import type { MetadataBearer as __MetadataBearer } from "@smithy/types"; import type { GetPublicKeyCertificateInput, GetPublicKeyCertificateOutput } from "../models/models_0"; /** * @public */ export type { __MetadataBearer }; /** * @public * * The input for {@link GetPublicKeyCertificateCommand}. */ export interface GetPublicKeyCertificateCommandInput extends GetPublicKeyCertificateInput { } /** * @public * * The output of {@link GetPublicKeyCertificateCommand}. */ export interface GetPublicKeyCertificateCommandOutput extends GetPublicKeyCertificateOutput, __MetadataBearer { } declare const GetPublicKeyCertificateCommand_base: { new (input: GetPublicKeyCertificateCommandInput): import("@smithy/core/client").CommandImpl; new (input: GetPublicKeyCertificateCommandInput): import("@smithy/core/client").CommandImpl; getEndpointParameterInstructions(): import("@smithy/types").EndpointParameterInstructions; }; /** *

Gets the public key certificate of the asymmetric key pair that exists within Amazon Web Services Payment Cryptography.

Unlike the private key of an asymmetric key, which never leaves Amazon Web Services Payment Cryptography unencrypted, callers with GetPublicKeyCertificate permission can download the public key certificate of the asymmetric key. You can share the public key certificate to allow others to encrypt messages and verify signatures outside of Amazon Web Services Payment Cryptography

Cross-account use: This operation supports cross-account use when the key has a resource-based policy that grants access. For more information, see Resource-based policies.

* @example * Use a bare-bones client and the command you need to make an API call. * ```javascript * import { PaymentCryptographyClient, GetPublicKeyCertificateCommand } from "@aws-sdk/client-payment-cryptography"; // ES Modules import * // const { PaymentCryptographyClient, GetPublicKeyCertificateCommand } = require("@aws-sdk/client-payment-cryptography"); // CommonJS import * // import type { PaymentCryptographyClientConfig } from "@aws-sdk/client-payment-cryptography"; * const config = {}; // type is PaymentCryptographyClientConfig * const client = new PaymentCryptographyClient(config); * const input = { // GetPublicKeyCertificateInput * KeyIdentifier: "STRING_VALUE", // required * }; * const command = new GetPublicKeyCertificateCommand(input); * const response = await client.send(command); * // { // GetPublicKeyCertificateOutput * // KeyCertificate: "STRING_VALUE", // required * // KeyCertificateChain: "STRING_VALUE", // required * // }; * * ``` * * @param GetPublicKeyCertificateCommandInput - {@link GetPublicKeyCertificateCommandInput} * @returns {@link GetPublicKeyCertificateCommandOutput} * @see {@link GetPublicKeyCertificateCommandInput} for command's `input` shape. * @see {@link GetPublicKeyCertificateCommandOutput} for command's `response` shape. * @see {@link PaymentCryptographyClientResolvedConfig | config} for PaymentCryptographyClient's `config` shape. * * @throws {@link AccessDeniedException} (client fault) *

You do not have sufficient access to perform this action.

This exception is thrown when the caller lacks the necessary IAM permissions to perform the requested operation. Verify that your IAM policy includes the required permissions for the specific Amazon Web Services Payment Cryptography action you're attempting.

* * @throws {@link InternalServerException} (server fault) *

The request processing has failed because of an unknown error, exception, or failure.

This indicates a server-side error within the Amazon Web Services Payment Cryptography service. If this error persists, contact support for assistance.

* * @throws {@link ResourceNotFoundException} (client fault) *

The request was denied due to resource not found.

The specified key, alias, or other resource does not exist in your account or region. Verify that the resource identifier is correct and that the resource exists in the expected region.

* * @throws {@link ServiceUnavailableException} (server fault) *

The service cannot complete the request.

The Amazon Web Services Payment Cryptography service is temporarily unavailable. This is typically a temporary condition - retry your request after a brief delay.

* * @throws {@link ThrottlingException} (client fault) *

The request was denied due to request throttling.

You have exceeded the rate limits for Amazon Web Services Payment Cryptography API calls. Implement exponential backoff and retry logic in your application to handle throttling gracefully.

* * @throws {@link ValidationException} (client fault) *

The request was denied due to an invalid request error.

One or more parameters in your request are invalid. Check the parameter values, formats, and constraints specified in the API documentation.

* * @throws {@link PaymentCryptographyServiceException} *

Base exception class for all service exceptions from PaymentCryptography service.

* * * @public */ export declare class GetPublicKeyCertificateCommand extends GetPublicKeyCertificateCommand_base { /** @internal type navigation helper, not in runtime. */ protected static __types: { api: { input: GetPublicKeyCertificateInput; output: GetPublicKeyCertificateOutput; }; sdk: { input: GetPublicKeyCertificateCommandInput; output: GetPublicKeyCertificateCommandOutput; }; }; }