import type { MetadataBearer as __MetadataBearer } from "@smithy/types"; import type { CreateXssMatchSetRequest, CreateXssMatchSetResponse } from "../models/models_0"; /** * @public */ export type { __MetadataBearer }; /** * @public * * The input for {@link CreateXssMatchSetCommand}. */ export interface CreateXssMatchSetCommandInput extends CreateXssMatchSetRequest { } /** * @public * * The output of {@link CreateXssMatchSetCommand}. */ export interface CreateXssMatchSetCommandOutput extends CreateXssMatchSetResponse, __MetadataBearer { } declare const CreateXssMatchSetCommand_base: { new (input: CreateXssMatchSetCommandInput): import("@smithy/core/client").CommandImpl; new (input: CreateXssMatchSetCommandInput): import("@smithy/core/client").CommandImpl; getEndpointParameterInstructions(): import("@smithy/types").EndpointParameterInstructions; }; /** * *

This is AWS WAF Classic documentation. For * more information, see AWS * WAF Classic in the developer guide.

*

* For the latest version of AWS * WAF, use the AWS WAFV2 API and see the AWS WAF Developer Guide. With the latest version, AWS WAF has a single set of endpoints for regional and global use.

*
*

Creates an XssMatchSet, which you use to allow, block, or count requests that contain cross-site scripting attacks * in the specified part of web requests. AWS WAF searches for character sequences that are likely to be malicious strings.

*

To create and configure an XssMatchSet, perform the following steps:

*
    *
  1. *

    Use GetChangeToken to get the change token that you provide in the ChangeToken parameter of a * CreateXssMatchSet request.

    *
  2. *
  3. *

    Submit a CreateXssMatchSet request.

    *
  4. *
  5. *

    Use GetChangeToken to get the change token that you provide in the ChangeToken parameter of an * UpdateXssMatchSet request.

    *
  6. *
  7. *

    Submit an UpdateXssMatchSet request to specify the parts of web requests in which you want to * allow, block, or count cross-site scripting attacks.

    *
  8. *
*

For more information about how to use the AWS WAF API to allow or block HTTP requests, see the * AWS WAF Developer Guide.

* @example * Use a bare-bones client and the command you need to make an API call. * ```javascript * import { WAFRegionalClient, CreateXssMatchSetCommand } from "@aws-sdk/client-waf-regional"; // ES Modules import * // const { WAFRegionalClient, CreateXssMatchSetCommand } = require("@aws-sdk/client-waf-regional"); // CommonJS import * // import type { WAFRegionalClientConfig } from "@aws-sdk/client-waf-regional"; * const config = {}; // type is WAFRegionalClientConfig * const client = new WAFRegionalClient(config); * const input = { // CreateXssMatchSetRequest * Name: "STRING_VALUE", // required * ChangeToken: "STRING_VALUE", // required * }; * const command = new CreateXssMatchSetCommand(input); * const response = await client.send(command); * // { // CreateXssMatchSetResponse * // XssMatchSet: { // XssMatchSet * // XssMatchSetId: "STRING_VALUE", // required * // Name: "STRING_VALUE", * // XssMatchTuples: [ // XssMatchTuples // required * // { // XssMatchTuple * // FieldToMatch: { // FieldToMatch * // Type: "URI" || "QUERY_STRING" || "HEADER" || "METHOD" || "BODY" || "SINGLE_QUERY_ARG" || "ALL_QUERY_ARGS", // required * // Data: "STRING_VALUE", * // }, * // TextTransformation: "NONE" || "COMPRESS_WHITE_SPACE" || "HTML_ENTITY_DECODE" || "LOWERCASE" || "CMD_LINE" || "URL_DECODE", // required * // }, * // ], * // }, * // ChangeToken: "STRING_VALUE", * // }; * * ``` * * @param CreateXssMatchSetCommandInput - {@link CreateXssMatchSetCommandInput} * @returns {@link CreateXssMatchSetCommandOutput} * @see {@link CreateXssMatchSetCommandInput} for command's `input` shape. * @see {@link CreateXssMatchSetCommandOutput} for command's `response` shape. * @see {@link WAFRegionalClientResolvedConfig | config} for WAFRegionalClient's `config` shape. * * @throws {@link WAFDisallowedNameException} (client fault) *

The name specified is invalid.

* * @throws {@link WAFInternalErrorException} (server fault) *

The operation failed because of a system problem, even though the request was valid. Retry your request.

* * @throws {@link WAFInvalidAccountException} (client fault) *

The operation failed because you tried to create, update, or delete an object by using an invalid account identifier.

* * @throws {@link WAFInvalidParameterException} (client fault) *

The operation failed because AWS WAF didn't recognize a parameter in the request. For example:

* * * @throws {@link WAFLimitsExceededException} (client fault) *

The operation exceeds a resource limit, for example, the maximum number of WebACL objects that you can create * for an AWS account. For more information, see * Limits in the AWS WAF Developer Guide.

* * @throws {@link WAFStaleDataException} (client fault) *

The operation failed because you tried to create, update, or delete an object by using a change token that has already been used.

* * @throws {@link WAFRegionalServiceException} *

Base exception class for all service exceptions from WAFRegional service.

* * * @example To create an XSS match set * ```javascript * // The following example creates an XSS match set named MySampleXssMatchSet. * const input = { * ChangeToken: "abcd12f2-46da-4fdb-b8d5-fbd4c466928f", * Name: "MySampleXssMatchSet" * }; * const command = new CreateXssMatchSetCommand(input); * const response = await client.send(command); * /* response is * { * ChangeToken: "abcd12f2-46da-4fdb-b8d5-fbd4c466928f", * XssMatchSet: { * Name: "MySampleXssMatchSet", * XssMatchSetId: "example1ds3t-46da-4fdb-b8d5-abc321j569j5", * XssMatchTuples: [ * { * FieldToMatch: { * Type: "QUERY_STRING" * }, * TextTransformation: "URL_DECODE" * } * ] * } * } * *\/ * ``` * * @public */ export declare class CreateXssMatchSetCommand extends CreateXssMatchSetCommand_base { /** @internal type navigation helper, not in runtime. */ protected static __types: { api: { input: CreateXssMatchSetRequest; output: CreateXssMatchSetResponse; }; sdk: { input: CreateXssMatchSetCommandInput; output: CreateXssMatchSetCommandOutput; }; }; }