Struct aws_sdk_eks::types::AccessEntry
source · #[non_exhaustive]pub struct AccessEntry {
pub cluster_name: Option<String>,
pub principal_arn: Option<String>,
pub kubernetes_groups: Option<Vec<String>>,
pub access_entry_arn: Option<String>,
pub created_at: Option<DateTime>,
pub modified_at: Option<DateTime>,
pub tags: Option<HashMap<String, String>>,
pub username: Option<String>,
pub type: Option<String>,
}
Expand description
An access entry allows an IAM principal (user or role) to access your cluster. Access entries can replace the need to maintain the aws-auth
ConfigMap
for authentication. For more information about access entries, see Access entries in the Amazon EKS User Guide.
Fields (Non-exhaustive)§
This struct is marked as non-exhaustive
Struct { .. }
syntax; cannot be matched against without a wildcard ..
; and struct update syntax will not work.cluster_name: Option<String>
The name of your cluster.
principal_arn: Option<String>
The ARN of the IAM principal for the access entry. If you ever delete the IAM principal with this ARN, the access entry isn't automatically deleted. We recommend that you delete the access entry with an ARN for an IAM principal that you delete. If you don't delete the access entry and ever recreate the IAM principal, even if it has the same ARN, the access entry won't work. This is because even though the ARN is the same for the recreated IAM principal, the roleID
or userID
(you can see this with the Security Token Service GetCallerIdentity
API) is different for the recreated IAM principal than it was for the original IAM principal. Even though you don't see the IAM principal's roleID
or userID
for an access entry, Amazon EKS stores it with the access entry.
kubernetes_groups: Option<Vec<String>>
A name
that you've specified in a Kubernetes RoleBinding
or ClusterRoleBinding
object so that Kubernetes authorizes the principalARN
access to cluster objects.
access_entry_arn: Option<String>
The ARN of the access entry.
created_at: Option<DateTime>
The Unix epoch timestamp at object creation.
modified_at: Option<DateTime>
The Unix epoch timestamp for the last modification to the object.
Metadata that assists with categorization and organization. Each tag consists of a key and an optional value. You define both. Tags don't propagate to any other cluster or Amazon Web Services resources.
username: Option<String>
The name
of a user that can authenticate to your cluster.
type: Option<String>
The type of the access entry.
Implementations§
source§impl AccessEntry
impl AccessEntry
sourcepub fn cluster_name(&self) -> Option<&str>
pub fn cluster_name(&self) -> Option<&str>
The name of your cluster.
sourcepub fn principal_arn(&self) -> Option<&str>
pub fn principal_arn(&self) -> Option<&str>
The ARN of the IAM principal for the access entry. If you ever delete the IAM principal with this ARN, the access entry isn't automatically deleted. We recommend that you delete the access entry with an ARN for an IAM principal that you delete. If you don't delete the access entry and ever recreate the IAM principal, even if it has the same ARN, the access entry won't work. This is because even though the ARN is the same for the recreated IAM principal, the roleID
or userID
(you can see this with the Security Token Service GetCallerIdentity
API) is different for the recreated IAM principal than it was for the original IAM principal. Even though you don't see the IAM principal's roleID
or userID
for an access entry, Amazon EKS stores it with the access entry.
sourcepub fn kubernetes_groups(&self) -> &[String]
pub fn kubernetes_groups(&self) -> &[String]
A name
that you've specified in a Kubernetes RoleBinding
or ClusterRoleBinding
object so that Kubernetes authorizes the principalARN
access to cluster objects.
If no value was sent for this field, a default will be set. If you want to determine if no value was sent, use .kubernetes_groups.is_none()
.
sourcepub fn access_entry_arn(&self) -> Option<&str>
pub fn access_entry_arn(&self) -> Option<&str>
The ARN of the access entry.
sourcepub fn created_at(&self) -> Option<&DateTime>
pub fn created_at(&self) -> Option<&DateTime>
The Unix epoch timestamp at object creation.
sourcepub fn modified_at(&self) -> Option<&DateTime>
pub fn modified_at(&self) -> Option<&DateTime>
The Unix epoch timestamp for the last modification to the object.
Metadata that assists with categorization and organization. Each tag consists of a key and an optional value. You define both. Tags don't propagate to any other cluster or Amazon Web Services resources.
source§impl AccessEntry
impl AccessEntry
sourcepub fn builder() -> AccessEntryBuilder
pub fn builder() -> AccessEntryBuilder
Creates a new builder-style object to manufacture AccessEntry
.
Trait Implementations§
source§impl Clone for AccessEntry
impl Clone for AccessEntry
source§fn clone(&self) -> AccessEntry
fn clone(&self) -> AccessEntry
1.0.0 · source§fn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
source
. Read moresource§impl Debug for AccessEntry
impl Debug for AccessEntry
source§impl PartialEq for AccessEntry
impl PartialEq for AccessEntry
source§fn eq(&self, other: &AccessEntry) -> bool
fn eq(&self, other: &AccessEntry) -> bool
self
and other
values to be equal, and is used
by ==
.impl StructuralPartialEq for AccessEntry
Auto Trait Implementations§
impl Freeze for AccessEntry
impl RefUnwindSafe for AccessEntry
impl Send for AccessEntry
impl Sync for AccessEntry
impl Unpin for AccessEntry
impl UnwindSafe for AccessEntry
Blanket Implementations§
source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
source§impl<T> Instrument for T
impl<T> Instrument for T
source§fn instrument(self, span: Span) -> Instrumented<Self>
fn instrument(self, span: Span) -> Instrumented<Self>
source§fn in_current_span(self) -> Instrumented<Self>
fn in_current_span(self) -> Instrumented<Self>
source§impl<T> IntoEither for T
impl<T> IntoEither for T
source§fn into_either(self, into_left: bool) -> Either<Self, Self>
fn into_either(self, into_left: bool) -> Either<Self, Self>
self
into a Left
variant of Either<Self, Self>
if into_left
is true
.
Converts self
into a Right
variant of Either<Self, Self>
otherwise. Read moresource§fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
self
into a Left
variant of Either<Self, Self>
if into_left(&self)
returns true
.
Converts self
into a Right
variant of Either<Self, Self>
otherwise. Read more