Class IAMRolesAnywhereCredentialProvider
java.lang.Object
com.google.protobuf.AbstractMessageLite
com.google.protobuf.AbstractMessage
com.google.protobuf.GeneratedMessageV3
io.envoyproxy.envoy.extensions.common.aws.v3.IAMRolesAnywhereCredentialProvider
- All Implemented Interfaces:
com.google.protobuf.Message,com.google.protobuf.MessageLite,com.google.protobuf.MessageLiteOrBuilder,com.google.protobuf.MessageOrBuilder,IAMRolesAnywhereCredentialProviderOrBuilder,Serializable
public final class IAMRolesAnywhereCredentialProvider
extends com.google.protobuf.GeneratedMessageV3
implements IAMRolesAnywhereCredentialProviderOrBuilder
Configuration to use `IAM Roles Anywhere <https://docs.aws.amazon.com/rolesanywhere/latest/userguide/introduction.html>`_ to retrieve AWS credentials. [#next-free-field: 9]Protobuf type
envoy.extensions.common.aws.v3.IAMRolesAnywhereCredentialProvider- See Also:
-
Nested Class Summary
Nested ClassesModifier and TypeClassDescriptionstatic final classConfiguration to use `IAM Roles Anywhere <https://docs.aws.amazon.com/rolesanywhere/latest/userguide/introduction.html>`_ to retrieve AWS credentials.Nested classes/interfaces inherited from class com.google.protobuf.GeneratedMessageV3
com.google.protobuf.GeneratedMessageV3.BuilderParent, com.google.protobuf.GeneratedMessageV3.ExtendableBuilder<MessageT extends com.google.protobuf.GeneratedMessageV3.ExtendableMessage<MessageT>,BuilderT extends com.google.protobuf.GeneratedMessageV3.ExtendableBuilder<MessageT, BuilderT>>, com.google.protobuf.GeneratedMessageV3.ExtendableMessage<MessageT extends com.google.protobuf.GeneratedMessageV3.ExtendableMessage<MessageT>>, com.google.protobuf.GeneratedMessageV3.ExtendableMessageOrBuilder<MessageT extends com.google.protobuf.GeneratedMessageV3.ExtendableMessage<MessageT>>, com.google.protobuf.GeneratedMessageV3.FieldAccessorTable, com.google.protobuf.GeneratedMessageV3.UnusedPrivateParameter Nested classes/interfaces inherited from class com.google.protobuf.AbstractMessageLite
com.google.protobuf.AbstractMessageLite.InternalOneOfEnum -
Field Summary
FieldsModifier and TypeFieldDescriptionstatic final intstatic final intstatic final intstatic final intstatic final intstatic final intstatic final intstatic final intFields inherited from class com.google.protobuf.GeneratedMessageV3
alwaysUseFieldBuilders, unknownFieldsFields inherited from class com.google.protobuf.AbstractMessage
memoizedSizeFields inherited from class com.google.protobuf.AbstractMessageLite
memoizedHashCode -
Method Summary
Modifier and TypeMethodDescriptionbooleanThe certificate used for authenticating to the IAM Roles Anywhere service.The optional certificate chain, required when you are using a subordinate certificate authority for certificate issuance.The optional certificate chain, required when you are using a subordinate certificate authority for certificate issuance.The certificate used for authenticating to the IAM Roles Anywhere service.static final com.google.protobuf.Descriptors.Descriptorcom.google.protobuf.Parser<IAMRolesAnywhereCredentialProvider>The TLS private key matching the certificate provided.The TLS private key matching the certificate provided.The IAM Roles Anywhere profile ARN configured in your AWS account.com.google.protobuf.ByteStringThe IAM Roles Anywhere profile ARN configured in your AWS account.The ARN of the role to assume via the IAM Roles Anywhere sessions API.com.google.protobuf.ByteStringThe ARN of the role to assume via the IAM Roles Anywhere sessions API.An optional role session name, used when identifying the role in subsequent AWS API calls.com.google.protobuf.ByteStringAn optional role session name, used when identifying the role in subsequent AWS API calls.intcom.google.protobuf.DurationAn optional session duration, used when calculating the maximum time before vended credentials expire.com.google.protobuf.DurationOrBuilderAn optional session duration, used when calculating the maximum time before vended credentials expire.The arn of the IAM Roles Anywhere trust anchor configured in your AWS account.com.google.protobuf.ByteStringThe arn of the IAM Roles Anywhere trust anchor configured in your AWS account.booleanThe certificate used for authenticating to the IAM Roles Anywhere service.booleanThe optional certificate chain, required when you are using a subordinate certificate authority for certificate issuance.inthashCode()booleanThe TLS private key matching the certificate provided.booleanAn optional session duration, used when calculating the maximum time before vended credentials expire.protected com.google.protobuf.GeneratedMessageV3.FieldAccessorTablefinal booleannewBuilder(IAMRolesAnywhereCredentialProvider prototype) newBuilderForType(com.google.protobuf.GeneratedMessageV3.BuilderParent parent) protected ObjectnewInstance(com.google.protobuf.GeneratedMessageV3.UnusedPrivateParameter unused) parseDelimitedFrom(InputStream input) parseDelimitedFrom(InputStream input, com.google.protobuf.ExtensionRegistryLite extensionRegistry) parseFrom(byte[] data) parseFrom(byte[] data, com.google.protobuf.ExtensionRegistryLite extensionRegistry) parseFrom(com.google.protobuf.ByteString data) parseFrom(com.google.protobuf.ByteString data, com.google.protobuf.ExtensionRegistryLite extensionRegistry) parseFrom(com.google.protobuf.CodedInputStream input) parseFrom(com.google.protobuf.CodedInputStream input, com.google.protobuf.ExtensionRegistryLite extensionRegistry) parseFrom(InputStream input) parseFrom(InputStream input, com.google.protobuf.ExtensionRegistryLite extensionRegistry) parseFrom(ByteBuffer data) parseFrom(ByteBuffer data, com.google.protobuf.ExtensionRegistryLite extensionRegistry) static com.google.protobuf.Parser<IAMRolesAnywhereCredentialProvider>parser()voidwriteTo(com.google.protobuf.CodedOutputStream output) Methods inherited from class com.google.protobuf.GeneratedMessageV3
canUseUnsafe, computeStringSize, computeStringSizeNoTag, emptyBooleanList, emptyDoubleList, emptyFloatList, emptyIntList, emptyList, emptyLongList, getAllFields, getDescriptorForType, getField, getOneofFieldDescriptor, getRepeatedField, getRepeatedFieldCount, getUnknownFields, hasField, hasOneof, internalGetMapField, internalGetMapFieldReflection, isStringEmpty, makeExtensionsImmutable, makeMutableCopy, makeMutableCopy, mergeFromAndMakeImmutableInternal, mutableCopy, mutableCopy, mutableCopy, mutableCopy, mutableCopy, newBooleanList, newBuilderForType, newDoubleList, newFloatList, newIntList, newLongList, parseDelimitedWithIOException, parseDelimitedWithIOException, parseUnknownField, parseUnknownFieldProto3, parseWithIOException, parseWithIOException, parseWithIOException, parseWithIOException, serializeBooleanMapTo, serializeIntegerMapTo, serializeLongMapTo, serializeStringMapTo, writeReplace, writeString, writeStringNoTagMethods inherited from class com.google.protobuf.AbstractMessage
findInitializationErrors, getInitializationErrorString, hashBoolean, hashEnum, hashEnumList, hashFields, hashLong, toStringMethods inherited from class com.google.protobuf.AbstractMessageLite
addAll, addAll, checkByteStringIsUtf8, toByteArray, toByteString, writeDelimitedTo, writeToMethods inherited from class java.lang.Object
clone, finalize, getClass, notify, notifyAll, wait, wait, waitMethods inherited from interface com.google.protobuf.MessageLite
toByteArray, toByteString, writeDelimitedTo, writeToMethods inherited from interface com.google.protobuf.MessageOrBuilder
findInitializationErrors, getAllFields, getDescriptorForType, getField, getInitializationErrorString, getOneofFieldDescriptor, getRepeatedField, getRepeatedFieldCount, getUnknownFields, hasField, hasOneof
-
Field Details
-
ROLE_ARN_FIELD_NUMBER
public static final int ROLE_ARN_FIELD_NUMBER- See Also:
-
CERTIFICATE_FIELD_NUMBER
public static final int CERTIFICATE_FIELD_NUMBER- See Also:
-
CERTIFICATE_CHAIN_FIELD_NUMBER
public static final int CERTIFICATE_CHAIN_FIELD_NUMBER- See Also:
-
PRIVATE_KEY_FIELD_NUMBER
public static final int PRIVATE_KEY_FIELD_NUMBER- See Also:
-
TRUST_ANCHOR_ARN_FIELD_NUMBER
public static final int TRUST_ANCHOR_ARN_FIELD_NUMBER- See Also:
-
PROFILE_ARN_FIELD_NUMBER
public static final int PROFILE_ARN_FIELD_NUMBER- See Also:
-
ROLE_SESSION_NAME_FIELD_NUMBER
public static final int ROLE_SESSION_NAME_FIELD_NUMBER- See Also:
-
SESSION_DURATION_FIELD_NUMBER
public static final int SESSION_DURATION_FIELD_NUMBER- See Also:
-
-
Method Details
-
newInstance
- Overrides:
newInstancein classcom.google.protobuf.GeneratedMessageV3
-
getDescriptor
public static final com.google.protobuf.Descriptors.Descriptor getDescriptor() -
internalGetFieldAccessorTable
protected com.google.protobuf.GeneratedMessageV3.FieldAccessorTable internalGetFieldAccessorTable()- Specified by:
internalGetFieldAccessorTablein classcom.google.protobuf.GeneratedMessageV3
-
getRoleArn
The ARN of the role to assume via the IAM Roles Anywhere sessions API. See `Configure Roles <https://docs.aws.amazon.com/rolesanywhere/latest/userguide/getting-started.html#getting-started-step2>`_ for more details.
string role_arn = 1 [(.validate.rules) = { ... }- Specified by:
getRoleArnin interfaceIAMRolesAnywhereCredentialProviderOrBuilder- Returns:
- The roleArn.
-
getRoleArnBytes
public com.google.protobuf.ByteString getRoleArnBytes()The ARN of the role to assume via the IAM Roles Anywhere sessions API. See `Configure Roles <https://docs.aws.amazon.com/rolesanywhere/latest/userguide/getting-started.html#getting-started-step2>`_ for more details.
string role_arn = 1 [(.validate.rules) = { ... }- Specified by:
getRoleArnBytesin interfaceIAMRolesAnywhereCredentialProviderOrBuilder- Returns:
- The bytes for roleArn.
-
hasCertificate
public boolean hasCertificate()The certificate used for authenticating to the IAM Roles Anywhere service. This certificate must match one configured in the IAM Roles Anywhere profile. See `Configure Roles <https://docs.aws.amazon.com/rolesanywhere/latest/userguide/getting-started.html#getting-started-step2>`_ for more details.
.envoy.config.core.v3.DataSource certificate = 2 [(.validate.rules) = { ... }- Specified by:
hasCertificatein interfaceIAMRolesAnywhereCredentialProviderOrBuilder- Returns:
- Whether the certificate field is set.
-
getCertificate
The certificate used for authenticating to the IAM Roles Anywhere service. This certificate must match one configured in the IAM Roles Anywhere profile. See `Configure Roles <https://docs.aws.amazon.com/rolesanywhere/latest/userguide/getting-started.html#getting-started-step2>`_ for more details.
.envoy.config.core.v3.DataSource certificate = 2 [(.validate.rules) = { ... }- Specified by:
getCertificatein interfaceIAMRolesAnywhereCredentialProviderOrBuilder- Returns:
- The certificate.
-
getCertificateOrBuilder
The certificate used for authenticating to the IAM Roles Anywhere service. This certificate must match one configured in the IAM Roles Anywhere profile. See `Configure Roles <https://docs.aws.amazon.com/rolesanywhere/latest/userguide/getting-started.html#getting-started-step2>`_ for more details.
.envoy.config.core.v3.DataSource certificate = 2 [(.validate.rules) = { ... }- Specified by:
getCertificateOrBuilderin interfaceIAMRolesAnywhereCredentialProviderOrBuilder
-
hasCertificateChain
public boolean hasCertificateChain()The optional certificate chain, required when you are using a subordinate certificate authority for certificate issuance. A certificate chain can contain a maximum of 5 elements, see `The IAM Roles Anywhere authentication process <https://docs.aws.amazon.com/rolesanywhere/latest/userguide/authentication.html>`_ for more details.
.envoy.config.core.v3.DataSource certificate_chain = 3;- Specified by:
hasCertificateChainin interfaceIAMRolesAnywhereCredentialProviderOrBuilder- Returns:
- Whether the certificateChain field is set.
-
getCertificateChain
The optional certificate chain, required when you are using a subordinate certificate authority for certificate issuance. A certificate chain can contain a maximum of 5 elements, see `The IAM Roles Anywhere authentication process <https://docs.aws.amazon.com/rolesanywhere/latest/userguide/authentication.html>`_ for more details.
.envoy.config.core.v3.DataSource certificate_chain = 3;- Specified by:
getCertificateChainin interfaceIAMRolesAnywhereCredentialProviderOrBuilder- Returns:
- The certificateChain.
-
getCertificateChainOrBuilder
The optional certificate chain, required when you are using a subordinate certificate authority for certificate issuance. A certificate chain can contain a maximum of 5 elements, see `The IAM Roles Anywhere authentication process <https://docs.aws.amazon.com/rolesanywhere/latest/userguide/authentication.html>`_ for more details.
.envoy.config.core.v3.DataSource certificate_chain = 3;- Specified by:
getCertificateChainOrBuilderin interfaceIAMRolesAnywhereCredentialProviderOrBuilder
-
hasPrivateKey
public boolean hasPrivateKey()The TLS private key matching the certificate provided.
.envoy.config.core.v3.DataSource private_key = 4 [(.validate.rules) = { ... }- Specified by:
hasPrivateKeyin interfaceIAMRolesAnywhereCredentialProviderOrBuilder- Returns:
- Whether the privateKey field is set.
-
getPrivateKey
The TLS private key matching the certificate provided.
.envoy.config.core.v3.DataSource private_key = 4 [(.validate.rules) = { ... }- Specified by:
getPrivateKeyin interfaceIAMRolesAnywhereCredentialProviderOrBuilder- Returns:
- The privateKey.
-
getPrivateKeyOrBuilder
The TLS private key matching the certificate provided.
.envoy.config.core.v3.DataSource private_key = 4 [(.validate.rules) = { ... }- Specified by:
getPrivateKeyOrBuilderin interfaceIAMRolesAnywhereCredentialProviderOrBuilder
-
getTrustAnchorArn
The arn of the IAM Roles Anywhere trust anchor configured in your AWS account. A trust anchor in IAM Roles anywhere establishes trust between your certificate authority (CA) and AWS. See `Establish trust <https://docs.aws.amazon.com/rolesanywhere/latest/userguide/getting-started.html#getting-started-step1>`_ for more details.
string trust_anchor_arn = 5 [(.validate.rules) = { ... }- Specified by:
getTrustAnchorArnin interfaceIAMRolesAnywhereCredentialProviderOrBuilder- Returns:
- The trustAnchorArn.
-
getTrustAnchorArnBytes
public com.google.protobuf.ByteString getTrustAnchorArnBytes()The arn of the IAM Roles Anywhere trust anchor configured in your AWS account. A trust anchor in IAM Roles anywhere establishes trust between your certificate authority (CA) and AWS. See `Establish trust <https://docs.aws.amazon.com/rolesanywhere/latest/userguide/getting-started.html#getting-started-step1>`_ for more details.
string trust_anchor_arn = 5 [(.validate.rules) = { ... }- Specified by:
getTrustAnchorArnBytesin interfaceIAMRolesAnywhereCredentialProviderOrBuilder- Returns:
- The bytes for trustAnchorArn.
-
getProfileArn
The IAM Roles Anywhere profile ARN configured in your AWS account.
string profile_arn = 6 [(.validate.rules) = { ... }- Specified by:
getProfileArnin interfaceIAMRolesAnywhereCredentialProviderOrBuilder- Returns:
- The profileArn.
-
getProfileArnBytes
public com.google.protobuf.ByteString getProfileArnBytes()The IAM Roles Anywhere profile ARN configured in your AWS account.
string profile_arn = 6 [(.validate.rules) = { ... }- Specified by:
getProfileArnBytesin interfaceIAMRolesAnywhereCredentialProviderOrBuilder- Returns:
- The bytes for profileArn.
-
getRoleSessionName
An optional role session name, used when identifying the role in subsequent AWS API calls.
string role_session_name = 7;- Specified by:
getRoleSessionNamein interfaceIAMRolesAnywhereCredentialProviderOrBuilder- Returns:
- The roleSessionName.
-
getRoleSessionNameBytes
public com.google.protobuf.ByteString getRoleSessionNameBytes()An optional role session name, used when identifying the role in subsequent AWS API calls.
string role_session_name = 7;- Specified by:
getRoleSessionNameBytesin interfaceIAMRolesAnywhereCredentialProviderOrBuilder- Returns:
- The bytes for roleSessionName.
-
hasSessionDuration
public boolean hasSessionDuration()An optional session duration, used when calculating the maximum time before vended credentials expire. This value cannot exceed the value configured in the IAM Roles Anywhere profile and the resultant session duration is calculate by the formula `here <https://docs.aws.amazon.com/rolesanywhere/latest/userguide/authentication-create-session.html#credentials-object>`_. If no session duration is provided here, the session duration is sourced from the IAM Roles Anywhere profile.
.google.protobuf.Duration session_duration = 8 [(.validate.rules) = { ... }- Specified by:
hasSessionDurationin interfaceIAMRolesAnywhereCredentialProviderOrBuilder- Returns:
- Whether the sessionDuration field is set.
-
getSessionDuration
public com.google.protobuf.Duration getSessionDuration()An optional session duration, used when calculating the maximum time before vended credentials expire. This value cannot exceed the value configured in the IAM Roles Anywhere profile and the resultant session duration is calculate by the formula `here <https://docs.aws.amazon.com/rolesanywhere/latest/userguide/authentication-create-session.html#credentials-object>`_. If no session duration is provided here, the session duration is sourced from the IAM Roles Anywhere profile.
.google.protobuf.Duration session_duration = 8 [(.validate.rules) = { ... }- Specified by:
getSessionDurationin interfaceIAMRolesAnywhereCredentialProviderOrBuilder- Returns:
- The sessionDuration.
-
getSessionDurationOrBuilder
public com.google.protobuf.DurationOrBuilder getSessionDurationOrBuilder()An optional session duration, used when calculating the maximum time before vended credentials expire. This value cannot exceed the value configured in the IAM Roles Anywhere profile and the resultant session duration is calculate by the formula `here <https://docs.aws.amazon.com/rolesanywhere/latest/userguide/authentication-create-session.html#credentials-object>`_. If no session duration is provided here, the session duration is sourced from the IAM Roles Anywhere profile.
.google.protobuf.Duration session_duration = 8 [(.validate.rules) = { ... }- Specified by:
getSessionDurationOrBuilderin interfaceIAMRolesAnywhereCredentialProviderOrBuilder
-
isInitialized
public final boolean isInitialized()- Specified by:
isInitializedin interfacecom.google.protobuf.MessageLiteOrBuilder- Overrides:
isInitializedin classcom.google.protobuf.GeneratedMessageV3
-
writeTo
- Specified by:
writeToin interfacecom.google.protobuf.MessageLite- Overrides:
writeToin classcom.google.protobuf.GeneratedMessageV3- Throws:
IOException
-
getSerializedSize
public int getSerializedSize()- Specified by:
getSerializedSizein interfacecom.google.protobuf.MessageLite- Overrides:
getSerializedSizein classcom.google.protobuf.GeneratedMessageV3
-
equals
- Specified by:
equalsin interfacecom.google.protobuf.Message- Overrides:
equalsin classcom.google.protobuf.AbstractMessage
-
hashCode
public int hashCode()- Specified by:
hashCodein interfacecom.google.protobuf.Message- Overrides:
hashCodein classcom.google.protobuf.AbstractMessage
-
parseFrom
public static IAMRolesAnywhereCredentialProvider parseFrom(ByteBuffer data) throws com.google.protobuf.InvalidProtocolBufferException - Throws:
com.google.protobuf.InvalidProtocolBufferException
-
parseFrom
public static IAMRolesAnywhereCredentialProvider parseFrom(ByteBuffer data, com.google.protobuf.ExtensionRegistryLite extensionRegistry) throws com.google.protobuf.InvalidProtocolBufferException - Throws:
com.google.protobuf.InvalidProtocolBufferException
-
parseFrom
public static IAMRolesAnywhereCredentialProvider parseFrom(com.google.protobuf.ByteString data) throws com.google.protobuf.InvalidProtocolBufferException - Throws:
com.google.protobuf.InvalidProtocolBufferException
-
parseFrom
public static IAMRolesAnywhereCredentialProvider parseFrom(com.google.protobuf.ByteString data, com.google.protobuf.ExtensionRegistryLite extensionRegistry) throws com.google.protobuf.InvalidProtocolBufferException - Throws:
com.google.protobuf.InvalidProtocolBufferException
-
parseFrom
public static IAMRolesAnywhereCredentialProvider parseFrom(byte[] data) throws com.google.protobuf.InvalidProtocolBufferException - Throws:
com.google.protobuf.InvalidProtocolBufferException
-
parseFrom
public static IAMRolesAnywhereCredentialProvider parseFrom(byte[] data, com.google.protobuf.ExtensionRegistryLite extensionRegistry) throws com.google.protobuf.InvalidProtocolBufferException - Throws:
com.google.protobuf.InvalidProtocolBufferException
-
parseFrom
- Throws:
IOException
-
parseFrom
public static IAMRolesAnywhereCredentialProvider parseFrom(InputStream input, com.google.protobuf.ExtensionRegistryLite extensionRegistry) throws IOException - Throws:
IOException
-
parseDelimitedFrom
public static IAMRolesAnywhereCredentialProvider parseDelimitedFrom(InputStream input) throws IOException - Throws:
IOException
-
parseDelimitedFrom
public static IAMRolesAnywhereCredentialProvider parseDelimitedFrom(InputStream input, com.google.protobuf.ExtensionRegistryLite extensionRegistry) throws IOException - Throws:
IOException
-
parseFrom
public static IAMRolesAnywhereCredentialProvider parseFrom(com.google.protobuf.CodedInputStream input) throws IOException - Throws:
IOException
-
parseFrom
public static IAMRolesAnywhereCredentialProvider parseFrom(com.google.protobuf.CodedInputStream input, com.google.protobuf.ExtensionRegistryLite extensionRegistry) throws IOException - Throws:
IOException
-
newBuilderForType
- Specified by:
newBuilderForTypein interfacecom.google.protobuf.Message- Specified by:
newBuilderForTypein interfacecom.google.protobuf.MessageLite
-
newBuilder
-
newBuilder
public static IAMRolesAnywhereCredentialProvider.Builder newBuilder(IAMRolesAnywhereCredentialProvider prototype) -
toBuilder
- Specified by:
toBuilderin interfacecom.google.protobuf.Message- Specified by:
toBuilderin interfacecom.google.protobuf.MessageLite
-
newBuilderForType
protected IAMRolesAnywhereCredentialProvider.Builder newBuilderForType(com.google.protobuf.GeneratedMessageV3.BuilderParent parent) - Specified by:
newBuilderForTypein classcom.google.protobuf.GeneratedMessageV3
-
getDefaultInstance
-
parser
-
getParserForType
- Specified by:
getParserForTypein interfacecom.google.protobuf.Message- Specified by:
getParserForTypein interfacecom.google.protobuf.MessageLite- Overrides:
getParserForTypein classcom.google.protobuf.GeneratedMessageV3
-
getDefaultInstanceForType
- Specified by:
getDefaultInstanceForTypein interfacecom.google.protobuf.MessageLiteOrBuilder- Specified by:
getDefaultInstanceForTypein interfacecom.google.protobuf.MessageOrBuilder
-