@pulumi/pulumiservice
Version:
[](https://slack.pulumi.com) [](https://www.npmjs.com/package/@pulumi/pulumiservice) [ || (Object.create ? (function(o, m, k, k2) {
if (k2 === undefined) k2 = k;
var desc = Object.getOwnPropertyDescriptor(m, k);
if (!desc || ("get" in desc ? !m.__esModule : desc.writable || desc.configurable)) {
desc = { enumerable: true, get: function() { return m[k]; } };
}
Object.defineProperty(o, k2, desc);
}) : (function(o, m, k, k2) {
if (k2 === undefined) k2 = k;
o[k2] = m[k];
}));
var __setModuleDefault = (this && this.__setModuleDefault) || (Object.create ? (function(o, v) {
Object.defineProperty(o, "default", { enumerable: true, value: v });
}) : function(o, v) {
o["default"] = v;
});
var __importStar = (this && this.__importStar) || function (mod) {
if (mod && mod.__esModule) return mod;
var result = {};
if (mod != null) for (var k in mod) if (k !== "default" && Object.prototype.hasOwnProperty.call(mod, k)) __createBinding(result, mod, k);
__setModuleDefault(result, mod);
return result;
};
Object.defineProperty(exports, "__esModule", { value: true });
exports.OidcIssuer = void 0;
const pulumi = __importStar(require("@pulumi/pulumi"));
const utilities = __importStar(require("../../utilities"));
/**
* Registers a new OIDC issuer for an organization, establishing a trust relationship with an external identity provider. Once registered, the identity provider can issue signed, short-lived tokens that are exchanged for temporary Pulumi Cloud credentials during deployments. This eliminates the need to store long-lived access tokens. Supported providers include AWS, Azure, Google Cloud, GitHub Actions, and any OIDC-compliant identity provider. The request must include the issuer URL, and the service will fetch the provider's public signing keys to verify token authenticity.
*/
class OidcIssuer extends pulumi.CustomResource {
/**
* Get an existing OidcIssuer resource's state with the given name, ID, and optional extra
* properties used to qualify the lookup.
*
* @param name The _unique_ name of the resulting resource.
* @param id The _unique_ provider ID of the resource to lookup.
* @param opts Optional settings to control the behavior of the CustomResource.
*/
static get(name, id, opts) {
return new OidcIssuer(name, undefined, { ...opts, id: id });
}
/** @internal */
static __pulumiType = 'pulumiservice:api/auth:OidcIssuer';
/**
* Returns true if the given object is an instance of OidcIssuer. This is designed to work even
* when multiple copies of the Pulumi SDK have been loaded into the same process.
*/
static isInstance(obj) {
if (obj === undefined || obj === null) {
return false;
}
return obj['__pulumiType'] === OidcIssuer.__pulumiType;
}
/**
* Create a OidcIssuer resource with the given unique name, arguments, and options.
*
* @param name The _unique_ name of the resource.
* @param args The arguments to use to populate this resource's properties.
* @param opts A bag of options that control this resource's behavior.
*/
constructor(name, args, opts) {
let resourceInputs = {};
opts = opts || {};
if (!opts.id) {
if (args?.name === undefined && !opts.urn) {
throw new Error("Missing required property 'name'");
}
if (args?.orgName === undefined && !opts.urn) {
throw new Error("Missing required property 'orgName'");
}
if (args?.url === undefined && !opts.urn) {
throw new Error("Missing required property 'url'");
}
resourceInputs["issuerId"] = args?.issuerId;
resourceInputs["jwks"] = args?.jwks;
resourceInputs["maxExpiration"] = args?.maxExpiration;
resourceInputs["name"] = args?.name;
resourceInputs["orgName"] = args?.orgName;
resourceInputs["thumbprints"] = args?.thumbprints;
resourceInputs["url"] = args?.url;
resourceInputs["created"] = undefined /*out*/;
resourceInputs["issuer"] = undefined /*out*/;
resourceInputs["lastUsed"] = undefined /*out*/;
resourceInputs["modified"] = undefined /*out*/;
}
else {
resourceInputs["created"] = undefined /*out*/;
resourceInputs["issuer"] = undefined /*out*/;
resourceInputs["issuerId"] = undefined /*out*/;
resourceInputs["jwks"] = undefined /*out*/;
resourceInputs["lastUsed"] = undefined /*out*/;
resourceInputs["maxExpiration"] = undefined /*out*/;
resourceInputs["modified"] = undefined /*out*/;
resourceInputs["name"] = undefined /*out*/;
resourceInputs["thumbprints"] = undefined /*out*/;
resourceInputs["url"] = undefined /*out*/;
}
opts = pulumi.mergeOptions(utilities.resourceOptsDefaults(), opts);
super(OidcIssuer.__pulumiType, name, resourceInputs, opts);
}
}
exports.OidcIssuer = OidcIssuer;
//# sourceMappingURL=oidcIssuer.js.map