Skip to content

network_containment_allowlist_rules

Lists every network containment allowlist rule in the CID: the IP ranges, DNS servers, and FQDNs that contained hosts can always communicate with.

The following API scopes are required:

  • Network Containment Allowlist: READ
terraform {
required_providers {
crowdstrike = {
source = "registry.terraform.io/crowdstrike/crowdstrike"
}
}
}
provider "crowdstrike" {
cloud = "us-2"
}
data "crowdstrike_network_containment_allowlist_rules" "all" {}
output "dns_servers" {
value = [
for r in data.crowdstrike_network_containment_allowlist_rules.all.rules : r.rule
if r.type == "ip_dns"
]
}

Read-Only:

  • allow_subdomains (Boolean) Whether one level of subdomains is also allowed. Always false for rules other than fqdn.
  • id (String) Identifier of the allowlist rule.
  • name (String) Name of the allowlist rule.
  • rule (String) The allowed IP address, CIDR block, DNS server, or domain.
  • type (String) Rule type: ip_range, ip_dns, or fqdn.