cdn.pizzaDocumentation

Private networks and Partner POPs

Network ACLs and presets

ACL rules are ordered, versioned, and synchronized to attached POPs.

#Overview

ACL rules are ordered, versioned, and synchronized to attached POPs.

#Explicit policy per flow

ACLs identify source, destination, protocol, ports, action, order, and state. Presets create a coherent set of rules but still require review before activation.

Every change increments policy and must synchronize to affected POP profiles. A disabled rule remains visible for audit but no longer permits traffic. Put precise exceptions before broad rules.

#Change a policy

  1. Map the minimum required flow.

  2. Add or update the rule and its order.

  3. Review the full result, not only the new line.

  4. Synchronize POPs and test one allowed and one denied flow.

#Permissions by role

Actionowneradminmemberviewer
View networks, peers, ACLs, origins, and POPsReadReadReadRead
Create, edit, or delete a networkAllowedAllowedAllowedNo
Manage peers, enrollment keys, and ACLsAllowedAllowedAllowedNo
Link zones, private origins, and POPsAllowedAllowedAllowedNo
Customer documentationReference generated from published interfaces