Documentation ¶
Index ¶
- type Binding
- type BindingArgs
- type BindingArray
- type BindingArrayInput
- type BindingArrayOutput
- type BindingInput
- type BindingOutput
- func (o BindingOutput) Condition() ExprPtrOutput
- func (BindingOutput) ElementType() reflect.Type
- func (o BindingOutput) Members() pulumi.StringArrayOutput
- func (o BindingOutput) Role() pulumi.StringPtrOutput
- func (o BindingOutput) ToBindingOutput() BindingOutput
- func (o BindingOutput) ToBindingOutputWithContext(ctx context.Context) BindingOutput
- type BindingResponse
- type BindingResponseArrayOutput
- func (BindingResponseArrayOutput) ElementType() reflect.Type
- func (o BindingResponseArrayOutput) Index(i pulumi.IntInput) BindingResponseOutput
- func (o BindingResponseArrayOutput) ToBindingResponseArrayOutput() BindingResponseArrayOutput
- func (o BindingResponseArrayOutput) ToBindingResponseArrayOutputWithContext(ctx context.Context) BindingResponseArrayOutput
- type BindingResponseOutput
- func (o BindingResponseOutput) Condition() ExprResponseOutput
- func (BindingResponseOutput) ElementType() reflect.Type
- func (o BindingResponseOutput) Members() pulumi.StringArrayOutput
- func (o BindingResponseOutput) Role() pulumi.StringOutput
- func (o BindingResponseOutput) ToBindingResponseOutput() BindingResponseOutput
- func (o BindingResponseOutput) ToBindingResponseOutputWithContext(ctx context.Context) BindingResponseOutput
- type Endpoint
- type EndpointArgs
- type EndpointInput
- type EndpointOutput
- func (o EndpointOutput) Address() pulumi.StringOutput
- func (o EndpointOutput) CreateTime() pulumi.StringOutput
- func (EndpointOutput) ElementType() reflect.Type
- func (o EndpointOutput) EndpointId() pulumi.StringOutput
- func (o EndpointOutput) Location() pulumi.StringOutput
- func (o EndpointOutput) Metadata() pulumi.StringMapOutput
- func (o EndpointOutput) Name() pulumi.StringOutput
- func (o EndpointOutput) NamespaceId() pulumi.StringOutput
- func (o EndpointOutput) Network() pulumi.StringOutput
- func (o EndpointOutput) Port() pulumi.IntOutput
- func (o EndpointOutput) Project() pulumi.StringOutput
- func (o EndpointOutput) ServiceId() pulumi.StringOutput
- func (o EndpointOutput) ToEndpointOutput() EndpointOutput
- func (o EndpointOutput) ToEndpointOutputWithContext(ctx context.Context) EndpointOutput
- func (o EndpointOutput) Uid() pulumi.StringOutput
- func (o EndpointOutput) UpdateTime() pulumi.StringOutput
- type EndpointResponse
- type EndpointResponseArrayOutput
- func (EndpointResponseArrayOutput) ElementType() reflect.Type
- func (o EndpointResponseArrayOutput) Index(i pulumi.IntInput) EndpointResponseOutput
- func (o EndpointResponseArrayOutput) ToEndpointResponseArrayOutput() EndpointResponseArrayOutput
- func (o EndpointResponseArrayOutput) ToEndpointResponseArrayOutputWithContext(ctx context.Context) EndpointResponseArrayOutput
- type EndpointResponseOutput
- func (o EndpointResponseOutput) Address() pulumi.StringOutput
- func (o EndpointResponseOutput) CreateTime() pulumi.StringOutput
- func (EndpointResponseOutput) ElementType() reflect.Type
- func (o EndpointResponseOutput) Metadata() pulumi.StringMapOutput
- func (o EndpointResponseOutput) Name() pulumi.StringOutput
- func (o EndpointResponseOutput) Network() pulumi.StringOutput
- func (o EndpointResponseOutput) Port() pulumi.IntOutput
- func (o EndpointResponseOutput) ToEndpointResponseOutput() EndpointResponseOutput
- func (o EndpointResponseOutput) ToEndpointResponseOutputWithContext(ctx context.Context) EndpointResponseOutput
- func (o EndpointResponseOutput) Uid() pulumi.StringOutput
- func (o EndpointResponseOutput) UpdateTime() pulumi.StringOutput
- type EndpointState
- type Expr
- type ExprArgs
- type ExprInput
- type ExprOutput
- func (o ExprOutput) Description() pulumi.StringPtrOutput
- func (ExprOutput) ElementType() reflect.Type
- func (o ExprOutput) Expression() pulumi.StringPtrOutput
- func (o ExprOutput) Location() pulumi.StringPtrOutput
- func (o ExprOutput) Title() pulumi.StringPtrOutput
- func (o ExprOutput) ToExprOutput() ExprOutput
- func (o ExprOutput) ToExprOutputWithContext(ctx context.Context) ExprOutput
- func (o ExprOutput) ToExprPtrOutput() ExprPtrOutput
- func (o ExprOutput) ToExprPtrOutputWithContext(ctx context.Context) ExprPtrOutput
- type ExprPtrInput
- type ExprPtrOutput
- func (o ExprPtrOutput) Description() pulumi.StringPtrOutput
- func (o ExprPtrOutput) Elem() ExprOutput
- func (ExprPtrOutput) ElementType() reflect.Type
- func (o ExprPtrOutput) Expression() pulumi.StringPtrOutput
- func (o ExprPtrOutput) Location() pulumi.StringPtrOutput
- func (o ExprPtrOutput) Title() pulumi.StringPtrOutput
- func (o ExprPtrOutput) ToExprPtrOutput() ExprPtrOutput
- func (o ExprPtrOutput) ToExprPtrOutputWithContext(ctx context.Context) ExprPtrOutput
- type ExprResponse
- type ExprResponseOutput
- func (o ExprResponseOutput) Description() pulumi.StringOutput
- func (ExprResponseOutput) ElementType() reflect.Type
- func (o ExprResponseOutput) Expression() pulumi.StringOutput
- func (o ExprResponseOutput) Location() pulumi.StringOutput
- func (o ExprResponseOutput) Title() pulumi.StringOutput
- func (o ExprResponseOutput) ToExprResponseOutput() ExprResponseOutput
- func (o ExprResponseOutput) ToExprResponseOutputWithContext(ctx context.Context) ExprResponseOutput
- type LookupEndpointArgs
- type LookupEndpointOutputArgs
- type LookupEndpointResult
- type LookupEndpointResultOutput
- func (o LookupEndpointResultOutput) Address() pulumi.StringOutput
- func (o LookupEndpointResultOutput) CreateTime() pulumi.StringOutput
- func (LookupEndpointResultOutput) ElementType() reflect.Type
- func (o LookupEndpointResultOutput) Metadata() pulumi.StringMapOutput
- func (o LookupEndpointResultOutput) Name() pulumi.StringOutput
- func (o LookupEndpointResultOutput) Network() pulumi.StringOutput
- func (o LookupEndpointResultOutput) Port() pulumi.IntOutput
- func (o LookupEndpointResultOutput) ToLookupEndpointResultOutput() LookupEndpointResultOutput
- func (o LookupEndpointResultOutput) ToLookupEndpointResultOutputWithContext(ctx context.Context) LookupEndpointResultOutput
- func (o LookupEndpointResultOutput) Uid() pulumi.StringOutput
- func (o LookupEndpointResultOutput) UpdateTime() pulumi.StringOutput
- type LookupNamespaceArgs
- type LookupNamespaceIamPolicyArgs
- type LookupNamespaceIamPolicyOutputArgs
- type LookupNamespaceIamPolicyResult
- type LookupNamespaceIamPolicyResultOutput
- func (o LookupNamespaceIamPolicyResultOutput) Bindings() BindingResponseArrayOutput
- func (LookupNamespaceIamPolicyResultOutput) ElementType() reflect.Type
- func (o LookupNamespaceIamPolicyResultOutput) Etag() pulumi.StringOutput
- func (o LookupNamespaceIamPolicyResultOutput) ToLookupNamespaceIamPolicyResultOutput() LookupNamespaceIamPolicyResultOutput
- func (o LookupNamespaceIamPolicyResultOutput) ToLookupNamespaceIamPolicyResultOutputWithContext(ctx context.Context) LookupNamespaceIamPolicyResultOutput
- func (o LookupNamespaceIamPolicyResultOutput) Version() pulumi.IntOutput
- type LookupNamespaceOutputArgs
- type LookupNamespaceResult
- type LookupNamespaceResultOutput
- func (o LookupNamespaceResultOutput) CreateTime() pulumi.StringOutput
- func (LookupNamespaceResultOutput) ElementType() reflect.Type
- func (o LookupNamespaceResultOutput) Labels() pulumi.StringMapOutput
- func (o LookupNamespaceResultOutput) Name() pulumi.StringOutput
- func (o LookupNamespaceResultOutput) ToLookupNamespaceResultOutput() LookupNamespaceResultOutput
- func (o LookupNamespaceResultOutput) ToLookupNamespaceResultOutputWithContext(ctx context.Context) LookupNamespaceResultOutput
- func (o LookupNamespaceResultOutput) Uid() pulumi.StringOutput
- func (o LookupNamespaceResultOutput) UpdateTime() pulumi.StringOutput
- type LookupNamespaceServiceIamPolicyArgs
- type LookupNamespaceServiceIamPolicyOutputArgs
- type LookupNamespaceServiceIamPolicyResult
- type LookupNamespaceServiceIamPolicyResultOutput
- func (o LookupNamespaceServiceIamPolicyResultOutput) Bindings() BindingResponseArrayOutput
- func (LookupNamespaceServiceIamPolicyResultOutput) ElementType() reflect.Type
- func (o LookupNamespaceServiceIamPolicyResultOutput) Etag() pulumi.StringOutput
- func (o LookupNamespaceServiceIamPolicyResultOutput) ToLookupNamespaceServiceIamPolicyResultOutput() LookupNamespaceServiceIamPolicyResultOutput
- func (o LookupNamespaceServiceIamPolicyResultOutput) ToLookupNamespaceServiceIamPolicyResultOutputWithContext(ctx context.Context) LookupNamespaceServiceIamPolicyResultOutput
- func (o LookupNamespaceServiceIamPolicyResultOutput) Version() pulumi.IntOutput
- type LookupNamespaceWorkloadIamPolicyArgs
- type LookupNamespaceWorkloadIamPolicyOutputArgs
- type LookupNamespaceWorkloadIamPolicyResult
- type LookupNamespaceWorkloadIamPolicyResultOutput
- func (o LookupNamespaceWorkloadIamPolicyResultOutput) Bindings() BindingResponseArrayOutput
- func (LookupNamespaceWorkloadIamPolicyResultOutput) ElementType() reflect.Type
- func (o LookupNamespaceWorkloadIamPolicyResultOutput) Etag() pulumi.StringOutput
- func (o LookupNamespaceWorkloadIamPolicyResultOutput) ToLookupNamespaceWorkloadIamPolicyResultOutput() LookupNamespaceWorkloadIamPolicyResultOutput
- func (o LookupNamespaceWorkloadIamPolicyResultOutput) ToLookupNamespaceWorkloadIamPolicyResultOutputWithContext(ctx context.Context) LookupNamespaceWorkloadIamPolicyResultOutput
- func (o LookupNamespaceWorkloadIamPolicyResultOutput) Version() pulumi.IntOutput
- type LookupServiceArgs
- type LookupServiceOutputArgs
- type LookupServiceResult
- type LookupServiceResultOutput
- func (o LookupServiceResultOutput) CreateTime() pulumi.StringOutput
- func (LookupServiceResultOutput) ElementType() reflect.Type
- func (o LookupServiceResultOutput) Endpoints() EndpointResponseArrayOutput
- func (o LookupServiceResultOutput) Metadata() pulumi.StringMapOutput
- func (o LookupServiceResultOutput) Name() pulumi.StringOutput
- func (o LookupServiceResultOutput) ToLookupServiceResultOutput() LookupServiceResultOutput
- func (o LookupServiceResultOutput) ToLookupServiceResultOutputWithContext(ctx context.Context) LookupServiceResultOutput
- func (o LookupServiceResultOutput) Uid() pulumi.StringOutput
- func (o LookupServiceResultOutput) UpdateTime() pulumi.StringOutput
- type Namespace
- type NamespaceArgs
- type NamespaceIamBinding
- type NamespaceIamBindingArgs
- type NamespaceIamBindingInput
- type NamespaceIamBindingOutput
- func (o NamespaceIamBindingOutput) Condition() iam.ConditionPtrOutput
- func (NamespaceIamBindingOutput) ElementType() reflect.Type
- func (o NamespaceIamBindingOutput) Etag() pulumi.StringOutput
- func (o NamespaceIamBindingOutput) Members() pulumi.StringArrayOutput
- func (o NamespaceIamBindingOutput) Name() pulumi.StringOutput
- func (o NamespaceIamBindingOutput) Project() pulumi.StringOutput
- func (o NamespaceIamBindingOutput) Role() pulumi.StringOutput
- func (o NamespaceIamBindingOutput) ToNamespaceIamBindingOutput() NamespaceIamBindingOutput
- func (o NamespaceIamBindingOutput) ToNamespaceIamBindingOutputWithContext(ctx context.Context) NamespaceIamBindingOutput
- type NamespaceIamBindingState
- type NamespaceIamMember
- type NamespaceIamMemberArgs
- type NamespaceIamMemberInput
- type NamespaceIamMemberOutput
- func (o NamespaceIamMemberOutput) Condition() iam.ConditionPtrOutput
- func (NamespaceIamMemberOutput) ElementType() reflect.Type
- func (o NamespaceIamMemberOutput) Etag() pulumi.StringOutput
- func (o NamespaceIamMemberOutput) Member() pulumi.StringOutput
- func (o NamespaceIamMemberOutput) Name() pulumi.StringOutput
- func (o NamespaceIamMemberOutput) Project() pulumi.StringOutput
- func (o NamespaceIamMemberOutput) Role() pulumi.StringOutput
- func (o NamespaceIamMemberOutput) ToNamespaceIamMemberOutput() NamespaceIamMemberOutput
- func (o NamespaceIamMemberOutput) ToNamespaceIamMemberOutputWithContext(ctx context.Context) NamespaceIamMemberOutput
- type NamespaceIamMemberState
- type NamespaceIamPolicy
- type NamespaceIamPolicyArgs
- type NamespaceIamPolicyInput
- type NamespaceIamPolicyOutput
- func (o NamespaceIamPolicyOutput) Bindings() BindingResponseArrayOutput
- func (NamespaceIamPolicyOutput) ElementType() reflect.Type
- func (o NamespaceIamPolicyOutput) Etag() pulumi.StringOutput
- func (o NamespaceIamPolicyOutput) Location() pulumi.StringOutput
- func (o NamespaceIamPolicyOutput) NamespaceId() pulumi.StringOutput
- func (o NamespaceIamPolicyOutput) Project() pulumi.StringOutput
- func (o NamespaceIamPolicyOutput) ToNamespaceIamPolicyOutput() NamespaceIamPolicyOutput
- func (o NamespaceIamPolicyOutput) ToNamespaceIamPolicyOutputWithContext(ctx context.Context) NamespaceIamPolicyOutput
- func (o NamespaceIamPolicyOutput) Version() pulumi.IntOutput
- type NamespaceIamPolicyState
- type NamespaceInput
- type NamespaceOutput
- func (o NamespaceOutput) CreateTime() pulumi.StringOutput
- func (NamespaceOutput) ElementType() reflect.Type
- func (o NamespaceOutput) Labels() pulumi.StringMapOutput
- func (o NamespaceOutput) Location() pulumi.StringOutput
- func (o NamespaceOutput) Name() pulumi.StringOutput
- func (o NamespaceOutput) NamespaceId() pulumi.StringOutput
- func (o NamespaceOutput) Project() pulumi.StringOutput
- func (o NamespaceOutput) ToNamespaceOutput() NamespaceOutput
- func (o NamespaceOutput) ToNamespaceOutputWithContext(ctx context.Context) NamespaceOutput
- func (o NamespaceOutput) Uid() pulumi.StringOutput
- func (o NamespaceOutput) UpdateTime() pulumi.StringOutput
- type NamespaceServiceIamBinding
- func (*NamespaceServiceIamBinding) ElementType() reflect.Type
- func (i *NamespaceServiceIamBinding) ToNamespaceServiceIamBindingOutput() NamespaceServiceIamBindingOutput
- func (i *NamespaceServiceIamBinding) ToNamespaceServiceIamBindingOutputWithContext(ctx context.Context) NamespaceServiceIamBindingOutput
- type NamespaceServiceIamBindingArgs
- type NamespaceServiceIamBindingInput
- type NamespaceServiceIamBindingOutput
- func (o NamespaceServiceIamBindingOutput) Condition() iam.ConditionPtrOutput
- func (NamespaceServiceIamBindingOutput) ElementType() reflect.Type
- func (o NamespaceServiceIamBindingOutput) Etag() pulumi.StringOutput
- func (o NamespaceServiceIamBindingOutput) Members() pulumi.StringArrayOutput
- func (o NamespaceServiceIamBindingOutput) Name() pulumi.StringOutput
- func (o NamespaceServiceIamBindingOutput) Project() pulumi.StringOutput
- func (o NamespaceServiceIamBindingOutput) Role() pulumi.StringOutput
- func (o NamespaceServiceIamBindingOutput) ToNamespaceServiceIamBindingOutput() NamespaceServiceIamBindingOutput
- func (o NamespaceServiceIamBindingOutput) ToNamespaceServiceIamBindingOutputWithContext(ctx context.Context) NamespaceServiceIamBindingOutput
- type NamespaceServiceIamBindingState
- type NamespaceServiceIamMember
- type NamespaceServiceIamMemberArgs
- type NamespaceServiceIamMemberInput
- type NamespaceServiceIamMemberOutput
- func (o NamespaceServiceIamMemberOutput) Condition() iam.ConditionPtrOutput
- func (NamespaceServiceIamMemberOutput) ElementType() reflect.Type
- func (o NamespaceServiceIamMemberOutput) Etag() pulumi.StringOutput
- func (o NamespaceServiceIamMemberOutput) Member() pulumi.StringOutput
- func (o NamespaceServiceIamMemberOutput) Name() pulumi.StringOutput
- func (o NamespaceServiceIamMemberOutput) Project() pulumi.StringOutput
- func (o NamespaceServiceIamMemberOutput) Role() pulumi.StringOutput
- func (o NamespaceServiceIamMemberOutput) ToNamespaceServiceIamMemberOutput() NamespaceServiceIamMemberOutput
- func (o NamespaceServiceIamMemberOutput) ToNamespaceServiceIamMemberOutputWithContext(ctx context.Context) NamespaceServiceIamMemberOutput
- type NamespaceServiceIamMemberState
- type NamespaceServiceIamPolicy
- type NamespaceServiceIamPolicyArgs
- type NamespaceServiceIamPolicyInput
- type NamespaceServiceIamPolicyOutput
- func (o NamespaceServiceIamPolicyOutput) Bindings() BindingResponseArrayOutput
- func (NamespaceServiceIamPolicyOutput) ElementType() reflect.Type
- func (o NamespaceServiceIamPolicyOutput) Etag() pulumi.StringOutput
- func (o NamespaceServiceIamPolicyOutput) Location() pulumi.StringOutput
- func (o NamespaceServiceIamPolicyOutput) NamespaceId() pulumi.StringOutput
- func (o NamespaceServiceIamPolicyOutput) Project() pulumi.StringOutput
- func (o NamespaceServiceIamPolicyOutput) ServiceId() pulumi.StringOutput
- func (o NamespaceServiceIamPolicyOutput) ToNamespaceServiceIamPolicyOutput() NamespaceServiceIamPolicyOutput
- func (o NamespaceServiceIamPolicyOutput) ToNamespaceServiceIamPolicyOutputWithContext(ctx context.Context) NamespaceServiceIamPolicyOutput
- func (o NamespaceServiceIamPolicyOutput) Version() pulumi.IntOutput
- type NamespaceServiceIamPolicyState
- type NamespaceState
- type NamespaceWorkloadIamBinding
- func (*NamespaceWorkloadIamBinding) ElementType() reflect.Type
- func (i *NamespaceWorkloadIamBinding) ToNamespaceWorkloadIamBindingOutput() NamespaceWorkloadIamBindingOutput
- func (i *NamespaceWorkloadIamBinding) ToNamespaceWorkloadIamBindingOutputWithContext(ctx context.Context) NamespaceWorkloadIamBindingOutput
- type NamespaceWorkloadIamBindingArgs
- type NamespaceWorkloadIamBindingInput
- type NamespaceWorkloadIamBindingOutput
- func (o NamespaceWorkloadIamBindingOutput) Condition() iam.ConditionPtrOutput
- func (NamespaceWorkloadIamBindingOutput) ElementType() reflect.Type
- func (o NamespaceWorkloadIamBindingOutput) Etag() pulumi.StringOutput
- func (o NamespaceWorkloadIamBindingOutput) Members() pulumi.StringArrayOutput
- func (o NamespaceWorkloadIamBindingOutput) Name() pulumi.StringOutput
- func (o NamespaceWorkloadIamBindingOutput) Project() pulumi.StringOutput
- func (o NamespaceWorkloadIamBindingOutput) Role() pulumi.StringOutput
- func (o NamespaceWorkloadIamBindingOutput) ToNamespaceWorkloadIamBindingOutput() NamespaceWorkloadIamBindingOutput
- func (o NamespaceWorkloadIamBindingOutput) ToNamespaceWorkloadIamBindingOutputWithContext(ctx context.Context) NamespaceWorkloadIamBindingOutput
- type NamespaceWorkloadIamBindingState
- type NamespaceWorkloadIamMember
- func (*NamespaceWorkloadIamMember) ElementType() reflect.Type
- func (i *NamespaceWorkloadIamMember) ToNamespaceWorkloadIamMemberOutput() NamespaceWorkloadIamMemberOutput
- func (i *NamespaceWorkloadIamMember) ToNamespaceWorkloadIamMemberOutputWithContext(ctx context.Context) NamespaceWorkloadIamMemberOutput
- type NamespaceWorkloadIamMemberArgs
- type NamespaceWorkloadIamMemberInput
- type NamespaceWorkloadIamMemberOutput
- func (o NamespaceWorkloadIamMemberOutput) Condition() iam.ConditionPtrOutput
- func (NamespaceWorkloadIamMemberOutput) ElementType() reflect.Type
- func (o NamespaceWorkloadIamMemberOutput) Etag() pulumi.StringOutput
- func (o NamespaceWorkloadIamMemberOutput) Member() pulumi.StringOutput
- func (o NamespaceWorkloadIamMemberOutput) Name() pulumi.StringOutput
- func (o NamespaceWorkloadIamMemberOutput) Project() pulumi.StringOutput
- func (o NamespaceWorkloadIamMemberOutput) Role() pulumi.StringOutput
- func (o NamespaceWorkloadIamMemberOutput) ToNamespaceWorkloadIamMemberOutput() NamespaceWorkloadIamMemberOutput
- func (o NamespaceWorkloadIamMemberOutput) ToNamespaceWorkloadIamMemberOutputWithContext(ctx context.Context) NamespaceWorkloadIamMemberOutput
- type NamespaceWorkloadIamMemberState
- type NamespaceWorkloadIamPolicy
- func (*NamespaceWorkloadIamPolicy) ElementType() reflect.Type
- func (i *NamespaceWorkloadIamPolicy) ToNamespaceWorkloadIamPolicyOutput() NamespaceWorkloadIamPolicyOutput
- func (i *NamespaceWorkloadIamPolicy) ToNamespaceWorkloadIamPolicyOutputWithContext(ctx context.Context) NamespaceWorkloadIamPolicyOutput
- type NamespaceWorkloadIamPolicyArgs
- type NamespaceWorkloadIamPolicyInput
- type NamespaceWorkloadIamPolicyOutput
- func (o NamespaceWorkloadIamPolicyOutput) Bindings() BindingResponseArrayOutput
- func (NamespaceWorkloadIamPolicyOutput) ElementType() reflect.Type
- func (o NamespaceWorkloadIamPolicyOutput) Etag() pulumi.StringOutput
- func (o NamespaceWorkloadIamPolicyOutput) Location() pulumi.StringOutput
- func (o NamespaceWorkloadIamPolicyOutput) NamespaceId() pulumi.StringOutput
- func (o NamespaceWorkloadIamPolicyOutput) Project() pulumi.StringOutput
- func (o NamespaceWorkloadIamPolicyOutput) ToNamespaceWorkloadIamPolicyOutput() NamespaceWorkloadIamPolicyOutput
- func (o NamespaceWorkloadIamPolicyOutput) ToNamespaceWorkloadIamPolicyOutputWithContext(ctx context.Context) NamespaceWorkloadIamPolicyOutput
- func (o NamespaceWorkloadIamPolicyOutput) Version() pulumi.IntOutput
- func (o NamespaceWorkloadIamPolicyOutput) WorkloadId() pulumi.StringOutput
- type NamespaceWorkloadIamPolicyState
- type Service
- type ServiceArgs
- type ServiceInput
- type ServiceOutput
- func (o ServiceOutput) CreateTime() pulumi.StringOutput
- func (ServiceOutput) ElementType() reflect.Type
- func (o ServiceOutput) Endpoints() EndpointResponseArrayOutput
- func (o ServiceOutput) Location() pulumi.StringOutput
- func (o ServiceOutput) Metadata() pulumi.StringMapOutput
- func (o ServiceOutput) Name() pulumi.StringOutput
- func (o ServiceOutput) NamespaceId() pulumi.StringOutput
- func (o ServiceOutput) Project() pulumi.StringOutput
- func (o ServiceOutput) ServiceId() pulumi.StringOutput
- func (o ServiceOutput) ToServiceOutput() ServiceOutput
- func (o ServiceOutput) ToServiceOutputWithContext(ctx context.Context) ServiceOutput
- func (o ServiceOutput) Uid() pulumi.StringOutput
- func (o ServiceOutput) UpdateTime() pulumi.StringOutput
- type ServiceState
Constants ¶
This section is empty.
Variables ¶
This section is empty.
Functions ¶
This section is empty.
Types ¶
type Binding ¶
type Binding struct { // The condition that is associated with this binding. If the condition evaluates to `true`, then this binding applies to the current request. If the condition evaluates to `false`, then this binding does not apply to the current request. However, a different role binding might grant the same role to one or more of the principals in this binding. To learn which resources support conditions in their IAM policies, see the [IAM documentation](https://cloud.google.com/iam/help/conditions/resource-policies). Condition *Expr `pulumi:"condition"` // Specifies the principals requesting access for a Google Cloud resource. `members` can have the following values: * `allUsers`: A special identifier that represents anyone who is on the internet; with or without a Google account. * `allAuthenticatedUsers`: A special identifier that represents anyone who is authenticated with a Google account or a service account. Does not include identities that come from external identity providers (IdPs) through identity federation. * `user:{emailid}`: An email address that represents a specific Google account. For example, `alice@example.com` . * `serviceAccount:{emailid}`: An email address that represents a Google service account. For example, `my-other-app@appspot.gserviceaccount.com`. * `serviceAccount:{projectid}.svc.id.goog[{namespace}/{kubernetes-sa}]`: An identifier for a [Kubernetes service account](https://cloud.google.com/kubernetes-engine/docs/how-to/kubernetes-service-accounts). For example, `my-project.svc.id.goog[my-namespace/my-kubernetes-sa]`. * `group:{emailid}`: An email address that represents a Google group. For example, `admins@example.com`. * `domain:{domain}`: The G Suite domain (primary) that represents all the users of that domain. For example, `google.com` or `example.com`. * `deleted:user:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a user that has been recently deleted. For example, `alice@example.com?uid=123456789012345678901`. If the user is recovered, this value reverts to `user:{emailid}` and the recovered user retains the role in the binding. * `deleted:serviceAccount:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a service account that has been recently deleted. For example, `my-other-app@appspot.gserviceaccount.com?uid=123456789012345678901`. If the service account is undeleted, this value reverts to `serviceAccount:{emailid}` and the undeleted service account retains the role in the binding. * `deleted:group:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a Google group that has been recently deleted. For example, `admins@example.com?uid=123456789012345678901`. If the group is recovered, this value reverts to `group:{emailid}` and the recovered group retains the role in the binding. Members []string `pulumi:"members"` // Role that is assigned to the list of `members`, or principals. For example, `roles/viewer`, `roles/editor`, or `roles/owner`. Role *string `pulumi:"role"` }
Associates `members`, or principals, with a `role`.
type BindingArgs ¶
type BindingArgs struct { // The condition that is associated with this binding. If the condition evaluates to `true`, then this binding applies to the current request. If the condition evaluates to `false`, then this binding does not apply to the current request. However, a different role binding might grant the same role to one or more of the principals in this binding. To learn which resources support conditions in their IAM policies, see the [IAM documentation](https://cloud.google.com/iam/help/conditions/resource-policies). Condition ExprPtrInput `pulumi:"condition"` // Specifies the principals requesting access for a Google Cloud resource. `members` can have the following values: * `allUsers`: A special identifier that represents anyone who is on the internet; with or without a Google account. * `allAuthenticatedUsers`: A special identifier that represents anyone who is authenticated with a Google account or a service account. Does not include identities that come from external identity providers (IdPs) through identity federation. * `user:{emailid}`: An email address that represents a specific Google account. For example, `alice@example.com` . * `serviceAccount:{emailid}`: An email address that represents a Google service account. For example, `my-other-app@appspot.gserviceaccount.com`. * `serviceAccount:{projectid}.svc.id.goog[{namespace}/{kubernetes-sa}]`: An identifier for a [Kubernetes service account](https://cloud.google.com/kubernetes-engine/docs/how-to/kubernetes-service-accounts). For example, `my-project.svc.id.goog[my-namespace/my-kubernetes-sa]`. * `group:{emailid}`: An email address that represents a Google group. For example, `admins@example.com`. * `domain:{domain}`: The G Suite domain (primary) that represents all the users of that domain. For example, `google.com` or `example.com`. * `deleted:user:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a user that has been recently deleted. For example, `alice@example.com?uid=123456789012345678901`. If the user is recovered, this value reverts to `user:{emailid}` and the recovered user retains the role in the binding. * `deleted:serviceAccount:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a service account that has been recently deleted. For example, `my-other-app@appspot.gserviceaccount.com?uid=123456789012345678901`. If the service account is undeleted, this value reverts to `serviceAccount:{emailid}` and the undeleted service account retains the role in the binding. * `deleted:group:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a Google group that has been recently deleted. For example, `admins@example.com?uid=123456789012345678901`. If the group is recovered, this value reverts to `group:{emailid}` and the recovered group retains the role in the binding. Members pulumi.StringArrayInput `pulumi:"members"` // Role that is assigned to the list of `members`, or principals. For example, `roles/viewer`, `roles/editor`, or `roles/owner`. Role pulumi.StringPtrInput `pulumi:"role"` }
Associates `members`, or principals, with a `role`.
func (BindingArgs) ElementType ¶
func (BindingArgs) ElementType() reflect.Type
func (BindingArgs) ToBindingOutput ¶
func (i BindingArgs) ToBindingOutput() BindingOutput
func (BindingArgs) ToBindingOutputWithContext ¶
func (i BindingArgs) ToBindingOutputWithContext(ctx context.Context) BindingOutput
type BindingArray ¶
type BindingArray []BindingInput
func (BindingArray) ElementType ¶
func (BindingArray) ElementType() reflect.Type
func (BindingArray) ToBindingArrayOutput ¶
func (i BindingArray) ToBindingArrayOutput() BindingArrayOutput
func (BindingArray) ToBindingArrayOutputWithContext ¶
func (i BindingArray) ToBindingArrayOutputWithContext(ctx context.Context) BindingArrayOutput
type BindingArrayInput ¶
type BindingArrayInput interface { pulumi.Input ToBindingArrayOutput() BindingArrayOutput ToBindingArrayOutputWithContext(context.Context) BindingArrayOutput }
BindingArrayInput is an input type that accepts BindingArray and BindingArrayOutput values. You can construct a concrete instance of `BindingArrayInput` via:
BindingArray{ BindingArgs{...} }
type BindingArrayOutput ¶
type BindingArrayOutput struct{ *pulumi.OutputState }
func (BindingArrayOutput) ElementType ¶
func (BindingArrayOutput) ElementType() reflect.Type
func (BindingArrayOutput) Index ¶
func (o BindingArrayOutput) Index(i pulumi.IntInput) BindingOutput
func (BindingArrayOutput) ToBindingArrayOutput ¶
func (o BindingArrayOutput) ToBindingArrayOutput() BindingArrayOutput
func (BindingArrayOutput) ToBindingArrayOutputWithContext ¶
func (o BindingArrayOutput) ToBindingArrayOutputWithContext(ctx context.Context) BindingArrayOutput
type BindingInput ¶
type BindingInput interface { pulumi.Input ToBindingOutput() BindingOutput ToBindingOutputWithContext(context.Context) BindingOutput }
BindingInput is an input type that accepts BindingArgs and BindingOutput values. You can construct a concrete instance of `BindingInput` via:
BindingArgs{...}
type BindingOutput ¶
type BindingOutput struct{ *pulumi.OutputState }
Associates `members`, or principals, with a `role`.
func (BindingOutput) Condition ¶
func (o BindingOutput) Condition() ExprPtrOutput
The condition that is associated with this binding. If the condition evaluates to `true`, then this binding applies to the current request. If the condition evaluates to `false`, then this binding does not apply to the current request. However, a different role binding might grant the same role to one or more of the principals in this binding. To learn which resources support conditions in their IAM policies, see the [IAM documentation](https://cloud.google.com/iam/help/conditions/resource-policies).
func (BindingOutput) ElementType ¶
func (BindingOutput) ElementType() reflect.Type
func (BindingOutput) Members ¶
func (o BindingOutput) Members() pulumi.StringArrayOutput
Specifies the principals requesting access for a Google Cloud resource. `members` can have the following values: * `allUsers`: A special identifier that represents anyone who is on the internet; with or without a Google account. * `allAuthenticatedUsers`: A special identifier that represents anyone who is authenticated with a Google account or a service account. Does not include identities that come from external identity providers (IdPs) through identity federation. * `user:{emailid}`: An email address that represents a specific Google account. For example, `alice@example.com` . * `serviceAccount:{emailid}`: An email address that represents a Google service account. For example, `my-other-app@appspot.gserviceaccount.com`. * `serviceAccount:{projectid}.svc.id.goog[{namespace}/{kubernetes-sa}]`: An identifier for a [Kubernetes service account](https://cloud.google.com/kubernetes-engine/docs/how-to/kubernetes-service-accounts). For example, `my-project.svc.id.goog[my-namespace/my-kubernetes-sa]`. * `group:{emailid}`: An email address that represents a Google group. For example, `admins@example.com`. * `domain:{domain}`: The G Suite domain (primary) that represents all the users of that domain. For example, `google.com` or `example.com`. * `deleted:user:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a user that has been recently deleted. For example, `alice@example.com?uid=123456789012345678901`. If the user is recovered, this value reverts to `user:{emailid}` and the recovered user retains the role in the binding. * `deleted:serviceAccount:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a service account that has been recently deleted. For example, `my-other-app@appspot.gserviceaccount.com?uid=123456789012345678901`. If the service account is undeleted, this value reverts to `serviceAccount:{emailid}` and the undeleted service account retains the role in the binding. * `deleted:group:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a Google group that has been recently deleted. For example, `admins@example.com?uid=123456789012345678901`. If the group is recovered, this value reverts to `group:{emailid}` and the recovered group retains the role in the binding.
func (BindingOutput) Role ¶
func (o BindingOutput) Role() pulumi.StringPtrOutput
Role that is assigned to the list of `members`, or principals. For example, `roles/viewer`, `roles/editor`, or `roles/owner`.
func (BindingOutput) ToBindingOutput ¶
func (o BindingOutput) ToBindingOutput() BindingOutput
func (BindingOutput) ToBindingOutputWithContext ¶
func (o BindingOutput) ToBindingOutputWithContext(ctx context.Context) BindingOutput
type BindingResponse ¶
type BindingResponse struct { // The condition that is associated with this binding. If the condition evaluates to `true`, then this binding applies to the current request. If the condition evaluates to `false`, then this binding does not apply to the current request. However, a different role binding might grant the same role to one or more of the principals in this binding. To learn which resources support conditions in their IAM policies, see the [IAM documentation](https://cloud.google.com/iam/help/conditions/resource-policies). Condition ExprResponse `pulumi:"condition"` // Specifies the principals requesting access for a Google Cloud resource. `members` can have the following values: * `allUsers`: A special identifier that represents anyone who is on the internet; with or without a Google account. * `allAuthenticatedUsers`: A special identifier that represents anyone who is authenticated with a Google account or a service account. Does not include identities that come from external identity providers (IdPs) through identity federation. * `user:{emailid}`: An email address that represents a specific Google account. For example, `alice@example.com` . * `serviceAccount:{emailid}`: An email address that represents a Google service account. For example, `my-other-app@appspot.gserviceaccount.com`. * `serviceAccount:{projectid}.svc.id.goog[{namespace}/{kubernetes-sa}]`: An identifier for a [Kubernetes service account](https://cloud.google.com/kubernetes-engine/docs/how-to/kubernetes-service-accounts). For example, `my-project.svc.id.goog[my-namespace/my-kubernetes-sa]`. * `group:{emailid}`: An email address that represents a Google group. For example, `admins@example.com`. * `domain:{domain}`: The G Suite domain (primary) that represents all the users of that domain. For example, `google.com` or `example.com`. * `deleted:user:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a user that has been recently deleted. For example, `alice@example.com?uid=123456789012345678901`. If the user is recovered, this value reverts to `user:{emailid}` and the recovered user retains the role in the binding. * `deleted:serviceAccount:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a service account that has been recently deleted. For example, `my-other-app@appspot.gserviceaccount.com?uid=123456789012345678901`. If the service account is undeleted, this value reverts to `serviceAccount:{emailid}` and the undeleted service account retains the role in the binding. * `deleted:group:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a Google group that has been recently deleted. For example, `admins@example.com?uid=123456789012345678901`. If the group is recovered, this value reverts to `group:{emailid}` and the recovered group retains the role in the binding. Members []string `pulumi:"members"` // Role that is assigned to the list of `members`, or principals. For example, `roles/viewer`, `roles/editor`, or `roles/owner`. Role string `pulumi:"role"` }
Associates `members`, or principals, with a `role`.
type BindingResponseArrayOutput ¶
type BindingResponseArrayOutput struct{ *pulumi.OutputState }
func (BindingResponseArrayOutput) ElementType ¶
func (BindingResponseArrayOutput) ElementType() reflect.Type
func (BindingResponseArrayOutput) Index ¶
func (o BindingResponseArrayOutput) Index(i pulumi.IntInput) BindingResponseOutput
func (BindingResponseArrayOutput) ToBindingResponseArrayOutput ¶
func (o BindingResponseArrayOutput) ToBindingResponseArrayOutput() BindingResponseArrayOutput
func (BindingResponseArrayOutput) ToBindingResponseArrayOutputWithContext ¶
func (o BindingResponseArrayOutput) ToBindingResponseArrayOutputWithContext(ctx context.Context) BindingResponseArrayOutput
type BindingResponseOutput ¶
type BindingResponseOutput struct{ *pulumi.OutputState }
Associates `members`, or principals, with a `role`.
func (BindingResponseOutput) Condition ¶
func (o BindingResponseOutput) Condition() ExprResponseOutput
The condition that is associated with this binding. If the condition evaluates to `true`, then this binding applies to the current request. If the condition evaluates to `false`, then this binding does not apply to the current request. However, a different role binding might grant the same role to one or more of the principals in this binding. To learn which resources support conditions in their IAM policies, see the [IAM documentation](https://cloud.google.com/iam/help/conditions/resource-policies).
func (BindingResponseOutput) ElementType ¶
func (BindingResponseOutput) ElementType() reflect.Type
func (BindingResponseOutput) Members ¶
func (o BindingResponseOutput) Members() pulumi.StringArrayOutput
Specifies the principals requesting access for a Google Cloud resource. `members` can have the following values: * `allUsers`: A special identifier that represents anyone who is on the internet; with or without a Google account. * `allAuthenticatedUsers`: A special identifier that represents anyone who is authenticated with a Google account or a service account. Does not include identities that come from external identity providers (IdPs) through identity federation. * `user:{emailid}`: An email address that represents a specific Google account. For example, `alice@example.com` . * `serviceAccount:{emailid}`: An email address that represents a Google service account. For example, `my-other-app@appspot.gserviceaccount.com`. * `serviceAccount:{projectid}.svc.id.goog[{namespace}/{kubernetes-sa}]`: An identifier for a [Kubernetes service account](https://cloud.google.com/kubernetes-engine/docs/how-to/kubernetes-service-accounts). For example, `my-project.svc.id.goog[my-namespace/my-kubernetes-sa]`. * `group:{emailid}`: An email address that represents a Google group. For example, `admins@example.com`. * `domain:{domain}`: The G Suite domain (primary) that represents all the users of that domain. For example, `google.com` or `example.com`. * `deleted:user:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a user that has been recently deleted. For example, `alice@example.com?uid=123456789012345678901`. If the user is recovered, this value reverts to `user:{emailid}` and the recovered user retains the role in the binding. * `deleted:serviceAccount:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a service account that has been recently deleted. For example, `my-other-app@appspot.gserviceaccount.com?uid=123456789012345678901`. If the service account is undeleted, this value reverts to `serviceAccount:{emailid}` and the undeleted service account retains the role in the binding. * `deleted:group:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a Google group that has been recently deleted. For example, `admins@example.com?uid=123456789012345678901`. If the group is recovered, this value reverts to `group:{emailid}` and the recovered group retains the role in the binding.
func (BindingResponseOutput) Role ¶
func (o BindingResponseOutput) Role() pulumi.StringOutput
Role that is assigned to the list of `members`, or principals. For example, `roles/viewer`, `roles/editor`, or `roles/owner`.
func (BindingResponseOutput) ToBindingResponseOutput ¶
func (o BindingResponseOutput) ToBindingResponseOutput() BindingResponseOutput
func (BindingResponseOutput) ToBindingResponseOutputWithContext ¶
func (o BindingResponseOutput) ToBindingResponseOutputWithContext(ctx context.Context) BindingResponseOutput
type Endpoint ¶ added in v0.3.0
type Endpoint struct { pulumi.CustomResourceState // Optional. An IPv4 or IPv6 address. Service Directory rejects bad addresses like: * `8.8.8` * `8.8.8.8:53` * `test:bad:address` * `[::1]` * `[::1]:8080` Limited to 45 characters. Address pulumi.StringOutput `pulumi:"address"` // The timestamp when the endpoint was created. CreateTime pulumi.StringOutput `pulumi:"createTime"` // Required. The Resource ID must be 1-63 characters long, and comply with RFC1035. Specifically, the name must be 1-63 characters long and match the regular expression `[a-z](?:[-a-z0-9]{0,61}[a-z0-9])?` which means the first character must be a lowercase letter, and all following characters must be a dash, lowercase letter, or digit, except the last character, which cannot be a dash. EndpointId pulumi.StringOutput `pulumi:"endpointId"` Location pulumi.StringOutput `pulumi:"location"` // Optional. Metadata for the endpoint. This data can be consumed by service clients. Restrictions: * The entire metadata dictionary may contain up to 512 characters, spread accoss all key-value pairs. Metadata that goes beyond this limit are rejected * Valid metadata keys have two segments: an optional prefix and name, separated by a slash (/). The name segment is required and must be 63 characters or less, beginning and ending with an alphanumeric character ([a-z0-9A-Z]) with dashes (-), underscores (_), dots (.), and alphanumerics between. The prefix is optional. If specified, the prefix must be a DNS subdomain: a series of DNS labels separated by dots (.), not longer than 253 characters in total, followed by a slash (/). Metadata that fails to meet these requirements are rejected Note: This field is equivalent to the `annotations` field in the v1 API. They have the same syntax and read/write to the same location in Service Directory. Metadata pulumi.StringMapOutput `pulumi:"metadata"` // Immutable. The resource name for the endpoint in the format `projects/*/locations/*/namespaces/*/services/*/endpoints/*`. Name pulumi.StringOutput `pulumi:"name"` NamespaceId pulumi.StringOutput `pulumi:"namespaceId"` // Immutable. The Google Compute Engine network (VPC) of the endpoint in the format `projects//locations/global/networks/*`. The project must be specified by project number (project id is rejected). Incorrectly formatted networks are rejected, but no other validation is performed on this field (ex. network or project existence, reachability, or permissions). Network pulumi.StringOutput `pulumi:"network"` // Optional. Service Directory rejects values outside of `[0, 65535]`. Port pulumi.IntOutput `pulumi:"port"` Project pulumi.StringOutput `pulumi:"project"` ServiceId pulumi.StringOutput `pulumi:"serviceId"` // A globally unique identifier (in UUID4 format) for this endpoint. Uid pulumi.StringOutput `pulumi:"uid"` // The timestamp when the endpoint was last updated. UpdateTime pulumi.StringOutput `pulumi:"updateTime"` }
Creates an endpoint, and returns the new endpoint.
func GetEndpoint ¶ added in v0.3.0
func GetEndpoint(ctx *pulumi.Context, name string, id pulumi.IDInput, state *EndpointState, opts ...pulumi.ResourceOption) (*Endpoint, error)
GetEndpoint gets an existing Endpoint resource's state with the given name, ID, and optional state properties that are used to uniquely qualify the lookup (nil if not required).
func NewEndpoint ¶ added in v0.3.0
func NewEndpoint(ctx *pulumi.Context, name string, args *EndpointArgs, opts ...pulumi.ResourceOption) (*Endpoint, error)
NewEndpoint registers a new resource with the given unique name, arguments, and options.
func (*Endpoint) ElementType ¶ added in v0.3.0
func (*Endpoint) ToEndpointOutput ¶ added in v0.3.0
func (i *Endpoint) ToEndpointOutput() EndpointOutput
func (*Endpoint) ToEndpointOutputWithContext ¶ added in v0.3.0
func (i *Endpoint) ToEndpointOutputWithContext(ctx context.Context) EndpointOutput
type EndpointArgs ¶ added in v0.3.0
type EndpointArgs struct { // Optional. An IPv4 or IPv6 address. Service Directory rejects bad addresses like: * `8.8.8` * `8.8.8.8:53` * `test:bad:address` * `[::1]` * `[::1]:8080` Limited to 45 characters. Address pulumi.StringPtrInput // Required. The Resource ID must be 1-63 characters long, and comply with RFC1035. Specifically, the name must be 1-63 characters long and match the regular expression `[a-z](?:[-a-z0-9]{0,61}[a-z0-9])?` which means the first character must be a lowercase letter, and all following characters must be a dash, lowercase letter, or digit, except the last character, which cannot be a dash. EndpointId pulumi.StringInput Location pulumi.StringPtrInput // Optional. Metadata for the endpoint. This data can be consumed by service clients. Restrictions: * The entire metadata dictionary may contain up to 512 characters, spread accoss all key-value pairs. Metadata that goes beyond this limit are rejected * Valid metadata keys have two segments: an optional prefix and name, separated by a slash (/). The name segment is required and must be 63 characters or less, beginning and ending with an alphanumeric character ([a-z0-9A-Z]) with dashes (-), underscores (_), dots (.), and alphanumerics between. The prefix is optional. If specified, the prefix must be a DNS subdomain: a series of DNS labels separated by dots (.), not longer than 253 characters in total, followed by a slash (/). Metadata that fails to meet these requirements are rejected Note: This field is equivalent to the `annotations` field in the v1 API. They have the same syntax and read/write to the same location in Service Directory. Metadata pulumi.StringMapInput // Immutable. The resource name for the endpoint in the format `projects/*/locations/*/namespaces/*/services/*/endpoints/*`. Name pulumi.StringPtrInput NamespaceId pulumi.StringInput // Immutable. The Google Compute Engine network (VPC) of the endpoint in the format `projects//locations/global/networks/*`. The project must be specified by project number (project id is rejected). Incorrectly formatted networks are rejected, but no other validation is performed on this field (ex. network or project existence, reachability, or permissions). Network pulumi.StringPtrInput // Optional. Service Directory rejects values outside of `[0, 65535]`. Port pulumi.IntPtrInput Project pulumi.StringPtrInput ServiceId pulumi.StringInput }
The set of arguments for constructing a Endpoint resource.
func (EndpointArgs) ElementType ¶ added in v0.3.0
func (EndpointArgs) ElementType() reflect.Type
type EndpointInput ¶ added in v0.3.0
type EndpointInput interface { pulumi.Input ToEndpointOutput() EndpointOutput ToEndpointOutputWithContext(ctx context.Context) EndpointOutput }
type EndpointOutput ¶ added in v0.3.0
type EndpointOutput struct{ *pulumi.OutputState }
func (EndpointOutput) Address ¶ added in v0.19.0
func (o EndpointOutput) Address() pulumi.StringOutput
Optional. An IPv4 or IPv6 address. Service Directory rejects bad addresses like: * `8.8.8` * `8.8.8.8:53` * `test:bad:address` * `[::1]` * `[::1]:8080` Limited to 45 characters.
func (EndpointOutput) CreateTime ¶ added in v0.19.0
func (o EndpointOutput) CreateTime() pulumi.StringOutput
The timestamp when the endpoint was created.
func (EndpointOutput) ElementType ¶ added in v0.3.0
func (EndpointOutput) ElementType() reflect.Type
func (EndpointOutput) EndpointId ¶ added in v0.21.0
func (o EndpointOutput) EndpointId() pulumi.StringOutput
Required. The Resource ID must be 1-63 characters long, and comply with RFC1035. Specifically, the name must be 1-63 characters long and match the regular expression `[a-z](?:[-a-z0-9]{0,61}[a-z0-9])?` which means the first character must be a lowercase letter, and all following characters must be a dash, lowercase letter, or digit, except the last character, which cannot be a dash.
func (EndpointOutput) Location ¶ added in v0.21.0
func (o EndpointOutput) Location() pulumi.StringOutput
func (EndpointOutput) Metadata ¶ added in v0.19.0
func (o EndpointOutput) Metadata() pulumi.StringMapOutput
Optional. Metadata for the endpoint. This data can be consumed by service clients. Restrictions: * The entire metadata dictionary may contain up to 512 characters, spread accoss all key-value pairs. Metadata that goes beyond this limit are rejected * Valid metadata keys have two segments: an optional prefix and name, separated by a slash (/). The name segment is required and must be 63 characters or less, beginning and ending with an alphanumeric character ([a-z0-9A-Z]) with dashes (-), underscores (_), dots (.), and alphanumerics between. The prefix is optional. If specified, the prefix must be a DNS subdomain: a series of DNS labels separated by dots (.), not longer than 253 characters in total, followed by a slash (/). Metadata that fails to meet these requirements are rejected Note: This field is equivalent to the `annotations` field in the v1 API. They have the same syntax and read/write to the same location in Service Directory.
func (EndpointOutput) Name ¶ added in v0.19.0
func (o EndpointOutput) Name() pulumi.StringOutput
Immutable. The resource name for the endpoint in the format `projects/*/locations/*/namespaces/*/services/*/endpoints/*`.
func (EndpointOutput) NamespaceId ¶ added in v0.21.0
func (o EndpointOutput) NamespaceId() pulumi.StringOutput
func (EndpointOutput) Network ¶ added in v0.19.0
func (o EndpointOutput) Network() pulumi.StringOutput
Immutable. The Google Compute Engine network (VPC) of the endpoint in the format `projects//locations/global/networks/*`. The project must be specified by project number (project id is rejected). Incorrectly formatted networks are rejected, but no other validation is performed on this field (ex. network or project existence, reachability, or permissions).
func (EndpointOutput) Port ¶ added in v0.19.0
func (o EndpointOutput) Port() pulumi.IntOutput
Optional. Service Directory rejects values outside of `[0, 65535]`.
func (EndpointOutput) Project ¶ added in v0.21.0
func (o EndpointOutput) Project() pulumi.StringOutput
func (EndpointOutput) ServiceId ¶ added in v0.21.0
func (o EndpointOutput) ServiceId() pulumi.StringOutput
func (EndpointOutput) ToEndpointOutput ¶ added in v0.3.0
func (o EndpointOutput) ToEndpointOutput() EndpointOutput
func (EndpointOutput) ToEndpointOutputWithContext ¶ added in v0.3.0
func (o EndpointOutput) ToEndpointOutputWithContext(ctx context.Context) EndpointOutput
func (EndpointOutput) Uid ¶ added in v0.29.0
func (o EndpointOutput) Uid() pulumi.StringOutput
A globally unique identifier (in UUID4 format) for this endpoint.
func (EndpointOutput) UpdateTime ¶ added in v0.19.0
func (o EndpointOutput) UpdateTime() pulumi.StringOutput
The timestamp when the endpoint was last updated.
type EndpointResponse ¶
type EndpointResponse struct { // Optional. An IPv4 or IPv6 address. Service Directory rejects bad addresses like: * `8.8.8` * `8.8.8.8:53` * `test:bad:address` * `[::1]` * `[::1]:8080` Limited to 45 characters. Address string `pulumi:"address"` // The timestamp when the endpoint was created. CreateTime string `pulumi:"createTime"` // Optional. Metadata for the endpoint. This data can be consumed by service clients. Restrictions: * The entire metadata dictionary may contain up to 512 characters, spread accoss all key-value pairs. Metadata that goes beyond this limit are rejected * Valid metadata keys have two segments: an optional prefix and name, separated by a slash (/). The name segment is required and must be 63 characters or less, beginning and ending with an alphanumeric character ([a-z0-9A-Z]) with dashes (-), underscores (_), dots (.), and alphanumerics between. The prefix is optional. If specified, the prefix must be a DNS subdomain: a series of DNS labels separated by dots (.), not longer than 253 characters in total, followed by a slash (/). Metadata that fails to meet these requirements are rejected Note: This field is equivalent to the `annotations` field in the v1 API. They have the same syntax and read/write to the same location in Service Directory. Metadata map[string]string `pulumi:"metadata"` // Immutable. The resource name for the endpoint in the format `projects/*/locations/*/namespaces/*/services/*/endpoints/*`. Name string `pulumi:"name"` // Immutable. The Google Compute Engine network (VPC) of the endpoint in the format `projects//locations/global/networks/*`. The project must be specified by project number (project id is rejected). Incorrectly formatted networks are rejected, but no other validation is performed on this field (ex. network or project existence, reachability, or permissions). Network string `pulumi:"network"` // Optional. Service Directory rejects values outside of `[0, 65535]`. Port int `pulumi:"port"` // A globally unique identifier (in UUID4 format) for this endpoint. Uid string `pulumi:"uid"` // The timestamp when the endpoint was last updated. UpdateTime string `pulumi:"updateTime"` }
An individual endpoint that provides a service. The service must already exist to create an endpoint.
type EndpointResponseArrayOutput ¶
type EndpointResponseArrayOutput struct{ *pulumi.OutputState }
func (EndpointResponseArrayOutput) ElementType ¶
func (EndpointResponseArrayOutput) ElementType() reflect.Type
func (EndpointResponseArrayOutput) Index ¶
func (o EndpointResponseArrayOutput) Index(i pulumi.IntInput) EndpointResponseOutput
func (EndpointResponseArrayOutput) ToEndpointResponseArrayOutput ¶
func (o EndpointResponseArrayOutput) ToEndpointResponseArrayOutput() EndpointResponseArrayOutput
func (EndpointResponseArrayOutput) ToEndpointResponseArrayOutputWithContext ¶
func (o EndpointResponseArrayOutput) ToEndpointResponseArrayOutputWithContext(ctx context.Context) EndpointResponseArrayOutput
type EndpointResponseOutput ¶
type EndpointResponseOutput struct{ *pulumi.OutputState }
An individual endpoint that provides a service. The service must already exist to create an endpoint.
func (EndpointResponseOutput) Address ¶
func (o EndpointResponseOutput) Address() pulumi.StringOutput
Optional. An IPv4 or IPv6 address. Service Directory rejects bad addresses like: * `8.8.8` * `8.8.8.8:53` * `test:bad:address` * `[::1]` * `[::1]:8080` Limited to 45 characters.
func (EndpointResponseOutput) CreateTime ¶ added in v0.5.0
func (o EndpointResponseOutput) CreateTime() pulumi.StringOutput
The timestamp when the endpoint was created.
func (EndpointResponseOutput) ElementType ¶
func (EndpointResponseOutput) ElementType() reflect.Type
func (EndpointResponseOutput) Metadata ¶
func (o EndpointResponseOutput) Metadata() pulumi.StringMapOutput
Optional. Metadata for the endpoint. This data can be consumed by service clients. Restrictions: * The entire metadata dictionary may contain up to 512 characters, spread accoss all key-value pairs. Metadata that goes beyond this limit are rejected * Valid metadata keys have two segments: an optional prefix and name, separated by a slash (/). The name segment is required and must be 63 characters or less, beginning and ending with an alphanumeric character ([a-z0-9A-Z]) with dashes (-), underscores (_), dots (.), and alphanumerics between. The prefix is optional. If specified, the prefix must be a DNS subdomain: a series of DNS labels separated by dots (.), not longer than 253 characters in total, followed by a slash (/). Metadata that fails to meet these requirements are rejected Note: This field is equivalent to the `annotations` field in the v1 API. They have the same syntax and read/write to the same location in Service Directory.
func (EndpointResponseOutput) Name ¶
func (o EndpointResponseOutput) Name() pulumi.StringOutput
Immutable. The resource name for the endpoint in the format `projects/*/locations/*/namespaces/*/services/*/endpoints/*`.
func (EndpointResponseOutput) Network ¶ added in v0.5.0
func (o EndpointResponseOutput) Network() pulumi.StringOutput
Immutable. The Google Compute Engine network (VPC) of the endpoint in the format `projects//locations/global/networks/*`. The project must be specified by project number (project id is rejected). Incorrectly formatted networks are rejected, but no other validation is performed on this field (ex. network or project existence, reachability, or permissions).
func (EndpointResponseOutput) Port ¶
func (o EndpointResponseOutput) Port() pulumi.IntOutput
Optional. Service Directory rejects values outside of `[0, 65535]`.
func (EndpointResponseOutput) ToEndpointResponseOutput ¶
func (o EndpointResponseOutput) ToEndpointResponseOutput() EndpointResponseOutput
func (EndpointResponseOutput) ToEndpointResponseOutputWithContext ¶
func (o EndpointResponseOutput) ToEndpointResponseOutputWithContext(ctx context.Context) EndpointResponseOutput
func (EndpointResponseOutput) Uid ¶ added in v0.29.0
func (o EndpointResponseOutput) Uid() pulumi.StringOutput
A globally unique identifier (in UUID4 format) for this endpoint.
func (EndpointResponseOutput) UpdateTime ¶ added in v0.5.0
func (o EndpointResponseOutput) UpdateTime() pulumi.StringOutput
The timestamp when the endpoint was last updated.
type EndpointState ¶ added in v0.3.0
type EndpointState struct { }
func (EndpointState) ElementType ¶ added in v0.3.0
func (EndpointState) ElementType() reflect.Type
type Expr ¶
type Expr struct { // Optional. Description of the expression. This is a longer text which describes the expression, e.g. when hovered over it in a UI. Description *string `pulumi:"description"` // Textual representation of an expression in Common Expression Language syntax. Expression *string `pulumi:"expression"` // Optional. String indicating the location of the expression for error reporting, e.g. a file name and a position in the file. Location *string `pulumi:"location"` // Optional. Title for the expression, i.e. a short string describing its purpose. This can be used e.g. in UIs which allow to enter the expression. Title *string `pulumi:"title"` }
Represents a textual expression in the Common Expression Language (CEL) syntax. CEL is a C-like expression language. The syntax and semantics of CEL are documented at https://github.com/google/cel-spec. Example (Comparison): title: "Summary size limit" description: "Determines if a summary is less than 100 chars" expression: "document.summary.size() < 100" Example (Equality): title: "Requestor is owner" description: "Determines if requestor is the document owner" expression: "document.owner == request.auth.claims.email" Example (Logic): title: "Public documents" description: "Determine whether the document should be publicly visible" expression: "document.type != 'private' && document.type != 'internal'" Example (Data Manipulation): title: "Notification string" description: "Create a notification string with a timestamp." expression: "'New message received at ' + string(document.create_time)" The exact variables and functions that may be referenced within an expression are determined by the service that evaluates it. See the service documentation for additional information.
type ExprArgs ¶
type ExprArgs struct { // Optional. Description of the expression. This is a longer text which describes the expression, e.g. when hovered over it in a UI. Description pulumi.StringPtrInput `pulumi:"description"` // Textual representation of an expression in Common Expression Language syntax. Expression pulumi.StringPtrInput `pulumi:"expression"` // Optional. String indicating the location of the expression for error reporting, e.g. a file name and a position in the file. Location pulumi.StringPtrInput `pulumi:"location"` // Optional. Title for the expression, i.e. a short string describing its purpose. This can be used e.g. in UIs which allow to enter the expression. Title pulumi.StringPtrInput `pulumi:"title"` }
Represents a textual expression in the Common Expression Language (CEL) syntax. CEL is a C-like expression language. The syntax and semantics of CEL are documented at https://github.com/google/cel-spec. Example (Comparison): title: "Summary size limit" description: "Determines if a summary is less than 100 chars" expression: "document.summary.size() < 100" Example (Equality): title: "Requestor is owner" description: "Determines if requestor is the document owner" expression: "document.owner == request.auth.claims.email" Example (Logic): title: "Public documents" description: "Determine whether the document should be publicly visible" expression: "document.type != 'private' && document.type != 'internal'" Example (Data Manipulation): title: "Notification string" description: "Create a notification string with a timestamp." expression: "'New message received at ' + string(document.create_time)" The exact variables and functions that may be referenced within an expression are determined by the service that evaluates it. See the service documentation for additional information.
func (ExprArgs) ElementType ¶
func (ExprArgs) ToExprOutput ¶
func (i ExprArgs) ToExprOutput() ExprOutput
func (ExprArgs) ToExprOutputWithContext ¶
func (i ExprArgs) ToExprOutputWithContext(ctx context.Context) ExprOutput
func (ExprArgs) ToExprPtrOutput ¶
func (i ExprArgs) ToExprPtrOutput() ExprPtrOutput
func (ExprArgs) ToExprPtrOutputWithContext ¶
func (i ExprArgs) ToExprPtrOutputWithContext(ctx context.Context) ExprPtrOutput
type ExprInput ¶
type ExprInput interface { pulumi.Input ToExprOutput() ExprOutput ToExprOutputWithContext(context.Context) ExprOutput }
ExprInput is an input type that accepts ExprArgs and ExprOutput values. You can construct a concrete instance of `ExprInput` via:
ExprArgs{...}
type ExprOutput ¶
type ExprOutput struct{ *pulumi.OutputState }
Represents a textual expression in the Common Expression Language (CEL) syntax. CEL is a C-like expression language. The syntax and semantics of CEL are documented at https://github.com/google/cel-spec. Example (Comparison): title: "Summary size limit" description: "Determines if a summary is less than 100 chars" expression: "document.summary.size() < 100" Example (Equality): title: "Requestor is owner" description: "Determines if requestor is the document owner" expression: "document.owner == request.auth.claims.email" Example (Logic): title: "Public documents" description: "Determine whether the document should be publicly visible" expression: "document.type != 'private' && document.type != 'internal'" Example (Data Manipulation): title: "Notification string" description: "Create a notification string with a timestamp." expression: "'New message received at ' + string(document.create_time)" The exact variables and functions that may be referenced within an expression are determined by the service that evaluates it. See the service documentation for additional information.
func (ExprOutput) Description ¶
func (o ExprOutput) Description() pulumi.StringPtrOutput
Optional. Description of the expression. This is a longer text which describes the expression, e.g. when hovered over it in a UI.
func (ExprOutput) ElementType ¶
func (ExprOutput) ElementType() reflect.Type
func (ExprOutput) Expression ¶
func (o ExprOutput) Expression() pulumi.StringPtrOutput
Textual representation of an expression in Common Expression Language syntax.
func (ExprOutput) Location ¶
func (o ExprOutput) Location() pulumi.StringPtrOutput
Optional. String indicating the location of the expression for error reporting, e.g. a file name and a position in the file.
func (ExprOutput) Title ¶
func (o ExprOutput) Title() pulumi.StringPtrOutput
Optional. Title for the expression, i.e. a short string describing its purpose. This can be used e.g. in UIs which allow to enter the expression.
func (ExprOutput) ToExprOutput ¶
func (o ExprOutput) ToExprOutput() ExprOutput
func (ExprOutput) ToExprOutputWithContext ¶
func (o ExprOutput) ToExprOutputWithContext(ctx context.Context) ExprOutput
func (ExprOutput) ToExprPtrOutput ¶
func (o ExprOutput) ToExprPtrOutput() ExprPtrOutput
func (ExprOutput) ToExprPtrOutputWithContext ¶
func (o ExprOutput) ToExprPtrOutputWithContext(ctx context.Context) ExprPtrOutput
type ExprPtrInput ¶
type ExprPtrInput interface { pulumi.Input ToExprPtrOutput() ExprPtrOutput ToExprPtrOutputWithContext(context.Context) ExprPtrOutput }
ExprPtrInput is an input type that accepts ExprArgs, ExprPtr and ExprPtrOutput values. You can construct a concrete instance of `ExprPtrInput` via:
ExprArgs{...} or: nil
func ExprPtr ¶
func ExprPtr(v *ExprArgs) ExprPtrInput
type ExprPtrOutput ¶
type ExprPtrOutput struct{ *pulumi.OutputState }
func (ExprPtrOutput) Description ¶
func (o ExprPtrOutput) Description() pulumi.StringPtrOutput
Optional. Description of the expression. This is a longer text which describes the expression, e.g. when hovered over it in a UI.
func (ExprPtrOutput) Elem ¶
func (o ExprPtrOutput) Elem() ExprOutput
func (ExprPtrOutput) ElementType ¶
func (ExprPtrOutput) ElementType() reflect.Type
func (ExprPtrOutput) Expression ¶
func (o ExprPtrOutput) Expression() pulumi.StringPtrOutput
Textual representation of an expression in Common Expression Language syntax.
func (ExprPtrOutput) Location ¶
func (o ExprPtrOutput) Location() pulumi.StringPtrOutput
Optional. String indicating the location of the expression for error reporting, e.g. a file name and a position in the file.
func (ExprPtrOutput) Title ¶
func (o ExprPtrOutput) Title() pulumi.StringPtrOutput
Optional. Title for the expression, i.e. a short string describing its purpose. This can be used e.g. in UIs which allow to enter the expression.
func (ExprPtrOutput) ToExprPtrOutput ¶
func (o ExprPtrOutput) ToExprPtrOutput() ExprPtrOutput
func (ExprPtrOutput) ToExprPtrOutputWithContext ¶
func (o ExprPtrOutput) ToExprPtrOutputWithContext(ctx context.Context) ExprPtrOutput
type ExprResponse ¶
type ExprResponse struct { // Optional. Description of the expression. This is a longer text which describes the expression, e.g. when hovered over it in a UI. Description string `pulumi:"description"` // Textual representation of an expression in Common Expression Language syntax. Expression string `pulumi:"expression"` // Optional. String indicating the location of the expression for error reporting, e.g. a file name and a position in the file. Location string `pulumi:"location"` // Optional. Title for the expression, i.e. a short string describing its purpose. This can be used e.g. in UIs which allow to enter the expression. Title string `pulumi:"title"` }
Represents a textual expression in the Common Expression Language (CEL) syntax. CEL is a C-like expression language. The syntax and semantics of CEL are documented at https://github.com/google/cel-spec. Example (Comparison): title: "Summary size limit" description: "Determines if a summary is less than 100 chars" expression: "document.summary.size() < 100" Example (Equality): title: "Requestor is owner" description: "Determines if requestor is the document owner" expression: "document.owner == request.auth.claims.email" Example (Logic): title: "Public documents" description: "Determine whether the document should be publicly visible" expression: "document.type != 'private' && document.type != 'internal'" Example (Data Manipulation): title: "Notification string" description: "Create a notification string with a timestamp." expression: "'New message received at ' + string(document.create_time)" The exact variables and functions that may be referenced within an expression are determined by the service that evaluates it. See the service documentation for additional information.
type ExprResponseOutput ¶
type ExprResponseOutput struct{ *pulumi.OutputState }
Represents a textual expression in the Common Expression Language (CEL) syntax. CEL is a C-like expression language. The syntax and semantics of CEL are documented at https://github.com/google/cel-spec. Example (Comparison): title: "Summary size limit" description: "Determines if a summary is less than 100 chars" expression: "document.summary.size() < 100" Example (Equality): title: "Requestor is owner" description: "Determines if requestor is the document owner" expression: "document.owner == request.auth.claims.email" Example (Logic): title: "Public documents" description: "Determine whether the document should be publicly visible" expression: "document.type != 'private' && document.type != 'internal'" Example (Data Manipulation): title: "Notification string" description: "Create a notification string with a timestamp." expression: "'New message received at ' + string(document.create_time)" The exact variables and functions that may be referenced within an expression are determined by the service that evaluates it. See the service documentation for additional information.
func (ExprResponseOutput) Description ¶
func (o ExprResponseOutput) Description() pulumi.StringOutput
Optional. Description of the expression. This is a longer text which describes the expression, e.g. when hovered over it in a UI.
func (ExprResponseOutput) ElementType ¶
func (ExprResponseOutput) ElementType() reflect.Type
func (ExprResponseOutput) Expression ¶
func (o ExprResponseOutput) Expression() pulumi.StringOutput
Textual representation of an expression in Common Expression Language syntax.
func (ExprResponseOutput) Location ¶
func (o ExprResponseOutput) Location() pulumi.StringOutput
Optional. String indicating the location of the expression for error reporting, e.g. a file name and a position in the file.
func (ExprResponseOutput) Title ¶
func (o ExprResponseOutput) Title() pulumi.StringOutput
Optional. Title for the expression, i.e. a short string describing its purpose. This can be used e.g. in UIs which allow to enter the expression.
func (ExprResponseOutput) ToExprResponseOutput ¶
func (o ExprResponseOutput) ToExprResponseOutput() ExprResponseOutput
func (ExprResponseOutput) ToExprResponseOutputWithContext ¶
func (o ExprResponseOutput) ToExprResponseOutputWithContext(ctx context.Context) ExprResponseOutput
type LookupEndpointArgs ¶ added in v0.4.0
type LookupEndpointOutputArgs ¶ added in v0.8.0
type LookupEndpointOutputArgs struct { EndpointId pulumi.StringInput `pulumi:"endpointId"` Location pulumi.StringInput `pulumi:"location"` NamespaceId pulumi.StringInput `pulumi:"namespaceId"` Project pulumi.StringPtrInput `pulumi:"project"` ServiceId pulumi.StringInput `pulumi:"serviceId"` }
func (LookupEndpointOutputArgs) ElementType ¶ added in v0.8.0
func (LookupEndpointOutputArgs) ElementType() reflect.Type
type LookupEndpointResult ¶ added in v0.4.0
type LookupEndpointResult struct { // Optional. An IPv4 or IPv6 address. Service Directory rejects bad addresses like: * `8.8.8` * `8.8.8.8:53` * `test:bad:address` * `[::1]` * `[::1]:8080` Limited to 45 characters. Address string `pulumi:"address"` // The timestamp when the endpoint was created. CreateTime string `pulumi:"createTime"` // Optional. Metadata for the endpoint. This data can be consumed by service clients. Restrictions: * The entire metadata dictionary may contain up to 512 characters, spread accoss all key-value pairs. Metadata that goes beyond this limit are rejected * Valid metadata keys have two segments: an optional prefix and name, separated by a slash (/). The name segment is required and must be 63 characters or less, beginning and ending with an alphanumeric character ([a-z0-9A-Z]) with dashes (-), underscores (_), dots (.), and alphanumerics between. The prefix is optional. If specified, the prefix must be a DNS subdomain: a series of DNS labels separated by dots (.), not longer than 253 characters in total, followed by a slash (/). Metadata that fails to meet these requirements are rejected Note: This field is equivalent to the `annotations` field in the v1 API. They have the same syntax and read/write to the same location in Service Directory. Metadata map[string]string `pulumi:"metadata"` // Immutable. The resource name for the endpoint in the format `projects/*/locations/*/namespaces/*/services/*/endpoints/*`. Name string `pulumi:"name"` // Immutable. The Google Compute Engine network (VPC) of the endpoint in the format `projects//locations/global/networks/*`. The project must be specified by project number (project id is rejected). Incorrectly formatted networks are rejected, but no other validation is performed on this field (ex. network or project existence, reachability, or permissions). Network string `pulumi:"network"` // Optional. Service Directory rejects values outside of `[0, 65535]`. Port int `pulumi:"port"` // A globally unique identifier (in UUID4 format) for this endpoint. Uid string `pulumi:"uid"` // The timestamp when the endpoint was last updated. UpdateTime string `pulumi:"updateTime"` }
func LookupEndpoint ¶ added in v0.4.0
func LookupEndpoint(ctx *pulumi.Context, args *LookupEndpointArgs, opts ...pulumi.InvokeOption) (*LookupEndpointResult, error)
Gets an endpoint.
type LookupEndpointResultOutput ¶ added in v0.8.0
type LookupEndpointResultOutput struct{ *pulumi.OutputState }
func LookupEndpointOutput ¶ added in v0.8.0
func LookupEndpointOutput(ctx *pulumi.Context, args LookupEndpointOutputArgs, opts ...pulumi.InvokeOption) LookupEndpointResultOutput
func (LookupEndpointResultOutput) Address ¶ added in v0.8.0
func (o LookupEndpointResultOutput) Address() pulumi.StringOutput
Optional. An IPv4 or IPv6 address. Service Directory rejects bad addresses like: * `8.8.8` * `8.8.8.8:53` * `test:bad:address` * `[::1]` * `[::1]:8080` Limited to 45 characters.
func (LookupEndpointResultOutput) CreateTime ¶ added in v0.8.0
func (o LookupEndpointResultOutput) CreateTime() pulumi.StringOutput
The timestamp when the endpoint was created.
func (LookupEndpointResultOutput) ElementType ¶ added in v0.8.0
func (LookupEndpointResultOutput) ElementType() reflect.Type
func (LookupEndpointResultOutput) Metadata ¶ added in v0.8.0
func (o LookupEndpointResultOutput) Metadata() pulumi.StringMapOutput
Optional. Metadata for the endpoint. This data can be consumed by service clients. Restrictions: * The entire metadata dictionary may contain up to 512 characters, spread accoss all key-value pairs. Metadata that goes beyond this limit are rejected * Valid metadata keys have two segments: an optional prefix and name, separated by a slash (/). The name segment is required and must be 63 characters or less, beginning and ending with an alphanumeric character ([a-z0-9A-Z]) with dashes (-), underscores (_), dots (.), and alphanumerics between. The prefix is optional. If specified, the prefix must be a DNS subdomain: a series of DNS labels separated by dots (.), not longer than 253 characters in total, followed by a slash (/). Metadata that fails to meet these requirements are rejected Note: This field is equivalent to the `annotations` field in the v1 API. They have the same syntax and read/write to the same location in Service Directory.
func (LookupEndpointResultOutput) Name ¶ added in v0.8.0
func (o LookupEndpointResultOutput) Name() pulumi.StringOutput
Immutable. The resource name for the endpoint in the format `projects/*/locations/*/namespaces/*/services/*/endpoints/*`.
func (LookupEndpointResultOutput) Network ¶ added in v0.8.0
func (o LookupEndpointResultOutput) Network() pulumi.StringOutput
Immutable. The Google Compute Engine network (VPC) of the endpoint in the format `projects//locations/global/networks/*`. The project must be specified by project number (project id is rejected). Incorrectly formatted networks are rejected, but no other validation is performed on this field (ex. network or project existence, reachability, or permissions).
func (LookupEndpointResultOutput) Port ¶ added in v0.8.0
func (o LookupEndpointResultOutput) Port() pulumi.IntOutput
Optional. Service Directory rejects values outside of `[0, 65535]`.
func (LookupEndpointResultOutput) ToLookupEndpointResultOutput ¶ added in v0.8.0
func (o LookupEndpointResultOutput) ToLookupEndpointResultOutput() LookupEndpointResultOutput
func (LookupEndpointResultOutput) ToLookupEndpointResultOutputWithContext ¶ added in v0.8.0
func (o LookupEndpointResultOutput) ToLookupEndpointResultOutputWithContext(ctx context.Context) LookupEndpointResultOutput
func (LookupEndpointResultOutput) Uid ¶ added in v0.29.0
func (o LookupEndpointResultOutput) Uid() pulumi.StringOutput
A globally unique identifier (in UUID4 format) for this endpoint.
func (LookupEndpointResultOutput) UpdateTime ¶ added in v0.8.0
func (o LookupEndpointResultOutput) UpdateTime() pulumi.StringOutput
The timestamp when the endpoint was last updated.
type LookupNamespaceArgs ¶ added in v0.4.0
type LookupNamespaceIamPolicyArgs ¶ added in v0.4.0
type LookupNamespaceIamPolicyOutputArgs ¶ added in v0.8.0
type LookupNamespaceIamPolicyOutputArgs struct { Location pulumi.StringInput `pulumi:"location"` NamespaceId pulumi.StringInput `pulumi:"namespaceId"` Project pulumi.StringPtrInput `pulumi:"project"` }
func (LookupNamespaceIamPolicyOutputArgs) ElementType ¶ added in v0.8.0
func (LookupNamespaceIamPolicyOutputArgs) ElementType() reflect.Type
type LookupNamespaceIamPolicyResult ¶ added in v0.4.0
type LookupNamespaceIamPolicyResult struct { // Associates a list of `members`, or principals, with a `role`. Optionally, may specify a `condition` that determines how and when the `bindings` are applied. Each of the `bindings` must contain at least one principal. The `bindings` in a `Policy` can refer to up to 1,500 principals; up to 250 of these principals can be Google groups. Each occurrence of a principal counts towards these limits. For example, if the `bindings` grant 50 different roles to `user:alice@example.com`, and not to any other principal, then you can add another 1,450 principals to the `bindings` in the `Policy`. Bindings []BindingResponse `pulumi:"bindings"` // `etag` is used for optimistic concurrency control as a way to help prevent simultaneous updates of a policy from overwriting each other. It is strongly suggested that systems make use of the `etag` in the read-modify-write cycle to perform policy updates in order to avoid race conditions: An `etag` is returned in the response to `getIamPolicy`, and systems are expected to put that etag in the request to `setIamPolicy` to ensure that their change will be applied to the same version of the policy. **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. Etag string `pulumi:"etag"` // Specifies the format of the policy. Valid values are `0`, `1`, and `3`. Requests that specify an invalid value are rejected. Any operation that affects conditional role bindings must specify version `3`. This requirement applies to the following operations: * Getting a policy that includes a conditional role binding * Adding a conditional role binding to a policy * Changing a conditional role binding in a policy * Removing any role binding, with or without a condition, from a policy that includes conditions **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. If a policy does not include any conditions, operations on that policy may specify any valid version or leave the field unset. To learn which resources support conditions in their IAM policies, see the [IAM documentation](https://cloud.google.com/iam/help/conditions/resource-policies). Version int `pulumi:"version"` }
func LookupNamespaceIamPolicy ¶ added in v0.4.0
func LookupNamespaceIamPolicy(ctx *pulumi.Context, args *LookupNamespaceIamPolicyArgs, opts ...pulumi.InvokeOption) (*LookupNamespaceIamPolicyResult, error)
Gets the IAM Policy for a resource
type LookupNamespaceIamPolicyResultOutput ¶ added in v0.8.0
type LookupNamespaceIamPolicyResultOutput struct{ *pulumi.OutputState }
func LookupNamespaceIamPolicyOutput ¶ added in v0.8.0
func LookupNamespaceIamPolicyOutput(ctx *pulumi.Context, args LookupNamespaceIamPolicyOutputArgs, opts ...pulumi.InvokeOption) LookupNamespaceIamPolicyResultOutput
func (LookupNamespaceIamPolicyResultOutput) Bindings ¶ added in v0.8.0
func (o LookupNamespaceIamPolicyResultOutput) Bindings() BindingResponseArrayOutput
Associates a list of `members`, or principals, with a `role`. Optionally, may specify a `condition` that determines how and when the `bindings` are applied. Each of the `bindings` must contain at least one principal. The `bindings` in a `Policy` can refer to up to 1,500 principals; up to 250 of these principals can be Google groups. Each occurrence of a principal counts towards these limits. For example, if the `bindings` grant 50 different roles to `user:alice@example.com`, and not to any other principal, then you can add another 1,450 principals to the `bindings` in the `Policy`.
func (LookupNamespaceIamPolicyResultOutput) ElementType ¶ added in v0.8.0
func (LookupNamespaceIamPolicyResultOutput) ElementType() reflect.Type
func (LookupNamespaceIamPolicyResultOutput) Etag ¶ added in v0.8.0
func (o LookupNamespaceIamPolicyResultOutput) Etag() pulumi.StringOutput
`etag` is used for optimistic concurrency control as a way to help prevent simultaneous updates of a policy from overwriting each other. It is strongly suggested that systems make use of the `etag` in the read-modify-write cycle to perform policy updates in order to avoid race conditions: An `etag` is returned in the response to `getIamPolicy`, and systems are expected to put that etag in the request to `setIamPolicy` to ensure that their change will be applied to the same version of the policy. **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost.
func (LookupNamespaceIamPolicyResultOutput) ToLookupNamespaceIamPolicyResultOutput ¶ added in v0.8.0
func (o LookupNamespaceIamPolicyResultOutput) ToLookupNamespaceIamPolicyResultOutput() LookupNamespaceIamPolicyResultOutput
func (LookupNamespaceIamPolicyResultOutput) ToLookupNamespaceIamPolicyResultOutputWithContext ¶ added in v0.8.0
func (o LookupNamespaceIamPolicyResultOutput) ToLookupNamespaceIamPolicyResultOutputWithContext(ctx context.Context) LookupNamespaceIamPolicyResultOutput
func (LookupNamespaceIamPolicyResultOutput) Version ¶ added in v0.8.0
func (o LookupNamespaceIamPolicyResultOutput) Version() pulumi.IntOutput
Specifies the format of the policy. Valid values are `0`, `1`, and `3`. Requests that specify an invalid value are rejected. Any operation that affects conditional role bindings must specify version `3`. This requirement applies to the following operations: * Getting a policy that includes a conditional role binding * Adding a conditional role binding to a policy * Changing a conditional role binding in a policy * Removing any role binding, with or without a condition, from a policy that includes conditions **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. If a policy does not include any conditions, operations on that policy may specify any valid version or leave the field unset. To learn which resources support conditions in their IAM policies, see the [IAM documentation](https://cloud.google.com/iam/help/conditions/resource-policies).
type LookupNamespaceOutputArgs ¶ added in v0.8.0
type LookupNamespaceOutputArgs struct { Location pulumi.StringInput `pulumi:"location"` NamespaceId pulumi.StringInput `pulumi:"namespaceId"` Project pulumi.StringPtrInput `pulumi:"project"` }
func (LookupNamespaceOutputArgs) ElementType ¶ added in v0.8.0
func (LookupNamespaceOutputArgs) ElementType() reflect.Type
type LookupNamespaceResult ¶ added in v0.4.0
type LookupNamespaceResult struct { // The timestamp when the namespace was created. CreateTime string `pulumi:"createTime"` // Optional. Resource labels associated with this namespace. No more than 64 user labels can be associated with a given resource. Label keys and values can be no longer than 63 characters. Labels map[string]string `pulumi:"labels"` // Immutable. The resource name for the namespace in the format `projects/*/locations/*/namespaces/*`. Name string `pulumi:"name"` // A globally unique identifier (in UUID4 format) for this namespace. Uid string `pulumi:"uid"` // The timestamp when the namespace was last updated. UpdateTime string `pulumi:"updateTime"` }
func LookupNamespace ¶ added in v0.4.0
func LookupNamespace(ctx *pulumi.Context, args *LookupNamespaceArgs, opts ...pulumi.InvokeOption) (*LookupNamespaceResult, error)
Gets a namespace.
type LookupNamespaceResultOutput ¶ added in v0.8.0
type LookupNamespaceResultOutput struct{ *pulumi.OutputState }
func LookupNamespaceOutput ¶ added in v0.8.0
func LookupNamespaceOutput(ctx *pulumi.Context, args LookupNamespaceOutputArgs, opts ...pulumi.InvokeOption) LookupNamespaceResultOutput
func (LookupNamespaceResultOutput) CreateTime ¶ added in v0.8.0
func (o LookupNamespaceResultOutput) CreateTime() pulumi.StringOutput
The timestamp when the namespace was created.
func (LookupNamespaceResultOutput) ElementType ¶ added in v0.8.0
func (LookupNamespaceResultOutput) ElementType() reflect.Type
func (LookupNamespaceResultOutput) Labels ¶ added in v0.8.0
func (o LookupNamespaceResultOutput) Labels() pulumi.StringMapOutput
Optional. Resource labels associated with this namespace. No more than 64 user labels can be associated with a given resource. Label keys and values can be no longer than 63 characters.
func (LookupNamespaceResultOutput) Name ¶ added in v0.8.0
func (o LookupNamespaceResultOutput) Name() pulumi.StringOutput
Immutable. The resource name for the namespace in the format `projects/*/locations/*/namespaces/*`.
func (LookupNamespaceResultOutput) ToLookupNamespaceResultOutput ¶ added in v0.8.0
func (o LookupNamespaceResultOutput) ToLookupNamespaceResultOutput() LookupNamespaceResultOutput
func (LookupNamespaceResultOutput) ToLookupNamespaceResultOutputWithContext ¶ added in v0.8.0
func (o LookupNamespaceResultOutput) ToLookupNamespaceResultOutputWithContext(ctx context.Context) LookupNamespaceResultOutput
func (LookupNamespaceResultOutput) Uid ¶ added in v0.29.0
func (o LookupNamespaceResultOutput) Uid() pulumi.StringOutput
A globally unique identifier (in UUID4 format) for this namespace.
func (LookupNamespaceResultOutput) UpdateTime ¶ added in v0.8.0
func (o LookupNamespaceResultOutput) UpdateTime() pulumi.StringOutput
The timestamp when the namespace was last updated.
type LookupNamespaceServiceIamPolicyArgs ¶ added in v0.4.0
type LookupNamespaceServiceIamPolicyOutputArgs ¶ added in v0.8.0
type LookupNamespaceServiceIamPolicyOutputArgs struct { Location pulumi.StringInput `pulumi:"location"` NamespaceId pulumi.StringInput `pulumi:"namespaceId"` Project pulumi.StringPtrInput `pulumi:"project"` ServiceId pulumi.StringInput `pulumi:"serviceId"` }
func (LookupNamespaceServiceIamPolicyOutputArgs) ElementType ¶ added in v0.8.0
func (LookupNamespaceServiceIamPolicyOutputArgs) ElementType() reflect.Type
type LookupNamespaceServiceIamPolicyResult ¶ added in v0.4.0
type LookupNamespaceServiceIamPolicyResult struct { // Associates a list of `members`, or principals, with a `role`. Optionally, may specify a `condition` that determines how and when the `bindings` are applied. Each of the `bindings` must contain at least one principal. The `bindings` in a `Policy` can refer to up to 1,500 principals; up to 250 of these principals can be Google groups. Each occurrence of a principal counts towards these limits. For example, if the `bindings` grant 50 different roles to `user:alice@example.com`, and not to any other principal, then you can add another 1,450 principals to the `bindings` in the `Policy`. Bindings []BindingResponse `pulumi:"bindings"` // `etag` is used for optimistic concurrency control as a way to help prevent simultaneous updates of a policy from overwriting each other. It is strongly suggested that systems make use of the `etag` in the read-modify-write cycle to perform policy updates in order to avoid race conditions: An `etag` is returned in the response to `getIamPolicy`, and systems are expected to put that etag in the request to `setIamPolicy` to ensure that their change will be applied to the same version of the policy. **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. Etag string `pulumi:"etag"` // Specifies the format of the policy. Valid values are `0`, `1`, and `3`. Requests that specify an invalid value are rejected. Any operation that affects conditional role bindings must specify version `3`. This requirement applies to the following operations: * Getting a policy that includes a conditional role binding * Adding a conditional role binding to a policy * Changing a conditional role binding in a policy * Removing any role binding, with or without a condition, from a policy that includes conditions **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. If a policy does not include any conditions, operations on that policy may specify any valid version or leave the field unset. To learn which resources support conditions in their IAM policies, see the [IAM documentation](https://cloud.google.com/iam/help/conditions/resource-policies). Version int `pulumi:"version"` }
func LookupNamespaceServiceIamPolicy ¶ added in v0.4.0
func LookupNamespaceServiceIamPolicy(ctx *pulumi.Context, args *LookupNamespaceServiceIamPolicyArgs, opts ...pulumi.InvokeOption) (*LookupNamespaceServiceIamPolicyResult, error)
Gets the IAM Policy for a resource
type LookupNamespaceServiceIamPolicyResultOutput ¶ added in v0.8.0
type LookupNamespaceServiceIamPolicyResultOutput struct{ *pulumi.OutputState }
func LookupNamespaceServiceIamPolicyOutput ¶ added in v0.8.0
func LookupNamespaceServiceIamPolicyOutput(ctx *pulumi.Context, args LookupNamespaceServiceIamPolicyOutputArgs, opts ...pulumi.InvokeOption) LookupNamespaceServiceIamPolicyResultOutput
func (LookupNamespaceServiceIamPolicyResultOutput) Bindings ¶ added in v0.8.0
func (o LookupNamespaceServiceIamPolicyResultOutput) Bindings() BindingResponseArrayOutput
Associates a list of `members`, or principals, with a `role`. Optionally, may specify a `condition` that determines how and when the `bindings` are applied. Each of the `bindings` must contain at least one principal. The `bindings` in a `Policy` can refer to up to 1,500 principals; up to 250 of these principals can be Google groups. Each occurrence of a principal counts towards these limits. For example, if the `bindings` grant 50 different roles to `user:alice@example.com`, and not to any other principal, then you can add another 1,450 principals to the `bindings` in the `Policy`.
func (LookupNamespaceServiceIamPolicyResultOutput) ElementType ¶ added in v0.8.0
func (LookupNamespaceServiceIamPolicyResultOutput) ElementType() reflect.Type
func (LookupNamespaceServiceIamPolicyResultOutput) Etag ¶ added in v0.8.0
func (o LookupNamespaceServiceIamPolicyResultOutput) Etag() pulumi.StringOutput
`etag` is used for optimistic concurrency control as a way to help prevent simultaneous updates of a policy from overwriting each other. It is strongly suggested that systems make use of the `etag` in the read-modify-write cycle to perform policy updates in order to avoid race conditions: An `etag` is returned in the response to `getIamPolicy`, and systems are expected to put that etag in the request to `setIamPolicy` to ensure that their change will be applied to the same version of the policy. **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost.
func (LookupNamespaceServiceIamPolicyResultOutput) ToLookupNamespaceServiceIamPolicyResultOutput ¶ added in v0.8.0
func (o LookupNamespaceServiceIamPolicyResultOutput) ToLookupNamespaceServiceIamPolicyResultOutput() LookupNamespaceServiceIamPolicyResultOutput
func (LookupNamespaceServiceIamPolicyResultOutput) ToLookupNamespaceServiceIamPolicyResultOutputWithContext ¶ added in v0.8.0
func (o LookupNamespaceServiceIamPolicyResultOutput) ToLookupNamespaceServiceIamPolicyResultOutputWithContext(ctx context.Context) LookupNamespaceServiceIamPolicyResultOutput
func (LookupNamespaceServiceIamPolicyResultOutput) Version ¶ added in v0.8.0
func (o LookupNamespaceServiceIamPolicyResultOutput) Version() pulumi.IntOutput
Specifies the format of the policy. Valid values are `0`, `1`, and `3`. Requests that specify an invalid value are rejected. Any operation that affects conditional role bindings must specify version `3`. This requirement applies to the following operations: * Getting a policy that includes a conditional role binding * Adding a conditional role binding to a policy * Changing a conditional role binding in a policy * Removing any role binding, with or without a condition, from a policy that includes conditions **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. If a policy does not include any conditions, operations on that policy may specify any valid version or leave the field unset. To learn which resources support conditions in their IAM policies, see the [IAM documentation](https://cloud.google.com/iam/help/conditions/resource-policies).
type LookupNamespaceWorkloadIamPolicyArgs ¶ added in v0.29.0
type LookupNamespaceWorkloadIamPolicyOutputArgs ¶ added in v0.29.0
type LookupNamespaceWorkloadIamPolicyOutputArgs struct { Location pulumi.StringInput `pulumi:"location"` NamespaceId pulumi.StringInput `pulumi:"namespaceId"` Project pulumi.StringPtrInput `pulumi:"project"` WorkloadId pulumi.StringInput `pulumi:"workloadId"` }
func (LookupNamespaceWorkloadIamPolicyOutputArgs) ElementType ¶ added in v0.29.0
func (LookupNamespaceWorkloadIamPolicyOutputArgs) ElementType() reflect.Type
type LookupNamespaceWorkloadIamPolicyResult ¶ added in v0.29.0
type LookupNamespaceWorkloadIamPolicyResult struct { // Associates a list of `members`, or principals, with a `role`. Optionally, may specify a `condition` that determines how and when the `bindings` are applied. Each of the `bindings` must contain at least one principal. The `bindings` in a `Policy` can refer to up to 1,500 principals; up to 250 of these principals can be Google groups. Each occurrence of a principal counts towards these limits. For example, if the `bindings` grant 50 different roles to `user:alice@example.com`, and not to any other principal, then you can add another 1,450 principals to the `bindings` in the `Policy`. Bindings []BindingResponse `pulumi:"bindings"` // `etag` is used for optimistic concurrency control as a way to help prevent simultaneous updates of a policy from overwriting each other. It is strongly suggested that systems make use of the `etag` in the read-modify-write cycle to perform policy updates in order to avoid race conditions: An `etag` is returned in the response to `getIamPolicy`, and systems are expected to put that etag in the request to `setIamPolicy` to ensure that their change will be applied to the same version of the policy. **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. Etag string `pulumi:"etag"` // Specifies the format of the policy. Valid values are `0`, `1`, and `3`. Requests that specify an invalid value are rejected. Any operation that affects conditional role bindings must specify version `3`. This requirement applies to the following operations: * Getting a policy that includes a conditional role binding * Adding a conditional role binding to a policy * Changing a conditional role binding in a policy * Removing any role binding, with or without a condition, from a policy that includes conditions **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. If a policy does not include any conditions, operations on that policy may specify any valid version or leave the field unset. To learn which resources support conditions in their IAM policies, see the [IAM documentation](https://cloud.google.com/iam/help/conditions/resource-policies). Version int `pulumi:"version"` }
func LookupNamespaceWorkloadIamPolicy ¶ added in v0.29.0
func LookupNamespaceWorkloadIamPolicy(ctx *pulumi.Context, args *LookupNamespaceWorkloadIamPolicyArgs, opts ...pulumi.InvokeOption) (*LookupNamespaceWorkloadIamPolicyResult, error)
Gets the IAM Policy for a resource
type LookupNamespaceWorkloadIamPolicyResultOutput ¶ added in v0.29.0
type LookupNamespaceWorkloadIamPolicyResultOutput struct{ *pulumi.OutputState }
func LookupNamespaceWorkloadIamPolicyOutput ¶ added in v0.29.0
func LookupNamespaceWorkloadIamPolicyOutput(ctx *pulumi.Context, args LookupNamespaceWorkloadIamPolicyOutputArgs, opts ...pulumi.InvokeOption) LookupNamespaceWorkloadIamPolicyResultOutput
func (LookupNamespaceWorkloadIamPolicyResultOutput) Bindings ¶ added in v0.29.0
func (o LookupNamespaceWorkloadIamPolicyResultOutput) Bindings() BindingResponseArrayOutput
Associates a list of `members`, or principals, with a `role`. Optionally, may specify a `condition` that determines how and when the `bindings` are applied. Each of the `bindings` must contain at least one principal. The `bindings` in a `Policy` can refer to up to 1,500 principals; up to 250 of these principals can be Google groups. Each occurrence of a principal counts towards these limits. For example, if the `bindings` grant 50 different roles to `user:alice@example.com`, and not to any other principal, then you can add another 1,450 principals to the `bindings` in the `Policy`.
func (LookupNamespaceWorkloadIamPolicyResultOutput) ElementType ¶ added in v0.29.0
func (LookupNamespaceWorkloadIamPolicyResultOutput) ElementType() reflect.Type
func (LookupNamespaceWorkloadIamPolicyResultOutput) Etag ¶ added in v0.29.0
func (o LookupNamespaceWorkloadIamPolicyResultOutput) Etag() pulumi.StringOutput
`etag` is used for optimistic concurrency control as a way to help prevent simultaneous updates of a policy from overwriting each other. It is strongly suggested that systems make use of the `etag` in the read-modify-write cycle to perform policy updates in order to avoid race conditions: An `etag` is returned in the response to `getIamPolicy`, and systems are expected to put that etag in the request to `setIamPolicy` to ensure that their change will be applied to the same version of the policy. **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost.
func (LookupNamespaceWorkloadIamPolicyResultOutput) ToLookupNamespaceWorkloadIamPolicyResultOutput ¶ added in v0.29.0
func (o LookupNamespaceWorkloadIamPolicyResultOutput) ToLookupNamespaceWorkloadIamPolicyResultOutput() LookupNamespaceWorkloadIamPolicyResultOutput
func (LookupNamespaceWorkloadIamPolicyResultOutput) ToLookupNamespaceWorkloadIamPolicyResultOutputWithContext ¶ added in v0.29.0
func (o LookupNamespaceWorkloadIamPolicyResultOutput) ToLookupNamespaceWorkloadIamPolicyResultOutputWithContext(ctx context.Context) LookupNamespaceWorkloadIamPolicyResultOutput
func (LookupNamespaceWorkloadIamPolicyResultOutput) Version ¶ added in v0.29.0
func (o LookupNamespaceWorkloadIamPolicyResultOutput) Version() pulumi.IntOutput
Specifies the format of the policy. Valid values are `0`, `1`, and `3`. Requests that specify an invalid value are rejected. Any operation that affects conditional role bindings must specify version `3`. This requirement applies to the following operations: * Getting a policy that includes a conditional role binding * Adding a conditional role binding to a policy * Changing a conditional role binding in a policy * Removing any role binding, with or without a condition, from a policy that includes conditions **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. If a policy does not include any conditions, operations on that policy may specify any valid version or leave the field unset. To learn which resources support conditions in their IAM policies, see the [IAM documentation](https://cloud.google.com/iam/help/conditions/resource-policies).
type LookupServiceArgs ¶ added in v0.4.0
type LookupServiceOutputArgs ¶ added in v0.8.0
type LookupServiceOutputArgs struct { Location pulumi.StringInput `pulumi:"location"` NamespaceId pulumi.StringInput `pulumi:"namespaceId"` Project pulumi.StringPtrInput `pulumi:"project"` ServiceId pulumi.StringInput `pulumi:"serviceId"` }
func (LookupServiceOutputArgs) ElementType ¶ added in v0.8.0
func (LookupServiceOutputArgs) ElementType() reflect.Type
type LookupServiceResult ¶ added in v0.4.0
type LookupServiceResult struct { // The timestamp when the service was created. CreateTime string `pulumi:"createTime"` // Endpoints associated with this service. Returned on LookupService.ResolveService. Control plane clients should use RegistrationService.ListEndpoints. Endpoints []EndpointResponse `pulumi:"endpoints"` // Optional. Metadata for the service. This data can be consumed by service clients. Restrictions: * The entire metadata dictionary may contain up to 2000 characters, spread accoss all key-value pairs. Metadata that goes beyond this limit are rejected * Valid metadata keys have two segments: an optional prefix and name, separated by a slash (/). The name segment is required and must be 63 characters or less, beginning and ending with an alphanumeric character ([a-z0-9A-Z]) with dashes (-), underscores (_), dots (.), and alphanumerics between. The prefix is optional. If specified, the prefix must be a DNS subdomain: a series of DNS labels separated by dots (.), not longer than 253 characters in total, followed by a slash (/). Metadata that fails to meet these requirements are rejected Note: This field is equivalent to the `annotations` field in the v1 API. They have the same syntax and read/write to the same location in Service Directory. Metadata map[string]string `pulumi:"metadata"` // Immutable. The resource name for the service in the format `projects/*/locations/*/namespaces/*/services/*`. Name string `pulumi:"name"` // A globally unique identifier (in UUID4 format) for this service. Uid string `pulumi:"uid"` // The timestamp when the service was last updated. Note: endpoints being created/deleted/updated within the service are not considered service updates for the purpose of this timestamp. UpdateTime string `pulumi:"updateTime"` }
func LookupService ¶ added in v0.4.0
func LookupService(ctx *pulumi.Context, args *LookupServiceArgs, opts ...pulumi.InvokeOption) (*LookupServiceResult, error)
Gets a service.
type LookupServiceResultOutput ¶ added in v0.8.0
type LookupServiceResultOutput struct{ *pulumi.OutputState }
func LookupServiceOutput ¶ added in v0.8.0
func LookupServiceOutput(ctx *pulumi.Context, args LookupServiceOutputArgs, opts ...pulumi.InvokeOption) LookupServiceResultOutput
func (LookupServiceResultOutput) CreateTime ¶ added in v0.8.0
func (o LookupServiceResultOutput) CreateTime() pulumi.StringOutput
The timestamp when the service was created.
func (LookupServiceResultOutput) ElementType ¶ added in v0.8.0
func (LookupServiceResultOutput) ElementType() reflect.Type
func (LookupServiceResultOutput) Endpoints ¶ added in v0.8.0
func (o LookupServiceResultOutput) Endpoints() EndpointResponseArrayOutput
Endpoints associated with this service. Returned on LookupService.ResolveService. Control plane clients should use RegistrationService.ListEndpoints.
func (LookupServiceResultOutput) Metadata ¶ added in v0.8.0
func (o LookupServiceResultOutput) Metadata() pulumi.StringMapOutput
Optional. Metadata for the service. This data can be consumed by service clients. Restrictions: * The entire metadata dictionary may contain up to 2000 characters, spread accoss all key-value pairs. Metadata that goes beyond this limit are rejected * Valid metadata keys have two segments: an optional prefix and name, separated by a slash (/). The name segment is required and must be 63 characters or less, beginning and ending with an alphanumeric character ([a-z0-9A-Z]) with dashes (-), underscores (_), dots (.), and alphanumerics between. The prefix is optional. If specified, the prefix must be a DNS subdomain: a series of DNS labels separated by dots (.), not longer than 253 characters in total, followed by a slash (/). Metadata that fails to meet these requirements are rejected Note: This field is equivalent to the `annotations` field in the v1 API. They have the same syntax and read/write to the same location in Service Directory.
func (LookupServiceResultOutput) Name ¶ added in v0.8.0
func (o LookupServiceResultOutput) Name() pulumi.StringOutput
Immutable. The resource name for the service in the format `projects/*/locations/*/namespaces/*/services/*`.
func (LookupServiceResultOutput) ToLookupServiceResultOutput ¶ added in v0.8.0
func (o LookupServiceResultOutput) ToLookupServiceResultOutput() LookupServiceResultOutput
func (LookupServiceResultOutput) ToLookupServiceResultOutputWithContext ¶ added in v0.8.0
func (o LookupServiceResultOutput) ToLookupServiceResultOutputWithContext(ctx context.Context) LookupServiceResultOutput
func (LookupServiceResultOutput) Uid ¶ added in v0.29.0
func (o LookupServiceResultOutput) Uid() pulumi.StringOutput
A globally unique identifier (in UUID4 format) for this service.
func (LookupServiceResultOutput) UpdateTime ¶ added in v0.8.0
func (o LookupServiceResultOutput) UpdateTime() pulumi.StringOutput
The timestamp when the service was last updated. Note: endpoints being created/deleted/updated within the service are not considered service updates for the purpose of this timestamp.
type Namespace ¶
type Namespace struct { pulumi.CustomResourceState // The timestamp when the namespace was created. CreateTime pulumi.StringOutput `pulumi:"createTime"` // Optional. Resource labels associated with this namespace. No more than 64 user labels can be associated with a given resource. Label keys and values can be no longer than 63 characters. Labels pulumi.StringMapOutput `pulumi:"labels"` Location pulumi.StringOutput `pulumi:"location"` // Immutable. The resource name for the namespace in the format `projects/*/locations/*/namespaces/*`. Name pulumi.StringOutput `pulumi:"name"` // Required. The Resource ID must be 1-63 characters long, and comply with RFC1035. Specifically, the name must be 1-63 characters long and match the regular expression `[a-z](?:[-a-z0-9]{0,61}[a-z0-9])?` which means the first character must be a lowercase letter, and all following characters must be a dash, lowercase letter, or digit, except the last character, which cannot be a dash. NamespaceId pulumi.StringOutput `pulumi:"namespaceId"` Project pulumi.StringOutput `pulumi:"project"` // A globally unique identifier (in UUID4 format) for this namespace. Uid pulumi.StringOutput `pulumi:"uid"` // The timestamp when the namespace was last updated. UpdateTime pulumi.StringOutput `pulumi:"updateTime"` }
Creates a namespace, and returns the new namespace.
func GetNamespace ¶
func GetNamespace(ctx *pulumi.Context, name string, id pulumi.IDInput, state *NamespaceState, opts ...pulumi.ResourceOption) (*Namespace, error)
GetNamespace gets an existing Namespace resource's state with the given name, ID, and optional state properties that are used to uniquely qualify the lookup (nil if not required).
func NewNamespace ¶
func NewNamespace(ctx *pulumi.Context, name string, args *NamespaceArgs, opts ...pulumi.ResourceOption) (*Namespace, error)
NewNamespace registers a new resource with the given unique name, arguments, and options.
func (*Namespace) ElementType ¶
func (*Namespace) ToNamespaceOutput ¶
func (i *Namespace) ToNamespaceOutput() NamespaceOutput
func (*Namespace) ToNamespaceOutputWithContext ¶
func (i *Namespace) ToNamespaceOutputWithContext(ctx context.Context) NamespaceOutput
type NamespaceArgs ¶
type NamespaceArgs struct { // Optional. Resource labels associated with this namespace. No more than 64 user labels can be associated with a given resource. Label keys and values can be no longer than 63 characters. Labels pulumi.StringMapInput Location pulumi.StringPtrInput // Immutable. The resource name for the namespace in the format `projects/*/locations/*/namespaces/*`. Name pulumi.StringPtrInput // Required. The Resource ID must be 1-63 characters long, and comply with RFC1035. Specifically, the name must be 1-63 characters long and match the regular expression `[a-z](?:[-a-z0-9]{0,61}[a-z0-9])?` which means the first character must be a lowercase letter, and all following characters must be a dash, lowercase letter, or digit, except the last character, which cannot be a dash. NamespaceId pulumi.StringInput Project pulumi.StringPtrInput }
The set of arguments for constructing a Namespace resource.
func (NamespaceArgs) ElementType ¶
func (NamespaceArgs) ElementType() reflect.Type
type NamespaceIamBinding ¶ added in v0.26.0
type NamespaceIamBinding struct { pulumi.CustomResourceState // An IAM Condition for a given binding. See https://cloud.google.com/iam/docs/conditions-overview for additional details. Condition iam.ConditionPtrOutput `pulumi:"condition"` // The etag of the resource's IAM policy. Etag pulumi.StringOutput `pulumi:"etag"` // Specifies the principals requesting access for a Google Cloud resource. `members` can have the following values: * `allUsers`: A special identifier that represents anyone who is on the internet; with or without a Google account. * `allAuthenticatedUsers`: A special identifier that represents anyone who is authenticated with a Google account or a service account. Does not include identities that come from external identity providers (IdPs) through identity federation. * `user:{emailid}`: An email address that represents a specific Google account. For example, `alice@example.com` . * `serviceAccount:{emailid}`: An email address that represents a Google service account. For example, `my-other-app@appspot.gserviceaccount.com`. * `serviceAccount:{projectid}.svc.id.goog[{namespace}/{kubernetes-sa}]`: An identifier for a [Kubernetes service account](https://cloud.google.com/kubernetes-engine/docs/how-to/kubernetes-service-accounts). For example, `my-project.svc.id.goog[my-namespace/my-kubernetes-sa]`. * `group:{emailid}`: An email address that represents a Google group. For example, `admins@example.com`. * `domain:{domain}`: The G Suite domain (primary) that represents all the users of that domain. For example, `google.com` or `example.com`. * `deleted:user:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a user that has been recently deleted. For example, `alice@example.com?uid=123456789012345678901`. If the user is recovered, this value reverts to `user:{emailid}` and the recovered user retains the role in the binding. * `deleted:serviceAccount:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a service account that has been recently deleted. For example, `my-other-app@appspot.gserviceaccount.com?uid=123456789012345678901`. If the service account is undeleted, this value reverts to `serviceAccount:{emailid}` and the undeleted service account retains the role in the binding. * `deleted:group:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a Google group that has been recently deleted. For example, `admins@example.com?uid=123456789012345678901`. If the group is recovered, this value reverts to `group:{emailid}` and the recovered group retains the role in the binding. Members pulumi.StringArrayOutput `pulumi:"members"` // The name of the resource to manage IAM policies for. Name pulumi.StringOutput `pulumi:"name"` // The project in which the resource belongs. If it is not provided, a default will be supplied. Project pulumi.StringOutput `pulumi:"project"` // Role that is assigned to the list of `members`, or principals. For example, `roles/viewer`, `roles/editor`, or `roles/owner`. Role pulumi.StringOutput `pulumi:"role"` }
Sets the IAM Policy for a resource
func GetNamespaceIamBinding ¶ added in v0.26.0
func GetNamespaceIamBinding(ctx *pulumi.Context, name string, id pulumi.IDInput, state *NamespaceIamBindingState, opts ...pulumi.ResourceOption) (*NamespaceIamBinding, error)
GetNamespaceIamBinding gets an existing NamespaceIamBinding resource's state with the given name, ID, and optional state properties that are used to uniquely qualify the lookup (nil if not required).
func NewNamespaceIamBinding ¶ added in v0.26.0
func NewNamespaceIamBinding(ctx *pulumi.Context, name string, args *NamespaceIamBindingArgs, opts ...pulumi.ResourceOption) (*NamespaceIamBinding, error)
NewNamespaceIamBinding registers a new resource with the given unique name, arguments, and options.
func (*NamespaceIamBinding) ElementType ¶ added in v0.26.0
func (*NamespaceIamBinding) ElementType() reflect.Type
func (*NamespaceIamBinding) ToNamespaceIamBindingOutput ¶ added in v0.26.0
func (i *NamespaceIamBinding) ToNamespaceIamBindingOutput() NamespaceIamBindingOutput
func (*NamespaceIamBinding) ToNamespaceIamBindingOutputWithContext ¶ added in v0.26.0
func (i *NamespaceIamBinding) ToNamespaceIamBindingOutputWithContext(ctx context.Context) NamespaceIamBindingOutput
type NamespaceIamBindingArgs ¶ added in v0.26.0
type NamespaceIamBindingArgs struct { // An IAM Condition for a given binding. Condition iam.ConditionPtrInput // Identities that will be granted the privilege in role. Each entry can have one of the following values: // // * user:{emailid}: An email address that represents a specific Google account. For example, alice@gmail.com or joe@example.com. // * serviceAccount:{emailid}: An email address that represents a service account. For example, my-other-app@appspot.gserviceaccount.com. // * group:{emailid}: An email address that represents a Google group. For example, admins@example.com. // * domain:{domain}: A G Suite domain (primary, instead of alias) name that represents all the users of that domain. For example, google.com or example.com. Members pulumi.StringArrayInput // The name of the resource to manage IAM policies for. Name pulumi.StringInput // The role that should be applied. Only one `IamBinding` can be used per role. Role pulumi.StringInput }
The set of arguments for constructing a NamespaceIamBinding resource.
func (NamespaceIamBindingArgs) ElementType ¶ added in v0.26.0
func (NamespaceIamBindingArgs) ElementType() reflect.Type
type NamespaceIamBindingInput ¶ added in v0.26.0
type NamespaceIamBindingInput interface { pulumi.Input ToNamespaceIamBindingOutput() NamespaceIamBindingOutput ToNamespaceIamBindingOutputWithContext(ctx context.Context) NamespaceIamBindingOutput }
type NamespaceIamBindingOutput ¶ added in v0.26.0
type NamespaceIamBindingOutput struct{ *pulumi.OutputState }
func (NamespaceIamBindingOutput) Condition ¶ added in v0.26.0
func (o NamespaceIamBindingOutput) Condition() iam.ConditionPtrOutput
An IAM Condition for a given binding. See https://cloud.google.com/iam/docs/conditions-overview for additional details.
func (NamespaceIamBindingOutput) ElementType ¶ added in v0.26.0
func (NamespaceIamBindingOutput) ElementType() reflect.Type
func (NamespaceIamBindingOutput) Etag ¶ added in v0.26.0
func (o NamespaceIamBindingOutput) Etag() pulumi.StringOutput
The etag of the resource's IAM policy.
func (NamespaceIamBindingOutput) Members ¶ added in v0.26.0
func (o NamespaceIamBindingOutput) Members() pulumi.StringArrayOutput
Specifies the principals requesting access for a Google Cloud resource. `members` can have the following values: * `allUsers`: A special identifier that represents anyone who is on the internet; with or without a Google account. * `allAuthenticatedUsers`: A special identifier that represents anyone who is authenticated with a Google account or a service account. Does not include identities that come from external identity providers (IdPs) through identity federation. * `user:{emailid}`: An email address that represents a specific Google account. For example, `alice@example.com` . * `serviceAccount:{emailid}`: An email address that represents a Google service account. For example, `my-other-app@appspot.gserviceaccount.com`. * `serviceAccount:{projectid}.svc.id.goog[{namespace}/{kubernetes-sa}]`: An identifier for a [Kubernetes service account](https://cloud.google.com/kubernetes-engine/docs/how-to/kubernetes-service-accounts). For example, `my-project.svc.id.goog[my-namespace/my-kubernetes-sa]`. * `group:{emailid}`: An email address that represents a Google group. For example, `admins@example.com`. * `domain:{domain}`: The G Suite domain (primary) that represents all the users of that domain. For example, `google.com` or `example.com`. * `deleted:user:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a user that has been recently deleted. For example, `alice@example.com?uid=123456789012345678901`. If the user is recovered, this value reverts to `user:{emailid}` and the recovered user retains the role in the binding. * `deleted:serviceAccount:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a service account that has been recently deleted. For example, `my-other-app@appspot.gserviceaccount.com?uid=123456789012345678901`. If the service account is undeleted, this value reverts to `serviceAccount:{emailid}` and the undeleted service account retains the role in the binding. * `deleted:group:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a Google group that has been recently deleted. For example, `admins@example.com?uid=123456789012345678901`. If the group is recovered, this value reverts to `group:{emailid}` and the recovered group retains the role in the binding.
func (NamespaceIamBindingOutput) Name ¶ added in v0.26.0
func (o NamespaceIamBindingOutput) Name() pulumi.StringOutput
The name of the resource to manage IAM policies for.
func (NamespaceIamBindingOutput) Project ¶ added in v0.26.0
func (o NamespaceIamBindingOutput) Project() pulumi.StringOutput
The project in which the resource belongs. If it is not provided, a default will be supplied.
func (NamespaceIamBindingOutput) Role ¶ added in v0.26.0
func (o NamespaceIamBindingOutput) Role() pulumi.StringOutput
Role that is assigned to the list of `members`, or principals. For example, `roles/viewer`, `roles/editor`, or `roles/owner`.
func (NamespaceIamBindingOutput) ToNamespaceIamBindingOutput ¶ added in v0.26.0
func (o NamespaceIamBindingOutput) ToNamespaceIamBindingOutput() NamespaceIamBindingOutput
func (NamespaceIamBindingOutput) ToNamespaceIamBindingOutputWithContext ¶ added in v0.26.0
func (o NamespaceIamBindingOutput) ToNamespaceIamBindingOutputWithContext(ctx context.Context) NamespaceIamBindingOutput
type NamespaceIamBindingState ¶ added in v0.26.0
type NamespaceIamBindingState struct { }
func (NamespaceIamBindingState) ElementType ¶ added in v0.26.0
func (NamespaceIamBindingState) ElementType() reflect.Type
type NamespaceIamMember ¶ added in v0.26.0
type NamespaceIamMember struct { pulumi.CustomResourceState // An IAM Condition for a given binding. See https://cloud.google.com/iam/docs/conditions-overview for additional details. Condition iam.ConditionPtrOutput `pulumi:"condition"` // The etag of the resource's IAM policy. Etag pulumi.StringOutput `pulumi:"etag"` // Specifies the principals requesting access for a Google Cloud resource. `members` can have the following values: * `allUsers`: A special identifier that represents anyone who is on the internet; with or without a Google account. * `allAuthenticatedUsers`: A special identifier that represents anyone who is authenticated with a Google account or a service account. Does not include identities that come from external identity providers (IdPs) through identity federation. * `user:{emailid}`: An email address that represents a specific Google account. For example, `alice@example.com` . * `serviceAccount:{emailid}`: An email address that represents a Google service account. For example, `my-other-app@appspot.gserviceaccount.com`. * `serviceAccount:{projectid}.svc.id.goog[{namespace}/{kubernetes-sa}]`: An identifier for a [Kubernetes service account](https://cloud.google.com/kubernetes-engine/docs/how-to/kubernetes-service-accounts). For example, `my-project.svc.id.goog[my-namespace/my-kubernetes-sa]`. * `group:{emailid}`: An email address that represents a Google group. For example, `admins@example.com`. * `domain:{domain}`: The G Suite domain (primary) that represents all the users of that domain. For example, `google.com` or `example.com`. * `deleted:user:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a user that has been recently deleted. For example, `alice@example.com?uid=123456789012345678901`. If the user is recovered, this value reverts to `user:{emailid}` and the recovered user retains the role in the binding. * `deleted:serviceAccount:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a service account that has been recently deleted. For example, `my-other-app@appspot.gserviceaccount.com?uid=123456789012345678901`. If the service account is undeleted, this value reverts to `serviceAccount:{emailid}` and the undeleted service account retains the role in the binding. * `deleted:group:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a Google group that has been recently deleted. For example, `admins@example.com?uid=123456789012345678901`. If the group is recovered, this value reverts to `group:{emailid}` and the recovered group retains the role in the binding. Member pulumi.StringOutput `pulumi:"member"` // The name of the resource to manage IAM policies for. Name pulumi.StringOutput `pulumi:"name"` // The project in which the resource belongs. If it is not provided, a default will be supplied. Project pulumi.StringOutput `pulumi:"project"` // Role that is assigned to the list of `members`, or principals. For example, `roles/viewer`, `roles/editor`, or `roles/owner`. Role pulumi.StringOutput `pulumi:"role"` }
Sets the IAM Policy for a resource
func GetNamespaceIamMember ¶ added in v0.26.0
func GetNamespaceIamMember(ctx *pulumi.Context, name string, id pulumi.IDInput, state *NamespaceIamMemberState, opts ...pulumi.ResourceOption) (*NamespaceIamMember, error)
GetNamespaceIamMember gets an existing NamespaceIamMember resource's state with the given name, ID, and optional state properties that are used to uniquely qualify the lookup (nil if not required).
func NewNamespaceIamMember ¶ added in v0.26.0
func NewNamespaceIamMember(ctx *pulumi.Context, name string, args *NamespaceIamMemberArgs, opts ...pulumi.ResourceOption) (*NamespaceIamMember, error)
NewNamespaceIamMember registers a new resource with the given unique name, arguments, and options.
func (*NamespaceIamMember) ElementType ¶ added in v0.26.0
func (*NamespaceIamMember) ElementType() reflect.Type
func (*NamespaceIamMember) ToNamespaceIamMemberOutput ¶ added in v0.26.0
func (i *NamespaceIamMember) ToNamespaceIamMemberOutput() NamespaceIamMemberOutput
func (*NamespaceIamMember) ToNamespaceIamMemberOutputWithContext ¶ added in v0.26.0
func (i *NamespaceIamMember) ToNamespaceIamMemberOutputWithContext(ctx context.Context) NamespaceIamMemberOutput
type NamespaceIamMemberArgs ¶ added in v0.26.0
type NamespaceIamMemberArgs struct { // An IAM Condition for a given binding. Condition iam.ConditionPtrInput // Identity that will be granted the privilege in role. The entry can have one of the following values: // // * user:{emailid}: An email address that represents a specific Google account. For example, alice@gmail.com or joe@example.com. // * serviceAccount:{emailid}: An email address that represents a service account. For example, my-other-app@appspot.gserviceaccount.com. // * group:{emailid}: An email address that represents a Google group. For example, admins@example.com. // * domain:{domain}: A G Suite domain (primary, instead of alias) name that represents all the users of that domain. For example, google.com or example.com. Member pulumi.StringInput // The name of the resource to manage IAM policies for. Name pulumi.StringInput // The role that should be applied. Role pulumi.StringInput }
The set of arguments for constructing a NamespaceIamMember resource.
func (NamespaceIamMemberArgs) ElementType ¶ added in v0.26.0
func (NamespaceIamMemberArgs) ElementType() reflect.Type
type NamespaceIamMemberInput ¶ added in v0.26.0
type NamespaceIamMemberInput interface { pulumi.Input ToNamespaceIamMemberOutput() NamespaceIamMemberOutput ToNamespaceIamMemberOutputWithContext(ctx context.Context) NamespaceIamMemberOutput }
type NamespaceIamMemberOutput ¶ added in v0.26.0
type NamespaceIamMemberOutput struct{ *pulumi.OutputState }
func (NamespaceIamMemberOutput) Condition ¶ added in v0.26.0
func (o NamespaceIamMemberOutput) Condition() iam.ConditionPtrOutput
An IAM Condition for a given binding. See https://cloud.google.com/iam/docs/conditions-overview for additional details.
func (NamespaceIamMemberOutput) ElementType ¶ added in v0.26.0
func (NamespaceIamMemberOutput) ElementType() reflect.Type
func (NamespaceIamMemberOutput) Etag ¶ added in v0.26.0
func (o NamespaceIamMemberOutput) Etag() pulumi.StringOutput
The etag of the resource's IAM policy.
func (NamespaceIamMemberOutput) Member ¶ added in v0.26.0
func (o NamespaceIamMemberOutput) Member() pulumi.StringOutput
Specifies the principals requesting access for a Google Cloud resource. `members` can have the following values: * `allUsers`: A special identifier that represents anyone who is on the internet; with or without a Google account. * `allAuthenticatedUsers`: A special identifier that represents anyone who is authenticated with a Google account or a service account. Does not include identities that come from external identity providers (IdPs) through identity federation. * `user:{emailid}`: An email address that represents a specific Google account. For example, `alice@example.com` . * `serviceAccount:{emailid}`: An email address that represents a Google service account. For example, `my-other-app@appspot.gserviceaccount.com`. * `serviceAccount:{projectid}.svc.id.goog[{namespace}/{kubernetes-sa}]`: An identifier for a [Kubernetes service account](https://cloud.google.com/kubernetes-engine/docs/how-to/kubernetes-service-accounts). For example, `my-project.svc.id.goog[my-namespace/my-kubernetes-sa]`. * `group:{emailid}`: An email address that represents a Google group. For example, `admins@example.com`. * `domain:{domain}`: The G Suite domain (primary) that represents all the users of that domain. For example, `google.com` or `example.com`. * `deleted:user:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a user that has been recently deleted. For example, `alice@example.com?uid=123456789012345678901`. If the user is recovered, this value reverts to `user:{emailid}` and the recovered user retains the role in the binding. * `deleted:serviceAccount:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a service account that has been recently deleted. For example, `my-other-app@appspot.gserviceaccount.com?uid=123456789012345678901`. If the service account is undeleted, this value reverts to `serviceAccount:{emailid}` and the undeleted service account retains the role in the binding. * `deleted:group:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a Google group that has been recently deleted. For example, `admins@example.com?uid=123456789012345678901`. If the group is recovered, this value reverts to `group:{emailid}` and the recovered group retains the role in the binding.
func (NamespaceIamMemberOutput) Name ¶ added in v0.26.0
func (o NamespaceIamMemberOutput) Name() pulumi.StringOutput
The name of the resource to manage IAM policies for.
func (NamespaceIamMemberOutput) Project ¶ added in v0.26.0
func (o NamespaceIamMemberOutput) Project() pulumi.StringOutput
The project in which the resource belongs. If it is not provided, a default will be supplied.
func (NamespaceIamMemberOutput) Role ¶ added in v0.26.0
func (o NamespaceIamMemberOutput) Role() pulumi.StringOutput
Role that is assigned to the list of `members`, or principals. For example, `roles/viewer`, `roles/editor`, or `roles/owner`.
func (NamespaceIamMemberOutput) ToNamespaceIamMemberOutput ¶ added in v0.26.0
func (o NamespaceIamMemberOutput) ToNamespaceIamMemberOutput() NamespaceIamMemberOutput
func (NamespaceIamMemberOutput) ToNamespaceIamMemberOutputWithContext ¶ added in v0.26.0
func (o NamespaceIamMemberOutput) ToNamespaceIamMemberOutputWithContext(ctx context.Context) NamespaceIamMemberOutput
type NamespaceIamMemberState ¶ added in v0.26.0
type NamespaceIamMemberState struct { }
func (NamespaceIamMemberState) ElementType ¶ added in v0.26.0
func (NamespaceIamMemberState) ElementType() reflect.Type
type NamespaceIamPolicy ¶
type NamespaceIamPolicy struct { pulumi.CustomResourceState // Associates a list of `members`, or principals, with a `role`. Optionally, may specify a `condition` that determines how and when the `bindings` are applied. Each of the `bindings` must contain at least one principal. The `bindings` in a `Policy` can refer to up to 1,500 principals; up to 250 of these principals can be Google groups. Each occurrence of a principal counts towards these limits. For example, if the `bindings` grant 50 different roles to `user:alice@example.com`, and not to any other principal, then you can add another 1,450 principals to the `bindings` in the `Policy`. Bindings BindingResponseArrayOutput `pulumi:"bindings"` // `etag` is used for optimistic concurrency control as a way to help prevent simultaneous updates of a policy from overwriting each other. It is strongly suggested that systems make use of the `etag` in the read-modify-write cycle to perform policy updates in order to avoid race conditions: An `etag` is returned in the response to `getIamPolicy`, and systems are expected to put that etag in the request to `setIamPolicy` to ensure that their change will be applied to the same version of the policy. **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. Etag pulumi.StringOutput `pulumi:"etag"` Location pulumi.StringOutput `pulumi:"location"` NamespaceId pulumi.StringOutput `pulumi:"namespaceId"` Project pulumi.StringOutput `pulumi:"project"` // Specifies the format of the policy. Valid values are `0`, `1`, and `3`. Requests that specify an invalid value are rejected. Any operation that affects conditional role bindings must specify version `3`. This requirement applies to the following operations: * Getting a policy that includes a conditional role binding * Adding a conditional role binding to a policy * Changing a conditional role binding in a policy * Removing any role binding, with or without a condition, from a policy that includes conditions **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. If a policy does not include any conditions, operations on that policy may specify any valid version or leave the field unset. To learn which resources support conditions in their IAM policies, see the [IAM documentation](https://cloud.google.com/iam/help/conditions/resource-policies). Version pulumi.IntOutput `pulumi:"version"` }
Sets the IAM Policy for a resource Note - this resource's API doesn't support deletion. When deleted, the resource will persist on Google Cloud even though it will be deleted from Pulumi state.
func GetNamespaceIamPolicy ¶
func GetNamespaceIamPolicy(ctx *pulumi.Context, name string, id pulumi.IDInput, state *NamespaceIamPolicyState, opts ...pulumi.ResourceOption) (*NamespaceIamPolicy, error)
GetNamespaceIamPolicy gets an existing NamespaceIamPolicy resource's state with the given name, ID, and optional state properties that are used to uniquely qualify the lookup (nil if not required).
func NewNamespaceIamPolicy ¶
func NewNamespaceIamPolicy(ctx *pulumi.Context, name string, args *NamespaceIamPolicyArgs, opts ...pulumi.ResourceOption) (*NamespaceIamPolicy, error)
NewNamespaceIamPolicy registers a new resource with the given unique name, arguments, and options.
func (*NamespaceIamPolicy) ElementType ¶
func (*NamespaceIamPolicy) ElementType() reflect.Type
func (*NamespaceIamPolicy) ToNamespaceIamPolicyOutput ¶
func (i *NamespaceIamPolicy) ToNamespaceIamPolicyOutput() NamespaceIamPolicyOutput
func (*NamespaceIamPolicy) ToNamespaceIamPolicyOutputWithContext ¶
func (i *NamespaceIamPolicy) ToNamespaceIamPolicyOutputWithContext(ctx context.Context) NamespaceIamPolicyOutput
type NamespaceIamPolicyArgs ¶
type NamespaceIamPolicyArgs struct { // Associates a list of `members`, or principals, with a `role`. Optionally, may specify a `condition` that determines how and when the `bindings` are applied. Each of the `bindings` must contain at least one principal. The `bindings` in a `Policy` can refer to up to 1,500 principals; up to 250 of these principals can be Google groups. Each occurrence of a principal counts towards these limits. For example, if the `bindings` grant 50 different roles to `user:alice@example.com`, and not to any other principal, then you can add another 1,450 principals to the `bindings` in the `Policy`. Bindings BindingArrayInput // `etag` is used for optimistic concurrency control as a way to help prevent simultaneous updates of a policy from overwriting each other. It is strongly suggested that systems make use of the `etag` in the read-modify-write cycle to perform policy updates in order to avoid race conditions: An `etag` is returned in the response to `getIamPolicy`, and systems are expected to put that etag in the request to `setIamPolicy` to ensure that their change will be applied to the same version of the policy. **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. Etag pulumi.StringPtrInput Location pulumi.StringPtrInput NamespaceId pulumi.StringInput Project pulumi.StringPtrInput // Specifies the format of the policy. Valid values are `0`, `1`, and `3`. Requests that specify an invalid value are rejected. Any operation that affects conditional role bindings must specify version `3`. This requirement applies to the following operations: * Getting a policy that includes a conditional role binding * Adding a conditional role binding to a policy * Changing a conditional role binding in a policy * Removing any role binding, with or without a condition, from a policy that includes conditions **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. If a policy does not include any conditions, operations on that policy may specify any valid version or leave the field unset. To learn which resources support conditions in their IAM policies, see the [IAM documentation](https://cloud.google.com/iam/help/conditions/resource-policies). Version pulumi.IntPtrInput }
The set of arguments for constructing a NamespaceIamPolicy resource.
func (NamespaceIamPolicyArgs) ElementType ¶
func (NamespaceIamPolicyArgs) ElementType() reflect.Type
type NamespaceIamPolicyInput ¶
type NamespaceIamPolicyInput interface { pulumi.Input ToNamespaceIamPolicyOutput() NamespaceIamPolicyOutput ToNamespaceIamPolicyOutputWithContext(ctx context.Context) NamespaceIamPolicyOutput }
type NamespaceIamPolicyOutput ¶
type NamespaceIamPolicyOutput struct{ *pulumi.OutputState }
func (NamespaceIamPolicyOutput) Bindings ¶ added in v0.19.0
func (o NamespaceIamPolicyOutput) Bindings() BindingResponseArrayOutput
Associates a list of `members`, or principals, with a `role`. Optionally, may specify a `condition` that determines how and when the `bindings` are applied. Each of the `bindings` must contain at least one principal. The `bindings` in a `Policy` can refer to up to 1,500 principals; up to 250 of these principals can be Google groups. Each occurrence of a principal counts towards these limits. For example, if the `bindings` grant 50 different roles to `user:alice@example.com`, and not to any other principal, then you can add another 1,450 principals to the `bindings` in the `Policy`.
func (NamespaceIamPolicyOutput) ElementType ¶
func (NamespaceIamPolicyOutput) ElementType() reflect.Type
func (NamespaceIamPolicyOutput) Etag ¶ added in v0.19.0
func (o NamespaceIamPolicyOutput) Etag() pulumi.StringOutput
`etag` is used for optimistic concurrency control as a way to help prevent simultaneous updates of a policy from overwriting each other. It is strongly suggested that systems make use of the `etag` in the read-modify-write cycle to perform policy updates in order to avoid race conditions: An `etag` is returned in the response to `getIamPolicy`, and systems are expected to put that etag in the request to `setIamPolicy` to ensure that their change will be applied to the same version of the policy. **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost.
func (NamespaceIamPolicyOutput) Location ¶ added in v0.21.0
func (o NamespaceIamPolicyOutput) Location() pulumi.StringOutput
func (NamespaceIamPolicyOutput) NamespaceId ¶ added in v0.21.0
func (o NamespaceIamPolicyOutput) NamespaceId() pulumi.StringOutput
func (NamespaceIamPolicyOutput) Project ¶ added in v0.21.0
func (o NamespaceIamPolicyOutput) Project() pulumi.StringOutput
func (NamespaceIamPolicyOutput) ToNamespaceIamPolicyOutput ¶
func (o NamespaceIamPolicyOutput) ToNamespaceIamPolicyOutput() NamespaceIamPolicyOutput
func (NamespaceIamPolicyOutput) ToNamespaceIamPolicyOutputWithContext ¶
func (o NamespaceIamPolicyOutput) ToNamespaceIamPolicyOutputWithContext(ctx context.Context) NamespaceIamPolicyOutput
func (NamespaceIamPolicyOutput) Version ¶ added in v0.19.0
func (o NamespaceIamPolicyOutput) Version() pulumi.IntOutput
Specifies the format of the policy. Valid values are `0`, `1`, and `3`. Requests that specify an invalid value are rejected. Any operation that affects conditional role bindings must specify version `3`. This requirement applies to the following operations: * Getting a policy that includes a conditional role binding * Adding a conditional role binding to a policy * Changing a conditional role binding in a policy * Removing any role binding, with or without a condition, from a policy that includes conditions **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. If a policy does not include any conditions, operations on that policy may specify any valid version or leave the field unset. To learn which resources support conditions in their IAM policies, see the [IAM documentation](https://cloud.google.com/iam/help/conditions/resource-policies).
type NamespaceIamPolicyState ¶
type NamespaceIamPolicyState struct { }
func (NamespaceIamPolicyState) ElementType ¶
func (NamespaceIamPolicyState) ElementType() reflect.Type
type NamespaceInput ¶
type NamespaceInput interface { pulumi.Input ToNamespaceOutput() NamespaceOutput ToNamespaceOutputWithContext(ctx context.Context) NamespaceOutput }
type NamespaceOutput ¶
type NamespaceOutput struct{ *pulumi.OutputState }
func (NamespaceOutput) CreateTime ¶ added in v0.19.0
func (o NamespaceOutput) CreateTime() pulumi.StringOutput
The timestamp when the namespace was created.
func (NamespaceOutput) ElementType ¶
func (NamespaceOutput) ElementType() reflect.Type
func (NamespaceOutput) Labels ¶ added in v0.19.0
func (o NamespaceOutput) Labels() pulumi.StringMapOutput
Optional. Resource labels associated with this namespace. No more than 64 user labels can be associated with a given resource. Label keys and values can be no longer than 63 characters.
func (NamespaceOutput) Location ¶ added in v0.21.0
func (o NamespaceOutput) Location() pulumi.StringOutput
func (NamespaceOutput) Name ¶ added in v0.19.0
func (o NamespaceOutput) Name() pulumi.StringOutput
Immutable. The resource name for the namespace in the format `projects/*/locations/*/namespaces/*`.
func (NamespaceOutput) NamespaceId ¶ added in v0.21.0
func (o NamespaceOutput) NamespaceId() pulumi.StringOutput
Required. The Resource ID must be 1-63 characters long, and comply with RFC1035. Specifically, the name must be 1-63 characters long and match the regular expression `[a-z](?:[-a-z0-9]{0,61}[a-z0-9])?` which means the first character must be a lowercase letter, and all following characters must be a dash, lowercase letter, or digit, except the last character, which cannot be a dash.
func (NamespaceOutput) Project ¶ added in v0.21.0
func (o NamespaceOutput) Project() pulumi.StringOutput
func (NamespaceOutput) ToNamespaceOutput ¶
func (o NamespaceOutput) ToNamespaceOutput() NamespaceOutput
func (NamespaceOutput) ToNamespaceOutputWithContext ¶
func (o NamespaceOutput) ToNamespaceOutputWithContext(ctx context.Context) NamespaceOutput
func (NamespaceOutput) Uid ¶ added in v0.29.0
func (o NamespaceOutput) Uid() pulumi.StringOutput
A globally unique identifier (in UUID4 format) for this namespace.
func (NamespaceOutput) UpdateTime ¶ added in v0.19.0
func (o NamespaceOutput) UpdateTime() pulumi.StringOutput
The timestamp when the namespace was last updated.
type NamespaceServiceIamBinding ¶ added in v0.26.0
type NamespaceServiceIamBinding struct { pulumi.CustomResourceState // An IAM Condition for a given binding. See https://cloud.google.com/iam/docs/conditions-overview for additional details. Condition iam.ConditionPtrOutput `pulumi:"condition"` // The etag of the resource's IAM policy. Etag pulumi.StringOutput `pulumi:"etag"` // Specifies the principals requesting access for a Google Cloud resource. `members` can have the following values: * `allUsers`: A special identifier that represents anyone who is on the internet; with or without a Google account. * `allAuthenticatedUsers`: A special identifier that represents anyone who is authenticated with a Google account or a service account. Does not include identities that come from external identity providers (IdPs) through identity federation. * `user:{emailid}`: An email address that represents a specific Google account. For example, `alice@example.com` . * `serviceAccount:{emailid}`: An email address that represents a Google service account. For example, `my-other-app@appspot.gserviceaccount.com`. * `serviceAccount:{projectid}.svc.id.goog[{namespace}/{kubernetes-sa}]`: An identifier for a [Kubernetes service account](https://cloud.google.com/kubernetes-engine/docs/how-to/kubernetes-service-accounts). For example, `my-project.svc.id.goog[my-namespace/my-kubernetes-sa]`. * `group:{emailid}`: An email address that represents a Google group. For example, `admins@example.com`. * `domain:{domain}`: The G Suite domain (primary) that represents all the users of that domain. For example, `google.com` or `example.com`. * `deleted:user:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a user that has been recently deleted. For example, `alice@example.com?uid=123456789012345678901`. If the user is recovered, this value reverts to `user:{emailid}` and the recovered user retains the role in the binding. * `deleted:serviceAccount:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a service account that has been recently deleted. For example, `my-other-app@appspot.gserviceaccount.com?uid=123456789012345678901`. If the service account is undeleted, this value reverts to `serviceAccount:{emailid}` and the undeleted service account retains the role in the binding. * `deleted:group:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a Google group that has been recently deleted. For example, `admins@example.com?uid=123456789012345678901`. If the group is recovered, this value reverts to `group:{emailid}` and the recovered group retains the role in the binding. Members pulumi.StringArrayOutput `pulumi:"members"` // The name of the resource to manage IAM policies for. Name pulumi.StringOutput `pulumi:"name"` // The project in which the resource belongs. If it is not provided, a default will be supplied. Project pulumi.StringOutput `pulumi:"project"` // Role that is assigned to the list of `members`, or principals. For example, `roles/viewer`, `roles/editor`, or `roles/owner`. Role pulumi.StringOutput `pulumi:"role"` }
Sets the IAM Policy for a resource
func GetNamespaceServiceIamBinding ¶ added in v0.26.0
func GetNamespaceServiceIamBinding(ctx *pulumi.Context, name string, id pulumi.IDInput, state *NamespaceServiceIamBindingState, opts ...pulumi.ResourceOption) (*NamespaceServiceIamBinding, error)
GetNamespaceServiceIamBinding gets an existing NamespaceServiceIamBinding resource's state with the given name, ID, and optional state properties that are used to uniquely qualify the lookup (nil if not required).
func NewNamespaceServiceIamBinding ¶ added in v0.26.0
func NewNamespaceServiceIamBinding(ctx *pulumi.Context, name string, args *NamespaceServiceIamBindingArgs, opts ...pulumi.ResourceOption) (*NamespaceServiceIamBinding, error)
NewNamespaceServiceIamBinding registers a new resource with the given unique name, arguments, and options.
func (*NamespaceServiceIamBinding) ElementType ¶ added in v0.26.0
func (*NamespaceServiceIamBinding) ElementType() reflect.Type
func (*NamespaceServiceIamBinding) ToNamespaceServiceIamBindingOutput ¶ added in v0.26.0
func (i *NamespaceServiceIamBinding) ToNamespaceServiceIamBindingOutput() NamespaceServiceIamBindingOutput
func (*NamespaceServiceIamBinding) ToNamespaceServiceIamBindingOutputWithContext ¶ added in v0.26.0
func (i *NamespaceServiceIamBinding) ToNamespaceServiceIamBindingOutputWithContext(ctx context.Context) NamespaceServiceIamBindingOutput
type NamespaceServiceIamBindingArgs ¶ added in v0.26.0
type NamespaceServiceIamBindingArgs struct { // An IAM Condition for a given binding. Condition iam.ConditionPtrInput // Identities that will be granted the privilege in role. Each entry can have one of the following values: // // * user:{emailid}: An email address that represents a specific Google account. For example, alice@gmail.com or joe@example.com. // * serviceAccount:{emailid}: An email address that represents a service account. For example, my-other-app@appspot.gserviceaccount.com. // * group:{emailid}: An email address that represents a Google group. For example, admins@example.com. // * domain:{domain}: A G Suite domain (primary, instead of alias) name that represents all the users of that domain. For example, google.com or example.com. Members pulumi.StringArrayInput // The name of the resource to manage IAM policies for. Name pulumi.StringInput // The role that should be applied. Only one `IamBinding` can be used per role. Role pulumi.StringInput }
The set of arguments for constructing a NamespaceServiceIamBinding resource.
func (NamespaceServiceIamBindingArgs) ElementType ¶ added in v0.26.0
func (NamespaceServiceIamBindingArgs) ElementType() reflect.Type
type NamespaceServiceIamBindingInput ¶ added in v0.26.0
type NamespaceServiceIamBindingInput interface { pulumi.Input ToNamespaceServiceIamBindingOutput() NamespaceServiceIamBindingOutput ToNamespaceServiceIamBindingOutputWithContext(ctx context.Context) NamespaceServiceIamBindingOutput }
type NamespaceServiceIamBindingOutput ¶ added in v0.26.0
type NamespaceServiceIamBindingOutput struct{ *pulumi.OutputState }
func (NamespaceServiceIamBindingOutput) Condition ¶ added in v0.26.0
func (o NamespaceServiceIamBindingOutput) Condition() iam.ConditionPtrOutput
An IAM Condition for a given binding. See https://cloud.google.com/iam/docs/conditions-overview for additional details.
func (NamespaceServiceIamBindingOutput) ElementType ¶ added in v0.26.0
func (NamespaceServiceIamBindingOutput) ElementType() reflect.Type
func (NamespaceServiceIamBindingOutput) Etag ¶ added in v0.26.0
func (o NamespaceServiceIamBindingOutput) Etag() pulumi.StringOutput
The etag of the resource's IAM policy.
func (NamespaceServiceIamBindingOutput) Members ¶ added in v0.26.0
func (o NamespaceServiceIamBindingOutput) Members() pulumi.StringArrayOutput
Specifies the principals requesting access for a Google Cloud resource. `members` can have the following values: * `allUsers`: A special identifier that represents anyone who is on the internet; with or without a Google account. * `allAuthenticatedUsers`: A special identifier that represents anyone who is authenticated with a Google account or a service account. Does not include identities that come from external identity providers (IdPs) through identity federation. * `user:{emailid}`: An email address that represents a specific Google account. For example, `alice@example.com` . * `serviceAccount:{emailid}`: An email address that represents a Google service account. For example, `my-other-app@appspot.gserviceaccount.com`. * `serviceAccount:{projectid}.svc.id.goog[{namespace}/{kubernetes-sa}]`: An identifier for a [Kubernetes service account](https://cloud.google.com/kubernetes-engine/docs/how-to/kubernetes-service-accounts). For example, `my-project.svc.id.goog[my-namespace/my-kubernetes-sa]`. * `group:{emailid}`: An email address that represents a Google group. For example, `admins@example.com`. * `domain:{domain}`: The G Suite domain (primary) that represents all the users of that domain. For example, `google.com` or `example.com`. * `deleted:user:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a user that has been recently deleted. For example, `alice@example.com?uid=123456789012345678901`. If the user is recovered, this value reverts to `user:{emailid}` and the recovered user retains the role in the binding. * `deleted:serviceAccount:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a service account that has been recently deleted. For example, `my-other-app@appspot.gserviceaccount.com?uid=123456789012345678901`. If the service account is undeleted, this value reverts to `serviceAccount:{emailid}` and the undeleted service account retains the role in the binding. * `deleted:group:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a Google group that has been recently deleted. For example, `admins@example.com?uid=123456789012345678901`. If the group is recovered, this value reverts to `group:{emailid}` and the recovered group retains the role in the binding.
func (NamespaceServiceIamBindingOutput) Name ¶ added in v0.26.0
func (o NamespaceServiceIamBindingOutput) Name() pulumi.StringOutput
The name of the resource to manage IAM policies for.
func (NamespaceServiceIamBindingOutput) Project ¶ added in v0.26.0
func (o NamespaceServiceIamBindingOutput) Project() pulumi.StringOutput
The project in which the resource belongs. If it is not provided, a default will be supplied.
func (NamespaceServiceIamBindingOutput) Role ¶ added in v0.26.0
func (o NamespaceServiceIamBindingOutput) Role() pulumi.StringOutput
Role that is assigned to the list of `members`, or principals. For example, `roles/viewer`, `roles/editor`, or `roles/owner`.
func (NamespaceServiceIamBindingOutput) ToNamespaceServiceIamBindingOutput ¶ added in v0.26.0
func (o NamespaceServiceIamBindingOutput) ToNamespaceServiceIamBindingOutput() NamespaceServiceIamBindingOutput
func (NamespaceServiceIamBindingOutput) ToNamespaceServiceIamBindingOutputWithContext ¶ added in v0.26.0
func (o NamespaceServiceIamBindingOutput) ToNamespaceServiceIamBindingOutputWithContext(ctx context.Context) NamespaceServiceIamBindingOutput
type NamespaceServiceIamBindingState ¶ added in v0.26.0
type NamespaceServiceIamBindingState struct { }
func (NamespaceServiceIamBindingState) ElementType ¶ added in v0.26.0
func (NamespaceServiceIamBindingState) ElementType() reflect.Type
type NamespaceServiceIamMember ¶ added in v0.26.0
type NamespaceServiceIamMember struct { pulumi.CustomResourceState // An IAM Condition for a given binding. See https://cloud.google.com/iam/docs/conditions-overview for additional details. Condition iam.ConditionPtrOutput `pulumi:"condition"` // The etag of the resource's IAM policy. Etag pulumi.StringOutput `pulumi:"etag"` // Specifies the principals requesting access for a Google Cloud resource. `members` can have the following values: * `allUsers`: A special identifier that represents anyone who is on the internet; with or without a Google account. * `allAuthenticatedUsers`: A special identifier that represents anyone who is authenticated with a Google account or a service account. Does not include identities that come from external identity providers (IdPs) through identity federation. * `user:{emailid}`: An email address that represents a specific Google account. For example, `alice@example.com` . * `serviceAccount:{emailid}`: An email address that represents a Google service account. For example, `my-other-app@appspot.gserviceaccount.com`. * `serviceAccount:{projectid}.svc.id.goog[{namespace}/{kubernetes-sa}]`: An identifier for a [Kubernetes service account](https://cloud.google.com/kubernetes-engine/docs/how-to/kubernetes-service-accounts). For example, `my-project.svc.id.goog[my-namespace/my-kubernetes-sa]`. * `group:{emailid}`: An email address that represents a Google group. For example, `admins@example.com`. * `domain:{domain}`: The G Suite domain (primary) that represents all the users of that domain. For example, `google.com` or `example.com`. * `deleted:user:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a user that has been recently deleted. For example, `alice@example.com?uid=123456789012345678901`. If the user is recovered, this value reverts to `user:{emailid}` and the recovered user retains the role in the binding. * `deleted:serviceAccount:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a service account that has been recently deleted. For example, `my-other-app@appspot.gserviceaccount.com?uid=123456789012345678901`. If the service account is undeleted, this value reverts to `serviceAccount:{emailid}` and the undeleted service account retains the role in the binding. * `deleted:group:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a Google group that has been recently deleted. For example, `admins@example.com?uid=123456789012345678901`. If the group is recovered, this value reverts to `group:{emailid}` and the recovered group retains the role in the binding. Member pulumi.StringOutput `pulumi:"member"` // The name of the resource to manage IAM policies for. Name pulumi.StringOutput `pulumi:"name"` // The project in which the resource belongs. If it is not provided, a default will be supplied. Project pulumi.StringOutput `pulumi:"project"` // Role that is assigned to the list of `members`, or principals. For example, `roles/viewer`, `roles/editor`, or `roles/owner`. Role pulumi.StringOutput `pulumi:"role"` }
Sets the IAM Policy for a resource
func GetNamespaceServiceIamMember ¶ added in v0.26.0
func GetNamespaceServiceIamMember(ctx *pulumi.Context, name string, id pulumi.IDInput, state *NamespaceServiceIamMemberState, opts ...pulumi.ResourceOption) (*NamespaceServiceIamMember, error)
GetNamespaceServiceIamMember gets an existing NamespaceServiceIamMember resource's state with the given name, ID, and optional state properties that are used to uniquely qualify the lookup (nil if not required).
func NewNamespaceServiceIamMember ¶ added in v0.26.0
func NewNamespaceServiceIamMember(ctx *pulumi.Context, name string, args *NamespaceServiceIamMemberArgs, opts ...pulumi.ResourceOption) (*NamespaceServiceIamMember, error)
NewNamespaceServiceIamMember registers a new resource with the given unique name, arguments, and options.
func (*NamespaceServiceIamMember) ElementType ¶ added in v0.26.0
func (*NamespaceServiceIamMember) ElementType() reflect.Type
func (*NamespaceServiceIamMember) ToNamespaceServiceIamMemberOutput ¶ added in v0.26.0
func (i *NamespaceServiceIamMember) ToNamespaceServiceIamMemberOutput() NamespaceServiceIamMemberOutput
func (*NamespaceServiceIamMember) ToNamespaceServiceIamMemberOutputWithContext ¶ added in v0.26.0
func (i *NamespaceServiceIamMember) ToNamespaceServiceIamMemberOutputWithContext(ctx context.Context) NamespaceServiceIamMemberOutput
type NamespaceServiceIamMemberArgs ¶ added in v0.26.0
type NamespaceServiceIamMemberArgs struct { // An IAM Condition for a given binding. Condition iam.ConditionPtrInput // Identity that will be granted the privilege in role. The entry can have one of the following values: // // * user:{emailid}: An email address that represents a specific Google account. For example, alice@gmail.com or joe@example.com. // * serviceAccount:{emailid}: An email address that represents a service account. For example, my-other-app@appspot.gserviceaccount.com. // * group:{emailid}: An email address that represents a Google group. For example, admins@example.com. // * domain:{domain}: A G Suite domain (primary, instead of alias) name that represents all the users of that domain. For example, google.com or example.com. Member pulumi.StringInput // The name of the resource to manage IAM policies for. Name pulumi.StringInput // The role that should be applied. Role pulumi.StringInput }
The set of arguments for constructing a NamespaceServiceIamMember resource.
func (NamespaceServiceIamMemberArgs) ElementType ¶ added in v0.26.0
func (NamespaceServiceIamMemberArgs) ElementType() reflect.Type
type NamespaceServiceIamMemberInput ¶ added in v0.26.0
type NamespaceServiceIamMemberInput interface { pulumi.Input ToNamespaceServiceIamMemberOutput() NamespaceServiceIamMemberOutput ToNamespaceServiceIamMemberOutputWithContext(ctx context.Context) NamespaceServiceIamMemberOutput }
type NamespaceServiceIamMemberOutput ¶ added in v0.26.0
type NamespaceServiceIamMemberOutput struct{ *pulumi.OutputState }
func (NamespaceServiceIamMemberOutput) Condition ¶ added in v0.26.0
func (o NamespaceServiceIamMemberOutput) Condition() iam.ConditionPtrOutput
An IAM Condition for a given binding. See https://cloud.google.com/iam/docs/conditions-overview for additional details.
func (NamespaceServiceIamMemberOutput) ElementType ¶ added in v0.26.0
func (NamespaceServiceIamMemberOutput) ElementType() reflect.Type
func (NamespaceServiceIamMemberOutput) Etag ¶ added in v0.26.0
func (o NamespaceServiceIamMemberOutput) Etag() pulumi.StringOutput
The etag of the resource's IAM policy.
func (NamespaceServiceIamMemberOutput) Member ¶ added in v0.26.0
func (o NamespaceServiceIamMemberOutput) Member() pulumi.StringOutput
Specifies the principals requesting access for a Google Cloud resource. `members` can have the following values: * `allUsers`: A special identifier that represents anyone who is on the internet; with or without a Google account. * `allAuthenticatedUsers`: A special identifier that represents anyone who is authenticated with a Google account or a service account. Does not include identities that come from external identity providers (IdPs) through identity federation. * `user:{emailid}`: An email address that represents a specific Google account. For example, `alice@example.com` . * `serviceAccount:{emailid}`: An email address that represents a Google service account. For example, `my-other-app@appspot.gserviceaccount.com`. * `serviceAccount:{projectid}.svc.id.goog[{namespace}/{kubernetes-sa}]`: An identifier for a [Kubernetes service account](https://cloud.google.com/kubernetes-engine/docs/how-to/kubernetes-service-accounts). For example, `my-project.svc.id.goog[my-namespace/my-kubernetes-sa]`. * `group:{emailid}`: An email address that represents a Google group. For example, `admins@example.com`. * `domain:{domain}`: The G Suite domain (primary) that represents all the users of that domain. For example, `google.com` or `example.com`. * `deleted:user:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a user that has been recently deleted. For example, `alice@example.com?uid=123456789012345678901`. If the user is recovered, this value reverts to `user:{emailid}` and the recovered user retains the role in the binding. * `deleted:serviceAccount:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a service account that has been recently deleted. For example, `my-other-app@appspot.gserviceaccount.com?uid=123456789012345678901`. If the service account is undeleted, this value reverts to `serviceAccount:{emailid}` and the undeleted service account retains the role in the binding. * `deleted:group:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a Google group that has been recently deleted. For example, `admins@example.com?uid=123456789012345678901`. If the group is recovered, this value reverts to `group:{emailid}` and the recovered group retains the role in the binding.
func (NamespaceServiceIamMemberOutput) Name ¶ added in v0.26.0
func (o NamespaceServiceIamMemberOutput) Name() pulumi.StringOutput
The name of the resource to manage IAM policies for.
func (NamespaceServiceIamMemberOutput) Project ¶ added in v0.26.0
func (o NamespaceServiceIamMemberOutput) Project() pulumi.StringOutput
The project in which the resource belongs. If it is not provided, a default will be supplied.
func (NamespaceServiceIamMemberOutput) Role ¶ added in v0.26.0
func (o NamespaceServiceIamMemberOutput) Role() pulumi.StringOutput
Role that is assigned to the list of `members`, or principals. For example, `roles/viewer`, `roles/editor`, or `roles/owner`.
func (NamespaceServiceIamMemberOutput) ToNamespaceServiceIamMemberOutput ¶ added in v0.26.0
func (o NamespaceServiceIamMemberOutput) ToNamespaceServiceIamMemberOutput() NamespaceServiceIamMemberOutput
func (NamespaceServiceIamMemberOutput) ToNamespaceServiceIamMemberOutputWithContext ¶ added in v0.26.0
func (o NamespaceServiceIamMemberOutput) ToNamespaceServiceIamMemberOutputWithContext(ctx context.Context) NamespaceServiceIamMemberOutput
type NamespaceServiceIamMemberState ¶ added in v0.26.0
type NamespaceServiceIamMemberState struct { }
func (NamespaceServiceIamMemberState) ElementType ¶ added in v0.26.0
func (NamespaceServiceIamMemberState) ElementType() reflect.Type
type NamespaceServiceIamPolicy ¶
type NamespaceServiceIamPolicy struct { pulumi.CustomResourceState // Associates a list of `members`, or principals, with a `role`. Optionally, may specify a `condition` that determines how and when the `bindings` are applied. Each of the `bindings` must contain at least one principal. The `bindings` in a `Policy` can refer to up to 1,500 principals; up to 250 of these principals can be Google groups. Each occurrence of a principal counts towards these limits. For example, if the `bindings` grant 50 different roles to `user:alice@example.com`, and not to any other principal, then you can add another 1,450 principals to the `bindings` in the `Policy`. Bindings BindingResponseArrayOutput `pulumi:"bindings"` // `etag` is used for optimistic concurrency control as a way to help prevent simultaneous updates of a policy from overwriting each other. It is strongly suggested that systems make use of the `etag` in the read-modify-write cycle to perform policy updates in order to avoid race conditions: An `etag` is returned in the response to `getIamPolicy`, and systems are expected to put that etag in the request to `setIamPolicy` to ensure that their change will be applied to the same version of the policy. **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. Etag pulumi.StringOutput `pulumi:"etag"` Location pulumi.StringOutput `pulumi:"location"` NamespaceId pulumi.StringOutput `pulumi:"namespaceId"` Project pulumi.StringOutput `pulumi:"project"` ServiceId pulumi.StringOutput `pulumi:"serviceId"` // Specifies the format of the policy. Valid values are `0`, `1`, and `3`. Requests that specify an invalid value are rejected. Any operation that affects conditional role bindings must specify version `3`. This requirement applies to the following operations: * Getting a policy that includes a conditional role binding * Adding a conditional role binding to a policy * Changing a conditional role binding in a policy * Removing any role binding, with or without a condition, from a policy that includes conditions **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. If a policy does not include any conditions, operations on that policy may specify any valid version or leave the field unset. To learn which resources support conditions in their IAM policies, see the [IAM documentation](https://cloud.google.com/iam/help/conditions/resource-policies). Version pulumi.IntOutput `pulumi:"version"` }
Sets the IAM Policy for a resource Note - this resource's API doesn't support deletion. When deleted, the resource will persist on Google Cloud even though it will be deleted from Pulumi state.
func GetNamespaceServiceIamPolicy ¶
func GetNamespaceServiceIamPolicy(ctx *pulumi.Context, name string, id pulumi.IDInput, state *NamespaceServiceIamPolicyState, opts ...pulumi.ResourceOption) (*NamespaceServiceIamPolicy, error)
GetNamespaceServiceIamPolicy gets an existing NamespaceServiceIamPolicy resource's state with the given name, ID, and optional state properties that are used to uniquely qualify the lookup (nil if not required).
func NewNamespaceServiceIamPolicy ¶
func NewNamespaceServiceIamPolicy(ctx *pulumi.Context, name string, args *NamespaceServiceIamPolicyArgs, opts ...pulumi.ResourceOption) (*NamespaceServiceIamPolicy, error)
NewNamespaceServiceIamPolicy registers a new resource with the given unique name, arguments, and options.
func (*NamespaceServiceIamPolicy) ElementType ¶
func (*NamespaceServiceIamPolicy) ElementType() reflect.Type
func (*NamespaceServiceIamPolicy) ToNamespaceServiceIamPolicyOutput ¶
func (i *NamespaceServiceIamPolicy) ToNamespaceServiceIamPolicyOutput() NamespaceServiceIamPolicyOutput
func (*NamespaceServiceIamPolicy) ToNamespaceServiceIamPolicyOutputWithContext ¶
func (i *NamespaceServiceIamPolicy) ToNamespaceServiceIamPolicyOutputWithContext(ctx context.Context) NamespaceServiceIamPolicyOutput
type NamespaceServiceIamPolicyArgs ¶
type NamespaceServiceIamPolicyArgs struct { // Associates a list of `members`, or principals, with a `role`. Optionally, may specify a `condition` that determines how and when the `bindings` are applied. Each of the `bindings` must contain at least one principal. The `bindings` in a `Policy` can refer to up to 1,500 principals; up to 250 of these principals can be Google groups. Each occurrence of a principal counts towards these limits. For example, if the `bindings` grant 50 different roles to `user:alice@example.com`, and not to any other principal, then you can add another 1,450 principals to the `bindings` in the `Policy`. Bindings BindingArrayInput // `etag` is used for optimistic concurrency control as a way to help prevent simultaneous updates of a policy from overwriting each other. It is strongly suggested that systems make use of the `etag` in the read-modify-write cycle to perform policy updates in order to avoid race conditions: An `etag` is returned in the response to `getIamPolicy`, and systems are expected to put that etag in the request to `setIamPolicy` to ensure that their change will be applied to the same version of the policy. **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. Etag pulumi.StringPtrInput Location pulumi.StringPtrInput NamespaceId pulumi.StringInput Project pulumi.StringPtrInput ServiceId pulumi.StringInput // Specifies the format of the policy. Valid values are `0`, `1`, and `3`. Requests that specify an invalid value are rejected. Any operation that affects conditional role bindings must specify version `3`. This requirement applies to the following operations: * Getting a policy that includes a conditional role binding * Adding a conditional role binding to a policy * Changing a conditional role binding in a policy * Removing any role binding, with or without a condition, from a policy that includes conditions **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. If a policy does not include any conditions, operations on that policy may specify any valid version or leave the field unset. To learn which resources support conditions in their IAM policies, see the [IAM documentation](https://cloud.google.com/iam/help/conditions/resource-policies). Version pulumi.IntPtrInput }
The set of arguments for constructing a NamespaceServiceIamPolicy resource.
func (NamespaceServiceIamPolicyArgs) ElementType ¶
func (NamespaceServiceIamPolicyArgs) ElementType() reflect.Type
type NamespaceServiceIamPolicyInput ¶
type NamespaceServiceIamPolicyInput interface { pulumi.Input ToNamespaceServiceIamPolicyOutput() NamespaceServiceIamPolicyOutput ToNamespaceServiceIamPolicyOutputWithContext(ctx context.Context) NamespaceServiceIamPolicyOutput }
type NamespaceServiceIamPolicyOutput ¶
type NamespaceServiceIamPolicyOutput struct{ *pulumi.OutputState }
func (NamespaceServiceIamPolicyOutput) Bindings ¶ added in v0.19.0
func (o NamespaceServiceIamPolicyOutput) Bindings() BindingResponseArrayOutput
Associates a list of `members`, or principals, with a `role`. Optionally, may specify a `condition` that determines how and when the `bindings` are applied. Each of the `bindings` must contain at least one principal. The `bindings` in a `Policy` can refer to up to 1,500 principals; up to 250 of these principals can be Google groups. Each occurrence of a principal counts towards these limits. For example, if the `bindings` grant 50 different roles to `user:alice@example.com`, and not to any other principal, then you can add another 1,450 principals to the `bindings` in the `Policy`.
func (NamespaceServiceIamPolicyOutput) ElementType ¶
func (NamespaceServiceIamPolicyOutput) ElementType() reflect.Type
func (NamespaceServiceIamPolicyOutput) Etag ¶ added in v0.19.0
func (o NamespaceServiceIamPolicyOutput) Etag() pulumi.StringOutput
`etag` is used for optimistic concurrency control as a way to help prevent simultaneous updates of a policy from overwriting each other. It is strongly suggested that systems make use of the `etag` in the read-modify-write cycle to perform policy updates in order to avoid race conditions: An `etag` is returned in the response to `getIamPolicy`, and systems are expected to put that etag in the request to `setIamPolicy` to ensure that their change will be applied to the same version of the policy. **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost.
func (NamespaceServiceIamPolicyOutput) Location ¶ added in v0.21.0
func (o NamespaceServiceIamPolicyOutput) Location() pulumi.StringOutput
func (NamespaceServiceIamPolicyOutput) NamespaceId ¶ added in v0.21.0
func (o NamespaceServiceIamPolicyOutput) NamespaceId() pulumi.StringOutput
func (NamespaceServiceIamPolicyOutput) Project ¶ added in v0.21.0
func (o NamespaceServiceIamPolicyOutput) Project() pulumi.StringOutput
func (NamespaceServiceIamPolicyOutput) ServiceId ¶ added in v0.21.0
func (o NamespaceServiceIamPolicyOutput) ServiceId() pulumi.StringOutput
func (NamespaceServiceIamPolicyOutput) ToNamespaceServiceIamPolicyOutput ¶
func (o NamespaceServiceIamPolicyOutput) ToNamespaceServiceIamPolicyOutput() NamespaceServiceIamPolicyOutput
func (NamespaceServiceIamPolicyOutput) ToNamespaceServiceIamPolicyOutputWithContext ¶
func (o NamespaceServiceIamPolicyOutput) ToNamespaceServiceIamPolicyOutputWithContext(ctx context.Context) NamespaceServiceIamPolicyOutput
func (NamespaceServiceIamPolicyOutput) Version ¶ added in v0.19.0
func (o NamespaceServiceIamPolicyOutput) Version() pulumi.IntOutput
Specifies the format of the policy. Valid values are `0`, `1`, and `3`. Requests that specify an invalid value are rejected. Any operation that affects conditional role bindings must specify version `3`. This requirement applies to the following operations: * Getting a policy that includes a conditional role binding * Adding a conditional role binding to a policy * Changing a conditional role binding in a policy * Removing any role binding, with or without a condition, from a policy that includes conditions **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. If a policy does not include any conditions, operations on that policy may specify any valid version or leave the field unset. To learn which resources support conditions in their IAM policies, see the [IAM documentation](https://cloud.google.com/iam/help/conditions/resource-policies).
type NamespaceServiceIamPolicyState ¶
type NamespaceServiceIamPolicyState struct { }
func (NamespaceServiceIamPolicyState) ElementType ¶
func (NamespaceServiceIamPolicyState) ElementType() reflect.Type
type NamespaceState ¶
type NamespaceState struct { }
func (NamespaceState) ElementType ¶
func (NamespaceState) ElementType() reflect.Type
type NamespaceWorkloadIamBinding ¶ added in v0.29.0
type NamespaceWorkloadIamBinding struct { pulumi.CustomResourceState // An IAM Condition for a given binding. See https://cloud.google.com/iam/docs/conditions-overview for additional details. Condition iam.ConditionPtrOutput `pulumi:"condition"` // The etag of the resource's IAM policy. Etag pulumi.StringOutput `pulumi:"etag"` // Specifies the principals requesting access for a Google Cloud resource. `members` can have the following values: * `allUsers`: A special identifier that represents anyone who is on the internet; with or without a Google account. * `allAuthenticatedUsers`: A special identifier that represents anyone who is authenticated with a Google account or a service account. Does not include identities that come from external identity providers (IdPs) through identity federation. * `user:{emailid}`: An email address that represents a specific Google account. For example, `alice@example.com` . * `serviceAccount:{emailid}`: An email address that represents a Google service account. For example, `my-other-app@appspot.gserviceaccount.com`. * `serviceAccount:{projectid}.svc.id.goog[{namespace}/{kubernetes-sa}]`: An identifier for a [Kubernetes service account](https://cloud.google.com/kubernetes-engine/docs/how-to/kubernetes-service-accounts). For example, `my-project.svc.id.goog[my-namespace/my-kubernetes-sa]`. * `group:{emailid}`: An email address that represents a Google group. For example, `admins@example.com`. * `domain:{domain}`: The G Suite domain (primary) that represents all the users of that domain. For example, `google.com` or `example.com`. * `deleted:user:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a user that has been recently deleted. For example, `alice@example.com?uid=123456789012345678901`. If the user is recovered, this value reverts to `user:{emailid}` and the recovered user retains the role in the binding. * `deleted:serviceAccount:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a service account that has been recently deleted. For example, `my-other-app@appspot.gserviceaccount.com?uid=123456789012345678901`. If the service account is undeleted, this value reverts to `serviceAccount:{emailid}` and the undeleted service account retains the role in the binding. * `deleted:group:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a Google group that has been recently deleted. For example, `admins@example.com?uid=123456789012345678901`. If the group is recovered, this value reverts to `group:{emailid}` and the recovered group retains the role in the binding. Members pulumi.StringArrayOutput `pulumi:"members"` // The name of the resource to manage IAM policies for. Name pulumi.StringOutput `pulumi:"name"` // The project in which the resource belongs. If it is not provided, a default will be supplied. Project pulumi.StringOutput `pulumi:"project"` // Role that is assigned to the list of `members`, or principals. For example, `roles/viewer`, `roles/editor`, or `roles/owner`. Role pulumi.StringOutput `pulumi:"role"` }
Sets the IAM Policy for a resource
func GetNamespaceWorkloadIamBinding ¶ added in v0.29.0
func GetNamespaceWorkloadIamBinding(ctx *pulumi.Context, name string, id pulumi.IDInput, state *NamespaceWorkloadIamBindingState, opts ...pulumi.ResourceOption) (*NamespaceWorkloadIamBinding, error)
GetNamespaceWorkloadIamBinding gets an existing NamespaceWorkloadIamBinding resource's state with the given name, ID, and optional state properties that are used to uniquely qualify the lookup (nil if not required).
func NewNamespaceWorkloadIamBinding ¶ added in v0.29.0
func NewNamespaceWorkloadIamBinding(ctx *pulumi.Context, name string, args *NamespaceWorkloadIamBindingArgs, opts ...pulumi.ResourceOption) (*NamespaceWorkloadIamBinding, error)
NewNamespaceWorkloadIamBinding registers a new resource with the given unique name, arguments, and options.
func (*NamespaceWorkloadIamBinding) ElementType ¶ added in v0.29.0
func (*NamespaceWorkloadIamBinding) ElementType() reflect.Type
func (*NamespaceWorkloadIamBinding) ToNamespaceWorkloadIamBindingOutput ¶ added in v0.29.0
func (i *NamespaceWorkloadIamBinding) ToNamespaceWorkloadIamBindingOutput() NamespaceWorkloadIamBindingOutput
func (*NamespaceWorkloadIamBinding) ToNamespaceWorkloadIamBindingOutputWithContext ¶ added in v0.29.0
func (i *NamespaceWorkloadIamBinding) ToNamespaceWorkloadIamBindingOutputWithContext(ctx context.Context) NamespaceWorkloadIamBindingOutput
type NamespaceWorkloadIamBindingArgs ¶ added in v0.29.0
type NamespaceWorkloadIamBindingArgs struct { // An IAM Condition for a given binding. Condition iam.ConditionPtrInput // Identities that will be granted the privilege in role. Each entry can have one of the following values: // // * user:{emailid}: An email address that represents a specific Google account. For example, alice@gmail.com or joe@example.com. // * serviceAccount:{emailid}: An email address that represents a service account. For example, my-other-app@appspot.gserviceaccount.com. // * group:{emailid}: An email address that represents a Google group. For example, admins@example.com. // * domain:{domain}: A G Suite domain (primary, instead of alias) name that represents all the users of that domain. For example, google.com or example.com. Members pulumi.StringArrayInput // The name of the resource to manage IAM policies for. Name pulumi.StringInput // The role that should be applied. Only one `IamBinding` can be used per role. Role pulumi.StringInput }
The set of arguments for constructing a NamespaceWorkloadIamBinding resource.
func (NamespaceWorkloadIamBindingArgs) ElementType ¶ added in v0.29.0
func (NamespaceWorkloadIamBindingArgs) ElementType() reflect.Type
type NamespaceWorkloadIamBindingInput ¶ added in v0.29.0
type NamespaceWorkloadIamBindingInput interface { pulumi.Input ToNamespaceWorkloadIamBindingOutput() NamespaceWorkloadIamBindingOutput ToNamespaceWorkloadIamBindingOutputWithContext(ctx context.Context) NamespaceWorkloadIamBindingOutput }
type NamespaceWorkloadIamBindingOutput ¶ added in v0.29.0
type NamespaceWorkloadIamBindingOutput struct{ *pulumi.OutputState }
func (NamespaceWorkloadIamBindingOutput) Condition ¶ added in v0.29.0
func (o NamespaceWorkloadIamBindingOutput) Condition() iam.ConditionPtrOutput
An IAM Condition for a given binding. See https://cloud.google.com/iam/docs/conditions-overview for additional details.
func (NamespaceWorkloadIamBindingOutput) ElementType ¶ added in v0.29.0
func (NamespaceWorkloadIamBindingOutput) ElementType() reflect.Type
func (NamespaceWorkloadIamBindingOutput) Etag ¶ added in v0.29.0
func (o NamespaceWorkloadIamBindingOutput) Etag() pulumi.StringOutput
The etag of the resource's IAM policy.
func (NamespaceWorkloadIamBindingOutput) Members ¶ added in v0.29.0
func (o NamespaceWorkloadIamBindingOutput) Members() pulumi.StringArrayOutput
Specifies the principals requesting access for a Google Cloud resource. `members` can have the following values: * `allUsers`: A special identifier that represents anyone who is on the internet; with or without a Google account. * `allAuthenticatedUsers`: A special identifier that represents anyone who is authenticated with a Google account or a service account. Does not include identities that come from external identity providers (IdPs) through identity federation. * `user:{emailid}`: An email address that represents a specific Google account. For example, `alice@example.com` . * `serviceAccount:{emailid}`: An email address that represents a Google service account. For example, `my-other-app@appspot.gserviceaccount.com`. * `serviceAccount:{projectid}.svc.id.goog[{namespace}/{kubernetes-sa}]`: An identifier for a [Kubernetes service account](https://cloud.google.com/kubernetes-engine/docs/how-to/kubernetes-service-accounts). For example, `my-project.svc.id.goog[my-namespace/my-kubernetes-sa]`. * `group:{emailid}`: An email address that represents a Google group. For example, `admins@example.com`. * `domain:{domain}`: The G Suite domain (primary) that represents all the users of that domain. For example, `google.com` or `example.com`. * `deleted:user:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a user that has been recently deleted. For example, `alice@example.com?uid=123456789012345678901`. If the user is recovered, this value reverts to `user:{emailid}` and the recovered user retains the role in the binding. * `deleted:serviceAccount:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a service account that has been recently deleted. For example, `my-other-app@appspot.gserviceaccount.com?uid=123456789012345678901`. If the service account is undeleted, this value reverts to `serviceAccount:{emailid}` and the undeleted service account retains the role in the binding. * `deleted:group:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a Google group that has been recently deleted. For example, `admins@example.com?uid=123456789012345678901`. If the group is recovered, this value reverts to `group:{emailid}` and the recovered group retains the role in the binding.
func (NamespaceWorkloadIamBindingOutput) Name ¶ added in v0.29.0
func (o NamespaceWorkloadIamBindingOutput) Name() pulumi.StringOutput
The name of the resource to manage IAM policies for.
func (NamespaceWorkloadIamBindingOutput) Project ¶ added in v0.29.0
func (o NamespaceWorkloadIamBindingOutput) Project() pulumi.StringOutput
The project in which the resource belongs. If it is not provided, a default will be supplied.
func (NamespaceWorkloadIamBindingOutput) Role ¶ added in v0.29.0
func (o NamespaceWorkloadIamBindingOutput) Role() pulumi.StringOutput
Role that is assigned to the list of `members`, or principals. For example, `roles/viewer`, `roles/editor`, or `roles/owner`.
func (NamespaceWorkloadIamBindingOutput) ToNamespaceWorkloadIamBindingOutput ¶ added in v0.29.0
func (o NamespaceWorkloadIamBindingOutput) ToNamespaceWorkloadIamBindingOutput() NamespaceWorkloadIamBindingOutput
func (NamespaceWorkloadIamBindingOutput) ToNamespaceWorkloadIamBindingOutputWithContext ¶ added in v0.29.0
func (o NamespaceWorkloadIamBindingOutput) ToNamespaceWorkloadIamBindingOutputWithContext(ctx context.Context) NamespaceWorkloadIamBindingOutput
type NamespaceWorkloadIamBindingState ¶ added in v0.29.0
type NamespaceWorkloadIamBindingState struct { }
func (NamespaceWorkloadIamBindingState) ElementType ¶ added in v0.29.0
func (NamespaceWorkloadIamBindingState) ElementType() reflect.Type
type NamespaceWorkloadIamMember ¶ added in v0.29.0
type NamespaceWorkloadIamMember struct { pulumi.CustomResourceState // An IAM Condition for a given binding. See https://cloud.google.com/iam/docs/conditions-overview for additional details. Condition iam.ConditionPtrOutput `pulumi:"condition"` // The etag of the resource's IAM policy. Etag pulumi.StringOutput `pulumi:"etag"` // Specifies the principals requesting access for a Google Cloud resource. `members` can have the following values: * `allUsers`: A special identifier that represents anyone who is on the internet; with or without a Google account. * `allAuthenticatedUsers`: A special identifier that represents anyone who is authenticated with a Google account or a service account. Does not include identities that come from external identity providers (IdPs) through identity federation. * `user:{emailid}`: An email address that represents a specific Google account. For example, `alice@example.com` . * `serviceAccount:{emailid}`: An email address that represents a Google service account. For example, `my-other-app@appspot.gserviceaccount.com`. * `serviceAccount:{projectid}.svc.id.goog[{namespace}/{kubernetes-sa}]`: An identifier for a [Kubernetes service account](https://cloud.google.com/kubernetes-engine/docs/how-to/kubernetes-service-accounts). For example, `my-project.svc.id.goog[my-namespace/my-kubernetes-sa]`. * `group:{emailid}`: An email address that represents a Google group. For example, `admins@example.com`. * `domain:{domain}`: The G Suite domain (primary) that represents all the users of that domain. For example, `google.com` or `example.com`. * `deleted:user:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a user that has been recently deleted. For example, `alice@example.com?uid=123456789012345678901`. If the user is recovered, this value reverts to `user:{emailid}` and the recovered user retains the role in the binding. * `deleted:serviceAccount:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a service account that has been recently deleted. For example, `my-other-app@appspot.gserviceaccount.com?uid=123456789012345678901`. If the service account is undeleted, this value reverts to `serviceAccount:{emailid}` and the undeleted service account retains the role in the binding. * `deleted:group:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a Google group that has been recently deleted. For example, `admins@example.com?uid=123456789012345678901`. If the group is recovered, this value reverts to `group:{emailid}` and the recovered group retains the role in the binding. Member pulumi.StringOutput `pulumi:"member"` // The name of the resource to manage IAM policies for. Name pulumi.StringOutput `pulumi:"name"` // The project in which the resource belongs. If it is not provided, a default will be supplied. Project pulumi.StringOutput `pulumi:"project"` // Role that is assigned to the list of `members`, or principals. For example, `roles/viewer`, `roles/editor`, or `roles/owner`. Role pulumi.StringOutput `pulumi:"role"` }
Sets the IAM Policy for a resource
func GetNamespaceWorkloadIamMember ¶ added in v0.29.0
func GetNamespaceWorkloadIamMember(ctx *pulumi.Context, name string, id pulumi.IDInput, state *NamespaceWorkloadIamMemberState, opts ...pulumi.ResourceOption) (*NamespaceWorkloadIamMember, error)
GetNamespaceWorkloadIamMember gets an existing NamespaceWorkloadIamMember resource's state with the given name, ID, and optional state properties that are used to uniquely qualify the lookup (nil if not required).
func NewNamespaceWorkloadIamMember ¶ added in v0.29.0
func NewNamespaceWorkloadIamMember(ctx *pulumi.Context, name string, args *NamespaceWorkloadIamMemberArgs, opts ...pulumi.ResourceOption) (*NamespaceWorkloadIamMember, error)
NewNamespaceWorkloadIamMember registers a new resource with the given unique name, arguments, and options.
func (*NamespaceWorkloadIamMember) ElementType ¶ added in v0.29.0
func (*NamespaceWorkloadIamMember) ElementType() reflect.Type
func (*NamespaceWorkloadIamMember) ToNamespaceWorkloadIamMemberOutput ¶ added in v0.29.0
func (i *NamespaceWorkloadIamMember) ToNamespaceWorkloadIamMemberOutput() NamespaceWorkloadIamMemberOutput
func (*NamespaceWorkloadIamMember) ToNamespaceWorkloadIamMemberOutputWithContext ¶ added in v0.29.0
func (i *NamespaceWorkloadIamMember) ToNamespaceWorkloadIamMemberOutputWithContext(ctx context.Context) NamespaceWorkloadIamMemberOutput
type NamespaceWorkloadIamMemberArgs ¶ added in v0.29.0
type NamespaceWorkloadIamMemberArgs struct { // An IAM Condition for a given binding. Condition iam.ConditionPtrInput // Identity that will be granted the privilege in role. The entry can have one of the following values: // // * user:{emailid}: An email address that represents a specific Google account. For example, alice@gmail.com or joe@example.com. // * serviceAccount:{emailid}: An email address that represents a service account. For example, my-other-app@appspot.gserviceaccount.com. // * group:{emailid}: An email address that represents a Google group. For example, admins@example.com. // * domain:{domain}: A G Suite domain (primary, instead of alias) name that represents all the users of that domain. For example, google.com or example.com. Member pulumi.StringInput // The name of the resource to manage IAM policies for. Name pulumi.StringInput // The role that should be applied. Role pulumi.StringInput }
The set of arguments for constructing a NamespaceWorkloadIamMember resource.
func (NamespaceWorkloadIamMemberArgs) ElementType ¶ added in v0.29.0
func (NamespaceWorkloadIamMemberArgs) ElementType() reflect.Type
type NamespaceWorkloadIamMemberInput ¶ added in v0.29.0
type NamespaceWorkloadIamMemberInput interface { pulumi.Input ToNamespaceWorkloadIamMemberOutput() NamespaceWorkloadIamMemberOutput ToNamespaceWorkloadIamMemberOutputWithContext(ctx context.Context) NamespaceWorkloadIamMemberOutput }
type NamespaceWorkloadIamMemberOutput ¶ added in v0.29.0
type NamespaceWorkloadIamMemberOutput struct{ *pulumi.OutputState }
func (NamespaceWorkloadIamMemberOutput) Condition ¶ added in v0.29.0
func (o NamespaceWorkloadIamMemberOutput) Condition() iam.ConditionPtrOutput
An IAM Condition for a given binding. See https://cloud.google.com/iam/docs/conditions-overview for additional details.
func (NamespaceWorkloadIamMemberOutput) ElementType ¶ added in v0.29.0
func (NamespaceWorkloadIamMemberOutput) ElementType() reflect.Type
func (NamespaceWorkloadIamMemberOutput) Etag ¶ added in v0.29.0
func (o NamespaceWorkloadIamMemberOutput) Etag() pulumi.StringOutput
The etag of the resource's IAM policy.
func (NamespaceWorkloadIamMemberOutput) Member ¶ added in v0.29.0
func (o NamespaceWorkloadIamMemberOutput) Member() pulumi.StringOutput
Specifies the principals requesting access for a Google Cloud resource. `members` can have the following values: * `allUsers`: A special identifier that represents anyone who is on the internet; with or without a Google account. * `allAuthenticatedUsers`: A special identifier that represents anyone who is authenticated with a Google account or a service account. Does not include identities that come from external identity providers (IdPs) through identity federation. * `user:{emailid}`: An email address that represents a specific Google account. For example, `alice@example.com` . * `serviceAccount:{emailid}`: An email address that represents a Google service account. For example, `my-other-app@appspot.gserviceaccount.com`. * `serviceAccount:{projectid}.svc.id.goog[{namespace}/{kubernetes-sa}]`: An identifier for a [Kubernetes service account](https://cloud.google.com/kubernetes-engine/docs/how-to/kubernetes-service-accounts). For example, `my-project.svc.id.goog[my-namespace/my-kubernetes-sa]`. * `group:{emailid}`: An email address that represents a Google group. For example, `admins@example.com`. * `domain:{domain}`: The G Suite domain (primary) that represents all the users of that domain. For example, `google.com` or `example.com`. * `deleted:user:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a user that has been recently deleted. For example, `alice@example.com?uid=123456789012345678901`. If the user is recovered, this value reverts to `user:{emailid}` and the recovered user retains the role in the binding. * `deleted:serviceAccount:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a service account that has been recently deleted. For example, `my-other-app@appspot.gserviceaccount.com?uid=123456789012345678901`. If the service account is undeleted, this value reverts to `serviceAccount:{emailid}` and the undeleted service account retains the role in the binding. * `deleted:group:{emailid}?uid={uniqueid}`: An email address (plus unique identifier) representing a Google group that has been recently deleted. For example, `admins@example.com?uid=123456789012345678901`. If the group is recovered, this value reverts to `group:{emailid}` and the recovered group retains the role in the binding.
func (NamespaceWorkloadIamMemberOutput) Name ¶ added in v0.29.0
func (o NamespaceWorkloadIamMemberOutput) Name() pulumi.StringOutput
The name of the resource to manage IAM policies for.
func (NamespaceWorkloadIamMemberOutput) Project ¶ added in v0.29.0
func (o NamespaceWorkloadIamMemberOutput) Project() pulumi.StringOutput
The project in which the resource belongs. If it is not provided, a default will be supplied.
func (NamespaceWorkloadIamMemberOutput) Role ¶ added in v0.29.0
func (o NamespaceWorkloadIamMemberOutput) Role() pulumi.StringOutput
Role that is assigned to the list of `members`, or principals. For example, `roles/viewer`, `roles/editor`, or `roles/owner`.
func (NamespaceWorkloadIamMemberOutput) ToNamespaceWorkloadIamMemberOutput ¶ added in v0.29.0
func (o NamespaceWorkloadIamMemberOutput) ToNamespaceWorkloadIamMemberOutput() NamespaceWorkloadIamMemberOutput
func (NamespaceWorkloadIamMemberOutput) ToNamespaceWorkloadIamMemberOutputWithContext ¶ added in v0.29.0
func (o NamespaceWorkloadIamMemberOutput) ToNamespaceWorkloadIamMemberOutputWithContext(ctx context.Context) NamespaceWorkloadIamMemberOutput
type NamespaceWorkloadIamMemberState ¶ added in v0.29.0
type NamespaceWorkloadIamMemberState struct { }
func (NamespaceWorkloadIamMemberState) ElementType ¶ added in v0.29.0
func (NamespaceWorkloadIamMemberState) ElementType() reflect.Type
type NamespaceWorkloadIamPolicy ¶ added in v0.29.0
type NamespaceWorkloadIamPolicy struct { pulumi.CustomResourceState // Associates a list of `members`, or principals, with a `role`. Optionally, may specify a `condition` that determines how and when the `bindings` are applied. Each of the `bindings` must contain at least one principal. The `bindings` in a `Policy` can refer to up to 1,500 principals; up to 250 of these principals can be Google groups. Each occurrence of a principal counts towards these limits. For example, if the `bindings` grant 50 different roles to `user:alice@example.com`, and not to any other principal, then you can add another 1,450 principals to the `bindings` in the `Policy`. Bindings BindingResponseArrayOutput `pulumi:"bindings"` // `etag` is used for optimistic concurrency control as a way to help prevent simultaneous updates of a policy from overwriting each other. It is strongly suggested that systems make use of the `etag` in the read-modify-write cycle to perform policy updates in order to avoid race conditions: An `etag` is returned in the response to `getIamPolicy`, and systems are expected to put that etag in the request to `setIamPolicy` to ensure that their change will be applied to the same version of the policy. **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. Etag pulumi.StringOutput `pulumi:"etag"` Location pulumi.StringOutput `pulumi:"location"` NamespaceId pulumi.StringOutput `pulumi:"namespaceId"` Project pulumi.StringOutput `pulumi:"project"` // Specifies the format of the policy. Valid values are `0`, `1`, and `3`. Requests that specify an invalid value are rejected. Any operation that affects conditional role bindings must specify version `3`. This requirement applies to the following operations: * Getting a policy that includes a conditional role binding * Adding a conditional role binding to a policy * Changing a conditional role binding in a policy * Removing any role binding, with or without a condition, from a policy that includes conditions **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. If a policy does not include any conditions, operations on that policy may specify any valid version or leave the field unset. To learn which resources support conditions in their IAM policies, see the [IAM documentation](https://cloud.google.com/iam/help/conditions/resource-policies). Version pulumi.IntOutput `pulumi:"version"` WorkloadId pulumi.StringOutput `pulumi:"workloadId"` }
Sets the IAM Policy for a resource Note - this resource's API doesn't support deletion. When deleted, the resource will persist on Google Cloud even though it will be deleted from Pulumi state.
func GetNamespaceWorkloadIamPolicy ¶ added in v0.29.0
func GetNamespaceWorkloadIamPolicy(ctx *pulumi.Context, name string, id pulumi.IDInput, state *NamespaceWorkloadIamPolicyState, opts ...pulumi.ResourceOption) (*NamespaceWorkloadIamPolicy, error)
GetNamespaceWorkloadIamPolicy gets an existing NamespaceWorkloadIamPolicy resource's state with the given name, ID, and optional state properties that are used to uniquely qualify the lookup (nil if not required).
func NewNamespaceWorkloadIamPolicy ¶ added in v0.29.0
func NewNamespaceWorkloadIamPolicy(ctx *pulumi.Context, name string, args *NamespaceWorkloadIamPolicyArgs, opts ...pulumi.ResourceOption) (*NamespaceWorkloadIamPolicy, error)
NewNamespaceWorkloadIamPolicy registers a new resource with the given unique name, arguments, and options.
func (*NamespaceWorkloadIamPolicy) ElementType ¶ added in v0.29.0
func (*NamespaceWorkloadIamPolicy) ElementType() reflect.Type
func (*NamespaceWorkloadIamPolicy) ToNamespaceWorkloadIamPolicyOutput ¶ added in v0.29.0
func (i *NamespaceWorkloadIamPolicy) ToNamespaceWorkloadIamPolicyOutput() NamespaceWorkloadIamPolicyOutput
func (*NamespaceWorkloadIamPolicy) ToNamespaceWorkloadIamPolicyOutputWithContext ¶ added in v0.29.0
func (i *NamespaceWorkloadIamPolicy) ToNamespaceWorkloadIamPolicyOutputWithContext(ctx context.Context) NamespaceWorkloadIamPolicyOutput
type NamespaceWorkloadIamPolicyArgs ¶ added in v0.29.0
type NamespaceWorkloadIamPolicyArgs struct { // Associates a list of `members`, or principals, with a `role`. Optionally, may specify a `condition` that determines how and when the `bindings` are applied. Each of the `bindings` must contain at least one principal. The `bindings` in a `Policy` can refer to up to 1,500 principals; up to 250 of these principals can be Google groups. Each occurrence of a principal counts towards these limits. For example, if the `bindings` grant 50 different roles to `user:alice@example.com`, and not to any other principal, then you can add another 1,450 principals to the `bindings` in the `Policy`. Bindings BindingArrayInput // `etag` is used for optimistic concurrency control as a way to help prevent simultaneous updates of a policy from overwriting each other. It is strongly suggested that systems make use of the `etag` in the read-modify-write cycle to perform policy updates in order to avoid race conditions: An `etag` is returned in the response to `getIamPolicy`, and systems are expected to put that etag in the request to `setIamPolicy` to ensure that their change will be applied to the same version of the policy. **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. Etag pulumi.StringPtrInput Location pulumi.StringPtrInput NamespaceId pulumi.StringInput Project pulumi.StringPtrInput // Specifies the format of the policy. Valid values are `0`, `1`, and `3`. Requests that specify an invalid value are rejected. Any operation that affects conditional role bindings must specify version `3`. This requirement applies to the following operations: * Getting a policy that includes a conditional role binding * Adding a conditional role binding to a policy * Changing a conditional role binding in a policy * Removing any role binding, with or without a condition, from a policy that includes conditions **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. If a policy does not include any conditions, operations on that policy may specify any valid version or leave the field unset. To learn which resources support conditions in their IAM policies, see the [IAM documentation](https://cloud.google.com/iam/help/conditions/resource-policies). Version pulumi.IntPtrInput WorkloadId pulumi.StringInput }
The set of arguments for constructing a NamespaceWorkloadIamPolicy resource.
func (NamespaceWorkloadIamPolicyArgs) ElementType ¶ added in v0.29.0
func (NamespaceWorkloadIamPolicyArgs) ElementType() reflect.Type
type NamespaceWorkloadIamPolicyInput ¶ added in v0.29.0
type NamespaceWorkloadIamPolicyInput interface { pulumi.Input ToNamespaceWorkloadIamPolicyOutput() NamespaceWorkloadIamPolicyOutput ToNamespaceWorkloadIamPolicyOutputWithContext(ctx context.Context) NamespaceWorkloadIamPolicyOutput }
type NamespaceWorkloadIamPolicyOutput ¶ added in v0.29.0
type NamespaceWorkloadIamPolicyOutput struct{ *pulumi.OutputState }
func (NamespaceWorkloadIamPolicyOutput) Bindings ¶ added in v0.29.0
func (o NamespaceWorkloadIamPolicyOutput) Bindings() BindingResponseArrayOutput
Associates a list of `members`, or principals, with a `role`. Optionally, may specify a `condition` that determines how and when the `bindings` are applied. Each of the `bindings` must contain at least one principal. The `bindings` in a `Policy` can refer to up to 1,500 principals; up to 250 of these principals can be Google groups. Each occurrence of a principal counts towards these limits. For example, if the `bindings` grant 50 different roles to `user:alice@example.com`, and not to any other principal, then you can add another 1,450 principals to the `bindings` in the `Policy`.
func (NamespaceWorkloadIamPolicyOutput) ElementType ¶ added in v0.29.0
func (NamespaceWorkloadIamPolicyOutput) ElementType() reflect.Type
func (NamespaceWorkloadIamPolicyOutput) Etag ¶ added in v0.29.0
func (o NamespaceWorkloadIamPolicyOutput) Etag() pulumi.StringOutput
`etag` is used for optimistic concurrency control as a way to help prevent simultaneous updates of a policy from overwriting each other. It is strongly suggested that systems make use of the `etag` in the read-modify-write cycle to perform policy updates in order to avoid race conditions: An `etag` is returned in the response to `getIamPolicy`, and systems are expected to put that etag in the request to `setIamPolicy` to ensure that their change will be applied to the same version of the policy. **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost.
func (NamespaceWorkloadIamPolicyOutput) Location ¶ added in v0.29.0
func (o NamespaceWorkloadIamPolicyOutput) Location() pulumi.StringOutput
func (NamespaceWorkloadIamPolicyOutput) NamespaceId ¶ added in v0.29.0
func (o NamespaceWorkloadIamPolicyOutput) NamespaceId() pulumi.StringOutput
func (NamespaceWorkloadIamPolicyOutput) Project ¶ added in v0.29.0
func (o NamespaceWorkloadIamPolicyOutput) Project() pulumi.StringOutput
func (NamespaceWorkloadIamPolicyOutput) ToNamespaceWorkloadIamPolicyOutput ¶ added in v0.29.0
func (o NamespaceWorkloadIamPolicyOutput) ToNamespaceWorkloadIamPolicyOutput() NamespaceWorkloadIamPolicyOutput
func (NamespaceWorkloadIamPolicyOutput) ToNamespaceWorkloadIamPolicyOutputWithContext ¶ added in v0.29.0
func (o NamespaceWorkloadIamPolicyOutput) ToNamespaceWorkloadIamPolicyOutputWithContext(ctx context.Context) NamespaceWorkloadIamPolicyOutput
func (NamespaceWorkloadIamPolicyOutput) Version ¶ added in v0.29.0
func (o NamespaceWorkloadIamPolicyOutput) Version() pulumi.IntOutput
Specifies the format of the policy. Valid values are `0`, `1`, and `3`. Requests that specify an invalid value are rejected. Any operation that affects conditional role bindings must specify version `3`. This requirement applies to the following operations: * Getting a policy that includes a conditional role binding * Adding a conditional role binding to a policy * Changing a conditional role binding in a policy * Removing any role binding, with or without a condition, from a policy that includes conditions **Important:** If you use IAM Conditions, you must include the `etag` field whenever you call `setIamPolicy`. If you omit this field, then IAM allows you to overwrite a version `3` policy with a version `1` policy, and all of the conditions in the version `3` policy are lost. If a policy does not include any conditions, operations on that policy may specify any valid version or leave the field unset. To learn which resources support conditions in their IAM policies, see the [IAM documentation](https://cloud.google.com/iam/help/conditions/resource-policies).
func (NamespaceWorkloadIamPolicyOutput) WorkloadId ¶ added in v0.29.0
func (o NamespaceWorkloadIamPolicyOutput) WorkloadId() pulumi.StringOutput
type NamespaceWorkloadIamPolicyState ¶ added in v0.29.0
type NamespaceWorkloadIamPolicyState struct { }
func (NamespaceWorkloadIamPolicyState) ElementType ¶ added in v0.29.0
func (NamespaceWorkloadIamPolicyState) ElementType() reflect.Type
type Service ¶ added in v0.3.0
type Service struct { pulumi.CustomResourceState // The timestamp when the service was created. CreateTime pulumi.StringOutput `pulumi:"createTime"` // Endpoints associated with this service. Returned on LookupService.ResolveService. Control plane clients should use RegistrationService.ListEndpoints. Endpoints EndpointResponseArrayOutput `pulumi:"endpoints"` Location pulumi.StringOutput `pulumi:"location"` // Optional. Metadata for the service. This data can be consumed by service clients. Restrictions: * The entire metadata dictionary may contain up to 2000 characters, spread accoss all key-value pairs. Metadata that goes beyond this limit are rejected * Valid metadata keys have two segments: an optional prefix and name, separated by a slash (/). The name segment is required and must be 63 characters or less, beginning and ending with an alphanumeric character ([a-z0-9A-Z]) with dashes (-), underscores (_), dots (.), and alphanumerics between. The prefix is optional. If specified, the prefix must be a DNS subdomain: a series of DNS labels separated by dots (.), not longer than 253 characters in total, followed by a slash (/). Metadata that fails to meet these requirements are rejected Note: This field is equivalent to the `annotations` field in the v1 API. They have the same syntax and read/write to the same location in Service Directory. Metadata pulumi.StringMapOutput `pulumi:"metadata"` // Immutable. The resource name for the service in the format `projects/*/locations/*/namespaces/*/services/*`. Name pulumi.StringOutput `pulumi:"name"` NamespaceId pulumi.StringOutput `pulumi:"namespaceId"` Project pulumi.StringOutput `pulumi:"project"` // Required. The Resource ID must be 1-63 characters long, and comply with RFC1035. Specifically, the name must be 1-63 characters long and match the regular expression `[a-z](?:[-a-z0-9]{0,61}[a-z0-9])?` which means the first character must be a lowercase letter, and all following characters must be a dash, lowercase letter, or digit, except the last character, which cannot be a dash. ServiceId pulumi.StringOutput `pulumi:"serviceId"` // A globally unique identifier (in UUID4 format) for this service. Uid pulumi.StringOutput `pulumi:"uid"` // The timestamp when the service was last updated. Note: endpoints being created/deleted/updated within the service are not considered service updates for the purpose of this timestamp. UpdateTime pulumi.StringOutput `pulumi:"updateTime"` }
Creates a service, and returns the new service.
func GetService ¶ added in v0.3.0
func GetService(ctx *pulumi.Context, name string, id pulumi.IDInput, state *ServiceState, opts ...pulumi.ResourceOption) (*Service, error)
GetService gets an existing Service resource's state with the given name, ID, and optional state properties that are used to uniquely qualify the lookup (nil if not required).
func NewService ¶ added in v0.3.0
func NewService(ctx *pulumi.Context, name string, args *ServiceArgs, opts ...pulumi.ResourceOption) (*Service, error)
NewService registers a new resource with the given unique name, arguments, and options.
func (*Service) ElementType ¶ added in v0.3.0
func (*Service) ToServiceOutput ¶ added in v0.3.0
func (i *Service) ToServiceOutput() ServiceOutput
func (*Service) ToServiceOutputWithContext ¶ added in v0.3.0
func (i *Service) ToServiceOutputWithContext(ctx context.Context) ServiceOutput
type ServiceArgs ¶ added in v0.3.0
type ServiceArgs struct { Location pulumi.StringPtrInput // Optional. Metadata for the service. This data can be consumed by service clients. Restrictions: * The entire metadata dictionary may contain up to 2000 characters, spread accoss all key-value pairs. Metadata that goes beyond this limit are rejected * Valid metadata keys have two segments: an optional prefix and name, separated by a slash (/). The name segment is required and must be 63 characters or less, beginning and ending with an alphanumeric character ([a-z0-9A-Z]) with dashes (-), underscores (_), dots (.), and alphanumerics between. The prefix is optional. If specified, the prefix must be a DNS subdomain: a series of DNS labels separated by dots (.), not longer than 253 characters in total, followed by a slash (/). Metadata that fails to meet these requirements are rejected Note: This field is equivalent to the `annotations` field in the v1 API. They have the same syntax and read/write to the same location in Service Directory. Metadata pulumi.StringMapInput // Immutable. The resource name for the service in the format `projects/*/locations/*/namespaces/*/services/*`. Name pulumi.StringPtrInput NamespaceId pulumi.StringInput Project pulumi.StringPtrInput // Required. The Resource ID must be 1-63 characters long, and comply with RFC1035. Specifically, the name must be 1-63 characters long and match the regular expression `[a-z](?:[-a-z0-9]{0,61}[a-z0-9])?` which means the first character must be a lowercase letter, and all following characters must be a dash, lowercase letter, or digit, except the last character, which cannot be a dash. ServiceId pulumi.StringInput }
The set of arguments for constructing a Service resource.
func (ServiceArgs) ElementType ¶ added in v0.3.0
func (ServiceArgs) ElementType() reflect.Type
type ServiceInput ¶ added in v0.3.0
type ServiceInput interface { pulumi.Input ToServiceOutput() ServiceOutput ToServiceOutputWithContext(ctx context.Context) ServiceOutput }
type ServiceOutput ¶ added in v0.3.0
type ServiceOutput struct{ *pulumi.OutputState }
func (ServiceOutput) CreateTime ¶ added in v0.19.0
func (o ServiceOutput) CreateTime() pulumi.StringOutput
The timestamp when the service was created.
func (ServiceOutput) ElementType ¶ added in v0.3.0
func (ServiceOutput) ElementType() reflect.Type
func (ServiceOutput) Endpoints ¶ added in v0.19.0
func (o ServiceOutput) Endpoints() EndpointResponseArrayOutput
Endpoints associated with this service. Returned on LookupService.ResolveService. Control plane clients should use RegistrationService.ListEndpoints.
func (ServiceOutput) Location ¶ added in v0.21.0
func (o ServiceOutput) Location() pulumi.StringOutput
func (ServiceOutput) Metadata ¶ added in v0.19.0
func (o ServiceOutput) Metadata() pulumi.StringMapOutput
Optional. Metadata for the service. This data can be consumed by service clients. Restrictions: * The entire metadata dictionary may contain up to 2000 characters, spread accoss all key-value pairs. Metadata that goes beyond this limit are rejected * Valid metadata keys have two segments: an optional prefix and name, separated by a slash (/). The name segment is required and must be 63 characters or less, beginning and ending with an alphanumeric character ([a-z0-9A-Z]) with dashes (-), underscores (_), dots (.), and alphanumerics between. The prefix is optional. If specified, the prefix must be a DNS subdomain: a series of DNS labels separated by dots (.), not longer than 253 characters in total, followed by a slash (/). Metadata that fails to meet these requirements are rejected Note: This field is equivalent to the `annotations` field in the v1 API. They have the same syntax and read/write to the same location in Service Directory.
func (ServiceOutput) Name ¶ added in v0.19.0
func (o ServiceOutput) Name() pulumi.StringOutput
Immutable. The resource name for the service in the format `projects/*/locations/*/namespaces/*/services/*`.
func (ServiceOutput) NamespaceId ¶ added in v0.21.0
func (o ServiceOutput) NamespaceId() pulumi.StringOutput
func (ServiceOutput) Project ¶ added in v0.21.0
func (o ServiceOutput) Project() pulumi.StringOutput
func (ServiceOutput) ServiceId ¶ added in v0.21.0
func (o ServiceOutput) ServiceId() pulumi.StringOutput
Required. The Resource ID must be 1-63 characters long, and comply with RFC1035. Specifically, the name must be 1-63 characters long and match the regular expression `[a-z](?:[-a-z0-9]{0,61}[a-z0-9])?` which means the first character must be a lowercase letter, and all following characters must be a dash, lowercase letter, or digit, except the last character, which cannot be a dash.
func (ServiceOutput) ToServiceOutput ¶ added in v0.3.0
func (o ServiceOutput) ToServiceOutput() ServiceOutput
func (ServiceOutput) ToServiceOutputWithContext ¶ added in v0.3.0
func (o ServiceOutput) ToServiceOutputWithContext(ctx context.Context) ServiceOutput
func (ServiceOutput) Uid ¶ added in v0.29.0
func (o ServiceOutput) Uid() pulumi.StringOutput
A globally unique identifier (in UUID4 format) for this service.
func (ServiceOutput) UpdateTime ¶ added in v0.19.0
func (o ServiceOutput) UpdateTime() pulumi.StringOutput
The timestamp when the service was last updated. Note: endpoints being created/deleted/updated within the service are not considered service updates for the purpose of this timestamp.
type ServiceState ¶ added in v0.3.0
type ServiceState struct { }
func (ServiceState) ElementType ¶ added in v0.3.0
func (ServiceState) ElementType() reflect.Type
Source Files ¶
- endpoint.go
- getEndpoint.go
- getNamespace.go
- getNamespaceIamPolicy.go
- getNamespaceServiceIamPolicy.go
- getNamespaceWorkloadIamPolicy.go
- getService.go
- init.go
- namespace.go
- namespaceIamBinding.go
- namespaceIamMember.go
- namespaceIamPolicy.go
- namespaceServiceIamBinding.go
- namespaceServiceIamMember.go
- namespaceServiceIamPolicy.go
- namespaceWorkloadIamBinding.go
- namespaceWorkloadIamMember.go
- namespaceWorkloadIamPolicy.go
- pulumiTypes.go
- service.go