Skip to main content

Management Access Policy

Location in GUI: Fabric » Fabric Policies » Policies » Pod » Management Access

Diagram

Classes

pod_policies (apic.fabric_policies)

NameTypeConstraintMandatoryDefault Value
management_access_policiesList[management_access_policies]No

management_access_policies (apic.fabric_policies.pod_policies)

NameTypeConstraintMandatoryDefault Value
nameStringRegex: ^[a-zA-Z0-9_.:-]{1,64}$Yes
descriptionStringRegex: ^[a-zA-Z0-9\\!#$%()*,-./:;@ _{|}~?&+]{1,128}$No
aliasStringRegex: ^[a-zA-Z0-9_.:-]{1,64}$No
sshClass[ssh]No
telnetClass[telnet]No
httpsClass[https]No
httpClass[http]No

ssh (apic.fabric_policies.pod_policies.management_access_policies)

NameTypeConstraintMandatoryDefault Value
admin_stateBooleantrue, falseNotrue
password_authBooleantrue, falseNotrue
portIntegermin: 1, max: 65535No22
aes128_ctrBooleantrue, falseNotrue
aes128_gcmBooleantrue, falseNotrue
aes192_ctrBooleantrue, falseNotrue
aes256_ctrBooleantrue, falseNotrue
aes256_gcmBooleantrue, falseNofalse
chachaBooleantrue, falseNotrue
hmac_sha1Booleantrue, falseNotrue
hmac_sha2_256Booleantrue, falseNotrue
hmac_sha2_512Booleantrue, falseNotrue
curve25519_sha256Booleantrue, falseNofalse
curve25519_sha256_libsshBooleantrue, falseNofalse
dh1_sha1Booleantrue, falseNofalse
dh14_sha1Booleantrue, falseNofalse
dh14_sha256Booleantrue, falseNofalse
dh16_sha512Booleantrue, falseNofalse
ecdh_sha2_nistp256Booleantrue, falseNofalse
ecdh_sha2_nistp384Booleantrue, falseNofalse
ecdh_sha2_nistp521Booleantrue, falseNofalse

telnet (apic.fabric_policies.pod_policies.management_access_policies)

NameTypeConstraintMandatoryDefault Value
admin_stateBooleantrue, falseNofalse
portIntegermin: 1, max: 65535No23

https (apic.fabric_policies.pod_policies.management_access_policies)

NameTypeConstraintMandatoryDefault Value
admin_stateBooleantrue, falseNotrue
client_cert_auth_stateBooleantrue, falseNofalse
dhChoice1024, 2048, 4096Nonone
portIntegermin: 1, max: 65535No443
tlsv1Booleantrue, falseNofalse
tlsv1_1Booleantrue, falseNotrue
tlsv1_2Booleantrue, falseNotrue
tlsv1_3Booleantrue, falseNofalse
key_ringStringRegex: ^[a-zA-Z0-9_.:-]{1,64}$Nodefault
allow_originsStringRegex: ^[a-zA-Z0-9-_:/.,]{1,256}$No

http (apic.fabric_policies.pod_policies.management_access_policies)

NameTypeConstraintMandatoryDefault Value
admin_stateBooleantrue, falseNofalse
portIntegermin: 1, max: 65535No80
allow_originsStringRegex: ^[a-zA-Z0-9-_:/.,]{1,256}$No

Examples

apic:
fabric_policies:
pod_policies:
management_access_policies:
- name: MGMT1
telnet:
admin_state: true
ssh:
port: 22
hmac_sha1: false
chacha: false
https:
tlsv1: true
http:
admin_state: true
port: 8080