aws_sdk_secretsmanager/operation/
validate_resource_policy.rs1#[derive(::std::clone::Clone, ::std::default::Default, ::std::fmt::Debug)]
4#[non_exhaustive]
5pub struct ValidateResourcePolicy;
6impl ValidateResourcePolicy {
7 pub fn new() -> Self {
9 Self
10 }
11 pub(crate) async fn orchestrate(
12 runtime_plugins: &::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
13 input: crate::operation::validate_resource_policy::ValidateResourcePolicyInput,
14 ) -> ::std::result::Result<
15 crate::operation::validate_resource_policy::ValidateResourcePolicyOutput,
16 ::aws_smithy_runtime_api::client::result::SdkError<
17 crate::operation::validate_resource_policy::ValidateResourcePolicyError,
18 ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
19 >,
20 > {
21 let map_err = |err: ::aws_smithy_runtime_api::client::result::SdkError<
22 ::aws_smithy_runtime_api::client::interceptors::context::Error,
23 ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
24 >| {
25 err.map_service_error(|err| {
26 err.downcast::<crate::operation::validate_resource_policy::ValidateResourcePolicyError>()
27 .expect("correct error type")
28 })
29 };
30 let context = Self::orchestrate_with_stop_point(runtime_plugins, input, ::aws_smithy_runtime::client::orchestrator::StopPoint::None)
31 .await
32 .map_err(map_err)?;
33 let output = context.finalize().map_err(map_err)?;
34 ::std::result::Result::Ok(
35 output
36 .downcast::<crate::operation::validate_resource_policy::ValidateResourcePolicyOutput>()
37 .expect("correct output type"),
38 )
39 }
40
41 pub(crate) async fn orchestrate_with_stop_point(
42 runtime_plugins: &::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
43 input: crate::operation::validate_resource_policy::ValidateResourcePolicyInput,
44 stop_point: ::aws_smithy_runtime::client::orchestrator::StopPoint,
45 ) -> ::std::result::Result<
46 ::aws_smithy_runtime_api::client::interceptors::context::InterceptorContext,
47 ::aws_smithy_runtime_api::client::result::SdkError<
48 ::aws_smithy_runtime_api::client::interceptors::context::Error,
49 ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
50 >,
51 > {
52 let input = ::aws_smithy_runtime_api::client::interceptors::context::Input::erase(input);
53 use ::tracing::Instrument;
54 ::aws_smithy_runtime::client::orchestrator::invoke_with_stop_point(
55 "Secrets Manager",
56 "ValidateResourcePolicy",
57 input,
58 runtime_plugins,
59 stop_point,
60 )
61 .instrument(::tracing::debug_span!(
64 "Secrets Manager.ValidateResourcePolicy",
65 "rpc.service" = "Secrets Manager",
66 "rpc.method" = "ValidateResourcePolicy",
67 "sdk_invocation_id" = ::fastrand::u32(1_000_000..10_000_000),
68 "rpc.system" = "aws-api",
69 ))
70 .await
71 }
72
73 pub(crate) fn operation_runtime_plugins(
74 client_runtime_plugins: ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
75 client_config: &crate::config::Config,
76 config_override: ::std::option::Option<crate::config::Builder>,
77 ) -> ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins {
78 let mut runtime_plugins = client_runtime_plugins.with_operation_plugin(Self::new());
79
80 if let ::std::option::Option::Some(config_override) = config_override {
81 for plugin in config_override.runtime_plugins.iter().cloned() {
82 runtime_plugins = runtime_plugins.with_operation_plugin(plugin);
83 }
84 runtime_plugins = runtime_plugins.with_operation_plugin(crate::config::ConfigOverrideRuntimePlugin::new(
85 config_override,
86 client_config.config.clone(),
87 &client_config.runtime_components,
88 ));
89 }
90 runtime_plugins
91 }
92}
93impl ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugin for ValidateResourcePolicy {
94 fn config(&self) -> ::std::option::Option<::aws_smithy_types::config_bag::FrozenLayer> {
95 let mut cfg = ::aws_smithy_types::config_bag::Layer::new("ValidateResourcePolicy");
96
97 cfg.store_put(::aws_smithy_runtime_api::client::ser_de::SharedRequestSerializer::new(
98 ValidateResourcePolicyRequestSerializer,
99 ));
100 cfg.store_put(::aws_smithy_runtime_api::client::ser_de::SharedResponseDeserializer::new(
101 ValidateResourcePolicyResponseDeserializer,
102 ));
103
104 cfg.store_put(::aws_smithy_runtime_api::client::auth::AuthSchemeOptionResolverParams::new(
105 crate::config::auth::Params::builder()
106 .operation_name("ValidateResourcePolicy")
107 .build()
108 .expect("required fields set"),
109 ));
110
111 cfg.store_put(::aws_smithy_runtime_api::client::orchestrator::Metadata::new(
112 "ValidateResourcePolicy",
113 "Secrets Manager",
114 ));
115 let mut signing_options = ::aws_runtime::auth::SigningOptions::default();
116 signing_options.double_uri_encode = true;
117 signing_options.content_sha256_header = false;
118 signing_options.normalize_uri_path = true;
119 signing_options.payload_override = None;
120
121 cfg.store_put(::aws_runtime::auth::SigV4OperationSigningConfig {
122 signing_options,
123 ..::std::default::Default::default()
124 });
125
126 ::std::option::Option::Some(cfg.freeze())
127 }
128
129 fn runtime_components(
130 &self,
131 _: &::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder,
132 ) -> ::std::borrow::Cow<'_, ::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder> {
133 #[allow(unused_mut)]
134 let mut rcb = ::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder::new("ValidateResourcePolicy")
135 .with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(
136 ValidateResourcePolicyTelemetryInputCaptureInterceptor,
137 ))
138 .with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(
139 ::aws_smithy_runtime::client::stalled_stream_protection::StalledStreamProtectionInterceptor::default(),
140 ))
141 .with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(
142 ValidateResourcePolicyEndpointParamsInterceptor,
143 ))
144 .with_retry_classifier(::aws_smithy_runtime::client::retries::classifiers::TransientErrorClassifier::<
145 crate::operation::validate_resource_policy::ValidateResourcePolicyError,
146 >::new())
147 .with_retry_classifier(::aws_smithy_runtime::client::retries::classifiers::ModeledAsRetryableClassifier::<
148 crate::operation::validate_resource_policy::ValidateResourcePolicyError,
149 >::new())
150 .with_retry_classifier(::aws_runtime::retries::classifiers::AwsErrorCodeClassifier::<
151 crate::operation::validate_resource_policy::ValidateResourcePolicyError,
152 >::new())
153 .with_retry_classifier(::aws_runtime::service_clock_skew::ServiceClockSkewClassifier::<
154 crate::operation::validate_resource_policy::ValidateResourcePolicyError,
155 >::new());
156
157 ::std::borrow::Cow::Owned(rcb)
158 }
159}
160
161#[derive(Debug)]
162struct ValidateResourcePolicyTelemetryInputCaptureInterceptor;
163
164#[::aws_smithy_runtime_api::client::interceptors::dyn_dispatch_hint]
165impl ::aws_smithy_runtime_api::client::interceptors::Intercept for ValidateResourcePolicyTelemetryInputCaptureInterceptor {
166 fn name(&self) -> &'static str {
167 "ValidateResourcePolicyTelemetryInputCaptureInterceptor"
168 }
169
170 fn read_before_execution(
171 &self,
172 context: &::aws_smithy_runtime_api::client::interceptors::context::BeforeSerializationInterceptorContextRef<
173 '_,
174 ::aws_smithy_runtime_api::client::interceptors::context::Input,
175 ::aws_smithy_runtime_api::client::interceptors::context::Output,
176 ::aws_smithy_runtime_api::client::interceptors::context::Error,
177 >,
178 cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
179 ) -> ::std::result::Result<(), ::aws_smithy_runtime_api::box_error::BoxError> {
180 let ::std::option::Option::Some(requested) = cfg
182 .load::<::aws_smithy_types::telemetry::RequestedTelemetryAttributes>()
183 .filter(|r| !r.is_empty())
184 else {
185 return ::std::result::Result::Ok(());
186 };
187
188 let ::std::option::Option::Some(input) = context.input().downcast_ref::<ValidateResourcePolicyInput>() else {
189 return ::std::result::Result::Ok(());
191 };
192
193 let mut captured = ::aws_smithy_types::telemetry::CapturedTelemetryAttributes::default();
194 if requested.should_capture("SecretId") {
195 if let ::std::option::Option::Some(value) = input.secret_id.as_deref() {
196 captured.insert("SecretId", value);
197 }
198 }
199 if requested.should_capture("ResourcePolicy") {
200 if let ::std::option::Option::Some(value) = input.resource_policy.as_deref() {
201 captured.insert("ResourcePolicy", value);
202 }
203 }
204
205 cfg.interceptor_state().store_put(captured);
206 ::std::result::Result::Ok(())
207 }
208}
209#[derive(Debug)]
210struct ValidateResourcePolicyResponseDeserializer;
211impl ::aws_smithy_runtime_api::client::ser_de::DeserializeResponse for ValidateResourcePolicyResponseDeserializer {
212 fn deserialize_nonstreaming_with_config(
213 &self,
214 response: &::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
215 _cfg: &::aws_smithy_types::config_bag::ConfigBag,
216 ) -> ::aws_smithy_runtime_api::client::interceptors::context::OutputOrError {
217 let (success, status) = (response.status().is_success(), response.status().as_u16());
218 let headers = response.headers();
219 let body = response.body().bytes().expect("body loaded");
220 #[allow(unused_mut)]
221 let mut force_error = false;
222 ::tracing::debug!(request_id = ?::aws_types::request_id::RequestId::request_id(response));
223 let parse_result = if !success && status != 200 || force_error {
224 crate::protocol_serde::shape_validate_resource_policy::de_validate_resource_policy_http_error(status, headers, body)
225 } else {
226 crate::protocol_serde::shape_validate_resource_policy::de_validate_resource_policy_http_response(status, headers, body)
227 };
228 crate::protocol_serde::type_erase_result(parse_result)
229 }
230}
231#[derive(Debug)]
232struct ValidateResourcePolicyRequestSerializer;
233impl ::aws_smithy_runtime_api::client::ser_de::SerializeRequest for ValidateResourcePolicyRequestSerializer {
234 #[allow(unused_mut, clippy::let_and_return, clippy::needless_borrow, clippy::useless_conversion)]
235 fn serialize_input(
236 &self,
237 input: ::aws_smithy_runtime_api::client::interceptors::context::Input,
238 _cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
239 ) -> ::std::result::Result<::aws_smithy_runtime_api::client::orchestrator::HttpRequest, ::aws_smithy_runtime_api::box_error::BoxError> {
240 let input = input
241 .downcast::<crate::operation::validate_resource_policy::ValidateResourcePolicyInput>()
242 .expect("correct type");
243 let _header_serialization_settings = _cfg
244 .load::<crate::serialization_settings::HeaderSerializationSettings>()
245 .cloned()
246 .unwrap_or_default();
247 let mut request_builder = {
248 #[allow(clippy::uninlined_format_args)]
249 fn uri_base(
250 _input: &crate::operation::validate_resource_policy::ValidateResourcePolicyInput,
251 output: &mut ::std::string::String,
252 ) -> ::std::result::Result<(), ::aws_smithy_types::error::operation::BuildError> {
253 use ::std::fmt::Write as _;
254 ::std::write!(output, "/").expect("formatting should succeed");
255 ::std::result::Result::Ok(())
256 }
257 #[allow(clippy::unnecessary_wraps)]
258 fn update_http_builder(
259 input: &crate::operation::validate_resource_policy::ValidateResourcePolicyInput,
260 builder: ::http_1x::request::Builder,
261 ) -> ::std::result::Result<::http_1x::request::Builder, ::aws_smithy_types::error::operation::BuildError> {
262 let mut uri = ::std::string::String::new();
263 uri_base(input, &mut uri)?;
264 ::std::result::Result::Ok(builder.method("POST").uri(uri))
265 }
266 let mut builder = update_http_builder(&input, ::http_1x::request::Builder::new())?;
267 builder = _header_serialization_settings.set_default_header(builder, ::http_1x::header::CONTENT_TYPE, "application/x-amz-json-1.1");
268 builder = _header_serialization_settings.set_default_header(
269 builder,
270 ::http_1x::header::HeaderName::from_static("x-amz-target"),
271 "secretsmanager.ValidateResourcePolicy",
272 );
273 builder
274 };
275 let body = ::aws_smithy_types::body::SdkBody::from(
276 crate::protocol_serde::shape_validate_resource_policy::ser_validate_resource_policy_input(&input)?,
277 );
278 if let Some(content_length) = body.content_length() {
279 let content_length = content_length.to_string();
280 request_builder = _header_serialization_settings.set_default_header(request_builder, ::http_1x::header::CONTENT_LENGTH, &content_length);
281 }
282 ::std::result::Result::Ok(request_builder.body(body).expect("valid request").try_into().unwrap())
283 }
284}
285#[derive(Debug)]
286struct ValidateResourcePolicyEndpointParamsInterceptor;
287
288#[::aws_smithy_runtime_api::client::interceptors::dyn_dispatch_hint]
289impl ::aws_smithy_runtime_api::client::interceptors::Intercept for ValidateResourcePolicyEndpointParamsInterceptor {
290 fn name(&self) -> &'static str {
291 "ValidateResourcePolicyEndpointParamsInterceptor"
292 }
293
294 fn read_before_execution(
295 &self,
296 context: &::aws_smithy_runtime_api::client::interceptors::context::BeforeSerializationInterceptorContextRef<
297 '_,
298 ::aws_smithy_runtime_api::client::interceptors::context::Input,
299 ::aws_smithy_runtime_api::client::interceptors::context::Output,
300 ::aws_smithy_runtime_api::client::interceptors::context::Error,
301 >,
302 cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
303 ) -> ::std::result::Result<(), ::aws_smithy_runtime_api::box_error::BoxError> {
304 let _input = context
305 .input()
306 .downcast_ref::<ValidateResourcePolicyInput>()
307 .ok_or("failed to downcast to ValidateResourcePolicyInput")?;
308
309 let params = crate::config::endpoint::Params::builder()
310 .set_region(cfg.load::<::aws_types::region::Region>().map(|r| r.as_ref().to_owned()))
311 .set_use_dual_stack(cfg.load::<::aws_types::endpoint_config::UseDualStack>().map(|ty| ty.0))
312 .set_use_fips(cfg.load::<::aws_types::endpoint_config::UseFips>().map(|ty| ty.0))
313 .set_endpoint(cfg.load::<::aws_types::endpoint_config::EndpointUrl>().map(|ty| ty.0.clone()))
314 .build()
315 .map_err(|err| {
316 ::aws_smithy_runtime_api::client::interceptors::error::ContextAttachedError::new("endpoint params could not be built", err)
317 })?;
318 cfg.interceptor_state()
319 .store_put(::aws_smithy_runtime_api::client::endpoint::EndpointResolverParams::new(params));
320 ::std::result::Result::Ok(())
321 }
322}
323
324#[non_exhaustive]
329#[derive(::std::fmt::Debug)]
330pub enum ValidateResourcePolicyError {
331 InternalServiceError(crate::types::error::InternalServiceError),
333 InvalidParameterException(crate::types::error::InvalidParameterException),
335 InvalidRequestException(crate::types::error::InvalidRequestException),
346 MalformedPolicyDocumentException(crate::types::error::MalformedPolicyDocumentException),
348 ResourceNotFoundException(crate::types::error::ResourceNotFoundException),
350 #[deprecated(note = "Matching `Unhandled` directly is not forwards compatible. Instead, match using a \
352 variable wildcard pattern and check `.code()`:
353 \
354 `err if err.code() == Some(\"SpecificExceptionCode\") => { /* handle the error */ }`
355 \
356 See [`ProvideErrorMetadata`](#impl-ProvideErrorMetadata-for-ValidateResourcePolicyError) for what information is available for the error.")]
357 Unhandled(crate::error::sealed_unhandled::Unhandled),
358}
359impl ValidateResourcePolicyError {
360 pub fn unhandled(
362 err: impl ::std::convert::Into<::std::boxed::Box<dyn ::std::error::Error + ::std::marker::Send + ::std::marker::Sync + 'static>>,
363 ) -> Self {
364 Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
365 source: err.into(),
366 meta: ::std::default::Default::default(),
367 })
368 }
369
370 pub fn generic(err: ::aws_smithy_types::error::ErrorMetadata) -> Self {
372 Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
373 source: err.clone().into(),
374 meta: err,
375 })
376 }
377 pub fn meta(&self) -> &::aws_smithy_types::error::ErrorMetadata {
382 match self {
383 Self::InternalServiceError(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
384 Self::InvalidParameterException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
385 Self::InvalidRequestException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
386 Self::MalformedPolicyDocumentException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
387 Self::ResourceNotFoundException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
388 Self::Unhandled(e) => &e.meta,
389 }
390 }
391 pub fn is_internal_service_error(&self) -> bool {
393 matches!(self, Self::InternalServiceError(_))
394 }
395 pub fn is_invalid_parameter_exception(&self) -> bool {
397 matches!(self, Self::InvalidParameterException(_))
398 }
399 pub fn is_invalid_request_exception(&self) -> bool {
401 matches!(self, Self::InvalidRequestException(_))
402 }
403 pub fn is_malformed_policy_document_exception(&self) -> bool {
405 matches!(self, Self::MalformedPolicyDocumentException(_))
406 }
407 pub fn is_resource_not_found_exception(&self) -> bool {
409 matches!(self, Self::ResourceNotFoundException(_))
410 }
411}
412impl ::std::error::Error for ValidateResourcePolicyError {
413 fn source(&self) -> ::std::option::Option<&(dyn ::std::error::Error + 'static)> {
414 match self {
415 Self::InternalServiceError(_inner) => ::std::option::Option::Some(_inner),
416 Self::InvalidParameterException(_inner) => ::std::option::Option::Some(_inner),
417 Self::InvalidRequestException(_inner) => ::std::option::Option::Some(_inner),
418 Self::MalformedPolicyDocumentException(_inner) => ::std::option::Option::Some(_inner),
419 Self::ResourceNotFoundException(_inner) => ::std::option::Option::Some(_inner),
420 Self::Unhandled(_inner) => ::std::option::Option::Some(&*_inner.source),
421 }
422 }
423}
424impl ::std::fmt::Display for ValidateResourcePolicyError {
425 fn fmt(&self, f: &mut ::std::fmt::Formatter<'_>) -> ::std::fmt::Result {
426 match self {
427 Self::InternalServiceError(_inner) => _inner.fmt(f),
428 Self::InvalidParameterException(_inner) => _inner.fmt(f),
429 Self::InvalidRequestException(_inner) => _inner.fmt(f),
430 Self::MalformedPolicyDocumentException(_inner) => _inner.fmt(f),
431 Self::ResourceNotFoundException(_inner) => _inner.fmt(f),
432 Self::Unhandled(_inner) => {
433 if let ::std::option::Option::Some(code) = ::aws_smithy_types::error::metadata::ProvideErrorMetadata::code(self) {
434 write!(f, "unhandled error ({code})")
435 } else {
436 f.write_str("unhandled error")
437 }
438 }
439 }
440 }
441}
442impl ::aws_smithy_types::retry::ProvideErrorKind for ValidateResourcePolicyError {
443 fn code(&self) -> ::std::option::Option<&str> {
444 ::aws_smithy_types::error::metadata::ProvideErrorMetadata::code(self)
445 }
446 fn retryable_error_kind(&self) -> ::std::option::Option<::aws_smithy_types::retry::ErrorKind> {
447 ::std::option::Option::None
448 }
449}
450impl ::aws_smithy_types::error::metadata::ProvideErrorMetadata for ValidateResourcePolicyError {
451 fn meta(&self) -> &::aws_smithy_types::error::ErrorMetadata {
452 match self {
453 Self::InternalServiceError(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
454 Self::InvalidParameterException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
455 Self::InvalidRequestException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
456 Self::MalformedPolicyDocumentException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
457 Self::ResourceNotFoundException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
458 Self::Unhandled(_inner) => &_inner.meta,
459 }
460 }
461}
462impl ::aws_smithy_runtime_api::client::result::CreateUnhandledError for ValidateResourcePolicyError {
463 fn create_unhandled_error(
464 source: ::std::boxed::Box<dyn ::std::error::Error + ::std::marker::Send + ::std::marker::Sync + 'static>,
465 meta: ::std::option::Option<::aws_smithy_types::error::ErrorMetadata>,
466 ) -> Self {
467 Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
468 source,
469 meta: meta.unwrap_or_default(),
470 })
471 }
472}
473impl ::aws_types::request_id::RequestId for crate::operation::validate_resource_policy::ValidateResourcePolicyError {
474 fn request_id(&self) -> Option<&str> {
475 self.meta().request_id()
476 }
477}
478
479pub use crate::operation::validate_resource_policy::_validate_resource_policy_input::ValidateResourcePolicyInput;
480
481pub use crate::operation::validate_resource_policy::_validate_resource_policy_output::ValidateResourcePolicyOutput;
482
483mod _validate_resource_policy_input;
484
485mod _validate_resource_policy_output;
486
487pub mod builders;