import * as pulumi from "@pulumi/pulumi"; /** * Manages an AWS Bedrock Agent Core Resource Policy. Resource-based policies in Amazon Bedrock Agent Core allow you to control which principals (AWS accounts, IAM users, or IAM roles) can invoke and manage your Amazon Bedrock Agent Core Runtime and Gateway resources. * * ## Example Usage * * ### Basic Usage * * ```typescript * import * as pulumi from "@pulumi/pulumi"; * import * as aws from "@pulumi/aws"; * * const exampleAgentcoreAgentRuntime = new aws.bedrock.AgentcoreAgentRuntime("example", {}); * const example = aws.iam.getPolicyDocumentOutput({ * statements: [{ * conditions: [{ * test: "StringEquals", * variable: "aws:SourceVpc", * values: ["vpc-1a2b3c4d"], * }], * principals: [{ * type: "*", * identifiers: ["*"], * }], * sid: "AllowOAuthFromVPC", * effect: "Allow", * actions: ["bedrock-agentcore:InvokeAgentRuntime"], * resources: [exampleAgentcoreAgentRuntime.agentRuntimeArn], * }], * }); * const exampleAgentcoreResourcePolicy = new aws.bedrock.AgentcoreResourcePolicy("example", { * policy: example.json, * resourceArn: exampleAgentcoreAgentRuntime.agentRuntimeArn, * }); * ``` * * ## Import * * ### Identity Schema * * #### Required * * * `resourceArn` - ARN of the resource to which the Resource Policy is attached. * * Using `pulumi import`, import Bedrock Agent Core Resource Policy using the `resourceArn`. For example: * * ```sh * $ pulumi import aws:bedrock/agentcoreResourcePolicy:AgentcoreResourcePolicy example arn:aws:bedrock-agentcore:us-west-2:012345678901:runtime/abcd1234 * ``` */ export declare class AgentcoreResourcePolicy extends pulumi.CustomResource { /** * Get an existing AgentcoreResourcePolicy resource's state with the given name, ID, and optional extra * properties used to qualify the lookup. * * @param name The _unique_ name of the resulting resource. * @param id The _unique_ provider ID of the resource to lookup. * @param state Any extra arguments used during the lookup. * @param opts Optional settings to control the behavior of the CustomResource. */ static get(name: string, id: pulumi.Input, state?: AgentcoreResourcePolicyState, opts?: pulumi.CustomResourceOptions): AgentcoreResourcePolicy; /** * Returns true if the given object is an instance of AgentcoreResourcePolicy. This is designed to work even * when multiple copies of the Pulumi SDK have been loaded into the same process. */ static isInstance(obj: any): obj is AgentcoreResourcePolicy; /** * Resource policy definition */ readonly policy: pulumi.Output; /** * Region where this resource will be [managed](https://docs.aws.amazon.com/general/latest/gr/rande.html#regional-endpoints). Defaults to the Region set in the provider configuration. */ readonly region: pulumi.Output; /** * ARN of the resource for which to create or update the resource policy. * * The following arguments are optional: */ readonly resourceArn: pulumi.Output; /** * Create a AgentcoreResourcePolicy resource with the given unique name, arguments, and options. * * @param name The _unique_ name of the resource. * @param args The arguments to use to populate this resource's properties. * @param opts A bag of options that control this resource's behavior. */ constructor(name: string, args: AgentcoreResourcePolicyArgs, opts?: pulumi.CustomResourceOptions); } /** * Input properties used for looking up and filtering AgentcoreResourcePolicy resources. */ export interface AgentcoreResourcePolicyState { /** * Resource policy definition */ policy?: pulumi.Input; /** * Region where this resource will be [managed](https://docs.aws.amazon.com/general/latest/gr/rande.html#regional-endpoints). Defaults to the Region set in the provider configuration. */ region?: pulumi.Input; /** * ARN of the resource for which to create or update the resource policy. * * The following arguments are optional: */ resourceArn?: pulumi.Input; } /** * The set of arguments for constructing a AgentcoreResourcePolicy resource. */ export interface AgentcoreResourcePolicyArgs { /** * Resource policy definition */ policy: pulumi.Input; /** * Region where this resource will be [managed](https://docs.aws.amazon.com/general/latest/gr/rande.html#regional-endpoints). Defaults to the Region set in the provider configuration. */ region?: pulumi.Input; /** * ARN of the resource for which to create or update the resource policy. * * The following arguments are optional: */ resourceArn: pulumi.Input; } //# sourceMappingURL=agentcoreResourcePolicy.d.ts.map