import * as pulumi from "@pulumi/pulumi"; /** * Resource for creating an Azure key vault in Harness. * * ## Example Usage * * ### Manual Credentials * * ```typescript * import * as pulumi from "@pulumi/pulumi"; * import * as harness from "@pulumi/harness"; * * const manual = new harness.platform.AzureKeyVaultConnector("manual", { * identifier: "identifier", * name: "name", * description: "example", * tags: ["foo:bar"], * clientId: "client_id", * secretKey: "account.secret_key", * tenantId: "tenant_id", * vaultName: "vault_name", * subscription: "subscription", * isDefault: false, * azureEnvironmentType: "AZURE", * }); * ``` * * ### System-Assigned Managed Identity * * ```typescript * import * as pulumi from "@pulumi/pulumi"; * import * as harness from "@pulumi/harness"; * * const systemMsi = new harness.platform.AzureKeyVaultConnector("system_msi", { * identifier: "system_msi_example", * name: "system_msi_example", * description: "Azure Key Vault using system-assigned managed identity", * tags: ["foo:bar"], * vaultName: "vault_name", * subscription: "subscription", * isDefault: false, * useManagedIdentity: true, * azureManagedIdentityType: "SystemAssignedManagedIdentity", * delegateSelectors: ["harness-delegate"], * azureEnvironmentType: "AZURE", * }); * ``` * * ### User-Assigned Managed Identity * * ```typescript * import * as pulumi from "@pulumi/pulumi"; * import * as harness from "@pulumi/harness"; * * const userMsi = new harness.platform.AzureKeyVaultConnector("user_msi", { * identifier: "user_msi_example", * name: "user_msi_example", * description: "Azure Key Vault using user-assigned managed identity", * tags: ["foo:bar"], * vaultName: "vault_name", * subscription: "subscription", * isDefault: false, * useManagedIdentity: true, * azureManagedIdentityType: "UserAssignedManagedIdentity", * managedClientId: "client_id_of_managed_identity", * delegateSelectors: ["harness-delegate"], * azureEnvironmentType: "AZURE", * }); * ``` * * ## Import * * The `pulumi import` command can be used, for example: * * Import account level azure key vault connector * * ```sh * $ pulumi import harness:platform/azureKeyVaultConnector:AzureKeyVaultConnector example * ``` * * Import org level azure key vault connector * * ```sh * $ pulumi import harness:platform/azureKeyVaultConnector:AzureKeyVaultConnector example / * ``` * * Import project level azure key vault connector * * ```sh * $ pulumi import harness:platform/azureKeyVaultConnector:AzureKeyVaultConnector example // * ``` */ export declare class AzureKeyVaultConnector extends pulumi.CustomResource { /** * Get an existing AzureKeyVaultConnector resource's state with the given name, ID, and optional extra * properties used to qualify the lookup. * * @param name The _unique_ name of the resulting resource. * @param id The _unique_ provider ID of the resource to lookup. * @param state Any extra arguments used during the lookup. * @param opts Optional settings to control the behavior of the CustomResource. */ static get(name: string, id: pulumi.Input, state?: AzureKeyVaultConnectorState, opts?: pulumi.CustomResourceOptions): AzureKeyVaultConnector; /** * Returns true if the given object is an instance of AzureKeyVaultConnector. This is designed to work even * when multiple copies of the Pulumi SDK have been loaded into the same process. */ static isInstance(obj: any): obj is AzureKeyVaultConnector; /** * Azure environment type. Possible values: AZURE or AZURE*US*GOVERNMENT. Default value: AZURE */ readonly azureEnvironmentType: pulumi.Output; /** * Azure Managed Identity type. Possible values: SystemAssignedManagedIdentity or UserAssignedManagedIdentity. Required when use*managed*identity is true. */ readonly azureManagedIdentityType: pulumi.Output; /** * Application ID of the Azure App. Required when use*managed*identity is false. */ readonly clientId: pulumi.Output; /** * Tags to filter delegates for connection. */ readonly delegateSelectors: pulumi.Output; /** * Description of the resource. */ readonly description: pulumi.Output; /** * Boolean value to indicate if purge is enabled. */ readonly enablePurge: pulumi.Output; /** * Unique identifier of the resource. */ readonly identifier: pulumi.Output; /** * Specifies whether or not is the default value. */ readonly isDefault: pulumi.Output; /** * Client Id of the ManagedIdentity resource. Required when azure*managed*identity_type is UserAssignedManagedIdentity. */ readonly managedClientId: pulumi.Output; /** * Name of the resource. */ readonly name: pulumi.Output; /** * Unique identifier of the organization. */ readonly orgId: pulumi.Output; /** * Unique identifier of the project. */ readonly projectId: pulumi.Output; /** * The Harness text secret with the Azure authentication key as its value. Required when use*managed*identity is false. */ readonly secretKey: pulumi.Output; /** * Azure subscription ID. */ readonly subscription: pulumi.Output; /** * Tags to associate with the resource. */ readonly tags: pulumi.Output; /** * The Azure Active Directory (Azure AD) directory ID where you created your application. Required when use*managed*identity is false. */ readonly tenantId: pulumi.Output; /** * Boolean value to indicate if managed identity is used to authenticate to Azure Key Vault. */ readonly useManagedIdentity: pulumi.Output; /** * Name of the vault. */ readonly vaultName: pulumi.Output; /** * Create a AzureKeyVaultConnector resource with the given unique name, arguments, and options. * * @param name The _unique_ name of the resource. * @param args The arguments to use to populate this resource's properties. * @param opts A bag of options that control this resource's behavior. */ constructor(name: string, args: AzureKeyVaultConnectorArgs, opts?: pulumi.CustomResourceOptions); } /** * Input properties used for looking up and filtering AzureKeyVaultConnector resources. */ export interface AzureKeyVaultConnectorState { /** * Azure environment type. Possible values: AZURE or AZURE*US*GOVERNMENT. Default value: AZURE */ azureEnvironmentType?: pulumi.Input; /** * Azure Managed Identity type. Possible values: SystemAssignedManagedIdentity or UserAssignedManagedIdentity. Required when use*managed*identity is true. */ azureManagedIdentityType?: pulumi.Input; /** * Application ID of the Azure App. Required when use*managed*identity is false. */ clientId?: pulumi.Input; /** * Tags to filter delegates for connection. */ delegateSelectors?: pulumi.Input[] | undefined>; /** * Description of the resource. */ description?: pulumi.Input; /** * Boolean value to indicate if purge is enabled. */ enablePurge?: pulumi.Input; /** * Unique identifier of the resource. */ identifier?: pulumi.Input; /** * Specifies whether or not is the default value. */ isDefault?: pulumi.Input; /** * Client Id of the ManagedIdentity resource. Required when azure*managed*identity_type is UserAssignedManagedIdentity. */ managedClientId?: pulumi.Input; /** * Name of the resource. */ name?: pulumi.Input; /** * Unique identifier of the organization. */ orgId?: pulumi.Input; /** * Unique identifier of the project. */ projectId?: pulumi.Input; /** * The Harness text secret with the Azure authentication key as its value. Required when use*managed*identity is false. */ secretKey?: pulumi.Input; /** * Azure subscription ID. */ subscription?: pulumi.Input; /** * Tags to associate with the resource. */ tags?: pulumi.Input[] | undefined>; /** * The Azure Active Directory (Azure AD) directory ID where you created your application. Required when use*managed*identity is false. */ tenantId?: pulumi.Input; /** * Boolean value to indicate if managed identity is used to authenticate to Azure Key Vault. */ useManagedIdentity?: pulumi.Input; /** * Name of the vault. */ vaultName?: pulumi.Input; } /** * The set of arguments for constructing a AzureKeyVaultConnector resource. */ export interface AzureKeyVaultConnectorArgs { /** * Azure environment type. Possible values: AZURE or AZURE*US*GOVERNMENT. Default value: AZURE */ azureEnvironmentType?: pulumi.Input; /** * Azure Managed Identity type. Possible values: SystemAssignedManagedIdentity or UserAssignedManagedIdentity. Required when use*managed*identity is true. */ azureManagedIdentityType?: pulumi.Input; /** * Application ID of the Azure App. Required when use*managed*identity is false. */ clientId?: pulumi.Input; /** * Tags to filter delegates for connection. */ delegateSelectors?: pulumi.Input[] | undefined>; /** * Description of the resource. */ description?: pulumi.Input; /** * Boolean value to indicate if purge is enabled. */ enablePurge?: pulumi.Input; /** * Unique identifier of the resource. */ identifier: pulumi.Input; /** * Specifies whether or not is the default value. */ isDefault?: pulumi.Input; /** * Client Id of the ManagedIdentity resource. Required when azure*managed*identity_type is UserAssignedManagedIdentity. */ managedClientId?: pulumi.Input; /** * Name of the resource. */ name?: pulumi.Input; /** * Unique identifier of the organization. */ orgId?: pulumi.Input; /** * Unique identifier of the project. */ projectId?: pulumi.Input; /** * The Harness text secret with the Azure authentication key as its value. Required when use*managed*identity is false. */ secretKey?: pulumi.Input; /** * Azure subscription ID. */ subscription: pulumi.Input; /** * Tags to associate with the resource. */ tags?: pulumi.Input[] | undefined>; /** * The Azure Active Directory (Azure AD) directory ID where you created your application. Required when use*managed*identity is false. */ tenantId?: pulumi.Input; /** * Boolean value to indicate if managed identity is used to authenticate to Azure Key Vault. */ useManagedIdentity?: pulumi.Input; /** * Name of the vault. */ vaultName: pulumi.Input; } //# sourceMappingURL=azureKeyVaultConnector.d.ts.map