public static final class IRole.Jsii$Proxy extends software.amazon.jsii.JsiiObject implements IRole.Jsii$Default
IRole.Jsii$Default, IRole.Jsii$Proxy
Modifier | Constructor and Description |
---|---|
protected |
Jsii$Proxy(software.amazon.jsii.JsiiObjectRef objRef) |
Modifier and Type | Method and Description |
---|---|
void |
addManagedPolicy(IManagedPolicy policy)
Attaches a managed policy to this principal.
|
java.lang.Boolean |
addToPolicy(PolicyStatement statement)
Deprecated.
Use `addToPrincipalPolicy` instead.
|
AddToPrincipalPolicyResult |
addToPrincipalPolicy(PolicyStatement statement)
Add to the policy of this principal.
|
void |
applyRemovalPolicy(RemovalPolicy policy)
Apply the given removal policy to this resource.
|
void |
attachInlinePolicy(Policy policy)
Attaches an inline policy to this principal.
|
java.lang.String |
getAssumeRoleAction()
When this Principal is used in an AssumeRole policy, the action to use.
|
ResourceEnvironment |
getEnv()
The environment this resource belongs to.
|
IPrincipal |
getGrantPrincipal()
The principal to grant permissions to.
|
ConstructNode |
getNode()
The construct tree node for this construct.
|
PrincipalPolicyFragment |
getPolicyFragment()
Return the policy fragment that identifies this principal in a Policy.
|
java.lang.String |
getPrincipalAccount()
The AWS account ID of this principal.
|
java.lang.String |
getRoleArn()
Returns the ARN of this role.
|
java.lang.String |
getRoleName()
Returns the name of this role.
|
Stack |
getStack()
The stack in which this resource is defined.
|
Grant |
grant(IPrincipal grantee,
java.lang.String... actions)
Grant the actions defined in actions to the identity Principal on this resource.
|
Grant |
grantAssumeRole(IPrincipal grantee)
Grant permissions to the given principal to assume this role.
|
Grant |
grantPassRole(IPrincipal grantee)
Grant permissions to the given principal to pass this role.
|
public final IPrincipal getGrantPrincipal()
getGrantPrincipal
in interface IGrantable
getGrantPrincipal
in interface IGrantable.Jsii$Default
getGrantPrincipal
in interface IIdentity.Jsii$Default
getGrantPrincipal
in interface IPrincipal.Jsii$Default
getGrantPrincipal
in interface IRole.Jsii$Default
public final java.lang.String getAssumeRoleAction()
getAssumeRoleAction
in interface IIdentity.Jsii$Default
getAssumeRoleAction
in interface IPrincipal
getAssumeRoleAction
in interface IPrincipal.Jsii$Default
getAssumeRoleAction
in interface IRole.Jsii$Default
public final PrincipalPolicyFragment getPolicyFragment()
getPolicyFragment
in interface IIdentity.Jsii$Default
getPolicyFragment
in interface IPrincipal
getPolicyFragment
in interface IPrincipal.Jsii$Default
getPolicyFragment
in interface IRole.Jsii$Default
public final java.lang.String getPrincipalAccount()
Can be undefined when the account is not known (for example, for service principals). Can be a Token - in that case, it's assumed to be AWS::AccountId.
getPrincipalAccount
in interface IIdentity.Jsii$Default
getPrincipalAccount
in interface IPrincipal
getPrincipalAccount
in interface IPrincipal.Jsii$Default
getPrincipalAccount
in interface IRole.Jsii$Default
public final ConstructNode getNode()
getNode
in interface IConstruct
getNode
in interface IConstruct.Jsii$Default
getNode
in interface IResource.Jsii$Default
getNode
in interface IIdentity.Jsii$Default
getNode
in interface IRole.Jsii$Default
public final ResourceEnvironment getEnv()
For resources that are created and managed by the CDK (generally, those created by creating new class instances like Role, Bucket, etc.), this is always the same as the environment of the stack they belong to; however, for imported resources (those obtained from static methods like fromRoleArn, fromBucketName, etc.), that might be different than the stack they were imported into.
getEnv
in interface IResource
getEnv
in interface IResource.Jsii$Default
getEnv
in interface IIdentity.Jsii$Default
getEnv
in interface IRole.Jsii$Default
public final Stack getStack()
getStack
in interface IResource
getStack
in interface IResource.Jsii$Default
getStack
in interface IIdentity.Jsii$Default
getStack
in interface IRole.Jsii$Default
public final java.lang.String getRoleArn()
getRoleArn
in interface IRole
getRoleArn
in interface IRole.Jsii$Default
public final java.lang.String getRoleName()
getRoleName
in interface IRole
getRoleName
in interface IRole.Jsii$Default
@Deprecated public final java.lang.Boolean addToPolicy(PolicyStatement statement)
addToPolicy
in interface IIdentity.Jsii$Default
addToPolicy
in interface IPrincipal
addToPolicy
in interface IPrincipal.Jsii$Default
addToPolicy
in interface IRole.Jsii$Default
statement
- This parameter is required.public final AddToPrincipalPolicyResult addToPrincipalPolicy(PolicyStatement statement)
addToPrincipalPolicy
in interface IIdentity.Jsii$Default
addToPrincipalPolicy
in interface IPrincipal
addToPrincipalPolicy
in interface IPrincipal.Jsii$Default
addToPrincipalPolicy
in interface IRole.Jsii$Default
statement
- This parameter is required.public final void applyRemovalPolicy(RemovalPolicy policy)
The Removal Policy controls what happens to this resource when it stops being managed by CloudFormation, either because you've removed it from the CDK application or because you've made a change that requires the resource to be replaced.
The resource can be deleted (RemovalPolicy.DESTROY
), or left in your AWS
account for data recovery and cleanup later (RemovalPolicy.RETAIN
).
applyRemovalPolicy
in interface IResource
applyRemovalPolicy
in interface IResource.Jsii$Default
applyRemovalPolicy
in interface IIdentity.Jsii$Default
applyRemovalPolicy
in interface IRole.Jsii$Default
policy
- This parameter is required.public final void addManagedPolicy(IManagedPolicy policy)
addManagedPolicy
in interface IIdentity
addManagedPolicy
in interface IIdentity.Jsii$Default
addManagedPolicy
in interface IRole.Jsii$Default
policy
- The managed policy. This parameter is required.public final void attachInlinePolicy(Policy policy)
This is the same as calling policy.addToXxx(principal)
.
attachInlinePolicy
in interface IIdentity
attachInlinePolicy
in interface IIdentity.Jsii$Default
attachInlinePolicy
in interface IRole.Jsii$Default
policy
- The policy resource to attach to this principal [disable-awslint:ref-via-interface]. This parameter is required.public final Grant grant(IPrincipal grantee, java.lang.String... actions)
grant
in interface IRole
grant
in interface IRole.Jsii$Default
grantee
- This parameter is required.actions
- This parameter is required.public final Grant grantAssumeRole(IPrincipal grantee)
grantAssumeRole
in interface IRole
grantAssumeRole
in interface IRole.Jsii$Default
grantee
- This parameter is required.public final Grant grantPassRole(IPrincipal grantee)
grantPassRole
in interface IRole
grantPassRole
in interface IRole.Jsii$Default
grantee
- This parameter is required.