Current section

Files

Jump to
google_api_spanner lib google_api spanner v1 model policy.ex
Raw

lib/google_api/spanner/v1/model/policy.ex

# Copyright 2017 Google Inc.
#
# Licensed under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License.
# You may obtain a copy of the License at
#
# http://www.apache.org/licenses/LICENSE-2.0
#
# Unless required by applicable law or agreed to in writing, software
# distributed under the License is distributed on an "AS IS" BASIS,
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
# See the License for the specific language governing permissions and
# limitations under the License.
# NOTE: This class is auto generated by the swagger code generator program.
# https://github.com/swagger-api/swagger-codegen.git
# Do not edit the class manually.
defmodule GoogleApi.Spanner.V1.Model.Policy do
@moduledoc """
Defines an Identity and Access Management (IAM) policy. It is used to specify access control policies for Cloud Platform resources. A `Policy` consists of a list of `bindings`. A `Binding` binds a list of `members` to a `role`, where the members can be user accounts, Google groups, Google domains, and service accounts. A `role` is a named list of permissions defined by IAM. **Example** { \"bindings\": [ { \"role\": \"roles/owner\", \"members\": [ \"user:mike@example.com\", \"group:admins@example.com\", \"domain:google.com\", \"serviceAccount:my-other-app@appspot.gserviceaccount.com\", ] }, { \"role\": \"roles/viewer\", \"members\": [\"user:sean@example.com\"] } ] } For a description of IAM and its features, see the [IAM developer's guide](https://cloud.google.com/iam).
## Attributes
- auditConfigs (List[AuditConfig]): Specifies cloud audit logging configuration for this policy. Defaults to: `null`.
- bindings (List[Binding]): Associates a list of `members` to a `role`. `bindings` with no members will result in an error. Defaults to: `null`.
- etag (String): `etag` is used for optimistic concurrency control as a way to help prevent simultaneous updates of a policy from overwriting each other. It is strongly suggested that systems make use of the `etag` in the read-modify-write cycle to perform policy updates in order to avoid race conditions: An `etag` is returned in the response to `getIamPolicy`, and systems are expected to put that etag in the request to `setIamPolicy` to ensure that their change will be applied to the same version of the policy. If no `etag` is provided in the call to `setIamPolicy`, then the existing policy is overwritten blindly. Defaults to: `null`.
- iamOwned (Boolean): Defaults to: `null`.
- rules (List[Rule]): If more than one rule is specified, the rules are applied in the following manner: - All matching LOG rules are always applied. - If any DENY/DENY_WITH_LOG rule matches, permission is denied. Logging will be applied if one or more matching rule requires logging. - Otherwise, if any ALLOW/ALLOW_WITH_LOG rule matches, permission is granted. Logging will be applied if one or more matching rule requires logging. - Otherwise, if no rule applies, permission is denied. Defaults to: `null`.
- version (Integer): Version of the `Policy`. The default version is 0. Defaults to: `null`.
"""
defstruct [
:"auditConfigs",
:"bindings",
:"etag",
:"iamOwned",
:"rules",
:"version"
]
end
defimpl Poison.Decoder, for: GoogleApi.Spanner.V1.Model.Policy do
import GoogleApi.Spanner.V1.Deserializer
def decode(value, options) do
value
|> deserialize(:"auditConfigs", :list, GoogleApi.Spanner.V1.Model.AuditConfig, options)
|> deserialize(:"bindings", :list, GoogleApi.Spanner.V1.Model.Binding, options)
|> deserialize(:"rules", :list, GoogleApi.Spanner.V1.Model.Rule, options)
end
end
defimpl Poison.Encoder, for: GoogleApi.Spanner.V1.Model.Policy do
def encode(value, options) do
GoogleApi.Spanner.V1.Deserializer.serialize_non_nil(value, options)
end
end