-
Notifications
You must be signed in to change notification settings - Fork 597
/
api_op_RevokeSecurityGroupEgress.go
166 lines (145 loc) · 5.62 KB
/
api_op_RevokeSecurityGroupEgress.go
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
// Code generated by smithy-go-codegen DO NOT EDIT.
package ec2
import (
"context"
awsmiddleware "github.com/aws/aws-sdk-go-v2/aws/middleware"
"github.com/aws/aws-sdk-go-v2/aws/signer/v4"
"github.com/aws/aws-sdk-go-v2/service/ec2/types"
"github.com/aws/smithy-go/middleware"
smithyhttp "github.com/aws/smithy-go/transport/http"
)
// [VPC only] Removes the specified egress rules from a security group for EC2-VPC.
// This action does not apply to security groups for use in EC2-Classic. To remove
// a rule, the values that you specify (for example, ports) must match the existing
// rule's values exactly. [Default VPC] If the values you specify do not match the
// existing rule's values, no error is returned, and the output describes the
// security group rules that were not revoked. AWS recommends that you use
// DescribeSecurityGroups to verify that the rule has been removed. Each rule
// consists of the protocol and the IPv4 or IPv6 CIDR range or source security
// group. For the TCP and UDP protocols, you must also specify the destination port
// or range of ports. For the ICMP protocol, you must also specify the ICMP type
// and code. If the security group rule has a description, you do not have to
// specify the description to revoke the rule. Rule changes are propagated to
// instances within the security group as quickly as possible. However, a small
// delay might occur.
func (c *Client) RevokeSecurityGroupEgress(ctx context.Context, params *RevokeSecurityGroupEgressInput, optFns ...func(*Options)) (*RevokeSecurityGroupEgressOutput, error) {
if params == nil {
params = &RevokeSecurityGroupEgressInput{}
}
result, metadata, err := c.invokeOperation(ctx, "RevokeSecurityGroupEgress", params, optFns, addOperationRevokeSecurityGroupEgressMiddlewares)
if err != nil {
return nil, err
}
out := result.(*RevokeSecurityGroupEgressOutput)
out.ResultMetadata = metadata
return out, nil
}
type RevokeSecurityGroupEgressInput struct {
// The ID of the security group.
//
// This member is required.
GroupId *string
// Not supported. Use a set of IP permissions to specify the CIDR.
CidrIp *string
// Checks whether you have the required permissions for the action, without
// actually making the request, and provides an error response. If you have the
// required permissions, the error response is DryRunOperation. Otherwise, it is
// UnauthorizedOperation.
DryRun *bool
// Not supported. Use a set of IP permissions to specify the port.
FromPort *int32
// The sets of IP permissions. You can't specify a destination security group and a
// CIDR IP address range in the same set of permissions.
IpPermissions []types.IpPermission
// Not supported. Use a set of IP permissions to specify the protocol name or
// number.
IpProtocol *string
// Not supported. Use a set of IP permissions to specify a destination security
// group.
SourceSecurityGroupName *string
// Not supported. Use a set of IP permissions to specify a destination security
// group.
SourceSecurityGroupOwnerId *string
// Not supported. Use a set of IP permissions to specify the port.
ToPort *int32
}
type RevokeSecurityGroupEgressOutput struct {
// Returns true if the request succeeds; otherwise, returns an error.
Return *bool
// The outbound rules that were unknown to the service. In some cases,
// unknownIpPermissionSet might be in a different format from the request
// parameter.
UnknownIpPermissions []types.IpPermission
// Metadata pertaining to the operation's result.
ResultMetadata middleware.Metadata
}
func addOperationRevokeSecurityGroupEgressMiddlewares(stack *middleware.Stack, options Options) (err error) {
err = stack.Serialize.Add(&awsEc2query_serializeOpRevokeSecurityGroupEgress{}, middleware.After)
if err != nil {
return err
}
err = stack.Deserialize.Add(&awsEc2query_deserializeOpRevokeSecurityGroupEgress{}, middleware.After)
if err != nil {
return err
}
if err = addSetLoggerMiddleware(stack, options); err != nil {
return err
}
if err = awsmiddleware.AddClientRequestIDMiddleware(stack); err != nil {
return err
}
if err = smithyhttp.AddComputeContentLengthMiddleware(stack); err != nil {
return err
}
if err = addResolveEndpointMiddleware(stack, options); err != nil {
return err
}
if err = v4.AddComputePayloadSHA256Middleware(stack); err != nil {
return err
}
if err = addRetryMiddlewares(stack, options); err != nil {
return err
}
if err = addHTTPSignerV4Middleware(stack, options); err != nil {
return err
}
if err = awsmiddleware.AddRawResponseToMetadata(stack); err != nil {
return err
}
if err = awsmiddleware.AddRecordResponseTiming(stack); err != nil {
return err
}
if err = addClientUserAgent(stack); err != nil {
return err
}
if err = smithyhttp.AddErrorCloseResponseBodyMiddleware(stack); err != nil {
return err
}
if err = smithyhttp.AddCloseResponseBodyMiddleware(stack); err != nil {
return err
}
if err = addOpRevokeSecurityGroupEgressValidationMiddleware(stack); err != nil {
return err
}
if err = stack.Initialize.Add(newServiceMetadataMiddleware_opRevokeSecurityGroupEgress(options.Region), middleware.Before); err != nil {
return err
}
if err = addRequestIDRetrieverMiddleware(stack); err != nil {
return err
}
if err = addResponseErrorMiddleware(stack); err != nil {
return err
}
if err = addRequestResponseLogging(stack, options); err != nil {
return err
}
return nil
}
func newServiceMetadataMiddleware_opRevokeSecurityGroupEgress(region string) *awsmiddleware.RegisterServiceMetadata {
return &awsmiddleware.RegisterServiceMetadata{
Region: region,
ServiceID: ServiceID,
SigningName: "ec2",
OperationName: "RevokeSecurityGroupEgress",
}
}