Skip to content

/AWS1/IF_KFK=>UPDATESECURITY()

About UpdateSecurity

Updates the security settings for the cluster. You can use this operation to specify encryption and authentication on existing clusters.

Method Signature

METHODS /AWS1/IF_KFK~UPDATESECURITY
  IMPORTING
    !IO_CLIENTAUTHENTICATION TYPE REF TO /AWS1/CL_KFKCLIENTAUTHNTCTN OPTIONAL
    !IV_CLUSTERARN TYPE /AWS1/KFK__STRING OPTIONAL
    !IV_CURRENTVERSION TYPE /AWS1/KFK__STRING OPTIONAL
    !IO_ENCRYPTIONINFO TYPE REF TO /AWS1/CL_KFKENCRYPTIONINFO OPTIONAL
  RETURNING
    VALUE(OO_OUTPUT) TYPE REF TO /aws1/cl_kfkupdatesecresponse
  RAISING
    /AWS1/CX_KFKBADREQUESTEX
    /AWS1/CX_KFKFORBIDDENEXCEPTION
    /AWS1/CX_KFKINTERNALSERVERER00
    /AWS1/CX_KFKNOTFOUNDEXCEPTION
    /AWS1/CX_KFKSERVICEUNAVAILEX
    /AWS1/CX_KFKTOOMANYREQUESTSEX
    /AWS1/CX_KFKUNAUTHORIZEDEX
    /AWS1/CX_KFKCLIENTEXC
    /AWS1/CX_KFKSERVEREXC
    /AWS1/CX_RT_TECHNICAL_GENERIC
    /AWS1/CX_RT_SERVICE_GENERIC.

IMPORTING

Required arguments:

iv_clusterarn TYPE /AWS1/KFK__STRING /AWS1/KFK__STRING

The Amazon Resource Name (ARN) that uniquely identifies the cluster.

iv_currentversion TYPE /AWS1/KFK__STRING /AWS1/KFK__STRING

The version of the MSK cluster to update. Cluster versions aren't simple numbers. You can describe an MSK cluster to find its version. When this update operation is successful, it generates a new cluster version.

Optional arguments:

io_clientauthentication TYPE REF TO /AWS1/CL_KFKCLIENTAUTHNTCTN /AWS1/CL_KFKCLIENTAUTHNTCTN

Includes all client authentication related information.

io_encryptioninfo TYPE REF TO /AWS1/CL_KFKENCRYPTIONINFO /AWS1/CL_KFKENCRYPTIONINFO

Includes all encryption-related information.

RETURNING

oo_output TYPE REF TO /aws1/cl_kfkupdatesecresponse /AWS1/CL_KFKUPDATESECRESPONSE

Domain /AWS1/RT_ACCOUNT_ID
Primitive Type NUMC

Examples

Syntax Example

This is an example of the syntax for calling the method. It includes every possible argument and initializes every possible value. The data provided is not necessarily semantically accurate (for example the value "string" may be provided for something that is intended to be an instance ID, or in some cases two arguments may be mutually exclusive). The syntax shows the ABAP syntax for creating the various data structures.

DATA(lo_result) = lo_client->updatesecurity(
  io_clientauthentication = new /aws1/cl_kfkclientauthntctn(
    io_sasl = new /aws1/cl_kfksasl(
      io_iam = new /aws1/cl_kfkiam( ABAP_TRUE )
      io_scram = new /aws1/cl_kfkscram( ABAP_TRUE )
    )
    io_tls = new /aws1/cl_kfktls(
      it_certauthorityarnlist = VALUE /aws1/cl_kfk__listof__string_w=>tt___listof__string(
        ( new /aws1/cl_kfk__listof__string_w( |string| ) )
      )
      iv_enabled = ABAP_TRUE
    )
    io_unauthenticated = new /aws1/cl_kfkunauthenticated( ABAP_TRUE )
  )
  io_encryptioninfo = new /aws1/cl_kfkencryptioninfo(
    io_encryptionatrest = new /aws1/cl_kfkencryptionatrest( |string| )
    io_encryptionintransit = new /aws1/cl_kfkencintransit(
      iv_clientbroker = |string|
      iv_incluster = ABAP_TRUE
    )
  )
  iv_clusterarn = |string|
  iv_currentversion = |string|
).

This is an example of reading all possible response values

lo_result = lo_result.
IF lo_result IS NOT INITIAL.
  lv___string = lo_result->get_clusterarn( ).
  lv___string = lo_result->get_clusteroperationarn( ).
ENDIF.