@@ -908,11 +908,11 @@ Use [New-AzFirewallPolicyNetworkRule](/powershell/module/az.network/new-azfirewa
908
908
``` powershell
909
909
# Create a network rule for web traffic
910
910
$networkRuleParams = @{
911
- Name = 'allow-web '
911
+ Name = 'allow-internet '
912
912
SourceAddress = '10.1.0.0/24'
913
913
Protocol = 'TCP'
914
914
DestinationAddress = '*'
915
- DestinationPort = '80,443 '
915
+ DestinationPort = '* '
916
916
}
917
917
$networkRule = New-AzFirewallPolicyNetworkRule @networkRuleParams
918
918
```
@@ -933,31 +933,13 @@ $ruleCollection = New-AzFirewallPolicyFilterRuleCollection @ruleCollectionParams
933
933
Use [ New-AzFirewallPolicyRuleCollectionGroup] ( /powershell/module/az.network/new-azfirewallpolicyrulecollectiongroup ) to create a rule collection group.
934
934
935
935
``` powershell
936
- # Check if DefaultNetworkRuleCollectionGroup exists, create it if not
937
- $existingRuleCollectionGroup = Get-AzFirewallPolicyRuleCollectionGroup -ResourceGroupName 'test-rg' -AzureFirewallPolicyName 'firewall-policy' -Name 'DefaultNetworkRuleCollectionGroup' -ErrorAction SilentlyContinue
938
-
939
- if ($null -eq $existingRuleCollectionGroup) {
940
- # Create a new rule collection group
941
- $newRuleCollectionGroupParams = @{
936
+ $newRuleCollectionGroupParams = @{
942
937
Name = 'DefaultNetworkRuleCollectionGroup'
943
938
Priority = 200
944
939
FirewallPolicyObject = $firewallPolicy
945
940
RuleCollection = $ruleCollection
946
941
}
947
- New-AzFirewallPolicyRuleCollectionGroup @newRuleCollectionGroupParams
948
- } else {
949
- # Add the rule collection to the existing group
950
- $existingRuleCollectionGroup.Properties.RuleCollection.Add($ruleCollection)
951
-
952
- # Update the rule collection group
953
- $updateRuleCollectionGroupParams = @{
954
- Name = 'DefaultNetworkRuleCollectionGroup'
955
- Priority = 200
956
- FirewallPolicyObject = $firewallPolicy
957
- RuleCollection = $existingRuleCollectionGroup.Properties.RuleCollection
958
- }
959
- Set-AzFirewallPolicyRuleCollectionGroup @updateRuleCollectionGroupParams
960
- }
942
+ New-AzFirewallPolicyRuleCollectionGroup @newRuleCollectionGroupParams
961
943
```
962
944
963
945
### [ CLI] ( #tab/cli )
0 commit comments