aws_sdk_secretsmanager/operation/
rotate_secret.rs1#[derive(::std::clone::Clone, ::std::default::Default, ::std::fmt::Debug)]
4#[non_exhaustive]
5pub struct RotateSecret;
6impl RotateSecret {
7 pub fn new() -> Self {
9 Self
10 }
11 pub(crate) async fn orchestrate(
12 runtime_plugins: &::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
13 input: crate::operation::rotate_secret::RotateSecretInput,
14 ) -> ::std::result::Result<
15 crate::operation::rotate_secret::RotateSecretOutput,
16 ::aws_smithy_runtime_api::client::result::SdkError<
17 crate::operation::rotate_secret::RotateSecretError,
18 ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
19 >,
20 > {
21 let map_err = |err: ::aws_smithy_runtime_api::client::result::SdkError<
22 ::aws_smithy_runtime_api::client::interceptors::context::Error,
23 ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
24 >| {
25 err.map_service_error(|err| {
26 err.downcast::<crate::operation::rotate_secret::RotateSecretError>()
27 .expect("correct error type")
28 })
29 };
30 let context = Self::orchestrate_with_stop_point(runtime_plugins, input, ::aws_smithy_runtime::client::orchestrator::StopPoint::None)
31 .await
32 .map_err(map_err)?;
33 let output = context.finalize().map_err(map_err)?;
34 ::std::result::Result::Ok(
35 output
36 .downcast::<crate::operation::rotate_secret::RotateSecretOutput>()
37 .expect("correct output type"),
38 )
39 }
40
41 pub(crate) async fn orchestrate_with_stop_point(
42 runtime_plugins: &::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
43 input: crate::operation::rotate_secret::RotateSecretInput,
44 stop_point: ::aws_smithy_runtime::client::orchestrator::StopPoint,
45 ) -> ::std::result::Result<
46 ::aws_smithy_runtime_api::client::interceptors::context::InterceptorContext,
47 ::aws_smithy_runtime_api::client::result::SdkError<
48 ::aws_smithy_runtime_api::client::interceptors::context::Error,
49 ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
50 >,
51 > {
52 let input = ::aws_smithy_runtime_api::client::interceptors::context::Input::erase(input);
53 use ::tracing::Instrument;
54 ::aws_smithy_runtime::client::orchestrator::invoke_with_stop_point("Secrets Manager", "RotateSecret", input, runtime_plugins, stop_point)
55 .instrument(::tracing::debug_span!(
58 "Secrets Manager.RotateSecret",
59 "rpc.service" = "Secrets Manager",
60 "rpc.method" = "RotateSecret",
61 "sdk_invocation_id" = ::fastrand::u32(1_000_000..10_000_000),
62 "rpc.system" = "aws-api",
63 ))
64 .await
65 }
66
67 pub(crate) fn operation_runtime_plugins(
68 client_runtime_plugins: ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
69 client_config: &crate::config::Config,
70 config_override: ::std::option::Option<crate::config::Builder>,
71 ) -> ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins {
72 let mut runtime_plugins = client_runtime_plugins.with_operation_plugin(Self::new());
73 runtime_plugins = runtime_plugins.with_operation_plugin(crate::client_idempotency_token::IdempotencyTokenRuntimePlugin::new(
74 |token_provider, input| {
75 let input: &mut crate::operation::rotate_secret::RotateSecretInput = input.downcast_mut().expect("correct type");
76 if input.client_request_token.is_none() {
77 input.client_request_token = ::std::option::Option::Some(token_provider.make_idempotency_token());
78 }
79 },
80 ));
81 if let ::std::option::Option::Some(config_override) = config_override {
82 for plugin in config_override.runtime_plugins.iter().cloned() {
83 runtime_plugins = runtime_plugins.with_operation_plugin(plugin);
84 }
85 runtime_plugins = runtime_plugins.with_operation_plugin(crate::config::ConfigOverrideRuntimePlugin::new(
86 config_override,
87 client_config.config.clone(),
88 &client_config.runtime_components,
89 ));
90 }
91 runtime_plugins
92 }
93}
94impl ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugin for RotateSecret {
95 fn config(&self) -> ::std::option::Option<::aws_smithy_types::config_bag::FrozenLayer> {
96 let mut cfg = ::aws_smithy_types::config_bag::Layer::new("RotateSecret");
97
98 cfg.store_put(::aws_smithy_runtime_api::client::ser_de::SharedRequestSerializer::new(
99 RotateSecretRequestSerializer,
100 ));
101 cfg.store_put(::aws_smithy_runtime_api::client::ser_de::SharedResponseDeserializer::new(
102 RotateSecretResponseDeserializer,
103 ));
104
105 cfg.store_put(::aws_smithy_runtime_api::client::auth::AuthSchemeOptionResolverParams::new(
106 crate::config::auth::Params::builder()
107 .operation_name("RotateSecret")
108 .build()
109 .expect("required fields set"),
110 ));
111
112 cfg.store_put(::aws_smithy_runtime_api::client::orchestrator::Metadata::new(
113 "RotateSecret",
114 "Secrets Manager",
115 ));
116 let mut signing_options = ::aws_runtime::auth::SigningOptions::default();
117 signing_options.double_uri_encode = true;
118 signing_options.content_sha256_header = false;
119 signing_options.normalize_uri_path = true;
120 signing_options.payload_override = None;
121
122 cfg.store_put(::aws_runtime::auth::SigV4OperationSigningConfig {
123 signing_options,
124 ..::std::default::Default::default()
125 });
126
127 ::std::option::Option::Some(cfg.freeze())
128 }
129
130 fn runtime_components(
131 &self,
132 _: &::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder,
133 ) -> ::std::borrow::Cow<'_, ::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder> {
134 #[allow(unused_mut)]
135 let mut rcb = ::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder::new("RotateSecret")
136 .with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(
137 RotateSecretTelemetryInputCaptureInterceptor,
138 ))
139 .with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(
140 ::aws_smithy_runtime::client::stalled_stream_protection::StalledStreamProtectionInterceptor::default(),
141 ))
142 .with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(
143 RotateSecretEndpointParamsInterceptor,
144 ))
145 .with_retry_classifier(::aws_smithy_runtime::client::retries::classifiers::TransientErrorClassifier::<
146 crate::operation::rotate_secret::RotateSecretError,
147 >::new())
148 .with_retry_classifier(::aws_smithy_runtime::client::retries::classifiers::ModeledAsRetryableClassifier::<
149 crate::operation::rotate_secret::RotateSecretError,
150 >::new())
151 .with_retry_classifier(::aws_runtime::retries::classifiers::AwsErrorCodeClassifier::<
152 crate::operation::rotate_secret::RotateSecretError,
153 >::new())
154 .with_retry_classifier(::aws_runtime::service_clock_skew::ServiceClockSkewClassifier::<
155 crate::operation::rotate_secret::RotateSecretError,
156 >::new());
157
158 ::std::borrow::Cow::Owned(rcb)
159 }
160}
161
162#[derive(Debug)]
163struct RotateSecretTelemetryInputCaptureInterceptor;
164
165#[::aws_smithy_runtime_api::client::interceptors::dyn_dispatch_hint]
166impl ::aws_smithy_runtime_api::client::interceptors::Intercept for RotateSecretTelemetryInputCaptureInterceptor {
167 fn name(&self) -> &'static str {
168 "RotateSecretTelemetryInputCaptureInterceptor"
169 }
170
171 fn read_before_execution(
172 &self,
173 context: &::aws_smithy_runtime_api::client::interceptors::context::BeforeSerializationInterceptorContextRef<
174 '_,
175 ::aws_smithy_runtime_api::client::interceptors::context::Input,
176 ::aws_smithy_runtime_api::client::interceptors::context::Output,
177 ::aws_smithy_runtime_api::client::interceptors::context::Error,
178 >,
179 cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
180 ) -> ::std::result::Result<(), ::aws_smithy_runtime_api::box_error::BoxError> {
181 let ::std::option::Option::Some(requested) = cfg
183 .load::<::aws_smithy_types::telemetry::RequestedTelemetryAttributes>()
184 .filter(|r| !r.is_empty())
185 else {
186 return ::std::result::Result::Ok(());
187 };
188
189 let ::std::option::Option::Some(input) = context.input().downcast_ref::<RotateSecretInput>() else {
190 return ::std::result::Result::Ok(());
192 };
193
194 let mut captured = ::aws_smithy_types::telemetry::CapturedTelemetryAttributes::default();
195 if requested.should_capture("SecretId") {
196 if let ::std::option::Option::Some(value) = input.secret_id.as_deref() {
197 captured.insert("SecretId", value);
198 }
199 }
200 if requested.should_capture("ClientRequestToken") {
201 if let ::std::option::Option::Some(value) = input.client_request_token.as_deref() {
202 captured.insert("ClientRequestToken", value);
203 }
204 }
205 if requested.should_capture("RotationLambdaARN") {
206 if let ::std::option::Option::Some(value) = input.rotation_lambda_arn.as_deref() {
207 captured.insert("RotationLambdaARN", value);
208 }
209 }
210 if requested.should_capture("ExternalSecretRotationRoleArn") {
211 if let ::std::option::Option::Some(value) = input.external_secret_rotation_role_arn.as_deref() {
212 captured.insert("ExternalSecretRotationRoleArn", value);
213 }
214 }
215
216 cfg.interceptor_state().store_put(captured);
217 ::std::result::Result::Ok(())
218 }
219}
220#[derive(Debug)]
221struct RotateSecretResponseDeserializer;
222impl ::aws_smithy_runtime_api::client::ser_de::DeserializeResponse for RotateSecretResponseDeserializer {
223 fn deserialize_nonstreaming_with_config(
224 &self,
225 response: &::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
226 _cfg: &::aws_smithy_types::config_bag::ConfigBag,
227 ) -> ::aws_smithy_runtime_api::client::interceptors::context::OutputOrError {
228 let (success, status) = (response.status().is_success(), response.status().as_u16());
229 let headers = response.headers();
230 let body = response.body().bytes().expect("body loaded");
231 #[allow(unused_mut)]
232 let mut force_error = false;
233 ::tracing::debug!(request_id = ?::aws_types::request_id::RequestId::request_id(response));
234 let parse_result = if !success && status != 200 || force_error {
235 crate::protocol_serde::shape_rotate_secret::de_rotate_secret_http_error(status, headers, body)
236 } else {
237 crate::protocol_serde::shape_rotate_secret::de_rotate_secret_http_response(status, headers, body)
238 };
239 crate::protocol_serde::type_erase_result(parse_result)
240 }
241}
242#[derive(Debug)]
243struct RotateSecretRequestSerializer;
244impl ::aws_smithy_runtime_api::client::ser_de::SerializeRequest for RotateSecretRequestSerializer {
245 #[allow(unused_mut, clippy::let_and_return, clippy::needless_borrow, clippy::useless_conversion)]
246 fn serialize_input(
247 &self,
248 input: ::aws_smithy_runtime_api::client::interceptors::context::Input,
249 _cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
250 ) -> ::std::result::Result<::aws_smithy_runtime_api::client::orchestrator::HttpRequest, ::aws_smithy_runtime_api::box_error::BoxError> {
251 let input = input
252 .downcast::<crate::operation::rotate_secret::RotateSecretInput>()
253 .expect("correct type");
254 let _header_serialization_settings = _cfg
255 .load::<crate::serialization_settings::HeaderSerializationSettings>()
256 .cloned()
257 .unwrap_or_default();
258 let mut request_builder = {
259 #[allow(clippy::uninlined_format_args)]
260 fn uri_base(
261 _input: &crate::operation::rotate_secret::RotateSecretInput,
262 output: &mut ::std::string::String,
263 ) -> ::std::result::Result<(), ::aws_smithy_types::error::operation::BuildError> {
264 use ::std::fmt::Write as _;
265 ::std::write!(output, "/").expect("formatting should succeed");
266 ::std::result::Result::Ok(())
267 }
268 #[allow(clippy::unnecessary_wraps)]
269 fn update_http_builder(
270 input: &crate::operation::rotate_secret::RotateSecretInput,
271 builder: ::http_1x::request::Builder,
272 ) -> ::std::result::Result<::http_1x::request::Builder, ::aws_smithy_types::error::operation::BuildError> {
273 let mut uri = ::std::string::String::new();
274 uri_base(input, &mut uri)?;
275 ::std::result::Result::Ok(builder.method("POST").uri(uri))
276 }
277 let mut builder = update_http_builder(&input, ::http_1x::request::Builder::new())?;
278 builder = _header_serialization_settings.set_default_header(builder, ::http_1x::header::CONTENT_TYPE, "application/x-amz-json-1.1");
279 builder = _header_serialization_settings.set_default_header(
280 builder,
281 ::http_1x::header::HeaderName::from_static("x-amz-target"),
282 "secretsmanager.RotateSecret",
283 );
284 builder
285 };
286 let body = ::aws_smithy_types::body::SdkBody::from(crate::protocol_serde::shape_rotate_secret::ser_rotate_secret_input(&input)?);
287 if let Some(content_length) = body.content_length() {
288 let content_length = content_length.to_string();
289 request_builder = _header_serialization_settings.set_default_header(request_builder, ::http_1x::header::CONTENT_LENGTH, &content_length);
290 }
291 ::std::result::Result::Ok(request_builder.body(body).expect("valid request").try_into().unwrap())
292 }
293}
294#[derive(Debug)]
295struct RotateSecretEndpointParamsInterceptor;
296
297#[::aws_smithy_runtime_api::client::interceptors::dyn_dispatch_hint]
298impl ::aws_smithy_runtime_api::client::interceptors::Intercept for RotateSecretEndpointParamsInterceptor {
299 fn name(&self) -> &'static str {
300 "RotateSecretEndpointParamsInterceptor"
301 }
302
303 fn read_before_execution(
304 &self,
305 context: &::aws_smithy_runtime_api::client::interceptors::context::BeforeSerializationInterceptorContextRef<
306 '_,
307 ::aws_smithy_runtime_api::client::interceptors::context::Input,
308 ::aws_smithy_runtime_api::client::interceptors::context::Output,
309 ::aws_smithy_runtime_api::client::interceptors::context::Error,
310 >,
311 cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
312 ) -> ::std::result::Result<(), ::aws_smithy_runtime_api::box_error::BoxError> {
313 let _input = context
314 .input()
315 .downcast_ref::<RotateSecretInput>()
316 .ok_or("failed to downcast to RotateSecretInput")?;
317
318 let params = crate::config::endpoint::Params::builder()
319 .set_region(cfg.load::<::aws_types::region::Region>().map(|r| r.as_ref().to_owned()))
320 .set_use_dual_stack(cfg.load::<::aws_types::endpoint_config::UseDualStack>().map(|ty| ty.0))
321 .set_use_fips(cfg.load::<::aws_types::endpoint_config::UseFips>().map(|ty| ty.0))
322 .set_endpoint(cfg.load::<::aws_types::endpoint_config::EndpointUrl>().map(|ty| ty.0.clone()))
323 .build()
324 .map_err(|err| {
325 ::aws_smithy_runtime_api::client::interceptors::error::ContextAttachedError::new("endpoint params could not be built", err)
326 })?;
327 cfg.interceptor_state()
328 .store_put(::aws_smithy_runtime_api::client::endpoint::EndpointResolverParams::new(params));
329 ::std::result::Result::Ok(())
330 }
331}
332
333#[non_exhaustive]
338#[derive(::std::fmt::Debug)]
339pub enum RotateSecretError {
340 InternalServiceError(crate::types::error::InternalServiceError),
342 InvalidParameterException(crate::types::error::InvalidParameterException),
344 InvalidRequestException(crate::types::error::InvalidRequestException),
355 ResourceNotFoundException(crate::types::error::ResourceNotFoundException),
357 #[deprecated(note = "Matching `Unhandled` directly is not forwards compatible. Instead, match using a \
359 variable wildcard pattern and check `.code()`:
360 \
361 `err if err.code() == Some(\"SpecificExceptionCode\") => { /* handle the error */ }`
362 \
363 See [`ProvideErrorMetadata`](#impl-ProvideErrorMetadata-for-RotateSecretError) for what information is available for the error.")]
364 Unhandled(crate::error::sealed_unhandled::Unhandled),
365}
366impl RotateSecretError {
367 pub fn unhandled(
369 err: impl ::std::convert::Into<::std::boxed::Box<dyn ::std::error::Error + ::std::marker::Send + ::std::marker::Sync + 'static>>,
370 ) -> Self {
371 Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
372 source: err.into(),
373 meta: ::std::default::Default::default(),
374 })
375 }
376
377 pub fn generic(err: ::aws_smithy_types::error::ErrorMetadata) -> Self {
379 Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
380 source: err.clone().into(),
381 meta: err,
382 })
383 }
384 pub fn meta(&self) -> &::aws_smithy_types::error::ErrorMetadata {
389 match self {
390 Self::InternalServiceError(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
391 Self::InvalidParameterException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
392 Self::InvalidRequestException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
393 Self::ResourceNotFoundException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
394 Self::Unhandled(e) => &e.meta,
395 }
396 }
397 pub fn is_internal_service_error(&self) -> bool {
399 matches!(self, Self::InternalServiceError(_))
400 }
401 pub fn is_invalid_parameter_exception(&self) -> bool {
403 matches!(self, Self::InvalidParameterException(_))
404 }
405 pub fn is_invalid_request_exception(&self) -> bool {
407 matches!(self, Self::InvalidRequestException(_))
408 }
409 pub fn is_resource_not_found_exception(&self) -> bool {
411 matches!(self, Self::ResourceNotFoundException(_))
412 }
413}
414impl ::std::error::Error for RotateSecretError {
415 fn source(&self) -> ::std::option::Option<&(dyn ::std::error::Error + 'static)> {
416 match self {
417 Self::InternalServiceError(_inner) => ::std::option::Option::Some(_inner),
418 Self::InvalidParameterException(_inner) => ::std::option::Option::Some(_inner),
419 Self::InvalidRequestException(_inner) => ::std::option::Option::Some(_inner),
420 Self::ResourceNotFoundException(_inner) => ::std::option::Option::Some(_inner),
421 Self::Unhandled(_inner) => ::std::option::Option::Some(&*_inner.source),
422 }
423 }
424}
425impl ::std::fmt::Display for RotateSecretError {
426 fn fmt(&self, f: &mut ::std::fmt::Formatter<'_>) -> ::std::fmt::Result {
427 match self {
428 Self::InternalServiceError(_inner) => _inner.fmt(f),
429 Self::InvalidParameterException(_inner) => _inner.fmt(f),
430 Self::InvalidRequestException(_inner) => _inner.fmt(f),
431 Self::ResourceNotFoundException(_inner) => _inner.fmt(f),
432 Self::Unhandled(_inner) => {
433 if let ::std::option::Option::Some(code) = ::aws_smithy_types::error::metadata::ProvideErrorMetadata::code(self) {
434 write!(f, "unhandled error ({code})")
435 } else {
436 f.write_str("unhandled error")
437 }
438 }
439 }
440 }
441}
442impl ::aws_smithy_types::retry::ProvideErrorKind for RotateSecretError {
443 fn code(&self) -> ::std::option::Option<&str> {
444 ::aws_smithy_types::error::metadata::ProvideErrorMetadata::code(self)
445 }
446 fn retryable_error_kind(&self) -> ::std::option::Option<::aws_smithy_types::retry::ErrorKind> {
447 ::std::option::Option::None
448 }
449}
450impl ::aws_smithy_types::error::metadata::ProvideErrorMetadata for RotateSecretError {
451 fn meta(&self) -> &::aws_smithy_types::error::ErrorMetadata {
452 match self {
453 Self::InternalServiceError(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
454 Self::InvalidParameterException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
455 Self::InvalidRequestException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
456 Self::ResourceNotFoundException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
457 Self::Unhandled(_inner) => &_inner.meta,
458 }
459 }
460}
461impl ::aws_smithy_runtime_api::client::result::CreateUnhandledError for RotateSecretError {
462 fn create_unhandled_error(
463 source: ::std::boxed::Box<dyn ::std::error::Error + ::std::marker::Send + ::std::marker::Sync + 'static>,
464 meta: ::std::option::Option<::aws_smithy_types::error::ErrorMetadata>,
465 ) -> Self {
466 Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
467 source,
468 meta: meta.unwrap_or_default(),
469 })
470 }
471}
472impl ::aws_types::request_id::RequestId for crate::operation::rotate_secret::RotateSecretError {
473 fn request_id(&self) -> Option<&str> {
474 self.meta().request_id()
475 }
476}
477
478pub use crate::operation::rotate_secret::_rotate_secret_input::RotateSecretInput;
479
480pub use crate::operation::rotate_secret::_rotate_secret_output::RotateSecretOutput;
481
482mod _rotate_secret_input;
483
484mod _rotate_secret_output;
485
486pub mod builders;