SecurityPreference
- Implements: ISecurityPreference
This class encapsulates and extends the ROS resource type ALIYUN::RAM::SecurityPreference.
Initializers
import com.aliyun.ros.cdk.ram.SecurityPreference;
SecurityPreference.Builder.create(Construct scope, java.lang.String id, java.lang.Boolean enableResourcePropertyConstraint)
// .allowUserToChangePassword(java.lang.Boolean)
// .allowUserToChangePassword(IResolvable)
// .allowUserToManageAccessKeys(java.lang.Boolean)
// .allowUserToManageAccessKeys(IResolvable)
// .allowUserToManageMfaDevices(java.lang.Boolean)
// .allowUserToManageMfaDevices(IResolvable)
// .allowUserToManagePublicKeys(java.lang.Boolean)
// .allowUserToManagePublicKeys(IResolvable)
// .enableSaveMfaTicket(java.lang.Boolean)
// .enableSaveMfaTicket(IResolvable)
// .loginNetworkMasks(java.lang.String)
// .loginNetworkMasks(IResolvable)
// .loginSessionDuration(java.lang.Number)
// .loginSessionDuration(IResolvable)
.build();
| Name | Type | Description |
|---|---|---|
scope | com.aliyun.ros.cdk.core.Construct | No description. |
id | java.lang.String | No description. |
enableResourcePropertyConstraint | java.lang.Boolean | No description. |
allowUserToChangePassword | java.lang.Boolean OR com.aliyun.ros.cdk.core.IResolvable | Property allowUserToChangePassword: Specifies whether RAM users can change their passwords. |
allowUserToManageAccessKeys | java.lang.Boolean OR com.aliyun.ros.cdk.core.IResolvable | Property allowUserToManageAccessKeys: Specifies whether RAM users can manage their AccessKey pairs. |
allowUserToManageMfaDevices | java.lang.Boolean OR com.aliyun.ros.cdk.core.IResolvable | Property allowUserToManageMfaDevices: Specifies whether RAM users can manage their MFA devices. |
allowUserToManagePublicKeys | java.lang.Boolean OR com.aliyun.ros.cdk.core.IResolvable | Property allowUserToManagePublicKeys: Specifies whether RAM users can manage their public keys. |
enableSaveMfaTicket | java.lang.Boolean OR com.aliyun.ros.cdk.core.IResolvable | Property enableSaveMfaTicket: Specifies whether RAM users can save multi-factor authentication (MFA) security codes during logon. |
loginNetworkMasks | java.lang.String OR com.aliyun.ros.cdk.core.IResolvable | Property loginNetworkMasks: The subnet mask that specifies the IP addresses from which logon to the console is allowed. |
loginSessionDuration | java.lang.Number OR com.aliyun.ros.cdk.core.IResolvable | Property loginSessionDuration: The validity period of the logon session of the RAM user. |
scopeRequired
- Type: com.aliyun.ros.cdk.core.Construct
idRequired
- Type: java.lang.String
enableResourcePropertyConstraintOptional
- Type: java.lang.Boolean
allowUserToChangePasswordOptional
- Type: java.lang.Boolean OR com.aliyun.ros.cdk.core.IResolvable
Property allowUserToChangePassword: Specifies whether RAM users can change their passwords.
Valid values: true: RAM users can change their passwords. This is the default value. false: RAM users cannot change their passwords.
allowUserToManageAccessKeysOptional
- Type: java.lang.Boolean OR com.aliyun.ros.cdk.core.IResolvable
Property allowUserToManageAccessKeys: Specifies whether RAM users can manage their AccessKey pairs.
Valid values: true: RAM users can manage their AccessKey pairs. false: RAM users cannot manage their AccessKey pairs. This is the default value.
allowUserToManageMfaDevicesOptional
- Type: java.lang.Boolean OR com.aliyun.ros.cdk.core.IResolvable
Property allowUserToManageMfaDevices: Specifies whether RAM users can manage their MFA devices.
Valid values: true: RAM users can manage their MFA devices. This is the default value. false: RAM users cannot manage their MFA devices.
allowUserToManagePublicKeysOptional
- Type: java.lang.Boolean OR com.aliyun.ros.cdk.core.IResolvable
Property allowUserToManagePublicKeys: Specifies whether RAM users can manage their public keys.
Valid values: true: RAM users can manage their public keys. false: RAM users cannot manage their public keys. This is the default value. Note This parameter is valid only for the Japan site.
enableSaveMfaTicketOptional
- Type: java.lang.Boolean OR com.aliyun.ros.cdk.core.IResolvable
Property enableSaveMfaTicket: Specifies whether RAM users can save multi-factor authentication (MFA) security codes during logon.
The security codes are valid for 7 days. Valid values: true: RAM users can save MFA security codes during logon. false: RAM users cannot save MFA security codes during logon. This is the default value.
loginNetworkMasksOptional
- Type: java.lang.String OR com.aliyun.ros.cdk.core.IResolvable
Property loginNetworkMasks: The subnet mask that specifies the IP addresses from which logon to the console is allowed.
This parameter applies to password-based logon and single sign-on (SSO). However, this parameter does not apply to API calls that are authenticated based on AccessKey pairs. If a subnet mask is specified, RAM users can log on to the console only by using the IP addresses in the subnet. If you do not specify a subnet mask, RAM users can log on to the console by using all IP addresses. If you want to specify multiple subnet masks, separate the subnet masks with semicolons (;). Example: 192.168.0.0/16;10.0.0.0/8. A maximum of 25 subnet masks can be set. The total length of the subnet masks can be 1 to 512 characters.
loginSessionDurationOptional
- Type: java.lang.Number OR com.aliyun.ros.cdk.core.IResolvable
Property loginSessionDuration: The validity period of the logon session of the RAM user.
Valid values: 6 to 24. Default value: 6. Unit: hours.
Methods
| Name | Description |
|---|---|
toString | Returns a string representation of this construct. |
synthesize | Allows this construct to emit artifacts into the cloud assembly during synthesis. |
addCondition | No description. |
addCount | No description. |
addDependency | No description. |
addResourceDesc | No description. |
applyRemovalPolicy | No description. |
fetchCondition | No description. |
fetchDependency | No description. |
fetchResourceDesc | No description. |
getAtt | No description. |
setMetadata | No description. |
toString
public java.lang.String toString()
Returns a string representation of this construct.
synthesize
public void synthesize(ISynthesisSession session)
Allows this construct to emit artifacts into the cloud assembly during synthesis.
This method is usually implemented by framework-level constructs such as Stack and Asset as they participate in synthesizing the cloud assembly.
- Type: com.aliyun.ros.cdk.core.ISynthesisSession
The synthesis session.
addCondition
public void addCondition(RosCondition condition)
- Type: com.aliyun.ros.cdk.core.RosCondition
addCount
public void addCount(java.lang.Number OR IResolvable count)
- Type: java.lang.Number OR com.aliyun.ros.cdk.core.IResolvable
addDependency
public void addDependency(Resource resource)
- Type: com.aliyun.ros.cdk.core.Resource
addResourceDesc
public void addResourceDesc(java.lang.String desc)
- Type: java.lang.String
applyRemovalPolicy
public void applyRemovalPolicy(RemovalPolicy policy)
- Type: com.aliyun.ros.cdk.core.RemovalPolicy
fetchCondition
public RosCondition fetchCondition()
fetchDependency
public java.util.List<java.lang.String> fetchDependency()
fetchResourceDesc
public java.lang.String fetchResourceDesc()
getAtt
public IResolvable getAtt(java.lang.String name)
- Type: java.lang.String
setMetadata
public void setMetadata(java.lang.String key, java.lang.Object value)
- Type: java.lang.String
- Type: java.lang.Object
Static Functions
| Name | Description |
|---|---|
isConstruct | Return whether the given object is a Construct. |
isConstruct
import com.aliyun.ros.cdk.ram.SecurityPreference;
SecurityPreference.isConstruct(java.lang.Object x)
Return whether the given object is a Construct.
- Type: java.lang.Object
Properties
| Name | Type | Description |
|---|---|---|
node | com.aliyun.ros.cdk.core.ConstructNode | The construct tree node associated with this construct. |
env | com.aliyun.ros.cdk.core.IResourceEnvironment | The environment this resource belongs to. |
ref | java.lang.String | No description. |
stack | com.aliyun.ros.cdk.core.Stack | The stack in which this resource is defined. |
resource | com.aliyun.ros.cdk.core.RosResource | No description. |
attrAllowUserToChangePassword | java.lang.String OR com.aliyun.ros.cdk.core.IResolvable | Attribute AllowUserToChangePassword: Specifies whether RAM users can change their passwords. |
attrAllowUserToManageAccessKeys | java.lang.String OR com.aliyun.ros.cdk.core.IResolvable | Attribute AllowUserToManageAccessKeys: Specifies whether RAM users can manage their AccessKey pairs. |
attrAllowUserToManageMfaDevices | java.lang.String OR com.aliyun.ros.cdk.core.IResolvable | Attribute AllowUserToManageMFADevices: Specifies whether RAM users can manage their MFA devices. |
attrAllowUserToManagePublicKeys | java.lang.String OR com.aliyun.ros.cdk.core.IResolvable | Attribute AllowUserToManagePublicKeys: Specifies whether RAM users can manage their public keys. |
attrEnableSaveMfaTicket | java.lang.String OR com.aliyun.ros.cdk.core.IResolvable | Attribute EnableSaveMFATicket: Specifies whether RAM users can save multi-factor authentication (MFA) security codes during logon. |
attrLoginNetworkMasks | java.lang.String OR com.aliyun.ros.cdk.core.IResolvable | Attribute LoginNetworkMasks: The subnet mask that specifies the IP addresses from which logon to the console is allowed. |
attrLoginSessionDuration | java.lang.String OR com.aliyun.ros.cdk.core.IResolvable | Attribute LoginSessionDuration: The validity period of the logon session of the RAM user. |
props | SecurityPreferenceProps | No description. |
nodeRequired
public ConstructNode getNode();
- Type: com.aliyun.ros.cdk.core.ConstructNode
The construct tree node associated with this construct.
envRequired
public IResourceEnvironment getEnv();
- Type: com.aliyun.ros.cdk.core.IResourceEnvironment
The environment this resource belongs to.
For resources that are created and managed by the CDK (generally, those created by creating new class instances like Role, Bucket, etc.), this is always the same as the environment of the stack they belong to; however, for imported resources (those obtained from static methods like fromRoleArn, fromBucketName, etc.), that might be different than the stack they were imported into.
refRequired
public java.lang.String getRef();
- Type: java.lang.String
stackRequired
public Stack getStack();
- Type: com.aliyun.ros.cdk.core.Stack
The stack in which this resource is defined.
resourceOptional
public RosResource getResource();
- Type: com.aliyun.ros.cdk.core.RosResource
attrAllowUserToChangePasswordRequired
public java.lang.Object getAttrAllowUserToChangePassword();
- Type: java.lang.String OR com.aliyun.ros.cdk.core.IResolvable
Attribute AllowUserToChangePassword: Specifies whether RAM users can change their passwords.
attrAllowUserToManageAccessKeysRequired
public java.lang.Object getAttrAllowUserToManageAccessKeys();
- Type: java.lang.String OR com.aliyun.ros.cdk.core.IResolvable
Attribute AllowUserToManageAccessKeys: Specifies whether RAM users can manage their AccessKey pairs.
attrAllowUserToManageMfaDevicesRequired
public java.lang.Object getAttrAllowUserToManageMfaDevices();
- Type: java.lang.String OR com.aliyun.ros.cdk.core.IResolvable
Attribute AllowUserToManageMFADevices: Specifies whether RAM users can manage their MFA devices.
attrAllowUserToManagePublicKeysRequired
public java.lang.Object getAttrAllowUserToManagePublicKeys();
- Type: java.lang.String OR com.aliyun.ros.cdk.core.IResolvable
Attribute AllowUserToManagePublicKeys: Specifies whether RAM users can manage their public keys.
attrEnableSaveMfaTicketRequired
public java.lang.Object getAttrEnableSaveMfaTicket();
- Type: java.lang.String OR com.aliyun.ros.cdk.core.IResolvable
Attribute EnableSaveMFATicket: Specifies whether RAM users can save multi-factor authentication (MFA) security codes during logon.
attrLoginNetworkMasksRequired
public java.lang.Object getAttrLoginNetworkMasks();
- Type: java.lang.String OR com.aliyun.ros.cdk.core.IResolvable
Attribute LoginNetworkMasks: The subnet mask that specifies the IP addresses from which logon to the console is allowed.
attrLoginSessionDurationRequired
public java.lang.Object getAttrLoginSessionDuration();
- Type: java.lang.String OR com.aliyun.ros.cdk.core.IResolvable
Attribute LoginSessionDuration: The validity period of the logon session of the RAM user.
propsRequired
public SecurityPreferenceProps getProps();
- Type: SecurityPreferenceProps