curl --request POST \
--url https://network.{region}.basaltic.sh/v1/egress-only-gateways \
--header 'Authorization: Bearer <token>' \
--header 'Content-Type: application/json' \
--data '
{
"name": "main",
"vpc": "5f8d3a2e-1c4b-4e7a-9f6d-2b1a8c3e5d7f",
"description": "Egress-only v6 for the private tier",
"tags": {}
}
'import requests
url = "https://network.{region}.basaltic.sh/v1/egress-only-gateways"
payload = {
"name": "main",
"vpc": "5f8d3a2e-1c4b-4e7a-9f6d-2b1a8c3e5d7f",
"description": "Egress-only v6 for the private tier",
"tags": {}
}
headers = {
"Authorization": "Bearer <token>",
"Content-Type": "application/json"
}
response = requests.post(url, json=payload, headers=headers)
print(response.text)const options = {
method: 'POST',
headers: {Authorization: 'Bearer <token>', 'Content-Type': 'application/json'},
body: JSON.stringify({
name: 'main',
vpc: '5f8d3a2e-1c4b-4e7a-9f6d-2b1a8c3e5d7f',
description: 'Egress-only v6 for the private tier',
tags: {}
})
};
fetch('https://network.{region}.basaltic.sh/v1/egress-only-gateways', options)
.then(res => res.json())
.then(res => console.log(res))
.catch(err => console.error(err));<?php
$curl = curl_init();
curl_setopt_array($curl, [
CURLOPT_URL => "https://network.{region}.basaltic.sh/v1/egress-only-gateways",
CURLOPT_RETURNTRANSFER => true,
CURLOPT_ENCODING => "",
CURLOPT_MAXREDIRS => 10,
CURLOPT_TIMEOUT => 30,
CURLOPT_HTTP_VERSION => CURL_HTTP_VERSION_1_1,
CURLOPT_CUSTOMREQUEST => "POST",
CURLOPT_POSTFIELDS => json_encode([
'name' => 'main',
'vpc' => '5f8d3a2e-1c4b-4e7a-9f6d-2b1a8c3e5d7f',
'description' => 'Egress-only v6 for the private tier',
'tags' => [
]
]),
CURLOPT_HTTPHEADER => [
"Authorization: Bearer <token>",
"Content-Type: application/json"
],
]);
$response = curl_exec($curl);
$err = curl_error($curl);
curl_close($curl);
if ($err) {
echo "cURL Error #:" . $err;
} else {
echo $response;
}package main
import (
"fmt"
"strings"
"net/http"
"io"
)
func main() {
url := "https://network.{region}.basaltic.sh/v1/egress-only-gateways"
payload := strings.NewReader("{\n \"name\": \"main\",\n \"vpc\": \"5f8d3a2e-1c4b-4e7a-9f6d-2b1a8c3e5d7f\",\n \"description\": \"Egress-only v6 for the private tier\",\n \"tags\": {}\n}")
req, _ := http.NewRequest("POST", url, payload)
req.Header.Add("Authorization", "Bearer <token>")
req.Header.Add("Content-Type", "application/json")
res, _ := http.DefaultClient.Do(req)
defer res.Body.Close()
body, _ := io.ReadAll(res.Body)
fmt.Println(string(body))
}HttpResponse<String> response = Unirest.post("https://network.{region}.basaltic.sh/v1/egress-only-gateways")
.header("Authorization", "Bearer <token>")
.header("Content-Type", "application/json")
.body("{\n \"name\": \"main\",\n \"vpc\": \"5f8d3a2e-1c4b-4e7a-9f6d-2b1a8c3e5d7f\",\n \"description\": \"Egress-only v6 for the private tier\",\n \"tags\": {}\n}")
.asString();require 'uri'
require 'net/http'
url = URI("https://network.{region}.basaltic.sh/v1/egress-only-gateways")
http = Net::HTTP.new(url.host, url.port)
http.use_ssl = true
request = Net::HTTP::Post.new(url)
request["Authorization"] = 'Bearer <token>'
request["Content-Type"] = 'application/json'
request.body = "{\n \"name\": \"main\",\n \"vpc\": \"5f8d3a2e-1c4b-4e7a-9f6d-2b1a8c3e5d7f\",\n \"description\": \"Egress-only v6 for the private tier\",\n \"tags\": {}\n}"
response = http.request(request)
puts response.read_body{
"egress_only_gateway": {
"id": "3c90c3cc-0d44-4b50-8888-8dd25736052a",
"crn": "crn:network:sa-saopaulo-1:my-account:egress-only-gateway/main",
"name": "main",
"vpc": {
"id": "3c90c3cc-0d44-4b50-8888-8dd25736052a",
"crn": "crn:network:sa-saopaulo-1:my-account:vpc/prod",
"name": "prod",
"cidr_ipv4": "10.0.0.0/16",
"tags": {},
"created_at": "2023-11-07T05:31:56Z",
"updated_at": "2023-11-07T05:31:56Z",
"description": "Production VPC for web and app tiers",
"cidr_ipv6": "2a13:9500:1a6:100::/60"
},
"tags": {},
"created_at": "2023-11-07T05:31:56Z",
"updated_at": "2023-11-07T05:31:56Z",
"description": "Egress-only v6 for the private tier"
}
}{
"error": {
"code": "INVALID_INPUT",
"message": "Invalid request parameters",
"request_id": "550e8400-e29b-41d4-a716-446655440000"
}
}{
"error": {
"code": "UNAUTHORIZED",
"message": "Authentication required",
"request_id": "550e8400-e29b-41d4-a716-446655440000"
}
}{
"error": {
"code": "ACCESS_DENIED",
"message": "You don't have permission to perform this action",
"request_id": "550e8400-e29b-41d4-a716-446655440000"
}
}{
"error": {
"code": "CONFLICT",
"message": "Resource with this name already exists",
"request_id": "550e8400-e29b-41d4-a716-446655440000"
}
}{
"error": {
"code": "IDEMPOTENCY_KEY_REUSED",
"message": "This Idempotency-Key was already used with a different request payload",
"request_id": "550e8400-e29b-41d4-a716-446655440000"
}
}{
"error": {
"code": "INTERNAL_ERROR",
"message": "An internal error occurred",
"request_id": "550e8400-e29b-41d4-a716-446655440000"
}
}Criar gateway somente de saída
Registra um gateway de Internet somente de saída com escopo de VPC. A VPC de destino deve ter um CIDR IPv6. Torna-se efetivo quando uma sub-rede aponta o ::/0 de sua tabela de rota para ele (target_egress_only_gateway_id na rota).
curl --request POST \
--url https://network.{region}.basaltic.sh/v1/egress-only-gateways \
--header 'Authorization: Bearer <token>' \
--header 'Content-Type: application/json' \
--data '
{
"name": "main",
"vpc": "5f8d3a2e-1c4b-4e7a-9f6d-2b1a8c3e5d7f",
"description": "Egress-only v6 for the private tier",
"tags": {}
}
'import requests
url = "https://network.{region}.basaltic.sh/v1/egress-only-gateways"
payload = {
"name": "main",
"vpc": "5f8d3a2e-1c4b-4e7a-9f6d-2b1a8c3e5d7f",
"description": "Egress-only v6 for the private tier",
"tags": {}
}
headers = {
"Authorization": "Bearer <token>",
"Content-Type": "application/json"
}
response = requests.post(url, json=payload, headers=headers)
print(response.text)const options = {
method: 'POST',
headers: {Authorization: 'Bearer <token>', 'Content-Type': 'application/json'},
body: JSON.stringify({
name: 'main',
vpc: '5f8d3a2e-1c4b-4e7a-9f6d-2b1a8c3e5d7f',
description: 'Egress-only v6 for the private tier',
tags: {}
})
};
fetch('https://network.{region}.basaltic.sh/v1/egress-only-gateways', options)
.then(res => res.json())
.then(res => console.log(res))
.catch(err => console.error(err));<?php
$curl = curl_init();
curl_setopt_array($curl, [
CURLOPT_URL => "https://network.{region}.basaltic.sh/v1/egress-only-gateways",
CURLOPT_RETURNTRANSFER => true,
CURLOPT_ENCODING => "",
CURLOPT_MAXREDIRS => 10,
CURLOPT_TIMEOUT => 30,
CURLOPT_HTTP_VERSION => CURL_HTTP_VERSION_1_1,
CURLOPT_CUSTOMREQUEST => "POST",
CURLOPT_POSTFIELDS => json_encode([
'name' => 'main',
'vpc' => '5f8d3a2e-1c4b-4e7a-9f6d-2b1a8c3e5d7f',
'description' => 'Egress-only v6 for the private tier',
'tags' => [
]
]),
CURLOPT_HTTPHEADER => [
"Authorization: Bearer <token>",
"Content-Type: application/json"
],
]);
$response = curl_exec($curl);
$err = curl_error($curl);
curl_close($curl);
if ($err) {
echo "cURL Error #:" . $err;
} else {
echo $response;
}package main
import (
"fmt"
"strings"
"net/http"
"io"
)
func main() {
url := "https://network.{region}.basaltic.sh/v1/egress-only-gateways"
payload := strings.NewReader("{\n \"name\": \"main\",\n \"vpc\": \"5f8d3a2e-1c4b-4e7a-9f6d-2b1a8c3e5d7f\",\n \"description\": \"Egress-only v6 for the private tier\",\n \"tags\": {}\n}")
req, _ := http.NewRequest("POST", url, payload)
req.Header.Add("Authorization", "Bearer <token>")
req.Header.Add("Content-Type", "application/json")
res, _ := http.DefaultClient.Do(req)
defer res.Body.Close()
body, _ := io.ReadAll(res.Body)
fmt.Println(string(body))
}HttpResponse<String> response = Unirest.post("https://network.{region}.basaltic.sh/v1/egress-only-gateways")
.header("Authorization", "Bearer <token>")
.header("Content-Type", "application/json")
.body("{\n \"name\": \"main\",\n \"vpc\": \"5f8d3a2e-1c4b-4e7a-9f6d-2b1a8c3e5d7f\",\n \"description\": \"Egress-only v6 for the private tier\",\n \"tags\": {}\n}")
.asString();require 'uri'
require 'net/http'
url = URI("https://network.{region}.basaltic.sh/v1/egress-only-gateways")
http = Net::HTTP.new(url.host, url.port)
http.use_ssl = true
request = Net::HTTP::Post.new(url)
request["Authorization"] = 'Bearer <token>'
request["Content-Type"] = 'application/json'
request.body = "{\n \"name\": \"main\",\n \"vpc\": \"5f8d3a2e-1c4b-4e7a-9f6d-2b1a8c3e5d7f\",\n \"description\": \"Egress-only v6 for the private tier\",\n \"tags\": {}\n}"
response = http.request(request)
puts response.read_body{
"egress_only_gateway": {
"id": "3c90c3cc-0d44-4b50-8888-8dd25736052a",
"crn": "crn:network:sa-saopaulo-1:my-account:egress-only-gateway/main",
"name": "main",
"vpc": {
"id": "3c90c3cc-0d44-4b50-8888-8dd25736052a",
"crn": "crn:network:sa-saopaulo-1:my-account:vpc/prod",
"name": "prod",
"cidr_ipv4": "10.0.0.0/16",
"tags": {},
"created_at": "2023-11-07T05:31:56Z",
"updated_at": "2023-11-07T05:31:56Z",
"description": "Production VPC for web and app tiers",
"cidr_ipv6": "2a13:9500:1a6:100::/60"
},
"tags": {},
"created_at": "2023-11-07T05:31:56Z",
"updated_at": "2023-11-07T05:31:56Z",
"description": "Egress-only v6 for the private tier"
}
}{
"error": {
"code": "INVALID_INPUT",
"message": "Invalid request parameters",
"request_id": "550e8400-e29b-41d4-a716-446655440000"
}
}{
"error": {
"code": "UNAUTHORIZED",
"message": "Authentication required",
"request_id": "550e8400-e29b-41d4-a716-446655440000"
}
}{
"error": {
"code": "ACCESS_DENIED",
"message": "You don't have permission to perform this action",
"request_id": "550e8400-e29b-41d4-a716-446655440000"
}
}{
"error": {
"code": "CONFLICT",
"message": "Resource with this name already exists",
"request_id": "550e8400-e29b-41d4-a716-446655440000"
}
}{
"error": {
"code": "IDEMPOTENCY_KEY_REUSED",
"message": "This Idempotency-Key was already used with a different request payload",
"request_id": "550e8400-e29b-41d4-a716-446655440000"
}
}{
"error": {
"code": "INTERNAL_ERROR",
"message": "An internal error occurred",
"request_id": "550e8400-e29b-41d4-a716-446655440000"
}
}network:CreateEgressOnlyGateway. Consulte permissões de redes para obter a lista completa, o que cada uma abrange e um exemplo de política.Autorizações
Um token bearer OAuth 2.0, enviado como Authorization: Bearer <token>. Esta é a forma recomendada de autenticação.
Obtenha o token trocando o par de chaves de acesso de uma conta de serviço em POST /v1/oauth/token com grant_type=client_credentials. Esse é o fluxo padrão de credenciais de cliente; bibliotecas compatíveis com OAuth podem obter e renovar o token para você.
curl -s -u "$KEY_ID:$SECRET" -d grant_type=client_credentials \
https://iam.basaltic.sh/v1/oauth/token
Os tokens duram uma hora por padrão. O mesmo par de chaves de acesso também serve como credencial AWS SigV4 para o endpoint de objetos compatível com S3, que aceita somente esse método de autenticação.
Cabeçalhos
Chave opcional gerada pelo cliente que torna uma criação segura para reprodução. A reintentar uma solicitação com a mesma chave retorna o resultado original literalmente em vez de criar um recurso duplicado. A reutilização de uma chave com um corpo de solicitação diferente é rejeitada (422); uma solicitação cuja chave ainda está sendo processada retorna 409. Os registros são honrados por 24 horas. Use um UUID ou token exclusivo semelhante.
255Corpo
Os nomes de recursos não devem começar com o prefixo literal crn: ou ser UUIDs (formas canônicas, compactas, entre colchetes ou urn:uuid:, em qualquer caso).
"main"
UUID, CRN ou nome exato da VPC na conta do chamador.
"5f8d3a2e-1c4b-4e7a-9f6d-2b1a8c3e5d7f"
"Egress-only v6 for the private tier"
Show child attributes
Show child attributes
Resposta
Gateway somente de saída criado
Saída IPv6 nativa sem tradução de endereço: uma sub-rede com IPv6 global cuja tabela de rotas aponta ::/0 em um recebe OUTBOUND v6 (mais o tráfego de retorno de seus próprios fluxos), mas a internet nunca pode iniciar uma conexão de entrada - uma queda de banda de plataforma impõe isso independentemente dos grupos de segurança do locatário. Ele não possui endereço e não traduz fontes de ULA e reutiliza o gateway de Internet da VPC para o uplink L3, portanto, a VPC deve ter um IGW anexado. Um por VPC.
Show child attributes
Show child attributes

