software.amazon.awssdk.services.iam.model.CreateRoleRequest Maven / Gradle / Ivy
/*
* Copyright 2015-2020 Amazon.com, Inc. or its affiliates. All Rights Reserved.
*
* Licensed under the Apache License, Version 2.0 (the "License"). You may not use this file except in compliance with
* the License. A copy of the License is located at
*
* http://aws.amazon.com/apache2.0
*
* or in the "license" file accompanying this file. This file is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR
* CONDITIONS OF ANY KIND, either express or implied. See the License for the specific language governing permissions
* and limitations under the License.
*/
package software.amazon.awssdk.services.iam.model;
import java.util.Arrays;
import java.util.Collection;
import java.util.Collections;
import java.util.List;
import java.util.Objects;
import java.util.Optional;
import java.util.function.BiConsumer;
import java.util.function.Consumer;
import java.util.function.Function;
import java.util.stream.Collectors;
import java.util.stream.Stream;
import software.amazon.awssdk.annotations.Generated;
import software.amazon.awssdk.awscore.AwsRequestOverrideConfiguration;
import software.amazon.awssdk.core.SdkField;
import software.amazon.awssdk.core.SdkPojo;
import software.amazon.awssdk.core.protocol.MarshallLocation;
import software.amazon.awssdk.core.protocol.MarshallingType;
import software.amazon.awssdk.core.traits.ListTrait;
import software.amazon.awssdk.core.traits.LocationTrait;
import software.amazon.awssdk.core.util.DefaultSdkAutoConstructList;
import software.amazon.awssdk.core.util.SdkAutoConstructList;
import software.amazon.awssdk.utils.ToString;
import software.amazon.awssdk.utils.builder.CopyableBuilder;
import software.amazon.awssdk.utils.builder.ToCopyableBuilder;
/**
*/
@Generated("software.amazon.awssdk:codegen")
public final class CreateRoleRequest extends IamRequest implements
ToCopyableBuilder {
private static final SdkField PATH_FIELD = SdkField. builder(MarshallingType.STRING)
.getter(getter(CreateRoleRequest::path)).setter(setter(Builder::path))
.traits(LocationTrait.builder().location(MarshallLocation.PAYLOAD).locationName("Path").build()).build();
private static final SdkField ROLE_NAME_FIELD = SdkField. builder(MarshallingType.STRING)
.getter(getter(CreateRoleRequest::roleName)).setter(setter(Builder::roleName))
.traits(LocationTrait.builder().location(MarshallLocation.PAYLOAD).locationName("RoleName").build()).build();
private static final SdkField ASSUME_ROLE_POLICY_DOCUMENT_FIELD = SdkField. builder(MarshallingType.STRING)
.getter(getter(CreateRoleRequest::assumeRolePolicyDocument)).setter(setter(Builder::assumeRolePolicyDocument))
.traits(LocationTrait.builder().location(MarshallLocation.PAYLOAD).locationName("AssumeRolePolicyDocument").build())
.build();
private static final SdkField DESCRIPTION_FIELD = SdkField. builder(MarshallingType.STRING)
.getter(getter(CreateRoleRequest::description)).setter(setter(Builder::description))
.traits(LocationTrait.builder().location(MarshallLocation.PAYLOAD).locationName("Description").build()).build();
private static final SdkField MAX_SESSION_DURATION_FIELD = SdkField. builder(MarshallingType.INTEGER)
.getter(getter(CreateRoleRequest::maxSessionDuration)).setter(setter(Builder::maxSessionDuration))
.traits(LocationTrait.builder().location(MarshallLocation.PAYLOAD).locationName("MaxSessionDuration").build())
.build();
private static final SdkField PERMISSIONS_BOUNDARY_FIELD = SdkField. builder(MarshallingType.STRING)
.getter(getter(CreateRoleRequest::permissionsBoundary)).setter(setter(Builder::permissionsBoundary))
.traits(LocationTrait.builder().location(MarshallLocation.PAYLOAD).locationName("PermissionsBoundary").build())
.build();
private static final SdkField> TAGS_FIELD = SdkField
.> builder(MarshallingType.LIST)
.getter(getter(CreateRoleRequest::tags))
.setter(setter(Builder::tags))
.traits(LocationTrait.builder().location(MarshallLocation.PAYLOAD).locationName("Tags").build(),
ListTrait
.builder()
.memberLocationName(null)
.memberFieldInfo(
SdkField. builder(MarshallingType.SDK_POJO)
.constructor(Tag::builder)
.traits(LocationTrait.builder().location(MarshallLocation.PAYLOAD)
.locationName("member").build()).build()).build()).build();
private static final List> SDK_FIELDS = Collections.unmodifiableList(Arrays.asList(PATH_FIELD, ROLE_NAME_FIELD,
ASSUME_ROLE_POLICY_DOCUMENT_FIELD, DESCRIPTION_FIELD, MAX_SESSION_DURATION_FIELD, PERMISSIONS_BOUNDARY_FIELD,
TAGS_FIELD));
private final String path;
private final String roleName;
private final String assumeRolePolicyDocument;
private final String description;
private final Integer maxSessionDuration;
private final String permissionsBoundary;
private final List tags;
private CreateRoleRequest(BuilderImpl builder) {
super(builder);
this.path = builder.path;
this.roleName = builder.roleName;
this.assumeRolePolicyDocument = builder.assumeRolePolicyDocument;
this.description = builder.description;
this.maxSessionDuration = builder.maxSessionDuration;
this.permissionsBoundary = builder.permissionsBoundary;
this.tags = builder.tags;
}
/**
*
* The path to the role. For more information about paths, see IAM Identifiers in the IAM
* User Guide.
*
*
* This parameter is optional. If it is not included, it defaults to a slash (/).
*
*
* This parameter allows (through its regex pattern) a string of
* characters consisting of either a forward slash (/) by itself or a string that must begin and end with forward
* slashes. In addition, it can contain any ASCII character from the ! (\u0021) through the DEL character (\u007F),
* including most punctuation characters, digits, and upper and lowercased letters.
*
*
* @return The path to the role. For more information about paths, see IAM Identifiers in the
* IAM User Guide.
*
* This parameter is optional. If it is not included, it defaults to a slash (/).
*
*
* This parameter allows (through its regex pattern) a string
* of characters consisting of either a forward slash (/) by itself or a string that must begin and end with
* forward slashes. In addition, it can contain any ASCII character from the ! (\u0021) through the DEL
* character (\u007F), including most punctuation characters, digits, and upper and lowercased letters.
*/
public String path() {
return path;
}
/**
*
* The name of the role to create.
*
*
* IAM user, group, role, and policy names must be unique within the account. Names are not distinguished by case.
* For example, you cannot create resources named both "MyResource" and "myresource".
*
*
* @return The name of the role to create.
*
* IAM user, group, role, and policy names must be unique within the account. Names are not distinguished by
* case. For example, you cannot create resources named both "MyResource" and "myresource".
*/
public String roleName() {
return roleName;
}
/**
*
* The trust relationship policy document that grants an entity permission to assume the role.
*
*
* In IAM, you must provide a JSON policy that has been converted to a string. However, for AWS CloudFormation
* templates formatted in YAML, you can provide the policy in JSON or YAML format. AWS CloudFormation always
* converts a YAML policy to JSON format before submitting it to IAM.
*
*
* The regex pattern used to validate this parameter is a string of
* characters consisting of the following:
*
*
* -
*
* Any printable ASCII character ranging from the space character ( ) through the end of the ASCII character range
*
*
* -
*
* The printable characters in the Basic Latin and Latin-1 Supplement character set (through \u00FF)
*
*
* -
*
* The special characters tab ( ), line feed ( ), and carriage return ( )
*
*
*
*
* Upon success, the response includes the same trust policy in JSON format.
*
*
* @return The trust relationship policy document that grants an entity permission to assume the role.
*
* In IAM, you must provide a JSON policy that has been converted to a string. However, for AWS
* CloudFormation templates formatted in YAML, you can provide the policy in JSON or YAML format. AWS
* CloudFormation always converts a YAML policy to JSON format before submitting it to IAM.
*
*
* The regex pattern used to validate this parameter is a
* string of characters consisting of the following:
*
*
* -
*
* Any printable ASCII character ranging from the space character ( ) through the end of the ASCII character
* range
*
*
* -
*
* The printable characters in the Basic Latin and Latin-1 Supplement character set (through \u00FF)
*
*
* -
*
* The special characters tab ( ), line feed ( ), and carriage return ( )
*
*
*
*
* Upon success, the response includes the same trust policy in JSON format.
*/
public String assumeRolePolicyDocument() {
return assumeRolePolicyDocument;
}
/**
*
* A description of the role.
*
*
* @return A description of the role.
*/
public String description() {
return description;
}
/**
*
* The maximum session duration (in seconds) that you want to set for the specified role. If you do not specify a
* value for this setting, the default maximum of one hour is applied. This setting can have a value from 1 hour to
* 12 hours.
*
*
* Anyone who assumes the role from the AWS CLI or API can use the DurationSeconds
API parameter or the
* duration-seconds
CLI parameter to request a longer session. The MaxSessionDuration
* setting determines the maximum duration that can be requested using the DurationSeconds
parameter.
* If users don't specify a value for the DurationSeconds
parameter, their security credentials are
* valid for one hour by default. This applies when you use the AssumeRole*
API operations or the
* assume-role*
CLI operations but does not apply when you use those operations to create a console
* URL. For more information, see Using
* IAM Roles in the IAM User Guide.
*
*
* @return The maximum session duration (in seconds) that you want to set for the specified role. If you do not
* specify a value for this setting, the default maximum of one hour is applied. This setting can have a
* value from 1 hour to 12 hours.
*
* Anyone who assumes the role from the AWS CLI or API can use the DurationSeconds
API
* parameter or the duration-seconds
CLI parameter to request a longer session. The
* MaxSessionDuration
setting determines the maximum duration that can be requested using the
* DurationSeconds
parameter. If users don't specify a value for the
* DurationSeconds
parameter, their security credentials are valid for one hour by default.
* This applies when you use the AssumeRole*
API operations or the assume-role*
* CLI operations but does not apply when you use those operations to create a console URL. For more
* information, see Using IAM
* Roles in the IAM User Guide.
*/
public Integer maxSessionDuration() {
return maxSessionDuration;
}
/**
*
* The ARN of the policy that is used to set the permissions boundary for the role.
*
*
* @return The ARN of the policy that is used to set the permissions boundary for the role.
*/
public String permissionsBoundary() {
return permissionsBoundary;
}
/**
* Returns true if the Tags property was specified by the sender (it may be empty), or false if the sender did not
* specify the value (it will be empty). For responses returned by the SDK, the sender is the AWS service.
*/
public boolean hasTags() {
return tags != null && !(tags instanceof SdkAutoConstructList);
}
/**
*
* A list of tags that you want to attach to the newly created role. Each tag consists of a key name and an
* associated value. For more information about tagging, see Tagging IAM Identities in the IAM
* User Guide.
*
*
*
* If any one of the tags is invalid or if you exceed the allowed number of tags per role, then the entire request
* fails and the role is not created.
*
*
*
* Attempts to modify the collection returned by this method will result in an UnsupportedOperationException.
*
*
* You can use {@link #hasTags()} to see if a value was sent in this field.
*
*
* @return A list of tags that you want to attach to the newly created role. Each tag consists of a key name and an
* associated value. For more information about tagging, see Tagging IAM Identities in the
* IAM User Guide.
*
* If any one of the tags is invalid or if you exceed the allowed number of tags per role, then the entire
* request fails and the role is not created.
*
*/
public List tags() {
return tags;
}
@Override
public Builder toBuilder() {
return new BuilderImpl(this);
}
public static Builder builder() {
return new BuilderImpl();
}
public static Class extends Builder> serializableBuilderClass() {
return BuilderImpl.class;
}
@Override
public int hashCode() {
int hashCode = 1;
hashCode = 31 * hashCode + super.hashCode();
hashCode = 31 * hashCode + Objects.hashCode(path());
hashCode = 31 * hashCode + Objects.hashCode(roleName());
hashCode = 31 * hashCode + Objects.hashCode(assumeRolePolicyDocument());
hashCode = 31 * hashCode + Objects.hashCode(description());
hashCode = 31 * hashCode + Objects.hashCode(maxSessionDuration());
hashCode = 31 * hashCode + Objects.hashCode(permissionsBoundary());
hashCode = 31 * hashCode + Objects.hashCode(tags());
return hashCode;
}
@Override
public boolean equals(Object obj) {
return super.equals(obj) && equalsBySdkFields(obj);
}
@Override
public boolean equalsBySdkFields(Object obj) {
if (this == obj) {
return true;
}
if (obj == null) {
return false;
}
if (!(obj instanceof CreateRoleRequest)) {
return false;
}
CreateRoleRequest other = (CreateRoleRequest) obj;
return Objects.equals(path(), other.path()) && Objects.equals(roleName(), other.roleName())
&& Objects.equals(assumeRolePolicyDocument(), other.assumeRolePolicyDocument())
&& Objects.equals(description(), other.description())
&& Objects.equals(maxSessionDuration(), other.maxSessionDuration())
&& Objects.equals(permissionsBoundary(), other.permissionsBoundary()) && Objects.equals(tags(), other.tags());
}
/**
* Returns a string representation of this object. This is useful for testing and debugging. Sensitive data will be
* redacted from this string using a placeholder value.
*/
@Override
public String toString() {
return ToString.builder("CreateRoleRequest").add("Path", path()).add("RoleName", roleName())
.add("AssumeRolePolicyDocument", assumeRolePolicyDocument()).add("Description", description())
.add("MaxSessionDuration", maxSessionDuration()).add("PermissionsBoundary", permissionsBoundary())
.add("Tags", tags()).build();
}
public Optional getValueForField(String fieldName, Class clazz) {
switch (fieldName) {
case "Path":
return Optional.ofNullable(clazz.cast(path()));
case "RoleName":
return Optional.ofNullable(clazz.cast(roleName()));
case "AssumeRolePolicyDocument":
return Optional.ofNullable(clazz.cast(assumeRolePolicyDocument()));
case "Description":
return Optional.ofNullable(clazz.cast(description()));
case "MaxSessionDuration":
return Optional.ofNullable(clazz.cast(maxSessionDuration()));
case "PermissionsBoundary":
return Optional.ofNullable(clazz.cast(permissionsBoundary()));
case "Tags":
return Optional.ofNullable(clazz.cast(tags()));
default:
return Optional.empty();
}
}
@Override
public List> sdkFields() {
return SDK_FIELDS;
}
private static Function