Class ArnPrincipal

All Implemented Interfaces:
IAssumeRolePrincipal, IComparablePrincipal, IGrantable, IPrincipal,
Direct Known Subclasses:
AccountPrincipal, AnyPrincipal

@Generated(value="jsii-pacmak/1.101.0 (build b95fe5d)", date="2024-07-12T19:34:02.894Z") @Stability(Stable) public class ArnPrincipal extends PrincipalBase
Specify a principal by the Amazon Resource Name (ARN).

You can specify AWS accounts, IAM users, Federated SAML users, IAM roles, and specific assumed-role sessions. You cannot specify IAM groups or instance profiles as principals


 // Option 2: create your custom mastersRole with scoped assumeBy arn as the Cluster prop. Switch to this role from the AWS console.
 Vpc vpc;
 Role mastersRole = Role.Builder.create(this, "MastersRole")
         .assumedBy(new ArnPrincipal("arn_for_trusted_principal"))
 Cluster cluster = Cluster.Builder.create(this, "EksCluster")
         .kubectlLayer(new KubectlV30Layer(this, "KubectlLayer"))
         .actions(List.of("eks:AccessKubernetesApi", "eks:Describe*", "eks:List*"))

See Also:
  • Constructor Details

    • ArnPrincipal

      protected ArnPrincipal( objRef)
    • ArnPrincipal

      protected ArnPrincipal( initializationMode)
    • ArnPrincipal

      @Stability(Stable) public ArnPrincipal(@NotNull String arn)
      arn - Amazon Resource Name (ARN) of the principal entity (i.e. arn:aws:iam::123456789012:user/user-name). This parameter is required.
  • Method Details

    • dedupeString

      @Stability(Stable) @Nullable public String dedupeString()
      Return whether or not this principal is equal to the given principal.
      Specified by:
      dedupeString in interface IComparablePrincipal
      Specified by:
      dedupeString in class PrincipalBase
    • inOrganization

      @Stability(Stable) @NotNull public PrincipalBase inOrganization(@NotNull String organizationId)
      A convenience method for adding a condition that the principal is part of the specified AWS Organization.

      organizationId - This parameter is required.
    • toString

      @Stability(Stable) @NotNull public String toString()
      Returns a string representation of an object.
      toString in class PrincipalBase
    • getArn

      @Stability(Stable) @NotNull public String getArn()
      Amazon Resource Name (ARN) of the principal entity (i.e. arn:aws:iam::123456789012:user/user-name).
    • getPolicyFragment

      @Stability(Stable) @NotNull public PrincipalPolicyFragment getPolicyFragment()
      Return the policy fragment that identifies this principal in a Policy.
      Specified by:
      getPolicyFragment in interface IPrincipal
      Specified by:
      getPolicyFragment in class PrincipalBase