Note
This module is part of the fortinet.fortimanager collection (version 2.10.0).
You might already have this collection installed if you are using the ansible package. It is not included in ansible-core. To check whether it is installed, run ansible-galaxy collection list.
To install it, use: ansible-galaxy collection install fortinet.fortimanager.
To use it in a playbook, specify: fortinet.fortimanager.fmgr_casb_profile_saasapplication.
New in fortinet.fortimanager 2.3.0
Parameter | Comments |
|---|---|
access_token string | The token to access FortiManager without using username and password. |
adom string / required | The parameter (adom) in requested url. |
bypass_validation boolean | Only set to True when module schema diffs with FortiManager API structure, module continues to execute without validating parameters. Choices:
|
casb_profile_saasapplication dictionary | The top level parameters set. |
|
access_rule aliases: access-rule list / elements=dictionary |
Access rule. |
|
action string |
CASB access rule action. Choices:
|
|
attribute_filter aliases: attribute-filter list / elements=dictionary |
Attribute filter. |
|
action string |
CASB access rule tenant control action. Choices:
|
|
attribute_match aliases: attribute-match list / elements=string |
CASB access rule tenant match. |
|
id integer |
CASB tenant control ID. |
|
bypass list / elements=string |
CASB bypass options. Choices:
|
|
name string |
CASB access rule activity name. |
|
advanced_tenant_control aliases: advanced-tenant-control list / elements=dictionary |
Advanced tenant control. |
|
attribute list / elements=dictionary |
Attribute. |
|
input list / elements=string |
CASB extend user input value. |
|
name string |
CASB extend user input name. |
|
name list / elements=string |
CASB advanced tenant control name. |
|
custom_control aliases: custom-control list / elements=dictionary |
Custom control. |
|
attribute_filter aliases: attribute-filter list / elements=dictionary |
Attribute filter. |
|
action string |
CASB access rule tenant control action. Choices:
|
|
attribute_match aliases: attribute-match list / elements=string |
CASB access rule tenant match. |
|
id integer |
CASB tenant control ID. |
|
name string |
CASB custom control user activity name. |
|
option list / elements=dictionary |
Option. |
|
name string |
CASB custom control option name. |
|
user_input aliases: user-input list / elements=string |
CASB custom control user input. |
|
domain_control aliases: domain-control string |
Enable/disable domain control. Choices:
|
|
domain_control_domains aliases: domain-control-domains list / elements=string |
CASB profile domain control domains. |
|
log string |
Enable/disable log settings. Choices:
|
|
name string / required |
CASB profile SaaS application name. |
|
safe_search aliases: safe-search string |
Enable/disable safe search. Choices:
|
|
safe_search_control aliases: safe-search-control list / elements=string |
CASB profile safe search control. |
|
status string |
Enable/disable setting. Choices:
|
|
tenant_control aliases: tenant-control string |
Enable/disable tenant control. Choices:
|
|
tenant_control_tenants aliases: tenant-control-tenants list / elements=string |
CASB profile tenant control tenants. |
enable_log boolean | Enable/Disable logging for task. Choices:
|
forticloud_access_token string | Authenticate Ansible client with forticloud API access token. |
profile string / required | The parameter (profile) in requested url. |
proposed_method string | The overridden method for the underlying Json RPC request. Choices:
|
rc_failed list / elements=integer | The rc codes list with which the conditions to fail will be overriden. |
rc_succeeded list / elements=integer | The rc codes list with which the conditions to succeed will be overriden. |
state string / required | The directive to create, update or delete an object. Choices:
|
workspace_locking_adom string | The adom to lock for FortiManager running in workspace mode, the value can be global and others including root. |
workspace_locking_timeout integer | The maximum time in seconds to wait for other user to release the workspace lock. Default: |
Note
- name: Example playbook (generated based on argument schema)
hosts: fortimanagers
connection: httpapi
gather_facts: false
vars:
ansible_httpapi_use_ssl: true
ansible_httpapi_validate_certs: false
ansible_httpapi_port: 443
tasks:
- name: CASB profile SaaS application.
fortinet.fortimanager.fmgr_casb_profile_saasapplication:
# bypass_validation: false
workspace_locking_adom: <value in [global, custom adom including root]>
workspace_locking_timeout: 300
# rc_succeeded: [0, -2, -3, ...]
# rc_failed: [-2, -3, ...]
adom: <your own value>
profile: <your own value>
state: present # <value in [present, absent]>
casb_profile_saasapplication:
name: "your value" # Required variable, string
# access_rule:
# - action: <value in [block, bypass, monitor]>
# bypass:
# - "av"
# - "dlp"
# - "web-filter"
# - "file-filter"
# - "video-filter"
# name: <string>
# attribute_filter:
# - action: <value in [block, monitor, bypass]>
# attribute_match: <list or string>
# id: <integer>
# custom_control:
# - name: <string>
# option:
# - name: <string>
# user_input: <list or string>
# attribute_filter:
# - action: <value in [block, monitor, bypass]>
# attribute_match: <list or string>
# id: <integer>
# domain_control: <value in [disable, enable]>
# domain_control_domains: <list or string>
# log: <value in [disable, enable]>
# safe_search: <value in [disable, enable]>
# safe_search_control: <list or string>
# tenant_control: <value in [disable, enable]>
# tenant_control_tenants: <list or string>
# status: <value in [disable, enable]>
# advanced_tenant_control:
# - attribute:
# - input: <list or string>
# name: <string>
# name: <list or string>
Common return values are documented here, the following are the fields unique to this module:
Key | Description |
|---|---|
meta dictionary | The result of the request. Returned: always |
|
request_url string |
The full url requested. Returned: always Sample: |
|
response_code integer |
The status of api request. Returned: always Sample: |
|
response_data list / elements=string |
The api response. Returned: always |
|
response_message string |
The descriptive message of the api response. Returned: always Sample: |
|
system_information dictionary |
The information of the target system. Returned: always |
rc integer | The status the request. Returned: always Sample: |
version_check_warning list / elements=string | Warning if the parameters used in the playbook are not supported by the current FortiManager version. Returned: complex |
© 2012–2018 Michael DeHaan
© 2018–2025 Red Hat, Inc.
Licensed under the GNU General Public License version 3.
https://docs.ansible.com/ansible/latest/collections/fortinet/fortimanager/fmgr_casb_profile_saasapplication_module.html