Skip to main content

aws_sdk_kms/operation/
decrypt.rs

1// Code generated by software.amazon.smithy.rust.codegen.smithy-rs. DO NOT EDIT.
2/// Orchestration and serialization glue logic for `Decrypt`.
3#[derive(::std::clone::Clone, ::std::default::Default, ::std::fmt::Debug)]
4#[non_exhaustive]
5pub struct Decrypt;
6impl Decrypt {
7    /// Creates a new `Decrypt`
8    pub fn new() -> Self {
9        Self
10    }
11    pub(crate) async fn orchestrate(
12        runtime_plugins: &::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
13        input: crate::operation::decrypt::DecryptInput,
14    ) -> ::std::result::Result<
15        crate::operation::decrypt::DecryptOutput,
16        ::aws_smithy_runtime_api::client::result::SdkError<
17            crate::operation::decrypt::DecryptError,
18            ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
19        >,
20    > {
21        let map_err =
22            |err: ::aws_smithy_runtime_api::client::result::SdkError<
23                ::aws_smithy_runtime_api::client::interceptors::context::Error,
24                ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
25            >| { err.map_service_error(|err| err.downcast::<crate::operation::decrypt::DecryptError>().expect("correct error type")) };
26        let context = Self::orchestrate_with_stop_point(runtime_plugins, input, ::aws_smithy_runtime::client::orchestrator::StopPoint::None)
27            .await
28            .map_err(map_err)?;
29        let output = context.finalize().map_err(map_err)?;
30        ::std::result::Result::Ok(
31            output
32                .downcast::<crate::operation::decrypt::DecryptOutput>()
33                .expect("correct output type"),
34        )
35    }
36
37    pub(crate) async fn orchestrate_with_stop_point(
38        runtime_plugins: &::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
39        input: crate::operation::decrypt::DecryptInput,
40        stop_point: ::aws_smithy_runtime::client::orchestrator::StopPoint,
41    ) -> ::std::result::Result<
42        ::aws_smithy_runtime_api::client::interceptors::context::InterceptorContext,
43        ::aws_smithy_runtime_api::client::result::SdkError<
44            ::aws_smithy_runtime_api::client::interceptors::context::Error,
45            ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
46        >,
47    > {
48        let input = ::aws_smithy_runtime_api::client::interceptors::context::Input::erase(input);
49        use ::tracing::Instrument;
50        ::aws_smithy_runtime::client::orchestrator::invoke_with_stop_point("KMS", "Decrypt", input, runtime_plugins, stop_point)
51            // Create a parent span for the entire operation. Includes a random, internal-only,
52            // seven-digit ID for the operation orchestration so that it can be correlated in the logs.
53            .instrument(::tracing::debug_span!(
54                "KMS.Decrypt",
55                "rpc.service" = "KMS",
56                "rpc.method" = "Decrypt",
57                "sdk_invocation_id" = ::fastrand::u32(1_000_000..10_000_000),
58                "rpc.system" = "aws-api",
59            ))
60            .await
61    }
62
63    pub(crate) fn operation_runtime_plugins(
64        client_runtime_plugins: ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
65        client_config: &crate::config::Config,
66        config_override: ::std::option::Option<crate::config::Builder>,
67    ) -> ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins {
68        let mut runtime_plugins = client_runtime_plugins.with_operation_plugin(Self::new());
69
70        if let ::std::option::Option::Some(config_override) = config_override {
71            for plugin in config_override.runtime_plugins.iter().cloned() {
72                runtime_plugins = runtime_plugins.with_operation_plugin(plugin);
73            }
74            runtime_plugins = runtime_plugins.with_operation_plugin(crate::config::ConfigOverrideRuntimePlugin::new(
75                config_override,
76                client_config.config.clone(),
77                &client_config.runtime_components,
78            ));
79        }
80        runtime_plugins
81    }
82}
83impl ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugin for Decrypt {
84    fn config(&self) -> ::std::option::Option<::aws_smithy_types::config_bag::FrozenLayer> {
85        let mut cfg = ::aws_smithy_types::config_bag::Layer::new("Decrypt");
86
87        cfg.store_put(::aws_smithy_runtime_api::client::ser_de::SharedRequestSerializer::new(
88            DecryptRequestSerializer,
89        ));
90        cfg.store_put(::aws_smithy_runtime_api::client::ser_de::SharedResponseDeserializer::new(
91            DecryptResponseDeserializer,
92        ));
93
94        cfg.store_put(::aws_smithy_runtime_api::client::auth::AuthSchemeOptionResolverParams::new(
95            crate::config::auth::Params::builder()
96                .operation_name("Decrypt")
97                .build()
98                .expect("required fields set"),
99        ));
100
101        cfg.store_put(::aws_smithy_runtime_api::client::orchestrator::SensitiveOutput);
102        cfg.store_put(::aws_smithy_runtime_api::client::orchestrator::Metadata::new("Decrypt", "KMS"));
103        let mut signing_options = ::aws_runtime::auth::SigningOptions::default();
104        signing_options.double_uri_encode = true;
105        signing_options.content_sha256_header = false;
106        signing_options.normalize_uri_path = true;
107        signing_options.payload_override = None;
108
109        cfg.store_put(::aws_runtime::auth::SigV4OperationSigningConfig {
110            signing_options,
111            ..::std::default::Default::default()
112        });
113
114        ::std::option::Option::Some(cfg.freeze())
115    }
116
117    fn runtime_components(
118        &self,
119        _: &::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder,
120    ) -> ::std::borrow::Cow<'_, ::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder> {
121        #[allow(unused_mut)]
122        let mut rcb = ::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder::new("Decrypt")
123            .with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(
124                DecryptTelemetryInputCaptureInterceptor,
125            ))
126            .with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(
127                ::aws_smithy_runtime::client::stalled_stream_protection::StalledStreamProtectionInterceptor::default(),
128            ))
129            .with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(
130                DecryptEndpointParamsInterceptor,
131            ))
132            .with_retry_classifier(::aws_smithy_runtime::client::retries::classifiers::TransientErrorClassifier::<
133                crate::operation::decrypt::DecryptError,
134            >::new())
135            .with_retry_classifier(::aws_smithy_runtime::client::retries::classifiers::ModeledAsRetryableClassifier::<
136                crate::operation::decrypt::DecryptError,
137            >::new())
138            .with_retry_classifier(::aws_runtime::retries::classifiers::AwsErrorCodeClassifier::<
139                crate::operation::decrypt::DecryptError,
140            >::new())
141            .with_retry_classifier(::aws_runtime::service_clock_skew::ServiceClockSkewClassifier::<
142                crate::operation::decrypt::DecryptError,
143            >::new());
144
145        ::std::borrow::Cow::Owned(rcb)
146    }
147}
148
149#[derive(Debug)]
150struct DecryptTelemetryInputCaptureInterceptor;
151
152#[::aws_smithy_runtime_api::client::interceptors::dyn_dispatch_hint]
153impl ::aws_smithy_runtime_api::client::interceptors::Intercept for DecryptTelemetryInputCaptureInterceptor {
154    fn name(&self) -> &'static str {
155        "DecryptTelemetryInputCaptureInterceptor"
156    }
157
158    fn read_before_execution(
159        &self,
160        context: &::aws_smithy_runtime_api::client::interceptors::context::BeforeSerializationInterceptorContextRef<
161            '_,
162            ::aws_smithy_runtime_api::client::interceptors::context::Input,
163            ::aws_smithy_runtime_api::client::interceptors::context::Output,
164            ::aws_smithy_runtime_api::client::interceptors::context::Error,
165        >,
166        cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
167    ) -> ::std::result::Result<(), ::aws_smithy_runtime_api::box_error::BoxError> {
168        // Nothing to do unless the customer opted in by naming members to record.
169        let ::std::option::Option::Some(requested) = cfg
170            .load::<::aws_smithy_types::telemetry::RequestedTelemetryAttributes>()
171            .filter(|r| !r.is_empty())
172        else {
173            return ::std::result::Result::Ok(());
174        };
175
176        let ::std::option::Option::Some(input) = context.input().downcast_ref::<DecryptInput>() else {
177            // A mismatched input is not this interceptor's concern; skip quietly.
178            return ::std::result::Result::Ok(());
179        };
180
181        let mut captured = ::aws_smithy_types::telemetry::CapturedTelemetryAttributes::default();
182        if requested.should_capture("KeyId") {
183            if let ::std::option::Option::Some(value) = input.key_id.as_deref() {
184                captured.insert("KeyId", value);
185            }
186        }
187
188        cfg.interceptor_state().store_put(captured);
189        ::std::result::Result::Ok(())
190    }
191}
192#[derive(Debug)]
193struct DecryptResponseDeserializer;
194impl ::aws_smithy_runtime_api::client::ser_de::DeserializeResponse for DecryptResponseDeserializer {
195    fn deserialize_nonstreaming_with_config(
196        &self,
197        response: &::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
198        _cfg: &::aws_smithy_types::config_bag::ConfigBag,
199    ) -> ::aws_smithy_runtime_api::client::interceptors::context::OutputOrError {
200        let (success, status) = (response.status().is_success(), response.status().as_u16());
201        let headers = response.headers();
202        let body = response.body().bytes().expect("body loaded");
203        #[allow(unused_mut)]
204        let mut force_error = false;
205        ::tracing::debug!(request_id = ?::aws_types::request_id::RequestId::request_id(response));
206        let parse_result = if !success && status != 200 || force_error {
207            crate::protocol_serde::shape_decrypt::de_decrypt_http_error(status, headers, body, _cfg)
208        } else {
209            crate::protocol_serde::shape_decrypt::de_decrypt_http_response(status, headers, body, _cfg)
210        };
211        crate::protocol_serde::type_erase_result(parse_result)
212    }
213}
214#[derive(Debug)]
215struct DecryptRequestSerializer;
216impl ::aws_smithy_runtime_api::client::ser_de::SerializeRequest for DecryptRequestSerializer {
217    #[allow(unused_mut, clippy::let_and_return, clippy::needless_borrow, clippy::useless_conversion)]
218    fn serialize_input(
219        &self,
220        input: ::aws_smithy_runtime_api::client::interceptors::context::Input,
221        _cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
222    ) -> ::std::result::Result<::aws_smithy_runtime_api::client::orchestrator::HttpRequest, ::aws_smithy_runtime_api::box_error::BoxError> {
223        let input = input.downcast::<crate::operation::decrypt::DecryptInput>().expect("correct type");
224        let _header_serialization_settings = _cfg
225            .load::<crate::serialization_settings::HeaderSerializationSettings>()
226            .cloned()
227            .unwrap_or_default();
228        let mut request_builder = {
229            #[allow(clippy::uninlined_format_args)]
230            fn uri_base(
231                _input: &crate::operation::decrypt::DecryptInput,
232                output: &mut ::std::string::String,
233            ) -> ::std::result::Result<(), ::aws_smithy_types::error::operation::BuildError> {
234                use ::std::fmt::Write as _;
235                ::std::write!(output, "/").expect("formatting should succeed");
236                ::std::result::Result::Ok(())
237            }
238            #[allow(clippy::unnecessary_wraps)]
239            fn update_http_builder(
240                input: &crate::operation::decrypt::DecryptInput,
241                builder: ::http_1x::request::Builder,
242            ) -> ::std::result::Result<::http_1x::request::Builder, ::aws_smithy_types::error::operation::BuildError> {
243                let mut uri = ::std::string::String::new();
244                uri_base(input, &mut uri)?;
245                ::std::result::Result::Ok(builder.method("POST").uri(uri))
246            }
247            let mut builder = update_http_builder(&input, ::http_1x::request::Builder::new())?;
248            builder = _header_serialization_settings.set_default_header(builder, ::http_1x::header::CONTENT_TYPE, "application/x-amz-json-1.1");
249            builder = _header_serialization_settings.set_default_header(
250                builder,
251                ::http_1x::header::HeaderName::from_static("x-amz-target"),
252                "TrentService.Decrypt",
253            );
254            builder
255        };
256        let body = ::aws_smithy_types::body::SdkBody::from(crate::protocol_serde::shape_decrypt::ser_decrypt_input(&input)?);
257        if let Some(content_length) = body.content_length() {
258            let content_length = content_length.to_string();
259            request_builder = _header_serialization_settings.set_default_header(request_builder, ::http_1x::header::CONTENT_LENGTH, &content_length);
260        }
261        ::std::result::Result::Ok(request_builder.body(body).expect("valid request").try_into().unwrap())
262    }
263}
264#[derive(Debug)]
265struct DecryptEndpointParamsInterceptor;
266
267#[::aws_smithy_runtime_api::client::interceptors::dyn_dispatch_hint]
268impl ::aws_smithy_runtime_api::client::interceptors::Intercept for DecryptEndpointParamsInterceptor {
269    fn name(&self) -> &'static str {
270        "DecryptEndpointParamsInterceptor"
271    }
272
273    fn read_before_execution(
274        &self,
275        context: &::aws_smithy_runtime_api::client::interceptors::context::BeforeSerializationInterceptorContextRef<
276            '_,
277            ::aws_smithy_runtime_api::client::interceptors::context::Input,
278            ::aws_smithy_runtime_api::client::interceptors::context::Output,
279            ::aws_smithy_runtime_api::client::interceptors::context::Error,
280        >,
281        cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
282    ) -> ::std::result::Result<(), ::aws_smithy_runtime_api::box_error::BoxError> {
283        let _input = context
284            .input()
285            .downcast_ref::<DecryptInput>()
286            .ok_or("failed to downcast to DecryptInput")?;
287
288        let params = crate::config::endpoint::Params::builder()
289            .set_region(cfg.load::<::aws_types::region::Region>().map(|r| r.as_ref().to_owned()))
290            .set_use_dual_stack(cfg.load::<::aws_types::endpoint_config::UseDualStack>().map(|ty| ty.0))
291            .set_use_fips(cfg.load::<::aws_types::endpoint_config::UseFips>().map(|ty| ty.0))
292            .set_endpoint(cfg.load::<::aws_types::endpoint_config::EndpointUrl>().map(|ty| ty.0.clone()))
293            .build()
294            .map_err(|err| {
295                ::aws_smithy_runtime_api::client::interceptors::error::ContextAttachedError::new("endpoint params could not be built", err)
296            })?;
297        cfg.interceptor_state()
298            .store_put(::aws_smithy_runtime_api::client::endpoint::EndpointResolverParams::new(params));
299        ::std::result::Result::Ok(())
300    }
301}
302
303// The get_* functions below are generated from JMESPath expressions in the
304// operationContextParams trait. They target the operation's input shape.
305
306/// Error type for the `DecryptError` operation.
307#[non_exhaustive]
308#[derive(::std::fmt::Debug)]
309pub enum DecryptError {
310    /// <p>The system timed out while trying to fulfill the request. You can retry the request.</p>
311    DependencyTimeoutException(crate::types::error::DependencyTimeoutException),
312    /// <p>The request was rejected because the specified KMS key is not enabled.</p>
313    DisabledException(crate::types::error::DisabledException),
314    /// <p>The request was rejected because the DryRun parameter was specified.</p>
315    DryRunOperationException(crate::types::error::DryRunOperationException),
316    /// <p>The request was rejected because the specified KMS key cannot decrypt the data. The <code>KeyId</code> in a <code>Decrypt</code> request and the <code>SourceKeyId</code> in a <code>ReEncrypt</code> request must identify the same KMS key that was used to encrypt the ciphertext.</p>
317    IncorrectKeyException(crate::types::error::IncorrectKeyException),
318    /// <p>From the <code>Decrypt</code> or <code>ReEncrypt</code> operation, the request was rejected because the specified ciphertext, or additional authenticated data incorporated into the ciphertext, such as the encryption context, is corrupted, missing, or otherwise invalid.</p>
319    /// <p>From the <code>ImportKeyMaterial</code> operation, the request was rejected because KMS could not decrypt the encrypted (wrapped) key material.</p>
320    InvalidCiphertextException(crate::types::error::InvalidCiphertextException),
321    /// <p>The request was rejected because the specified grant token is not valid.</p>
322    InvalidGrantTokenException(crate::types::error::InvalidGrantTokenException),
323    /// <p>The request was rejected for one of the following reasons:</p>
324    /// <ul>
325    /// <li>
326    /// <p>The <code>KeyUsage</code> value of the KMS key is incompatible with the API operation.</p></li>
327    /// <li>
328    /// <p>The encryption algorithm or signing algorithm specified for the operation is incompatible with the type of key material in the KMS key <code>(KeySpec</code>).</p></li>
329    /// </ul>
330    /// <p>For encrypting, decrypting, re-encrypting, and generating data keys, the <code>KeyUsage</code> must be <code>ENCRYPT_DECRYPT</code>. For signing and verifying messages, the <code>KeyUsage</code> must be <code>SIGN_VERIFY</code>. For generating and verifying message authentication codes (MACs), the <code>KeyUsage</code> must be <code>GENERATE_VERIFY_MAC</code>. For deriving key agreement secrets, the <code>KeyUsage</code> must be <code>KEY_AGREEMENT</code>. To find the <code>KeyUsage</code> of a KMS key, use the <code>DescribeKey</code> operation.</p>
331    /// <p>To find the encryption or signing algorithms supported for a particular KMS key, use the <code>DescribeKey</code> operation.</p>
332    InvalidKeyUsageException(crate::types::error::InvalidKeyUsageException),
333    /// <p>The request was rejected because the specified KMS key was not available. You can retry the request.</p>
334    KeyUnavailableException(crate::types::error::KeyUnavailableException),
335    /// <p>The request was rejected because an internal exception occurred. The request can be retried.</p>
336    KmsInternalException(crate::types::error::KmsInternalException),
337    /// <p>The request was rejected because the state of the specified resource is not valid for this request.</p>
338    /// <p>This exceptions means one of the following:</p>
339    /// <ul>
340    /// <li>
341    /// <p>The key state of the KMS key is not compatible with the operation.</p>
342    /// <p>To find the key state, use the <code>DescribeKey</code> operation. For more information about which key states are compatible with each KMS operation, see <a href="https://docs.aws.amazon.com/kms/latest/developerguide/key-state.html">Key states of KMS keys</a> in the <i> <i>Key Management Service Developer Guide</i> </i>.</p></li>
343    /// <li>
344    /// <p>For cryptographic operations on KMS keys in custom key stores, this exception represents a general failure with many possible causes. To identify the cause, see the error message that accompanies the exception.</p></li>
345    /// </ul>
346    KmsInvalidStateException(crate::types::error::KmsInvalidStateException),
347    /// <p>The request was rejected because the specified entity or resource could not be found.</p>
348    NotFoundException(crate::types::error::NotFoundException),
349    /// An unexpected error occurred (e.g., invalid JSON returned by the service or an unknown error code).
350    #[deprecated(note = "Matching `Unhandled` directly is not forwards compatible. Instead, match using a \
351    variable wildcard pattern and check `.code()`:
352     \
353    &nbsp;&nbsp;&nbsp;`err if err.code() == Some(\"SpecificExceptionCode\") => { /* handle the error */ }`
354     \
355    See [`ProvideErrorMetadata`](#impl-ProvideErrorMetadata-for-DecryptError) for what information is available for the error.")]
356    Unhandled(crate::error::sealed_unhandled::Unhandled),
357}
358impl DecryptError {
359    /// Creates the `DecryptError::Unhandled` variant from any error type.
360    pub fn unhandled(
361        err: impl ::std::convert::Into<::std::boxed::Box<dyn ::std::error::Error + ::std::marker::Send + ::std::marker::Sync + 'static>>,
362    ) -> Self {
363        Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
364            source: err.into(),
365            meta: ::std::default::Default::default(),
366        })
367    }
368
369    /// Creates the `DecryptError::Unhandled` variant from an [`ErrorMetadata`](::aws_smithy_types::error::ErrorMetadata).
370    pub fn generic(err: ::aws_smithy_types::error::ErrorMetadata) -> Self {
371        Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
372            source: err.clone().into(),
373            meta: err,
374        })
375    }
376    ///
377    /// Returns error metadata, which includes the error code, message,
378    /// request ID, and potentially additional information.
379    ///
380    pub fn meta(&self) -> &::aws_smithy_types::error::ErrorMetadata {
381        match self {
382            Self::DependencyTimeoutException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
383            Self::DisabledException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
384            Self::DryRunOperationException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
385            Self::IncorrectKeyException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
386            Self::InvalidCiphertextException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
387            Self::InvalidGrantTokenException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
388            Self::InvalidKeyUsageException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
389            Self::KeyUnavailableException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
390            Self::KmsInternalException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
391            Self::KmsInvalidStateException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
392            Self::NotFoundException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
393            Self::Unhandled(e) => &e.meta,
394        }
395    }
396    /// Returns `true` if the error kind is `DecryptError::DependencyTimeoutException`.
397    pub fn is_dependency_timeout_exception(&self) -> bool {
398        matches!(self, Self::DependencyTimeoutException(_))
399    }
400    /// Returns `true` if the error kind is `DecryptError::DisabledException`.
401    pub fn is_disabled_exception(&self) -> bool {
402        matches!(self, Self::DisabledException(_))
403    }
404    /// Returns `true` if the error kind is `DecryptError::DryRunOperationException`.
405    pub fn is_dry_run_operation_exception(&self) -> bool {
406        matches!(self, Self::DryRunOperationException(_))
407    }
408    /// Returns `true` if the error kind is `DecryptError::IncorrectKeyException`.
409    pub fn is_incorrect_key_exception(&self) -> bool {
410        matches!(self, Self::IncorrectKeyException(_))
411    }
412    /// Returns `true` if the error kind is `DecryptError::InvalidCiphertextException`.
413    pub fn is_invalid_ciphertext_exception(&self) -> bool {
414        matches!(self, Self::InvalidCiphertextException(_))
415    }
416    /// Returns `true` if the error kind is `DecryptError::InvalidGrantTokenException`.
417    pub fn is_invalid_grant_token_exception(&self) -> bool {
418        matches!(self, Self::InvalidGrantTokenException(_))
419    }
420    /// Returns `true` if the error kind is `DecryptError::InvalidKeyUsageException`.
421    pub fn is_invalid_key_usage_exception(&self) -> bool {
422        matches!(self, Self::InvalidKeyUsageException(_))
423    }
424    /// Returns `true` if the error kind is `DecryptError::KeyUnavailableException`.
425    pub fn is_key_unavailable_exception(&self) -> bool {
426        matches!(self, Self::KeyUnavailableException(_))
427    }
428    /// Returns `true` if the error kind is `DecryptError::KmsInternalException`.
429    pub fn is_kms_internal_exception(&self) -> bool {
430        matches!(self, Self::KmsInternalException(_))
431    }
432    /// Returns `true` if the error kind is `DecryptError::KmsInvalidStateException`.
433    pub fn is_kms_invalid_state_exception(&self) -> bool {
434        matches!(self, Self::KmsInvalidStateException(_))
435    }
436    /// Returns `true` if the error kind is `DecryptError::NotFoundException`.
437    pub fn is_not_found_exception(&self) -> bool {
438        matches!(self, Self::NotFoundException(_))
439    }
440}
441impl ::std::error::Error for DecryptError {
442    fn source(&self) -> ::std::option::Option<&(dyn ::std::error::Error + 'static)> {
443        match self {
444            Self::DependencyTimeoutException(_inner) => ::std::option::Option::Some(_inner),
445            Self::DisabledException(_inner) => ::std::option::Option::Some(_inner),
446            Self::DryRunOperationException(_inner) => ::std::option::Option::Some(_inner),
447            Self::IncorrectKeyException(_inner) => ::std::option::Option::Some(_inner),
448            Self::InvalidCiphertextException(_inner) => ::std::option::Option::Some(_inner),
449            Self::InvalidGrantTokenException(_inner) => ::std::option::Option::Some(_inner),
450            Self::InvalidKeyUsageException(_inner) => ::std::option::Option::Some(_inner),
451            Self::KeyUnavailableException(_inner) => ::std::option::Option::Some(_inner),
452            Self::KmsInternalException(_inner) => ::std::option::Option::Some(_inner),
453            Self::KmsInvalidStateException(_inner) => ::std::option::Option::Some(_inner),
454            Self::NotFoundException(_inner) => ::std::option::Option::Some(_inner),
455            Self::Unhandled(_inner) => ::std::option::Option::Some(&*_inner.source),
456        }
457    }
458}
459impl ::std::fmt::Display for DecryptError {
460    fn fmt(&self, f: &mut ::std::fmt::Formatter<'_>) -> ::std::fmt::Result {
461        match self {
462            Self::DependencyTimeoutException(_inner) => _inner.fmt(f),
463            Self::DisabledException(_inner) => _inner.fmt(f),
464            Self::DryRunOperationException(_inner) => _inner.fmt(f),
465            Self::IncorrectKeyException(_inner) => _inner.fmt(f),
466            Self::InvalidCiphertextException(_inner) => _inner.fmt(f),
467            Self::InvalidGrantTokenException(_inner) => _inner.fmt(f),
468            Self::InvalidKeyUsageException(_inner) => _inner.fmt(f),
469            Self::KeyUnavailableException(_inner) => _inner.fmt(f),
470            Self::KmsInternalException(_inner) => _inner.fmt(f),
471            Self::KmsInvalidStateException(_inner) => _inner.fmt(f),
472            Self::NotFoundException(_inner) => _inner.fmt(f),
473            Self::Unhandled(_inner) => {
474                if let ::std::option::Option::Some(code) = ::aws_smithy_types::error::metadata::ProvideErrorMetadata::code(self) {
475                    write!(f, "unhandled error ({code})")
476                } else {
477                    f.write_str("unhandled error")
478                }
479            }
480        }
481    }
482}
483impl ::aws_smithy_types::retry::ProvideErrorKind for DecryptError {
484    fn code(&self) -> ::std::option::Option<&str> {
485        ::aws_smithy_types::error::metadata::ProvideErrorMetadata::code(self)
486    }
487    fn retryable_error_kind(&self) -> ::std::option::Option<::aws_smithy_types::retry::ErrorKind> {
488        ::std::option::Option::None
489    }
490}
491impl ::aws_smithy_types::error::metadata::ProvideErrorMetadata for DecryptError {
492    fn meta(&self) -> &::aws_smithy_types::error::ErrorMetadata {
493        match self {
494            Self::DependencyTimeoutException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
495            Self::DisabledException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
496            Self::DryRunOperationException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
497            Self::IncorrectKeyException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
498            Self::InvalidCiphertextException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
499            Self::InvalidGrantTokenException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
500            Self::InvalidKeyUsageException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
501            Self::KeyUnavailableException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
502            Self::KmsInternalException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
503            Self::KmsInvalidStateException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
504            Self::NotFoundException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
505            Self::Unhandled(_inner) => &_inner.meta,
506        }
507    }
508}
509impl ::aws_smithy_runtime_api::client::result::CreateUnhandledError for DecryptError {
510    fn create_unhandled_error(
511        source: ::std::boxed::Box<dyn ::std::error::Error + ::std::marker::Send + ::std::marker::Sync + 'static>,
512        meta: ::std::option::Option<::aws_smithy_types::error::ErrorMetadata>,
513    ) -> Self {
514        Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
515            source,
516            meta: meta.unwrap_or_default(),
517        })
518    }
519}
520impl ::aws_types::request_id::RequestId for crate::operation::decrypt::DecryptError {
521    fn request_id(&self) -> Option<&str> {
522        self.meta().request_id()
523    }
524}
525
526pub use crate::operation::decrypt::_decrypt_input::DecryptInput;
527
528pub use crate::operation::decrypt::_decrypt_output::DecryptOutput;
529
530mod _decrypt_input;
531
532mod _decrypt_output;
533
534/// Builders
535pub mod builders;