Class CertificateAuthority
- All Implemented Interfaces:
Serializable,SdkPojo,ToCopyableBuilder<CertificateAuthority.Builder,CertificateAuthority>
An object representing a certificate authority (CA) for an Amazon EKS cluster.
- See Also:
-
Nested Class Summary
Nested Classes -
Method Summary
Modifier and TypeMethodDescriptionfinal InstantThe Unix epoch timestamp in seconds for when the certificate authority was last activated as the cluster's signer.The entity that most recently activated the certificate authority.final StringThe entity that most recently activated the certificate authority.static CertificateAuthority.Builderbuilder()final InstantThe Unix epoch timestamp in seconds for when the certificate authority was created.The entity that created the certificate authority.final StringThe entity that created the certificate authority.final Stringdata()The Base64-encoded public certificate of the certificate authority.The distribution status of the certificate authority, which tracks whether Amazon EKS has distributed its trust to the Amazon Web Services managed components in your cluster (the control plane, Amazon EKS Auto Mode instances, and Amazon Web Services Fargate nodes).final StringThe distribution status of the certificate authority, which tracks whether Amazon EKS has distributed its trust to the Amazon Web Services managed components in your cluster (the control plane, Amazon EKS Auto Mode instances, and Amazon Web Services Fargate nodes).final booleanfinal booleanequalsBySdkFields(Object obj) Indicates whether some other object is "equal to" this one by SDK fields.final <T> Optional<T> getValueForField(String fieldName, Class<T> clazz) final inthashCode()final Stringid()The unique identifier of the certificate authority.final BooleanIndicates whether CA rollback is still available for this certificate authority.The scheduled auto-activation events for the certificate authority, computed from its validity period.static Class<? extends CertificateAuthority.Builder> The signing status of the certificate authority.final StringThe signing status of the certificate authority.Take this object and create a builder that contains all of the current property values of this object.final StringtoString()Returns a string representation of this object.validity()The validity period of the certificate authority's certificate.Methods inherited from interface software.amazon.awssdk.utils.builder.ToCopyableBuilder
copy
-
Method Details
-
id
The unique identifier of the certificate authority.
- Returns:
- The unique identifier of the certificate authority.
-
createdAt
The Unix epoch timestamp in seconds for when the certificate authority was created.
- Returns:
- The Unix epoch timestamp in seconds for when the certificate authority was created.
-
createdBy
The entity that created the certificate authority. Certificate authorities that you create are
CUSTOMER; those that Amazon EKS provisions on your behalf, such as a cluster's initial certificate authority, areEKS.If the service returns an enum value that is not available in the current SDK version,
createdBywill returnCertificateAuthorityCreatedBy.UNKNOWN_TO_SDK_VERSION. The raw value returned by the service is available fromcreatedByAsString().- Returns:
- The entity that created the certificate authority. Certificate authorities that you create are
CUSTOMER; those that Amazon EKS provisions on your behalf, such as a cluster's initial certificate authority, areEKS. - See Also:
-
createdByAsString
The entity that created the certificate authority. Certificate authorities that you create are
CUSTOMER; those that Amazon EKS provisions on your behalf, such as a cluster's initial certificate authority, areEKS.If the service returns an enum value that is not available in the current SDK version,
createdBywill returnCertificateAuthorityCreatedBy.UNKNOWN_TO_SDK_VERSION. The raw value returned by the service is available fromcreatedByAsString().- Returns:
- The entity that created the certificate authority. Certificate authorities that you create are
CUSTOMER; those that Amazon EKS provisions on your behalf, such as a cluster's initial certificate authority, areEKS. - See Also:
-
activatedAt
The Unix epoch timestamp in seconds for when the certificate authority was last activated as the cluster's signer. This value is absent if the certificate authority has never been activated.
- Returns:
- The Unix epoch timestamp in seconds for when the certificate authority was last activated as the cluster's signer. This value is absent if the certificate authority has never been activated.
-
activatedBy
The entity that most recently activated the certificate authority. A value of
EKSindicates that Amazon EKS activated it automatically;CUSTOMERindicates that you activated it.If the service returns an enum value that is not available in the current SDK version,
activatedBywill returnCertificateAuthorityActivatedBy.UNKNOWN_TO_SDK_VERSION. The raw value returned by the service is available fromactivatedByAsString().- Returns:
- The entity that most recently activated the certificate authority. A value of
EKSindicates that Amazon EKS activated it automatically;CUSTOMERindicates that you activated it. - See Also:
-
activatedByAsString
The entity that most recently activated the certificate authority. A value of
EKSindicates that Amazon EKS activated it automatically;CUSTOMERindicates that you activated it.If the service returns an enum value that is not available in the current SDK version,
activatedBywill returnCertificateAuthorityActivatedBy.UNKNOWN_TO_SDK_VERSION. The raw value returned by the service is available fromactivatedByAsString().- Returns:
- The entity that most recently activated the certificate authority. A value of
EKSindicates that Amazon EKS activated it automatically;CUSTOMERindicates that you activated it. - See Also:
-
signingStatus
The signing status of the certificate authority.
IN_USEmeans the certificate authority is currently signing certificates for the cluster,ACTIVATINGmeans it's being promoted to the signer, andNOT_USEDmeans it's trusted by the cluster (for example, a successor CA during a rotation, or a retired outgoing CA) but isn't the signer.If the service returns an enum value that is not available in the current SDK version,
signingStatuswill returnCertificateAuthoritySigningStatus.UNKNOWN_TO_SDK_VERSION. The raw value returned by the service is available fromsigningStatusAsString().- Returns:
- The signing status of the certificate authority.
IN_USEmeans the certificate authority is currently signing certificates for the cluster,ACTIVATINGmeans it's being promoted to the signer, andNOT_USEDmeans it's trusted by the cluster (for example, a successor CA during a rotation, or a retired outgoing CA) but isn't the signer. - See Also:
-
signingStatusAsString
The signing status of the certificate authority.
IN_USEmeans the certificate authority is currently signing certificates for the cluster,ACTIVATINGmeans it's being promoted to the signer, andNOT_USEDmeans it's trusted by the cluster (for example, a successor CA during a rotation, or a retired outgoing CA) but isn't the signer.If the service returns an enum value that is not available in the current SDK version,
signingStatuswill returnCertificateAuthoritySigningStatus.UNKNOWN_TO_SDK_VERSION. The raw value returned by the service is available fromsigningStatusAsString().- Returns:
- The signing status of the certificate authority.
IN_USEmeans the certificate authority is currently signing certificates for the cluster,ACTIVATINGmeans it's being promoted to the signer, andNOT_USEDmeans it's trusted by the cluster (for example, a successor CA during a rotation, or a retired outgoing CA) but isn't the signer. - See Also:
-
distributionStatus
The distribution status of the certificate authority, which tracks whether Amazon EKS has distributed its trust to the Amazon Web Services managed components in your cluster (the control plane, Amazon EKS Auto Mode instances, and Amazon Web Services Fargate nodes). Valid values are
IN_PROGRESS,COMPLETE,FAILED, andDELETING. A successor CA can only be activated after its distribution status isCOMPLETE.If the service returns an enum value that is not available in the current SDK version,
distributionStatuswill returnCertificateAuthorityDistributionStatus.UNKNOWN_TO_SDK_VERSION. The raw value returned by the service is available fromdistributionStatusAsString().- Returns:
- The distribution status of the certificate authority, which tracks whether Amazon EKS has distributed its
trust to the Amazon Web Services managed components in your cluster (the control plane, Amazon EKS Auto
Mode instances, and Amazon Web Services Fargate nodes). Valid values are
IN_PROGRESS,COMPLETE,FAILED, andDELETING. A successor CA can only be activated after its distribution status isCOMPLETE. - See Also:
-
distributionStatusAsString
The distribution status of the certificate authority, which tracks whether Amazon EKS has distributed its trust to the Amazon Web Services managed components in your cluster (the control plane, Amazon EKS Auto Mode instances, and Amazon Web Services Fargate nodes). Valid values are
IN_PROGRESS,COMPLETE,FAILED, andDELETING. A successor CA can only be activated after its distribution status isCOMPLETE.If the service returns an enum value that is not available in the current SDK version,
distributionStatuswill returnCertificateAuthorityDistributionStatus.UNKNOWN_TO_SDK_VERSION. The raw value returned by the service is available fromdistributionStatusAsString().- Returns:
- The distribution status of the certificate authority, which tracks whether Amazon EKS has distributed its
trust to the Amazon Web Services managed components in your cluster (the control plane, Amazon EKS Auto
Mode instances, and Amazon Web Services Fargate nodes). Valid values are
IN_PROGRESS,COMPLETE,FAILED, andDELETING. A successor CA can only be activated after its distribution status isCOMPLETE. - See Also:
-
validity
The validity period of the certificate authority's certificate.
- Returns:
- The validity period of the certificate authority's certificate.
-
scheduledEvents
The scheduled auto-activation events for the certificate authority, computed from its validity period.
- Returns:
- The scheduled auto-activation events for the certificate authority, computed from its validity period.
-
rollbackAvailable
Indicates whether CA rollback is still available for this certificate authority. After you activate a successor CA, rollback lets you revert to the outgoing CA for a limited period while you finish updating any worker nodes or clients that were missed.
- Returns:
- Indicates whether CA rollback is still available for this certificate authority. After you activate a successor CA, rollback lets you revert to the outgoing CA for a limited period while you finish updating any worker nodes or clients that were missed.
-
data
The Base64-encoded public certificate of the certificate authority.
- Returns:
- The Base64-encoded public certificate of the certificate authority.
-
toBuilder
Description copied from interface:ToCopyableBuilderTake this object and create a builder that contains all of the current property values of this object.- Specified by:
toBuilderin interfaceToCopyableBuilder<CertificateAuthority.Builder,CertificateAuthority> - Returns:
- a builder for type T
-
builder
-
serializableBuilderClass
-
hashCode
-
equals
-
equalsBySdkFields
Description copied from interface:SdkPojoIndicates whether some other object is "equal to" this one by SDK fields. An SDK field is a modeled, non-inherited field in anSdkPojoclass, and is generated based on a service model.If an
SdkPojoclass does not have any inherited fields,equalsBySdkFieldsandequalsare essentially the same.- Specified by:
equalsBySdkFieldsin interfaceSdkPojo- Parameters:
obj- the object to be compared with- Returns:
- true if the other object equals to this object by sdk fields, false otherwise.
-
toString
-
getValueForField
-
sdkFields
-
sdkFieldNameToField
- Specified by:
sdkFieldNameToFieldin interfaceSdkPojo- Returns:
- The mapping between the field name and its corresponding field.
-