network_containment_allowlist_rules
Lists every network containment allowlist rule in the CID: the IP ranges, DNS servers, and FQDNs that contained hosts can always communicate with.
API Scopes
Section titled “API Scopes”The following API scopes are required:
- Network Containment Allowlist: READ
Example Usage
Section titled “Example Usage”terraform { required_providers { crowdstrike = { source = "registry.terraform.io/crowdstrike/crowdstrike" } }}
provider "crowdstrike" { cloud = "us-2"}
data "crowdstrike_network_containment_allowlist_rules" "all" {}
output "dns_servers" { value = [ for r in data.crowdstrike_network_containment_allowlist_rules.all.rules : r.rule if r.type == "ip_dns" ]}Schema
Section titled “Schema”Read-Only
Section titled “Read-Only”rules(Attributes List) The allowlist rules, sorted byid. (see below for nested schema)
Nested Schema for rules
Section titled “Nested Schema for rules”Read-Only:
allow_subdomains(Boolean) Whether one level of subdomains is also allowed. Alwaysfalsefor rules other thanfqdn.id(String) Identifier of the allowlist rule.name(String) Name of the allowlist rule.rule(String) The allowed IP address, CIDR block, DNS server, or domain.type(String) Rule type:ip_range,ip_dns, orfqdn.