UNPKG

@pulumi/pulumiservice

Version:

[![Slack](http://www.pulumi.com/images/docs/badges/slack.svg)](https://slack.pulumi.com) [![NPM version](https://badge.fury.io/js/%40pulumi%2Fpulumiservice.svg)](https://www.npmjs.com/package/@pulumi/pulumiservice) [![Python version](https://badge.fury.io

107 lines 5.34 kB
"use strict"; // *** WARNING: this file was generated by pulumi-language-nodejs. *** // *** Do not edit by hand unless you're certain you know what you are doing! *** var __createBinding = (this && this.__createBinding) || (Object.create ? (function(o, m, k, k2) { if (k2 === undefined) k2 = k; var desc = Object.getOwnPropertyDescriptor(m, k); if (!desc || ("get" in desc ? !m.__esModule : desc.writable || desc.configurable)) { desc = { enumerable: true, get: function() { return m[k]; } }; } Object.defineProperty(o, k2, desc); }) : (function(o, m, k, k2) { if (k2 === undefined) k2 = k; o[k2] = m[k]; })); var __setModuleDefault = (this && this.__setModuleDefault) || (Object.create ? (function(o, v) { Object.defineProperty(o, "default", { enumerable: true, value: v }); }) : function(o, v) { o["default"] = v; }); var __importStar = (this && this.__importStar) || function (mod) { if (mod && mod.__esModule) return mod; var result = {}; if (mod != null) for (var k in mod) if (k !== "default" && Object.prototype.hasOwnProperty.call(mod, k)) __createBinding(result, mod, k); __setModuleDefault(result, mod); return result; }; Object.defineProperty(exports, "__esModule", { value: true }); exports.OidcIssuer = void 0; const pulumi = __importStar(require("@pulumi/pulumi")); const utilities = __importStar(require("../../utilities")); /** * Registers a new OIDC issuer for an organization, establishing a trust relationship with an external identity provider. Once registered, the identity provider can issue signed, short-lived tokens that are exchanged for temporary Pulumi Cloud credentials during deployments. This eliminates the need to store long-lived access tokens. Supported providers include AWS, Azure, Google Cloud, GitHub Actions, and any OIDC-compliant identity provider. The request must include the issuer URL, and the service will fetch the provider's public signing keys to verify token authenticity. */ class OidcIssuer extends pulumi.CustomResource { /** * Get an existing OidcIssuer resource's state with the given name, ID, and optional extra * properties used to qualify the lookup. * * @param name The _unique_ name of the resulting resource. * @param id The _unique_ provider ID of the resource to lookup. * @param opts Optional settings to control the behavior of the CustomResource. */ static get(name, id, opts) { return new OidcIssuer(name, undefined, { ...opts, id: id }); } /** @internal */ static __pulumiType = 'pulumiservice:api/auth:OidcIssuer'; /** * Returns true if the given object is an instance of OidcIssuer. This is designed to work even * when multiple copies of the Pulumi SDK have been loaded into the same process. */ static isInstance(obj) { if (obj === undefined || obj === null) { return false; } return obj['__pulumiType'] === OidcIssuer.__pulumiType; } /** * Create a OidcIssuer resource with the given unique name, arguments, and options. * * @param name The _unique_ name of the resource. * @param args The arguments to use to populate this resource's properties. * @param opts A bag of options that control this resource's behavior. */ constructor(name, args, opts) { let resourceInputs = {}; opts = opts || {}; if (!opts.id) { if (args?.name === undefined && !opts.urn) { throw new Error("Missing required property 'name'"); } if (args?.orgName === undefined && !opts.urn) { throw new Error("Missing required property 'orgName'"); } if (args?.url === undefined && !opts.urn) { throw new Error("Missing required property 'url'"); } resourceInputs["issuerId"] = args?.issuerId; resourceInputs["jwks"] = args?.jwks; resourceInputs["maxExpiration"] = args?.maxExpiration; resourceInputs["name"] = args?.name; resourceInputs["orgName"] = args?.orgName; resourceInputs["thumbprints"] = args?.thumbprints; resourceInputs["url"] = args?.url; resourceInputs["created"] = undefined /*out*/; resourceInputs["issuer"] = undefined /*out*/; resourceInputs["lastUsed"] = undefined /*out*/; resourceInputs["modified"] = undefined /*out*/; } else { resourceInputs["created"] = undefined /*out*/; resourceInputs["issuer"] = undefined /*out*/; resourceInputs["issuerId"] = undefined /*out*/; resourceInputs["jwks"] = undefined /*out*/; resourceInputs["lastUsed"] = undefined /*out*/; resourceInputs["maxExpiration"] = undefined /*out*/; resourceInputs["modified"] = undefined /*out*/; resourceInputs["name"] = undefined /*out*/; resourceInputs["thumbprints"] = undefined /*out*/; resourceInputs["url"] = undefined /*out*/; } opts = pulumi.mergeOptions(utilities.resourceOptsDefaults(), opts); super(OidcIssuer.__pulumiType, name, resourceInputs, opts); } } exports.OidcIssuer = OidcIssuer; //# sourceMappingURL=oidcIssuer.js.map