vtaps
Creates, updates, deletes, gets or lists a vtaps resource.
Overview​
| Name | vtaps |
| Type | Resource |
| Id | oci.network.vtaps |
Fields​
The following fields are returned by SELECT queries:
- get
- list
The VTAP was retrieved.
| Name | Datatype | Description |
|---|---|---|
id | string | The VTAP's Oracle ID ([OCID](/iaas/Content/General/Concepts/identifiers.htm)). |
captureFilterId | string | The capture filter's Oracle ID ([OCID](/iaas/Content/General/Concepts/identifiers.htm)). |
compartmentId | string | The [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the compartment containing the Vtap resource. |
definedTags | object | Defined tags for this resource. Each key is predefined and scoped to a namespace. For more information, see [Resource Tags](/iaas/Content/General/Concepts/resourcetags.htm). Example: {"Operations": {"CostCenter": "42"}} |
displayName | string | A user-friendly name. Does not have to be unique, and it's changeable. Avoid entering confidential information. |
encapsulationProtocol | string | Defines an encapsulation header type for the VTAP's mirrored traffic. (VXLAN) |
freeformTags | object | Free-form tags for this resource. Each tag is a simple key-value pair with no predefined name, type, or namespace. For more information, see [Resource Tags](/iaas/Content/General/Concepts/resourcetags.htm). Example: {"Department": "Finance"} |
isVtapEnabled | boolean | Used to start or stop a Vtap resource. * TRUE directs the VTAP to start mirroring traffic. * FALSE (Default) directs the VTAP to stop mirroring traffic. |
lifecycleState | string | The VTAP's administrative lifecycle state. (PROVISIONING, AVAILABLE, UPDATING, TERMINATING, TERMINATED) |
lifecycleStateDetails | string | The VTAP's current running state. (RUNNING, STOPPED) |
maxPacketSize | integer (int32) | The maximum size of the packets to be included in the filter. |
sourceId | string | The [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the source point where packets are captured. |
sourcePrivateEndpointIp | string | The IP Address of the source private endpoint. |
sourcePrivateEndpointSubnetId | string | The [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the subnet that source private endpoint belongs to. |
sourceType | string | The source type for the VTAP. (VNIC, SUBNET, LOAD_BALANCER, DB_SYSTEM, EXADATA_VM_CLUSTER, AUTONOMOUS_DATA_WAREHOUSE) |
targetId | string | The [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the destination resource where mirrored packets are sent. |
targetIp | string | The IP address of the destination resource where mirrored packets are sent. |
targetType | string | The target type for the VTAP. (VNIC, NETWORK_LOAD_BALANCER, IP_ADDRESS) |
timeCreated | string (date-time) | The date and time the VTAP was created, in the format defined by [RFC3339](https:​//tools.ietf.org/html/rfc3339). Example: 2020-08-25T21:10:29.600Z |
trafficMode | string | Used to control the priority of traffic. It is an optional field. If it not passed, the value is DEFAULT (DEFAULT, PRIORITY) (default: DEFAULT) |
vcnId | string | The [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the VCN containing the Vtap resource. |
vxlanNetworkIdentifier | integer (int64) | The virtual extensible LAN (VXLAN) network identifier (or VXLAN segment ID) that uniquely identifies the VXLAN. |
A virtual test access point (VTAP) provides a way to mirror all traffic from a designated source to a selected target in order to facilitate troubleshooting, security analysis, and data monitoring.<br />A VTAP is functionally similar to a test access point (TAP) you might deploy in your on-premises network.<br /><br />A [capture filter](#/en/iaas/latest/CaptureFilter) contains a set of [rules](#/en/iaas/latest/datatypes/CaptureFilterRuleDetails) governing what traffic a VTAP mirrors.<br />
| Name | Datatype | Description |
|---|---|---|
id | string | The VTAP's Oracle ID ([OCID](/iaas/Content/General/Concepts/identifiers.htm)). |
captureFilterId | string | The capture filter's Oracle ID ([OCID](/iaas/Content/General/Concepts/identifiers.htm)). |
compartmentId | string | The [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the compartment containing the Vtap resource. |
definedTags | object | Defined tags for this resource. Each key is predefined and scoped to a namespace. For more information, see [Resource Tags](/iaas/Content/General/Concepts/resourcetags.htm). Example: {"Operations": {"CostCenter": "42"}} |
displayName | string | A user-friendly name. Does not have to be unique, and it's changeable. Avoid entering confidential information. |
encapsulationProtocol | string | Defines an encapsulation header type for the VTAP's mirrored traffic. (VXLAN) |
freeformTags | object | Free-form tags for this resource. Each tag is a simple key-value pair with no predefined name, type, or namespace. For more information, see [Resource Tags](/iaas/Content/General/Concepts/resourcetags.htm). Example: {"Department": "Finance"} |
isVtapEnabled | boolean | Used to start or stop a Vtap resource. * TRUE directs the VTAP to start mirroring traffic. * FALSE (Default) directs the VTAP to stop mirroring traffic. |
lifecycleState | string | The VTAP's administrative lifecycle state. (PROVISIONING, AVAILABLE, UPDATING, TERMINATING, TERMINATED) |
lifecycleStateDetails | string | The VTAP's current running state. (RUNNING, STOPPED) |
maxPacketSize | integer (int32) | The maximum size of the packets to be included in the filter. |
sourceId | string | The [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the source point where packets are captured. |
sourcePrivateEndpointIp | string | The IP Address of the source private endpoint. |
sourcePrivateEndpointSubnetId | string | The [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the subnet that source private endpoint belongs to. |
sourceType | string | The source type for the VTAP. (VNIC, SUBNET, LOAD_BALANCER, DB_SYSTEM, EXADATA_VM_CLUSTER, AUTONOMOUS_DATA_WAREHOUSE) |
targetId | string | The [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the destination resource where mirrored packets are sent. |
targetIp | string | The IP address of the destination resource where mirrored packets are sent. |
targetType | string | The target type for the VTAP. (VNIC, NETWORK_LOAD_BALANCER, IP_ADDRESS) |
timeCreated | string (date-time) | The date and time the VTAP was created, in the format defined by [RFC3339](https:​//tools.ietf.org/html/rfc3339). Example: 2020-08-25T21:10:29.600Z |
trafficMode | string | Used to control the priority of traffic. It is an optional field. If it not passed, the value is DEFAULT (DEFAULT, PRIORITY) (default: DEFAULT) |
vcnId | string | The [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the VCN containing the Vtap resource. |
vxlanNetworkIdentifier | integer (int64) | The virtual extensible LAN (VXLAN) network identifier (or VXLAN segment ID) that uniquely identifies the VXLAN. |
Methods​
The following methods are available for this resource:
| Name | Accessible by | Required Params | Optional Params | Description |
|---|---|---|---|---|
get | select | vtapId, region | opc-request-id | Gets the specified Vtap resource. |
list | select | compartmentId, region | vcnId, source, targetId, targetIp, isVtapEnabled, limit, page, opc-request-id, sortBy, sortOrder, displayName, lifecycleState | Lists the virtual test access points (VTAPs) in the specified compartment.<br /> |
create | insert | region, compartmentId, vcnId, sourceId, captureFilterId | opc-retry-token, opc-request-id | Creates a virtual test access point (VTAP) in the specified compartment.<br /><br />For the purposes of access control, you must provide the [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the compartment that contains the VTAP.<br />For more information about compartments and access control, see<br />[Overview of the IAM Service](/iaas/Content/Identity/Concepts/overview.htm).<br />For information about OCIDs, see [Resource Identifiers](/iaas/Content/General/Concepts/identifiers.htm).<br /><br />You may optionally specify a display name for the VTAP, otherwise a default is provided.<br />It does not have to be unique, and you can change it.<br /> |
update | update | vtapId, region | if-match, opc-request-id | Updates the specified VTAP's display name or tags.<br /> |
delete | delete | vtapId, region | if-match, opc-request-id | Deletes the specified VTAP. This is an asynchronous operation. The VTAP's lifecycleState will change to<br />TERMINATING temporarily until the VTAP is completely removed.<br /> |
change_compartment | exec | vtapId, region, compartmentId | if-match, opc-request-id, opc-retry-token | Moves a VTAP to a new compartment within the same tenancy. For information<br />about moving resources between compartments, see<br />[Moving Resources to a Different Compartment](/iaas/Content/Identity/Tasks/managingcompartments.htm#moveRes).<br /> |
Parameters​
Parameters can be passed in the WHERE clause of a query. Check the Methods section to see which parameters are required or optional for each operation.
| Name | Datatype | Description |
|---|---|---|
compartmentId | string | The [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the compartment. |
region | string | OCI region identifier (e.g. us-ashburn-1, ap-sydney-1); resolves from OCI_REGION when not supplied in the query. (default: us-ashburn-1, x-stackQL-envVar: OCI_REGION) |
vtapId | string | The [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the VTAP. |
displayName | string | A filter to return only resources that match the given display name exactly. |
if-match | string | For optimistic concurrency control. In the PUT or DELETE call for a resource, set the if-match parameter to the value of the etag from a previous GET or POST response for that resource. The resource will be updated or deleted only if the etag you provide matches the resource's current etag value. |
isVtapEnabled | boolean | Indicates whether to list all VTAPs or only running VTAPs. * When FALSE, lists ALL running and stopped VTAPs. * When TRUE, lists only running VTAPs (VTAPs where isVtapEnabled = TRUE). |
lifecycleState | string | A filter to return only resources that match the given VTAP administrative lifecycle state. The state value is case-insensitive. |
limit | integer | For list pagination. The maximum number of results per page, or items to return in a paginated "List" call. For important details about how pagination works, see [List Pagination](/iaas/Content/API/Concepts/usingapi.htm#nine). Example: 50 |
opc-request-id | string | Unique identifier for the request. If you need to contact Oracle about a particular request, please provide the request ID. |
opc-retry-token | string | A token that uniquely identifies a request so it can be retried in case of a timeout or server error without risk of executing that same action again. Retry tokens expire after 24 hours, but can be invalidated before then due to conflicting operations (for example, if a resource has been deleted and purged from the system, then a retry of the original creation request may be rejected). |
page | string | For list pagination. The value of the opc-next-page response header from the previous "List" call. For important details about how pagination works, see [List Pagination](/iaas/Content/API/Concepts/usingapi.htm#nine). |
sortBy | string | The field to sort by. You can provide one sort order (sortOrder). Default order for TIMECREATED is descending. Default order for DISPLAYNAME is ascending. The DISPLAYNAME sort order is case sensitive. Note: In general, some "List" operations (for example, ListInstances) let you optionally filter by availability domain if the scope of the resource type is within a single availability domain. If you call one of these "List" operations without specifying an availability domain, the resources are grouped by availability domain, then sorted. |
sortOrder | string | The sort order to use, either ascending (ASC) or descending (DESC). The DISPLAYNAME sort order is case sensitive. |
source | string | The [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the VTAP source. |
targetId | string | The [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the VTAP target. |
targetIp | string | The IP address of the VTAP target. |
vcnId | string | The [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the VCN. |
SELECT examples​
- get
- list
Gets the specified Vtap resource.
SELECT
id,
captureFilterId,
compartmentId,
definedTags,
displayName,
encapsulationProtocol,
freeformTags,
isVtapEnabled,
lifecycleState,
lifecycleStateDetails,
maxPacketSize,
sourceId,
sourcePrivateEndpointIp,
sourcePrivateEndpointSubnetId,
sourceType,
targetId,
targetIp,
targetType,
timeCreated,
trafficMode,
vcnId,
vxlanNetworkIdentifier
FROM oci.network.vtaps
WHERE vtapId = '{{ vtapId }}' -- required
AND region = '{{ region }}' -- required
AND opc-request-id = '{{ opc-request-id }}'
;
Lists the virtual test access points (VTAPs) in the specified compartment.<br />
SELECT
id,
captureFilterId,
compartmentId,
definedTags,
displayName,
encapsulationProtocol,
freeformTags,
isVtapEnabled,
lifecycleState,
lifecycleStateDetails,
maxPacketSize,
sourceId,
sourcePrivateEndpointIp,
sourcePrivateEndpointSubnetId,
sourceType,
targetId,
targetIp,
targetType,
timeCreated,
trafficMode,
vcnId,
vxlanNetworkIdentifier
FROM oci.network.vtaps
WHERE compartmentId = '{{ compartmentId }}' -- required
AND region = '{{ region }}' -- required
AND vcnId = '{{ vcnId }}'
AND source = '{{ source }}'
AND targetId = '{{ targetId }}'
AND targetIp = '{{ targetIp }}'
AND isVtapEnabled = '{{ isVtapEnabled }}'
AND limit = '{{ limit }}'
AND page = '{{ page }}'
AND opc-request-id = '{{ opc-request-id }}'
AND sortBy = '{{ sortBy }}'
AND sortOrder = '{{ sortOrder }}'
AND displayName = '{{ displayName }}'
AND lifecycleState = '{{ lifecycleState }}'
;
INSERT examples​
- create
- Manifest
Creates a virtual test access point (VTAP) in the specified compartment.<br /><br />For the purposes of access control, you must provide the [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the compartment that contains the VTAP.<br />For more information about compartments and access control, see<br />[Overview of the IAM Service](/iaas/Content/Identity/Concepts/overview.htm).<br />For information about OCIDs, see [Resource Identifiers](/iaas/Content/General/Concepts/identifiers.htm).<br /><br />You may optionally specify a display name for the VTAP, otherwise a default is provided.<br />It does not have to be unique, and you can change it.<br />
INSERT INTO oci.network.vtaps (
captureFilterId,
compartmentId,
definedTags,
displayName,
encapsulationProtocol,
freeformTags,
isVtapEnabled,
maxPacketSize,
sourceId,
sourcePrivateEndpointIp,
sourcePrivateEndpointSubnetId,
sourceType,
targetId,
targetIp,
targetType,
trafficMode,
vcnId,
vxlanNetworkIdentifier,
region,
opc-retry-token,
opc-request-id
)
SELECT
'{{ captureFilterId }}' /* required */,
'{{ compartmentId }}' /* required */,
'{{ definedTags }}',
'{{ displayName }}',
'{{ encapsulationProtocol }}',
'{{ freeformTags }}',
{{ isVtapEnabled }},
{{ maxPacketSize }},
'{{ sourceId }}' /* required */,
'{{ sourcePrivateEndpointIp }}',
'{{ sourcePrivateEndpointSubnetId }}',
'{{ sourceType }}',
'{{ targetId }}',
'{{ targetIp }}',
'{{ targetType }}',
'{{ trafficMode }}',
'{{ vcnId }}' /* required */,
{{ vxlanNetworkIdentifier }},
'{{ region }}',
'{{ opc-retry-token }}',
'{{ opc-request-id }}'
RETURNING
id,
captureFilterId,
compartmentId,
definedTags,
displayName,
encapsulationProtocol,
freeformTags,
isVtapEnabled,
lifecycleState,
lifecycleStateDetails,
maxPacketSize,
sourceId,
sourcePrivateEndpointIp,
sourcePrivateEndpointSubnetId,
sourceType,
targetId,
targetIp,
targetType,
timeCreated,
trafficMode,
vcnId,
vxlanNetworkIdentifier
;
# Description fields are for documentation purposes
- name: vtaps
props:
- name: region
value: "{{ region }}"
description: Required parameter for the vtaps resource.
- name: captureFilterId
value: "{{ captureFilterId }}"
description: |
The capture filter's Oracle ID ([OCID](/iaas/Content/General/Concepts/identifiers.htm)).
- name: compartmentId
value: "{{ compartmentId }}"
description: |
The [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the compartment containing the `Vtap` resource.
- name: definedTags
value: "{{ definedTags }}"
description: |
Defined tags for this resource. Each key is predefined and scoped to a
namespace. For more information, see [Resource Tags](/iaas/Content/General/Concepts/resourcetags.htm).
Example: `{"Operations": {"CostCenter": "42"}}`
- name: displayName
value: "{{ displayName }}"
description: |
A user-friendly name. Does not have to be unique, and it's changeable.
Avoid entering confidential information.
- name: encapsulationProtocol
value: "{{ encapsulationProtocol }}"
description: |
Defines an encapsulation header type for the VTAP's mirrored traffic.
valid_values: ['VXLAN']
- name: freeformTags
value: "{{ freeformTags }}"
description: |
Free-form tags for this resource. Each tag is a simple key-value pair with no
predefined name, type, or namespace. For more information, see [Resource Tags](/iaas/Content/General/Concepts/resourcetags.htm).
Example: `{"Department": "Finance"}`
- name: isVtapEnabled
value: {{ isVtapEnabled }}
description: |
Used to start or stop a `Vtap` resource.
* `TRUE` directs the VTAP to start mirroring traffic.
* `FALSE` (Default) directs the VTAP to stop mirroring traffic.
default: false
- name: maxPacketSize
value: {{ maxPacketSize }}
description: |
The maximum size of the packets to be included in the filter.
- name: sourceId
value: "{{ sourceId }}"
description: |
The [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the source point where packets are captured.
- name: sourcePrivateEndpointIp
value: "{{ sourcePrivateEndpointIp }}"
description: |
The IP Address of the source private endpoint.
- name: sourcePrivateEndpointSubnetId
value: "{{ sourcePrivateEndpointSubnetId }}"
description: |
The [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the subnet that source private endpoint belongs to.
- name: sourceType
value: "{{ sourceType }}"
description: |
The source type for the VTAP.
valid_values: ['VNIC', 'SUBNET', 'LOAD_BALANCER', 'DB_SYSTEM', 'EXADATA_VM_CLUSTER', 'AUTONOMOUS_DATA_WAREHOUSE']
- name: targetId
value: "{{ targetId }}"
description: |
The [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the destination resource where mirrored packets are sent.
- name: targetIp
value: "{{ targetIp }}"
description: |
The IP address of the destination resource where mirrored packets are sent.
- name: targetType
value: "{{ targetType }}"
description: |
The target type for the VTAP.
valid_values: ['VNIC', 'NETWORK_LOAD_BALANCER', 'IP_ADDRESS']
- name: trafficMode
value: "{{ trafficMode }}"
description: |
Used to control the priority of traffic. It is an optional field. If it not passed, the value is DEFAULT
valid_values: ['DEFAULT', 'PRIORITY']
default: DEFAULT
- name: vcnId
value: "{{ vcnId }}"
description: |
The [OCID](/iaas/Content/General/Concepts/identifiers.htm) of the VCN containing the `Vtap` resource.
- name: vxlanNetworkIdentifier
value: {{ vxlanNetworkIdentifier }}
description: |
The virtual extensible LAN (VXLAN) network identifier (or VXLAN segment ID) that uniquely identifies the VXLAN.
- name: opc-retry-token
value: "{{ opc-retry-token }}"
description: A token that uniquely identifies a request so it can be retried in case of a timeout or server error without risk of executing that same action again. Retry tokens expire after 24 hours, but can be invalidated before then due to conflicting operations (for example, if a resource has been deleted and purged from the system, then a retry of the original creation request may be rejected).
description: A token that uniquely identifies a request so it can be retried in case of a timeout or server error without risk of executing that same action again. Retry tokens expire after 24 hours, but can be invalidated before then due to conflicting operations (for example, if a resource has been deleted and purged from the system, then a retry of the original creation request may be rejected).
- name: opc-request-id
value: "{{ opc-request-id }}"
description: Unique identifier for the request. If you need to contact Oracle about a particular request, please provide the request ID.
description: Unique identifier for the request. If you need to contact Oracle about a particular request, please provide the request ID.
UPDATE examples​
- update
Updates the specified VTAP's display name or tags.<br />
UPDATE oci.network.vtaps
SET
captureFilterId = '{{ captureFilterId }}',
definedTags = '{{ definedTags }}',
displayName = '{{ displayName }}',
encapsulationProtocol = '{{ encapsulationProtocol }}',
freeformTags = '{{ freeformTags }}',
isVtapEnabled = {{ isVtapEnabled }},
maxPacketSize = {{ maxPacketSize }},
sourceId = '{{ sourceId }}',
sourcePrivateEndpointIp = '{{ sourcePrivateEndpointIp }}',
sourcePrivateEndpointSubnetId = '{{ sourcePrivateEndpointSubnetId }}',
sourceType = '{{ sourceType }}',
targetId = '{{ targetId }}',
targetIp = '{{ targetIp }}',
targetType = '{{ targetType }}',
trafficMode = '{{ trafficMode }}',
vxlanNetworkIdentifier = {{ vxlanNetworkIdentifier }}
WHERE
vtapId = '{{ vtapId }}' --required
AND region = '{{ region }}' --required
AND if-match = '{{ if-match}}'
AND opc-request-id = '{{ opc-request-id}}'
RETURNING
id,
captureFilterId,
compartmentId,
definedTags,
displayName,
encapsulationProtocol,
freeformTags,
isVtapEnabled,
lifecycleState,
lifecycleStateDetails,
maxPacketSize,
sourceId,
sourcePrivateEndpointIp,
sourcePrivateEndpointSubnetId,
sourceType,
targetId,
targetIp,
targetType,
timeCreated,
trafficMode,
vcnId,
vxlanNetworkIdentifier;
DELETE examples​
- delete
Deletes the specified VTAP. This is an asynchronous operation. The VTAP's lifecycleState will change to<br />TERMINATING temporarily until the VTAP is completely removed.<br />
DELETE FROM oci.network.vtaps
WHERE vtapId = '{{ vtapId }}' --required
AND region = '{{ region }}' --required
AND if-match = '{{ if-match }}'
AND opc-request-id = '{{ opc-request-id }}'
;
Lifecycle Methods​
- change_compartment
Moves a VTAP to a new compartment within the same tenancy. For information<br />about moving resources between compartments, see<br />[Moving Resources to a Different Compartment](/iaas/Content/Identity/Tasks/managingcompartments.htm#moveRes).<br />
EXEC oci.network.vtaps.change_compartment
@vtapId='{{ vtapId }}' --required,
@region='{{ region }}' --required,
@if-match='{{ if-match }}',
@opc-request-id='{{ opc-request-id }}',
@opc-retry-token='{{ opc-retry-token }}'
@@json=
'{
"compartmentId": "{{ compartmentId }}"
}'
;