Files
golib/aws/user/access.go
Nicolas JUHEL 984ba51587 Rework Error interface
Package Errors:
- add function to check & cast error interface into golib Error interface
- update CodeError type to simplify management & error creation
- add function to simplify call of Error function from a generic error interface
- remove some useless function from Error interface

All Other Packages:
- apply change of package Errors into all other packages
2023-08-28 11:22:08 +02:00

122 lines
3.4 KiB
Go

/*
* MIT License
*
* Copyright (c) 2020 Nicolas JUHEL
*
* Permission is hereby granted, free of charge, to any person obtaining a copy
* of this software and associated documentation files (the "Software"), to deal
* in the Software without restriction, including without limitation the rights
* to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
* copies of the Software, and to permit persons to whom the Software is
* furnished to do so, subject to the following conditions:
*
* The above copyright notice and this permission notice shall be included in all
* copies or substantial portions of the Software.
*
* THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
* IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
* FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE
* AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
* LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
* OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
* SOFTWARE.
*
*/
package user
import (
sdkaws "github.com/aws/aws-sdk-go-v2/aws"
sdkiam "github.com/aws/aws-sdk-go-v2/service/iam"
sdktps "github.com/aws/aws-sdk-go-v2/service/iam/types"
awshlp "github.com/nabbar/golib/aws/helper"
)
func (cli *client) AccessListAll(username string) ([]sdktps.AccessKeyMetadata, error) {
var req = &sdkiam.ListAccessKeysInput{}
if username != "" {
req = &sdkiam.ListAccessKeysInput{
UserName: sdkaws.String(username),
}
}
out, err := cli.iam.ListAccessKeys(cli.GetContext(), req)
if err != nil {
return nil, cli.GetError(err)
} else if out.AccessKeyMetadata == nil {
return nil, awshlp.ErrorResponse.Error(nil)
} else {
return out.AccessKeyMetadata, nil
}
}
func (cli *client) AccessList(username string) (map[string]bool, error) {
var req = &sdkiam.ListAccessKeysInput{}
if username != "" {
req = &sdkiam.ListAccessKeysInput{
UserName: sdkaws.String(username),
}
}
out, err := cli.iam.ListAccessKeys(cli.GetContext(), req)
if err != nil {
return nil, cli.GetError(err)
} else if out.AccessKeyMetadata == nil {
return nil, awshlp.ErrorResponse.Error(nil)
} else {
var res = make(map[string]bool)
for _, a := range out.AccessKeyMetadata {
switch a.Status {
case sdktps.StatusTypeActive:
res[*a.AccessKeyId] = true
case sdktps.StatusTypeInactive:
res[*a.AccessKeyId] = false
}
}
return res, nil
}
}
func (cli *client) AccessCreate(username string) (string, string, error) {
var req = &sdkiam.CreateAccessKeyInput{}
if username != "" {
req = &sdkiam.CreateAccessKeyInput{
UserName: sdkaws.String(username),
}
}
out, err := cli.iam.CreateAccessKey(cli.GetContext(), req)
if err != nil {
return "", "", cli.GetError(err)
} else if out.AccessKey == nil {
return "", "", awshlp.ErrorResponse.Error(nil)
} else {
return *out.AccessKey.AccessKeyId, *out.AccessKey.SecretAccessKey, nil
}
}
func (cli *client) AccessDelete(username, accessKey string) error {
var req = &sdkiam.DeleteAccessKeyInput{
AccessKeyId: sdkaws.String(accessKey),
}
if username != "" {
req = &sdkiam.DeleteAccessKeyInput{
AccessKeyId: sdkaws.String(accessKey),
UserName: sdkaws.String(username),
}
}
_, err := cli.iam.DeleteAccessKey(cli.GetContext(), req)
return cli.GetError(err)
}