Class NetworkConfiguration
- All Implemented Interfaces:
Serializable,SdkPojo,ToCopyableBuilder<NetworkConfiguration.Builder,NetworkConfiguration>
The network configuration that controls how an identity store can be accessed. You provide this object in a request.
- See Also:
-
Nested Class Summary
Nested Classes -
Method Summary
Modifier and TypeMethodDescriptionA list of IP address CIDR ranges that are allowed to access the identity store API operations.A list of virtual private cloud (VPC) IDs that are allowed to access the identity store API operations.static NetworkConfiguration.Builderbuilder()final booleanfinal booleanequalsBySdkFields(Object obj) Indicates whether some other object is "equal to" this one by SDK fields.final <T> Optional<T> getValueForField(String fieldName, Class<T> clazz) final booleanFor responses, this returns true if the service returned a value for the ApiAllowSourceIps property.final booleanFor responses, this returns true if the service returned a value for the ApiRestrictSourceVpcs property.final inthashCode()final booleanFor responses, this returns true if the service returned a value for the ScimAllowSourceIps property.A list of IP address CIDR ranges that are allowed to access the identity store through the System for Cross-domain Identity Management (SCIM) protocol.static Class<? extends NetworkConfiguration.Builder> Take this object and create a builder that contains all of the current property values of this object.final StringtoString()Returns a string representation of this object.final BooleanSpecifies whether the identity store can be accessed only through a virtual private cloud (VPC) endpoint.Methods inherited from interface software.amazon.awssdk.utils.builder.ToCopyableBuilder
copy
-
Method Details
-
vpceAccessRequired
Specifies whether the identity store can be accessed only through a virtual private cloud (VPC) endpoint. When set to
true, requests must originate from a VPC endpoint.This value must be set to either
trueorfalsewhen you provideNetworkConfigurationin a request.- Returns:
- Specifies whether the identity store can be accessed only through a virtual private cloud (VPC) endpoint.
When set to
true, requests must originate from a VPC endpoint.This value must be set to either
trueorfalsewhen you provideNetworkConfigurationin a request.
-
hasApiRestrictSourceVpcs
public final boolean hasApiRestrictSourceVpcs()For responses, this returns true if the service returned a value for the ApiRestrictSourceVpcs property. This DOES NOT check that the value is non-empty (for which, you should check theisEmpty()method on the property). This is useful because the SDK will never return a null collection or map, but you may need to differentiate between the service returning nothing (or null) and the service returning an empty collection or map. For requests, this returns true if a value for the property was specified in the request builder, and false if a value was not specified. -
apiRestrictSourceVpcs
A list of virtual private cloud (VPC) IDs that are allowed to access the identity store API operations. A request is denied unless it originates from a VPC in this list, or from an IP address in
ApiAllowSourceIpsif you specified one. If you don't specify a value, access isn't restricted to specific VPCs, but the VPC endpoint requirement set byVpceAccessRequiredstill applies.Attempts to modify the collection returned by this method will result in an UnsupportedOperationException.
This method will never return null. If you would like to know whether the service returned this field (so that you can differentiate between null and empty), you can use the
hasApiRestrictSourceVpcs()method.- Returns:
- A list of virtual private cloud (VPC) IDs that are allowed to access the identity store API operations. A
request is denied unless it originates from a VPC in this list, or from an IP address in
ApiAllowSourceIpsif you specified one. If you don't specify a value, access isn't restricted to specific VPCs, but the VPC endpoint requirement set byVpceAccessRequiredstill applies.
-
hasApiAllowSourceIps
public final boolean hasApiAllowSourceIps()For responses, this returns true if the service returned a value for the ApiAllowSourceIps property. This DOES NOT check that the value is non-empty (for which, you should check theisEmpty()method on the property). This is useful because the SDK will never return a null collection or map, but you may need to differentiate between the service returning nothing (or null) and the service returning an empty collection or map. For requests, this returns true if a value for the property was specified in the request builder, and false if a value was not specified. -
apiAllowSourceIps
A list of IP address CIDR ranges that are allowed to access the identity store API operations. A request from an IP address in this list bypasses the identity store's other API network controls: it's permitted even if it doesn't come through a VPC endpoint required by
VpceAccessRequired, and even if it doesn't originate from a VPC inApiRestrictSourceVpcs. If you don't specify a value, no such IP address exception applies.Attempts to modify the collection returned by this method will result in an UnsupportedOperationException.
This method will never return null. If you would like to know whether the service returned this field (so that you can differentiate between null and empty), you can use the
hasApiAllowSourceIps()method.- Returns:
- A list of IP address CIDR ranges that are allowed to access the identity store API operations. A request
from an IP address in this list bypasses the identity store's other API network controls: it's permitted
even if it doesn't come through a VPC endpoint required by
VpceAccessRequired, and even if it doesn't originate from a VPC inApiRestrictSourceVpcs. If you don't specify a value, no such IP address exception applies.
-
hasScimAllowSourceIps
public final boolean hasScimAllowSourceIps()For responses, this returns true if the service returned a value for the ScimAllowSourceIps property. This DOES NOT check that the value is non-empty (for which, you should check theisEmpty()method on the property). This is useful because the SDK will never return a null collection or map, but you may need to differentiate between the service returning nothing (or null) and the service returning an empty collection or map. For requests, this returns true if a value for the property was specified in the request builder, and false if a value was not specified. -
scimAllowSourceIps
A list of IP address CIDR ranges that are allowed to access the identity store through the System for Cross-domain Identity Management (SCIM) protocol. Requests from IP addresses outside these ranges are denied. If you don't specify a value, SCIM requests remain subject to the identity store's other network controls, such as the VPC endpoint requirement set by
VpceAccessRequired.For example, to allow SCIM traffic from the public internet while still requiring the identity store API operations to be accessed through a VPC endpoint, set
VpceAccessRequiredtotrueand set this value to0.0.0.0/0.Attempts to modify the collection returned by this method will result in an UnsupportedOperationException.
This method will never return null. If you would like to know whether the service returned this field (so that you can differentiate between null and empty), you can use the
hasScimAllowSourceIps()method.- Returns:
- A list of IP address CIDR ranges that are allowed to access the identity store through the System for
Cross-domain Identity Management (SCIM) protocol. Requests from IP addresses outside these ranges are
denied. If you don't specify a value, SCIM requests remain subject to the identity store's other network
controls, such as the VPC endpoint requirement set by
VpceAccessRequired.For example, to allow SCIM traffic from the public internet while still requiring the identity store API operations to be accessed through a VPC endpoint, set
VpceAccessRequiredtotrueand set this value to0.0.0.0/0.
-
toBuilder
Description copied from interface:ToCopyableBuilderTake this object and create a builder that contains all of the current property values of this object.- Specified by:
toBuilderin interfaceToCopyableBuilder<NetworkConfiguration.Builder,NetworkConfiguration> - Returns:
- a builder for type T
-
builder
-
serializableBuilderClass
-
hashCode
-
equals
-
equalsBySdkFields
Description copied from interface:SdkPojoIndicates whether some other object is "equal to" this one by SDK fields. An SDK field is a modeled, non-inherited field in anSdkPojoclass, and is generated based on a service model.If an
SdkPojoclass does not have any inherited fields,equalsBySdkFieldsandequalsare essentially the same.- Specified by:
equalsBySdkFieldsin interfaceSdkPojo- Parameters:
obj- the object to be compared with- Returns:
- true if the other object equals to this object by sdk fields, false otherwise.
-
toString
-
getValueForField
-
sdkFields
-
sdkFieldNameToField
- Specified by:
sdkFieldNameToFieldin interfaceSdkPojo- Returns:
- The mapping between the field name and its corresponding field.
-