com.amazonaws.services.kms.model.CloudHsmClusterInvalidConfigurationException Maven / Gradle / Ivy
Show all versions of aws-java-sdk-kms Show documentation
/*
* Copyright 2019-2024 Amazon.com, Inc. or its affiliates. All Rights Reserved.
*
* Licensed under the Apache License, Version 2.0 (the "License"). You may not use this file except in compliance with
* the License. A copy of the License is located at
*
* http://aws.amazon.com/apache2.0
*
* or in the "license" file accompanying this file. This file is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR
* CONDITIONS OF ANY KIND, either express or implied. See the License for the specific language governing permissions
* and limitations under the License.
*/
package com.amazonaws.services.kms.model;
import javax.annotation.Generated;
/**
*
* The request was rejected because the associated CloudHSM cluster did not meet the configuration requirements for an
* CloudHSM key store.
*
*
* -
*
* The CloudHSM cluster must be configured with private subnets in at least two different Availability Zones in the
* Region.
*
*
* -
*
* The security group for the
* cluster (cloudhsm-cluster-<cluster-id>-sg) must include inbound rules and outbound rules that allow
* TCP traffic on ports 2223-2225. The Source in the inbound rules and the Destination in the outbound
* rules must match the security group ID. These rules are set by default when you create the CloudHSM cluster. Do not
* delete or change them. To get information about a particular security group, use the DescribeSecurityGroups operation.
*
*
* -
*
* The CloudHSM cluster must contain at least as many HSMs as the operation requires. To add HSMs, use the CloudHSM CreateHsm operation.
*
*
* For the CreateCustomKeyStore, UpdateCustomKeyStore, and CreateKey operations, the CloudHSM
* cluster must have at least two active HSMs, each in a different Availability Zone. For the
* ConnectCustomKeyStore operation, the CloudHSM must contain at least one active HSM.
*
*
*
*
* For information about the requirements for an CloudHSM cluster that is associated with an CloudHSM key store, see Assemble the
* Prerequisites in the Key Management Service Developer Guide. For information about creating a private
* subnet for an CloudHSM cluster, see Create a Private Subnet in the
* CloudHSM User Guide. For information about cluster security groups, see Configure a Default Security Group
* in the CloudHSM User Guide .
*
*/
@Generated("com.amazonaws:aws-java-sdk-code-generator")
public class CloudHsmClusterInvalidConfigurationException extends com.amazonaws.services.kms.model.AWSKMSException {
private static final long serialVersionUID = 1L;
/**
* Constructs a new CloudHsmClusterInvalidConfigurationException with the specified error message.
*
* @param message
* Describes the error encountered.
*/
public CloudHsmClusterInvalidConfigurationException(String message) {
super(message);
}
}