---
title: Magic Transit
---

[Skip to content](#_top)

[API Reference](https://developers.cloudflare.com/api/terraform)

Copy Markdown

Open in **Claude**Open in **ChatGPT**Open in **Cursor**

---

**Copy Markdown****View as Markdown**

# Magic Transit

#### Magic TransitGRE Tunnels

#### resource cloudflare\_magic\_wan\_gre\_tunnel

##### required Expand Collapse

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20account_id>)

cloudflare\_gre\_endpoint: String

The IP address assigned to the Cloudflare side of the GRE tunnel.

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20cloudflare_gre_endpoint>)

customer\_gre\_endpoint: String

The IP address assigned to the customer side of the GRE tunnel.

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20customer_gre_endpoint>)

interface\_address: String

A 31-bit prefix (/31 in CIDR notation) supporting two hosts, one for each side of the tunnel. Select the subnet from the following private IP space: 10.0.0.0–10.255.255.255, 172.16.0.0–172.31.255.255, 192.168.0.0–192.168.255.255.

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20interface_address>)

name: String

The name of the tunnel. The name cannot contain spaces or special characters, must be 15 characters or less, and cannot share a name with another GRE tunnel.

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20name>)

##### optional Expand Collapse

<details>

<summary>

bgp?: Attributes

</summary>

customer\_asn: Int64

ASN used on the customer end of the BGP session

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20customer_asn">Link to this property</a>

export\_filter\_id?: String

ID of the BGP filter profile applied to routes advertised to the customer.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20export_filter_id">Link to this property</a>

extra\_prefixes?: List\[String]

Prefixes in this list will be advertised to the customer device, in addition to the routes in the Magic routing table.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20extra_prefixes">Link to this property</a>

import\_filter\_id?: String

ID of the BGP filter profile applied to routes received from the customer.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20import_filter_id">Link to this property</a>

md5\_key?: String

MD5 key to use for session authentication.

Note that *this is not a security measure*. MD5 is not a valid security mechanism, and the key is not treated as a secret value. This is *only* supported for preventing misconfiguration, not for defending against malicious attacks.

The MD5 key, if set, must be of non-zero length and consist only of the following types of character:

- ASCII alphanumerics: <code>[a-zA-Z0-9]</code>
- Special characters in the set <code>'!@#$%^&amp;*()+[]{}&lt;&gt;/.,;:_-~</code>= |\`

In other words, MD5 keys may contain any printable ASCII character aside from newline (0x0A), quotation mark (<code>"</code>), vertical tab (0x0B), carriage return (0x0D), tab (0x09), form feed (0x0C), and the question mark (<code>?</code>). Requests specifying an MD5 key with one or more of these disallowed characters will be rejected.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20md5_key">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp>)

description?: String

An optional description of the GRE tunnel.

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20description>)

interface\_address6?: String

A 127 bit IPV6 prefix from within the virtual\_subnet6 prefix space with the address being the first IP of the subnet and not same as the address of virtual\_subnet6. Eg if virtual\_subnet6 is 2606:54c1:7:0:a9fe:12d2::/127 , interface\_address6 could be 2606:54c1:7:0:a9fe:12d2:1:200/127

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20interface_address6>)

automatic\_return\_routing?: Bool

True if automatic stateful return routing should be enabled for a tunnel, false otherwise. Requires the `coupler_integration` account flag to be enabled; requests setting this to `true` without that flag will be rejected.

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20automatic_return_routing>)

mtu?: Int64

Maximum Transmission Unit (MTU) in bytes for the GRE tunnel. The minimum value is 576.

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20mtu>)

ttl?: Int64

Time To Live (TTL) in number of hops of the GRE tunnel.

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ttl>)

<details>

<summary>

health\_check?: Attributes

</summary>

direction?: String

The direction of the flow of the healthcheck. Either unidirectional, where the probe comes to you via the tunnel and the result comes back to Cloudflare via the open Internet, or bidirectional where both the probe and result come and go via the tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20direction">Link to this property</a>

enabled?: Bool

Determines whether to run healthchecks for a tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20enabled">Link to this property</a>

rate?: String

How frequent the health check is run. The default value is <code>mid</code>.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20rate">Link to this property</a>

<details>

<summary>

target?: Attributes

The destination address in a request type health check. After the healthcheck is decapsulated at the customer end of the tunnel, the ICMP echo will be forwarded to this address. This field defaults to <code>customer_gre_endpoint address</code>. This field is ignored for bidirectional healthchecks as the interface\_address (not assigned to the Cloudflare side of the tunnel) is used as the target. Must be in object form if the x-magic-new-hc-target header is set to true and string form if x-magic-new-hc-target is absent or set to false.

</summary>

effective: String

The effective health check target. If ‘saved’ is empty, then this field will be populated with the calculated default value on GET requests. Ignored in POST, PUT, and PATCH requests.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target%20%3E%20(attribute)%20effective">Link to this property</a>

saved?: String

The saved health check target. Setting the value to the empty string indicates that the calculated default value will be used.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target%20%3E%20(attribute)%20saved">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target">Link to this property</a>

type?: String

The type of healthcheck to run, reply or request. The default value is <code>reply</code>.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20type">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20health_check>)

##### computed Expand Collapse

id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20id>)

created\_on: Time

The date and time the tunnel was created.

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20created_on>)

modified: Bool

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified>)

modified\_on: Time

The date and time the tunnel was last modified.

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_on>)

<details>

<summary>

bgp\_status: Attributes

</summary>

state: String

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20state">Link to this property</a>

tcp\_established: Bool

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20tcp_established">Link to this property</a>

updated\_at: Time

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20updated_at">Link to this property</a>

bgp\_state: String

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20bgp_state">Link to this property</a>

cf\_speaker\_ip: String

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20cf_speaker_ip">Link to this property</a>

cf\_speaker\_port: Int64

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20cf_speaker_port">Link to this property</a>

customer\_speaker\_ip: String

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20customer_speaker_ip">Link to this property</a>

customer\_speaker\_port: Int64

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20customer_speaker_port">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp_status>)

<details>

<summary>

gre\_tunnel: Attributes

</summary>

id: String

Identifier

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20id">Link to this property</a>

cloudflare\_gre\_endpoint: String

The IP address assigned to the Cloudflare side of the GRE tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20cloudflare_gre_endpoint">Link to this property</a>

customer\_gre\_endpoint: String

The IP address assigned to the customer side of the GRE tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20customer_gre_endpoint">Link to this property</a>

interface\_address: String

A 31-bit prefix (/31 in CIDR notation) supporting two hosts, one for each side of the tunnel. Select the subnet from the following private IP space: 10.0.0.0–10.255.255.255, 172.16.0.0–172.31.255.255, 192.168.0.0–192.168.255.255.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20interface_address">Link to this property</a>

name: String

The name of the tunnel. The name cannot contain spaces or special characters, must be 15 characters or less, and cannot share a name with another GRE tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20name">Link to this property</a>

automatic\_return\_routing: Bool

True if automatic stateful return routing should be enabled for a tunnel, false otherwise. Requires the <code>coupler_integration</code> account flag to be enabled; requests setting this to <code>true</code> without that flag will be rejected.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20automatic_return_routing">Link to this property</a>

<details>

<summary>

bgp: Attributes

</summary>

customer\_asn: Int64

ASN used on the customer end of the BGP session

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20customer_asn">Link to this property</a>

export\_filter\_id: String

ID of the BGP filter profile applied to routes advertised to the customer.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20export_filter_id">Link to this property</a>

extra\_prefixes: List\[String]

Prefixes in this list will be advertised to the customer device, in addition to the routes in the Magic routing table.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20extra_prefixes">Link to this property</a>

import\_filter\_id: String

ID of the BGP filter profile applied to routes received from the customer.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20import_filter_id">Link to this property</a>

md5\_key: String

MD5 key to use for session authentication.

Note that *this is not a security measure*. MD5 is not a valid security mechanism, and the key is not treated as a secret value. This is *only* supported for preventing misconfiguration, not for defending against malicious attacks.

The MD5 key, if set, must be of non-zero length and consist only of the following types of character:

- ASCII alphanumerics: <code>[a-zA-Z0-9]</code>
- Special characters in the set <code>'!@#$%^&amp;*()+[]{}&lt;&gt;/.,;:_-~</code>= |\`

In other words, MD5 keys may contain any printable ASCII character aside from newline (0x0A), quotation mark (<code>"</code>), vertical tab (0x0B), carriage return (0x0D), tab (0x09), form feed (0x0C), and the question mark (<code>?</code>). Requests specifying an MD5 key with one or more of these disallowed characters will be rejected.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20md5_key">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp">Link to this property</a>

<details>

<summary>

bgp\_status: Attributes

</summary>

state: String

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20state">Link to this property</a>

tcp\_established: Bool

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20tcp_established">Link to this property</a>

updated\_at: Time

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20updated_at">Link to this property</a>

bgp\_state: String

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20bgp_state">Link to this property</a>

cf\_speaker\_ip: String

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20cf_speaker_ip">Link to this property</a>

cf\_speaker\_port: Int64

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20cf_speaker_port">Link to this property</a>

customer\_speaker\_ip: String

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20customer_speaker_ip">Link to this property</a>

customer\_speaker\_port: Int64

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20customer_speaker_port">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp_status">Link to this property</a>

created\_on: Time

The date and time the tunnel was created.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20created_on">Link to this property</a>

description: String

An optional description of the GRE tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20description">Link to this property</a>

<details>

<summary>

health\_check: Attributes

</summary>

direction: String

The direction of the flow of the healthcheck. Either unidirectional, where the probe comes to you via the tunnel and the result comes back to Cloudflare via the open Internet, or bidirectional where both the probe and result come and go via the tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20direction">Link to this property</a>

enabled: Bool

Determines whether to run healthchecks for a tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20enabled">Link to this property</a>

rate: String

How frequent the health check is run. The default value is <code>mid</code>.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20rate">Link to this property</a>

<details>

<summary>

target: Attributes

The destination address in a request type health check. After the healthcheck is decapsulated at the customer end of the tunnel, the ICMP echo will be forwarded to this address. This field defaults to <code>customer_gre_endpoint address</code>. This field is ignored for bidirectional healthchecks as the interface\_address (not assigned to the Cloudflare side of the tunnel) is used as the target. Must be in object form if the x-magic-new-hc-target header is set to true and string form if x-magic-new-hc-target is absent or set to false.

</summary>

effective: String

The effective health check target. If ‘saved’ is empty, then this field will be populated with the calculated default value on GET requests. Ignored in POST, PUT, and PATCH requests.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target%20%3E%20(attribute)%20effective">Link to this property</a>

saved: String

The saved health check target. Setting the value to the empty string indicates that the calculated default value will be used.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target%20%3E%20(attribute)%20saved">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target">Link to this property</a>

type: String

The type of healthcheck to run, reply or request. The default value is <code>reply</code>.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20type">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20health_check">Link to this property</a>

interface\_address6: String

A 127 bit IPV6 prefix from within the virtual\_subnet6 prefix space with the address being the first IP of the subnet and not same as the address of virtual\_subnet6. Eg if virtual\_subnet6 is 2606:54c1:7:0:a9fe:12d2::/127 , interface\_address6 could be 2606:54c1:7:0:a9fe:12d2:1:200/127

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20interface_address6">Link to this property</a>

modified\_on: Time

The date and time the tunnel was last modified.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20modified_on">Link to this property</a>

mtu: Int64

Maximum Transmission Unit (MTU) in bytes for the GRE tunnel. The minimum value is 576.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20mtu">Link to this property</a>

ttl: Int64

Time To Live (TTL) in number of hops of the GRE tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20ttl">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20gre_tunnel>)

<details>

<summary>

modified\_gre\_tunnel: Attributes

</summary>

id: String

Identifier

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20id">Link to this property</a>

cloudflare\_gre\_endpoint: String

The IP address assigned to the Cloudflare side of the GRE tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20cloudflare_gre_endpoint">Link to this property</a>

customer\_gre\_endpoint: String

The IP address assigned to the customer side of the GRE tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20customer_gre_endpoint">Link to this property</a>

interface\_address: String

A 31-bit prefix (/31 in CIDR notation) supporting two hosts, one for each side of the tunnel. Select the subnet from the following private IP space: 10.0.0.0–10.255.255.255, 172.16.0.0–172.31.255.255, 192.168.0.0–192.168.255.255.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20interface_address">Link to this property</a>

name: String

The name of the tunnel. The name cannot contain spaces or special characters, must be 15 characters or less, and cannot share a name with another GRE tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20name">Link to this property</a>

automatic\_return\_routing: Bool

True if automatic stateful return routing should be enabled for a tunnel, false otherwise. Requires the <code>coupler_integration</code> account flag to be enabled; requests setting this to <code>true</code> without that flag will be rejected.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20automatic_return_routing">Link to this property</a>

<details>

<summary>

bgp: Attributes

</summary>

customer\_asn: Int64

ASN used on the customer end of the BGP session

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20customer_asn">Link to this property</a>

export\_filter\_id: String

ID of the BGP filter profile applied to routes advertised to the customer.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20export_filter_id">Link to this property</a>

extra\_prefixes: List\[String]

Prefixes in this list will be advertised to the customer device, in addition to the routes in the Magic routing table.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20extra_prefixes">Link to this property</a>

import\_filter\_id: String

ID of the BGP filter profile applied to routes received from the customer.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20import_filter_id">Link to this property</a>

md5\_key: String

MD5 key to use for session authentication.

Note that *this is not a security measure*. MD5 is not a valid security mechanism, and the key is not treated as a secret value. This is *only* supported for preventing misconfiguration, not for defending against malicious attacks.

The MD5 key, if set, must be of non-zero length and consist only of the following types of character:

- ASCII alphanumerics: <code>[a-zA-Z0-9]</code>
- Special characters in the set <code>'!@#$%^&amp;*()+[]{}&lt;&gt;/.,;:_-~</code>= |\`

In other words, MD5 keys may contain any printable ASCII character aside from newline (0x0A), quotation mark (<code>"</code>), vertical tab (0x0B), carriage return (0x0D), tab (0x09), form feed (0x0C), and the question mark (<code>?</code>). Requests specifying an MD5 key with one or more of these disallowed characters will be rejected.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20md5_key">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20bgp">Link to this property</a>

<details>

<summary>

bgp\_status: Attributes

</summary>

state: String

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20state">Link to this property</a>

tcp\_established: Bool

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20tcp_established">Link to this property</a>

updated\_at: Time

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20updated_at">Link to this property</a>

bgp\_state: String

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20bgp_state">Link to this property</a>

cf\_speaker\_ip: String

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20cf_speaker_ip">Link to this property</a>

cf\_speaker\_port: Int64

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20cf_speaker_port">Link to this property</a>

customer\_speaker\_ip: String

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20customer_speaker_ip">Link to this property</a>

customer\_speaker\_port: Int64

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20customer_speaker_port">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20bgp_status">Link to this property</a>

created\_on: Time

The date and time the tunnel was created.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20created_on">Link to this property</a>

description: String

An optional description of the GRE tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20description">Link to this property</a>

<details>

<summary>

health\_check: Attributes

</summary>

direction: String

The direction of the flow of the healthcheck. Either unidirectional, where the probe comes to you via the tunnel and the result comes back to Cloudflare via the open Internet, or bidirectional where both the probe and result come and go via the tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20direction">Link to this property</a>

enabled: Bool

Determines whether to run healthchecks for a tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20enabled">Link to this property</a>

rate: String

How frequent the health check is run. The default value is <code>mid</code>.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20rate">Link to this property</a>

<details>

<summary>

target: Attributes

The destination address in a request type health check. After the healthcheck is decapsulated at the customer end of the tunnel, the ICMP echo will be forwarded to this address. This field defaults to <code>customer_gre_endpoint address</code>. This field is ignored for bidirectional healthchecks as the interface\_address (not assigned to the Cloudflare side of the tunnel) is used as the target. Must be in object form if the x-magic-new-hc-target header is set to true and string form if x-magic-new-hc-target is absent or set to false.

</summary>

effective: String

The effective health check target. If ‘saved’ is empty, then this field will be populated with the calculated default value on GET requests. Ignored in POST, PUT, and PATCH requests.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target%20%3E%20(attribute)%20effective">Link to this property</a>

saved: String

The saved health check target. Setting the value to the empty string indicates that the calculated default value will be used.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target%20%3E%20(attribute)%20saved">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target">Link to this property</a>

type: String

The type of healthcheck to run, reply or request. The default value is <code>reply</code>.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20type">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20health_check">Link to this property</a>

interface\_address6: String

A 127 bit IPV6 prefix from within the virtual\_subnet6 prefix space with the address being the first IP of the subnet and not same as the address of virtual\_subnet6. Eg if virtual\_subnet6 is 2606:54c1:7:0:a9fe:12d2::/127 , interface\_address6 could be 2606:54c1:7:0:a9fe:12d2:1:200/127

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20interface_address6">Link to this property</a>

modified\_on: Time

The date and time the tunnel was last modified.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20modified_on">Link to this property</a>

mtu: Int64

Maximum Transmission Unit (MTU) in bytes for the GRE tunnel. The minimum value is 576.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20mtu">Link to this property</a>

ttl: Int64

Time To Live (TTL) in number of hops of the GRE tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel%20%3E%20(attribute)%20ttl">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_gre_tunnel>)

### cloudflare\_magic\_wan\_gre\_tunnel

Terraform

HTTPTypeScriptPythonGoTerraform

```
resource "cloudflare_magic_wan_gre_tunnel" "example_magic_wan_gre_tunnel" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  cloudflare_gre_endpoint = "203.0.113.1"
  customer_gre_endpoint = "203.0.113.1"
  interface_address = "192.0.2.0/31"
  name = "GRE_1"
  automatic_return_routing = true
  bgp = {
    customer_asn = 0
    export_filter_id = "a1b2c3d4e5f647890a1b2c3d4e5f6789"
    extra_prefixes = ["string"]
    import_filter_id = "a1b2c3d4e5f647890a1b2c3d4e5f6789"
    md5_key = "md5_key"
  }
  description = "Tunnel for ISP X"
  health_check = {
    direction = "bidirectional"
    enabled = true
    rate = "low"
    target = {
      saved = "203.0.113.1"
    }
    type = "request"
  }
  interface_address6 = "2606:54c1:7:0:a9fe:12d2:1:200/127"
  mtu = 0
  ttl = 0
}
```

#### data cloudflare\_magic\_wan\_gre\_tunnel

##### required Expand Collapse

gre\_tunnel\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel_id>)

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20account_id>)

##### computed Expand Collapse

id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20id>)

<details>

<summary>

gre\_tunnel: Attributes

</summary>

id: String

Identifier

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20id">Link to this property</a>

cloudflare\_gre\_endpoint: String

The IP address assigned to the Cloudflare side of the GRE tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20cloudflare_gre_endpoint">Link to this property</a>

customer\_gre\_endpoint: String

The IP address assigned to the customer side of the GRE tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20customer_gre_endpoint">Link to this property</a>

interface\_address: String

A 31-bit prefix (/31 in CIDR notation) supporting two hosts, one for each side of the tunnel. Select the subnet from the following private IP space: 10.0.0.0–10.255.255.255, 172.16.0.0–172.31.255.255, 192.168.0.0–192.168.255.255.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20interface_address">Link to this property</a>

name: String

The name of the tunnel. The name cannot contain spaces or special characters, must be 15 characters or less, and cannot share a name with another GRE tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20name">Link to this property</a>

automatic\_return\_routing: Bool

True if automatic stateful return routing should be enabled for a tunnel, false otherwise. Requires the <code>coupler_integration</code> account flag to be enabled; requests setting this to <code>true</code> without that flag will be rejected.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20automatic_return_routing">Link to this property</a>

<details>

<summary>

bgp: Attributes

</summary>

customer\_asn: Int64

ASN used on the customer end of the BGP session

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20customer_asn">Link to this property</a>

export\_filter\_id: String

ID of the BGP filter profile applied to routes advertised to the customer.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20export_filter_id">Link to this property</a>

extra\_prefixes: List\[String]

Prefixes in this list will be advertised to the customer device, in addition to the routes in the Magic routing table.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20extra_prefixes">Link to this property</a>

import\_filter\_id: String

ID of the BGP filter profile applied to routes received from the customer.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20import_filter_id">Link to this property</a>

md5\_key: String

MD5 key to use for session authentication.

Note that *this is not a security measure*. MD5 is not a valid security mechanism, and the key is not treated as a secret value. This is *only* supported for preventing misconfiguration, not for defending against malicious attacks.

The MD5 key, if set, must be of non-zero length and consist only of the following types of character:

- ASCII alphanumerics: <code>[a-zA-Z0-9]</code>
- Special characters in the set <code>'!@#$%^&amp;*()+[]{}&lt;&gt;/.,;:_-~</code>= |\`

In other words, MD5 keys may contain any printable ASCII character aside from newline (0x0A), quotation mark (<code>"</code>), vertical tab (0x0B), carriage return (0x0D), tab (0x09), form feed (0x0C), and the question mark (<code>?</code>). Requests specifying an MD5 key with one or more of these disallowed characters will be rejected.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20md5_key">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp">Link to this property</a>

<details>

<summary>

bgp\_status: Attributes

</summary>

state: String

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20state">Link to this property</a>

tcp\_established: Bool

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20tcp_established">Link to this property</a>

updated\_at: Time

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20updated_at">Link to this property</a>

bgp\_state: String

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20bgp_state">Link to this property</a>

cf\_speaker\_ip: String

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20cf_speaker_ip">Link to this property</a>

cf\_speaker\_port: Int64

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20cf_speaker_port">Link to this property</a>

customer\_speaker\_ip: String

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20customer_speaker_ip">Link to this property</a>

customer\_speaker\_port: Int64

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20customer_speaker_port">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20bgp_status">Link to this property</a>

created\_on: Time

The date and time the tunnel was created.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20created_on">Link to this property</a>

description: String

An optional description of the GRE tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20description">Link to this property</a>

<details>

<summary>

health\_check: Attributes

</summary>

direction: String

The direction of the flow of the healthcheck. Either unidirectional, where the probe comes to you via the tunnel and the result comes back to Cloudflare via the open Internet, or bidirectional where both the probe and result come and go via the tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20direction">Link to this property</a>

enabled: Bool

Determines whether to run healthchecks for a tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20enabled">Link to this property</a>

rate: String

How frequent the health check is run. The default value is <code>mid</code>.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20rate">Link to this property</a>

<details>

<summary>

target: Attributes

The destination address in a request type health check. After the healthcheck is decapsulated at the customer end of the tunnel, the ICMP echo will be forwarded to this address. This field defaults to <code>customer_gre_endpoint address</code>. This field is ignored for bidirectional healthchecks as the interface\_address (not assigned to the Cloudflare side of the tunnel) is used as the target. Must be in object form if the x-magic-new-hc-target header is set to true and string form if x-magic-new-hc-target is absent or set to false.

</summary>

effective: String

The effective health check target. If ‘saved’ is empty, then this field will be populated with the calculated default value on GET requests. Ignored in POST, PUT, and PATCH requests.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target%20%3E%20(attribute)%20effective">Link to this property</a>

saved: String

The saved health check target. Setting the value to the empty string indicates that the calculated default value will be used.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target%20%3E%20(attribute)%20saved">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target">Link to this property</a>

type: String

The type of healthcheck to run, reply or request. The default value is <code>reply</code>.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20type">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20health_check">Link to this property</a>

interface\_address6: String

A 127 bit IPV6 prefix from within the virtual\_subnet6 prefix space with the address being the first IP of the subnet and not same as the address of virtual\_subnet6. Eg if virtual\_subnet6 is 2606:54c1:7:0:a9fe:12d2::/127 , interface\_address6 could be 2606:54c1:7:0:a9fe:12d2:1:200/127

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20interface_address6">Link to this property</a>

modified\_on: Time

The date and time the tunnel was last modified.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20modified_on">Link to this property</a>

mtu: Int64

Maximum Transmission Unit (MTU) in bytes for the GRE tunnel. The minimum value is 576.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20mtu">Link to this property</a>

ttl: Int64

Time To Live (TTL) in number of hops of the GRE tunnel.

<a href="#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel%20%3E%20(attribute)%20ttl">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.gre_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20gre_tunnel>)

### cloudflare\_magic\_wan\_gre\_tunnel

Terraform

HTTPTypeScriptPythonGoTerraform

```
data "cloudflare_magic_wan_gre_tunnel" "example_magic_wan_gre_tunnel" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  gre_tunnel_id = "023e105f4ecef8ad9ca31a8372d0c353"
}
```

#### Magic TransitIPSEC Tunnels

#### resource cloudflare\_magic\_wan\_ipsec\_tunnel

##### required Expand Collapse

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20account_id>)

cloudflare\_endpoint: String

The IP address assigned to the Cloudflare side of the IPsec tunnel.

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20cloudflare_endpoint>)

interface\_address: String

A 31-bit prefix (/31 in CIDR notation) supporting two hosts, one for each side of the tunnel. Select the subnet from the following private IP space: 10.0.0.0–10.255.255.255, 172.16.0.0–172.31.255.255, 192.168.0.0–192.168.255.255.

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20interface_address>)

name: String

The name of the IPsec tunnel. The name cannot share a name with other tunnels.

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20name>)

##### optional Expand Collapse

customer\_endpoint?: String

The IP address assigned to the customer side of the IPsec tunnel. Not required, but must be set for proactive traceroutes to work.

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20customer_endpoint>)

description?: String

An optional description forthe IPsec tunnel.

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20description>)

interface\_address6?: String

A 127 bit IPV6 prefix from within the virtual\_subnet6 prefix space with the address being the first IP of the subnet and not same as the address of virtual\_subnet6. Eg if virtual\_subnet6 is 2606:54c1:7:0:a9fe:12d2::/127 , interface\_address6 could be 2606:54c1:7:0:a9fe:12d2:1:200/127

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20interface_address6>)

psk?: String

A randomly generated or provided string for use in the IPsec tunnel.

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20psk>)

<details>

<summary>

bgp?: Attributes

</summary>

customer\_asn: Int64

ASN used on the customer end of the BGP session

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20customer_asn">Link to this property</a>

export\_filter\_id?: String

ID of the BGP filter profile applied to routes advertised to the customer.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20export_filter_id">Link to this property</a>

extra\_prefixes?: List\[String]

Prefixes in this list will be advertised to the customer device, in addition to the routes in the Magic routing table.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20extra_prefixes">Link to this property</a>

import\_filter\_id?: String

ID of the BGP filter profile applied to routes received from the customer.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20import_filter_id">Link to this property</a>

md5\_key?: String

MD5 key to use for session authentication.

Note that *this is not a security measure*. MD5 is not a valid security mechanism, and the key is not treated as a secret value. This is *only* supported for preventing misconfiguration, not for defending against malicious attacks.

The MD5 key, if set, must be of non-zero length and consist only of the following types of character:

- ASCII alphanumerics: <code>[a-zA-Z0-9]</code>
- Special characters in the set <code>'!@#$%^&amp;*()+[]{}&lt;&gt;/.,;:_-~</code>= |\`

In other words, MD5 keys may contain any printable ASCII character aside from newline (0x0A), quotation mark (<code>"</code>), vertical tab (0x0B), carriage return (0x0D), tab (0x09), form feed (0x0C), and the question mark (<code>?</code>). Requests specifying an MD5 key with one or more of these disallowed characters will be rejected.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20md5_key">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp>)

<details>

<summary>

custom\_remote\_identities?: Attributes

</summary>

fqdn\_id?: String

A custom IKE ID of type FQDN that may be used to identity the IPsec tunnel. The generated IKE IDs can still be used even if this custom value is specified.

Must be of the form <code>&lt;custom label&gt;.&lt;account ID&gt;.custom.ipsec.cloudflare.com</code>.

This custom ID does not need to be unique. Two IPsec tunnels may have the same custom fqdn\_id. However, if another IPsec tunnel has the same value then the two tunnels cannot have the same cloudflare\_endpoint.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20custom_remote_identities%20%3E%20(attribute)%20fqdn_id">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20custom_remote_identities>)

automatic\_return\_routing?: Bool

True if automatic stateful return routing should be enabled for a tunnel, false otherwise. Requires the `coupler_integration` account flag to be enabled; requests setting this to `true` without that flag will be rejected.

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20automatic_return_routing>)

replay\_protection?: Bool

If `true`, then IPsec replay protection will be supported in the Cloudflare-to-customer direction.

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20replay_protection>)

<details>

<summary>

health\_check?: Attributes

</summary>

direction?: String

The direction of the flow of the healthcheck. Either unidirectional, where the probe comes to you via the tunnel and the result comes back to Cloudflare via the open Internet, or bidirectional where both the probe and result come and go via the tunnel.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20direction">Link to this property</a>

enabled?: Bool

Determines whether to run healthchecks for a tunnel.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20enabled">Link to this property</a>

rate?: String

How frequent the health check is run. The default value is <code>mid</code>.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20rate">Link to this property</a>

<details>

<summary>

target?: Attributes

The destination address in a request type health check. After the healthcheck is decapsulated at the customer end of the tunnel, the ICMP echo will be forwarded to this address. This field defaults to <code>customer_gre_endpoint address</code>. This field is ignored for bidirectional healthchecks as the interface\_address (not assigned to the Cloudflare side of the tunnel) is used as the target. Must be in object form if the x-magic-new-hc-target header is set to true and string form if x-magic-new-hc-target is absent or set to false.

</summary>

effective: String

The effective health check target. If ‘saved’ is empty, then this field will be populated with the calculated default value on GET requests. Ignored in POST, PUT, and PATCH requests.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target%20%3E%20(attribute)%20effective">Link to this property</a>

saved?: String

The saved health check target. Setting the value to the empty string indicates that the calculated default value will be used.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target%20%3E%20(attribute)%20saved">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target">Link to this property</a>

type?: String

The type of healthcheck to run, reply or request. The default value is <code>reply</code>.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20type">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20health_check>)

##### computed Expand Collapse

id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20id>)

allow\_null\_cipher: Bool

When `true`, the tunnel can use a null-cipher (`ENCR_NULL`) in the ESP tunnel (Phase 2).

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20allow_null_cipher>)

created\_on: Time

The date and time the tunnel was created.

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20created_on>)

modified: Bool

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified>)

modified\_on: Time

The date and time the tunnel was last modified.

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_on>)

<details>

<summary>

bgp\_status: Attributes

</summary>

state: String

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20state">Link to this property</a>

tcp\_established: Bool

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20tcp_established">Link to this property</a>

updated\_at: Time

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20updated_at">Link to this property</a>

bgp\_state: String

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20bgp_state">Link to this property</a>

cf\_speaker\_ip: String

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20cf_speaker_ip">Link to this property</a>

cf\_speaker\_port: Int64

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20cf_speaker_port">Link to this property</a>

customer\_speaker\_ip: String

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20customer_speaker_ip">Link to this property</a>

customer\_speaker\_port: Int64

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20customer_speaker_port">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bgp_status>)

<details>

<summary>

ipsec\_tunnel: Attributes

</summary>

id: String

Identifier

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20id">Link to this property</a>

cloudflare\_endpoint: String

The IP address assigned to the Cloudflare side of the IPsec tunnel.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20cloudflare_endpoint">Link to this property</a>

interface\_address: String

A 31-bit prefix (/31 in CIDR notation) supporting two hosts, one for each side of the tunnel. Select the subnet from the following private IP space: 10.0.0.0–10.255.255.255, 172.16.0.0–172.31.255.255, 192.168.0.0–192.168.255.255.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20interface_address">Link to this property</a>

name: String

The name of the IPsec tunnel. The name cannot share a name with other tunnels.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20name">Link to this property</a>

allow\_null\_cipher: Bool

When <code>true</code>, the tunnel can use a null-cipher (<code>ENCR_NULL</code>) in the ESP tunnel (Phase 2).

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20allow_null_cipher">Link to this property</a>

automatic\_return\_routing: Bool

True if automatic stateful return routing should be enabled for a tunnel, false otherwise. Requires the <code>coupler_integration</code> account flag to be enabled; requests setting this to <code>true</code> without that flag will be rejected.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20automatic_return_routing">Link to this property</a>

<details>

<summary>

bgp: Attributes

</summary>

customer\_asn: Int64

ASN used on the customer end of the BGP session

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20customer_asn">Link to this property</a>

export\_filter\_id: String

ID of the BGP filter profile applied to routes advertised to the customer.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20export_filter_id">Link to this property</a>

extra\_prefixes: List\[String]

Prefixes in this list will be advertised to the customer device, in addition to the routes in the Magic routing table.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20extra_prefixes">Link to this property</a>

import\_filter\_id: String

ID of the BGP filter profile applied to routes received from the customer.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20import_filter_id">Link to this property</a>

md5\_key: String

MD5 key to use for session authentication.

Note that *this is not a security measure*. MD5 is not a valid security mechanism, and the key is not treated as a secret value. This is *only* supported for preventing misconfiguration, not for defending against malicious attacks.

The MD5 key, if set, must be of non-zero length and consist only of the following types of character:

- ASCII alphanumerics: <code>[a-zA-Z0-9]</code>
- Special characters in the set <code>'!@#$%^&amp;*()+[]{}&lt;&gt;/.,;:_-~</code>= |\`

In other words, MD5 keys may contain any printable ASCII character aside from newline (0x0A), quotation mark (<code>"</code>), vertical tab (0x0B), carriage return (0x0D), tab (0x09), form feed (0x0C), and the question mark (<code>?</code>). Requests specifying an MD5 key with one or more of these disallowed characters will be rejected.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20md5_key">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp">Link to this property</a>

<details>

<summary>

bgp\_status: Attributes

</summary>

state: String

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20state">Link to this property</a>

tcp\_established: Bool

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20tcp_established">Link to this property</a>

updated\_at: Time

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20updated_at">Link to this property</a>

bgp\_state: String

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20bgp_state">Link to this property</a>

cf\_speaker\_ip: String

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20cf_speaker_ip">Link to this property</a>

cf\_speaker\_port: Int64

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20cf_speaker_port">Link to this property</a>

customer\_speaker\_ip: String

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20customer_speaker_ip">Link to this property</a>

customer\_speaker\_port: Int64

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20customer_speaker_port">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp_status">Link to this property</a>

created\_on: Time

The date and time the tunnel was created.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20created_on">Link to this property</a>

<details>

<summary>

custom\_remote\_identities: Attributes

</summary>

fqdn\_id: String

A custom IKE ID of type FQDN that may be used to identity the IPsec tunnel. The generated IKE IDs can still be used even if this custom value is specified.

Must be of the form <code>&lt;custom label&gt;.&lt;account ID&gt;.custom.ipsec.cloudflare.com</code>.

This custom ID does not need to be unique. Two IPsec tunnels may have the same custom fqdn\_id. However, if another IPsec tunnel has the same value then the two tunnels cannot have the same cloudflare\_endpoint.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20custom_remote_identities%20%3E%20(attribute)%20fqdn_id">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20custom_remote_identities">Link to this property</a>

customer\_endpoint: String

The IP address assigned to the customer side of the IPsec tunnel. Not required, but must be set for proactive traceroutes to work.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20customer_endpoint">Link to this property</a>

description: String

An optional description forthe IPsec tunnel.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20description">Link to this property</a>

<details>

<summary>

health\_check: Attributes

</summary>

direction: String

The direction of the flow of the healthcheck. Either unidirectional, where the probe comes to you via the tunnel and the result comes back to Cloudflare via the open Internet, or bidirectional where both the probe and result come and go via the tunnel.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20direction">Link to this property</a>

enabled: Bool

Determines whether to run healthchecks for a tunnel.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20enabled">Link to this property</a>

rate: String

How frequent the health check is run. The default value is <code>mid</code>.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20rate">Link to this property</a>

<details>

<summary>

target: Attributes

The destination address in a request type health check. After the healthcheck is decapsulated at the customer end of the tunnel, the ICMP echo will be forwarded to this address. This field defaults to <code>customer_gre_endpoint address</code>. This field is ignored for bidirectional healthchecks as the interface\_address (not assigned to the Cloudflare side of the tunnel) is used as the target. Must be in object form if the x-magic-new-hc-target header is set to true and string form if x-magic-new-hc-target is absent or set to false.

</summary>

effective: String

The effective health check target. If ‘saved’ is empty, then this field will be populated with the calculated default value on GET requests. Ignored in POST, PUT, and PATCH requests.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target%20%3E%20(attribute)%20effective">Link to this property</a>

saved: String

The saved health check target. Setting the value to the empty string indicates that the calculated default value will be used.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target%20%3E%20(attribute)%20saved">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target">Link to this property</a>

type: String

The type of healthcheck to run, reply or request. The default value is <code>reply</code>.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20type">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20health_check">Link to this property</a>

interface\_address6: String

A 127 bit IPV6 prefix from within the virtual\_subnet6 prefix space with the address being the first IP of the subnet and not same as the address of virtual\_subnet6. Eg if virtual\_subnet6 is 2606:54c1:7:0:a9fe:12d2::/127 , interface\_address6 could be 2606:54c1:7:0:a9fe:12d2:1:200/127

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20interface_address6">Link to this property</a>

modified\_on: Time

The date and time the tunnel was last modified.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20modified_on">Link to this property</a>

<details>

<summary>

psk\_metadata: Attributes

The PSK metadata that includes when the PSK was generated.

</summary>

last\_generated\_on: Time

The date and time the tunnel was last modified.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20psk_metadata%20%3E%20(attribute)%20last_generated_on">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20psk_metadata">Link to this property</a>

replay\_protection: Bool

If <code>true</code>, then IPsec replay protection will be supported in the Cloudflare-to-customer direction.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20replay_protection">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ipsec_tunnel>)

<details>

<summary>

modified\_ipsec\_tunnel: Attributes

</summary>

id: String

Identifier

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20id">Link to this property</a>

cloudflare\_endpoint: String

The IP address assigned to the Cloudflare side of the IPsec tunnel.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20cloudflare_endpoint">Link to this property</a>

interface\_address: String

A 31-bit prefix (/31 in CIDR notation) supporting two hosts, one for each side of the tunnel. Select the subnet from the following private IP space: 10.0.0.0–10.255.255.255, 172.16.0.0–172.31.255.255, 192.168.0.0–192.168.255.255.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20interface_address">Link to this property</a>

name: String

The name of the IPsec tunnel. The name cannot share a name with other tunnels.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20name">Link to this property</a>

allow\_null\_cipher: Bool

When <code>true</code>, the tunnel can use a null-cipher (<code>ENCR_NULL</code>) in the ESP tunnel (Phase 2).

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20allow_null_cipher">Link to this property</a>

automatic\_return\_routing: Bool

True if automatic stateful return routing should be enabled for a tunnel, false otherwise. Requires the <code>coupler_integration</code> account flag to be enabled; requests setting this to <code>true</code> without that flag will be rejected.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20automatic_return_routing">Link to this property</a>

<details>

<summary>

bgp: Attributes

</summary>

customer\_asn: Int64

ASN used on the customer end of the BGP session

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20customer_asn">Link to this property</a>

export\_filter\_id: String

ID of the BGP filter profile applied to routes advertised to the customer.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20export_filter_id">Link to this property</a>

extra\_prefixes: List\[String]

Prefixes in this list will be advertised to the customer device, in addition to the routes in the Magic routing table.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20extra_prefixes">Link to this property</a>

import\_filter\_id: String

ID of the BGP filter profile applied to routes received from the customer.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20import_filter_id">Link to this property</a>

md5\_key: String

MD5 key to use for session authentication.

Note that *this is not a security measure*. MD5 is not a valid security mechanism, and the key is not treated as a secret value. This is *only* supported for preventing misconfiguration, not for defending against malicious attacks.

The MD5 key, if set, must be of non-zero length and consist only of the following types of character:

- ASCII alphanumerics: <code>[a-zA-Z0-9]</code>
- Special characters in the set <code>'!@#$%^&amp;*()+[]{}&lt;&gt;/.,;:_-~</code>= |\`

In other words, MD5 keys may contain any printable ASCII character aside from newline (0x0A), quotation mark (<code>"</code>), vertical tab (0x0B), carriage return (0x0D), tab (0x09), form feed (0x0C), and the question mark (<code>?</code>). Requests specifying an MD5 key with one or more of these disallowed characters will be rejected.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20md5_key">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20bgp">Link to this property</a>

<details>

<summary>

bgp\_status: Attributes

</summary>

state: String

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20state">Link to this property</a>

tcp\_established: Bool

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20tcp_established">Link to this property</a>

updated\_at: Time

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20updated_at">Link to this property</a>

bgp\_state: String

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20bgp_state">Link to this property</a>

cf\_speaker\_ip: String

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20cf_speaker_ip">Link to this property</a>

cf\_speaker\_port: Int64

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20cf_speaker_port">Link to this property</a>

customer\_speaker\_ip: String

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20customer_speaker_ip">Link to this property</a>

customer\_speaker\_port: Int64

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20customer_speaker_port">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20bgp_status">Link to this property</a>

created\_on: Time

The date and time the tunnel was created.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20created_on">Link to this property</a>

<details>

<summary>

custom\_remote\_identities: Attributes

</summary>

fqdn\_id: String

A custom IKE ID of type FQDN that may be used to identity the IPsec tunnel. The generated IKE IDs can still be used even if this custom value is specified.

Must be of the form <code>&lt;custom label&gt;.&lt;account ID&gt;.custom.ipsec.cloudflare.com</code>.

This custom ID does not need to be unique. Two IPsec tunnels may have the same custom fqdn\_id. However, if another IPsec tunnel has the same value then the two tunnels cannot have the same cloudflare\_endpoint.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20custom_remote_identities%20%3E%20(attribute)%20fqdn_id">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20custom_remote_identities">Link to this property</a>

customer\_endpoint: String

The IP address assigned to the customer side of the IPsec tunnel. Not required, but must be set for proactive traceroutes to work.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20customer_endpoint">Link to this property</a>

description: String

An optional description forthe IPsec tunnel.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20description">Link to this property</a>

<details>

<summary>

health\_check: Attributes

</summary>

direction: String

The direction of the flow of the healthcheck. Either unidirectional, where the probe comes to you via the tunnel and the result comes back to Cloudflare via the open Internet, or bidirectional where both the probe and result come and go via the tunnel.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20direction">Link to this property</a>

enabled: Bool

Determines whether to run healthchecks for a tunnel.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20enabled">Link to this property</a>

rate: String

How frequent the health check is run. The default value is <code>mid</code>.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20rate">Link to this property</a>

<details>

<summary>

target: Attributes

The destination address in a request type health check. After the healthcheck is decapsulated at the customer end of the tunnel, the ICMP echo will be forwarded to this address. This field defaults to <code>customer_gre_endpoint address</code>. This field is ignored for bidirectional healthchecks as the interface\_address (not assigned to the Cloudflare side of the tunnel) is used as the target. Must be in object form if the x-magic-new-hc-target header is set to true and string form if x-magic-new-hc-target is absent or set to false.

</summary>

effective: String

The effective health check target. If ‘saved’ is empty, then this field will be populated with the calculated default value on GET requests. Ignored in POST, PUT, and PATCH requests.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target%20%3E%20(attribute)%20effective">Link to this property</a>

saved: String

The saved health check target. Setting the value to the empty string indicates that the calculated default value will be used.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target%20%3E%20(attribute)%20saved">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target">Link to this property</a>

type: String

The type of healthcheck to run, reply or request. The default value is <code>reply</code>.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20type">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20health_check">Link to this property</a>

interface\_address6: String

A 127 bit IPV6 prefix from within the virtual\_subnet6 prefix space with the address being the first IP of the subnet and not same as the address of virtual\_subnet6. Eg if virtual\_subnet6 is 2606:54c1:7:0:a9fe:12d2::/127 , interface\_address6 could be 2606:54c1:7:0:a9fe:12d2:1:200/127

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20interface_address6">Link to this property</a>

modified\_on: Time

The date and time the tunnel was last modified.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20modified_on">Link to this property</a>

<details>

<summary>

psk\_metadata: Attributes

The PSK metadata that includes when the PSK was generated.

</summary>

last\_generated\_on: Time

The date and time the tunnel was last modified.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20psk_metadata%20%3E%20(attribute)%20last_generated_on">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20psk_metadata">Link to this property</a>

replay\_protection: Bool

If <code>true</code>, then IPsec replay protection will be supported in the Cloudflare-to-customer direction.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel%20%3E%20(attribute)%20replay_protection">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_ipsec_tunnel>)

<details>

<summary>

psk\_metadata: Attributes

The PSK metadata that includes when the PSK was generated.

</summary>

last\_generated\_on: Time

The date and time the tunnel was last modified.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20psk_metadata%20%3E%20(attribute)%20last_generated_on">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20psk_metadata>)

### cloudflare\_magic\_wan\_ipsec\_tunnel

Terraform

HTTPTypeScriptPythonGoTerraform

```
resource "cloudflare_magic_wan_ipsec_tunnel" "example_magic_wan_ipsec_tunnel" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  cloudflare_endpoint = "203.0.113.1"
  interface_address = "192.0.2.0/31"
  name = "IPsec_1"
  automatic_return_routing = true
  bgp = {
    customer_asn = 0
    export_filter_id = "a1b2c3d4e5f647890a1b2c3d4e5f6789"
    extra_prefixes = ["string"]
    import_filter_id = "a1b2c3d4e5f647890a1b2c3d4e5f6789"
    md5_key = "md5_key"
  }
  custom_remote_identities = {
    fqdn_id = "fqdn_id"
  }
  customer_endpoint = "203.0.113.1"
  description = "Tunnel for ISP X"
  health_check = {
    direction = "bidirectional"
    enabled = true
    rate = "low"
    target = {
      saved = "203.0.113.1"
    }
    type = "request"
  }
  interface_address6 = "2606:54c1:7:0:a9fe:12d2:1:200/127"
  psk = "O3bwKSjnaoCxDoUxjcq4Rk8ZKkezQUiy"
  replay_protection = false
}
```

#### data cloudflare\_magic\_wan\_ipsec\_tunnel

##### required Expand Collapse

ipsec\_tunnel\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel_id>)

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20account_id>)

##### computed Expand Collapse

id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20id>)

<details>

<summary>

ipsec\_tunnel: Attributes

</summary>

id: String

Identifier

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20id">Link to this property</a>

cloudflare\_endpoint: String

The IP address assigned to the Cloudflare side of the IPsec tunnel.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20cloudflare_endpoint">Link to this property</a>

interface\_address: String

A 31-bit prefix (/31 in CIDR notation) supporting two hosts, one for each side of the tunnel. Select the subnet from the following private IP space: 10.0.0.0–10.255.255.255, 172.16.0.0–172.31.255.255, 192.168.0.0–192.168.255.255.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20interface_address">Link to this property</a>

name: String

The name of the IPsec tunnel. The name cannot share a name with other tunnels.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20name">Link to this property</a>

allow\_null\_cipher: Bool

When <code>true</code>, the tunnel can use a null-cipher (<code>ENCR_NULL</code>) in the ESP tunnel (Phase 2).

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20allow_null_cipher">Link to this property</a>

automatic\_return\_routing: Bool

True if automatic stateful return routing should be enabled for a tunnel, false otherwise. Requires the <code>coupler_integration</code> account flag to be enabled; requests setting this to <code>true</code> without that flag will be rejected.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20automatic_return_routing">Link to this property</a>

<details>

<summary>

bgp: Attributes

</summary>

customer\_asn: Int64

ASN used on the customer end of the BGP session

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20customer_asn">Link to this property</a>

export\_filter\_id: String

ID of the BGP filter profile applied to routes advertised to the customer.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20export_filter_id">Link to this property</a>

extra\_prefixes: List\[String]

Prefixes in this list will be advertised to the customer device, in addition to the routes in the Magic routing table.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20extra_prefixes">Link to this property</a>

import\_filter\_id: String

ID of the BGP filter profile applied to routes received from the customer.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20import_filter_id">Link to this property</a>

md5\_key: String

MD5 key to use for session authentication.

Note that *this is not a security measure*. MD5 is not a valid security mechanism, and the key is not treated as a secret value. This is *only* supported for preventing misconfiguration, not for defending against malicious attacks.

The MD5 key, if set, must be of non-zero length and consist only of the following types of character:

- ASCII alphanumerics: <code>[a-zA-Z0-9]</code>
- Special characters in the set <code>'!@#$%^&amp;*()+[]{}&lt;&gt;/.,;:_-~</code>= |\`

In other words, MD5 keys may contain any printable ASCII character aside from newline (0x0A), quotation mark (<code>"</code>), vertical tab (0x0B), carriage return (0x0D), tab (0x09), form feed (0x0C), and the question mark (<code>?</code>). Requests specifying an MD5 key with one or more of these disallowed characters will be rejected.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp%20%3E%20(attribute)%20md5_key">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp">Link to this property</a>

<details>

<summary>

bgp\_status: Attributes

</summary>

state: String

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20state">Link to this property</a>

tcp\_established: Bool

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20tcp_established">Link to this property</a>

updated\_at: Time

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20updated_at">Link to this property</a>

bgp\_state: String

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20bgp_state">Link to this property</a>

cf\_speaker\_ip: String

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20cf_speaker_ip">Link to this property</a>

cf\_speaker\_port: Int64

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20cf_speaker_port">Link to this property</a>

customer\_speaker\_ip: String

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20customer_speaker_ip">Link to this property</a>

customer\_speaker\_port: Int64

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp_status%20%3E%20(attribute)%20customer_speaker_port">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20bgp_status">Link to this property</a>

created\_on: Time

The date and time the tunnel was created.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20created_on">Link to this property</a>

<details>

<summary>

custom\_remote\_identities: Attributes

</summary>

fqdn\_id: String

A custom IKE ID of type FQDN that may be used to identity the IPsec tunnel. The generated IKE IDs can still be used even if this custom value is specified.

Must be of the form <code>&lt;custom label&gt;.&lt;account ID&gt;.custom.ipsec.cloudflare.com</code>.

This custom ID does not need to be unique. Two IPsec tunnels may have the same custom fqdn\_id. However, if another IPsec tunnel has the same value then the two tunnels cannot have the same cloudflare\_endpoint.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20custom_remote_identities%20%3E%20(attribute)%20fqdn_id">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20custom_remote_identities">Link to this property</a>

customer\_endpoint: String

The IP address assigned to the customer side of the IPsec tunnel. Not required, but must be set for proactive traceroutes to work.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20customer_endpoint">Link to this property</a>

description: String

An optional description forthe IPsec tunnel.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20description">Link to this property</a>

<details>

<summary>

health\_check: Attributes

</summary>

direction: String

The direction of the flow of the healthcheck. Either unidirectional, where the probe comes to you via the tunnel and the result comes back to Cloudflare via the open Internet, or bidirectional where both the probe and result come and go via the tunnel.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20direction">Link to this property</a>

enabled: Bool

Determines whether to run healthchecks for a tunnel.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20enabled">Link to this property</a>

rate: String

How frequent the health check is run. The default value is <code>mid</code>.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20rate">Link to this property</a>

<details>

<summary>

target: Attributes

The destination address in a request type health check. After the healthcheck is decapsulated at the customer end of the tunnel, the ICMP echo will be forwarded to this address. This field defaults to <code>customer_gre_endpoint address</code>. This field is ignored for bidirectional healthchecks as the interface\_address (not assigned to the Cloudflare side of the tunnel) is used as the target. Must be in object form if the x-magic-new-hc-target header is set to true and string form if x-magic-new-hc-target is absent or set to false.

</summary>

effective: String

The effective health check target. If ‘saved’ is empty, then this field will be populated with the calculated default value on GET requests. Ignored in POST, PUT, and PATCH requests.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target%20%3E%20(attribute)%20effective">Link to this property</a>

saved: String

The saved health check target. Setting the value to the empty string indicates that the calculated default value will be used.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target%20%3E%20(attribute)%20saved">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20target">Link to this property</a>

type: String

The type of healthcheck to run, reply or request. The default value is <code>reply</code>.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20health_check%20%3E%20(attribute)%20type">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20health_check">Link to this property</a>

interface\_address6: String

A 127 bit IPV6 prefix from within the virtual\_subnet6 prefix space with the address being the first IP of the subnet and not same as the address of virtual\_subnet6. Eg if virtual\_subnet6 is 2606:54c1:7:0:a9fe:12d2::/127 , interface\_address6 could be 2606:54c1:7:0:a9fe:12d2:1:200/127

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20interface_address6">Link to this property</a>

modified\_on: Time

The date and time the tunnel was last modified.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20modified_on">Link to this property</a>

<details>

<summary>

psk\_metadata: Attributes

The PSK metadata that includes when the PSK was generated.

</summary>

last\_generated\_on: Time

The date and time the tunnel was last modified.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20psk_metadata%20%3E%20(attribute)%20last_generated_on">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20psk_metadata">Link to this property</a>

replay\_protection: Bool

If <code>true</code>, then IPsec replay protection will be supported in the Cloudflare-to-customer direction.

<a href="#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel%20%3E%20(attribute)%20replay_protection">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.ipsec_tunnels%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ipsec_tunnel>)

### cloudflare\_magic\_wan\_ipsec\_tunnel

Terraform

HTTPTypeScriptPythonGoTerraform

```
data "cloudflare_magic_wan_ipsec_tunnel" "example_magic_wan_ipsec_tunnel" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  ipsec_tunnel_id = "023e105f4ecef8ad9ca31a8372d0c353"
}
```

#### Magic TransitRoutes

#### resource cloudflare\_magic\_wan\_static\_route

##### required Expand Collapse

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20account_id>)

nexthop: String

The next-hop IP Address for the static route.

[Link to this property](<#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20nexthop>)

prefix: String

IP Prefix in Classless Inter-Domain Routing format.

[Link to this property](<#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20prefix>)

priority: Int64

Priority of the static route.

[Link to this property](<#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20priority>)

##### optional Expand Collapse

description?: String

An optional human provided description of the static route.

[Link to this property](<#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20description>)

weight?: Int64

Optional weight of the ECMP scope - if provided.

[Link to this property](<#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20weight>)

<details>

<summary>

scope?: Attributes

Used only for ECMP routes.

</summary>

colo\_names?: List\[String]

List of colo names for the ECMP scope.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20scope%20%3E%20(attribute)%20colo_names">Link to this property</a>

colo\_regions?: List\[String]

List of colo regions for the ECMP scope.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20scope%20%3E%20(attribute)%20colo_regions">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20scope>)

##### computed Expand Collapse

id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20id>)

created\_on: Time

When the route was created.

[Link to this property](<#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20created_on>)

modified: Bool

[Link to this property](<#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified>)

modified\_on: Time

When the route was last modified.

[Link to this property](<#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_on>)

<details>

<summary>

modified\_route: Attributes

</summary>

id: String

Identifier

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_route%20%3E%20(attribute)%20id">Link to this property</a>

nexthop: String

The next-hop IP Address for the static route.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_route%20%3E%20(attribute)%20nexthop">Link to this property</a>

prefix: String

IP Prefix in Classless Inter-Domain Routing format.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_route%20%3E%20(attribute)%20prefix">Link to this property</a>

priority: Int64

Priority of the static route.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_route%20%3E%20(attribute)%20priority">Link to this property</a>

created\_on: Time

When the route was created.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_route%20%3E%20(attribute)%20created_on">Link to this property</a>

description: String

An optional human provided description of the static route.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_route%20%3E%20(attribute)%20description">Link to this property</a>

modified\_on: Time

When the route was last modified.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_route%20%3E%20(attribute)%20modified_on">Link to this property</a>

<details>

<summary>

scope: Attributes

Used only for ECMP routes.

</summary>

colo\_names: List\[String]

List of colo names for the ECMP scope.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_route%20%3E%20(attribute)%20scope%20%3E%20(attribute)%20colo_names">Link to this property</a>

colo\_regions: List\[String]

List of colo regions for the ECMP scope.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_route%20%3E%20(attribute)%20scope%20%3E%20(attribute)%20colo_regions">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_route%20%3E%20(attribute)%20scope">Link to this property</a>

weight: Int64

Optional weight of the ECMP scope - if provided.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_route%20%3E%20(attribute)%20weight">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_route>)

<details>

<summary>

route: Attributes

</summary>

id: String

Identifier

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20id">Link to this property</a>

nexthop: String

The next-hop IP Address for the static route.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20nexthop">Link to this property</a>

prefix: String

IP Prefix in Classless Inter-Domain Routing format.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20prefix">Link to this property</a>

priority: Int64

Priority of the static route.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20priority">Link to this property</a>

created\_on: Time

When the route was created.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20created_on">Link to this property</a>

description: String

An optional human provided description of the static route.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20description">Link to this property</a>

modified\_on: Time

When the route was last modified.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20modified_on">Link to this property</a>

<details>

<summary>

scope: Attributes

Used only for ECMP routes.

</summary>

colo\_names: List\[String]

List of colo names for the ECMP scope.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20scope%20%3E%20(attribute)%20colo_names">Link to this property</a>

colo\_regions: List\[String]

List of colo regions for the ECMP scope.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20scope%20%3E%20(attribute)%20colo_regions">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20scope">Link to this property</a>

weight: Int64

Optional weight of the ECMP scope - if provided.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20weight">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.routes%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20route>)

### cloudflare\_magic\_wan\_static\_route

Terraform

HTTPTypeScriptPythonGoTerraform

```
resource "cloudflare_magic_wan_static_route" "example_magic_wan_static_route" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  nexthop = "203.0.113.1"
  prefix = "192.0.2.0/24"
  priority = 0
  description = "New route for new prefix 203.0.113.1"
  scope = {
    colo_names = ["den01"]
    colo_regions = ["APAC"]
  }
  weight = 0
}
```

#### data cloudflare\_magic\_wan\_static\_route

##### required Expand Collapse

route\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.routes%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20route_id>)

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.routes%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20account_id>)

##### computed Expand Collapse

id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.routes%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20id>)

<details>

<summary>

route: Attributes

</summary>

id: String

Identifier

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20id">Link to this property</a>

nexthop: String

The next-hop IP Address for the static route.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20nexthop">Link to this property</a>

prefix: String

IP Prefix in Classless Inter-Domain Routing format.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20prefix">Link to this property</a>

priority: Int64

Priority of the static route.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20priority">Link to this property</a>

created\_on: Time

When the route was created.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20created_on">Link to this property</a>

description: String

An optional human provided description of the static route.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20description">Link to this property</a>

modified\_on: Time

When the route was last modified.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20modified_on">Link to this property</a>

<details>

<summary>

scope: Attributes

Used only for ECMP routes.

</summary>

colo\_names: List\[String]

List of colo names for the ECMP scope.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20scope%20%3E%20(attribute)%20colo_names">Link to this property</a>

colo\_regions: List\[String]

List of colo regions for the ECMP scope.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20scope%20%3E%20(attribute)%20colo_regions">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20scope">Link to this property</a>

weight: Int64

Optional weight of the ECMP scope - if provided.

<a href="#(resource)%20magic_transit.routes%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20route%20%3E%20(attribute)%20weight">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.routes%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20route>)

### cloudflare\_magic\_wan\_static\_route

Terraform

HTTPTypeScriptPythonGoTerraform

```
data "cloudflare_magic_wan_static_route" "example_magic_wan_static_route" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  route_id = "023e105f4ecef8ad9ca31a8372d0c353"
}
```

#### Magic TransitBGP Filter Profiles

#### resource cloudflare\_magic\_wan\_bgp\_filter\_profile

##### required Expand Collapse

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20account_id>)

match\_action: String

Action to take when a route matches one of the targets in this profile

[Link to this property](<#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20match_action>)

name: String

Friendly name for the filter profile

[Link to this property](<#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20name>)

targets: List\[String]

List of CIDR prefixes. Each entry may carry an optional suffix that specifies which prefix lengths to match relative to the prefix length N: ‘{X,Y}’ matches prefix lengths in the inclusive range \[X, Y] where N <= X <= Y <= max (max is 32 for IPv4, 128 for IPv6), ‘{X}’ matches exactly length X (equivalent to {X,X}), ’+’ is shorthand for {N, max} (the prefix and all more-specific subnets, including at length N itself; valid even when N is the maximum length). Omit the suffix to match the prefix exactly at length N.

[Link to this property](<#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20targets>)

##### optional Expand Collapse

description?: String

Description of the filter profile

[Link to this property](<#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20description>)

##### computed Expand Collapse

id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20id>)

created\_on: Time

[Link to this property](<#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20created_on>)

modified\_on: Time

[Link to this property](<#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_on>)

### cloudflare\_magic\_wan\_bgp\_filter\_profile

Terraform

HTTPTypeScriptPythonGoTerraform

```
resource "cloudflare_magic_wan_bgp_filter_profile" "example_magic_wan_bgp_filter_profile" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  match_action = "allow"
  name = "Allowed On-Prem Imports"
  targets = ["10.0.0.0/8{8,32}"]
  description = "Allowed corporate subnets from on-premises"
}
```

#### data cloudflare\_magic\_wan\_bgp\_filter\_profile

##### required Expand Collapse

profile\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20profile_id>)

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20account_id>)

##### computed Expand Collapse

id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20id>)

created\_on: Time

[Link to this property](<#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20created_on>)

description: String

Description of the filter profile

[Link to this property](<#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20description>)

match\_action: String

Action to take when a route matches one of the targets in this profile

[Link to this property](<#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20match_action>)

modified\_on: Time

[Link to this property](<#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20modified_on>)

name: String

Friendly name for the filter profile

[Link to this property](<#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20name>)

targets: List\[String]

List of CIDR prefixes. Each entry may carry an optional suffix that specifies which prefix lengths to match relative to the prefix length N: ‘{X,Y}’ matches prefix lengths in the inclusive range \[X, Y] where N <= X <= Y <= max (max is 32 for IPv4, 128 for IPv6), ‘{X}’ matches exactly length X (equivalent to {X,X}), ’+’ is shorthand for {N, max} (the prefix and all more-specific subnets, including at length N itself; valid even when N is the maximum length). Omit the suffix to match the prefix exactly at length N.

[Link to this property](<#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20targets>)

### cloudflare\_magic\_wan\_bgp\_filter\_profile

Terraform

HTTPTypeScriptPythonGoTerraform

```
data "cloudflare_magic_wan_bgp_filter_profile" "example_magic_wan_bgp_filter_profile" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  profile_id = "023e105f4ecef8ad9ca31a8372d0c353"
}
```

#### data cloudflare\_magic\_wan\_bgp\_filter\_profiles

##### required Expand Collapse

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20account_id>)

##### optional Expand Collapse

max\_items?: Int64

Max items to fetch, default: 1000

[Link to this property](<#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20max_items>)

##### computed Expand Collapse

<details>

<summary>

result: List\[Attributes]

The items returned by the data source

</summary>

id: String

Identifier

<a href="#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20id">Link to this property</a>

description: String

Description of the filter profile

<a href="#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20description">Link to this property</a>

match\_action: String

Action to take when a route matches one of the targets in this profile

<a href="#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20match_action">Link to this property</a>

name: String

Friendly name for the filter profile

<a href="#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20name">Link to this property</a>

targets: List\[String]

List of CIDR prefixes. Each entry may carry an optional suffix that specifies which prefix lengths to match relative to the prefix length N: ‘{X,Y}’ matches prefix lengths in the inclusive range \[X, Y] where N &lt;= X &lt;= Y &lt;= max (max is 32 for IPv4, 128 for IPv6), ‘{X}’ matches exactly length X (equivalent to {X,X}), ’+’ is shorthand for {N, max} (the prefix and all more-specific subnets, including at length N itself; valid even when N is the maximum length). Omit the suffix to match the prefix exactly at length N.

<a href="#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20targets">Link to this property</a>

created\_on: Time

<a href="#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20created_on">Link to this property</a>

modified\_on: Time

<a href="#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20modified_on">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.bgp_filter_profiles%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result>)

### cloudflare\_magic\_wan\_bgp\_filter\_profiles

Terraform

HTTPTypeScriptPythonGoTerraform

```
data "cloudflare_magic_wan_bgp_filter_profiles" "example_magic_wan_bgp_filter_profiles" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
}
```

#### Magic TransitSites

#### resource cloudflare\_magic\_transit\_site

##### required Expand Collapse

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20account_id>)

name: String

The name of the site.

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20name>)

##### optional Expand Collapse

connector\_id?: String

Magic Connector identifier tag.

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20connector_id>)

description?: String

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20description>)

ha\_mode?: Bool

Site high availability mode. If set to true, the site can have two connectors and runs in high availability mode.

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ha_mode>)

secondary\_connector\_id?: String

Magic Connector identifier tag. Used when high availability mode is on.

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20secondary_connector_id>)

<details>

<summary>

location?: Attributes

Location of site in latitude and longitude.

</summary>

lat?: String

Latitude

<a href="#(resource)%20magic_transit.sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20location%20%3E%20(attribute)%20lat">Link to this property</a>

lon?: String

Longitude

<a href="#(resource)%20magic_transit.sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20location%20%3E%20(attribute)%20lon">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20location>)

##### computed Expand Collapse

id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20id>)

### cloudflare\_magic\_transit\_site

Terraform

HTTPTypeScriptPythonGoTerraform

```
resource "cloudflare_magic_transit_site" "example_magic_transit_site" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  name = "site_1"
  connector_id = "ac60d3d0435248289d446cedd870bcf4"
  description = "description"
  ha_mode = true
  location = {
    lat = "37.6192"
    lon = "122.3816"
  }
  secondary_connector_id = "8d67040d3835dbcf46ce29da440dc482"
}
```

#### data cloudflare\_magic\_transit\_site

##### required Expand Collapse

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20account_id>)

##### optional Expand Collapse

site\_id?: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20site_id>)

<details>

<summary>

filter?: Attributes

</summary>

connectorid?: String

Identifier

<a href="#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20filter%20%3E%20(attribute)%20connectorid">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20filter>)

##### computed Expand Collapse

id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20id>)

connector\_id: String

Magic Connector identifier tag.

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20connector_id>)

description: String

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20description>)

ha\_mode: Bool

Site high availability mode. If set to true, the site can have two connectors and runs in high availability mode.

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ha_mode>)

name: String

The name of the site.

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20name>)

secondary\_connector\_id: String

Magic Connector identifier tag. Used when high availability mode is on.

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20secondary_connector_id>)

<details>

<summary>

location: Attributes

Location of site in latitude and longitude.

</summary>

lat: String

Latitude

<a href="#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20location%20%3E%20(attribute)%20lat">Link to this property</a>

lon: String

Longitude

<a href="#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20location%20%3E%20(attribute)%20lon">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20location>)

### cloudflare\_magic\_transit\_site

Terraform

HTTPTypeScriptPythonGoTerraform

```
data "cloudflare_magic_transit_site" "example_magic_transit_site" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  site_id = "023e105f4ecef8ad9ca31a8372d0c353"
}
```

#### data cloudflare\_magic\_transit\_sites

##### required Expand Collapse

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20account_id>)

##### optional Expand Collapse

connectorid?: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20connectorid>)

max\_items?: Int64

Max items to fetch, default: 1000

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20max_items>)

##### computed Expand Collapse

<details>

<summary>

result: List\[Attributes]

The items returned by the data source

</summary>

id: String

Identifier

<a href="#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20id">Link to this property</a>

connector\_id: String

Magic Connector identifier tag.

<a href="#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20connector_id">Link to this property</a>

description: String

<a href="#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20description">Link to this property</a>

ha\_mode: Bool

Site high availability mode. If set to true, the site can have two connectors and runs in high availability mode.

<a href="#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20ha_mode">Link to this property</a>

<details>

<summary>

location: Attributes

Location of site in latitude and longitude.

</summary>

lat: String

Latitude

<a href="#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20location%20%3E%20(attribute)%20lat">Link to this property</a>

lon: String

Longitude

<a href="#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20location%20%3E%20(attribute)%20lon">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20location">Link to this property</a>

name: String

The name of the site.

<a href="#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20name">Link to this property</a>

secondary\_connector\_id: String

Magic Connector identifier tag. Used when high availability mode is on.

<a href="#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20secondary_connector_id">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result>)

### cloudflare\_magic\_transit\_sites

Terraform

HTTPTypeScriptPythonGoTerraform

```
data "cloudflare_magic_transit_sites" "example_magic_transit_sites" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  connectorid = "023e105f4ecef8ad9ca31a8372d0c353"
}
```

#### Magic TransitSitesACLs

#### resource cloudflare\_magic\_transit\_site\_acl

##### required Expand Collapse

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20account_id>)

site\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20site_id>)

name: String

The name of the ACL.

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20name>)

<details>

<summary>

lan\_1: Attributes

</summary>

lan\_id: String

The identifier for the LAN you want to create an ACL policy with.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20lan_1%20%3E%20(attribute)%20lan_id">Link to this property</a>

lan\_name?: String

The name of the LAN based on the provided lan\_id.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20lan_1%20%3E%20(attribute)%20lan_name">Link to this property</a>

port\_ranges?: List\[String]

Array of port ranges on the provided LAN that will be included in the ACL. If no ports or port rangess are provided, communication on any port on this LAN is allowed.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20lan_1%20%3E%20(attribute)%20port_ranges">Link to this property</a>

ports?: List\[Int64]

Array of ports on the provided LAN that will be included in the ACL. If no ports or port ranges are provided, communication on any port on this LAN is allowed.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20lan_1%20%3E%20(attribute)%20ports">Link to this property</a>

subnets?: List\[String]

Array of subnet IPs within the LAN that will be included in the ACL. If no subnets are provided, communication on any subnets on this LAN are allowed.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20lan_1%20%3E%20(attribute)%20subnets">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20lan_1>)

<details>

<summary>

lan\_2: Attributes

</summary>

lan\_id: String

The identifier for the LAN you want to create an ACL policy with.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20lan_2%20%3E%20(attribute)%20lan_id">Link to this property</a>

lan\_name?: String

The name of the LAN based on the provided lan\_id.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20lan_2%20%3E%20(attribute)%20lan_name">Link to this property</a>

port\_ranges?: List\[String]

Array of port ranges on the provided LAN that will be included in the ACL. If no ports or port rangess are provided, communication on any port on this LAN is allowed.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20lan_2%20%3E%20(attribute)%20port_ranges">Link to this property</a>

ports?: List\[Int64]

Array of ports on the provided LAN that will be included in the ACL. If no ports or port ranges are provided, communication on any port on this LAN is allowed.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20lan_2%20%3E%20(attribute)%20ports">Link to this property</a>

subnets?: List\[String]

Array of subnet IPs within the LAN that will be included in the ACL. If no subnets are provided, communication on any subnets on this LAN are allowed.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20lan_2%20%3E%20(attribute)%20subnets">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20lan_2>)

##### optional Expand Collapse

description?: String

Description for the ACL.

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20description>)

forward\_locally?: Bool

The desired forwarding action for this ACL policy. If set to “false”, the policy will forward traffic to Cloudflare. If set to “true”, the policy will forward traffic locally on the Magic Connector. If not included in request, will default to false.

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20forward_locally>)

unidirectional?: Bool

The desired traffic direction for this ACL policy. If set to “false”, the policy will allow bidirectional traffic. If set to “true”, the policy will only allow traffic in one direction. If not included in request, will default to false.

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20unidirectional>)

protocols?: List\[String]

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20protocols>)

##### computed Expand Collapse

id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20id>)

### cloudflare\_magic\_transit\_site\_acl

Terraform

HTTPTypeScriptPythonGoTerraform

```
resource "cloudflare_magic_transit_site_acl" "example_magic_transit_site_acl" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  site_id = "023e105f4ecef8ad9ca31a8372d0c353"
  lan_1 = {
    lan_id = "lan_id"
    lan_name = "lan_name"
    port_ranges = ["8080-9000"]
    ports = [1]
    subnets = ["192.0.2.1"]
  }
  lan_2 = {
    lan_id = "lan_id"
    lan_name = "lan_name"
    port_ranges = ["8080-9000"]
    ports = [1]
    subnets = ["192.0.2.1"]
  }
  name = "PIN Pad - Cash Register"
  description = "Allows local traffic between PIN pads and cash register."
  forward_locally = true
  protocols = ["tcp"]
  unidirectional = true
}
```

#### data cloudflare\_magic\_transit\_site\_acl

##### required Expand Collapse

acl\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20acl_id>)

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20account_id>)

site\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20site_id>)

##### computed Expand Collapse

id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20id>)

description: String

Description for the ACL.

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20description>)

forward\_locally: Bool

The desired forwarding action for this ACL policy. If set to “false”, the policy will forward traffic to Cloudflare. If set to “true”, the policy will forward traffic locally on the Magic Connector. If not included in request, will default to false.

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20forward_locally>)

name: String

The name of the ACL.

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20name>)

unidirectional: Bool

The desired traffic direction for this ACL policy. If set to “false”, the policy will allow bidirectional traffic. If set to “true”, the policy will only allow traffic in one direction. If not included in request, will default to false.

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20unidirectional>)

protocols: List\[String]

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20protocols>)

<details>

<summary>

lan\_1: Attributes

</summary>

lan\_id: String

The identifier for the LAN you want to create an ACL policy with.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20lan_1%20%3E%20(attribute)%20lan_id">Link to this property</a>

lan\_name: String

The name of the LAN based on the provided lan\_id.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20lan_1%20%3E%20(attribute)%20lan_name">Link to this property</a>

port\_ranges: List\[String]

Array of port ranges on the provided LAN that will be included in the ACL. If no ports or port rangess are provided, communication on any port on this LAN is allowed.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20lan_1%20%3E%20(attribute)%20port_ranges">Link to this property</a>

ports: List\[Int64]

Array of ports on the provided LAN that will be included in the ACL. If no ports or port ranges are provided, communication on any port on this LAN is allowed.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20lan_1%20%3E%20(attribute)%20ports">Link to this property</a>

subnets: List\[String]

Array of subnet IPs within the LAN that will be included in the ACL. If no subnets are provided, communication on any subnets on this LAN are allowed.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20lan_1%20%3E%20(attribute)%20subnets">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20lan_1>)

<details>

<summary>

lan\_2: Attributes

</summary>

lan\_id: String

The identifier for the LAN you want to create an ACL policy with.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20lan_2%20%3E%20(attribute)%20lan_id">Link to this property</a>

lan\_name: String

The name of the LAN based on the provided lan\_id.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20lan_2%20%3E%20(attribute)%20lan_name">Link to this property</a>

port\_ranges: List\[String]

Array of port ranges on the provided LAN that will be included in the ACL. If no ports or port rangess are provided, communication on any port on this LAN is allowed.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20lan_2%20%3E%20(attribute)%20port_ranges">Link to this property</a>

ports: List\[Int64]

Array of ports on the provided LAN that will be included in the ACL. If no ports or port ranges are provided, communication on any port on this LAN is allowed.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20lan_2%20%3E%20(attribute)%20ports">Link to this property</a>

subnets: List\[String]

Array of subnet IPs within the LAN that will be included in the ACL. If no subnets are provided, communication on any subnets on this LAN are allowed.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20lan_2%20%3E%20(attribute)%20subnets">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20lan_2>)

### cloudflare\_magic\_transit\_site\_acl

Terraform

HTTPTypeScriptPythonGoTerraform

```
data "cloudflare_magic_transit_site_acl" "example_magic_transit_site_acl" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  site_id = "023e105f4ecef8ad9ca31a8372d0c353"
  acl_id = "023e105f4ecef8ad9ca31a8372d0c353"
}
```

#### data cloudflare\_magic\_transit\_site\_acls

##### required Expand Collapse

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20account_id>)

site\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20site_id>)

##### optional Expand Collapse

max\_items?: Int64

Max items to fetch, default: 1000

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20max_items>)

##### computed Expand Collapse

<details>

<summary>

result: List\[Attributes]

The items returned by the data source

</summary>

id: String

Identifier

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20id">Link to this property</a>

description: String

Description for the ACL.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20description">Link to this property</a>

forward\_locally: Bool

The desired forwarding action for this ACL policy. If set to “false”, the policy will forward traffic to Cloudflare. If set to “true”, the policy will forward traffic locally on the Magic Connector. If not included in request, will default to false.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20forward_locally">Link to this property</a>

<details>

<summary>

lan\_1: Attributes

</summary>

lan\_id: String

The identifier for the LAN you want to create an ACL policy with.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20lan_1%20%3E%20(attribute)%20lan_id">Link to this property</a>

lan\_name: String

The name of the LAN based on the provided lan\_id.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20lan_1%20%3E%20(attribute)%20lan_name">Link to this property</a>

port\_ranges: List\[String]

Array of port ranges on the provided LAN that will be included in the ACL. If no ports or port rangess are provided, communication on any port on this LAN is allowed.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20lan_1%20%3E%20(attribute)%20port_ranges">Link to this property</a>

ports: List\[Int64]

Array of ports on the provided LAN that will be included in the ACL. If no ports or port ranges are provided, communication on any port on this LAN is allowed.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20lan_1%20%3E%20(attribute)%20ports">Link to this property</a>

subnets: List\[String]

Array of subnet IPs within the LAN that will be included in the ACL. If no subnets are provided, communication on any subnets on this LAN are allowed.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20lan_1%20%3E%20(attribute)%20subnets">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20lan_1">Link to this property</a>

<details>

<summary>

lan\_2: Attributes

</summary>

lan\_id: String

The identifier for the LAN you want to create an ACL policy with.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20lan_2%20%3E%20(attribute)%20lan_id">Link to this property</a>

lan\_name: String

The name of the LAN based on the provided lan\_id.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20lan_2%20%3E%20(attribute)%20lan_name">Link to this property</a>

port\_ranges: List\[String]

Array of port ranges on the provided LAN that will be included in the ACL. If no ports or port rangess are provided, communication on any port on this LAN is allowed.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20lan_2%20%3E%20(attribute)%20port_ranges">Link to this property</a>

ports: List\[Int64]

Array of ports on the provided LAN that will be included in the ACL. If no ports or port ranges are provided, communication on any port on this LAN is allowed.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20lan_2%20%3E%20(attribute)%20ports">Link to this property</a>

subnets: List\[String]

Array of subnet IPs within the LAN that will be included in the ACL. If no subnets are provided, communication on any subnets on this LAN are allowed.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20lan_2%20%3E%20(attribute)%20subnets">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20lan_2">Link to this property</a>

name: String

The name of the ACL.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20name">Link to this property</a>

protocols: List\[String]

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20protocols">Link to this property</a>

unidirectional: Bool

The desired traffic direction for this ACL policy. If set to “false”, the policy will allow bidirectional traffic. If set to “true”, the policy will only allow traffic in one direction. If not included in request, will default to false.

<a href="#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20unidirectional">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.sites.acls%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result>)

### cloudflare\_magic\_transit\_site\_acls

Terraform

HTTPTypeScriptPythonGoTerraform

```
data "cloudflare_magic_transit_site_acls" "example_magic_transit_site_acls" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  site_id = "023e105f4ecef8ad9ca31a8372d0c353"
}
```

#### Magic TransitSitesLANs

#### resource cloudflare\_magic\_transit\_site\_lan

##### required Expand Collapse

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20account_id>)

site\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20site_id>)

##### optional Expand Collapse

bond\_id?: Int64

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20bond_id>)

ha\_link?: Bool

mark true to use this LAN for HA probing. only works for site with HA turned on. only one LAN can be set as the ha\_link.

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20ha_link>)

is\_breakout?: Bool

mark true to use this LAN for source-based breakout traffic

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20is_breakout>)

is\_prioritized?: Bool

mark true to use this LAN for source-based prioritized traffic

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20is_prioritized>)

name?: String

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20name>)

physport?: Int64

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20physport>)

vlan\_tag?: Int64

VLAN ID. Use zero for untagged.

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20vlan_tag>)

<details>

<summary>

nat?: Attributes

</summary>

static\_prefix?: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20nat%20%3E%20(attribute)%20static_prefix">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20nat>)

<details>

<summary>

routed\_subnets?: List\[Attributes]

</summary>

next\_hop: String

A valid IPv4 address.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20routed_subnets%20%3E%20(attribute)%20next_hop">Link to this property</a>

prefix: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20routed_subnets%20%3E%20(attribute)%20prefix">Link to this property</a>

<details>

<summary>

nat?: Attributes

</summary>

static\_prefix?: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20routed_subnets%20%3E%20(attribute)%20nat%20%3E%20(attribute)%20static_prefix">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20routed_subnets%20%3E%20(attribute)%20nat">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20routed_subnets>)

<details>

<summary>

static\_addressing?: Attributes

If the site is not configured in high availability mode, this configuration is optional (if omitted, use DHCP). However, if in high availability mode, static\_address is required along with secondary and virtual address.

</summary>

address: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20address">Link to this property</a>

<details>

<summary>

dhcp\_relay?: Attributes

</summary>

server\_addresses?: List\[String]

List of DHCP server IPs.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_relay%20%3E%20(attribute)%20server_addresses">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_relay">Link to this property</a>

<details>

<summary>

dhcp\_server?: Attributes

</summary>

<details>

<summary>

dhcp\_options?: List\[Attributes]

Optional list of custom DHCP options to include in DHCP responses. Only valid when DHCP server is enabled.

</summary>

code: Int64

DHCP option number (1-254). Options 0 and 255 are reserved by RFC 2132. Options 3, 6, and 51 are not allowed because they conflict with connector-managed configuration.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dhcp_options%20%3E%20(attribute)%20code">Link to this property</a>

type: String

The type of the option value. text: a string (max 255 bytes). hex: colon-separated hex bytes (e.g. “01:04:aa:bb:cc”, max 255 bytes). ip: an IPv4 address (e.g. “10.20.30.40”). byte: an unsigned integer 0-255 (1 byte). short: an unsigned integer 0-65535 (2 bytes). integer: an unsigned integer 0-4294967295 (4 bytes).

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dhcp_options%20%3E%20(attribute)%20type">Link to this property</a>

value: String

The option value, interpreted according to the type field.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dhcp_options%20%3E%20(attribute)%20value">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dhcp_options">Link to this property</a>

dhcp\_pool\_end?: String

A valid IPv4 address.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dhcp_pool_end">Link to this property</a>

dhcp\_pool\_start?: String

A valid IPv4 address.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dhcp_pool_start">Link to this property</a>

Deprecateddns\_server?: String

A valid IPv4 address.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dns_server">Link to this property</a>

dns\_servers?: List\[String]

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dns_servers">Link to this property</a>

reservations?: Map\[String]

Mapping of MAC addresses to IP addresses

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20reservations">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server">Link to this property</a>

secondary\_address?: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20secondary_address">Link to this property</a>

virtual\_address?: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20virtual_address">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20static_addressing>)

##### computed Expand Collapse

id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20id>)

### cloudflare\_magic\_transit\_site\_lan

Terraform

HTTPTypeScriptPythonGoTerraform

```
resource "cloudflare_magic_transit_site_lan" "example_magic_transit_site_lan" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  site_id = "023e105f4ecef8ad9ca31a8372d0c353"
  bond_id = 2
  ha_link = true
  is_breakout = true
  is_prioritized = true
  name = "name"
  nat = {
    static_prefix = "192.0.2.0/24"
  }
  physport = 1
  routed_subnets = [{
    next_hop = "192.0.2.1"
    prefix = "192.0.2.0/24"
    nat = {
      static_prefix = "192.0.2.0/24"
    }
  }]
  static_addressing = {
    address = "192.0.2.0/24"
    dhcp_relay = {
      server_addresses = ["192.0.2.1"]
    }
    dhcp_server = {
      dhcp_options = [{
        code = 66
        type = "ip"
        value = "10.20.30.40"
      }]
      dhcp_pool_end = "192.0.2.1"
      dhcp_pool_start = "192.0.2.1"
      dns_server = "192.0.2.1"
      dns_servers = ["192.0.2.1"]
      reservations = {
        "00:11:22:33:44:55" = "192.0.2.100"
        "AA:BB:CC:DD:EE:FF" = "192.168.1.101"
      }
    }
    secondary_address = "192.0.2.0/24"
    virtual_address = "192.0.2.0/24"
  }
  vlan_tag = 42
}
```

#### data cloudflare\_magic\_transit\_site\_lan

##### required Expand Collapse

lan\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20lan_id>)

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20account_id>)

site\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20site_id>)

##### computed Expand Collapse

id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20id>)

bond\_id: Int64

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20bond_id>)

ha\_link: Bool

mark true to use this LAN for HA probing. only works for site with HA turned on. only one LAN can be set as the ha\_link.

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20ha_link>)

is\_breakout: Bool

mark true to use this LAN for source-based breakout traffic

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20is_breakout>)

is\_prioritized: Bool

mark true to use this LAN for source-based prioritized traffic

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20is_prioritized>)

name: String

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20name>)

physport: Int64

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20physport>)

vlan\_tag: Int64

VLAN ID. Use zero for untagged.

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20vlan_tag>)

<details>

<summary>

nat: Attributes

</summary>

static\_prefix: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20nat%20%3E%20(attribute)%20static_prefix">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20nat>)

<details>

<summary>

routed\_subnets: List\[Attributes]

</summary>

next\_hop: String

A valid IPv4 address.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20routed_subnets%20%3E%20(attribute)%20next_hop">Link to this property</a>

prefix: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20routed_subnets%20%3E%20(attribute)%20prefix">Link to this property</a>

<details>

<summary>

nat: Attributes

</summary>

static\_prefix: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20routed_subnets%20%3E%20(attribute)%20nat%20%3E%20(attribute)%20static_prefix">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20routed_subnets%20%3E%20(attribute)%20nat">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20routed_subnets>)

<details>

<summary>

static\_addressing: Attributes

If the site is not configured in high availability mode, this configuration is optional (if omitted, use DHCP). However, if in high availability mode, static\_address is required along with secondary and virtual address.

</summary>

address: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20address">Link to this property</a>

<details>

<summary>

dhcp\_relay: Attributes

</summary>

server\_addresses: List\[String]

List of DHCP server IPs.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_relay%20%3E%20(attribute)%20server_addresses">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_relay">Link to this property</a>

<details>

<summary>

dhcp\_server: Attributes

</summary>

<details>

<summary>

dhcp\_options: List\[Attributes]

Optional list of custom DHCP options to include in DHCP responses. Only valid when DHCP server is enabled.

</summary>

code: Int64

DHCP option number (1-254). Options 0 and 255 are reserved by RFC 2132. Options 3, 6, and 51 are not allowed because they conflict with connector-managed configuration.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dhcp_options%20%3E%20(attribute)%20code">Link to this property</a>

type: String

The type of the option value. text: a string (max 255 bytes). hex: colon-separated hex bytes (e.g. “01:04:aa:bb:cc”, max 255 bytes). ip: an IPv4 address (e.g. “10.20.30.40”). byte: an unsigned integer 0-255 (1 byte). short: an unsigned integer 0-65535 (2 bytes). integer: an unsigned integer 0-4294967295 (4 bytes).

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dhcp_options%20%3E%20(attribute)%20type">Link to this property</a>

value: String

The option value, interpreted according to the type field.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dhcp_options%20%3E%20(attribute)%20value">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dhcp_options">Link to this property</a>

dhcp\_pool\_end: String

A valid IPv4 address.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dhcp_pool_end">Link to this property</a>

dhcp\_pool\_start: String

A valid IPv4 address.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dhcp_pool_start">Link to this property</a>

Deprecateddns\_server: String

A valid IPv4 address.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dns_server">Link to this property</a>

dns\_servers: List\[String]

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dns_servers">Link to this property</a>

reservations: Map\[String]

Mapping of MAC addresses to IP addresses

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20reservations">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server">Link to this property</a>

secondary\_address: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20secondary_address">Link to this property</a>

virtual\_address: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20virtual_address">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20static_addressing>)

### cloudflare\_magic\_transit\_site\_lan

Terraform

HTTPTypeScriptPythonGoTerraform

```
data "cloudflare_magic_transit_site_lan" "example_magic_transit_site_lan" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  site_id = "023e105f4ecef8ad9ca31a8372d0c353"
  lan_id = "023e105f4ecef8ad9ca31a8372d0c353"
}
```

#### data cloudflare\_magic\_transit\_site\_lans

##### required Expand Collapse

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20account_id>)

site\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20site_id>)

##### optional Expand Collapse

max\_items?: Int64

Max items to fetch, default: 1000

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20max_items>)

##### computed Expand Collapse

<details>

<summary>

result: List\[Attributes]

The items returned by the data source

</summary>

id: String

Identifier

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20id">Link to this property</a>

bond\_id: Int64

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20bond_id">Link to this property</a>

ha\_link: Bool

mark true to use this LAN for HA probing. only works for site with HA turned on. only one LAN can be set as the ha\_link.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20ha_link">Link to this property</a>

is\_breakout: Bool

mark true to use this LAN for source-based breakout traffic

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20is_breakout">Link to this property</a>

is\_prioritized: Bool

mark true to use this LAN for source-based prioritized traffic

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20is_prioritized">Link to this property</a>

name: String

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20name">Link to this property</a>

<details>

<summary>

nat: Attributes

</summary>

static\_prefix: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20nat%20%3E%20(attribute)%20static_prefix">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20nat">Link to this property</a>

physport: Int64

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20physport">Link to this property</a>

<details>

<summary>

routed\_subnets: List\[Attributes]

</summary>

next\_hop: String

A valid IPv4 address.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20routed_subnets%20%3E%20(attribute)%20next_hop">Link to this property</a>

prefix: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20routed_subnets%20%3E%20(attribute)%20prefix">Link to this property</a>

<details>

<summary>

nat: Attributes

</summary>

static\_prefix: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20routed_subnets%20%3E%20(attribute)%20nat%20%3E%20(attribute)%20static_prefix">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20routed_subnets%20%3E%20(attribute)%20nat">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20routed_subnets">Link to this property</a>

site\_id: String

Identifier

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20site_id">Link to this property</a>

<details>

<summary>

static\_addressing: Attributes

If the site is not configured in high availability mode, this configuration is optional (if omitted, use DHCP). However, if in high availability mode, static\_address is required along with secondary and virtual address.

</summary>

address: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20address">Link to this property</a>

<details>

<summary>

dhcp\_relay: Attributes

</summary>

server\_addresses: List\[String]

List of DHCP server IPs.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_relay%20%3E%20(attribute)%20server_addresses">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_relay">Link to this property</a>

<details>

<summary>

dhcp\_server: Attributes

</summary>

<details>

<summary>

dhcp\_options: List\[Attributes]

Optional list of custom DHCP options to include in DHCP responses. Only valid when DHCP server is enabled.

</summary>

code: Int64

DHCP option number (1-254). Options 0 and 255 are reserved by RFC 2132. Options 3, 6, and 51 are not allowed because they conflict with connector-managed configuration.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dhcp_options%20%3E%20(attribute)%20code">Link to this property</a>

type: String

The type of the option value. text: a string (max 255 bytes). hex: colon-separated hex bytes (e.g. “01:04:aa:bb:cc”, max 255 bytes). ip: an IPv4 address (e.g. “10.20.30.40”). byte: an unsigned integer 0-255 (1 byte). short: an unsigned integer 0-65535 (2 bytes). integer: an unsigned integer 0-4294967295 (4 bytes).

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dhcp_options%20%3E%20(attribute)%20type">Link to this property</a>

value: String

The option value, interpreted according to the type field.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dhcp_options%20%3E%20(attribute)%20value">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dhcp_options">Link to this property</a>

dhcp\_pool\_end: String

A valid IPv4 address.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dhcp_pool_end">Link to this property</a>

dhcp\_pool\_start: String

A valid IPv4 address.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dhcp_pool_start">Link to this property</a>

Deprecateddns\_server: String

A valid IPv4 address.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dns_server">Link to this property</a>

dns\_servers: List\[String]

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20dns_servers">Link to this property</a>

reservations: Map\[String]

Mapping of MAC addresses to IP addresses

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server%20%3E%20(attribute)%20reservations">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20dhcp_server">Link to this property</a>

secondary\_address: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20secondary_address">Link to this property</a>

virtual\_address: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20virtual_address">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20static_addressing">Link to this property</a>

vlan\_tag: Int64

VLAN ID. Use zero for untagged.

<a href="#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20vlan_tag">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.sites.lans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result>)

### cloudflare\_magic\_transit\_site\_lans

Terraform

HTTPTypeScriptPythonGoTerraform

```
data "cloudflare_magic_transit_site_lans" "example_magic_transit_site_lans" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  site_id = "023e105f4ecef8ad9ca31a8372d0c353"
}
```

#### Magic TransitSitesWANs

#### resource cloudflare\_magic\_transit\_site\_wan

##### required Expand Collapse

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20account_id>)

site\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20site_id>)

physport: Int64

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20physport>)

##### optional Expand Collapse

name?: String

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20name>)

priority?: Int64

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20priority>)

vlan\_tag?: Int64

VLAN ID. Use zero for untagged.

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20vlan_tag>)

<details>

<summary>

static\_addressing?: Attributes

(optional) if omitted, use DHCP. Submit secondary\_address when site is in high availability mode.

</summary>

address: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20address">Link to this property</a>

gateway\_address: String

A valid IPv4 address.

<a href="#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20gateway_address">Link to this property</a>

secondary\_address?: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20secondary_address">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20static_addressing>)

health\_check\_rate?: String

Magic WAN health check rate for tunnels created on this link. The default value is `mid`.

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20health_check_rate>)

load\_balance\_inner\_flows?: Bool

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20load_balance_inner_flows>)

##### computed Expand Collapse

id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20id>)

### cloudflare\_magic\_transit\_site\_wan

Terraform

HTTPTypeScriptPythonGoTerraform

```
resource "cloudflare_magic_transit_site_wan" "example_magic_transit_site_wan" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  site_id = "023e105f4ecef8ad9ca31a8372d0c353"
  physport = 1
  health_check_rate = "low"
  load_balance_inner_flows = true
  name = "name"
  priority = 0
  static_addressing = {
    address = "192.0.2.0/24"
    gateway_address = "192.0.2.1"
    secondary_address = "192.0.2.0/24"
  }
  vlan_tag = 42
}
```

#### data cloudflare\_magic\_transit\_site\_wan

##### required Expand Collapse

wan\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20wan_id>)

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20account_id>)

site\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20site_id>)

##### computed Expand Collapse

id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20id>)

health\_check\_rate: String

Magic WAN health check rate for tunnels created on this link. The default value is `mid`.

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20health_check_rate>)

load\_balance\_inner\_flows: Bool

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20load_balance_inner_flows>)

name: String

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20name>)

physport: Int64

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20physport>)

priority: Int64

Priority of WAN for traffic loadbalancing.

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20priority>)

vlan\_tag: Int64

VLAN ID. Use zero for untagged.

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20vlan_tag>)

<details>

<summary>

static\_addressing: Attributes

(optional) if omitted, use DHCP. Submit secondary\_address when site is in high availability mode.

</summary>

address: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20address">Link to this property</a>

gateway\_address: String

A valid IPv4 address.

<a href="#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20gateway_address">Link to this property</a>

secondary\_address: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20secondary_address">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20static_addressing>)

### cloudflare\_magic\_transit\_site\_wan

Terraform

HTTPTypeScriptPythonGoTerraform

```
data "cloudflare_magic_transit_site_wan" "example_magic_transit_site_wan" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  site_id = "023e105f4ecef8ad9ca31a8372d0c353"
  wan_id = "023e105f4ecef8ad9ca31a8372d0c353"
}
```

#### data cloudflare\_magic\_transit\_site\_wans

##### required Expand Collapse

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20account_id>)

site\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20site_id>)

##### optional Expand Collapse

max\_items?: Int64

Max items to fetch, default: 1000

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20max_items>)

##### computed Expand Collapse

<details>

<summary>

result: List\[Attributes]

The items returned by the data source

</summary>

id: String

Identifier

<a href="#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20id">Link to this property</a>

health\_check\_rate: String

Magic WAN health check rate for tunnels created on this link. The default value is <code>mid</code>.

<a href="#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20health_check_rate">Link to this property</a>

load\_balance\_inner\_flows: Bool

<a href="#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20load_balance_inner_flows">Link to this property</a>

name: String

<a href="#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20name">Link to this property</a>

physport: Int64

<a href="#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20physport">Link to this property</a>

priority: Int64

Priority of WAN for traffic loadbalancing.

<a href="#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20priority">Link to this property</a>

site\_id: String

Identifier

<a href="#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20site_id">Link to this property</a>

<details>

<summary>

static\_addressing: Attributes

(optional) if omitted, use DHCP. Submit secondary\_address when site is in high availability mode.

</summary>

address: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20address">Link to this property</a>

gateway\_address: String

A valid IPv4 address.

<a href="#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20gateway_address">Link to this property</a>

secondary\_address: String

A valid CIDR notation representing an IP range.

<a href="#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20static_addressing%20%3E%20(attribute)%20secondary_address">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20static_addressing">Link to this property</a>

vlan\_tag: Int64

VLAN ID. Use zero for untagged.

<a href="#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20vlan_tag">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.sites.wans%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result>)

### cloudflare\_magic\_transit\_site\_wans

Terraform

HTTPTypeScriptPythonGoTerraform

```
data "cloudflare_magic_transit_site_wans" "example_magic_transit_site_wans" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  site_id = "023e105f4ecef8ad9ca31a8372d0c353"
}
```

#### Magic TransitConnectors

#### resource cloudflare\_magic\_transit\_connector

##### required Expand Collapse

account\_id: String

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20account_id>)

<details>

<summary>

device: Attributes

Exactly one of id, serial\_number, or provision\_license must be provided.

</summary>

id?: String

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20device%20%3E%20(attribute)%20id">Link to this property</a>

provision\_license?: Bool

When true, create and provision a new licence key for the connector.

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20device%20%3E%20(attribute)%20provision_license">Link to this property</a>

serial\_number?: String

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20device%20%3E%20(attribute)%20serial_number">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20device>)

##### optional Expand Collapse

provision\_license?: Bool

When true, regenerate license key for the connector.

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20provision_license>)

activated?: Bool

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20activated>)

interrupt\_window\_duration\_hours?: Float64

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20interrupt_window_duration_hours>)

interrupt\_window\_hour\_of\_day?: Float64

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20interrupt_window_hour_of_day>)

notes?: String

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20notes>)

timezone?: String

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20timezone>)

interrupt\_window\_days\_of\_week?: List\[String]

Allowed days of the week for upgrades. Default is all days.

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20interrupt_window_days_of_week>)

interrupt\_window\_embargo\_dates?: List\[String]

List of dates (YYYY-MM-DD) when upgrades are blocked.

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20interrupt_window_embargo_dates>)

##### computed Expand Collapse

id: String

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20id>)

last\_heartbeat: String

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20last_heartbeat>)

last\_seen\_version: String

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20last_seen_version>)

last\_updated: String

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20last_updated>)

license\_key: String

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20license_key>)

### cloudflare\_magic\_transit\_connector

Terraform

HTTPTypeScriptPythonGoTerraform

```
resource "cloudflare_magic_transit_connector" "example_magic_transit_connector" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  device = {
    id = "id"
    provision_license = true
    serial_number = "serial_number"
  }
  activated = true
  interrupt_window_days_of_week = ["Sunday"]
  interrupt_window_duration_hours = 1
  interrupt_window_embargo_dates = ["string"]
  interrupt_window_hour_of_day = 0
  notes = "notes"
  timezone = "timezone"
}
```

#### data cloudflare\_magic\_transit\_connector

##### required Expand Collapse

account\_id: String

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20account_id>)

##### optional Expand Collapse

connector\_id?: String

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20connector_id>)

<details>

<summary>

filter?: Attributes

</summary>

device\_type?: String

Filter connectors by device type.

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20filter%20%3E%20(attribute)%20device_type">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20filter>)

##### computed Expand Collapse

id: String

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20id>)

activated: Bool

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20activated>)

interrupt\_window\_duration\_hours: Float64

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20interrupt_window_duration_hours>)

interrupt\_window\_hour\_of\_day: Float64

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20interrupt_window_hour_of_day>)

last\_heartbeat: String

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20last_heartbeat>)

last\_seen\_version: String

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20last_seen_version>)

last\_updated: String

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20last_updated>)

license\_key: String

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20license_key>)

notes: String

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20notes>)

timezone: String

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20timezone>)

interrupt\_window\_days\_of\_week: List\[String]

Allowed days of the week for upgrades. Default is all days.

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20interrupt_window_days_of_week>)

interrupt\_window\_embargo\_dates: List\[String]

List of dates (YYYY-MM-DD) when upgrades are blocked.

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20interrupt_window_embargo_dates>)

<details>

<summary>

device: Attributes

</summary>

id: String

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20device%20%3E%20(attribute)%20id">Link to this property</a>

serial\_number: String

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20device%20%3E%20(attribute)%20serial_number">Link to this property</a>

type: String

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20device%20%3E%20(attribute)%20type">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20device>)

### cloudflare\_magic\_transit\_connector

Terraform

HTTPTypeScriptPythonGoTerraform

```
data "cloudflare_magic_transit_connector" "example_magic_transit_connector" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  connector_id = "connector_id"
}
```

#### data cloudflare\_magic\_transit\_connectors

##### required Expand Collapse

account\_id: String

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20account_id>)

##### optional Expand Collapse

device\_type?: String

Filter connectors by device type.

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20device_type>)

max\_items?: Int64

Max items to fetch, default: 1000

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20max_items>)

##### computed Expand Collapse

<details>

<summary>

result: List\[Attributes]

The items returned by the data source

</summary>

id: String

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20id">Link to this property</a>

activated: Bool

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20activated">Link to this property</a>

interrupt\_window\_days\_of\_week: List\[String]

Allowed days of the week for upgrades. Default is all days.

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20interrupt_window_days_of_week">Link to this property</a>

interrupt\_window\_duration\_hours: Float64

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20interrupt_window_duration_hours">Link to this property</a>

interrupt\_window\_embargo\_dates: List\[String]

List of dates (YYYY-MM-DD) when upgrades are blocked.

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20interrupt_window_embargo_dates">Link to this property</a>

interrupt\_window\_hour\_of\_day: Float64

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20interrupt_window_hour_of_day">Link to this property</a>

last\_updated: String

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20last_updated">Link to this property</a>

notes: String

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20notes">Link to this property</a>

timezone: String

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20timezone">Link to this property</a>

<details>

<summary>

device: Attributes

</summary>

id: String

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20device%20%3E%20(attribute)%20id">Link to this property</a>

serial\_number: String

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20device%20%3E%20(attribute)%20serial_number">Link to this property</a>

type: String

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20device%20%3E%20(attribute)%20type">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20device">Link to this property</a>

last\_heartbeat: String

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20last_heartbeat">Link to this property</a>

last\_seen\_version: String

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20last_seen_version">Link to this property</a>

license\_key: String

<a href="#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20license_key">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.connectors%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result>)

### cloudflare\_magic\_transit\_connectors

Terraform

HTTPTypeScriptPythonGoTerraform

```
data "cloudflare_magic_transit_connectors" "example_magic_transit_connectors" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  device_type = "MANAGED"
}
```

#### Magic TransitCf1 Sites

#### resource cloudflare\_magic\_transit\_cf1\_site

##### required Expand Collapse

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20account_id>)

<details>

<summary>

body: List\[Attributes]

</summary>

name: String

A human-provided name describing the CF1 Site that should be unique within the account.

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20body%20%3E%20(attribute)%20name">Link to this property</a>

id: String

Identifier

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20body%20%3E%20(attribute)%20id">Link to this property</a>

created\_on: Time

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20body%20%3E%20(attribute)%20created_on">Link to this property</a>

description?: String

A human-provided description of the CF1 Site.

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20body%20%3E%20(attribute)%20description">Link to this property</a>

<details>

<summary>

location?: Attributes

</summary>

lat?: Float64

Latitude of the CF1 Site.

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20body%20%3E%20(attribute)%20location%20%3E%20(attribute)%20lat">Link to this property</a>

long?: Float64

Longitude of the CF1 Site.

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20body%20%3E%20(attribute)%20location%20%3E%20(attribute)%20long">Link to this property</a>

name?: String

Name of nearest town, city, or village.

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20body%20%3E%20(attribute)%20location%20%3E%20(attribute)%20name">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20body%20%3E%20(attribute)%20location">Link to this property</a>

modified\_on: Time

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20body%20%3E%20(attribute)%20modified_on">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20body>)

##### optional Expand Collapse

description?: String

A human-provided description of the CF1 Site.

[Link to this property](<#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20description>)

name?: String

A human-provided name describing the CF1 Site that should be unique within the account.

[Link to this property](<#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20name>)

<details>

<summary>

location?: Attributes

</summary>

lat?: Float64

Latitude of the CF1 Site.

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20location%20%3E%20(attribute)%20lat">Link to this property</a>

long?: Float64

Longitude of the CF1 Site.

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20location%20%3E%20(attribute)%20long">Link to this property</a>

name?: String

Name of nearest town, city, or village.

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20location%20%3E%20(attribute)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20location>)

##### computed Expand Collapse

id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20id>)

created\_on: Time

[Link to this property](<#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20created_on>)

modified\_on: Time

[Link to this property](<#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20modified_on>)

### cloudflare\_magic\_transit\_cf1\_site

Terraform

HTTPTypeScriptPythonGoTerraform

```
resource "cloudflare_magic_transit_cf1_site" "example_magic_transit_cf1_site" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  body = [{
    name = "Pad 34"
    description = "Launch Pad 34"
    location = {
      lat = 28.521339842093845
      long = -80.56092644815843
      name = "Cape Canaveral"
    }
  }]
}
```

#### data cloudflare\_magic\_transit\_cf1\_site

##### required Expand Collapse

cf1\_site\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20cf1_site_id>)

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20account_id>)

##### computed Expand Collapse

id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20id>)

created\_on: Time

[Link to this property](<#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20created_on>)

description: String

A human-provided description of the CF1 Site.

[Link to this property](<#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20description>)

modified\_on: Time

[Link to this property](<#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20modified_on>)

name: String

A human-provided name describing the CF1 Site that should be unique within the account.

[Link to this property](<#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20name>)

<details>

<summary>

location: Attributes

</summary>

lat: Float64

Latitude of the CF1 Site.

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20location%20%3E%20(attribute)%20lat">Link to this property</a>

long: Float64

Longitude of the CF1 Site.

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20location%20%3E%20(attribute)%20long">Link to this property</a>

name: String

Name of nearest town, city, or village.

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20location%20%3E%20(attribute)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20location>)

### cloudflare\_magic\_transit\_cf1\_site

Terraform

HTTPTypeScriptPythonGoTerraform

```
data "cloudflare_magic_transit_cf1_site" "example_magic_transit_cf1_site" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
  cf1_site_id = "023e105f4ecef8ad9ca31a8372d0c353"
}
```

#### data cloudflare\_magic\_transit\_cf1\_sites

##### required Expand Collapse

account\_id: String

Identifier

[Link to this property](<#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20account_id>)

##### optional Expand Collapse

max\_items?: Int64

Max items to fetch, default: 1000

[Link to this property](<#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20max_items>)

##### computed Expand Collapse

<details>

<summary>

result: List\[Attributes]

The items returned by the data source

</summary>

name: String

A human-provided name describing the CF1 Site that should be unique within the account.

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20name">Link to this property</a>

id: String

Identifier

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20id">Link to this property</a>

created\_on: Time

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20created_on">Link to this property</a>

description: String

A human-provided description of the CF1 Site.

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20description">Link to this property</a>

<details>

<summary>

location: Attributes

</summary>

lat: Float64

Latitude of the CF1 Site.

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20location%20%3E%20(attribute)%20lat">Link to this property</a>

long: Float64

Longitude of the CF1 Site.

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20location%20%3E%20(attribute)%20long">Link to this property</a>

name: String

Name of nearest town, city, or village.

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20location%20%3E%20(attribute)%20name">Link to this property</a>

</details>

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20location">Link to this property</a>

modified\_on: Time

<a href="#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20modified_on">Link to this property</a>

</details>

[Link to this property](<#(resource)%20magic_transit.cf1_sites%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result>)

### cloudflare\_magic\_transit\_cf1\_sites

Terraform

HTTPTypeScriptPythonGoTerraform

```
data "cloudflare_magic_transit_cf1_sites" "example_magic_transit_cf1_sites" {
  account_id = "023e105f4ecef8ad9ca31a8372d0c353"
}
```