Skip to content

Commit 9feebca

Browse files
committed
fixes
1 parent cc3a56c commit 9feebca

File tree

1 file changed

+4
-22
lines changed

1 file changed

+4
-22
lines changed

articles/nat-gateway/tutorial-hub-spoke-nat-firewall.md

Lines changed: 4 additions & 22 deletions
Original file line numberDiff line numberDiff line change
@@ -908,11 +908,11 @@ Use [New-AzFirewallPolicyNetworkRule](/powershell/module/az.network/new-azfirewa
908908
```powershell
909909
# Create a network rule for web traffic
910910
$networkRuleParams = @{
911-
Name = 'allow-web'
911+
Name = 'allow-internet'
912912
SourceAddress = '10.1.0.0/24'
913913
Protocol = 'TCP'
914914
DestinationAddress = '*'
915-
DestinationPort = '80,443'
915+
DestinationPort = '*'
916916
}
917917
$networkRule = New-AzFirewallPolicyNetworkRule @networkRuleParams
918918
```
@@ -933,31 +933,13 @@ $ruleCollection = New-AzFirewallPolicyFilterRuleCollection @ruleCollectionParams
933933
Use [New-AzFirewallPolicyRuleCollectionGroup](/powershell/module/az.network/new-azfirewallpolicyrulecollectiongroup) to create a rule collection group.
934934

935935
```powershell
936-
# Check if DefaultNetworkRuleCollectionGroup exists, create it if not
937-
$existingRuleCollectionGroup = Get-AzFirewallPolicyRuleCollectionGroup -ResourceGroupName 'test-rg' -AzureFirewallPolicyName 'firewall-policy' -Name 'DefaultNetworkRuleCollectionGroup' -ErrorAction SilentlyContinue
938-
939-
if ($null -eq $existingRuleCollectionGroup) {
940-
# Create a new rule collection group
941-
$newRuleCollectionGroupParams = @{
936+
$newRuleCollectionGroupParams = @{
942937
Name = 'DefaultNetworkRuleCollectionGroup'
943938
Priority = 200
944939
FirewallPolicyObject = $firewallPolicy
945940
RuleCollection = $ruleCollection
946941
}
947-
New-AzFirewallPolicyRuleCollectionGroup @newRuleCollectionGroupParams
948-
} else {
949-
# Add the rule collection to the existing group
950-
$existingRuleCollectionGroup.Properties.RuleCollection.Add($ruleCollection)
951-
952-
# Update the rule collection group
953-
$updateRuleCollectionGroupParams = @{
954-
Name = 'DefaultNetworkRuleCollectionGroup'
955-
Priority = 200
956-
FirewallPolicyObject = $firewallPolicy
957-
RuleCollection = $existingRuleCollectionGroup.Properties.RuleCollection
958-
}
959-
Set-AzFirewallPolicyRuleCollectionGroup @updateRuleCollectionGroupParams
960-
}
942+
New-AzFirewallPolicyRuleCollectionGroup @newRuleCollectionGroupParams
961943
```
962944

963945
### [CLI](#tab/cli)

0 commit comments

Comments
 (0)