svrPoolServerMaxRequest Double
    Svr-Pool-Server-Max-Request.
    svrPoolTtl Double
    Svr-Pool-Ttl.
    userAgentDetect String
    User-Agent-Detect. Valid values: disable, enable.
    vip6s List<String>
    Virtual IPv6 name.
    vips List<String>
    Virtual IP name.
    adom string
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    authPortal string
    Enable/disable authentication portal. Valid values: disable, enable.
    authVirtualHosts string[]
    Virtual host for authentication portal.
    clientCert string
    Client-Cert. Valid values: disable, enable.
    comment string
    Comment.
    decryptedTrafficMirrors string[]
    Decrypted traffic mirror.
    dynamicSortSubtable string
    true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
    emptyCertAction string
    Empty-Cert-Action. Valid values: accept, block, accept-unmanageable.
    h3Support string
    H3-Support. Valid values: disable, enable.
    hosts string[]
    Virtual or real host name.
    interfaces string[]
    Interface.
    logBlockedTraffic string
    Enable/disable logging of blocked traffic. Valid values: disable, enable.
    name string
    ZTNA proxy name.
    objectZtnaTrafficforwardproxyId string
    an identifier for the resource with format {{name}}.
    port string
    Port.
    quic ObjectZtnaTrafficforwardproxyQuic
    Quic. The structure of quic block is documented below.
    scopetype string
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    sslAcceptFfdheGroups string
    Ssl-Accept-Ffdhe-Groups. Valid values: disable, enable.
    sslAlgorithm string
    Ssl-Algorithm. Valid values: high, low, medium, custom.
    sslCertificates string[]
    Ssl-Certificate.
    sslCipherSuites ObjectZtnaTrafficforwardproxySslCipherSuite[]
    Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
    sslClientFallback string
    Ssl-Client-Fallback. Valid values: disable, enable.
    sslClientRekeyCount number
    Ssl-Client-Rekey-Count.
    sslClientRenegotiation string
    Ssl-Client-Renegotiation. Valid values: allow, deny, secure.
    sslClientSessionStateMax number
    Ssl-Client-Session-State-Max.
    sslClientSessionStateTimeout number
    Ssl-Client-Session-State-Timeout.
    sslClientSessionStateType string
    Ssl-Client-Session-State-Type. Valid values: disable, time, count, both.
    sslDhBits string
    Ssl-Dh-Bits. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
    sslHpkp string
    Ssl-Hpkp. Valid values: disable, enable, report-only.
    sslHpkpAge number
    Ssl-Hpkp-Age.
    sslHpkpBackups string[]
    Ssl-Hpkp-Backup.
    sslHpkpIncludeSubdomains string
    Ssl-Hpkp-Include-Subdomains. Valid values: disable, enable.
    sslHpkpPrimaries string[]
    Ssl-Hpkp-Primary.
    sslHpkpReportUri string
    Ssl-Hpkp-Report-Uri.
    sslHsts string
    Ssl-Hsts. Valid values: disable, enable.
    sslHstsAge number
    Ssl-Hsts-Age.
    sslHstsIncludeSubdomains string
    Ssl-Hsts-Include-Subdomains. Valid values: disable, enable.
    sslHttpLocationConversion string
    Ssl-Http-Location-Conversion. Valid values: disable, enable.
    sslHttpMatchHost string
    Ssl-Http-Match-Host. Valid values: disable, enable.
    sslMaxVersion string
    Ssl-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    sslMinVersion string
    Ssl-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    sslMode string
    Ssl-Mode. Valid values: half, full.
    sslPfs string
    Ssl-Pfs. Valid values: require, deny, allow.
    sslSendEmptyFrags string
    Ssl-Send-Empty-Frags. Valid values: disable, enable.
    sslServerAlgorithm string
    Ssl-Server-Algorithm. Valid values: high, low, medium, custom, client.
    sslServerCipherSuites ObjectZtnaTrafficforwardproxySslServerCipherSuite[]
    Ssl-Server-Cipher-Suites. The structure of ssl_server_cipher_suites block is documented below.
    sslServerMaxVersion string
    Ssl-Server-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    sslServerMinVersion string
    Ssl-Server-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    sslServerRenegotiation string
    Ssl-Server-Renegotiation. Valid values: disable, enable.
    sslServerSessionStateMax number
    Ssl-Server-Session-State-Max.
    sslServerSessionStateTimeout number
    Ssl-Server-Session-State-Timeout.
    sslServerSessionStateType string
    Ssl-Server-Session-State-Type. Valid values: disable, time, count, both.
    status string
    Status. Valid values: disable, enable.
    svrPoolMultiplex string
    Svr-Pool-Multiplex. Valid values: disable, enable.
    svrPoolServerMaxConcurrentRequest number
    Svr-Pool-Server-Max-Concurrent-Request.
    svrPoolServerMaxRequest number
    Svr-Pool-Server-Max-Request.
    svrPoolTtl number
    Svr-Pool-Ttl.
    userAgentDetect string
    User-Agent-Detect. Valid values: disable, enable.
    vip6s string[]
    Virtual IPv6 name.
    vips string[]
    Virtual IP name.
    adom str
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    auth_portal str
    Enable/disable authentication portal. Valid values: disable, enable.
    auth_virtual_hosts Sequence[str]
    Virtual host for authentication portal.
    client_cert str
    Client-Cert. Valid values: disable, enable.
    comment str
    Comment.
    decrypted_traffic_mirrors Sequence[str]
    Decrypted traffic mirror.
    dynamic_sort_subtable str
    true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
    empty_cert_action str
    Empty-Cert-Action. Valid values: accept, block, accept-unmanageable.
    h3_support str
    H3-Support. Valid values: disable, enable.
    hosts Sequence[str]
    Virtual or real host name.
    interfaces Sequence[str]
    Interface.
    log_blocked_traffic str
    Enable/disable logging of blocked traffic. Valid values: disable, enable.
    name str
    ZTNA proxy name.
    object_ztna_trafficforwardproxy_id str
    an identifier for the resource with format {{name}}.
    port str
    Port.
    quic ObjectZtnaTrafficforwardproxyQuicArgs
    Quic. The structure of quic block is documented below.
    scopetype str
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    ssl_accept_ffdhe_groups str
    Ssl-Accept-Ffdhe-Groups. Valid values: disable, enable.
    ssl_algorithm str
    Ssl-Algorithm. Valid values: high, low, medium, custom.
    ssl_certificates Sequence[str]
    Ssl-Certificate.
    ssl_cipher_suites Sequence[ObjectZtnaTrafficforwardproxySslCipherSuiteArgs]
    Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
    ssl_client_fallback str
    Ssl-Client-Fallback. Valid values: disable, enable.
    ssl_client_rekey_count float
    Ssl-Client-Rekey-Count.
    ssl_client_renegotiation str
    Ssl-Client-Renegotiation. Valid values: allow, deny, secure.
    ssl_client_session_state_max float
    Ssl-Client-Session-State-Max.
    ssl_client_session_state_timeout float
    Ssl-Client-Session-State-Timeout.
    ssl_client_session_state_type str
    Ssl-Client-Session-State-Type. Valid values: disable, time, count, both.
    ssl_dh_bits str
    Ssl-Dh-Bits. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
    ssl_hpkp str
    Ssl-Hpkp. Valid values: disable, enable, report-only.
    ssl_hpkp_age float
    Ssl-Hpkp-Age.
    ssl_hpkp_backups Sequence[str]
    Ssl-Hpkp-Backup.
    ssl_hpkp_include_subdomains str
    Ssl-Hpkp-Include-Subdomains. Valid values: disable, enable.
    ssl_hpkp_primaries Sequence[str]
    Ssl-Hpkp-Primary.
    ssl_hpkp_report_uri str
    Ssl-Hpkp-Report-Uri.
    ssl_hsts str
    Ssl-Hsts. Valid values: disable, enable.
    ssl_hsts_age float
    Ssl-Hsts-Age.
    ssl_hsts_include_subdomains str
    Ssl-Hsts-Include-Subdomains. Valid values: disable, enable.
    ssl_http_location_conversion str
    Ssl-Http-Location-Conversion. Valid values: disable, enable.
    ssl_http_match_host str
    Ssl-Http-Match-Host. Valid values: disable, enable.
    ssl_max_version str
    Ssl-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    ssl_min_version str
    Ssl-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    ssl_mode str
    Ssl-Mode. Valid values: half, full.
    ssl_pfs str
    Ssl-Pfs. Valid values: require, deny, allow.
    ssl_send_empty_frags str
    Ssl-Send-Empty-Frags. Valid values: disable, enable.
    ssl_server_algorithm str
    Ssl-Server-Algorithm. Valid values: high, low, medium, custom, client.
    ssl_server_cipher_suites Sequence[ObjectZtnaTrafficforwardproxySslServerCipherSuiteArgs]
    Ssl-Server-Cipher-Suites. The structure of ssl_server_cipher_suites block is documented below.
    ssl_server_max_version str
    Ssl-Server-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    ssl_server_min_version str
    Ssl-Server-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    ssl_server_renegotiation str
    Ssl-Server-Renegotiation. Valid values: disable, enable.
    ssl_server_session_state_max float
    Ssl-Server-Session-State-Max.
    ssl_server_session_state_timeout float
    Ssl-Server-Session-State-Timeout.
    ssl_server_session_state_type str
    Ssl-Server-Session-State-Type. Valid values: disable, time, count, both.
    status str
    Status. Valid values: disable, enable.
    svr_pool_multiplex str
    Svr-Pool-Multiplex. Valid values: disable, enable.
    svr_pool_server_max_concurrent_request float
    Svr-Pool-Server-Max-Concurrent-Request.
    svr_pool_server_max_request float
    Svr-Pool-Server-Max-Request.
    svr_pool_ttl float
    Svr-Pool-Ttl.
    user_agent_detect str
    User-Agent-Detect. Valid values: disable, enable.
    vip6s Sequence[str]
    Virtual IPv6 name.
    vips Sequence[str]
    Virtual IP name.
    adom String
    Adom. This value is valid only when the scopetype is adom, otherwise the value of adom in the provider will be inherited.
    authPortal String
    Enable/disable authentication portal. Valid values: disable, enable.
    authVirtualHosts List<String>
    Virtual host for authentication portal.
    clientCert String
    Client-Cert. Valid values: disable, enable.
    comment String
    Comment.
    decryptedTrafficMirrors List<String>
    Decrypted traffic mirror.
    dynamicSortSubtable String
    true or false, set this parameter to true when using dynamic for_each + toset to configure and sort sub-tables, please do not set this parameter when configuring static sub-tables.
    emptyCertAction String
    Empty-Cert-Action. Valid values: accept, block, accept-unmanageable.
    h3Support String
    H3-Support. Valid values: disable, enable.
    hosts List<String>
    Virtual or real host name.
    interfaces List<String>
    Interface.
    logBlockedTraffic String
    Enable/disable logging of blocked traffic. Valid values: disable, enable.
    name String
    ZTNA proxy name.
    objectZtnaTrafficforwardproxyId String
    an identifier for the resource with format {{name}}.
    port String
    Port.
    quic Property Map
    Quic. The structure of quic block is documented below.
    scopetype String
    The scope of application of the resource. Valid values: inherit, adom, global. The inherit means that the scopetype of the provider will be inherited, and adom will also be inherited. The default value is inherit.
    sslAcceptFfdheGroups String
    Ssl-Accept-Ffdhe-Groups. Valid values: disable, enable.
    sslAlgorithm String
    Ssl-Algorithm. Valid values: high, low, medium, custom.
    sslCertificates List<String>
    Ssl-Certificate.
    sslCipherSuites List<Property Map>
    Ssl-Cipher-Suites. The structure of ssl_cipher_suites block is documented below.
    sslClientFallback String
    Ssl-Client-Fallback. Valid values: disable, enable.
    sslClientRekeyCount Number
    Ssl-Client-Rekey-Count.
    sslClientRenegotiation String
    Ssl-Client-Renegotiation. Valid values: allow, deny, secure.
    sslClientSessionStateMax Number
    Ssl-Client-Session-State-Max.
    sslClientSessionStateTimeout Number
    Ssl-Client-Session-State-Timeout.
    sslClientSessionStateType String
    Ssl-Client-Session-State-Type. Valid values: disable, time, count, both.
    sslDhBits String
    Ssl-Dh-Bits. Valid values: 768, 1024, 1536, 2048, 3072, 4096.
    sslHpkp String
    Ssl-Hpkp. Valid values: disable, enable, report-only.
    sslHpkpAge Number
    Ssl-Hpkp-Age.
    sslHpkpBackups List<String>
    Ssl-Hpkp-Backup.
    sslHpkpIncludeSubdomains String
    Ssl-Hpkp-Include-Subdomains. Valid values: disable, enable.
    sslHpkpPrimaries List<String>
    Ssl-Hpkp-Primary.
    sslHpkpReportUri String
    Ssl-Hpkp-Report-Uri.
    sslHsts String
    Ssl-Hsts. Valid values: disable, enable.
    sslHstsAge Number
    Ssl-Hsts-Age.
    sslHstsIncludeSubdomains String
    Ssl-Hsts-Include-Subdomains. Valid values: disable, enable.
    sslHttpLocationConversion String
    Ssl-Http-Location-Conversion. Valid values: disable, enable.
    sslHttpMatchHost String
    Ssl-Http-Match-Host. Valid values: disable, enable.
    sslMaxVersion String
    Ssl-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    sslMinVersion String
    Ssl-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    sslMode String
    Ssl-Mode. Valid values: half, full.
    sslPfs String
    Ssl-Pfs. Valid values: require, deny, allow.
    sslSendEmptyFrags String
    Ssl-Send-Empty-Frags. Valid values: disable, enable.
    sslServerAlgorithm String
    Ssl-Server-Algorithm. Valid values: high, low, medium, custom, client.
    sslServerCipherSuites List<Property Map>
    Ssl-Server-Cipher-Suites. The structure of ssl_server_cipher_suites block is documented below.
    sslServerMaxVersion String
    Ssl-Server-Max-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    sslServerMinVersion String
    Ssl-Server-Min-Version. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, client, tls-1.3.
    sslServerRenegotiation String
    Ssl-Server-Renegotiation. Valid values: disable, enable.
    sslServerSessionStateMax Number
    Ssl-Server-Session-State-Max.
    sslServerSessionStateTimeout Number
    Ssl-Server-Session-State-Timeout.
    sslServerSessionStateType String
    Ssl-Server-Session-State-Type. Valid values: disable, time, count, both.
    status String
    Status. Valid values: disable, enable.
    svrPoolMultiplex String
    Svr-Pool-Multiplex. Valid values: disable, enable.
    svrPoolServerMaxConcurrentRequest Number
    Svr-Pool-Server-Max-Concurrent-Request.
    svrPoolServerMaxRequest Number
    Svr-Pool-Server-Max-Request.
    svrPoolTtl Number
    Svr-Pool-Ttl.
    userAgentDetect String
    User-Agent-Detect. Valid values: disable, enable.
    vip6s List<String>
    Virtual IPv6 name.
    vips List<String>
    Virtual IP name.

    Supporting Types

    ObjectZtnaTrafficforwardproxyQuic, ObjectZtnaTrafficforwardproxyQuicArgs

    AckDelayExponent double
    Ack-Delay-Exponent.
    ActiveConnectionIdLimit double
    Active-Connection-Id-Limit.
    ActiveMigration string
    Active-Migration. Valid values: disable, enable.
    GreaseQuicBit string
    Grease-Quic-Bit. Valid values: disable, enable.
    MaxAckDelay double
    Max-Ack-Delay.
    MaxDatagramFrameSize double
    Max-Datagram-Frame-Size.
    MaxIdleTimeout double
    Max-Idle-Timeout.
    MaxUdpPayloadSize double
    Max-Udp-Payload-Size.
    AckDelayExponent float64
    Ack-Delay-Exponent.
    ActiveConnectionIdLimit float64
    Active-Connection-Id-Limit.
    ActiveMigration string
    Active-Migration. Valid values: disable, enable.
    GreaseQuicBit string
    Grease-Quic-Bit. Valid values: disable, enable.
    MaxAckDelay float64
    Max-Ack-Delay.
    MaxDatagramFrameSize float64
    Max-Datagram-Frame-Size.
    MaxIdleTimeout float64
    Max-Idle-Timeout.
    MaxUdpPayloadSize float64
    Max-Udp-Payload-Size.
    ackDelayExponent Double
    Ack-Delay-Exponent.
    activeConnectionIdLimit Double
    Active-Connection-Id-Limit.
    activeMigration String
    Active-Migration. Valid values: disable, enable.
    greaseQuicBit String
    Grease-Quic-Bit. Valid values: disable, enable.
    maxAckDelay Double
    Max-Ack-Delay.
    maxDatagramFrameSize Double
    Max-Datagram-Frame-Size.
    maxIdleTimeout Double
    Max-Idle-Timeout.
    maxUdpPayloadSize Double
    Max-Udp-Payload-Size.
    ackDelayExponent number
    Ack-Delay-Exponent.
    activeConnectionIdLimit number
    Active-Connection-Id-Limit.
    activeMigration string
    Active-Migration. Valid values: disable, enable.
    greaseQuicBit string
    Grease-Quic-Bit. Valid values: disable, enable.
    maxAckDelay number
    Max-Ack-Delay.
    maxDatagramFrameSize number
    Max-Datagram-Frame-Size.
    maxIdleTimeout number
    Max-Idle-Timeout.
    maxUdpPayloadSize number
    Max-Udp-Payload-Size.
    ack_delay_exponent float
    Ack-Delay-Exponent.
    active_connection_id_limit float
    Active-Connection-Id-Limit.
    active_migration str
    Active-Migration. Valid values: disable, enable.
    grease_quic_bit str
    Grease-Quic-Bit. Valid values: disable, enable.
    max_ack_delay float
    Max-Ack-Delay.
    max_datagram_frame_size float
    Max-Datagram-Frame-Size.
    max_idle_timeout float
    Max-Idle-Timeout.
    max_udp_payload_size float
    Max-Udp-Payload-Size.
    ackDelayExponent Number
    Ack-Delay-Exponent.
    activeConnectionIdLimit Number
    Active-Connection-Id-Limit.
    activeMigration String
    Active-Migration. Valid values: disable, enable.
    greaseQuicBit String
    Grease-Quic-Bit. Valid values: disable, enable.
    maxAckDelay Number
    Max-Ack-Delay.
    maxDatagramFrameSize Number
    Max-Datagram-Frame-Size.
    maxIdleTimeout Number
    Max-Idle-Timeout.
    maxUdpPayloadSize Number
    Max-Udp-Payload-Size.

    ObjectZtnaTrafficforwardproxySslCipherSuite, ObjectZtnaTrafficforwardproxySslCipherSuiteArgs

    Cipher string
    Cipher. Valid values: TLS-RSA-WITH-RC4-128-MD5, TLS-RSA-WITH-RC4-128-SHA, TLS-RSA-WITH-DES-CBC-SHA, TLS-RSA-WITH-3DES-EDE-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA, TLS-RSA-WITH-AES-256-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA256, TLS-RSA-WITH-AES-256-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-RSA-WITH-SEED-CBC-SHA, TLS-RSA-WITH-ARIA-128-CBC-SHA256, TLS-RSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-RSA-WITH-DES-CBC-SHA, TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA, TLS-DHE-RSA-WITH-AES-256-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA256, TLS-DHE-RSA-WITH-AES-256-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-RSA-WITH-SEED-CBC-SHA, TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-RC4-128-SHA, TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA, TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-AES-128-GCM-SHA256, TLS-DHE-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-AES-128-CBC-SHA, TLS-DHE-DSS-WITH-AES-256-CBC-SHA, TLS-DHE-DSS-WITH-AES-128-CBC-SHA256, TLS-DHE-DSS-WITH-AES-128-GCM-SHA256, TLS-DHE-DSS-WITH-AES-256-CBC-SHA256, TLS-DHE-DSS-WITH-AES-256-GCM-SHA384, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384, TLS-RSA-WITH-AES-128-GCM-SHA256, TLS-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-DSS-WITH-SEED-CBC-SHA, TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA, TLS-DHE-DSS-WITH-DES-CBC-SHA, TLS-AES-128-GCM-SHA256, TLS-AES-256-GCM-SHA384, TLS-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA.
    Priority double
    Priority.
    Versions List<string>
    Versions. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    Cipher string
    Cipher. Valid values: TLS-RSA-WITH-RC4-128-MD5, TLS-RSA-WITH-RC4-128-SHA, TLS-RSA-WITH-DES-CBC-SHA, TLS-RSA-WITH-3DES-EDE-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA, TLS-RSA-WITH-AES-256-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA256, TLS-RSA-WITH-AES-256-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-RSA-WITH-SEED-CBC-SHA, TLS-RSA-WITH-ARIA-128-CBC-SHA256, TLS-RSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-RSA-WITH-DES-CBC-SHA, TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA, TLS-DHE-RSA-WITH-AES-256-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA256, TLS-DHE-RSA-WITH-AES-256-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-RSA-WITH-SEED-CBC-SHA, TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-RC4-128-SHA, TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA, TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-AES-128-GCM-SHA256, TLS-DHE-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-AES-128-CBC-SHA, TLS-DHE-DSS-WITH-AES-256-CBC-SHA, TLS-DHE-DSS-WITH-AES-128-CBC-SHA256, TLS-DHE-DSS-WITH-AES-128-GCM-SHA256, TLS-DHE-DSS-WITH-AES-256-CBC-SHA256, TLS-DHE-DSS-WITH-AES-256-GCM-SHA384, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384, TLS-RSA-WITH-AES-128-GCM-SHA256, TLS-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-DSS-WITH-SEED-CBC-SHA, TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA, TLS-DHE-DSS-WITH-DES-CBC-SHA, TLS-AES-128-GCM-SHA256, TLS-AES-256-GCM-SHA384, TLS-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA.
    Priority float64
    Priority.
    Versions []string
    Versions. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    cipher String
    Cipher. Valid values: TLS-RSA-WITH-RC4-128-MD5, TLS-RSA-WITH-RC4-128-SHA, TLS-RSA-WITH-DES-CBC-SHA, TLS-RSA-WITH-3DES-EDE-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA, TLS-RSA-WITH-AES-256-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA256, TLS-RSA-WITH-AES-256-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-RSA-WITH-SEED-CBC-SHA, TLS-RSA-WITH-ARIA-128-CBC-SHA256, TLS-RSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-RSA-WITH-DES-CBC-SHA, TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA, TLS-DHE-RSA-WITH-AES-256-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA256, TLS-DHE-RSA-WITH-AES-256-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-RSA-WITH-SEED-CBC-SHA, TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-RC4-128-SHA, TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA, TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-AES-128-GCM-SHA256, TLS-DHE-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-AES-128-CBC-SHA, TLS-DHE-DSS-WITH-AES-256-CBC-SHA, TLS-DHE-DSS-WITH-AES-128-CBC-SHA256, TLS-DHE-DSS-WITH-AES-128-GCM-SHA256, TLS-DHE-DSS-WITH-AES-256-CBC-SHA256, TLS-DHE-DSS-WITH-AES-256-GCM-SHA384, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384, TLS-RSA-WITH-AES-128-GCM-SHA256, TLS-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-DSS-WITH-SEED-CBC-SHA, TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA, TLS-DHE-DSS-WITH-DES-CBC-SHA, TLS-AES-128-GCM-SHA256, TLS-AES-256-GCM-SHA384, TLS-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA.
    priority Double
    Priority.
    versions List<String>
    Versions. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    cipher string
    Cipher. Valid values: TLS-RSA-WITH-RC4-128-MD5, TLS-RSA-WITH-RC4-128-SHA, TLS-RSA-WITH-DES-CBC-SHA, TLS-RSA-WITH-3DES-EDE-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA, TLS-RSA-WITH-AES-256-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA256, TLS-RSA-WITH-AES-256-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-RSA-WITH-SEED-CBC-SHA, TLS-RSA-WITH-ARIA-128-CBC-SHA256, TLS-RSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-RSA-WITH-DES-CBC-SHA, TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA, TLS-DHE-RSA-WITH-AES-256-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA256, TLS-DHE-RSA-WITH-AES-256-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-RSA-WITH-SEED-CBC-SHA, TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-RC4-128-SHA, TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA, TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-AES-128-GCM-SHA256, TLS-DHE-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-AES-128-CBC-SHA, TLS-DHE-DSS-WITH-AES-256-CBC-SHA, TLS-DHE-DSS-WITH-AES-128-CBC-SHA256, TLS-DHE-DSS-WITH-AES-128-GCM-SHA256, TLS-DHE-DSS-WITH-AES-256-CBC-SHA256, TLS-DHE-DSS-WITH-AES-256-GCM-SHA384, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384, TLS-RSA-WITH-AES-128-GCM-SHA256, TLS-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-DSS-WITH-SEED-CBC-SHA, TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA, TLS-DHE-DSS-WITH-DES-CBC-SHA, TLS-AES-128-GCM-SHA256, TLS-AES-256-GCM-SHA384, TLS-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA.
    priority number
    Priority.
    versions string[]
    Versions. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    cipher str
    Cipher. Valid values: TLS-RSA-WITH-RC4-128-MD5, TLS-RSA-WITH-RC4-128-SHA, TLS-RSA-WITH-DES-CBC-SHA, TLS-RSA-WITH-3DES-EDE-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA, TLS-RSA-WITH-AES-256-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA256, TLS-RSA-WITH-AES-256-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-RSA-WITH-SEED-CBC-SHA, TLS-RSA-WITH-ARIA-128-CBC-SHA256, TLS-RSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-RSA-WITH-DES-CBC-SHA, TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA, TLS-DHE-RSA-WITH-AES-256-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA256, TLS-DHE-RSA-WITH-AES-256-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-RSA-WITH-SEED-CBC-SHA, TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-RC4-128-SHA, TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA, TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-AES-128-GCM-SHA256, TLS-DHE-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-AES-128-CBC-SHA, TLS-DHE-DSS-WITH-AES-256-CBC-SHA, TLS-DHE-DSS-WITH-AES-128-CBC-SHA256, TLS-DHE-DSS-WITH-AES-128-GCM-SHA256, TLS-DHE-DSS-WITH-AES-256-CBC-SHA256, TLS-DHE-DSS-WITH-AES-256-GCM-SHA384, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384, TLS-RSA-WITH-AES-128-GCM-SHA256, TLS-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-DSS-WITH-SEED-CBC-SHA, TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA, TLS-DHE-DSS-WITH-DES-CBC-SHA, TLS-AES-128-GCM-SHA256, TLS-AES-256-GCM-SHA384, TLS-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA.
    priority float
    Priority.
    versions Sequence[str]
    Versions. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    cipher String
    Cipher. Valid values: TLS-RSA-WITH-RC4-128-MD5, TLS-RSA-WITH-RC4-128-SHA, TLS-RSA-WITH-DES-CBC-SHA, TLS-RSA-WITH-3DES-EDE-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA, TLS-RSA-WITH-AES-256-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA256, TLS-RSA-WITH-AES-256-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-RSA-WITH-SEED-CBC-SHA, TLS-RSA-WITH-ARIA-128-CBC-SHA256, TLS-RSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-RSA-WITH-DES-CBC-SHA, TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA, TLS-DHE-RSA-WITH-AES-256-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA256, TLS-DHE-RSA-WITH-AES-256-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-RSA-WITH-SEED-CBC-SHA, TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-RC4-128-SHA, TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA, TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-AES-128-GCM-SHA256, TLS-DHE-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-AES-128-CBC-SHA, TLS-DHE-DSS-WITH-AES-256-CBC-SHA, TLS-DHE-DSS-WITH-AES-128-CBC-SHA256, TLS-DHE-DSS-WITH-AES-128-GCM-SHA256, TLS-DHE-DSS-WITH-AES-256-CBC-SHA256, TLS-DHE-DSS-WITH-AES-256-GCM-SHA384, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384, TLS-RSA-WITH-AES-128-GCM-SHA256, TLS-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-DSS-WITH-SEED-CBC-SHA, TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA, TLS-DHE-DSS-WITH-DES-CBC-SHA, TLS-AES-128-GCM-SHA256, TLS-AES-256-GCM-SHA384, TLS-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA.
    priority Number
    Priority.
    versions List<String>
    Versions. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.

    ObjectZtnaTrafficforwardproxySslServerCipherSuite, ObjectZtnaTrafficforwardproxySslServerCipherSuiteArgs

    Cipher string
    Cipher. Valid values: TLS-RSA-WITH-RC4-128-MD5, TLS-RSA-WITH-RC4-128-SHA, TLS-RSA-WITH-DES-CBC-SHA, TLS-RSA-WITH-3DES-EDE-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA, TLS-RSA-WITH-AES-256-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA256, TLS-RSA-WITH-AES-256-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-RSA-WITH-SEED-CBC-SHA, TLS-RSA-WITH-ARIA-128-CBC-SHA256, TLS-RSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-RSA-WITH-DES-CBC-SHA, TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA, TLS-DHE-RSA-WITH-AES-256-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA256, TLS-DHE-RSA-WITH-AES-256-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-RSA-WITH-SEED-CBC-SHA, TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-RC4-128-SHA, TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA, TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-AES-128-GCM-SHA256, TLS-DHE-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-AES-128-CBC-SHA, TLS-DHE-DSS-WITH-AES-256-CBC-SHA, TLS-DHE-DSS-WITH-AES-128-CBC-SHA256, TLS-DHE-DSS-WITH-AES-128-GCM-SHA256, TLS-DHE-DSS-WITH-AES-256-CBC-SHA256, TLS-DHE-DSS-WITH-AES-256-GCM-SHA384, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384, TLS-RSA-WITH-AES-128-GCM-SHA256, TLS-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-DSS-WITH-SEED-CBC-SHA, TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA, TLS-DHE-DSS-WITH-DES-CBC-SHA, TLS-AES-128-GCM-SHA256, TLS-AES-256-GCM-SHA384, TLS-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA.
    Priority double
    Priority.
    Versions List<string>
    Versions. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    Cipher string
    Cipher. Valid values: TLS-RSA-WITH-RC4-128-MD5, TLS-RSA-WITH-RC4-128-SHA, TLS-RSA-WITH-DES-CBC-SHA, TLS-RSA-WITH-3DES-EDE-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA, TLS-RSA-WITH-AES-256-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA256, TLS-RSA-WITH-AES-256-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-RSA-WITH-SEED-CBC-SHA, TLS-RSA-WITH-ARIA-128-CBC-SHA256, TLS-RSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-RSA-WITH-DES-CBC-SHA, TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA, TLS-DHE-RSA-WITH-AES-256-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA256, TLS-DHE-RSA-WITH-AES-256-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-RSA-WITH-SEED-CBC-SHA, TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-RC4-128-SHA, TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA, TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-AES-128-GCM-SHA256, TLS-DHE-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-AES-128-CBC-SHA, TLS-DHE-DSS-WITH-AES-256-CBC-SHA, TLS-DHE-DSS-WITH-AES-128-CBC-SHA256, TLS-DHE-DSS-WITH-AES-128-GCM-SHA256, TLS-DHE-DSS-WITH-AES-256-CBC-SHA256, TLS-DHE-DSS-WITH-AES-256-GCM-SHA384, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384, TLS-RSA-WITH-AES-128-GCM-SHA256, TLS-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-DSS-WITH-SEED-CBC-SHA, TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA, TLS-DHE-DSS-WITH-DES-CBC-SHA, TLS-AES-128-GCM-SHA256, TLS-AES-256-GCM-SHA384, TLS-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA.
    Priority float64
    Priority.
    Versions []string
    Versions. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    cipher String
    Cipher. Valid values: TLS-RSA-WITH-RC4-128-MD5, TLS-RSA-WITH-RC4-128-SHA, TLS-RSA-WITH-DES-CBC-SHA, TLS-RSA-WITH-3DES-EDE-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA, TLS-RSA-WITH-AES-256-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA256, TLS-RSA-WITH-AES-256-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-RSA-WITH-SEED-CBC-SHA, TLS-RSA-WITH-ARIA-128-CBC-SHA256, TLS-RSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-RSA-WITH-DES-CBC-SHA, TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA, TLS-DHE-RSA-WITH-AES-256-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA256, TLS-DHE-RSA-WITH-AES-256-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-RSA-WITH-SEED-CBC-SHA, TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-RC4-128-SHA, TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA, TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-AES-128-GCM-SHA256, TLS-DHE-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-AES-128-CBC-SHA, TLS-DHE-DSS-WITH-AES-256-CBC-SHA, TLS-DHE-DSS-WITH-AES-128-CBC-SHA256, TLS-DHE-DSS-WITH-AES-128-GCM-SHA256, TLS-DHE-DSS-WITH-AES-256-CBC-SHA256, TLS-DHE-DSS-WITH-AES-256-GCM-SHA384, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384, TLS-RSA-WITH-AES-128-GCM-SHA256, TLS-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-DSS-WITH-SEED-CBC-SHA, TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA, TLS-DHE-DSS-WITH-DES-CBC-SHA, TLS-AES-128-GCM-SHA256, TLS-AES-256-GCM-SHA384, TLS-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA.
    priority Double
    Priority.
    versions List<String>
    Versions. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    cipher string
    Cipher. Valid values: TLS-RSA-WITH-RC4-128-MD5, TLS-RSA-WITH-RC4-128-SHA, TLS-RSA-WITH-DES-CBC-SHA, TLS-RSA-WITH-3DES-EDE-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA, TLS-RSA-WITH-AES-256-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA256, TLS-RSA-WITH-AES-256-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-RSA-WITH-SEED-CBC-SHA, TLS-RSA-WITH-ARIA-128-CBC-SHA256, TLS-RSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-RSA-WITH-DES-CBC-SHA, TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA, TLS-DHE-RSA-WITH-AES-256-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA256, TLS-DHE-RSA-WITH-AES-256-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-RSA-WITH-SEED-CBC-SHA, TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-RC4-128-SHA, TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA, TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-AES-128-GCM-SHA256, TLS-DHE-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-AES-128-CBC-SHA, TLS-DHE-DSS-WITH-AES-256-CBC-SHA, TLS-DHE-DSS-WITH-AES-128-CBC-SHA256, TLS-DHE-DSS-WITH-AES-128-GCM-SHA256, TLS-DHE-DSS-WITH-AES-256-CBC-SHA256, TLS-DHE-DSS-WITH-AES-256-GCM-SHA384, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384, TLS-RSA-WITH-AES-128-GCM-SHA256, TLS-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-DSS-WITH-SEED-CBC-SHA, TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA, TLS-DHE-DSS-WITH-DES-CBC-SHA, TLS-AES-128-GCM-SHA256, TLS-AES-256-GCM-SHA384, TLS-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA.
    priority number
    Priority.
    versions string[]
    Versions. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    cipher str
    Cipher. Valid values: TLS-RSA-WITH-RC4-128-MD5, TLS-RSA-WITH-RC4-128-SHA, TLS-RSA-WITH-DES-CBC-SHA, TLS-RSA-WITH-3DES-EDE-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA, TLS-RSA-WITH-AES-256-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA256, TLS-RSA-WITH-AES-256-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-RSA-WITH-SEED-CBC-SHA, TLS-RSA-WITH-ARIA-128-CBC-SHA256, TLS-RSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-RSA-WITH-DES-CBC-SHA, TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA, TLS-DHE-RSA-WITH-AES-256-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA256, TLS-DHE-RSA-WITH-AES-256-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-RSA-WITH-SEED-CBC-SHA, TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-RC4-128-SHA, TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA, TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-AES-128-GCM-SHA256, TLS-DHE-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-AES-128-CBC-SHA, TLS-DHE-DSS-WITH-AES-256-CBC-SHA, TLS-DHE-DSS-WITH-AES-128-CBC-SHA256, TLS-DHE-DSS-WITH-AES-128-GCM-SHA256, TLS-DHE-DSS-WITH-AES-256-CBC-SHA256, TLS-DHE-DSS-WITH-AES-256-GCM-SHA384, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384, TLS-RSA-WITH-AES-128-GCM-SHA256, TLS-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-DSS-WITH-SEED-CBC-SHA, TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA, TLS-DHE-DSS-WITH-DES-CBC-SHA, TLS-AES-128-GCM-SHA256, TLS-AES-256-GCM-SHA384, TLS-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA.
    priority float
    Priority.
    versions Sequence[str]
    Versions. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.
    cipher String
    Cipher. Valid values: TLS-RSA-WITH-RC4-128-MD5, TLS-RSA-WITH-RC4-128-SHA, TLS-RSA-WITH-DES-CBC-SHA, TLS-RSA-WITH-3DES-EDE-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA, TLS-RSA-WITH-AES-256-CBC-SHA, TLS-RSA-WITH-AES-128-CBC-SHA256, TLS-RSA-WITH-AES-256-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-RSA-WITH-SEED-CBC-SHA, TLS-RSA-WITH-ARIA-128-CBC-SHA256, TLS-RSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-RSA-WITH-DES-CBC-SHA, TLS-DHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA, TLS-DHE-RSA-WITH-AES-256-CBC-SHA, TLS-DHE-RSA-WITH-AES-128-CBC-SHA256, TLS-DHE-RSA-WITH-AES-256-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-RSA-WITH-SEED-CBC-SHA, TLS-DHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-DHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-RC4-128-SHA, TLS-ECDHE-RSA-WITH-3DES-EDE-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA, TLS-ECDHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-CHACHA20-POLY1305-SHA256, TLS-DHE-RSA-WITH-AES-128-GCM-SHA256, TLS-DHE-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-AES-128-CBC-SHA, TLS-DHE-DSS-WITH-AES-256-CBC-SHA, TLS-DHE-DSS-WITH-AES-128-CBC-SHA256, TLS-DHE-DSS-WITH-AES-128-GCM-SHA256, TLS-DHE-DSS-WITH-AES-256-CBC-SHA256, TLS-DHE-DSS-WITH-AES-256-GCM-SHA384, TLS-ECDHE-RSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-RSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-AES-256-GCM-SHA384, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA, TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-AES-256-GCM-SHA384, TLS-RSA-WITH-AES-128-GCM-SHA256, TLS-RSA-WITH-AES-256-GCM-SHA384, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA, TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256, TLS-DHE-DSS-WITH-SEED-CBC-SHA, TLS-DHE-DSS-WITH-ARIA-128-CBC-SHA256, TLS-DHE-DSS-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-RSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-RSA-WITH-ARIA-256-CBC-SHA384, TLS-ECDHE-ECDSA-WITH-ARIA-128-CBC-SHA256, TLS-ECDHE-ECDSA-WITH-ARIA-256-CBC-SHA384, TLS-DHE-DSS-WITH-3DES-EDE-CBC-SHA, TLS-DHE-DSS-WITH-DES-CBC-SHA, TLS-AES-128-GCM-SHA256, TLS-AES-256-GCM-SHA384, TLS-CHACHA20-POLY1305-SHA256, TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA.
    priority Number
    Priority.
    versions List<String>
    Versions. Valid values: ssl-3.0, tls-1.0, tls-1.1, tls-1.2, tls-1.3.

    Import

    ObjectZtna TrafficForwardProxy can be imported using any of these accepted formats:

    $ export “FORTIMANAGER_IMPORT_TABLE”=“true”

    $ pulumi import fortimanager:index/objectZtnaTrafficforwardproxy:ObjectZtnaTrafficforwardproxy labelname {{name}}
    

    $ unset “FORTIMANAGER_IMPORT_TABLE”

    -> Hint: The scopetype and adom for import will directly inherit the scopetype and adom configuration of the provider.

    To learn more about importing existing cloud resources, see Importing resources.

    Package Details

    Repository
    fortimanager fortinetdev/terraform-provider-fortimanager
    License
    Notes
    This Pulumi package is based on the fortimanager Terraform Provider.
    fortimanager logo
    fortimanager 1.15.0 published on Thursday, Nov 13, 2025 by fortinetdev
      Meet Neo: Your AI Platform Teammate