zscaler.ziacloud.zia_workload_groups module – Manages ZIA workload groups
Note
This module is part of the zscaler.ziacloud collection (version 2.2.3).
It is not included in ansible-core.
To check whether it is installed, run ansible-galaxy collection list.
To install it, use: ansible-galaxy collection install zscaler.ziacloud.
You need further requirements to be able to use this module,
see Requirements for details.
To use it in a playbook, specify: zscaler.ziacloud.zia_workload_groups.
New in zscaler.ziacloud 1.0.0
Synopsis
Creates, updates, or deletes workload groups in Zscaler Internet Access.
Workload groups define a set of workloads based on tag expressions for use in ZIA policies.
Requirements
The below requirements are needed on the host that executes this module.
Zscaler SDK Python can be obtained from PyPI https://pypi.org/project/zscaler-sdk-python/
Parameters
Parameter |
Comments |
|---|---|
A string that contains the obfuscated API key. |
|
The client ID for OAuth2 authentication. |
|
The client secret for OAuth2 authentication. |
|
The Zscaler cloud name provisioned for your organization. Choices:
|
|
Additional information about the workload group. |
|
JSON structure defining the workload tag expression. Contains expression_containers with tag rules. |
|
List of expression containers defining tag matching rules. |
|
Logical operator for the expression. Choices:
|
|
Container for tags with matching criteria. |
|
Logical operator for tags within the container. Choices:
|
|
List of tag key/value pairs. |
|
Tag key identifier. |
|
Tag value. |
|
Type of tag (e.g. VPC, SUBNET, VM, ENI, ATTR). Choices:
|
|
The unique identifier for the workload group. Used to reference an existing group for update or delete. |
|
The name of the workload group. Required for create; use with |
|
A string that contains the password for the API admin. |
|
The private key for JWT-based OAuth2 authentication. |
|
A dict containing authentication credentials. |
|
Obfuscated API key. |
|
OAuth2 client ID. |
|
OAuth2 client secret. |
|
Zscaler cloud name. Choices:
|
|
Password for the API admin. |
|
Private key for OAuth2 JWT. |
|
Sandbox Cloud environment. |
|
Sandbox API Key. |
|
Whether to use the legacy Zscaler API client. Choices:
|
|
Email ID of the API admin. |
|
Vanity domain for OAuth2. |
|
The Sandbox cloud environment for API access. |
|
A string that contains the Sandbox API Key. |
|
Specifies the desired state of the resource. Choices:
|
|
Whether to use the legacy Zscaler API client. Choices:
|
|
A string that contains the email ID of the API admin. |
|
The vanity domain provisioned by Zscaler for OAuth2 flows. |
Notes
Note
Check mode is supported.
Use
idornameto reference an existing workload group for update/delete.
Examples
- name: Create a workload group with expression
zscaler.ziacloud.zia_workload_groups:
provider: '{{ provider }}'
name: "ATTR Workload Group"
description: "Match by attribute"
expression_json:
- expression_containers:
- tag_type: ATTR
operator: AND
tag_container:
- tags:
- key: GroupName
value: example
operator: AND
Return Values
Common return values are documented here, the following are the fields unique to this module:
Key |
Description |
|---|---|
The workload group resource record. Returned: on success |