import * as pulumi from "@pulumi/pulumi"; import * as inputs from "../types/input"; import * as outputs from "../types/output"; /** * Manages an AWS Account Access Application. An Application binds Account Access to an IAM Identity Center instance and serves as the parent container for entitlements that grant principals access to roles in target accounts. * * > **Note:** Only one Application may exist per IAM Identity Center instance. Attempting to create a second Application for the same instance produces an error directing you to import the existing resource. * * > **Note:** Granting access to roles in target accounts is done with `aws.accountaccess.Entitlement`. Each target role must trust the Account Access service in its `assumeRolePolicy` — see that resource's documentation for the required trust policy. * * ## Example Usage * * ### Basic Usage * * ```typescript * import * as pulumi from "@pulumi/pulumi"; * import * as aws from "@pulumi/aws"; * * const example = aws.ssoadmin.getInstances({}); * const exampleApplication = new aws.accountaccess.Application("example", {identitySource: { * identityCenter: { * instanceArn: example.then(example => example.arns?.[0]), * }, * }}); * ``` * * ### With Tags * * ```typescript * import * as pulumi from "@pulumi/pulumi"; * import * as aws from "@pulumi/aws"; * * const example = new aws.accountaccess.Application("example", { * identitySource: { * identityCenter: { * instanceArn: exampleAwsSsoadminInstances.arns[0], * }, * }, * tags: { * Environment: "production", * ManagedBy: "terraform", * }, * }); * ``` * * ## Import * * ### Identity Schema * * #### Required * * * `arn` (String) ARN of the Account Access Application. * * Using `pulumi import`, import Account Access Applications using the Application ARN. For example: * * ```sh * $ pulumi import aws:accountaccess/application:Application example arn:aws:account-access:us-east-1:123456789012:application/aam-0123456789abcdef * ``` */ export declare class Application extends pulumi.CustomResource { /** * Get an existing Application resource's state with the given name, ID, and optional extra * properties used to qualify the lookup. * * @param name The _unique_ name of the resulting resource. * @param id The _unique_ provider ID of the resource to lookup. * @param state Any extra arguments used during the lookup. * @param opts Optional settings to control the behavior of the CustomResource. */ static get(name: string, id: pulumi.Input, state?: ApplicationState, opts?: pulumi.CustomResourceOptions): Application; /** * Returns true if the given object is an instance of Application. This is designed to work even * when multiple copies of the Pulumi SDK have been loaded into the same process. */ static isInstance(obj: any): obj is Application; /** * ARN of the Application. Used as the resource ID. */ readonly arn: pulumi.Output; /** * Identity source for the application. Forces replacement when changed. See `identitySource` Block below. * * The following arguments are optional: */ readonly identitySource: pulumi.Output; /** * Region where this resource will be [managed](https://docs.aws.amazon.com/general/latest/gr/rande.html#regional-endpoints). Defaults to the Region set in the provider configuration. */ readonly region: pulumi.Output; /** * Map of tags to assign to the Application. If configured with a provider `defaultTags` configuration block, tags with matching keys will overwrite those defined at the provider-level. */ readonly tags: pulumi.Output<{ [key: string]: string; } | undefined>; /** * Map of tags assigned to the Application, including those inherited from the provider `defaultTags` configuration block. */ readonly tagsAll: pulumi.Output<{ [key: string]: string; }>; /** * Internal tenant identifier returned by the service. */ readonly tenantId: pulumi.Output; readonly timeouts: pulumi.Output; /** * Create a Application resource with the given unique name, arguments, and options. * * @param name The _unique_ name of the resource. * @param args The arguments to use to populate this resource's properties. * @param opts A bag of options that control this resource's behavior. */ constructor(name: string, args: ApplicationArgs, opts?: pulumi.CustomResourceOptions); } /** * Input properties used for looking up and filtering Application resources. */ export interface ApplicationState { /** * ARN of the Application. Used as the resource ID. */ arn?: pulumi.Input; /** * Identity source for the application. Forces replacement when changed. See `identitySource` Block below. * * The following arguments are optional: */ identitySource?: pulumi.Input; /** * Region where this resource will be [managed](https://docs.aws.amazon.com/general/latest/gr/rande.html#regional-endpoints). Defaults to the Region set in the provider configuration. */ region?: pulumi.Input; /** * Map of tags to assign to the Application. If configured with a provider `defaultTags` configuration block, tags with matching keys will overwrite those defined at the provider-level. */ tags?: pulumi.Input<{ [key: string]: pulumi.Input; } | undefined>; /** * Map of tags assigned to the Application, including those inherited from the provider `defaultTags` configuration block. */ tagsAll?: pulumi.Input<{ [key: string]: pulumi.Input; } | undefined>; /** * Internal tenant identifier returned by the service. */ tenantId?: pulumi.Input; timeouts?: pulumi.Input; } /** * The set of arguments for constructing a Application resource. */ export interface ApplicationArgs { /** * Identity source for the application. Forces replacement when changed. See `identitySource` Block below. * * The following arguments are optional: */ identitySource: pulumi.Input; /** * Region where this resource will be [managed](https://docs.aws.amazon.com/general/latest/gr/rande.html#regional-endpoints). Defaults to the Region set in the provider configuration. */ region?: pulumi.Input; /** * Map of tags to assign to the Application. If configured with a provider `defaultTags` configuration block, tags with matching keys will overwrite those defined at the provider-level. */ tags?: pulumi.Input<{ [key: string]: pulumi.Input; } | undefined>; timeouts?: pulumi.Input; } //# sourceMappingURL=application.d.ts.map