java.lang.Object
com.google.protobuf.AbstractMessageLite.Builder
com.google.protobuf.AbstractMessage.Builder<BuilderT>
com.google.protobuf.GeneratedMessageV3.Builder<Config.Builder>
io.envoyproxy.envoy.extensions.rbac.principals.mtls_authenticated.v3.Config.Builder
All Implemented Interfaces:
com.google.protobuf.Message.Builder, com.google.protobuf.MessageLite.Builder, com.google.protobuf.MessageLiteOrBuilder, com.google.protobuf.MessageOrBuilder, ConfigOrBuilder, Cloneable
Enclosing class:
Config

public static final class Config.Builder extends com.google.protobuf.GeneratedMessageV3.Builder<Config.Builder> implements ConfigOrBuilder
 Authentication attributes for a downstream mTLS connection. All modes require that a peer certificate
 was presented and validated using the ValidationContext in the DownstreamTlsContext configuration.

 If neither field is set, a configuration loading error will be generated. This is so that
 not validating SANs requires an affirmative configuration to disable, to prevent accidentally
 not configuring SAN validation.

 If ``any_validated_client_certificate`` is set in addition to ``san_matcher`` or a future field
 which specifies additional validation, the other field always takes precedence over
 ``any_validated_client_certificate`` and all specified validation is performed.
 
Protobuf type envoy.extensions.rbac.principals.mtls_authenticated.v3.Config
  • Method Details

    • getDescriptor

      public static final com.google.protobuf.Descriptors.Descriptor getDescriptor()
    • internalGetFieldAccessorTable

      protected com.google.protobuf.GeneratedMessageV3.FieldAccessorTable internalGetFieldAccessorTable()
      Specified by:
      internalGetFieldAccessorTable in class com.google.protobuf.GeneratedMessageV3.Builder<Config.Builder>
    • clear

      public Config.Builder clear()
      Specified by:
      clear in interface com.google.protobuf.Message.Builder
      Specified by:
      clear in interface com.google.protobuf.MessageLite.Builder
      Overrides:
      clear in class com.google.protobuf.GeneratedMessageV3.Builder<Config.Builder>
    • getDescriptorForType

      public com.google.protobuf.Descriptors.Descriptor getDescriptorForType()
      Specified by:
      getDescriptorForType in interface com.google.protobuf.Message.Builder
      Specified by:
      getDescriptorForType in interface com.google.protobuf.MessageOrBuilder
      Overrides:
      getDescriptorForType in class com.google.protobuf.GeneratedMessageV3.Builder<Config.Builder>
    • getDefaultInstanceForType

      public Config getDefaultInstanceForType()
      Specified by:
      getDefaultInstanceForType in interface com.google.protobuf.MessageLiteOrBuilder
      Specified by:
      getDefaultInstanceForType in interface com.google.protobuf.MessageOrBuilder
    • build

      public Config build()
      Specified by:
      build in interface com.google.protobuf.Message.Builder
      Specified by:
      build in interface com.google.protobuf.MessageLite.Builder
    • buildPartial

      public Config buildPartial()
      Specified by:
      buildPartial in interface com.google.protobuf.Message.Builder
      Specified by:
      buildPartial in interface com.google.protobuf.MessageLite.Builder
    • clone

      public Config.Builder clone()
      Specified by:
      clone in interface com.google.protobuf.Message.Builder
      Specified by:
      clone in interface com.google.protobuf.MessageLite.Builder
      Overrides:
      clone in class com.google.protobuf.GeneratedMessageV3.Builder<Config.Builder>
    • setField

      public Config.Builder setField(com.google.protobuf.Descriptors.FieldDescriptor field, Object value)
      Specified by:
      setField in interface com.google.protobuf.Message.Builder
      Overrides:
      setField in class com.google.protobuf.GeneratedMessageV3.Builder<Config.Builder>
    • clearField

      public Config.Builder clearField(com.google.protobuf.Descriptors.FieldDescriptor field)
      Specified by:
      clearField in interface com.google.protobuf.Message.Builder
      Overrides:
      clearField in class com.google.protobuf.GeneratedMessageV3.Builder<Config.Builder>
    • clearOneof

      public Config.Builder clearOneof(com.google.protobuf.Descriptors.OneofDescriptor oneof)
      Specified by:
      clearOneof in interface com.google.protobuf.Message.Builder
      Overrides:
      clearOneof in class com.google.protobuf.GeneratedMessageV3.Builder<Config.Builder>
    • setRepeatedField

      public Config.Builder setRepeatedField(com.google.protobuf.Descriptors.FieldDescriptor field, int index, Object value)
      Specified by:
      setRepeatedField in interface com.google.protobuf.Message.Builder
      Overrides:
      setRepeatedField in class com.google.protobuf.GeneratedMessageV3.Builder<Config.Builder>
    • addRepeatedField

      public Config.Builder addRepeatedField(com.google.protobuf.Descriptors.FieldDescriptor field, Object value)
      Specified by:
      addRepeatedField in interface com.google.protobuf.Message.Builder
      Overrides:
      addRepeatedField in class com.google.protobuf.GeneratedMessageV3.Builder<Config.Builder>
    • mergeFrom

      public Config.Builder mergeFrom(com.google.protobuf.Message other)
      Specified by:
      mergeFrom in interface com.google.protobuf.Message.Builder
      Overrides:
      mergeFrom in class com.google.protobuf.AbstractMessage.Builder<Config.Builder>
    • mergeFrom

      public Config.Builder mergeFrom(Config other)
    • isInitialized

      public final boolean isInitialized()
      Specified by:
      isInitialized in interface com.google.protobuf.MessageLiteOrBuilder
      Overrides:
      isInitialized in class com.google.protobuf.GeneratedMessageV3.Builder<Config.Builder>
    • mergeFrom

      public Config.Builder mergeFrom(com.google.protobuf.CodedInputStream input, com.google.protobuf.ExtensionRegistryLite extensionRegistry) throws IOException
      Specified by:
      mergeFrom in interface com.google.protobuf.Message.Builder
      Specified by:
      mergeFrom in interface com.google.protobuf.MessageLite.Builder
      Overrides:
      mergeFrom in class com.google.protobuf.AbstractMessage.Builder<Config.Builder>
      Throws:
      IOException
    • hasSanMatcher

      public boolean hasSanMatcher()
       Specifies a SAN that must be present in the validated peer certificate.
       
      .envoy.extensions.transport_sockets.tls.v3.SubjectAltNameMatcher san_matcher = 1;
      Specified by:
      hasSanMatcher in interface ConfigOrBuilder
      Returns:
      Whether the sanMatcher field is set.
    • getSanMatcher

      public SubjectAltNameMatcher getSanMatcher()
       Specifies a SAN that must be present in the validated peer certificate.
       
      .envoy.extensions.transport_sockets.tls.v3.SubjectAltNameMatcher san_matcher = 1;
      Specified by:
      getSanMatcher in interface ConfigOrBuilder
      Returns:
      The sanMatcher.
    • setSanMatcher

      public Config.Builder setSanMatcher(SubjectAltNameMatcher value)
       Specifies a SAN that must be present in the validated peer certificate.
       
      .envoy.extensions.transport_sockets.tls.v3.SubjectAltNameMatcher san_matcher = 1;
    • setSanMatcher

      public Config.Builder setSanMatcher(SubjectAltNameMatcher.Builder builderForValue)
       Specifies a SAN that must be present in the validated peer certificate.
       
      .envoy.extensions.transport_sockets.tls.v3.SubjectAltNameMatcher san_matcher = 1;
    • mergeSanMatcher

      public Config.Builder mergeSanMatcher(SubjectAltNameMatcher value)
       Specifies a SAN that must be present in the validated peer certificate.
       
      .envoy.extensions.transport_sockets.tls.v3.SubjectAltNameMatcher san_matcher = 1;
    • clearSanMatcher

      public Config.Builder clearSanMatcher()
       Specifies a SAN that must be present in the validated peer certificate.
       
      .envoy.extensions.transport_sockets.tls.v3.SubjectAltNameMatcher san_matcher = 1;
    • getSanMatcherBuilder

      public SubjectAltNameMatcher.Builder getSanMatcherBuilder()
       Specifies a SAN that must be present in the validated peer certificate.
       
      .envoy.extensions.transport_sockets.tls.v3.SubjectAltNameMatcher san_matcher = 1;
    • getSanMatcherOrBuilder

      public SubjectAltNameMatcherOrBuilder getSanMatcherOrBuilder()
       Specifies a SAN that must be present in the validated peer certificate.
       
      .envoy.extensions.transport_sockets.tls.v3.SubjectAltNameMatcher san_matcher = 1;
      Specified by:
      getSanMatcherOrBuilder in interface ConfigOrBuilder
    • getAnyValidatedClientCertificate

      public boolean getAnyValidatedClientCertificate()
       Only require that the peer certificate is present and valid.
       
      bool any_validated_client_certificate = 2;
      Specified by:
      getAnyValidatedClientCertificate in interface ConfigOrBuilder
      Returns:
      The anyValidatedClientCertificate.
    • setAnyValidatedClientCertificate

      public Config.Builder setAnyValidatedClientCertificate(boolean value)
       Only require that the peer certificate is present and valid.
       
      bool any_validated_client_certificate = 2;
      Parameters:
      value - The anyValidatedClientCertificate to set.
      Returns:
      This builder for chaining.
    • clearAnyValidatedClientCertificate

      public Config.Builder clearAnyValidatedClientCertificate()
       Only require that the peer certificate is present and valid.
       
      bool any_validated_client_certificate = 2;
      Returns:
      This builder for chaining.
    • setUnknownFields

      public final Config.Builder setUnknownFields(com.google.protobuf.UnknownFieldSet unknownFields)
      Specified by:
      setUnknownFields in interface com.google.protobuf.Message.Builder
      Overrides:
      setUnknownFields in class com.google.protobuf.GeneratedMessageV3.Builder<Config.Builder>
    • mergeUnknownFields

      public final Config.Builder mergeUnknownFields(com.google.protobuf.UnknownFieldSet unknownFields)
      Specified by:
      mergeUnknownFields in interface com.google.protobuf.Message.Builder
      Overrides:
      mergeUnknownFields in class com.google.protobuf.GeneratedMessageV3.Builder<Config.Builder>