Replace a firewall's rules
⚠️ This endpoint is in public preview.
Atomically replaces the firewall’s rules with the rules in the request body. The new rule order is preserved on subsequent reads. Updating the auto-managed ‘default’ firewall is rejected with 422.
Authorizations
Create an API token using sf tokens create or at https://sfcompute.com/account/api-keys.
Path Parameters
Firewall ID or resource path A resource path like 'sfc:firewall:acme:prod:my-firewall' or an ID. Resource paths are human-readable but not stable - they change when resources are renamed or moved. IDs are stable and permanent.
(frwl_[0-9a-zA-Z_-]{1,21})|(sfc:firewall:[a-zA-Z0-9._-]+(:[a-zA-Z0-9._-]+){2,2})"frwl_k3R-nX9vLm7Qp2Yw5Jd8F"
Body
The set of rules a firewall enforces.
Allow-only ingress rules. Order is preserved across reads and PUT replacements.
Response
Firewall updated.
The set of rules a firewall enforces.
frwl_[0-9a-zA-Z_-]{1,21}"frwl_k3R-nX9vLm7Qp2Yw5Jd8F"
A resource path for a firewall resource. Format: sfc:firewall:::.
sfc:firewall:([a-zA-Z0-9._-]+:){2}[a-zA-Z0-9._-]+"sfc:firewall:<account_id>:<workspace>:<name>"
1 - 255[a-zA-Z0-9][a-zA-Z0-9._-]{0,254}"my-resource-name"
1 - 255[a-zA-Z0-9][a-zA-Z0-9._-]{0,254}"my-resource-name"
wksp_[0-9a-zA-Z_-]{1,21}"wksp_k3R-nX9vLm7Qp2Yw5Jd8F"
1 - 255[a-zA-Z0-9][a-zA-Z0-9._-]{0,254}"my-resource-name"
Allow-only ingress rules. Order is preserved across reads and PUT replacements.
"firewall"Unix timestamp.
1738972800
Unix timestamp.
1738972800