package com.amazonaws.iot.rolealias; import com.amazonaws.util.StringUtils; import software.amazon.awssdk.services.iot.IotClient; import software.amazon.awssdk.services.iot.model.CreateRoleAliasRequest; import software.amazon.awssdk.services.iot.model.CreateRoleAliasResponse; import software.amazon.awssdk.services.iot.model.IotException; import software.amazon.cloudformation.proxy.AmazonWebServicesClientProxy; import software.amazon.cloudformation.proxy.Logger; import software.amazon.cloudformation.proxy.ProgressEvent; import software.amazon.cloudformation.proxy.ProxyClient; import software.amazon.cloudformation.proxy.ResourceHandlerRequest; import software.amazon.cloudformation.resource.IdentifierUtils; public class CreateHandler extends BaseHandlerStd { private static final String OPERATION = "CreateRoleAlias"; private static final String CALL_GRAPH = "AWS-IoT-RoleAlias::Create"; private static final int MAX_ROLE_ALIAS = 128; private Logger logger; @Override protected ProgressEvent handleRequest( final AmazonWebServicesClientProxy proxy, final ResourceHandlerRequest request, final CallbackContext callbackContext, final ProxyClient proxyClient, final Logger logger) { this.logger = logger; final ResourceModel model = request.getDesiredResourceState(); if (StringUtils.isNullOrEmpty(model.getRoleAlias())) { model.setRoleAlias(generateName(request)); } return ProgressEvent.progress(model, callbackContext) .then(progress -> proxy.initiate(CALL_GRAPH, proxyClient, model, callbackContext) .translateToServiceRequest(Translator::translateToCreateRequest) .makeServiceCall(this::createResource) .progress()) .then(progress -> new ReadHandler().handleRequest(proxy, request, callbackContext, proxyClient, logger)); } /** * Implement client invocation of the create request through the proxyClient, which is already initialised with * caller credentials, correct region and retry settings * * @param request the aws service request to create a resource * @param proxyClient the aws service client to make the call * @return awsResponse create resource response */ private CreateRoleAliasResponse createResource(final CreateRoleAliasRequest request, final ProxyClient proxyClient) { try { CreateRoleAliasResponse response = proxyClient.injectCredentialsAndInvokeV2(request, proxyClient.client()::createRoleAlias); logger.log(String.format("%s [%s] successfully created.", ResourceModel.TYPE_NAME, request.roleAlias())); return response; } catch (IotException e) { throw Translator.translateIotExceptionToHandlerException( e, OPERATION, request.roleAlias()); } } private String generateName(final ResourceHandlerRequest request) { return IdentifierUtils.generateResourceIdentifier( StringUtils.isNullOrEmpty(request.getLogicalResourceIdentifier()) ? "RoleAlias" : request.getLogicalResourceIdentifier(), request.getClientRequestToken(), MAX_ROLE_ALIAS).replace("-", "_"); } }