Skip to main content

aws_sdk_kms/operation/
create_key.rs

1// Code generated by software.amazon.smithy.rust.codegen.smithy-rs. DO NOT EDIT.
2/// Orchestration and serialization glue logic for `CreateKey`.
3#[derive(::std::clone::Clone, ::std::default::Default, ::std::fmt::Debug)]
4#[non_exhaustive]
5pub struct CreateKey;
6impl CreateKey {
7    /// Creates a new `CreateKey`
8    pub fn new() -> Self {
9        Self
10    }
11    pub(crate) async fn orchestrate(
12        runtime_plugins: &::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
13        input: crate::operation::create_key::CreateKeyInput,
14    ) -> ::std::result::Result<
15        crate::operation::create_key::CreateKeyOutput,
16        ::aws_smithy_runtime_api::client::result::SdkError<
17            crate::operation::create_key::CreateKeyError,
18            ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
19        >,
20    > {
21        let map_err = |err: ::aws_smithy_runtime_api::client::result::SdkError<
22            ::aws_smithy_runtime_api::client::interceptors::context::Error,
23            ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
24        >| {
25            err.map_service_error(|err| {
26                err.downcast::<crate::operation::create_key::CreateKeyError>()
27                    .expect("correct error type")
28            })
29        };
30        let context = Self::orchestrate_with_stop_point(runtime_plugins, input, ::aws_smithy_runtime::client::orchestrator::StopPoint::None)
31            .await
32            .map_err(map_err)?;
33        let output = context.finalize().map_err(map_err)?;
34        ::std::result::Result::Ok(
35            output
36                .downcast::<crate::operation::create_key::CreateKeyOutput>()
37                .expect("correct output type"),
38        )
39    }
40
41    pub(crate) async fn orchestrate_with_stop_point(
42        runtime_plugins: &::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
43        input: crate::operation::create_key::CreateKeyInput,
44        stop_point: ::aws_smithy_runtime::client::orchestrator::StopPoint,
45    ) -> ::std::result::Result<
46        ::aws_smithy_runtime_api::client::interceptors::context::InterceptorContext,
47        ::aws_smithy_runtime_api::client::result::SdkError<
48            ::aws_smithy_runtime_api::client::interceptors::context::Error,
49            ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
50        >,
51    > {
52        let input = ::aws_smithy_runtime_api::client::interceptors::context::Input::erase(input);
53        use ::tracing::Instrument;
54        ::aws_smithy_runtime::client::orchestrator::invoke_with_stop_point("KMS", "CreateKey", input, runtime_plugins, stop_point)
55            // Create a parent span for the entire operation. Includes a random, internal-only,
56            // seven-digit ID for the operation orchestration so that it can be correlated in the logs.
57            .instrument(::tracing::debug_span!(
58                "KMS.CreateKey",
59                "rpc.service" = "KMS",
60                "rpc.method" = "CreateKey",
61                "sdk_invocation_id" = ::fastrand::u32(1_000_000..10_000_000),
62                "rpc.system" = "aws-api",
63            ))
64            .await
65    }
66
67    pub(crate) fn operation_runtime_plugins(
68        client_runtime_plugins: ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
69        client_config: &crate::config::Config,
70        config_override: ::std::option::Option<crate::config::Builder>,
71    ) -> ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins {
72        let mut runtime_plugins = client_runtime_plugins.with_operation_plugin(Self::new());
73
74        if let ::std::option::Option::Some(config_override) = config_override {
75            for plugin in config_override.runtime_plugins.iter().cloned() {
76                runtime_plugins = runtime_plugins.with_operation_plugin(plugin);
77            }
78            runtime_plugins = runtime_plugins.with_operation_plugin(crate::config::ConfigOverrideRuntimePlugin::new(
79                config_override,
80                client_config.config.clone(),
81                &client_config.runtime_components,
82            ));
83        }
84        runtime_plugins
85    }
86}
87impl ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugin for CreateKey {
88    fn config(&self) -> ::std::option::Option<::aws_smithy_types::config_bag::FrozenLayer> {
89        let mut cfg = ::aws_smithy_types::config_bag::Layer::new("CreateKey");
90
91        cfg.store_put(::aws_smithy_runtime_api::client::ser_de::SharedRequestSerializer::new(
92            CreateKeyRequestSerializer,
93        ));
94        cfg.store_put(::aws_smithy_runtime_api::client::ser_de::SharedResponseDeserializer::new(
95            CreateKeyResponseDeserializer,
96        ));
97
98        cfg.store_put(::aws_smithy_runtime_api::client::auth::AuthSchemeOptionResolverParams::new(
99            crate::config::auth::Params::builder()
100                .operation_name("CreateKey")
101                .build()
102                .expect("required fields set"),
103        ));
104
105        cfg.store_put(::aws_smithy_runtime_api::client::orchestrator::Metadata::new("CreateKey", "KMS"));
106        let mut signing_options = ::aws_runtime::auth::SigningOptions::default();
107        signing_options.double_uri_encode = true;
108        signing_options.content_sha256_header = false;
109        signing_options.normalize_uri_path = true;
110        signing_options.payload_override = None;
111
112        cfg.store_put(::aws_runtime::auth::SigV4OperationSigningConfig {
113            signing_options,
114            ..::std::default::Default::default()
115        });
116
117        ::std::option::Option::Some(cfg.freeze())
118    }
119
120    fn runtime_components(
121        &self,
122        _: &::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder,
123    ) -> ::std::borrow::Cow<'_, ::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder> {
124        #[allow(unused_mut)]
125        let mut rcb = ::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder::new("CreateKey")
126            .with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(
127                CreateKeyTelemetryInputCaptureInterceptor,
128            ))
129            .with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(
130                ::aws_smithy_runtime::client::stalled_stream_protection::StalledStreamProtectionInterceptor::default(),
131            ))
132            .with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(
133                CreateKeyEndpointParamsInterceptor,
134            ))
135            .with_retry_classifier(::aws_smithy_runtime::client::retries::classifiers::TransientErrorClassifier::<
136                crate::operation::create_key::CreateKeyError,
137            >::new())
138            .with_retry_classifier(::aws_smithy_runtime::client::retries::classifiers::ModeledAsRetryableClassifier::<
139                crate::operation::create_key::CreateKeyError,
140            >::new())
141            .with_retry_classifier(::aws_runtime::retries::classifiers::AwsErrorCodeClassifier::<
142                crate::operation::create_key::CreateKeyError,
143            >::new())
144            .with_retry_classifier(::aws_runtime::service_clock_skew::ServiceClockSkewClassifier::<
145                crate::operation::create_key::CreateKeyError,
146            >::new());
147
148        ::std::borrow::Cow::Owned(rcb)
149    }
150}
151
152#[derive(Debug)]
153struct CreateKeyTelemetryInputCaptureInterceptor;
154
155#[::aws_smithy_runtime_api::client::interceptors::dyn_dispatch_hint]
156impl ::aws_smithy_runtime_api::client::interceptors::Intercept for CreateKeyTelemetryInputCaptureInterceptor {
157    fn name(&self) -> &'static str {
158        "CreateKeyTelemetryInputCaptureInterceptor"
159    }
160
161    fn read_before_execution(
162        &self,
163        context: &::aws_smithy_runtime_api::client::interceptors::context::BeforeSerializationInterceptorContextRef<
164            '_,
165            ::aws_smithy_runtime_api::client::interceptors::context::Input,
166            ::aws_smithy_runtime_api::client::interceptors::context::Output,
167            ::aws_smithy_runtime_api::client::interceptors::context::Error,
168        >,
169        cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
170    ) -> ::std::result::Result<(), ::aws_smithy_runtime_api::box_error::BoxError> {
171        // Nothing to do unless the customer opted in by naming members to record.
172        let ::std::option::Option::Some(requested) = cfg
173            .load::<::aws_smithy_types::telemetry::RequestedTelemetryAttributes>()
174            .filter(|r| !r.is_empty())
175        else {
176            return ::std::result::Result::Ok(());
177        };
178
179        let ::std::option::Option::Some(input) = context.input().downcast_ref::<CreateKeyInput>() else {
180            // A mismatched input is not this interceptor's concern; skip quietly.
181            return ::std::result::Result::Ok(());
182        };
183
184        let mut captured = ::aws_smithy_types::telemetry::CapturedTelemetryAttributes::default();
185        if requested.should_capture("Policy") {
186            if let ::std::option::Option::Some(value) = input.policy.as_deref() {
187                captured.insert("Policy", value);
188            }
189        }
190        if requested.should_capture("Description") {
191            if let ::std::option::Option::Some(value) = input.description.as_deref() {
192                captured.insert("Description", value);
193            }
194        }
195        if requested.should_capture("CustomKeyStoreId") {
196            if let ::std::option::Option::Some(value) = input.custom_key_store_id.as_deref() {
197                captured.insert("CustomKeyStoreId", value);
198            }
199        }
200        if requested.should_capture("XksKeyId") {
201            if let ::std::option::Option::Some(value) = input.xks_key_id.as_deref() {
202                captured.insert("XksKeyId", value);
203            }
204        }
205
206        cfg.interceptor_state().store_put(captured);
207        ::std::result::Result::Ok(())
208    }
209}
210#[derive(Debug)]
211struct CreateKeyResponseDeserializer;
212impl ::aws_smithy_runtime_api::client::ser_de::DeserializeResponse for CreateKeyResponseDeserializer {
213    fn deserialize_nonstreaming_with_config(
214        &self,
215        response: &::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
216        _cfg: &::aws_smithy_types::config_bag::ConfigBag,
217    ) -> ::aws_smithy_runtime_api::client::interceptors::context::OutputOrError {
218        let (success, status) = (response.status().is_success(), response.status().as_u16());
219        let headers = response.headers();
220        let body = response.body().bytes().expect("body loaded");
221        #[allow(unused_mut)]
222        let mut force_error = false;
223        ::tracing::debug!(request_id = ?::aws_types::request_id::RequestId::request_id(response));
224        let parse_result = if !success && status != 200 || force_error {
225            crate::protocol_serde::shape_create_key::de_create_key_http_error(status, headers, body, _cfg)
226        } else {
227            crate::protocol_serde::shape_create_key::de_create_key_http_response(status, headers, body, _cfg)
228        };
229        crate::protocol_serde::type_erase_result(parse_result)
230    }
231}
232#[derive(Debug)]
233struct CreateKeyRequestSerializer;
234impl ::aws_smithy_runtime_api::client::ser_de::SerializeRequest for CreateKeyRequestSerializer {
235    #[allow(unused_mut, clippy::let_and_return, clippy::needless_borrow, clippy::useless_conversion)]
236    fn serialize_input(
237        &self,
238        input: ::aws_smithy_runtime_api::client::interceptors::context::Input,
239        _cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
240    ) -> ::std::result::Result<::aws_smithy_runtime_api::client::orchestrator::HttpRequest, ::aws_smithy_runtime_api::box_error::BoxError> {
241        let input = input.downcast::<crate::operation::create_key::CreateKeyInput>().expect("correct type");
242        let _header_serialization_settings = _cfg
243            .load::<crate::serialization_settings::HeaderSerializationSettings>()
244            .cloned()
245            .unwrap_or_default();
246        let mut request_builder = {
247            #[allow(clippy::uninlined_format_args)]
248            fn uri_base(
249                _input: &crate::operation::create_key::CreateKeyInput,
250                output: &mut ::std::string::String,
251            ) -> ::std::result::Result<(), ::aws_smithy_types::error::operation::BuildError> {
252                use ::std::fmt::Write as _;
253                ::std::write!(output, "/").expect("formatting should succeed");
254                ::std::result::Result::Ok(())
255            }
256            #[allow(clippy::unnecessary_wraps)]
257            fn update_http_builder(
258                input: &crate::operation::create_key::CreateKeyInput,
259                builder: ::http_1x::request::Builder,
260            ) -> ::std::result::Result<::http_1x::request::Builder, ::aws_smithy_types::error::operation::BuildError> {
261                let mut uri = ::std::string::String::new();
262                uri_base(input, &mut uri)?;
263                ::std::result::Result::Ok(builder.method("POST").uri(uri))
264            }
265            let mut builder = update_http_builder(&input, ::http_1x::request::Builder::new())?;
266            builder = _header_serialization_settings.set_default_header(builder, ::http_1x::header::CONTENT_TYPE, "application/x-amz-json-1.1");
267            builder = _header_serialization_settings.set_default_header(
268                builder,
269                ::http_1x::header::HeaderName::from_static("x-amz-target"),
270                "TrentService.CreateKey",
271            );
272            builder
273        };
274        let body = ::aws_smithy_types::body::SdkBody::from(crate::protocol_serde::shape_create_key::ser_create_key_input(&input)?);
275        if let Some(content_length) = body.content_length() {
276            let content_length = content_length.to_string();
277            request_builder = _header_serialization_settings.set_default_header(request_builder, ::http_1x::header::CONTENT_LENGTH, &content_length);
278        }
279        ::std::result::Result::Ok(request_builder.body(body).expect("valid request").try_into().unwrap())
280    }
281}
282#[derive(Debug)]
283struct CreateKeyEndpointParamsInterceptor;
284
285#[::aws_smithy_runtime_api::client::interceptors::dyn_dispatch_hint]
286impl ::aws_smithy_runtime_api::client::interceptors::Intercept for CreateKeyEndpointParamsInterceptor {
287    fn name(&self) -> &'static str {
288        "CreateKeyEndpointParamsInterceptor"
289    }
290
291    fn read_before_execution(
292        &self,
293        context: &::aws_smithy_runtime_api::client::interceptors::context::BeforeSerializationInterceptorContextRef<
294            '_,
295            ::aws_smithy_runtime_api::client::interceptors::context::Input,
296            ::aws_smithy_runtime_api::client::interceptors::context::Output,
297            ::aws_smithy_runtime_api::client::interceptors::context::Error,
298        >,
299        cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
300    ) -> ::std::result::Result<(), ::aws_smithy_runtime_api::box_error::BoxError> {
301        let _input = context
302            .input()
303            .downcast_ref::<CreateKeyInput>()
304            .ok_or("failed to downcast to CreateKeyInput")?;
305
306        let params = crate::config::endpoint::Params::builder()
307            .set_region(cfg.load::<::aws_types::region::Region>().map(|r| r.as_ref().to_owned()))
308            .set_use_dual_stack(cfg.load::<::aws_types::endpoint_config::UseDualStack>().map(|ty| ty.0))
309            .set_use_fips(cfg.load::<::aws_types::endpoint_config::UseFips>().map(|ty| ty.0))
310            .set_endpoint(cfg.load::<::aws_types::endpoint_config::EndpointUrl>().map(|ty| ty.0.clone()))
311            .build()
312            .map_err(|err| {
313                ::aws_smithy_runtime_api::client::interceptors::error::ContextAttachedError::new("endpoint params could not be built", err)
314            })?;
315        cfg.interceptor_state()
316            .store_put(::aws_smithy_runtime_api::client::endpoint::EndpointResolverParams::new(params));
317        ::std::result::Result::Ok(())
318    }
319}
320
321// The get_* functions below are generated from JMESPath expressions in the
322// operationContextParams trait. They target the operation's input shape.
323
324/// Error type for the `CreateKeyError` operation.
325#[non_exhaustive]
326#[derive(::std::fmt::Debug)]
327pub enum CreateKeyError {
328    /// <p>The request was rejected because the associated CloudHSM cluster did not meet the configuration requirements for an CloudHSM key store.</p>
329    /// <ul>
330    /// <li>
331    /// <p>The CloudHSM cluster must be configured with private subnets in at least two different Availability Zones in the Region.</p></li>
332    /// <li>
333    /// <p>The <a href="https://docs.aws.amazon.com/cloudhsm/latest/userguide/configure-sg.html">security group for the cluster</a> (cloudhsm-cluster-<i><cluster-id></cluster-id></i>-sg) must include inbound rules and outbound rules that allow TCP traffic on ports 2223-2225. The <b>Source</b> in the inbound rules and the <b>Destination</b> in the outbound rules must match the security group ID. These rules are set by default when you create the CloudHSM cluster. Do not delete or change them. To get information about a particular security group, use the <a href="https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeSecurityGroups.html">DescribeSecurityGroups</a> operation.</p></li>
334    /// <li>
335    /// <p>The CloudHSM cluster must contain at least as many HSMs as the operation requires. To add HSMs, use the CloudHSM <a href="https://docs.aws.amazon.com/cloudhsm/latest/APIReference/API_CreateHsm.html">CreateHsm</a> operation.</p>
336    /// <p>For the <code>CreateCustomKeyStore</code>, <code>UpdateCustomKeyStore</code>, and <code>CreateKey</code> operations, the CloudHSM cluster must have at least two active HSMs, each in a different Availability Zone. For the <code>ConnectCustomKeyStore</code> operation, the CloudHSM must contain at least one active HSM.</p></li>
337    /// </ul>
338    /// <p>For information about the requirements for an CloudHSM cluster that is associated with an CloudHSM key store, see <a href="https://docs.aws.amazon.com/kms/latest/developerguide/create-keystore.html#before-keystore">Assemble the Prerequisites</a> in the <i>Key Management Service Developer Guide</i>. For information about creating a private subnet for an CloudHSM cluster, see <a href="https://docs.aws.amazon.com/cloudhsm/latest/userguide/create-subnets.html">Create a Private Subnet</a> in the <i>CloudHSM User Guide</i>. For information about cluster security groups, see <a href="https://docs.aws.amazon.com/cloudhsm/latest/userguide/configure-sg.html">Configure a Default Security Group</a> in the <i> <i>CloudHSM User Guide</i> </i>.</p>
339    CloudHsmClusterInvalidConfigurationException(crate::types::error::CloudHsmClusterInvalidConfigurationException),
340    /// <p>The request was rejected because of the <code>ConnectionState</code> of the custom key store. To get the <code>ConnectionState</code> of a custom key store, use the <code>DescribeCustomKeyStores</code> operation.</p>
341    /// <p>This exception is thrown under the following conditions:</p>
342    /// <ul>
343    /// <li>
344    /// <p>You requested the <code>ConnectCustomKeyStore</code> operation on a custom key store with a <code>ConnectionState</code> of <code>DISCONNECTING</code> or <code>FAILED</code>. This operation is valid for all other <code>ConnectionState</code> values. To reconnect a custom key store in a <code>FAILED</code> state, disconnect it (<code>DisconnectCustomKeyStore</code>), then connect it (<code>ConnectCustomKeyStore</code>).</p></li>
345    /// <li>
346    /// <p>You requested the <code>CreateKey</code> operation in a custom key store that is not connected. This operations is valid only when the custom key store <code>ConnectionState</code> is <code>CONNECTED</code>.</p></li>
347    /// <li>
348    /// <p>You requested the <code>DisconnectCustomKeyStore</code> operation on a custom key store with a <code>ConnectionState</code> of <code>DISCONNECTING</code> or <code>DISCONNECTED</code>. This operation is valid for all other <code>ConnectionState</code> values.</p></li>
349    /// <li>
350    /// <p>You requested the <code>UpdateCustomKeyStore</code> or <code>DeleteCustomKeyStore</code> operation on a custom key store that is not disconnected. <code>UpdateCustomKeyStore</code> can be called on a custom key store in the <code>CONNECTED</code> state only to update <code>NewCustomKeyStoreName</code>. For all other properties, the custom key store <code>ConnectionState</code> must be <code>DISCONNECTED</code>.</p></li>
351    /// <li>
352    /// <p>You requested the <code>GenerateRandom</code> operation in an CloudHSM key store that is not connected. This operation is valid only when the CloudHSM key store <code>ConnectionState</code> is <code>CONNECTED</code>.</p></li>
353    /// </ul>
354    CustomKeyStoreInvalidStateException(crate::types::error::CustomKeyStoreInvalidStateException),
355    /// <p>The request was rejected because KMS cannot find a custom key store with the specified key store name or ID.</p>
356    CustomKeyStoreNotFoundException(crate::types::error::CustomKeyStoreNotFoundException),
357    /// <p>The system timed out while trying to fulfill the request. You can retry the request.</p>
358    DependencyTimeoutException(crate::types::error::DependencyTimeoutException),
359    /// <p>The request was rejected because a specified ARN, or an ARN in a key policy, is not valid.</p>
360    InvalidArnException(crate::types::error::InvalidArnException),
361    /// <p>The request was rejected because an internal exception occurred. The request can be retried.</p>
362    KmsInternalException(crate::types::error::KmsInternalException),
363    /// <p>The request was rejected because a length constraint or quota was exceeded. For more information, see <a href="https://docs.aws.amazon.com/kms/latest/developerguide/limits.html">Quotas</a> in the <i>Key Management Service Developer Guide</i>.</p>
364    LimitExceededException(crate::types::error::LimitExceededException),
365    /// <p>The request was rejected because the specified policy is not syntactically or semantically correct.</p>
366    MalformedPolicyDocumentException(crate::types::error::MalformedPolicyDocumentException),
367    /// <p>The request was rejected because one or more tags are not valid.</p>
368    TagException(crate::types::error::TagException),
369    /// <p>The request was rejected because a specified parameter is not supported or a specified resource is not valid for this operation.</p>
370    UnsupportedOperationException(crate::types::error::UnsupportedOperationException),
371    /// <p>The request was rejected because the (<code>XksKeyId</code>) is already associated with another KMS key in this external key store. Each KMS key in an external key store must be associated with a different external key.</p>
372    XksKeyAlreadyInUseException(crate::types::error::XksKeyAlreadyInUseException),
373    /// <p>The request was rejected because the external key specified by the <code>XksKeyId</code> parameter did not meet the configuration requirements for an external key store.</p>
374    /// <p>The external key must be an AES-256 symmetric key that is enabled and performs encryption and decryption.</p>
375    XksKeyInvalidConfigurationException(crate::types::error::XksKeyInvalidConfigurationException),
376    /// <p>The request was rejected because the external key store proxy could not find the external key. This exception is thrown when the value of the <code>XksKeyId</code> parameter doesn't identify a key in the external key manager associated with the external key proxy.</p>
377    /// <p>Verify that the <code>XksKeyId</code> represents an existing key in the external key manager. Use the key identifier that the external key store proxy uses to identify the key. For details, see the documentation provided with your external key store proxy or key manager.</p>
378    XksKeyNotFoundException(crate::types::error::XksKeyNotFoundException),
379    /// An unexpected error occurred (e.g., invalid JSON returned by the service or an unknown error code).
380    #[deprecated(note = "Matching `Unhandled` directly is not forwards compatible. Instead, match using a \
381    variable wildcard pattern and check `.code()`:
382     \
383    &nbsp;&nbsp;&nbsp;`err if err.code() == Some(\"SpecificExceptionCode\") => { /* handle the error */ }`
384     \
385    See [`ProvideErrorMetadata`](#impl-ProvideErrorMetadata-for-CreateKeyError) for what information is available for the error.")]
386    Unhandled(crate::error::sealed_unhandled::Unhandled),
387}
388impl CreateKeyError {
389    /// Creates the `CreateKeyError::Unhandled` variant from any error type.
390    pub fn unhandled(
391        err: impl ::std::convert::Into<::std::boxed::Box<dyn ::std::error::Error + ::std::marker::Send + ::std::marker::Sync + 'static>>,
392    ) -> Self {
393        Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
394            source: err.into(),
395            meta: ::std::default::Default::default(),
396        })
397    }
398
399    /// Creates the `CreateKeyError::Unhandled` variant from an [`ErrorMetadata`](::aws_smithy_types::error::ErrorMetadata).
400    pub fn generic(err: ::aws_smithy_types::error::ErrorMetadata) -> Self {
401        Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
402            source: err.clone().into(),
403            meta: err,
404        })
405    }
406    ///
407    /// Returns error metadata, which includes the error code, message,
408    /// request ID, and potentially additional information.
409    ///
410    pub fn meta(&self) -> &::aws_smithy_types::error::ErrorMetadata {
411        match self {
412            Self::CloudHsmClusterInvalidConfigurationException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
413            Self::CustomKeyStoreInvalidStateException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
414            Self::CustomKeyStoreNotFoundException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
415            Self::DependencyTimeoutException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
416            Self::InvalidArnException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
417            Self::KmsInternalException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
418            Self::LimitExceededException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
419            Self::MalformedPolicyDocumentException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
420            Self::TagException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
421            Self::UnsupportedOperationException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
422            Self::XksKeyAlreadyInUseException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
423            Self::XksKeyInvalidConfigurationException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
424            Self::XksKeyNotFoundException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
425            Self::Unhandled(e) => &e.meta,
426        }
427    }
428    /// Returns `true` if the error kind is `CreateKeyError::CloudHsmClusterInvalidConfigurationException`.
429    pub fn is_cloud_hsm_cluster_invalid_configuration_exception(&self) -> bool {
430        matches!(self, Self::CloudHsmClusterInvalidConfigurationException(_))
431    }
432    /// Returns `true` if the error kind is `CreateKeyError::CustomKeyStoreInvalidStateException`.
433    pub fn is_custom_key_store_invalid_state_exception(&self) -> bool {
434        matches!(self, Self::CustomKeyStoreInvalidStateException(_))
435    }
436    /// Returns `true` if the error kind is `CreateKeyError::CustomKeyStoreNotFoundException`.
437    pub fn is_custom_key_store_not_found_exception(&self) -> bool {
438        matches!(self, Self::CustomKeyStoreNotFoundException(_))
439    }
440    /// Returns `true` if the error kind is `CreateKeyError::DependencyTimeoutException`.
441    pub fn is_dependency_timeout_exception(&self) -> bool {
442        matches!(self, Self::DependencyTimeoutException(_))
443    }
444    /// Returns `true` if the error kind is `CreateKeyError::InvalidArnException`.
445    pub fn is_invalid_arn_exception(&self) -> bool {
446        matches!(self, Self::InvalidArnException(_))
447    }
448    /// Returns `true` if the error kind is `CreateKeyError::KmsInternalException`.
449    pub fn is_kms_internal_exception(&self) -> bool {
450        matches!(self, Self::KmsInternalException(_))
451    }
452    /// Returns `true` if the error kind is `CreateKeyError::LimitExceededException`.
453    pub fn is_limit_exceeded_exception(&self) -> bool {
454        matches!(self, Self::LimitExceededException(_))
455    }
456    /// Returns `true` if the error kind is `CreateKeyError::MalformedPolicyDocumentException`.
457    pub fn is_malformed_policy_document_exception(&self) -> bool {
458        matches!(self, Self::MalformedPolicyDocumentException(_))
459    }
460    /// Returns `true` if the error kind is `CreateKeyError::TagException`.
461    pub fn is_tag_exception(&self) -> bool {
462        matches!(self, Self::TagException(_))
463    }
464    /// Returns `true` if the error kind is `CreateKeyError::UnsupportedOperationException`.
465    pub fn is_unsupported_operation_exception(&self) -> bool {
466        matches!(self, Self::UnsupportedOperationException(_))
467    }
468    /// Returns `true` if the error kind is `CreateKeyError::XksKeyAlreadyInUseException`.
469    pub fn is_xks_key_already_in_use_exception(&self) -> bool {
470        matches!(self, Self::XksKeyAlreadyInUseException(_))
471    }
472    /// Returns `true` if the error kind is `CreateKeyError::XksKeyInvalidConfigurationException`.
473    pub fn is_xks_key_invalid_configuration_exception(&self) -> bool {
474        matches!(self, Self::XksKeyInvalidConfigurationException(_))
475    }
476    /// Returns `true` if the error kind is `CreateKeyError::XksKeyNotFoundException`.
477    pub fn is_xks_key_not_found_exception(&self) -> bool {
478        matches!(self, Self::XksKeyNotFoundException(_))
479    }
480}
481impl ::std::error::Error for CreateKeyError {
482    fn source(&self) -> ::std::option::Option<&(dyn ::std::error::Error + 'static)> {
483        match self {
484            Self::CloudHsmClusterInvalidConfigurationException(_inner) => ::std::option::Option::Some(_inner),
485            Self::CustomKeyStoreInvalidStateException(_inner) => ::std::option::Option::Some(_inner),
486            Self::CustomKeyStoreNotFoundException(_inner) => ::std::option::Option::Some(_inner),
487            Self::DependencyTimeoutException(_inner) => ::std::option::Option::Some(_inner),
488            Self::InvalidArnException(_inner) => ::std::option::Option::Some(_inner),
489            Self::KmsInternalException(_inner) => ::std::option::Option::Some(_inner),
490            Self::LimitExceededException(_inner) => ::std::option::Option::Some(_inner),
491            Self::MalformedPolicyDocumentException(_inner) => ::std::option::Option::Some(_inner),
492            Self::TagException(_inner) => ::std::option::Option::Some(_inner),
493            Self::UnsupportedOperationException(_inner) => ::std::option::Option::Some(_inner),
494            Self::XksKeyAlreadyInUseException(_inner) => ::std::option::Option::Some(_inner),
495            Self::XksKeyInvalidConfigurationException(_inner) => ::std::option::Option::Some(_inner),
496            Self::XksKeyNotFoundException(_inner) => ::std::option::Option::Some(_inner),
497            Self::Unhandled(_inner) => ::std::option::Option::Some(&*_inner.source),
498        }
499    }
500}
501impl ::std::fmt::Display for CreateKeyError {
502    fn fmt(&self, f: &mut ::std::fmt::Formatter<'_>) -> ::std::fmt::Result {
503        match self {
504            Self::CloudHsmClusterInvalidConfigurationException(_inner) => _inner.fmt(f),
505            Self::CustomKeyStoreInvalidStateException(_inner) => _inner.fmt(f),
506            Self::CustomKeyStoreNotFoundException(_inner) => _inner.fmt(f),
507            Self::DependencyTimeoutException(_inner) => _inner.fmt(f),
508            Self::InvalidArnException(_inner) => _inner.fmt(f),
509            Self::KmsInternalException(_inner) => _inner.fmt(f),
510            Self::LimitExceededException(_inner) => _inner.fmt(f),
511            Self::MalformedPolicyDocumentException(_inner) => _inner.fmt(f),
512            Self::TagException(_inner) => _inner.fmt(f),
513            Self::UnsupportedOperationException(_inner) => _inner.fmt(f),
514            Self::XksKeyAlreadyInUseException(_inner) => _inner.fmt(f),
515            Self::XksKeyInvalidConfigurationException(_inner) => _inner.fmt(f),
516            Self::XksKeyNotFoundException(_inner) => _inner.fmt(f),
517            Self::Unhandled(_inner) => {
518                if let ::std::option::Option::Some(code) = ::aws_smithy_types::error::metadata::ProvideErrorMetadata::code(self) {
519                    write!(f, "unhandled error ({code})")
520                } else {
521                    f.write_str("unhandled error")
522                }
523            }
524        }
525    }
526}
527impl ::aws_smithy_types::retry::ProvideErrorKind for CreateKeyError {
528    fn code(&self) -> ::std::option::Option<&str> {
529        ::aws_smithy_types::error::metadata::ProvideErrorMetadata::code(self)
530    }
531    fn retryable_error_kind(&self) -> ::std::option::Option<::aws_smithy_types::retry::ErrorKind> {
532        ::std::option::Option::None
533    }
534}
535impl ::aws_smithy_types::error::metadata::ProvideErrorMetadata for CreateKeyError {
536    fn meta(&self) -> &::aws_smithy_types::error::ErrorMetadata {
537        match self {
538            Self::CloudHsmClusterInvalidConfigurationException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
539            Self::CustomKeyStoreInvalidStateException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
540            Self::CustomKeyStoreNotFoundException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
541            Self::DependencyTimeoutException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
542            Self::InvalidArnException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
543            Self::KmsInternalException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
544            Self::LimitExceededException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
545            Self::MalformedPolicyDocumentException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
546            Self::TagException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
547            Self::UnsupportedOperationException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
548            Self::XksKeyAlreadyInUseException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
549            Self::XksKeyInvalidConfigurationException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
550            Self::XksKeyNotFoundException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
551            Self::Unhandled(_inner) => &_inner.meta,
552        }
553    }
554}
555impl ::aws_smithy_runtime_api::client::result::CreateUnhandledError for CreateKeyError {
556    fn create_unhandled_error(
557        source: ::std::boxed::Box<dyn ::std::error::Error + ::std::marker::Send + ::std::marker::Sync + 'static>,
558        meta: ::std::option::Option<::aws_smithy_types::error::ErrorMetadata>,
559    ) -> Self {
560        Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
561            source,
562            meta: meta.unwrap_or_default(),
563        })
564    }
565}
566impl ::aws_types::request_id::RequestId for crate::operation::create_key::CreateKeyError {
567    fn request_id(&self) -> Option<&str> {
568        self.meta().request_id()
569    }
570}
571
572pub use crate::operation::create_key::_create_key_input::CreateKeyInput;
573
574pub use crate::operation::create_key::_create_key_output::CreateKeyOutput;
575
576mod _create_key_input;
577
578mod _create_key_output;
579
580/// Builders
581pub mod builders;