com.pulumi.azure.cosmosdb.kotlin.SqlRoleAssignment.kt Maven / Gradle / Ivy
Go to download
Show more of this group Show more artifacts with this name
Show all versions of pulumi-azure-kotlin Show documentation
Show all versions of pulumi-azure-kotlin Show documentation
Build cloud applications and infrastructure by combining the safety and reliability of infrastructure as code with the power of the Kotlin programming language.
@file:Suppress("NAME_SHADOWING", "DEPRECATION")
package com.pulumi.azure.cosmosdb.kotlin
import com.pulumi.core.Output
import com.pulumi.kotlin.KotlinCustomResource
import com.pulumi.kotlin.PulumiTagMarker
import com.pulumi.kotlin.ResourceMapper
import com.pulumi.kotlin.options.CustomResourceOptions
import com.pulumi.kotlin.options.CustomResourceOptionsBuilder
import com.pulumi.resources.Resource
import kotlin.Boolean
import kotlin.String
import kotlin.Suppress
import kotlin.Unit
/**
* Builder for [SqlRoleAssignment].
*/
@PulumiTagMarker
public class SqlRoleAssignmentResourceBuilder internal constructor() {
public var name: String? = null
public var args: SqlRoleAssignmentArgs = SqlRoleAssignmentArgs()
public var opts: CustomResourceOptions = CustomResourceOptions()
/**
* @param name The _unique_ name of the resulting resource.
*/
public fun name(`value`: String) {
this.name = value
}
/**
* @param block The arguments to use to populate this resource's properties.
*/
public suspend fun args(block: suspend SqlRoleAssignmentArgsBuilder.() -> Unit) {
val builder = SqlRoleAssignmentArgsBuilder()
block(builder)
this.args = builder.build()
}
/**
* @param block A bag of options that control this resource's behavior.
*/
public suspend fun opts(block: suspend CustomResourceOptionsBuilder.() -> Unit) {
this.opts = com.pulumi.kotlin.options.CustomResourceOptions.opts(block)
}
internal fun build(): SqlRoleAssignment {
val builtJavaResource = com.pulumi.azure.cosmosdb.SqlRoleAssignment(
this.name,
this.args.toJava(),
this.opts.toJava(),
)
return SqlRoleAssignment(builtJavaResource)
}
}
/**
* Manages a Cosmos DB SQL Role Assignment.
* ## Example Usage
*
* ```typescript
* import * as pulumi from "@pulumi/pulumi";
* import * as azure from "@pulumi/azure";
* const current = azure.core.getClientConfig({});
* const example = new azure.core.ResourceGroup("example", {
* name: "example-resources",
* location: "West Europe",
* });
* const exampleAccount = new azure.cosmosdb.Account("example", {
* name: "example-cosmosdb",
* location: example.location,
* resourceGroupName: example.name,
* offerType: "Standard",
* kind: "GlobalDocumentDB",
* consistencyPolicy: {
* consistencyLevel: "Strong",
* },
* geoLocations: [{
* location: example.location,
* failoverPriority: 0,
* }],
* });
* const exampleSqlRoleDefinition = new azure.cosmosdb.SqlRoleDefinition("example", {
* name: "examplesqlroledef",
* resourceGroupName: example.name,
* accountName: exampleAccount.name,
* type: "CustomRole",
* assignableScopes: [exampleAccount.id],
* permissions: [{
* dataActions: ["Microsoft.DocumentDB/databaseAccounts/sqlDatabases/containers/items/read"],
* }],
* });
* const exampleSqlRoleAssignment = new azure.cosmosdb.SqlRoleAssignment("example", {
* name: "736180af-7fbc-4c7f-9004-22735173c1c3",
* resourceGroupName: example.name,
* accountName: exampleAccount.name,
* roleDefinitionId: exampleSqlRoleDefinition.id,
* principalId: current.then(current => current.objectId),
* scope: exampleAccount.id,
* });
* ```
* ```python
* import pulumi
* import pulumi_azure as azure
* current = azure.core.get_client_config()
* example = azure.core.ResourceGroup("example",
* name="example-resources",
* location="West Europe")
* example_account = azure.cosmosdb.Account("example",
* name="example-cosmosdb",
* location=example.location,
* resource_group_name=example.name,
* offer_type="Standard",
* kind="GlobalDocumentDB",
* consistency_policy=azure.cosmosdb.AccountConsistencyPolicyArgs(
* consistency_level="Strong",
* ),
* geo_locations=[azure.cosmosdb.AccountGeoLocationArgs(
* location=example.location,
* failover_priority=0,
* )])
* example_sql_role_definition = azure.cosmosdb.SqlRoleDefinition("example",
* name="examplesqlroledef",
* resource_group_name=example.name,
* account_name=example_account.name,
* type="CustomRole",
* assignable_scopes=[example_account.id],
* permissions=[azure.cosmosdb.SqlRoleDefinitionPermissionArgs(
* data_actions=["Microsoft.DocumentDB/databaseAccounts/sqlDatabases/containers/items/read"],
* )])
* example_sql_role_assignment = azure.cosmosdb.SqlRoleAssignment("example",
* name="736180af-7fbc-4c7f-9004-22735173c1c3",
* resource_group_name=example.name,
* account_name=example_account.name,
* role_definition_id=example_sql_role_definition.id,
* principal_id=current.object_id,
* scope=example_account.id)
* ```
* ```csharp
* using System.Collections.Generic;
* using System.Linq;
* using Pulumi;
* using Azure = Pulumi.Azure;
* return await Deployment.RunAsync(() =>
* {
* var current = Azure.Core.GetClientConfig.Invoke();
* var example = new Azure.Core.ResourceGroup("example", new()
* {
* Name = "example-resources",
* Location = "West Europe",
* });
* var exampleAccount = new Azure.CosmosDB.Account("example", new()
* {
* Name = "example-cosmosdb",
* Location = example.Location,
* ResourceGroupName = example.Name,
* OfferType = "Standard",
* Kind = "GlobalDocumentDB",
* ConsistencyPolicy = new Azure.CosmosDB.Inputs.AccountConsistencyPolicyArgs
* {
* ConsistencyLevel = "Strong",
* },
* GeoLocations = new[]
* {
* new Azure.CosmosDB.Inputs.AccountGeoLocationArgs
* {
* Location = example.Location,
* FailoverPriority = 0,
* },
* },
* });
* var exampleSqlRoleDefinition = new Azure.CosmosDB.SqlRoleDefinition("example", new()
* {
* Name = "examplesqlroledef",
* ResourceGroupName = example.Name,
* AccountName = exampleAccount.Name,
* Type = "CustomRole",
* AssignableScopes = new[]
* {
* exampleAccount.Id,
* },
* Permissions = new[]
* {
* new Azure.CosmosDB.Inputs.SqlRoleDefinitionPermissionArgs
* {
* DataActions = new[]
* {
* "Microsoft.DocumentDB/databaseAccounts/sqlDatabases/containers/items/read",
* },
* },
* },
* });
* var exampleSqlRoleAssignment = new Azure.CosmosDB.SqlRoleAssignment("example", new()
* {
* Name = "736180af-7fbc-4c7f-9004-22735173c1c3",
* ResourceGroupName = example.Name,
* AccountName = exampleAccount.Name,
* RoleDefinitionId = exampleSqlRoleDefinition.Id,
* PrincipalId = current.Apply(getClientConfigResult => getClientConfigResult.ObjectId),
* Scope = exampleAccount.Id,
* });
* });
* ```
* ```go
* package main
* import (
* "github.com/pulumi/pulumi-azure/sdk/v5/go/azure/core"
* "github.com/pulumi/pulumi-azure/sdk/v5/go/azure/cosmosdb"
* "github.com/pulumi/pulumi/sdk/v3/go/pulumi"
* )
* func main() {
* pulumi.Run(func(ctx *pulumi.Context) error {
* current, err := core.GetClientConfig(ctx, nil, nil)
* if err != nil {
* return err
* }
* example, err := core.NewResourceGroup(ctx, "example", &core.ResourceGroupArgs{
* Name: pulumi.String("example-resources"),
* Location: pulumi.String("West Europe"),
* })
* if err != nil {
* return err
* }
* exampleAccount, err := cosmosdb.NewAccount(ctx, "example", &cosmosdb.AccountArgs{
* Name: pulumi.String("example-cosmosdb"),
* Location: example.Location,
* ResourceGroupName: example.Name,
* OfferType: pulumi.String("Standard"),
* Kind: pulumi.String("GlobalDocumentDB"),
* ConsistencyPolicy: &cosmosdb.AccountConsistencyPolicyArgs{
* ConsistencyLevel: pulumi.String("Strong"),
* },
* GeoLocations: cosmosdb.AccountGeoLocationArray{
* &cosmosdb.AccountGeoLocationArgs{
* Location: example.Location,
* FailoverPriority: pulumi.Int(0),
* },
* },
* })
* if err != nil {
* return err
* }
* exampleSqlRoleDefinition, err := cosmosdb.NewSqlRoleDefinition(ctx, "example", &cosmosdb.SqlRoleDefinitionArgs{
* Name: pulumi.String("examplesqlroledef"),
* ResourceGroupName: example.Name,
* AccountName: exampleAccount.Name,
* Type: pulumi.String("CustomRole"),
* AssignableScopes: pulumi.StringArray{
* exampleAccount.ID(),
* },
* Permissions: cosmosdb.SqlRoleDefinitionPermissionArray{
* &cosmosdb.SqlRoleDefinitionPermissionArgs{
* DataActions: pulumi.StringArray{
* pulumi.String("Microsoft.DocumentDB/databaseAccounts/sqlDatabases/containers/items/read"),
* },
* },
* },
* })
* if err != nil {
* return err
* }
* _, err = cosmosdb.NewSqlRoleAssignment(ctx, "example", &cosmosdb.SqlRoleAssignmentArgs{
* Name: pulumi.String("736180af-7fbc-4c7f-9004-22735173c1c3"),
* ResourceGroupName: example.Name,
* AccountName: exampleAccount.Name,
* RoleDefinitionId: exampleSqlRoleDefinition.ID(),
* PrincipalId: pulumi.String(current.ObjectId),
* Scope: exampleAccount.ID(),
* })
* if err != nil {
* return err
* }
* return nil
* })
* }
* ```
* ```java
* package generated_program;
* import com.pulumi.Context;
* import com.pulumi.Pulumi;
* import com.pulumi.core.Output;
* import com.pulumi.azure.core.CoreFunctions;
* import com.pulumi.azure.core.ResourceGroup;
* import com.pulumi.azure.core.ResourceGroupArgs;
* import com.pulumi.azure.cosmosdb.Account;
* import com.pulumi.azure.cosmosdb.AccountArgs;
* import com.pulumi.azure.cosmosdb.inputs.AccountConsistencyPolicyArgs;
* import com.pulumi.azure.cosmosdb.inputs.AccountGeoLocationArgs;
* import com.pulumi.azure.cosmosdb.SqlRoleDefinition;
* import com.pulumi.azure.cosmosdb.SqlRoleDefinitionArgs;
* import com.pulumi.azure.cosmosdb.inputs.SqlRoleDefinitionPermissionArgs;
* import com.pulumi.azure.cosmosdb.SqlRoleAssignment;
* import com.pulumi.azure.cosmosdb.SqlRoleAssignmentArgs;
* import java.util.List;
* import java.util.ArrayList;
* import java.util.Map;
* import java.io.File;
* import java.nio.file.Files;
* import java.nio.file.Paths;
* public class App {
* public static void main(String[] args) {
* Pulumi.run(App::stack);
* }
* public static void stack(Context ctx) {
* final var current = CoreFunctions.getClientConfig();
* var example = new ResourceGroup("example", ResourceGroupArgs.builder()
* .name("example-resources")
* .location("West Europe")
* .build());
* var exampleAccount = new Account("exampleAccount", AccountArgs.builder()
* .name("example-cosmosdb")
* .location(example.location())
* .resourceGroupName(example.name())
* .offerType("Standard")
* .kind("GlobalDocumentDB")
* .consistencyPolicy(AccountConsistencyPolicyArgs.builder()
* .consistencyLevel("Strong")
* .build())
* .geoLocations(AccountGeoLocationArgs.builder()
* .location(example.location())
* .failoverPriority(0)
* .build())
* .build());
* var exampleSqlRoleDefinition = new SqlRoleDefinition("exampleSqlRoleDefinition", SqlRoleDefinitionArgs.builder()
* .name("examplesqlroledef")
* .resourceGroupName(example.name())
* .accountName(exampleAccount.name())
* .type("CustomRole")
* .assignableScopes(exampleAccount.id())
* .permissions(SqlRoleDefinitionPermissionArgs.builder()
* .dataActions("Microsoft.DocumentDB/databaseAccounts/sqlDatabases/containers/items/read")
* .build())
* .build());
* var exampleSqlRoleAssignment = new SqlRoleAssignment("exampleSqlRoleAssignment", SqlRoleAssignmentArgs.builder()
* .name("736180af-7fbc-4c7f-9004-22735173c1c3")
* .resourceGroupName(example.name())
* .accountName(exampleAccount.name())
* .roleDefinitionId(exampleSqlRoleDefinition.id())
* .principalId(current.applyValue(getClientConfigResult -> getClientConfigResult.objectId()))
* .scope(exampleAccount.id())
* .build());
* }
* }
* ```
* ```yaml
* resources:
* example:
* type: azure:core:ResourceGroup
* properties:
* name: example-resources
* location: West Europe
* exampleAccount:
* type: azure:cosmosdb:Account
* name: example
* properties:
* name: example-cosmosdb
* location: ${example.location}
* resourceGroupName: ${example.name}
* offerType: Standard
* kind: GlobalDocumentDB
* consistencyPolicy:
* consistencyLevel: Strong
* geoLocations:
* - location: ${example.location}
* failoverPriority: 0
* exampleSqlRoleDefinition:
* type: azure:cosmosdb:SqlRoleDefinition
* name: example
* properties:
* name: examplesqlroledef
* resourceGroupName: ${example.name}
* accountName: ${exampleAccount.name}
* type: CustomRole
* assignableScopes:
* - ${exampleAccount.id}
* permissions:
* - dataActions:
* - Microsoft.DocumentDB/databaseAccounts/sqlDatabases/containers/items/read
* exampleSqlRoleAssignment:
* type: azure:cosmosdb:SqlRoleAssignment
* name: example
* properties:
* name: 736180af-7fbc-4c7f-9004-22735173c1c3
* resourceGroupName: ${example.name}
* accountName: ${exampleAccount.name}
* roleDefinitionId: ${exampleSqlRoleDefinition.id}
* principalId: ${current.objectId}
* scope: ${exampleAccount.id}
* variables:
* current:
* fn::invoke:
* Function: azure:core:getClientConfig
* Arguments: {}
* ```
*
* ## Import
* Cosmos DB SQL Role Assignments can be imported using the `resource id`, e.g.
* ```sh
* $ pulumi import azure:cosmosdb/sqlRoleAssignment:SqlRoleAssignment example /subscriptions/00000000-0000-0000-0000-000000000000/resourceGroups/group1/providers/Microsoft.DocumentDB/databaseAccounts/account1/sqlRoleAssignments/9e007587-dbcd-4190-84cb-fcab5a09ca39
* ```
*/
public class SqlRoleAssignment internal constructor(
override val javaResource: com.pulumi.azure.cosmosdb.SqlRoleAssignment,
) : KotlinCustomResource(javaResource, SqlRoleAssignmentMapper) {
/**
* The name of the Cosmos DB Account. Changing this forces a new resource to be created.
*/
public val accountName: Output
get() = javaResource.accountName().applyValue({ args0 -> args0 })
/**
* The GUID as the name of the Cosmos DB SQL Role Assignment - one will be generated if not specified. Changing this forces a new resource to be created.
*/
public val name: Output
get() = javaResource.name().applyValue({ args0 -> args0 })
/**
* The ID of the Principal (Client) in Azure Active Directory. Changing this forces a new resource to be created.
*/
public val principalId: Output
get() = javaResource.principalId().applyValue({ args0 -> args0 })
/**
* The name of the Resource Group in which the Cosmos DB SQL Role Assignment is created. Changing this forces a new resource to be created.
*/
public val resourceGroupName: Output
get() = javaResource.resourceGroupName().applyValue({ args0 -> args0 })
/**
* The resource ID of the Cosmos DB SQL Role Definition.
*/
public val roleDefinitionId: Output
get() = javaResource.roleDefinitionId().applyValue({ args0 -> args0 })
/**
* The data plane resource path for which access is being granted through this Cosmos DB SQL Role Assignment. Changing this forces a new resource to be created.
*/
public val scope: Output
get() = javaResource.scope().applyValue({ args0 -> args0 })
}
public object SqlRoleAssignmentMapper : ResourceMapper {
override fun supportsMappingOfType(javaResource: Resource): Boolean =
com.pulumi.azure.cosmosdb.SqlRoleAssignment::class == javaResource::class
override fun map(javaResource: Resource): SqlRoleAssignment = SqlRoleAssignment(
javaResource as
com.pulumi.azure.cosmosdb.SqlRoleAssignment,
)
}
/**
* @see [SqlRoleAssignment].
* @param name The _unique_ name of the resulting resource.
* @param block Builder for [SqlRoleAssignment].
*/
public suspend fun sqlRoleAssignment(
name: String,
block: suspend SqlRoleAssignmentResourceBuilder.() -> Unit,
): SqlRoleAssignment {
val builder = SqlRoleAssignmentResourceBuilder()
builder.name(name)
block(builder)
return builder.build()
}
/**
* @see [SqlRoleAssignment].
* @param name The _unique_ name of the resulting resource.
*/
public fun sqlRoleAssignment(name: String): SqlRoleAssignment {
val builder = SqlRoleAssignmentResourceBuilder()
builder.name(name)
return builder.build()
}
© 2015 - 2025 Weber Informatics LLC | Privacy Policy