Skip to main content

aws_sdk_sts/operation/
get_delegated_access_token.rs

1// Code generated by software.amazon.smithy.rust.codegen.smithy-rs. DO NOT EDIT.
2/// Orchestration and serialization glue logic for `GetDelegatedAccessToken`.
3#[derive(::std::clone::Clone, ::std::default::Default, ::std::fmt::Debug)]
4#[non_exhaustive]
5pub struct GetDelegatedAccessToken;
6impl GetDelegatedAccessToken {
7    /// Creates a new `GetDelegatedAccessToken`
8    pub fn new() -> Self {
9        Self
10    }
11    pub(crate) async fn orchestrate(
12                        runtime_plugins: &::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
13                        input: crate::operation::get_delegated_access_token::GetDelegatedAccessTokenInput,
14                    ) -> ::std::result::Result<crate::operation::get_delegated_access_token::GetDelegatedAccessTokenOutput, ::aws_smithy_runtime_api::client::result::SdkError<crate::operation::get_delegated_access_token::GetDelegatedAccessTokenError, ::aws_smithy_runtime_api::client::orchestrator::HttpResponse>> {
15                        let map_err = |err: ::aws_smithy_runtime_api::client::result::SdkError<::aws_smithy_runtime_api::client::interceptors::context::Error, ::aws_smithy_runtime_api::client::orchestrator::HttpResponse>| {
16                            err.map_service_error(|err| {
17                                err.downcast::<crate::operation::get_delegated_access_token::GetDelegatedAccessTokenError>().expect("correct error type")
18                            })
19                        };
20                        let context = Self::orchestrate_with_stop_point(runtime_plugins, input, ::aws_smithy_runtime::client::orchestrator::StopPoint::None)
21                            .await
22                            .map_err(map_err)?;
23                        let output = context.finalize().map_err(map_err)?;
24                        ::std::result::Result::Ok(output.downcast::<crate::operation::get_delegated_access_token::GetDelegatedAccessTokenOutput>().expect("correct output type"))
25                    }
26
27                    pub(crate) async fn orchestrate_with_stop_point(
28                        runtime_plugins: &::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
29                        input: crate::operation::get_delegated_access_token::GetDelegatedAccessTokenInput,
30                        stop_point: ::aws_smithy_runtime::client::orchestrator::StopPoint,
31                    ) -> ::std::result::Result<::aws_smithy_runtime_api::client::interceptors::context::InterceptorContext, ::aws_smithy_runtime_api::client::result::SdkError<::aws_smithy_runtime_api::client::interceptors::context::Error, ::aws_smithy_runtime_api::client::orchestrator::HttpResponse>> {
32                        let input = ::aws_smithy_runtime_api::client::interceptors::context::Input::erase(input);
33                        use ::tracing::Instrument;
34                        ::aws_smithy_runtime::client::orchestrator::invoke_with_stop_point(
35                            "STS",
36                            "GetDelegatedAccessToken",
37                            input,
38                            runtime_plugins,
39                            stop_point
40                        )
41                        // Create a parent span for the entire operation. Includes a random, internal-only,
42                        // seven-digit ID for the operation orchestration so that it can be correlated in the logs.
43                        .instrument(::tracing::debug_span!(
44                                "STS.GetDelegatedAccessToken",
45                                "rpc.service" = "STS",
46                                "rpc.method" = "GetDelegatedAccessToken",
47                                "sdk_invocation_id" = ::fastrand::u32(1_000_000..10_000_000),
48                                "rpc.system" = "aws-api",
49                            ))
50                        .await
51                    }
52
53                    pub(crate) fn operation_runtime_plugins(
54                        client_runtime_plugins: ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
55                        client_config: &crate::config::Config,
56                        config_override: ::std::option::Option<crate::config::Builder>,
57                    ) -> ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins {
58                        let mut runtime_plugins = client_runtime_plugins.with_operation_plugin(Self::new());
59
60                        if let ::std::option::Option::Some(config_override) = config_override {
61                            for plugin in config_override.runtime_plugins.iter().cloned() {
62                                runtime_plugins = runtime_plugins.with_operation_plugin(plugin);
63                            }
64                            runtime_plugins = runtime_plugins.with_operation_plugin(
65                                crate::config::ConfigOverrideRuntimePlugin::new(config_override, client_config.config.clone(), &client_config.runtime_components)
66                            );
67                        }
68                        runtime_plugins
69                    }
70}
71impl ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugin for GetDelegatedAccessToken {
72                fn config(&self) -> ::std::option::Option<::aws_smithy_types::config_bag::FrozenLayer> {
73                    let mut cfg = ::aws_smithy_types::config_bag::Layer::new("GetDelegatedAccessToken");
74
75                    cfg.store_put(::aws_smithy_runtime_api::client::ser_de::SharedRequestSerializer::new(GetDelegatedAccessTokenRequestSerializer));
76                    cfg.store_put(::aws_smithy_runtime_api::client::ser_de::SharedResponseDeserializer::new(GetDelegatedAccessTokenResponseDeserializer));
77
78                    cfg.store_put(::aws_smithy_runtime_api::client::auth::AuthSchemeOptionResolverParams::new(
79                        crate::config::auth::Params::builder()
80                            .operation_name("GetDelegatedAccessToken")
81                            .build()
82                            .expect("required fields set")
83                    ));
84
85                    cfg.store_put(::aws_smithy_runtime_api::client::orchestrator::SensitiveOutput);
86cfg.store_put(::aws_smithy_runtime_api::client::orchestrator::Metadata::new(
87                            "GetDelegatedAccessToken",
88                            "STS",
89                        ));
90let mut signing_options = ::aws_runtime::auth::SigningOptions::default();
91                            signing_options.double_uri_encode = true;
92                            signing_options.content_sha256_header = false;
93                            signing_options.normalize_uri_path = true;
94                            signing_options.payload_override = None;
95
96                            cfg.store_put(::aws_runtime::auth::SigV4OperationSigningConfig {
97                                signing_options,
98                                ..::std::default::Default::default()
99                            });
100
101                    ::std::option::Option::Some(cfg.freeze())
102                }
103
104                fn runtime_components(&self, _: &::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder) -> ::std::borrow::Cow<'_, ::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder> {
105                    #[allow(unused_mut)]
106                    let mut rcb = ::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder::new("GetDelegatedAccessToken")
107                            .with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(::aws_smithy_runtime::client::stalled_stream_protection::StalledStreamProtectionInterceptor::default()))
108.with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(GetDelegatedAccessTokenEndpointParamsInterceptor))
109                            .with_retry_classifier(::aws_smithy_runtime::client::retries::classifiers::TransientErrorClassifier::<crate::operation::get_delegated_access_token::GetDelegatedAccessTokenError>::new())
110.with_retry_classifier(::aws_smithy_runtime::client::retries::classifiers::ModeledAsRetryableClassifier::<crate::operation::get_delegated_access_token::GetDelegatedAccessTokenError>::new())
111.with_retry_classifier(::aws_runtime::retries::classifiers::AwsErrorCodeClassifier::<crate::operation::get_delegated_access_token::GetDelegatedAccessTokenError>::builder().transient_errors({
112                                            let mut transient_errors: Vec<&'static str> = ::aws_runtime::retries::classifiers::TRANSIENT_ERRORS.into();
113                                            transient_errors.push("IDPCommunicationError");
114                                            ::std::borrow::Cow::Owned(transient_errors)
115                                            }).build());
116
117                    ::std::borrow::Cow::Owned(rcb)
118                }
119            }
120
121
122#[derive(Debug)]
123            struct GetDelegatedAccessTokenResponseDeserializer;
124            impl ::aws_smithy_runtime_api::client::ser_de::DeserializeResponse for GetDelegatedAccessTokenResponseDeserializer {
125
126
127                fn deserialize_nonstreaming_with_config(&self, response: &::aws_smithy_runtime_api::client::orchestrator::HttpResponse, _cfg: &::aws_smithy_types::config_bag::ConfigBag) -> ::aws_smithy_runtime_api::client::interceptors::context::OutputOrError {
128                    let (success, status) = (response.status().is_success(), response.status().as_u16());
129            let headers = response.headers();
130            let body = response.body().bytes().expect("body loaded");
131            #[allow(unused_mut)]
132            let mut force_error = false;
133            ::tracing::debug!(request_id = ?::aws_types::request_id::RequestId::request_id(response));
134            let parse_result = if !success && status != 200 || force_error {
135                crate::protocol_serde::shape_get_delegated_access_token::de_get_delegated_access_token_http_error(status, headers, body)
136            } else {
137                crate::protocol_serde::shape_get_delegated_access_token::de_get_delegated_access_token_http_response(status, headers, body)
138            };
139            crate::protocol_serde::type_erase_result(parse_result)
140                }
141            }
142#[derive(Debug)]
143            struct GetDelegatedAccessTokenRequestSerializer;
144            impl ::aws_smithy_runtime_api::client::ser_de::SerializeRequest for GetDelegatedAccessTokenRequestSerializer {
145                #[allow(unused_mut, clippy::let_and_return, clippy::needless_borrow, clippy::useless_conversion)]
146                fn serialize_input(&self, input: ::aws_smithy_runtime_api::client::interceptors::context::Input, _cfg: &mut ::aws_smithy_types::config_bag::ConfigBag) -> ::std::result::Result<::aws_smithy_runtime_api::client::orchestrator::HttpRequest, ::aws_smithy_runtime_api::box_error::BoxError> {
147                    let input = input.downcast::<crate::operation::get_delegated_access_token::GetDelegatedAccessTokenInput>().expect("correct type");
148                    let _header_serialization_settings = _cfg.load::<crate::serialization_settings::HeaderSerializationSettings>().cloned().unwrap_or_default();
149                    let mut request_builder = {
150                        #[allow(clippy::uninlined_format_args)]
151fn uri_base(_input: &crate::operation::get_delegated_access_token::GetDelegatedAccessTokenInput, output: &mut ::std::string::String) -> ::std::result::Result<(), ::aws_smithy_types::error::operation::BuildError> {
152    use ::std::fmt::Write as _;
153    ::std::write!(output, "/").expect("formatting should succeed");
154    ::std::result::Result::Ok(())
155}
156#[allow(clippy::unnecessary_wraps)]
157fn update_http_builder(
158                input: &crate::operation::get_delegated_access_token::GetDelegatedAccessTokenInput,
159                builder: ::http_1x::request::Builder
160            ) -> ::std::result::Result<::http_1x::request::Builder, ::aws_smithy_types::error::operation::BuildError> {
161    let mut uri = ::std::string::String::new();
162    uri_base(input, &mut uri)?;
163    ::std::result::Result::Ok(builder.method("POST").uri(uri))
164}
165let mut builder = update_http_builder(&input, ::http_1x::request::Builder::new())?;
166builder = _header_serialization_settings.set_default_header(builder, ::http_1x::header::CONTENT_TYPE, "application/x-www-form-urlencoded");
167builder
168                    };
169                    let body = ::aws_smithy_types::body::SdkBody::from(crate::protocol_serde::shape_get_delegated_access_token_input::ser_get_delegated_access_token_input_input_input(&input)?);
170                    if let Some(content_length) = body.content_length() {
171                                let content_length = content_length.to_string();
172                                request_builder = _header_serialization_settings.set_default_header(request_builder, ::http_1x::header::CONTENT_LENGTH, &content_length);
173                            }
174                    ::std::result::Result::Ok(request_builder.body(body).expect("valid request").try_into().unwrap())
175                }
176            }
177#[derive(Debug)]
178            struct GetDelegatedAccessTokenEndpointParamsInterceptor;
179
180            #[::aws_smithy_runtime_api::client::interceptors::dyn_dispatch_hint]
181            impl ::aws_smithy_runtime_api::client::interceptors::Intercept for GetDelegatedAccessTokenEndpointParamsInterceptor {
182                fn name(&self) -> &'static str {
183                    "GetDelegatedAccessTokenEndpointParamsInterceptor"
184                }
185
186                fn read_before_execution(
187                    &self,
188                    context: &::aws_smithy_runtime_api::client::interceptors::context::BeforeSerializationInterceptorContextRef<'_, ::aws_smithy_runtime_api::client::interceptors::context::Input, ::aws_smithy_runtime_api::client::interceptors::context::Output, ::aws_smithy_runtime_api::client::interceptors::context::Error>,
189                    cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
190                ) -> ::std::result::Result<(), ::aws_smithy_runtime_api::box_error::BoxError> {
191                    let _input = context.input()
192                        .downcast_ref::<GetDelegatedAccessTokenInput>()
193                        .ok_or("failed to downcast to GetDelegatedAccessTokenInput")?;
194
195
196
197                    let params = crate::config::endpoint::Params::builder()
198                        .set_region(cfg.load::<::aws_types::region::Region>().map(|r|r.as_ref().to_owned()))
199.set_use_dual_stack(cfg.load::<::aws_types::endpoint_config::UseDualStack>().map(|ty| ty.0))
200.set_use_fips(cfg.load::<::aws_types::endpoint_config::UseFips>().map(|ty| ty.0))
201.set_endpoint(cfg.load::<::aws_types::endpoint_config::EndpointUrl>().map(|ty| ty.0.clone()))
202                        .build()
203                        .map_err(|err| ::aws_smithy_runtime_api::client::interceptors::error::ContextAttachedError::new("endpoint params could not be built", err))?;
204                    cfg.interceptor_state().store_put(::aws_smithy_runtime_api::client::endpoint::EndpointResolverParams::new(params));
205                    ::std::result::Result::Ok(())
206                }
207            }
208
209            // The get_* functions below are generated from JMESPath expressions in the
210            // operationContextParams trait. They target the operation's input shape.
211
212
213
214/// Error type for the `GetDelegatedAccessTokenError` operation.
215#[non_exhaustive]
216#[derive(::std::fmt::Debug)]
217pub enum GetDelegatedAccessTokenError {
218    /// <p>The trade-in token provided in the request has expired and can no longer be exchanged for credentials. Request a new token and retry the operation.</p>
219    ExpiredTradeInTokenException(crate::types::error::ExpiredTradeInTokenException),
220    /// <p>The request was rejected because the total packed size of the session policies and session tags combined was too large. An Amazon Web Services conversion compresses the session policy document, session policy ARNs, and session tags into a packed binary format that has a separate limit. The error message indicates by percentage how close the policies and tags are to the upper size limit. For more information, see <a href="https://docs.aws.amazon.com/IAM/latest/UserGuide/id_session-tags.html">Passing Session Tags in STS</a> in the <i>IAM User Guide</i>.</p>
221    /// <p>You could receive this error even though you meet other defined session policy and session tag limits. For more information, see <a href="https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_iam-quotas.html#reference_iam-limits-entity-length">IAM and STS Entity Character Limits</a> in the <i>IAM User Guide</i>.</p>
222    PackedPolicyTooLargeException(crate::types::error::PackedPolicyTooLargeException),
223    /// <p>STS is not activated in the requested region for the account that is being asked to generate credentials. The account administrator must use the IAM console to activate STS in that region. For more information, see <a href="https://docs.aws.amazon.com/IAM/latest/UserGuide/id_credentials_temp_enable-regions.html#sts-regions-activate-deactivate">Activating and Deactivating STS in an Amazon Web Services Region</a> in the <i>IAM User Guide</i>.</p>
224    RegionDisabledException(crate::types::error::RegionDisabledException),
225    /// An unexpected error occurred (e.g., invalid JSON returned by the service or an unknown error code).
226                    #[deprecated(note = "Matching `Unhandled` directly is not forwards compatible. Instead, match using a \
227    variable wildcard pattern and check `.code()`:
228     \
229    &nbsp;&nbsp;&nbsp;`err if err.code() == Some(\"SpecificExceptionCode\") => { /* handle the error */ }`
230     \
231    See [`ProvideErrorMetadata`](#impl-ProvideErrorMetadata-for-GetDelegatedAccessTokenError) for what information is available for the error.")]
232                    Unhandled(crate::error::sealed_unhandled::Unhandled),
233}
234impl GetDelegatedAccessTokenError {
235    /// Creates the `GetDelegatedAccessTokenError::Unhandled` variant from any error type.
236                    pub fn unhandled(err: impl ::std::convert::Into<::std::boxed::Box<dyn ::std::error::Error + ::std::marker::Send + ::std::marker::Sync + 'static>>) -> Self {
237                        Self::Unhandled(crate::error::sealed_unhandled::Unhandled { source: err.into(), meta: ::std::default::Default::default() })
238                    }
239
240                    /// Creates the `GetDelegatedAccessTokenError::Unhandled` variant from an [`ErrorMetadata`](::aws_smithy_types::error::ErrorMetadata).
241                    pub fn generic(err: ::aws_smithy_types::error::ErrorMetadata) -> Self {
242                        Self::Unhandled(crate::error::sealed_unhandled::Unhandled { source: err.clone().into(), meta: err })
243                    }
244    ///
245    /// Returns error metadata, which includes the error code, message,
246    /// request ID, and potentially additional information.
247    ///
248    pub fn meta(&self) -> &::aws_smithy_types::error::ErrorMetadata {
249        match self {
250            Self::ExpiredTradeInTokenException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
251            Self::PackedPolicyTooLargeException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
252            Self::RegionDisabledException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
253            Self::Unhandled(e) => &e.meta,
254        }
255    }
256    /// Returns `true` if the error kind is `GetDelegatedAccessTokenError::ExpiredTradeInTokenException`.
257    pub fn is_expired_trade_in_token_exception(&self) -> bool {
258        matches!(self, Self::ExpiredTradeInTokenException(_))
259    }
260    /// Returns `true` if the error kind is `GetDelegatedAccessTokenError::PackedPolicyTooLargeException`.
261    pub fn is_packed_policy_too_large_exception(&self) -> bool {
262        matches!(self, Self::PackedPolicyTooLargeException(_))
263    }
264    /// Returns `true` if the error kind is `GetDelegatedAccessTokenError::RegionDisabledException`.
265    pub fn is_region_disabled_exception(&self) -> bool {
266        matches!(self, Self::RegionDisabledException(_))
267    }
268}
269impl ::std::error::Error for GetDelegatedAccessTokenError {
270    fn source(&self) -> ::std::option::Option<&(dyn ::std::error::Error + 'static)> {
271        match self {
272            Self::ExpiredTradeInTokenException(_inner) =>
273            ::std::option::Option::Some(_inner)
274            ,
275            Self::PackedPolicyTooLargeException(_inner) =>
276            ::std::option::Option::Some(_inner)
277            ,
278            Self::RegionDisabledException(_inner) =>
279            ::std::option::Option::Some(_inner)
280            ,
281            Self::Unhandled(_inner) => {
282                ::std::option::Option::Some(&*_inner.source)
283            }
284        }
285    }
286}
287impl ::std::fmt::Display for GetDelegatedAccessTokenError {
288    fn fmt(&self, f: &mut ::std::fmt::Formatter<'_>) -> ::std::fmt::Result {
289        match self {
290            Self::ExpiredTradeInTokenException(_inner) =>
291            _inner.fmt(f)
292            ,
293            Self::PackedPolicyTooLargeException(_inner) =>
294            _inner.fmt(f)
295            ,
296            Self::RegionDisabledException(_inner) =>
297            _inner.fmt(f)
298            ,
299            Self::Unhandled(_inner) => {
300                if let ::std::option::Option::Some(code) = ::aws_smithy_types::error::metadata::ProvideErrorMetadata::code(self) {
301                                                        write!(f, "unhandled error ({code})")
302                                                    } else {
303                                                        f.write_str("unhandled error")
304                                                    }
305            }
306        }
307    }
308}
309impl ::aws_smithy_types::retry::ProvideErrorKind for GetDelegatedAccessTokenError {
310    fn code(&self) -> ::std::option::Option<&str> {
311        ::aws_smithy_types::error::metadata::ProvideErrorMetadata::code(self)
312    }
313    fn retryable_error_kind(&self) -> ::std::option::Option<::aws_smithy_types::retry::ErrorKind> {
314        ::std::option::Option::None
315    }
316}
317impl ::aws_smithy_types::error::metadata::ProvideErrorMetadata for GetDelegatedAccessTokenError {
318    fn meta(&self) -> &::aws_smithy_types::error::ErrorMetadata {
319        match self {
320            Self::ExpiredTradeInTokenException(_inner) =>
321            ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner)
322            ,
323            Self::PackedPolicyTooLargeException(_inner) =>
324            ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner)
325            ,
326            Self::RegionDisabledException(_inner) =>
327            ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner)
328            ,
329            Self::Unhandled(_inner) => {
330                &_inner.meta
331            }
332        }
333    }
334}
335impl ::aws_smithy_runtime_api::client::result::CreateUnhandledError for GetDelegatedAccessTokenError {
336    fn create_unhandled_error(
337                        source: ::std::boxed::Box<dyn ::std::error::Error + ::std::marker::Send + ::std::marker::Sync + 'static>,
338                        meta: ::std::option::Option<::aws_smithy_types::error::ErrorMetadata>
339                    ) -> Self {
340        Self::Unhandled(crate::error::sealed_unhandled::Unhandled { source, meta: meta.unwrap_or_default() })
341    }
342}
343impl ::aws_types::request_id::RequestId for crate::operation::get_delegated_access_token::GetDelegatedAccessTokenError {
344                                fn request_id(&self) -> Option<&str> {
345                                    self.meta().request_id()
346                                }
347                            }
348
349pub use crate::operation::get_delegated_access_token::_get_delegated_access_token_input::GetDelegatedAccessTokenInput;
350
351pub use crate::operation::get_delegated_access_token::_get_delegated_access_token_output::GetDelegatedAccessTokenOutput;
352
353mod _get_delegated_access_token_input;
354
355mod _get_delegated_access_token_output;
356
357/// Builders
358pub mod builders;
359