iam-floyd
Version:
AWS IAM policy statement generator with fluent interface
468 lines • 43.3 kB
JavaScript
"use strict";
Object.defineProperty(exports, "__esModule", { value: true });
exports.Apptest = void 0;
const shared_1 = require("../../shared");
/**
* Statement provider for service [apptest](https://docs.aws.amazon.com/service-authorization/latest/reference/list_awsmainframemodernizationapplicationtesting.html).
*
* @param sid [SID](https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_elements_sid.html) of the statement
*/
class Apptest extends shared_1.PolicyStatement {
/**
* Statement provider for service [apptest](https://docs.aws.amazon.com/service-authorization/latest/reference/list_awsmainframemodernizationapplicationtesting.html).
*
* @param sid [SID](https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_elements_sid.html) of the statement
*/
constructor(sid) {
super(sid);
this.servicePrefix = 'apptest';
this.accessLevelList = {
Write: [
'CreateTestCase',
'CreateTestConfiguration',
'CreateTestSuite',
'DeleteTestCase',
'DeleteTestConfiguration',
'DeleteTestRun',
'DeleteTestSuite',
'StartTestRun',
'UpdateTestCase',
'UpdateTestConfiguration',
'UpdateTestSuite'
],
Read: [
'GetTestCase',
'GetTestConfiguration',
'GetTestRunStep',
'GetTestSuite',
'ListTagsForResource',
'ListTestRunSteps',
'ListTestRunTestCases'
],
List: [
'ListTestCases',
'ListTestConfigurations',
'ListTestRuns',
'ListTestSuites'
],
Tagging: [
'TagResource',
'UntagResource'
]
};
}
/**
* Grants permission to create a test case
*
* Access Level: Write
*
* Possible conditions:
* - .ifAwsRequestTag()
* - .ifAwsTagKeys()
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_CreateTestCase.html
*/
toCreateTestCase() {
return this.to('CreateTestCase');
}
/**
* Grants permission to create a test configuration
*
* Access Level: Write
*
* Possible conditions:
* - .ifAwsRequestTag()
* - .ifAwsTagKeys()
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_CreateTestConfiguration.html
*/
toCreateTestConfiguration() {
return this.to('CreateTestConfiguration');
}
/**
* Grants permission to create a test suite
*
* Access Level: Write
*
* Possible conditions:
* - .ifAwsRequestTag()
* - .ifAwsTagKeys()
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_CreateTestSuite.html
*/
toCreateTestSuite() {
return this.to('CreateTestSuite');
}
/**
* Grants permission to delete a test case
*
* Access Level: Write
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_DeleteTestCase.html
*/
toDeleteTestCase() {
return this.to('DeleteTestCase');
}
/**
* Grants permission to delete a test configuration
*
* Access Level: Write
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_DeleteTestConfiguration.html
*/
toDeleteTestConfiguration() {
return this.to('DeleteTestConfiguration');
}
/**
* Grants permission to delete a test run
*
* Access Level: Write
*
* Dependent actions:
* - s3:DeleteObject
* - s3:ListBucket
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_DeleteTestRun.html
*/
toDeleteTestRun() {
return this.to('DeleteTestRun');
}
/**
* Grants permission to delete a test suite
*
* Access Level: Write
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_DeleteTestSuite.html
*/
toDeleteTestSuite() {
return this.to('DeleteTestSuite');
}
/**
* Grants permission to get a test case
*
* Access Level: Read
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_GetTestCase.html
*/
toGetTestCase() {
return this.to('GetTestCase');
}
/**
* Grants permission to get a test configuration
*
* Access Level: Read
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_GetTestConfiguration.html
*/
toGetTestConfiguration() {
return this.to('GetTestConfiguration');
}
/**
* Grants permission to get test run step
*
* Access Level: Read
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_GetTestRunStep.html
*/
toGetTestRunStep() {
return this.to('GetTestRunStep');
}
/**
* Grants permission to get a test suite
*
* Access Level: Read
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_GetTestSuite.html
*/
toGetTestSuite() {
return this.to('GetTestSuite');
}
/**
* Grants permission to list tags for a resource
*
* Access Level: Read
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_ListTagsForResource.html
*/
toListTagsForResource() {
return this.to('ListTagsForResource');
}
/**
* Grants permission to list test cases
*
* Access Level: List
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_ListTestCases.html
*/
toListTestCases() {
return this.to('ListTestCases');
}
/**
* Grants permission to list test configurations
*
* Access Level: List
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_ListTestConfigurations.html
*/
toListTestConfigurations() {
return this.to('ListTestConfigurations');
}
/**
* Grants permission to list steps for a test run
*
* Access Level: Read
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_ListTestRunSteps.html
*/
toListTestRunSteps() {
return this.to('ListTestRunSteps');
}
/**
* Grants permission to list test cases for a test run
*
* Access Level: Read
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_ListTestRunTestCases.html
*/
toListTestRunTestCases() {
return this.to('ListTestRunTestCases');
}
/**
* Grants permission to list test runs
*
* Access Level: List
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_ListTestRuns.html
*/
toListTestRuns() {
return this.to('ListTestRuns');
}
/**
* Grants permission to list test suites
*
* Access Level: List
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_ListTestSuites.html
*/
toListTestSuites() {
return this.to('ListTestSuites');
}
/**
* Grants permission to start a test run
*
* Access Level: Write
*
* Possible conditions:
* - .ifAwsRequestTag()
* - .ifAwsTagKeys()
*
* Dependent actions:
* - cloudformation:CreateStack
* - cloudformation:DeleteStack
* - cloudformation:DescribeStacks
* - dms:DescribeReplicationTasks
* - dms:StartReplicationTask
* - dms:StopReplicationTask
* - ec2:DescribeAvailabilityZones
* - ec2:DescribeVpcEndpointServiceConfigurations
* - ec2:DescribeVpcEndpointServices
* - m2:CreateDataSetImportTask
* - m2:GetApplication
* - m2:GetApplicationVersion
* - m2:GetBatchJobExecution
* - m2:GetDataSetDetails
* - m2:GetDataSetImportTask
* - m2:StartApplication
* - m2:StartBatchJob
* - m2:StopApplication
* - s3:CreateBucket
* - s3:DeleteObject
* - s3:GetObject
* - s3:ListBucket
* - s3:PutObject
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_StartTestRun.html
*/
toStartTestRun() {
return this.to('StartTestRun');
}
/**
* Grants permission to tag a resource
*
* Access Level: Tagging
*
* Possible conditions:
* - .ifAwsRequestTag()
* - .ifAwsTagKeys()
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_TagResource.html
*/
toTagResource() {
return this.to('TagResource');
}
/**
* Grants permission to untag a resource
*
* Access Level: Tagging
*
* Possible conditions:
* - .ifAwsTagKeys()
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_UntagResource.html
*/
toUntagResource() {
return this.to('UntagResource');
}
/**
* Grants permission to update a test case
*
* Access Level: Write
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_UpdateTestCase.html
*/
toUpdateTestCase() {
return this.to('UpdateTestCase');
}
/**
* Grants permission to update a test configuration
*
* Access Level: Write
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_UpdateTestConfiguration.html
*/
toUpdateTestConfiguration() {
return this.to('UpdateTestConfiguration');
}
/**
* Grants permission to update a test suite
*
* Access Level: Write
*
* https://docs.aws.amazon.com/apptest/latest/APIReference/API_UpdateTestSuite.html
*/
toUpdateTestSuite() {
return this.to('UpdateTestSuite');
}
/**
* Adds a resource of type TestCase to the statement
*
* https://docs.aws.amazon.com/m2/latest/userguide/concepts-apptest.html#TestCase-concept
*
* @param testCaseId - Identifier for the testCaseId.
* @param account - Account of the resource; defaults to `*`, unless using the CDK, where the default is the current Stack's account.
* @param region - Region of the resource; defaults to `*`, unless using the CDK, where the default is the current Stack's region.
* @param partition - Partition of the AWS account [aws, aws-cn, aws-us-gov]; defaults to `aws`, unless using the CDK, where the default is the current Stack's partition.
*
* Possible conditions:
* - .ifAwsResourceTag()
*/
onTestCase(testCaseId, account, region, partition) {
return this.on(`arn:${partition ?? this.defaultPartition}:apptest:${region ?? this.defaultRegion}:${account ?? this.defaultAccount}:testcase/${testCaseId}`);
}
/**
* Adds a resource of type TestConfiguration to the statement
*
* https://docs.aws.amazon.com/m2/latest/userguide/concepts-apptest.html#TestConfiguration-concept
*
* @param testConfigurationId - Identifier for the testConfigurationId.
* @param account - Account of the resource; defaults to `*`, unless using the CDK, where the default is the current Stack's account.
* @param region - Region of the resource; defaults to `*`, unless using the CDK, where the default is the current Stack's region.
* @param partition - Partition of the AWS account [aws, aws-cn, aws-us-gov]; defaults to `aws`, unless using the CDK, where the default is the current Stack's partition.
*
* Possible conditions:
* - .ifAwsResourceTag()
*/
onTestConfiguration(testConfigurationId, account, region, partition) {
return this.on(`arn:${partition ?? this.defaultPartition}:apptest:${region ?? this.defaultRegion}:${account ?? this.defaultAccount}:testconfiguration/${testConfigurationId}`);
}
/**
* Adds a resource of type TestRun to the statement
*
* https://docs.aws.amazon.com/m2/latest/userguide/concepts-apptest.html#TestRun-concept
*
* @param testRunId - Identifier for the testRunId.
* @param account - Account of the resource; defaults to `*`, unless using the CDK, where the default is the current Stack's account.
* @param region - Region of the resource; defaults to `*`, unless using the CDK, where the default is the current Stack's region.
* @param partition - Partition of the AWS account [aws, aws-cn, aws-us-gov]; defaults to `aws`, unless using the CDK, where the default is the current Stack's partition.
*
* Possible conditions:
* - .ifAwsResourceTag()
*/
onTestRun(testRunId, account, region, partition) {
return this.on(`arn:${partition ?? this.defaultPartition}:apptest:${region ?? this.defaultRegion}:${account ?? this.defaultAccount}:testrun/${testRunId}`);
}
/**
* Adds a resource of type TestSuite to the statement
*
* https://docs.aws.amazon.com/m2/latest/userguide/concepts-apptest.html#TestSuite-concept
*
* @param testSuiteId - Identifier for the testSuiteId.
* @param account - Account of the resource; defaults to `*`, unless using the CDK, where the default is the current Stack's account.
* @param region - Region of the resource; defaults to `*`, unless using the CDK, where the default is the current Stack's region.
* @param partition - Partition of the AWS account [aws, aws-cn, aws-us-gov]; defaults to `aws`, unless using the CDK, where the default is the current Stack's partition.
*
* Possible conditions:
* - .ifAwsResourceTag()
*/
onTestSuite(testSuiteId, account, region, partition) {
return this.on(`arn:${partition ?? this.defaultPartition}:apptest:${region ?? this.defaultRegion}:${account ?? this.defaultAccount}:testsuite/${testSuiteId}`);
}
/**
* Filters access by a tag key and value pair that is allowed in the request
*
* https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_condition-keys.html#condition-keys-requesttag
*
* Applies to actions:
* - .toCreateTestCase()
* - .toCreateTestConfiguration()
* - .toCreateTestSuite()
* - .toStartTestRun()
* - .toTagResource()
*
* @param tagKey The tag key to check
* @param value The value(s) to check
* @param operator Works with [string operators](https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_elements_condition_operators.html#Conditions_String). **Default:** `StringLike`
*/
ifAwsRequestTag(tagKey, value, operator) {
return this.if(`aws:RequestTag/${tagKey}`, value, operator ?? 'StringLike');
}
/**
* Filters access by a tag key and value pair of a resource
*
* https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_condition-keys.html#condition-keys-resourcetag
*
* Applies to resource types:
* - TestCase
* - TestConfiguration
* - TestRun
* - TestSuite
*
* @param tagKey The tag key to check
* @param value The value(s) to check
* @param operator Works with [string operators](https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_elements_condition_operators.html#Conditions_String). **Default:** `StringLike`
*/
ifAwsResourceTag(tagKey, value, operator) {
return this.if(`aws:ResourceTag/${tagKey}`, value, operator ?? 'StringLike');
}
/**
* Filters access by a list of tag keys that are allowed in the request
*
* https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_condition-keys.html#condition-keys-tagkeys
*
* Applies to actions:
* - .toCreateTestCase()
* - .toCreateTestConfiguration()
* - .toCreateTestSuite()
* - .toStartTestRun()
* - .toTagResource()
* - .toUntagResource()
*
* @param value The value(s) to check
* @param operator Works with [string operators](https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_elements_condition_operators.html#Conditions_String). **Default:** `StringLike`
*/
ifAwsTagKeys(value, operator) {
return this.if(`aws:TagKeys`, value, operator ?? 'StringLike');
}
}
exports.Apptest = Apptest;
//# sourceMappingURL=data:application/json;base64,