1#[derive(::std::clone::Clone, ::std::default::Default, ::std::fmt::Debug)]
4#[non_exhaustive]
5pub struct AssumeRoleWithSAML;
6impl AssumeRoleWithSAML {
7 pub fn new() -> Self {
9 Self
10 }
11 pub(crate) async fn orchestrate(
12 runtime_plugins: &::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
13 input: crate::operation::assume_role_with_saml::AssumeRoleWithSamlInput,
14 ) -> ::std::result::Result<
15 crate::operation::assume_role_with_saml::AssumeRoleWithSamlOutput,
16 ::aws_smithy_runtime_api::client::result::SdkError<
17 crate::operation::assume_role_with_saml::AssumeRoleWithSAMLError,
18 ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
19 >,
20 > {
21 let map_err = |err: ::aws_smithy_runtime_api::client::result::SdkError<
22 ::aws_smithy_runtime_api::client::interceptors::context::Error,
23 ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
24 >| {
25 err.map_service_error(|err| {
26 err.downcast::<crate::operation::assume_role_with_saml::AssumeRoleWithSAMLError>()
27 .expect("correct error type")
28 })
29 };
30 let context = Self::orchestrate_with_stop_point(runtime_plugins, input, ::aws_smithy_runtime::client::orchestrator::StopPoint::None)
31 .await
32 .map_err(map_err)?;
33 let output = context.finalize().map_err(map_err)?;
34 ::std::result::Result::Ok(
35 output
36 .downcast::<crate::operation::assume_role_with_saml::AssumeRoleWithSamlOutput>()
37 .expect("correct output type"),
38 )
39 }
40
41 pub(crate) async fn orchestrate_with_stop_point(
42 runtime_plugins: &::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
43 input: crate::operation::assume_role_with_saml::AssumeRoleWithSamlInput,
44 stop_point: ::aws_smithy_runtime::client::orchestrator::StopPoint,
45 ) -> ::std::result::Result<
46 ::aws_smithy_runtime_api::client::interceptors::context::InterceptorContext,
47 ::aws_smithy_runtime_api::client::result::SdkError<
48 ::aws_smithy_runtime_api::client::interceptors::context::Error,
49 ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
50 >,
51 > {
52 let input = ::aws_smithy_runtime_api::client::interceptors::context::Input::erase(input);
53 use ::tracing::Instrument;
54 ::aws_smithy_runtime::client::orchestrator::invoke_with_stop_point("STS", "AssumeRoleWithSAML", input, runtime_plugins, stop_point)
55 .instrument(::tracing::debug_span!(
58 "STS.AssumeRoleWithSAML",
59 "rpc.service" = "STS",
60 "rpc.method" = "AssumeRoleWithSAML",
61 "sdk_invocation_id" = ::fastrand::u32(1_000_000..10_000_000),
62 "rpc.system" = "aws-api",
63 ))
64 .await
65 }
66
67 pub(crate) fn operation_runtime_plugins(
68 client_runtime_plugins: ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
69 client_config: &crate::config::Config,
70 config_override: ::std::option::Option<crate::config::Builder>,
71 ) -> ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins {
72 let mut runtime_plugins = client_runtime_plugins.with_operation_plugin(Self::new());
73 runtime_plugins = runtime_plugins.with_client_plugin(crate::auth_plugin::DefaultAuthOptionsPlugin::new(vec![
74 ::aws_runtime::auth::sigv4::SCHEME_ID,
75 ::aws_smithy_runtime::client::auth::no_auth::NO_AUTH_SCHEME_ID,
76 ]));
77 if let ::std::option::Option::Some(config_override) = config_override {
78 for plugin in config_override.runtime_plugins.iter().cloned() {
79 runtime_plugins = runtime_plugins.with_operation_plugin(plugin);
80 }
81 runtime_plugins = runtime_plugins.with_operation_plugin(crate::config::ConfigOverrideRuntimePlugin::new(
82 config_override,
83 client_config.config.clone(),
84 &client_config.runtime_components,
85 ));
86 }
87 runtime_plugins
88 }
89}
90impl ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugin for AssumeRoleWithSAML {
91 fn config(&self) -> ::std::option::Option<::aws_smithy_types::config_bag::FrozenLayer> {
92 let mut cfg = ::aws_smithy_types::config_bag::Layer::new("AssumeRoleWithSAML");
93
94 cfg.store_put(::aws_smithy_runtime_api::client::ser_de::SharedRequestSerializer::new(
95 AssumeRoleWithSAMLRequestSerializer,
96 ));
97 cfg.store_put(::aws_smithy_runtime_api::client::ser_de::SharedResponseDeserializer::new(
98 AssumeRoleWithSAMLResponseDeserializer,
99 ));
100
101 cfg.store_put(::aws_smithy_runtime_api::client::auth::AuthSchemeOptionResolverParams::new(
102 ::aws_smithy_runtime_api::client::auth::static_resolver::StaticAuthSchemeOptionResolverParams::new(),
103 ));
104
105 cfg.store_put(::aws_smithy_runtime_api::client::orchestrator::SensitiveOutput);
106 cfg.store_put(::aws_smithy_runtime_api::client::orchestrator::Metadata::new("AssumeRoleWithSAML", "STS"));
107 let mut signing_options = ::aws_runtime::auth::SigningOptions::default();
108 signing_options.double_uri_encode = true;
109 signing_options.content_sha256_header = false;
110 signing_options.normalize_uri_path = true;
111 signing_options.payload_override = None;
112
113 cfg.store_put(::aws_runtime::auth::SigV4OperationSigningConfig {
114 signing_options,
115 ..::std::default::Default::default()
116 });
117
118 ::std::option::Option::Some(cfg.freeze())
119 }
120
121 fn runtime_components(
122 &self,
123 _: &::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder,
124 ) -> ::std::borrow::Cow<'_, ::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder> {
125 #[allow(unused_mut)]
126 let mut rcb = ::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder::new("AssumeRoleWithSAML")
127 .with_interceptor(::aws_smithy_runtime::client::stalled_stream_protection::StalledStreamProtectionInterceptor::default())
128 .with_interceptor(AssumeRoleWithSAMLEndpointParamsInterceptor)
129 .with_retry_classifier(::aws_smithy_runtime::client::retries::classifiers::TransientErrorClassifier::<
130 crate::operation::assume_role_with_saml::AssumeRoleWithSAMLError,
131 >::new())
132 .with_retry_classifier(::aws_smithy_runtime::client::retries::classifiers::ModeledAsRetryableClassifier::<
133 crate::operation::assume_role_with_saml::AssumeRoleWithSAMLError,
134 >::new())
135 .with_retry_classifier(::aws_runtime::retries::classifiers::AwsErrorCodeClassifier::<
136 crate::operation::assume_role_with_saml::AssumeRoleWithSAMLError,
137 >::new());
138
139 ::std::borrow::Cow::Owned(rcb)
140 }
141}
142
143#[derive(Debug)]
144struct AssumeRoleWithSAMLResponseDeserializer;
145impl ::aws_smithy_runtime_api::client::ser_de::DeserializeResponse for AssumeRoleWithSAMLResponseDeserializer {
146 fn deserialize_nonstreaming(
147 &self,
148 response: &::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
149 ) -> ::aws_smithy_runtime_api::client::interceptors::context::OutputOrError {
150 let (success, status) = (response.status().is_success(), response.status().as_u16());
151 let headers = response.headers();
152 let body = response.body().bytes().expect("body loaded");
153 #[allow(unused_mut)]
154 let mut force_error = false;
155 ::tracing::debug!(request_id = ?::aws_types::request_id::RequestId::request_id(response));
156 let parse_result = if !success && status != 200 || force_error {
157 crate::protocol_serde::shape_assume_role_with_saml::de_assume_role_with_saml_http_error(status, headers, body)
158 } else {
159 crate::protocol_serde::shape_assume_role_with_saml::de_assume_role_with_saml_http_response(status, headers, body)
160 };
161 crate::protocol_serde::type_erase_result(parse_result)
162 }
163}
164#[derive(Debug)]
165struct AssumeRoleWithSAMLRequestSerializer;
166impl ::aws_smithy_runtime_api::client::ser_de::SerializeRequest for AssumeRoleWithSAMLRequestSerializer {
167 #[allow(unused_mut, clippy::let_and_return, clippy::needless_borrow, clippy::useless_conversion)]
168 fn serialize_input(
169 &self,
170 input: ::aws_smithy_runtime_api::client::interceptors::context::Input,
171 _cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
172 ) -> ::std::result::Result<::aws_smithy_runtime_api::client::orchestrator::HttpRequest, ::aws_smithy_runtime_api::box_error::BoxError> {
173 let input = input
174 .downcast::<crate::operation::assume_role_with_saml::AssumeRoleWithSamlInput>()
175 .expect("correct type");
176 let _header_serialization_settings = _cfg
177 .load::<crate::serialization_settings::HeaderSerializationSettings>()
178 .cloned()
179 .unwrap_or_default();
180 let mut request_builder = {
181 fn uri_base(
182 _input: &crate::operation::assume_role_with_saml::AssumeRoleWithSamlInput,
183 output: &mut ::std::string::String,
184 ) -> ::std::result::Result<(), ::aws_smithy_types::error::operation::BuildError> {
185 use ::std::fmt::Write as _;
186 ::std::write!(output, "/").expect("formatting should succeed");
187 ::std::result::Result::Ok(())
188 }
189 #[allow(clippy::unnecessary_wraps)]
190 fn update_http_builder(
191 input: &crate::operation::assume_role_with_saml::AssumeRoleWithSamlInput,
192 builder: ::http::request::Builder,
193 ) -> ::std::result::Result<::http::request::Builder, ::aws_smithy_types::error::operation::BuildError> {
194 let mut uri = ::std::string::String::new();
195 uri_base(input, &mut uri)?;
196 ::std::result::Result::Ok(builder.method("POST").uri(uri))
197 }
198 let mut builder = update_http_builder(&input, ::http::request::Builder::new())?;
199 builder = _header_serialization_settings.set_default_header(builder, ::http::header::CONTENT_TYPE, "application/x-www-form-urlencoded");
200 builder
201 };
202 let body = ::aws_smithy_types::body::SdkBody::from(
203 crate::protocol_serde::shape_assume_role_with_saml_input::ser_assume_role_with_saml_input_input_input(&input)?,
204 );
205 if let Some(content_length) = body.content_length() {
206 let content_length = content_length.to_string();
207 request_builder = _header_serialization_settings.set_default_header(request_builder, ::http::header::CONTENT_LENGTH, &content_length);
208 }
209 ::std::result::Result::Ok(request_builder.body(body).expect("valid request").try_into().unwrap())
210 }
211}
212#[derive(Debug)]
213struct AssumeRoleWithSAMLEndpointParamsInterceptor;
214
215impl ::aws_smithy_runtime_api::client::interceptors::Intercept for AssumeRoleWithSAMLEndpointParamsInterceptor {
216 fn name(&self) -> &'static str {
217 "AssumeRoleWithSAMLEndpointParamsInterceptor"
218 }
219
220 fn read_before_execution(
221 &self,
222 context: &::aws_smithy_runtime_api::client::interceptors::context::BeforeSerializationInterceptorContextRef<
223 '_,
224 ::aws_smithy_runtime_api::client::interceptors::context::Input,
225 ::aws_smithy_runtime_api::client::interceptors::context::Output,
226 ::aws_smithy_runtime_api::client::interceptors::context::Error,
227 >,
228 cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
229 ) -> ::std::result::Result<(), ::aws_smithy_runtime_api::box_error::BoxError> {
230 let _input = context
231 .input()
232 .downcast_ref::<AssumeRoleWithSamlInput>()
233 .ok_or("failed to downcast to AssumeRoleWithSamlInput")?;
234
235 let params = crate::config::endpoint::Params::builder()
236 .set_region(cfg.load::<::aws_types::region::Region>().map(|r| r.as_ref().to_owned()))
237 .set_use_dual_stack(cfg.load::<::aws_types::endpoint_config::UseDualStack>().map(|ty| ty.0))
238 .set_use_fips(cfg.load::<::aws_types::endpoint_config::UseFips>().map(|ty| ty.0))
239 .set_endpoint(cfg.load::<::aws_types::endpoint_config::EndpointUrl>().map(|ty| ty.0.clone()))
240 .build()
241 .map_err(|err| {
242 ::aws_smithy_runtime_api::client::interceptors::error::ContextAttachedError::new("endpoint params could not be built", err)
243 })?;
244 cfg.interceptor_state()
245 .store_put(::aws_smithy_runtime_api::client::endpoint::EndpointResolverParams::new(params));
246 ::std::result::Result::Ok(())
247 }
248}
249
250#[non_exhaustive]
255#[derive(::std::fmt::Debug)]
256pub enum AssumeRoleWithSAMLError {
257 ExpiredTokenException(crate::types::error::ExpiredTokenException),
259 IdpRejectedClaimException(crate::types::error::IdpRejectedClaimException),
262 InvalidIdentityTokenException(crate::types::error::InvalidIdentityTokenException),
264 MalformedPolicyDocumentException(crate::types::error::MalformedPolicyDocumentException),
266 PackedPolicyTooLargeException(crate::types::error::PackedPolicyTooLargeException),
269 RegionDisabledException(crate::types::error::RegionDisabledException),
271 #[deprecated(note = "Matching `Unhandled` directly is not forwards compatible. Instead, match using a \
273 variable wildcard pattern and check `.code()`:
274 \
275 `err if err.code() == Some(\"SpecificExceptionCode\") => { /* handle the error */ }`
276 \
277 See [`ProvideErrorMetadata`](#impl-ProvideErrorMetadata-for-AssumeRoleWithSAMLError) for what information is available for the error.")]
278 Unhandled(crate::error::sealed_unhandled::Unhandled),
279}
280impl AssumeRoleWithSAMLError {
281 pub fn unhandled(
283 err: impl ::std::convert::Into<::std::boxed::Box<dyn ::std::error::Error + ::std::marker::Send + ::std::marker::Sync + 'static>>,
284 ) -> Self {
285 Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
286 source: err.into(),
287 meta: ::std::default::Default::default(),
288 })
289 }
290
291 pub fn generic(err: ::aws_smithy_types::error::ErrorMetadata) -> Self {
293 Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
294 source: err.clone().into(),
295 meta: err,
296 })
297 }
298 pub fn meta(&self) -> &::aws_smithy_types::error::ErrorMetadata {
303 match self {
304 Self::ExpiredTokenException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
305 Self::IdpRejectedClaimException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
306 Self::InvalidIdentityTokenException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
307 Self::MalformedPolicyDocumentException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
308 Self::PackedPolicyTooLargeException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
309 Self::RegionDisabledException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
310 Self::Unhandled(e) => &e.meta,
311 }
312 }
313 pub fn is_expired_token_exception(&self) -> bool {
315 matches!(self, Self::ExpiredTokenException(_))
316 }
317 pub fn is_idp_rejected_claim_exception(&self) -> bool {
319 matches!(self, Self::IdpRejectedClaimException(_))
320 }
321 pub fn is_invalid_identity_token_exception(&self) -> bool {
323 matches!(self, Self::InvalidIdentityTokenException(_))
324 }
325 pub fn is_malformed_policy_document_exception(&self) -> bool {
327 matches!(self, Self::MalformedPolicyDocumentException(_))
328 }
329 pub fn is_packed_policy_too_large_exception(&self) -> bool {
331 matches!(self, Self::PackedPolicyTooLargeException(_))
332 }
333 pub fn is_region_disabled_exception(&self) -> bool {
335 matches!(self, Self::RegionDisabledException(_))
336 }
337}
338impl ::std::error::Error for AssumeRoleWithSAMLError {
339 fn source(&self) -> ::std::option::Option<&(dyn ::std::error::Error + 'static)> {
340 match self {
341 Self::ExpiredTokenException(_inner) => ::std::option::Option::Some(_inner),
342 Self::IdpRejectedClaimException(_inner) => ::std::option::Option::Some(_inner),
343 Self::InvalidIdentityTokenException(_inner) => ::std::option::Option::Some(_inner),
344 Self::MalformedPolicyDocumentException(_inner) => ::std::option::Option::Some(_inner),
345 Self::PackedPolicyTooLargeException(_inner) => ::std::option::Option::Some(_inner),
346 Self::RegionDisabledException(_inner) => ::std::option::Option::Some(_inner),
347 Self::Unhandled(_inner) => ::std::option::Option::Some(&*_inner.source),
348 }
349 }
350}
351impl ::std::fmt::Display for AssumeRoleWithSAMLError {
352 fn fmt(&self, f: &mut ::std::fmt::Formatter<'_>) -> ::std::fmt::Result {
353 match self {
354 Self::ExpiredTokenException(_inner) => _inner.fmt(f),
355 Self::IdpRejectedClaimException(_inner) => _inner.fmt(f),
356 Self::InvalidIdentityTokenException(_inner) => _inner.fmt(f),
357 Self::MalformedPolicyDocumentException(_inner) => _inner.fmt(f),
358 Self::PackedPolicyTooLargeException(_inner) => _inner.fmt(f),
359 Self::RegionDisabledException(_inner) => _inner.fmt(f),
360 Self::Unhandled(_inner) => {
361 if let ::std::option::Option::Some(code) = ::aws_smithy_types::error::metadata::ProvideErrorMetadata::code(self) {
362 write!(f, "unhandled error ({code})")
363 } else {
364 f.write_str("unhandled error")
365 }
366 }
367 }
368 }
369}
370impl ::aws_smithy_types::retry::ProvideErrorKind for AssumeRoleWithSAMLError {
371 fn code(&self) -> ::std::option::Option<&str> {
372 ::aws_smithy_types::error::metadata::ProvideErrorMetadata::code(self)
373 }
374 fn retryable_error_kind(&self) -> ::std::option::Option<::aws_smithy_types::retry::ErrorKind> {
375 ::std::option::Option::None
376 }
377}
378impl ::aws_smithy_types::error::metadata::ProvideErrorMetadata for AssumeRoleWithSAMLError {
379 fn meta(&self) -> &::aws_smithy_types::error::ErrorMetadata {
380 match self {
381 Self::ExpiredTokenException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
382 Self::IdpRejectedClaimException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
383 Self::InvalidIdentityTokenException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
384 Self::MalformedPolicyDocumentException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
385 Self::PackedPolicyTooLargeException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
386 Self::RegionDisabledException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
387 Self::Unhandled(_inner) => &_inner.meta,
388 }
389 }
390}
391impl ::aws_smithy_runtime_api::client::result::CreateUnhandledError for AssumeRoleWithSAMLError {
392 fn create_unhandled_error(
393 source: ::std::boxed::Box<dyn ::std::error::Error + ::std::marker::Send + ::std::marker::Sync + 'static>,
394 meta: ::std::option::Option<::aws_smithy_types::error::ErrorMetadata>,
395 ) -> Self {
396 Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
397 source,
398 meta: meta.unwrap_or_default(),
399 })
400 }
401}
402impl ::aws_types::request_id::RequestId for crate::operation::assume_role_with_saml::AssumeRoleWithSAMLError {
403 fn request_id(&self) -> Option<&str> {
404 self.meta().request_id()
405 }
406}
407
408pub use crate::operation::assume_role_with_saml::_assume_role_with_saml_output::AssumeRoleWithSamlOutput;
409
410pub use crate::operation::assume_role_with_saml::_assume_role_with_saml_input::AssumeRoleWithSamlInput;
411
412mod _assume_role_with_saml_input;
413
414mod _assume_role_with_saml_output;
415
416pub mod builders;