1#[derive(::std::clone::Clone, ::std::default::Default, ::std::fmt::Debug)]
4#[non_exhaustive]
5pub struct AssumeRole;
6impl AssumeRole {
7 pub fn new() -> Self {
9 Self
10 }
11 pub(crate) async fn orchestrate(
12 runtime_plugins: &::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
13 input: crate::operation::assume_role::AssumeRoleInput,
14 ) -> ::std::result::Result<crate::operation::assume_role::AssumeRoleOutput, ::aws_smithy_runtime_api::client::result::SdkError<crate::operation::assume_role::AssumeRoleError, ::aws_smithy_runtime_api::client::orchestrator::HttpResponse>> {
15 let map_err = |err: ::aws_smithy_runtime_api::client::result::SdkError<::aws_smithy_runtime_api::client::interceptors::context::Error, ::aws_smithy_runtime_api::client::orchestrator::HttpResponse>| {
16 err.map_service_error(|err| {
17 err.downcast::<crate::operation::assume_role::AssumeRoleError>().expect("correct error type")
18 })
19 };
20 let context = Self::orchestrate_with_stop_point(runtime_plugins, input, ::aws_smithy_runtime::client::orchestrator::StopPoint::None)
21 .await
22 .map_err(map_err)?;
23 let output = context.finalize().map_err(map_err)?;
24 ::std::result::Result::Ok(output.downcast::<crate::operation::assume_role::AssumeRoleOutput>().expect("correct output type"))
25 }
26
27 pub(crate) async fn orchestrate_with_stop_point(
28 runtime_plugins: &::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
29 input: crate::operation::assume_role::AssumeRoleInput,
30 stop_point: ::aws_smithy_runtime::client::orchestrator::StopPoint,
31 ) -> ::std::result::Result<::aws_smithy_runtime_api::client::interceptors::context::InterceptorContext, ::aws_smithy_runtime_api::client::result::SdkError<::aws_smithy_runtime_api::client::interceptors::context::Error, ::aws_smithy_runtime_api::client::orchestrator::HttpResponse>> {
32 let input = ::aws_smithy_runtime_api::client::interceptors::context::Input::erase(input);
33 use ::tracing::Instrument;
34 ::aws_smithy_runtime::client::orchestrator::invoke_with_stop_point(
35 "STS",
36 "AssumeRole",
37 input,
38 runtime_plugins,
39 stop_point
40 )
41 .instrument(::tracing::debug_span!(
44 "STS.AssumeRole",
45 "rpc.service" = "STS",
46 "rpc.method" = "AssumeRole",
47 "sdk_invocation_id" = ::fastrand::u32(1_000_000..10_000_000),
48 "rpc.system" = "aws-api",
49 ))
50 .await
51 }
52
53 pub(crate) fn operation_runtime_plugins(
54 client_runtime_plugins: ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
55 client_config: &crate::config::Config,
56 config_override: ::std::option::Option<crate::config::Builder>,
57 ) -> ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins {
58 let mut runtime_plugins = client_runtime_plugins.with_operation_plugin(Self::new());
59
60 if let ::std::option::Option::Some(config_override) = config_override {
61 for plugin in config_override.runtime_plugins.iter().cloned() {
62 runtime_plugins = runtime_plugins.with_operation_plugin(plugin);
63 }
64 runtime_plugins = runtime_plugins.with_operation_plugin(
65 crate::config::ConfigOverrideRuntimePlugin::new(config_override, client_config.config.clone(), &client_config.runtime_components)
66 );
67 }
68 runtime_plugins
69 }
70}
71impl ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugin for AssumeRole {
72 fn config(&self) -> ::std::option::Option<::aws_smithy_types::config_bag::FrozenLayer> {
73 let mut cfg = ::aws_smithy_types::config_bag::Layer::new("AssumeRole");
74
75 cfg.store_put(::aws_smithy_runtime_api::client::ser_de::SharedRequestSerializer::new(AssumeRoleRequestSerializer));
76 cfg.store_put(::aws_smithy_runtime_api::client::ser_de::SharedResponseDeserializer::new(AssumeRoleResponseDeserializer));
77
78 cfg.store_put(::aws_smithy_runtime_api::client::auth::AuthSchemeOptionResolverParams::new(
79 crate::config::auth::Params::builder()
80 .operation_name("AssumeRole")
81 .build()
82 .expect("required fields set")
83 ));
84
85 cfg.store_put(::aws_smithy_runtime_api::client::orchestrator::SensitiveOutput);
86cfg.store_put(::aws_smithy_runtime_api::client::orchestrator::Metadata::new(
87 "AssumeRole",
88 "STS",
89 ));
90let mut signing_options = ::aws_runtime::auth::SigningOptions::default();
91 signing_options.double_uri_encode = true;
92 signing_options.content_sha256_header = false;
93 signing_options.normalize_uri_path = true;
94 signing_options.payload_override = None;
95
96 cfg.store_put(::aws_runtime::auth::SigV4OperationSigningConfig {
97 signing_options,
98 ..::std::default::Default::default()
99 });
100
101 ::std::option::Option::Some(cfg.freeze())
102 }
103
104 fn runtime_components(&self, _: &::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder) -> ::std::borrow::Cow<'_, ::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder> {
105 #[allow(unused_mut)]
106 let mut rcb = ::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder::new("AssumeRole")
107 .with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(AssumeRoleTelemetryInputCaptureInterceptor))
108.with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(::aws_smithy_runtime::client::stalled_stream_protection::StalledStreamProtectionInterceptor::default()))
109.with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(AssumeRoleEndpointParamsInterceptor))
110 .with_retry_classifier(::aws_smithy_runtime::client::retries::classifiers::TransientErrorClassifier::<crate::operation::assume_role::AssumeRoleError>::new())
111.with_retry_classifier(::aws_smithy_runtime::client::retries::classifiers::ModeledAsRetryableClassifier::<crate::operation::assume_role::AssumeRoleError>::new())
112.with_retry_classifier(::aws_runtime::retries::classifiers::AwsErrorCodeClassifier::<crate::operation::assume_role::AssumeRoleError>::builder().transient_errors({
113 let mut transient_errors: Vec<&'static str> = ::aws_runtime::retries::classifiers::TRANSIENT_ERRORS.into();
114 transient_errors.push("IDPCommunicationError");
115 ::std::borrow::Cow::Owned(transient_errors)
116 }).build());
117
118 ::std::borrow::Cow::Owned(rcb)
119 }
120 }
121
122 #[derive(Debug)]
123 struct AssumeRoleTelemetryInputCaptureInterceptor;
124
125 #[::aws_smithy_runtime_api::client::interceptors::dyn_dispatch_hint]
126 impl ::aws_smithy_runtime_api::client::interceptors::Intercept for AssumeRoleTelemetryInputCaptureInterceptor {
127 fn name(&self) -> &'static str {
128 "AssumeRoleTelemetryInputCaptureInterceptor"
129 }
130
131 fn read_before_execution(
132 &self,
133 context: &::aws_smithy_runtime_api::client::interceptors::context::BeforeSerializationInterceptorContextRef<'_, ::aws_smithy_runtime_api::client::interceptors::context::Input, ::aws_smithy_runtime_api::client::interceptors::context::Output, ::aws_smithy_runtime_api::client::interceptors::context::Error>,
134 cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
135 ) -> ::std::result::Result<(), ::aws_smithy_runtime_api::box_error::BoxError> {
136 let ::std::option::Option::Some(requested) = cfg.load::<::aws_smithy_types::telemetry::RequestedTelemetryAttributes>().filter(|r| !r.is_empty()) else {
138 return ::std::result::Result::Ok(());
139 };
140
141 let ::std::option::Option::Some(input) = context.input().downcast_ref::<AssumeRoleInput>() else {
142 return ::std::result::Result::Ok(());
144 };
145
146 let mut captured = ::aws_smithy_types::telemetry::CapturedTelemetryAttributes::default();
147 if requested.should_capture("RoleArn") {
148 if let ::std::option::Option::Some(value) = input.role_arn.as_deref() {
149 captured.insert("RoleArn", value);
150 }
151 }
152if requested.should_capture("RoleSessionName") {
153 if let ::std::option::Option::Some(value) = input.role_session_name.as_deref() {
154 captured.insert("RoleSessionName", value);
155 }
156 }
157if requested.should_capture("Policy") {
158 if let ::std::option::Option::Some(value) = input.policy.as_deref() {
159 captured.insert("Policy", value);
160 }
161 }
162if requested.should_capture("ExternalId") {
163 if let ::std::option::Option::Some(value) = input.external_id.as_deref() {
164 captured.insert("ExternalId", value);
165 }
166 }
167if requested.should_capture("SerialNumber") {
168 if let ::std::option::Option::Some(value) = input.serial_number.as_deref() {
169 captured.insert("SerialNumber", value);
170 }
171 }
172if requested.should_capture("TokenCode") {
173 if let ::std::option::Option::Some(value) = input.token_code.as_deref() {
174 captured.insert("TokenCode", value);
175 }
176 }
177if requested.should_capture("SourceIdentity") {
178 if let ::std::option::Option::Some(value) = input.source_identity.as_deref() {
179 captured.insert("SourceIdentity", value);
180 }
181 }
182
183 cfg.interceptor_state().store_put(captured);
184 ::std::result::Result::Ok(())
185 }
186 }
187#[derive(Debug)]
188 struct AssumeRoleResponseDeserializer;
189 impl ::aws_smithy_runtime_api::client::ser_de::DeserializeResponse for AssumeRoleResponseDeserializer {
190
191
192 fn deserialize_nonstreaming_with_config(&self, response: &::aws_smithy_runtime_api::client::orchestrator::HttpResponse, _cfg: &::aws_smithy_types::config_bag::ConfigBag) -> ::aws_smithy_runtime_api::client::interceptors::context::OutputOrError {
193 let (success, status) = (response.status().is_success(), response.status().as_u16());
194 let headers = response.headers();
195 let body = response.body().bytes().expect("body loaded");
196 #[allow(unused_mut)]
197 let mut force_error = false;
198 ::tracing::debug!(request_id = ?::aws_types::request_id::RequestId::request_id(response));
199 let parse_result = if !success && status != 200 || force_error {
200 crate::protocol_serde::shape_assume_role::de_assume_role_http_error(status, headers, body)
201 } else {
202 crate::protocol_serde::shape_assume_role::de_assume_role_http_response(status, headers, body)
203 };
204 crate::protocol_serde::type_erase_result(parse_result)
205 }
206 }
207#[derive(Debug)]
208 struct AssumeRoleRequestSerializer;
209 impl ::aws_smithy_runtime_api::client::ser_de::SerializeRequest for AssumeRoleRequestSerializer {
210 #[allow(unused_mut, clippy::let_and_return, clippy::needless_borrow, clippy::useless_conversion)]
211 fn serialize_input(&self, input: ::aws_smithy_runtime_api::client::interceptors::context::Input, _cfg: &mut ::aws_smithy_types::config_bag::ConfigBag) -> ::std::result::Result<::aws_smithy_runtime_api::client::orchestrator::HttpRequest, ::aws_smithy_runtime_api::box_error::BoxError> {
212 let input = input.downcast::<crate::operation::assume_role::AssumeRoleInput>().expect("correct type");
213 let _header_serialization_settings = _cfg.load::<crate::serialization_settings::HeaderSerializationSettings>().cloned().unwrap_or_default();
214 let mut request_builder = {
215 #[allow(clippy::uninlined_format_args)]
216fn uri_base(_input: &crate::operation::assume_role::AssumeRoleInput, output: &mut ::std::string::String) -> ::std::result::Result<(), ::aws_smithy_types::error::operation::BuildError> {
217 use ::std::fmt::Write as _;
218 ::std::write!(output, "/").expect("formatting should succeed");
219 ::std::result::Result::Ok(())
220}
221#[allow(clippy::unnecessary_wraps)]
222fn update_http_builder(
223 input: &crate::operation::assume_role::AssumeRoleInput,
224 builder: ::http_1x::request::Builder
225 ) -> ::std::result::Result<::http_1x::request::Builder, ::aws_smithy_types::error::operation::BuildError> {
226 let mut uri = ::std::string::String::new();
227 uri_base(input, &mut uri)?;
228 ::std::result::Result::Ok(builder.method("POST").uri(uri))
229}
230let mut builder = update_http_builder(&input, ::http_1x::request::Builder::new())?;
231builder = _header_serialization_settings.set_default_header(builder, ::http_1x::header::CONTENT_TYPE, "application/x-www-form-urlencoded");
232builder
233 };
234 let body = ::aws_smithy_types::body::SdkBody::from(crate::protocol_serde::shape_assume_role_input::ser_assume_role_input_input_input(&input)?);
235 if let Some(content_length) = body.content_length() {
236 let content_length = content_length.to_string();
237 request_builder = _header_serialization_settings.set_default_header(request_builder, ::http_1x::header::CONTENT_LENGTH, &content_length);
238 }
239 ::std::result::Result::Ok(request_builder.body(body).expect("valid request").try_into().unwrap())
240 }
241 }
242#[derive(Debug)]
243 struct AssumeRoleEndpointParamsInterceptor;
244
245 #[::aws_smithy_runtime_api::client::interceptors::dyn_dispatch_hint]
246 impl ::aws_smithy_runtime_api::client::interceptors::Intercept for AssumeRoleEndpointParamsInterceptor {
247 fn name(&self) -> &'static str {
248 "AssumeRoleEndpointParamsInterceptor"
249 }
250
251 fn read_before_execution(
252 &self,
253 context: &::aws_smithy_runtime_api::client::interceptors::context::BeforeSerializationInterceptorContextRef<'_, ::aws_smithy_runtime_api::client::interceptors::context::Input, ::aws_smithy_runtime_api::client::interceptors::context::Output, ::aws_smithy_runtime_api::client::interceptors::context::Error>,
254 cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
255 ) -> ::std::result::Result<(), ::aws_smithy_runtime_api::box_error::BoxError> {
256 let _input = context.input()
257 .downcast_ref::<AssumeRoleInput>()
258 .ok_or("failed to downcast to AssumeRoleInput")?;
259
260
261
262 let params = crate::config::endpoint::Params::builder()
263 .set_region(cfg.load::<::aws_types::region::Region>().map(|r|r.as_ref().to_owned()))
264.set_use_dual_stack(cfg.load::<::aws_types::endpoint_config::UseDualStack>().map(|ty| ty.0))
265.set_use_fips(cfg.load::<::aws_types::endpoint_config::UseFips>().map(|ty| ty.0))
266.set_endpoint(cfg.load::<::aws_types::endpoint_config::EndpointUrl>().map(|ty| ty.0.clone()))
267 .build()
268 .map_err(|err| ::aws_smithy_runtime_api::client::interceptors::error::ContextAttachedError::new("endpoint params could not be built", err))?;
269 cfg.interceptor_state().store_put(::aws_smithy_runtime_api::client::endpoint::EndpointResolverParams::new(params));
270 ::std::result::Result::Ok(())
271 }
272 }
273
274 #[non_exhaustive]
281#[derive(::std::fmt::Debug)]
282pub enum AssumeRoleError {
283 ExpiredTokenException(crate::types::error::ExpiredTokenException),
285 MalformedPolicyDocumentException(crate::types::error::MalformedPolicyDocumentException),
287 PackedPolicyTooLargeException(crate::types::error::PackedPolicyTooLargeException),
290 RegionDisabledException(crate::types::error::RegionDisabledException),
292 #[deprecated(note = "Matching `Unhandled` directly is not forwards compatible. Instead, match using a \
294 variable wildcard pattern and check `.code()`:
295 \
296 `err if err.code() == Some(\"SpecificExceptionCode\") => { /* handle the error */ }`
297 \
298 See [`ProvideErrorMetadata`](#impl-ProvideErrorMetadata-for-AssumeRoleError) for what information is available for the error.")]
299 Unhandled(crate::error::sealed_unhandled::Unhandled),
300}
301impl AssumeRoleError {
302 pub fn unhandled(err: impl ::std::convert::Into<::std::boxed::Box<dyn ::std::error::Error + ::std::marker::Send + ::std::marker::Sync + 'static>>) -> Self {
304 Self::Unhandled(crate::error::sealed_unhandled::Unhandled { source: err.into(), meta: ::std::default::Default::default() })
305 }
306
307 pub fn generic(err: ::aws_smithy_types::error::ErrorMetadata) -> Self {
309 Self::Unhandled(crate::error::sealed_unhandled::Unhandled { source: err.clone().into(), meta: err })
310 }
311 pub fn meta(&self) -> &::aws_smithy_types::error::ErrorMetadata {
316 match self {
317 Self::ExpiredTokenException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
318 Self::MalformedPolicyDocumentException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
319 Self::PackedPolicyTooLargeException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
320 Self::RegionDisabledException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
321 Self::Unhandled(e) => &e.meta,
322 }
323 }
324 pub fn is_expired_token_exception(&self) -> bool {
326 matches!(self, Self::ExpiredTokenException(_))
327 }
328 pub fn is_malformed_policy_document_exception(&self) -> bool {
330 matches!(self, Self::MalformedPolicyDocumentException(_))
331 }
332 pub fn is_packed_policy_too_large_exception(&self) -> bool {
334 matches!(self, Self::PackedPolicyTooLargeException(_))
335 }
336 pub fn is_region_disabled_exception(&self) -> bool {
338 matches!(self, Self::RegionDisabledException(_))
339 }
340}
341impl ::std::error::Error for AssumeRoleError {
342 fn source(&self) -> ::std::option::Option<&(dyn ::std::error::Error + 'static)> {
343 match self {
344 Self::ExpiredTokenException(_inner) =>
345 ::std::option::Option::Some(_inner)
346 ,
347 Self::MalformedPolicyDocumentException(_inner) =>
348 ::std::option::Option::Some(_inner)
349 ,
350 Self::PackedPolicyTooLargeException(_inner) =>
351 ::std::option::Option::Some(_inner)
352 ,
353 Self::RegionDisabledException(_inner) =>
354 ::std::option::Option::Some(_inner)
355 ,
356 Self::Unhandled(_inner) => {
357 ::std::option::Option::Some(&*_inner.source)
358 }
359 }
360 }
361}
362impl ::std::fmt::Display for AssumeRoleError {
363 fn fmt(&self, f: &mut ::std::fmt::Formatter<'_>) -> ::std::fmt::Result {
364 match self {
365 Self::ExpiredTokenException(_inner) =>
366 _inner.fmt(f)
367 ,
368 Self::MalformedPolicyDocumentException(_inner) =>
369 _inner.fmt(f)
370 ,
371 Self::PackedPolicyTooLargeException(_inner) =>
372 _inner.fmt(f)
373 ,
374 Self::RegionDisabledException(_inner) =>
375 _inner.fmt(f)
376 ,
377 Self::Unhandled(_inner) => {
378 if let ::std::option::Option::Some(code) = ::aws_smithy_types::error::metadata::ProvideErrorMetadata::code(self) {
379 write!(f, "unhandled error ({code})")
380 } else {
381 f.write_str("unhandled error")
382 }
383 }
384 }
385 }
386}
387impl ::aws_smithy_types::retry::ProvideErrorKind for AssumeRoleError {
388 fn code(&self) -> ::std::option::Option<&str> {
389 ::aws_smithy_types::error::metadata::ProvideErrorMetadata::code(self)
390 }
391 fn retryable_error_kind(&self) -> ::std::option::Option<::aws_smithy_types::retry::ErrorKind> {
392 ::std::option::Option::None
393 }
394}
395impl ::aws_smithy_types::error::metadata::ProvideErrorMetadata for AssumeRoleError {
396 fn meta(&self) -> &::aws_smithy_types::error::ErrorMetadata {
397 match self {
398 Self::ExpiredTokenException(_inner) =>
399 ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner)
400 ,
401 Self::MalformedPolicyDocumentException(_inner) =>
402 ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner)
403 ,
404 Self::PackedPolicyTooLargeException(_inner) =>
405 ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner)
406 ,
407 Self::RegionDisabledException(_inner) =>
408 ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner)
409 ,
410 Self::Unhandled(_inner) => {
411 &_inner.meta
412 }
413 }
414 }
415}
416impl ::aws_smithy_runtime_api::client::result::CreateUnhandledError for AssumeRoleError {
417 fn create_unhandled_error(
418 source: ::std::boxed::Box<dyn ::std::error::Error + ::std::marker::Send + ::std::marker::Sync + 'static>,
419 meta: ::std::option::Option<::aws_smithy_types::error::ErrorMetadata>
420 ) -> Self {
421 Self::Unhandled(crate::error::sealed_unhandled::Unhandled { source, meta: meta.unwrap_or_default() })
422 }
423}
424impl ::aws_types::request_id::RequestId for crate::operation::assume_role::AssumeRoleError {
425 fn request_id(&self) -> Option<&str> {
426 self.meta().request_id()
427 }
428 }
429
430pub use crate::operation::assume_role::_assume_role_input::AssumeRoleInput;
431
432pub use crate::operation::assume_role::_assume_role_output::AssumeRoleOutput;
433
434mod _assume_role_input;
435
436mod _assume_role_output;
437
438pub mod builders;
440