Associates the route table of an Enterprise Edition transit router with a prefix list.
Operation description
To associate an Enterprise Edition transit router with a route prefix, you must meet the following requirements:
- You are familiar with the limits and route compatibility notes of prefix lists. For more information, see Prefix lists.
- A prefix list is created. For more information, see CreateVpcPrefixList .
- If the prefix list and the Enterprise Edition transit router belong to different Alibaba Cloud accounts, the prefix list is shared with the Alibaba Cloud account that owns the Enterprise Edition transit router. For more information, see Resource sharing and API references for resource sharing.
Debugging
Authorization information
The following table shows the authorization information corresponding to the API. The authorization information can be used in the Action
policy element to grant a RAM user or RAM role the permissions to call this API operation. Description:
- Operation: the value that you can use in the Action element to specify the operation on a resource.
- Access level: the access level of each operation. The levels are read, write, and list.
- Resource type: the type of the resource on which you can authorize the RAM user or the RAM role to perform the operation. Take note of the following items:
- The required resource types are displayed in bold characters.
- If the permissions cannot be granted at the resource level,
All Resources
is used in the Resource type column of the operation.
- Condition Key: the condition key that is defined by the cloud service.
- Associated operation: other operations that the RAM user or the RAM role must have permissions to perform to complete the operation. To complete the operation, the RAM user or the RAM role must have the permissions to perform the associated operations.
Operation | Access level | Resource type | Condition key | Associated operation |
---|---|---|---|---|
cen:CreateTransitRouterPrefixListAssociation | create |
|
| none |
Request parameters
Parameter | Type | Required | Description | Example |
---|---|---|---|---|
ClientToken | string | No | The client token that is used to ensure the idempotence of the request. You can use the client to generate the token, but you must make sure that the token is unique among different requests. The client token can contain only ASCII characters. Note
If you do not specify this parameter, the system automatically uses the request ID as the client token. The request ID may be different for each request.
| 123e4567-e89b-12d3-a456-4266**** |
RegionId | string | Yes | The ID of the region where the transit router is deployed. You can call the DescribeChildInstanceRegions operation to query the most recent region list. | cn-hangzhou |
TransitRouterId | string | Yes | The ID of the transit router. | tr-6ehx7q2jze8ch5ji0**** |
NextHopType | string | No | The type of the next hop. Valid values:
| VPC |
PrefixListId | string | Yes | The ID of the prefix list. | pl-6ehtn5kqxgeyy08fi**** |
TransitRouterTableId | string | Yes | The ID of the route table of the transit router. | vtb-6ehgc262hr170qgyc**** |
NextHop | string | Yes | The ID of the next hop connection. To specify all CIDR blocks in the prefix list as blackhole routes, set this parameter to BlackHole. | tr-attach-flbq507rg2ckrj**** |
OwnerUid | long | No | The ID of the Alibaba Cloud account to which the prefix list belongs. | 1210123456123456 |
DryRun | boolean | No | Specifies whether to perform only a dry run, without performing the actual request. Valid values:
Note
This parameter is not in use.
| false |
Response parameters
Examples
Sample success responses
JSON
format
{
"RequestId": "0C2EE7A8-74D4-4081-8236-CEBDE3BBCF50"
}
Error codes
HTTP status code | Error code | Error message | Description |
---|---|---|---|
400 | NoPermission.AliyunServiceRolePolicyForCEN | You are not authorized to create the service linked role. Role Name: AliyunServiceRolePolicyForCEN. Service Name: cen.aliyuncs.com. Make sure that the user has been granted the ram:CreateServiceLinkedRole permission. | The error message returned because you do not have the permissions to create the service-linked role whose role name is AliyunServiceRolePolicyForCEN and service name is cen.aliyuncs.com. You must acquire the ram:CreateServiceLinkedRole permission before you can create the service-linked role. |
400 | ResourceNotSupport.CCN | CCN not support prefix list. | The error message returned because prefix lists are not supported by CCN instances. |
400 | ResourceNotFound.PrefixlistCidrs | Can not find any cidr of specified prefix list. | The error message returned because the specified prefix list does not contain a CIDR block. |
400 | ResourceNotFound.Nexthop | The specified nexthop instance is not exsit. | The error message returned because the specified next hop does not exist. |
400 | ResourceExisted.PrefixlistAssociation | The prefix list has been already associated with this route table. | The error message returned because the specified prefix list is already associated with a route table. |
400 | ResourceNotFound.PrefixlistAssociation | The prefix list is not associated with this route table. | The error message returned because the specified prefix list is not associated with a route table. |
400 | ResourceConflict.Route | Some of the prefixes of the prefix list are conflicted with exsited routes. | The error message returned because the specified prefix list conflicts with an existing route. |
400 | MultipleFound.PrefixlistAssociation | multiple same prefix association record found. | The error message returned because multiple configuration duplicates exist in the system. |
400 | QuotaReached.Route | The quota of the route table is not enough for the request prefix list. | The error message returned because the number of routes has reached the upper limit. |
400 | InvalidStatus.PrefixlistAssociation | The prefix list association is not in a valid state for the operation. | The error message returned because the status of the specified prefix list does not support this operation. Try again later. |
400 | NotSupport.TrType | The basic tr type is not support for this operation. | The error message returned because this operation is not supported by Basic Edition transit routers. |
400 | InvalidValue.PrefixlistCidr | Invalid cidr exist in the specified prefixlist. | The error message returned because the specified prefix list contains an invalid CIDR block. |
400 | ResourceNotSupport.Nexthop | The specified nexthop instance type is not support for the operation. | The error message returned because this operation is not supported by the specified next hop. |
400 | ResourceMismatch.Nexthop | The specified nexthop and nexthop type mismatched. | The error message returned because the specified next hop or next hop type is invalid. |
400 | ResourceNotFound.PrefixList | The specified prefixlist does not found. | The error message returned because the specified prefix list does not exist. |
400 | OperationDenied.SystemPrefixList | SystemPrefixList can not be operated. | The error message returned because this operation is not supported by the system prefix list. |
400 | OperationFailed.OperateShareResource | Operate share prefixlist failed. | The error message returned because the specified prefix list failed to be shared. |
400 | InvalidStatus.Prefixlist | Prefixlist is not in a operate status. | The error message returned because the status of the specified prefix list does not support this operation. |
400 | RegionNotSupport.Prefixlist | Prefixlist association are not supported in this region. | The error message returned because the feature is not supported in the specified region. |
400 | OperationFailed.TransitRouterNotExist | Operation failed because transit router not exist. | The error message returned because the specified transit router does not exist. |
400 | IncorrectStatus.RouteTable | RouteTable status is invalid. | The error message returned because the operation is not supported when the specified route table is in an unstable state. |
400 | IllegalParam.TransitRouterTableId | The specified Route Table ID is invalid. | The Route Table ID is invalid. |
400 | InvalidParameter | Invalid parameter. | The error message returned because the parameter is set to an invalid value. |
400 | Unauthorized | The AccessKeyId is unauthorized. | The error message returned because you do not have the permissions to perform this operation. |
404 | InvalidRouteTableId.NotFound | The specified RouteTableId is not found. | The specified route table ID does not exist. |
For a list of error codes, visit the Service error codes.
Change history
Change time | Summary of changes | Operation |
---|---|---|
2023-11-22 | The Error code has changed | View Change Details |
2022-08-25 | The Error code has changed | View Change Details |