You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
module"fortios_vpnipsec_phase1interface" {
source="./modules/fortios/r/fortios_vpnipsec_phase1interface"# acct_verify - (optional) is a type of stringacct_verify=null# add_gw_route - (optional) is a type of stringadd_gw_route=null# add_route - (optional) is a type of stringadd_route=null# aggregate_member - (optional) is a type of stringaggregate_member=null# aggregate_weight - (optional) is a type of numberaggregate_weight=null# assign_ip - (optional) is a type of stringassign_ip=null# assign_ip_from - (optional) is a type of stringassign_ip_from=null# authmethod - (optional) is a type of stringauthmethod=null# authmethod_remote - (optional) is a type of stringauthmethod_remote=null# authpasswd - (optional) is a type of stringauthpasswd=null# authusr - (optional) is a type of stringauthusr=null# authusrgrp - (optional) is a type of stringauthusrgrp=null# auto_discovery_forwarder - (optional) is a type of stringauto_discovery_forwarder=null# auto_discovery_psk - (optional) is a type of stringauto_discovery_psk=null# auto_discovery_receiver - (optional) is a type of stringauto_discovery_receiver=null# auto_discovery_sender - (optional) is a type of stringauto_discovery_sender=null# auto_discovery_shortcuts - (optional) is a type of stringauto_discovery_shortcuts=null# auto_negotiate - (optional) is a type of stringauto_negotiate=null# banner - (optional) is a type of stringbanner=null# cert_id_validation - (optional) is a type of stringcert_id_validation=null# childless_ike - (optional) is a type of stringchildless_ike=null# client_auto_negotiate - (optional) is a type of stringclient_auto_negotiate=null# client_keep_alive - (optional) is a type of stringclient_keep_alive=null# comments - (optional) is a type of stringcomments=null# default_gw - (optional) is a type of stringdefault_gw=null# default_gw_priority - (optional) is a type of numberdefault_gw_priority=null# dhcp6_ra_linkaddr - (optional) is a type of stringdhcp6_ra_linkaddr=null# dhcp_ra_giaddr - (optional) is a type of stringdhcp_ra_giaddr=null# dhgrp - (optional) is a type of stringdhgrp=null# digital_signature_auth - (optional) is a type of stringdigital_signature_auth=null# distance - (optional) is a type of numberdistance=null# dns_mode - (optional) is a type of stringdns_mode=null# domain - (optional) is a type of stringdomain=null# dpd - (optional) is a type of stringdpd=null# dpd_retrycount - (optional) is a type of numberdpd_retrycount=null# dpd_retryinterval - (optional) is a type of stringdpd_retryinterval=null# dynamic_sort_subtable - (optional) is a type of stringdynamic_sort_subtable=null# eap - (optional) is a type of stringeap=null# eap_exclude_peergrp - (optional) is a type of stringeap_exclude_peergrp=null# eap_identity - (optional) is a type of stringeap_identity=null# encap_local_gw4 - (optional) is a type of stringencap_local_gw4=null# encap_local_gw6 - (optional) is a type of stringencap_local_gw6=null# encap_remote_gw4 - (optional) is a type of stringencap_remote_gw4=null# encap_remote_gw6 - (optional) is a type of stringencap_remote_gw6=null# encapsulation - (optional) is a type of stringencapsulation=null# encapsulation_address - (optional) is a type of stringencapsulation_address=null# enforce_unique_id - (optional) is a type of stringenforce_unique_id=null# exchange_interface_ip - (optional) is a type of stringexchange_interface_ip=null# exchange_ip_addr4 - (optional) is a type of stringexchange_ip_addr4=null# exchange_ip_addr6 - (optional) is a type of stringexchange_ip_addr6=null# fec_base - (optional) is a type of numberfec_base=null# fec_codec - (optional) is a type of numberfec_codec=null# fec_egress - (optional) is a type of stringfec_egress=null# fec_ingress - (optional) is a type of stringfec_ingress=null# fec_receive_timeout - (optional) is a type of numberfec_receive_timeout=null# fec_redundant - (optional) is a type of numberfec_redundant=null# fec_send_timeout - (optional) is a type of numberfec_send_timeout=null# forticlient_enforcement - (optional) is a type of stringforticlient_enforcement=null# fragmentation - (optional) is a type of stringfragmentation=null# fragmentation_mtu - (optional) is a type of numberfragmentation_mtu=null# group_authentication - (optional) is a type of stringgroup_authentication=null# group_authentication_secret - (optional) is a type of stringgroup_authentication_secret=null# ha_sync_esp_seqno - (optional) is a type of stringha_sync_esp_seqno=null# idle_timeout - (optional) is a type of stringidle_timeout=null# idle_timeoutinterval - (optional) is a type of numberidle_timeoutinterval=null# ike_version - (optional) is a type of stringike_version=null# include_local_lan - (optional) is a type of stringinclude_local_lan=null# interface - (required) is a type of stringinterface=null# ip_fragmentation - (optional) is a type of stringip_fragmentation=null# ip_version - (optional) is a type of stringip_version=null# ipv4_dns_server1 - (optional) is a type of stringipv4_dns_server1=null# ipv4_dns_server2 - (optional) is a type of stringipv4_dns_server2=null# ipv4_dns_server3 - (optional) is a type of stringipv4_dns_server3=null# ipv4_end_ip - (optional) is a type of stringipv4_end_ip=null# ipv4_name - (optional) is a type of stringipv4_name=null# ipv4_netmask - (optional) is a type of stringipv4_netmask=null# ipv4_split_exclude - (optional) is a type of stringipv4_split_exclude=null# ipv4_split_include - (optional) is a type of stringipv4_split_include=null# ipv4_start_ip - (optional) is a type of stringipv4_start_ip=null# ipv4_wins_server1 - (optional) is a type of stringipv4_wins_server1=null# ipv4_wins_server2 - (optional) is a type of stringipv4_wins_server2=null# ipv6_dns_server1 - (optional) is a type of stringipv6_dns_server1=null# ipv6_dns_server2 - (optional) is a type of stringipv6_dns_server2=null# ipv6_dns_server3 - (optional) is a type of stringipv6_dns_server3=null# ipv6_end_ip - (optional) is a type of stringipv6_end_ip=null# ipv6_name - (optional) is a type of stringipv6_name=null# ipv6_prefix - (optional) is a type of numberipv6_prefix=null# ipv6_split_exclude - (optional) is a type of stringipv6_split_exclude=null# ipv6_split_include - (optional) is a type of stringipv6_split_include=null# ipv6_start_ip - (optional) is a type of stringipv6_start_ip=null# keepalive - (optional) is a type of numberkeepalive=null# keylife - (optional) is a type of numberkeylife=null# local_gw - (optional) is a type of stringlocal_gw=null# local_gw6 - (optional) is a type of stringlocal_gw6=null# localid - (optional) is a type of stringlocalid=null# localid_type - (optional) is a type of stringlocalid_type=null# mesh_selector_type - (optional) is a type of stringmesh_selector_type=null# mode - (optional) is a type of stringmode=null# mode_cfg - (optional) is a type of stringmode_cfg=null# monitor - (optional) is a type of stringmonitor=null# monitor_hold_down_delay - (optional) is a type of numbermonitor_hold_down_delay=null# monitor_hold_down_time - (optional) is a type of stringmonitor_hold_down_time=null# monitor_hold_down_type - (optional) is a type of stringmonitor_hold_down_type=null# monitor_hold_down_weekday - (optional) is a type of stringmonitor_hold_down_weekday=null# name - (optional) is a type of stringname=null# nattraversal - (optional) is a type of stringnattraversal=null# negotiate_timeout - (optional) is a type of numbernegotiate_timeout=null# net_device - (optional) is a type of stringnet_device=null# network_id - (optional) is a type of numbernetwork_id=null# network_overlay - (optional) is a type of stringnetwork_overlay=null# passive_mode - (optional) is a type of stringpassive_mode=null# peer - (optional) is a type of stringpeer=null# peergrp - (optional) is a type of stringpeergrp=null# peerid - (optional) is a type of stringpeerid=null# peertype - (optional) is a type of stringpeertype=null# ppk - (optional) is a type of stringppk=null# ppk_identity - (optional) is a type of stringppk_identity=null# ppk_secret - (optional) is a type of stringppk_secret=null# priority - (optional) is a type of numberpriority=null# proposal - (required) is a type of stringproposal=null# psksecret - (optional) is a type of stringpsksecret=null# psksecret_remote - (optional) is a type of stringpsksecret_remote=null# reauth - (optional) is a type of stringreauth=null# rekey - (optional) is a type of stringrekey=null# remote_gw - (optional) is a type of stringremote_gw=null# remote_gw6 - (optional) is a type of stringremote_gw6=null# remotegw_ddns - (optional) is a type of stringremotegw_ddns=null# rsa_signature_format - (optional) is a type of stringrsa_signature_format=null# save_password - (optional) is a type of stringsave_password=null# send_cert_chain - (optional) is a type of stringsend_cert_chain=null# signature_hash_alg - (optional) is a type of stringsignature_hash_alg=null# split_include_service - (optional) is a type of stringsplit_include_service=null# suite_b - (optional) is a type of stringsuite_b=null# tunnel_search - (optional) is a type of stringtunnel_search=null# type - (optional) is a type of stringtype=null# unity_support - (optional) is a type of stringunity_support=null# usrgrp - (optional) is a type of stringusrgrp=null# vni - (optional) is a type of numbervni=null# wizard_type - (optional) is a type of stringwizard_type=null# xauthtype - (optional) is a type of stringxauthtype=nullbackup_gateway=[{
address =null
}]
certificate=[{
name =null
}]
ipv4_exclude_range=[{
end_ip =null
id =null
start_ip =null
}]
ipv6_exclude_range=[{
end_ip =null
id =null
start_ip =null
}]
}
resource"fortios_vpnipsec_phase1interface""this" {
# acct_verify - (optional) is a type of stringacct_verify=var.acct_verify# add_gw_route - (optional) is a type of stringadd_gw_route=var.add_gw_route# add_route - (optional) is a type of stringadd_route=var.add_route# aggregate_member - (optional) is a type of stringaggregate_member=var.aggregate_member# aggregate_weight - (optional) is a type of numberaggregate_weight=var.aggregate_weight# assign_ip - (optional) is a type of stringassign_ip=var.assign_ip# assign_ip_from - (optional) is a type of stringassign_ip_from=var.assign_ip_from# authmethod - (optional) is a type of stringauthmethod=var.authmethod# authmethod_remote - (optional) is a type of stringauthmethod_remote=var.authmethod_remote# authpasswd - (optional) is a type of stringauthpasswd=var.authpasswd# authusr - (optional) is a type of stringauthusr=var.authusr# authusrgrp - (optional) is a type of stringauthusrgrp=var.authusrgrp# auto_discovery_forwarder - (optional) is a type of stringauto_discovery_forwarder=var.auto_discovery_forwarder# auto_discovery_psk - (optional) is a type of stringauto_discovery_psk=var.auto_discovery_psk# auto_discovery_receiver - (optional) is a type of stringauto_discovery_receiver=var.auto_discovery_receiver# auto_discovery_sender - (optional) is a type of stringauto_discovery_sender=var.auto_discovery_sender# auto_discovery_shortcuts - (optional) is a type of stringauto_discovery_shortcuts=var.auto_discovery_shortcuts# auto_negotiate - (optional) is a type of stringauto_negotiate=var.auto_negotiate# banner - (optional) is a type of stringbanner=var.banner# cert_id_validation - (optional) is a type of stringcert_id_validation=var.cert_id_validation# childless_ike - (optional) is a type of stringchildless_ike=var.childless_ike# client_auto_negotiate - (optional) is a type of stringclient_auto_negotiate=var.client_auto_negotiate# client_keep_alive - (optional) is a type of stringclient_keep_alive=var.client_keep_alive# comments - (optional) is a type of stringcomments=var.comments# default_gw - (optional) is a type of stringdefault_gw=var.default_gw# default_gw_priority - (optional) is a type of numberdefault_gw_priority=var.default_gw_priority# dhcp6_ra_linkaddr - (optional) is a type of stringdhcp6_ra_linkaddr=var.dhcp6_ra_linkaddr# dhcp_ra_giaddr - (optional) is a type of stringdhcp_ra_giaddr=var.dhcp_ra_giaddr# dhgrp - (optional) is a type of stringdhgrp=var.dhgrp# digital_signature_auth - (optional) is a type of stringdigital_signature_auth=var.digital_signature_auth# distance - (optional) is a type of numberdistance=var.distance# dns_mode - (optional) is a type of stringdns_mode=var.dns_mode# domain - (optional) is a type of stringdomain=var.domain# dpd - (optional) is a type of stringdpd=var.dpd# dpd_retrycount - (optional) is a type of numberdpd_retrycount=var.dpd_retrycount# dpd_retryinterval - (optional) is a type of stringdpd_retryinterval=var.dpd_retryinterval# dynamic_sort_subtable - (optional) is a type of stringdynamic_sort_subtable=var.dynamic_sort_subtable# eap - (optional) is a type of stringeap=var.eap# eap_exclude_peergrp - (optional) is a type of stringeap_exclude_peergrp=var.eap_exclude_peergrp# eap_identity - (optional) is a type of stringeap_identity=var.eap_identity# encap_local_gw4 - (optional) is a type of stringencap_local_gw4=var.encap_local_gw4# encap_local_gw6 - (optional) is a type of stringencap_local_gw6=var.encap_local_gw6# encap_remote_gw4 - (optional) is a type of stringencap_remote_gw4=var.encap_remote_gw4# encap_remote_gw6 - (optional) is a type of stringencap_remote_gw6=var.encap_remote_gw6# encapsulation - (optional) is a type of stringencapsulation=var.encapsulation# encapsulation_address - (optional) is a type of stringencapsulation_address=var.encapsulation_address# enforce_unique_id - (optional) is a type of stringenforce_unique_id=var.enforce_unique_id# exchange_interface_ip - (optional) is a type of stringexchange_interface_ip=var.exchange_interface_ip# exchange_ip_addr4 - (optional) is a type of stringexchange_ip_addr4=var.exchange_ip_addr4# exchange_ip_addr6 - (optional) is a type of stringexchange_ip_addr6=var.exchange_ip_addr6# fec_base - (optional) is a type of numberfec_base=var.fec_base# fec_codec - (optional) is a type of numberfec_codec=var.fec_codec# fec_egress - (optional) is a type of stringfec_egress=var.fec_egress# fec_ingress - (optional) is a type of stringfec_ingress=var.fec_ingress# fec_receive_timeout - (optional) is a type of numberfec_receive_timeout=var.fec_receive_timeout# fec_redundant - (optional) is a type of numberfec_redundant=var.fec_redundant# fec_send_timeout - (optional) is a type of numberfec_send_timeout=var.fec_send_timeout# forticlient_enforcement - (optional) is a type of stringforticlient_enforcement=var.forticlient_enforcement# fragmentation - (optional) is a type of stringfragmentation=var.fragmentation# fragmentation_mtu - (optional) is a type of numberfragmentation_mtu=var.fragmentation_mtu# group_authentication - (optional) is a type of stringgroup_authentication=var.group_authentication# group_authentication_secret - (optional) is a type of stringgroup_authentication_secret=var.group_authentication_secret# ha_sync_esp_seqno - (optional) is a type of stringha_sync_esp_seqno=var.ha_sync_esp_seqno# idle_timeout - (optional) is a type of stringidle_timeout=var.idle_timeout# idle_timeoutinterval - (optional) is a type of numberidle_timeoutinterval=var.idle_timeoutinterval# ike_version - (optional) is a type of stringike_version=var.ike_version# include_local_lan - (optional) is a type of stringinclude_local_lan=var.include_local_lan# interface - (required) is a type of stringinterface=var.interface# ip_fragmentation - (optional) is a type of stringip_fragmentation=var.ip_fragmentation# ip_version - (optional) is a type of stringip_version=var.ip_version# ipv4_dns_server1 - (optional) is a type of stringipv4_dns_server1=var.ipv4_dns_server1# ipv4_dns_server2 - (optional) is a type of stringipv4_dns_server2=var.ipv4_dns_server2# ipv4_dns_server3 - (optional) is a type of stringipv4_dns_server3=var.ipv4_dns_server3# ipv4_end_ip - (optional) is a type of stringipv4_end_ip=var.ipv4_end_ip# ipv4_name - (optional) is a type of stringipv4_name=var.ipv4_name# ipv4_netmask - (optional) is a type of stringipv4_netmask=var.ipv4_netmask# ipv4_split_exclude - (optional) is a type of stringipv4_split_exclude=var.ipv4_split_exclude# ipv4_split_include - (optional) is a type of stringipv4_split_include=var.ipv4_split_include# ipv4_start_ip - (optional) is a type of stringipv4_start_ip=var.ipv4_start_ip# ipv4_wins_server1 - (optional) is a type of stringipv4_wins_server1=var.ipv4_wins_server1# ipv4_wins_server2 - (optional) is a type of stringipv4_wins_server2=var.ipv4_wins_server2# ipv6_dns_server1 - (optional) is a type of stringipv6_dns_server1=var.ipv6_dns_server1# ipv6_dns_server2 - (optional) is a type of stringipv6_dns_server2=var.ipv6_dns_server2# ipv6_dns_server3 - (optional) is a type of stringipv6_dns_server3=var.ipv6_dns_server3# ipv6_end_ip - (optional) is a type of stringipv6_end_ip=var.ipv6_end_ip# ipv6_name - (optional) is a type of stringipv6_name=var.ipv6_name# ipv6_prefix - (optional) is a type of numberipv6_prefix=var.ipv6_prefix# ipv6_split_exclude - (optional) is a type of stringipv6_split_exclude=var.ipv6_split_exclude# ipv6_split_include - (optional) is a type of stringipv6_split_include=var.ipv6_split_include# ipv6_start_ip - (optional) is a type of stringipv6_start_ip=var.ipv6_start_ip# keepalive - (optional) is a type of numberkeepalive=var.keepalive# keylife - (optional) is a type of numberkeylife=var.keylife# local_gw - (optional) is a type of stringlocal_gw=var.local_gw# local_gw6 - (optional) is a type of stringlocal_gw6=var.local_gw6# localid - (optional) is a type of stringlocalid=var.localid# localid_type - (optional) is a type of stringlocalid_type=var.localid_type# mesh_selector_type - (optional) is a type of stringmesh_selector_type=var.mesh_selector_type# mode - (optional) is a type of stringmode=var.mode# mode_cfg - (optional) is a type of stringmode_cfg=var.mode_cfg# monitor - (optional) is a type of stringmonitor=var.monitor# monitor_hold_down_delay - (optional) is a type of numbermonitor_hold_down_delay=var.monitor_hold_down_delay# monitor_hold_down_time - (optional) is a type of stringmonitor_hold_down_time=var.monitor_hold_down_time# monitor_hold_down_type - (optional) is a type of stringmonitor_hold_down_type=var.monitor_hold_down_type# monitor_hold_down_weekday - (optional) is a type of stringmonitor_hold_down_weekday=var.monitor_hold_down_weekday# name - (optional) is a type of stringname=var.name# nattraversal - (optional) is a type of stringnattraversal=var.nattraversal# negotiate_timeout - (optional) is a type of numbernegotiate_timeout=var.negotiate_timeout# net_device - (optional) is a type of stringnet_device=var.net_device# network_id - (optional) is a type of numbernetwork_id=var.network_id# network_overlay - (optional) is a type of stringnetwork_overlay=var.network_overlay# passive_mode - (optional) is a type of stringpassive_mode=var.passive_mode# peer - (optional) is a type of stringpeer=var.peer# peergrp - (optional) is a type of stringpeergrp=var.peergrp# peerid - (optional) is a type of stringpeerid=var.peerid# peertype - (optional) is a type of stringpeertype=var.peertype# ppk - (optional) is a type of stringppk=var.ppk# ppk_identity - (optional) is a type of stringppk_identity=var.ppk_identity# ppk_secret - (optional) is a type of stringppk_secret=var.ppk_secret# priority - (optional) is a type of numberpriority=var.priority# proposal - (required) is a type of stringproposal=var.proposal# psksecret - (optional) is a type of stringpsksecret=var.psksecret# psksecret_remote - (optional) is a type of stringpsksecret_remote=var.psksecret_remote# reauth - (optional) is a type of stringreauth=var.reauth# rekey - (optional) is a type of stringrekey=var.rekey# remote_gw - (optional) is a type of stringremote_gw=var.remote_gw# remote_gw6 - (optional) is a type of stringremote_gw6=var.remote_gw6# remotegw_ddns - (optional) is a type of stringremotegw_ddns=var.remotegw_ddns# rsa_signature_format - (optional) is a type of stringrsa_signature_format=var.rsa_signature_format# save_password - (optional) is a type of stringsave_password=var.save_password# send_cert_chain - (optional) is a type of stringsend_cert_chain=var.send_cert_chain# signature_hash_alg - (optional) is a type of stringsignature_hash_alg=var.signature_hash_alg# split_include_service - (optional) is a type of stringsplit_include_service=var.split_include_service# suite_b - (optional) is a type of stringsuite_b=var.suite_b# tunnel_search - (optional) is a type of stringtunnel_search=var.tunnel_search# type - (optional) is a type of stringtype=var.type# unity_support - (optional) is a type of stringunity_support=var.unity_support# usrgrp - (optional) is a type of stringusrgrp=var.usrgrp# vni - (optional) is a type of numbervni=var.vni# wizard_type - (optional) is a type of stringwizard_type=var.wizard_type# xauthtype - (optional) is a type of stringxauthtype=var.xauthtypedynamic"backup_gateway" {
for_each=var.backup_gatewaycontent {
# address - (optional) is a type of stringaddress=backup_gateway.value["address"]
}
}
dynamic"certificate" {
for_each=var.certificatecontent {
# name - (optional) is a type of stringname=certificate.value["name"]
}
}
dynamic"ipv4_exclude_range" {
for_each=var.ipv4_exclude_rangecontent {
# end_ip - (optional) is a type of stringend_ip=ipv4_exclude_range.value["end_ip"]
# id - (optional) is a type of numberid=ipv4_exclude_range.value["id"]
# start_ip - (optional) is a type of stringstart_ip=ipv4_exclude_range.value["start_ip"]
}
}
dynamic"ipv6_exclude_range" {
for_each=var.ipv6_exclude_rangecontent {
# end_ip - (optional) is a type of stringend_ip=ipv6_exclude_range.value["end_ip"]
# id - (optional) is a type of numberid=ipv6_exclude_range.value["id"]
# start_ip - (optional) is a type of stringstart_ip=ipv6_exclude_range.value["start_ip"]
}
}
}