Skip to main content

aws_sdk_kms/operation/
create_custom_key_store.rs

1// Code generated by software.amazon.smithy.rust.codegen.smithy-rs. DO NOT EDIT.
2/// Orchestration and serialization glue logic for `CreateCustomKeyStore`.
3#[derive(::std::clone::Clone, ::std::default::Default, ::std::fmt::Debug)]
4#[non_exhaustive]
5pub struct CreateCustomKeyStore;
6impl CreateCustomKeyStore {
7    /// Creates a new `CreateCustomKeyStore`
8    pub fn new() -> Self {
9        Self
10    }
11    pub(crate) async fn orchestrate(
12        runtime_plugins: &::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
13        input: crate::operation::create_custom_key_store::CreateCustomKeyStoreInput,
14    ) -> ::std::result::Result<
15        crate::operation::create_custom_key_store::CreateCustomKeyStoreOutput,
16        ::aws_smithy_runtime_api::client::result::SdkError<
17            crate::operation::create_custom_key_store::CreateCustomKeyStoreError,
18            ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
19        >,
20    > {
21        let map_err = |err: ::aws_smithy_runtime_api::client::result::SdkError<
22            ::aws_smithy_runtime_api::client::interceptors::context::Error,
23            ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
24        >| {
25            err.map_service_error(|err| {
26                err.downcast::<crate::operation::create_custom_key_store::CreateCustomKeyStoreError>()
27                    .expect("correct error type")
28            })
29        };
30        let context = Self::orchestrate_with_stop_point(runtime_plugins, input, ::aws_smithy_runtime::client::orchestrator::StopPoint::None)
31            .await
32            .map_err(map_err)?;
33        let output = context.finalize().map_err(map_err)?;
34        ::std::result::Result::Ok(
35            output
36                .downcast::<crate::operation::create_custom_key_store::CreateCustomKeyStoreOutput>()
37                .expect("correct output type"),
38        )
39    }
40
41    pub(crate) async fn orchestrate_with_stop_point(
42        runtime_plugins: &::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
43        input: crate::operation::create_custom_key_store::CreateCustomKeyStoreInput,
44        stop_point: ::aws_smithy_runtime::client::orchestrator::StopPoint,
45    ) -> ::std::result::Result<
46        ::aws_smithy_runtime_api::client::interceptors::context::InterceptorContext,
47        ::aws_smithy_runtime_api::client::result::SdkError<
48            ::aws_smithy_runtime_api::client::interceptors::context::Error,
49            ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
50        >,
51    > {
52        let input = ::aws_smithy_runtime_api::client::interceptors::context::Input::erase(input);
53        use ::tracing::Instrument;
54        ::aws_smithy_runtime::client::orchestrator::invoke_with_stop_point("KMS", "CreateCustomKeyStore", input, runtime_plugins, stop_point)
55            // Create a parent span for the entire operation. Includes a random, internal-only,
56            // seven-digit ID for the operation orchestration so that it can be correlated in the logs.
57            .instrument(::tracing::debug_span!(
58                "KMS.CreateCustomKeyStore",
59                "rpc.service" = "KMS",
60                "rpc.method" = "CreateCustomKeyStore",
61                "sdk_invocation_id" = ::fastrand::u32(1_000_000..10_000_000),
62                "rpc.system" = "aws-api",
63            ))
64            .await
65    }
66
67    pub(crate) fn operation_runtime_plugins(
68        client_runtime_plugins: ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
69        client_config: &crate::config::Config,
70        config_override: ::std::option::Option<crate::config::Builder>,
71    ) -> ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins {
72        let mut runtime_plugins = client_runtime_plugins.with_operation_plugin(Self::new());
73
74        if let ::std::option::Option::Some(config_override) = config_override {
75            for plugin in config_override.runtime_plugins.iter().cloned() {
76                runtime_plugins = runtime_plugins.with_operation_plugin(plugin);
77            }
78            runtime_plugins = runtime_plugins.with_operation_plugin(crate::config::ConfigOverrideRuntimePlugin::new(
79                config_override,
80                client_config.config.clone(),
81                &client_config.runtime_components,
82            ));
83        }
84        runtime_plugins
85    }
86}
87impl ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugin for CreateCustomKeyStore {
88    fn config(&self) -> ::std::option::Option<::aws_smithy_types::config_bag::FrozenLayer> {
89        let mut cfg = ::aws_smithy_types::config_bag::Layer::new("CreateCustomKeyStore");
90
91        cfg.store_put(::aws_smithy_runtime_api::client::ser_de::SharedRequestSerializer::new(
92            CreateCustomKeyStoreRequestSerializer,
93        ));
94        cfg.store_put(::aws_smithy_runtime_api::client::ser_de::SharedResponseDeserializer::new(
95            CreateCustomKeyStoreResponseDeserializer,
96        ));
97
98        cfg.store_put(::aws_smithy_runtime_api::client::auth::AuthSchemeOptionResolverParams::new(
99            crate::config::auth::Params::builder()
100                .operation_name("CreateCustomKeyStore")
101                .build()
102                .expect("required fields set"),
103        ));
104
105        cfg.store_put(::aws_smithy_runtime_api::client::orchestrator::Metadata::new(
106            "CreateCustomKeyStore",
107            "KMS",
108        ));
109        let mut signing_options = ::aws_runtime::auth::SigningOptions::default();
110        signing_options.double_uri_encode = true;
111        signing_options.content_sha256_header = false;
112        signing_options.normalize_uri_path = true;
113        signing_options.payload_override = None;
114
115        cfg.store_put(::aws_runtime::auth::SigV4OperationSigningConfig {
116            signing_options,
117            ..::std::default::Default::default()
118        });
119
120        ::std::option::Option::Some(cfg.freeze())
121    }
122
123    fn runtime_components(
124        &self,
125        _: &::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder,
126    ) -> ::std::borrow::Cow<'_, ::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder> {
127        #[allow(unused_mut)]
128        let mut rcb = ::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder::new("CreateCustomKeyStore")
129            .with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(
130                ::aws_smithy_runtime::client::stalled_stream_protection::StalledStreamProtectionInterceptor::default(),
131            ))
132            .with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(
133                CreateCustomKeyStoreEndpointParamsInterceptor,
134            ))
135            .with_retry_classifier(::aws_smithy_runtime::client::retries::classifiers::TransientErrorClassifier::<
136                crate::operation::create_custom_key_store::CreateCustomKeyStoreError,
137            >::new())
138            .with_retry_classifier(::aws_smithy_runtime::client::retries::classifiers::ModeledAsRetryableClassifier::<
139                crate::operation::create_custom_key_store::CreateCustomKeyStoreError,
140            >::new())
141            .with_retry_classifier(::aws_runtime::retries::classifiers::AwsErrorCodeClassifier::<
142                crate::operation::create_custom_key_store::CreateCustomKeyStoreError,
143            >::new());
144
145        ::std::borrow::Cow::Owned(rcb)
146    }
147}
148
149#[derive(Debug)]
150struct CreateCustomKeyStoreResponseDeserializer;
151impl ::aws_smithy_runtime_api::client::ser_de::DeserializeResponse for CreateCustomKeyStoreResponseDeserializer {
152    fn deserialize_nonstreaming_with_config(
153        &self,
154        response: &::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
155        _cfg: &::aws_smithy_types::config_bag::ConfigBag,
156    ) -> ::aws_smithy_runtime_api::client::interceptors::context::OutputOrError {
157        let (success, status) = (response.status().is_success(), response.status().as_u16());
158        let headers = response.headers();
159        let body = response.body().bytes().expect("body loaded");
160        #[allow(unused_mut)]
161        let mut force_error = false;
162        ::tracing::debug!(request_id = ?::aws_types::request_id::RequestId::request_id(response));
163        let parse_result = if !success && status != 200 || force_error {
164            crate::protocol_serde::shape_create_custom_key_store::de_create_custom_key_store_http_error(status, headers, body)
165        } else {
166            crate::protocol_serde::shape_create_custom_key_store::de_create_custom_key_store_http_response(status, headers, body)
167        };
168        crate::protocol_serde::type_erase_result(parse_result)
169    }
170}
171#[derive(Debug)]
172struct CreateCustomKeyStoreRequestSerializer;
173impl ::aws_smithy_runtime_api::client::ser_de::SerializeRequest for CreateCustomKeyStoreRequestSerializer {
174    #[allow(unused_mut, clippy::let_and_return, clippy::needless_borrow, clippy::useless_conversion)]
175    fn serialize_input(
176        &self,
177        input: ::aws_smithy_runtime_api::client::interceptors::context::Input,
178        _cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
179    ) -> ::std::result::Result<::aws_smithy_runtime_api::client::orchestrator::HttpRequest, ::aws_smithy_runtime_api::box_error::BoxError> {
180        let input = input
181            .downcast::<crate::operation::create_custom_key_store::CreateCustomKeyStoreInput>()
182            .expect("correct type");
183        let _header_serialization_settings = _cfg
184            .load::<crate::serialization_settings::HeaderSerializationSettings>()
185            .cloned()
186            .unwrap_or_default();
187        let mut request_builder = {
188            #[allow(clippy::uninlined_format_args)]
189            fn uri_base(
190                _input: &crate::operation::create_custom_key_store::CreateCustomKeyStoreInput,
191                output: &mut ::std::string::String,
192            ) -> ::std::result::Result<(), ::aws_smithy_types::error::operation::BuildError> {
193                use ::std::fmt::Write as _;
194                ::std::write!(output, "/").expect("formatting should succeed");
195                ::std::result::Result::Ok(())
196            }
197            #[allow(clippy::unnecessary_wraps)]
198            fn update_http_builder(
199                input: &crate::operation::create_custom_key_store::CreateCustomKeyStoreInput,
200                builder: ::http_1x::request::Builder,
201            ) -> ::std::result::Result<::http_1x::request::Builder, ::aws_smithy_types::error::operation::BuildError> {
202                let mut uri = ::std::string::String::new();
203                uri_base(input, &mut uri)?;
204                ::std::result::Result::Ok(builder.method("POST").uri(uri))
205            }
206            let mut builder = update_http_builder(&input, ::http_1x::request::Builder::new())?;
207            builder = _header_serialization_settings.set_default_header(builder, ::http_1x::header::CONTENT_TYPE, "application/x-amz-json-1.1");
208            builder = _header_serialization_settings.set_default_header(
209                builder,
210                ::http_1x::header::HeaderName::from_static("x-amz-target"),
211                "TrentService.CreateCustomKeyStore",
212            );
213            builder
214        };
215        let body = ::aws_smithy_types::body::SdkBody::from(crate::protocol_serde::shape_create_custom_key_store::ser_create_custom_key_store_input(
216            &input,
217        )?);
218        if let Some(content_length) = body.content_length() {
219            let content_length = content_length.to_string();
220            request_builder = _header_serialization_settings.set_default_header(request_builder, ::http_1x::header::CONTENT_LENGTH, &content_length);
221        }
222        ::std::result::Result::Ok(request_builder.body(body).expect("valid request").try_into().unwrap())
223    }
224}
225#[derive(Debug)]
226struct CreateCustomKeyStoreEndpointParamsInterceptor;
227
228#[::aws_smithy_runtime_api::client::interceptors::dyn_dispatch_hint]
229impl ::aws_smithy_runtime_api::client::interceptors::Intercept for CreateCustomKeyStoreEndpointParamsInterceptor {
230    fn name(&self) -> &'static str {
231        "CreateCustomKeyStoreEndpointParamsInterceptor"
232    }
233
234    fn read_before_execution(
235        &self,
236        context: &::aws_smithy_runtime_api::client::interceptors::context::BeforeSerializationInterceptorContextRef<
237            '_,
238            ::aws_smithy_runtime_api::client::interceptors::context::Input,
239            ::aws_smithy_runtime_api::client::interceptors::context::Output,
240            ::aws_smithy_runtime_api::client::interceptors::context::Error,
241        >,
242        cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
243    ) -> ::std::result::Result<(), ::aws_smithy_runtime_api::box_error::BoxError> {
244        let _input = context
245            .input()
246            .downcast_ref::<CreateCustomKeyStoreInput>()
247            .ok_or("failed to downcast to CreateCustomKeyStoreInput")?;
248
249        let params = crate::config::endpoint::Params::builder()
250            .set_region(cfg.load::<::aws_types::region::Region>().map(|r| r.as_ref().to_owned()))
251            .set_use_dual_stack(cfg.load::<::aws_types::endpoint_config::UseDualStack>().map(|ty| ty.0))
252            .set_use_fips(cfg.load::<::aws_types::endpoint_config::UseFips>().map(|ty| ty.0))
253            .set_endpoint(cfg.load::<::aws_types::endpoint_config::EndpointUrl>().map(|ty| ty.0.clone()))
254            .build()
255            .map_err(|err| {
256                ::aws_smithy_runtime_api::client::interceptors::error::ContextAttachedError::new("endpoint params could not be built", err)
257            })?;
258        cfg.interceptor_state()
259            .store_put(::aws_smithy_runtime_api::client::endpoint::EndpointResolverParams::new(params));
260        ::std::result::Result::Ok(())
261    }
262}
263
264// The get_* functions below are generated from JMESPath expressions in the
265// operationContextParams trait. They target the operation's input shape.
266
267/// Error type for the `CreateCustomKeyStoreError` operation.
268#[non_exhaustive]
269#[derive(::std::fmt::Debug)]
270pub enum CreateCustomKeyStoreError {
271    /// <p>The request was rejected because the specified CloudHSM cluster is already associated with an CloudHSM key store in the account, or it shares a backup history with an CloudHSM key store in the account. Each CloudHSM key store in the account must be associated with a different CloudHSM cluster.</p>
272    /// <p>CloudHSM clusters that share a backup history have the same cluster certificate. To view the cluster certificate of an CloudHSM cluster, use the <a href="https://docs.aws.amazon.com/cloudhsm/latest/APIReference/API_DescribeClusters.html">DescribeClusters</a> operation.</p>
273    CloudHsmClusterInUseException(crate::types::error::CloudHsmClusterInUseException),
274    /// <p>The request was rejected because the associated CloudHSM cluster did not meet the configuration requirements for an CloudHSM key store.</p>
275    /// <ul>
276    /// <li>
277    /// <p>The CloudHSM cluster must be configured with private subnets in at least two different Availability Zones in the Region.</p></li>
278    /// <li>
279    /// <p>The <a href="https://docs.aws.amazon.com/cloudhsm/latest/userguide/configure-sg.html">security group for the cluster</a> (cloudhsm-cluster-<i><cluster-id></cluster-id></i>-sg) must include inbound rules and outbound rules that allow TCP traffic on ports 2223-2225. The <b>Source</b> in the inbound rules and the <b>Destination</b> in the outbound rules must match the security group ID. These rules are set by default when you create the CloudHSM cluster. Do not delete or change them. To get information about a particular security group, use the <a href="https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeSecurityGroups.html">DescribeSecurityGroups</a> operation.</p></li>
280    /// <li>
281    /// <p>The CloudHSM cluster must contain at least as many HSMs as the operation requires. To add HSMs, use the CloudHSM <a href="https://docs.aws.amazon.com/cloudhsm/latest/APIReference/API_CreateHsm.html">CreateHsm</a> operation.</p>
282    /// <p>For the <code>CreateCustomKeyStore</code>, <code>UpdateCustomKeyStore</code>, and <code>CreateKey</code> operations, the CloudHSM cluster must have at least two active HSMs, each in a different Availability Zone. For the <code>ConnectCustomKeyStore</code> operation, the CloudHSM must contain at least one active HSM.</p></li>
283    /// </ul>
284    /// <p>For information about the requirements for an CloudHSM cluster that is associated with an CloudHSM key store, see <a href="https://docs.aws.amazon.com/kms/latest/developerguide/create-keystore.html#before-keystore">Assemble the Prerequisites</a> in the <i>Key Management Service Developer Guide</i>. For information about creating a private subnet for an CloudHSM cluster, see <a href="https://docs.aws.amazon.com/cloudhsm/latest/userguide/create-subnets.html">Create a Private Subnet</a> in the <i>CloudHSM User Guide</i>. For information about cluster security groups, see <a href="https://docs.aws.amazon.com/cloudhsm/latest/userguide/configure-sg.html">Configure a Default Security Group</a> in the <i> <i>CloudHSM User Guide</i> </i>.</p>
285    CloudHsmClusterInvalidConfigurationException(crate::types::error::CloudHsmClusterInvalidConfigurationException),
286    /// <p>The request was rejected because the CloudHSM cluster associated with the CloudHSM key store is not active. Initialize and activate the cluster and try the command again. For detailed instructions, see <a href="https://docs.aws.amazon.com/cloudhsm/latest/userguide/getting-started.html">Getting Started</a> in the <i>CloudHSM User Guide</i>.</p>
287    CloudHsmClusterNotActiveException(crate::types::error::CloudHsmClusterNotActiveException),
288    /// <p>The request was rejected because KMS cannot find the CloudHSM cluster with the specified cluster ID. Retry the request with a different cluster ID.</p>
289    CloudHsmClusterNotFoundException(crate::types::error::CloudHsmClusterNotFoundException),
290    /// <p>The request was rejected because the specified custom key store name is already assigned to another custom key store in the account. Try again with a custom key store name that is unique in the account.</p>
291    CustomKeyStoreNameInUseException(crate::types::error::CustomKeyStoreNameInUseException),
292    /// <p>The request was rejected because the trust anchor certificate in the request to create an CloudHSM key store is not the trust anchor certificate for the specified CloudHSM cluster.</p>
293    /// <p>When you <a href="https://docs.aws.amazon.com/cloudhsm/latest/userguide/initialize-cluster.html#sign-csr">initialize the CloudHSM cluster</a>, you create the trust anchor certificate and save it in the <code>customerCA.crt</code> file.</p>
294    IncorrectTrustAnchorException(crate::types::error::IncorrectTrustAnchorException),
295    /// <p>The request was rejected because an internal exception occurred. The request can be retried.</p>
296    KmsInternalException(crate::types::error::KmsInternalException),
297    /// <p>The request was rejected because a length constraint or quota was exceeded. For more information, see <a href="https://docs.aws.amazon.com/kms/latest/developerguide/limits.html">Quotas</a> in the <i>Key Management Service Developer Guide</i>.</p>
298    LimitExceededException(crate::types::error::LimitExceededException),
299    /// <p>The request was rejected because the proxy credentials failed to authenticate to the specified external key store proxy. The specified external key store proxy rejected a status request from KMS due to invalid credentials. This can indicate an error in the credentials or in the identification of the external key store proxy.</p>
300    XksProxyIncorrectAuthenticationCredentialException(crate::types::error::XksProxyIncorrectAuthenticationCredentialException),
301    /// <p>The request was rejected because the external key store proxy is not configured correctly. To identify the cause, see the error message that accompanies the exception.</p>
302    XksProxyInvalidConfigurationException(crate::types::error::XksProxyInvalidConfigurationException),
303    /// <p></p>
304    /// <p>KMS cannot interpret the response it received from the external key store proxy. The problem might be a poorly constructed response, but it could also be a transient network issue. If you see this error repeatedly, report it to the proxy vendor.</p>
305    XksProxyInvalidResponseException(crate::types::error::XksProxyInvalidResponseException),
306    /// <p>The request was rejected because the <code>XksProxyUriEndpoint</code> is already associated with another external key store in this Amazon Web Services Region. To identify the cause, see the error message that accompanies the exception.</p>
307    XksProxyUriEndpointInUseException(crate::types::error::XksProxyUriEndpointInUseException),
308    /// <p>The request was rejected because the concatenation of the <code>XksProxyUriEndpoint</code> and <code>XksProxyUriPath</code> is already associated with another external key store in this Amazon Web Services Region. Each external key store in a Region must use a unique external key store proxy API address.</p>
309    XksProxyUriInUseException(crate::types::error::XksProxyUriInUseException),
310    /// <p>KMS was unable to reach the specified <code>XksProxyUriPath</code>. The path must be reachable before you create the external key store or update its settings.</p>
311    /// <p>This exception is also thrown when the external key store proxy response to a <code>GetHealthStatus</code> request indicates that all external key manager instances are unavailable.</p>
312    XksProxyUriUnreachableException(crate::types::error::XksProxyUriUnreachableException),
313    /// <p>The request was rejected because the specified Amazon VPC endpoint service is already associated with another external key store in this Amazon Web Services Region. Each external key store in a Region must use a different Amazon VPC endpoint service.</p>
314    XksProxyVpcEndpointServiceInUseException(crate::types::error::XksProxyVpcEndpointServiceInUseException),
315    /// <p>The request was rejected because the Amazon VPC endpoint service configuration does not fulfill the requirements for an external key store. To identify the cause, see the error message that accompanies the exception and <a href="https://docs.aws.amazon.com/kms/latest/developerguide/vpc-connectivity.html#xks-vpc-requirements">review the requirements</a> for Amazon VPC endpoint service connectivity for an external key store.</p>
316    XksProxyVpcEndpointServiceInvalidConfigurationException(crate::types::error::XksProxyVpcEndpointServiceInvalidConfigurationException),
317    /// <p>The request was rejected because KMS could not find the specified VPC endpoint service. Use <code>DescribeCustomKeyStores</code> to verify the VPC endpoint service name for the external key store. Also, confirm that the <code>Allow principals</code> list for the VPC endpoint service includes the KMS service principal for the Region, such as <code>cks.kms.us-east-1.amazonaws.com</code>.</p>
318    XksProxyVpcEndpointServiceNotFoundException(crate::types::error::XksProxyVpcEndpointServiceNotFoundException),
319    /// An unexpected error occurred (e.g., invalid JSON returned by the service or an unknown error code).
320    #[deprecated(note = "Matching `Unhandled` directly is not forwards compatible. Instead, match using a \
321    variable wildcard pattern and check `.code()`:
322     \
323    &nbsp;&nbsp;&nbsp;`err if err.code() == Some(\"SpecificExceptionCode\") => { /* handle the error */ }`
324     \
325    See [`ProvideErrorMetadata`](#impl-ProvideErrorMetadata-for-CreateCustomKeyStoreError) for what information is available for the error.")]
326    Unhandled(crate::error::sealed_unhandled::Unhandled),
327}
328impl CreateCustomKeyStoreError {
329    /// Creates the `CreateCustomKeyStoreError::Unhandled` variant from any error type.
330    pub fn unhandled(
331        err: impl ::std::convert::Into<::std::boxed::Box<dyn ::std::error::Error + ::std::marker::Send + ::std::marker::Sync + 'static>>,
332    ) -> Self {
333        Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
334            source: err.into(),
335            meta: ::std::default::Default::default(),
336        })
337    }
338
339    /// Creates the `CreateCustomKeyStoreError::Unhandled` variant from an [`ErrorMetadata`](::aws_smithy_types::error::ErrorMetadata).
340    pub fn generic(err: ::aws_smithy_types::error::ErrorMetadata) -> Self {
341        Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
342            source: err.clone().into(),
343            meta: err,
344        })
345    }
346    ///
347    /// Returns error metadata, which includes the error code, message,
348    /// request ID, and potentially additional information.
349    ///
350    pub fn meta(&self) -> &::aws_smithy_types::error::ErrorMetadata {
351        match self {
352            Self::CloudHsmClusterInUseException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
353            Self::CloudHsmClusterInvalidConfigurationException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
354            Self::CloudHsmClusterNotActiveException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
355            Self::CloudHsmClusterNotFoundException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
356            Self::CustomKeyStoreNameInUseException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
357            Self::IncorrectTrustAnchorException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
358            Self::KmsInternalException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
359            Self::LimitExceededException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
360            Self::XksProxyIncorrectAuthenticationCredentialException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
361            Self::XksProxyInvalidConfigurationException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
362            Self::XksProxyInvalidResponseException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
363            Self::XksProxyUriEndpointInUseException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
364            Self::XksProxyUriInUseException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
365            Self::XksProxyUriUnreachableException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
366            Self::XksProxyVpcEndpointServiceInUseException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
367            Self::XksProxyVpcEndpointServiceInvalidConfigurationException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
368            Self::XksProxyVpcEndpointServiceNotFoundException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
369            Self::Unhandled(e) => &e.meta,
370        }
371    }
372    /// Returns `true` if the error kind is `CreateCustomKeyStoreError::CloudHsmClusterInUseException`.
373    pub fn is_cloud_hsm_cluster_in_use_exception(&self) -> bool {
374        matches!(self, Self::CloudHsmClusterInUseException(_))
375    }
376    /// Returns `true` if the error kind is `CreateCustomKeyStoreError::CloudHsmClusterInvalidConfigurationException`.
377    pub fn is_cloud_hsm_cluster_invalid_configuration_exception(&self) -> bool {
378        matches!(self, Self::CloudHsmClusterInvalidConfigurationException(_))
379    }
380    /// Returns `true` if the error kind is `CreateCustomKeyStoreError::CloudHsmClusterNotActiveException`.
381    pub fn is_cloud_hsm_cluster_not_active_exception(&self) -> bool {
382        matches!(self, Self::CloudHsmClusterNotActiveException(_))
383    }
384    /// Returns `true` if the error kind is `CreateCustomKeyStoreError::CloudHsmClusterNotFoundException`.
385    pub fn is_cloud_hsm_cluster_not_found_exception(&self) -> bool {
386        matches!(self, Self::CloudHsmClusterNotFoundException(_))
387    }
388    /// Returns `true` if the error kind is `CreateCustomKeyStoreError::CustomKeyStoreNameInUseException`.
389    pub fn is_custom_key_store_name_in_use_exception(&self) -> bool {
390        matches!(self, Self::CustomKeyStoreNameInUseException(_))
391    }
392    /// Returns `true` if the error kind is `CreateCustomKeyStoreError::IncorrectTrustAnchorException`.
393    pub fn is_incorrect_trust_anchor_exception(&self) -> bool {
394        matches!(self, Self::IncorrectTrustAnchorException(_))
395    }
396    /// Returns `true` if the error kind is `CreateCustomKeyStoreError::KmsInternalException`.
397    pub fn is_kms_internal_exception(&self) -> bool {
398        matches!(self, Self::KmsInternalException(_))
399    }
400    /// Returns `true` if the error kind is `CreateCustomKeyStoreError::LimitExceededException`.
401    pub fn is_limit_exceeded_exception(&self) -> bool {
402        matches!(self, Self::LimitExceededException(_))
403    }
404    /// Returns `true` if the error kind is `CreateCustomKeyStoreError::XksProxyIncorrectAuthenticationCredentialException`.
405    pub fn is_xks_proxy_incorrect_authentication_credential_exception(&self) -> bool {
406        matches!(self, Self::XksProxyIncorrectAuthenticationCredentialException(_))
407    }
408    /// Returns `true` if the error kind is `CreateCustomKeyStoreError::XksProxyInvalidConfigurationException`.
409    pub fn is_xks_proxy_invalid_configuration_exception(&self) -> bool {
410        matches!(self, Self::XksProxyInvalidConfigurationException(_))
411    }
412    /// Returns `true` if the error kind is `CreateCustomKeyStoreError::XksProxyInvalidResponseException`.
413    pub fn is_xks_proxy_invalid_response_exception(&self) -> bool {
414        matches!(self, Self::XksProxyInvalidResponseException(_))
415    }
416    /// Returns `true` if the error kind is `CreateCustomKeyStoreError::XksProxyUriEndpointInUseException`.
417    pub fn is_xks_proxy_uri_endpoint_in_use_exception(&self) -> bool {
418        matches!(self, Self::XksProxyUriEndpointInUseException(_))
419    }
420    /// Returns `true` if the error kind is `CreateCustomKeyStoreError::XksProxyUriInUseException`.
421    pub fn is_xks_proxy_uri_in_use_exception(&self) -> bool {
422        matches!(self, Self::XksProxyUriInUseException(_))
423    }
424    /// Returns `true` if the error kind is `CreateCustomKeyStoreError::XksProxyUriUnreachableException`.
425    pub fn is_xks_proxy_uri_unreachable_exception(&self) -> bool {
426        matches!(self, Self::XksProxyUriUnreachableException(_))
427    }
428    /// Returns `true` if the error kind is `CreateCustomKeyStoreError::XksProxyVpcEndpointServiceInUseException`.
429    pub fn is_xks_proxy_vpc_endpoint_service_in_use_exception(&self) -> bool {
430        matches!(self, Self::XksProxyVpcEndpointServiceInUseException(_))
431    }
432    /// Returns `true` if the error kind is `CreateCustomKeyStoreError::XksProxyVpcEndpointServiceInvalidConfigurationException`.
433    pub fn is_xks_proxy_vpc_endpoint_service_invalid_configuration_exception(&self) -> bool {
434        matches!(self, Self::XksProxyVpcEndpointServiceInvalidConfigurationException(_))
435    }
436    /// Returns `true` if the error kind is `CreateCustomKeyStoreError::XksProxyVpcEndpointServiceNotFoundException`.
437    pub fn is_xks_proxy_vpc_endpoint_service_not_found_exception(&self) -> bool {
438        matches!(self, Self::XksProxyVpcEndpointServiceNotFoundException(_))
439    }
440}
441impl ::std::error::Error for CreateCustomKeyStoreError {
442    fn source(&self) -> ::std::option::Option<&(dyn ::std::error::Error + 'static)> {
443        match self {
444            Self::CloudHsmClusterInUseException(_inner) => ::std::option::Option::Some(_inner),
445            Self::CloudHsmClusterInvalidConfigurationException(_inner) => ::std::option::Option::Some(_inner),
446            Self::CloudHsmClusterNotActiveException(_inner) => ::std::option::Option::Some(_inner),
447            Self::CloudHsmClusterNotFoundException(_inner) => ::std::option::Option::Some(_inner),
448            Self::CustomKeyStoreNameInUseException(_inner) => ::std::option::Option::Some(_inner),
449            Self::IncorrectTrustAnchorException(_inner) => ::std::option::Option::Some(_inner),
450            Self::KmsInternalException(_inner) => ::std::option::Option::Some(_inner),
451            Self::LimitExceededException(_inner) => ::std::option::Option::Some(_inner),
452            Self::XksProxyIncorrectAuthenticationCredentialException(_inner) => ::std::option::Option::Some(_inner),
453            Self::XksProxyInvalidConfigurationException(_inner) => ::std::option::Option::Some(_inner),
454            Self::XksProxyInvalidResponseException(_inner) => ::std::option::Option::Some(_inner),
455            Self::XksProxyUriEndpointInUseException(_inner) => ::std::option::Option::Some(_inner),
456            Self::XksProxyUriInUseException(_inner) => ::std::option::Option::Some(_inner),
457            Self::XksProxyUriUnreachableException(_inner) => ::std::option::Option::Some(_inner),
458            Self::XksProxyVpcEndpointServiceInUseException(_inner) => ::std::option::Option::Some(_inner),
459            Self::XksProxyVpcEndpointServiceInvalidConfigurationException(_inner) => ::std::option::Option::Some(_inner),
460            Self::XksProxyVpcEndpointServiceNotFoundException(_inner) => ::std::option::Option::Some(_inner),
461            Self::Unhandled(_inner) => ::std::option::Option::Some(&*_inner.source),
462        }
463    }
464}
465impl ::std::fmt::Display for CreateCustomKeyStoreError {
466    fn fmt(&self, f: &mut ::std::fmt::Formatter<'_>) -> ::std::fmt::Result {
467        match self {
468            Self::CloudHsmClusterInUseException(_inner) => _inner.fmt(f),
469            Self::CloudHsmClusterInvalidConfigurationException(_inner) => _inner.fmt(f),
470            Self::CloudHsmClusterNotActiveException(_inner) => _inner.fmt(f),
471            Self::CloudHsmClusterNotFoundException(_inner) => _inner.fmt(f),
472            Self::CustomKeyStoreNameInUseException(_inner) => _inner.fmt(f),
473            Self::IncorrectTrustAnchorException(_inner) => _inner.fmt(f),
474            Self::KmsInternalException(_inner) => _inner.fmt(f),
475            Self::LimitExceededException(_inner) => _inner.fmt(f),
476            Self::XksProxyIncorrectAuthenticationCredentialException(_inner) => _inner.fmt(f),
477            Self::XksProxyInvalidConfigurationException(_inner) => _inner.fmt(f),
478            Self::XksProxyInvalidResponseException(_inner) => _inner.fmt(f),
479            Self::XksProxyUriEndpointInUseException(_inner) => _inner.fmt(f),
480            Self::XksProxyUriInUseException(_inner) => _inner.fmt(f),
481            Self::XksProxyUriUnreachableException(_inner) => _inner.fmt(f),
482            Self::XksProxyVpcEndpointServiceInUseException(_inner) => _inner.fmt(f),
483            Self::XksProxyVpcEndpointServiceInvalidConfigurationException(_inner) => _inner.fmt(f),
484            Self::XksProxyVpcEndpointServiceNotFoundException(_inner) => _inner.fmt(f),
485            Self::Unhandled(_inner) => {
486                if let ::std::option::Option::Some(code) = ::aws_smithy_types::error::metadata::ProvideErrorMetadata::code(self) {
487                    write!(f, "unhandled error ({code})")
488                } else {
489                    f.write_str("unhandled error")
490                }
491            }
492        }
493    }
494}
495impl ::aws_smithy_types::retry::ProvideErrorKind for CreateCustomKeyStoreError {
496    fn code(&self) -> ::std::option::Option<&str> {
497        ::aws_smithy_types::error::metadata::ProvideErrorMetadata::code(self)
498    }
499    fn retryable_error_kind(&self) -> ::std::option::Option<::aws_smithy_types::retry::ErrorKind> {
500        ::std::option::Option::None
501    }
502}
503impl ::aws_smithy_types::error::metadata::ProvideErrorMetadata for CreateCustomKeyStoreError {
504    fn meta(&self) -> &::aws_smithy_types::error::ErrorMetadata {
505        match self {
506            Self::CloudHsmClusterInUseException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
507            Self::CloudHsmClusterInvalidConfigurationException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
508            Self::CloudHsmClusterNotActiveException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
509            Self::CloudHsmClusterNotFoundException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
510            Self::CustomKeyStoreNameInUseException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
511            Self::IncorrectTrustAnchorException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
512            Self::KmsInternalException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
513            Self::LimitExceededException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
514            Self::XksProxyIncorrectAuthenticationCredentialException(_inner) => {
515                ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner)
516            }
517            Self::XksProxyInvalidConfigurationException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
518            Self::XksProxyInvalidResponseException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
519            Self::XksProxyUriEndpointInUseException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
520            Self::XksProxyUriInUseException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
521            Self::XksProxyUriUnreachableException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
522            Self::XksProxyVpcEndpointServiceInUseException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
523            Self::XksProxyVpcEndpointServiceInvalidConfigurationException(_inner) => {
524                ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner)
525            }
526            Self::XksProxyVpcEndpointServiceNotFoundException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
527            Self::Unhandled(_inner) => &_inner.meta,
528        }
529    }
530}
531impl ::aws_smithy_runtime_api::client::result::CreateUnhandledError for CreateCustomKeyStoreError {
532    fn create_unhandled_error(
533        source: ::std::boxed::Box<dyn ::std::error::Error + ::std::marker::Send + ::std::marker::Sync + 'static>,
534        meta: ::std::option::Option<::aws_smithy_types::error::ErrorMetadata>,
535    ) -> Self {
536        Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
537            source,
538            meta: meta.unwrap_or_default(),
539        })
540    }
541}
542impl ::aws_types::request_id::RequestId for crate::operation::create_custom_key_store::CreateCustomKeyStoreError {
543    fn request_id(&self) -> Option<&str> {
544        self.meta().request_id()
545    }
546}
547
548pub use crate::operation::create_custom_key_store::_create_custom_key_store_input::CreateCustomKeyStoreInput;
549
550pub use crate::operation::create_custom_key_store::_create_custom_key_store_output::CreateCustomKeyStoreOutput;
551
552mod _create_custom_key_store_input;
553
554mod _create_custom_key_store_output;
555
556/// Builders
557pub mod builders;