networkfirewall library

AWS Network Firewall.

Classes

AppConstant<T>
A value the Stack hands to application code as a static const in the generated AppExports file — known when synth runs, so the app compiles against it.
AppExports
Where synth writes the Dart file application code imports: the Stack's constants, as the static const members of <name>Constants, and a typed reader of its Terraform outputs, <name>Outputs.
AttributeRef<T>
Public for sealed pattern matching, but constructor is private — only TfRef.attribute() may construct instances.
AwsNetworkfirewallContainerAssociation
Factory wrapper for aws_networkfirewall_container_association.
AwsNetworkfirewallFirewall
Factory wrapper for aws_networkfirewall_firewall.
AwsNetworkfirewallFirewallPolicy
Factory wrapper for aws_networkfirewall_firewall_policy.
AwsNetworkfirewallFirewallTransitGatewayAttachmentAccepter
Factory wrapper for aws_networkfirewall_firewall_transit_gateway_attachment_accepter.
AwsNetworkfirewallLoggingConfiguration
Factory wrapper for aws_networkfirewall_logging_configuration.
AwsNetworkfirewallResourcePolicy
Factory wrapper for aws_networkfirewall_resource_policy.
AwsNetworkfirewallRuleGroup
Factory wrapper for aws_networkfirewall_rule_group.
AwsNetworkfirewallTlsInspectionConfiguration
Factory wrapper for aws_networkfirewall_tls_inspection_configuration.
AwsNetworkfirewallVpcEndpointAssociation
Factory wrapper for aws_networkfirewall_vpc_endpoint_association.
DartDefineOutput
An output whose value is the client build's --dart-define file, registered with Stack.addDartDefineOutput.
Data
Base of every user-instantiable Terraform data block.
DataAwsNetworkfirewallFirewall
Factory wrapper for aws_networkfirewall_firewall.
DataAwsNetworkfirewallFirewallPolicy
Factory wrapper for aws_networkfirewall_firewall_policy.
DataAwsNetworkfirewallResourcePolicy
Factory wrapper for aws_networkfirewall_resource_policy.
DataRef<T>
Public for sealed pattern matching, but constructor is private — only TfRef.data() may construct instances.
EnvironmentConstant
The AppConstant.fromEnvironment choice.
GcsBackend
terraform { backend "gcs" { ... } } configuration.
IgnoreAllChanges
IgnoreChanges.all.
IgnoreAttributes
IgnoreChanges.of.
IgnoreChanges
What ignore_changes covers: every attribute, or the listed ones.
InvalidDartDefineOutput
An output of Stack.addDartDefineOutput that cannot carry what it names: an output that is not registered, is sensitive or has no environment value, two outputs read from one variable, or no output at all.
InvalidLifecycle
A lifecycle block Terraform rejects: a data source (or one of its attributes) in replaceTriggeredBy, all inside IgnoreChanges.of, or a condition with an empty error message.
InvalidMoveTarget
A moved block whose to names no resource of the Stack.
InvalidTimeout
A negative timeouts duration.
LifecycleCondition
A precondition or postcondition block: Terraform fails the plan (LifecycleCondition.pre) or the apply (LifecycleCondition.post) with errorMessage when condition is false.
LifecycleOptions
lifecycle { ... } block on a resource.
LocalBackend
terraform { backend "local" { ... } } configuration.
MissingProvider
A block needs a provider configuration the Stack does not register: the provider its type implies (google for google_pubsub_topic), the one its provider meta-argument names, or one a module call passes on.
ModuleCall
A module "<localName>" { ... } call as a Dart value.
NetworkfirewallContainerAssociationAttributeFilter
Typed helper for the container_monitoring_configuration.attribute_filter block of aws_networkfirewall_container_association (derived from provider schema).
NetworkfirewallContainerAssociationContainerMonitoringConfiguration
Typed helper for the container_monitoring_configuration block of aws_networkfirewall_container_association (derived from provider schema).
NetworkfirewallFirewallAttachment
Exactly one of transit_gateway_id, vpc_id on aws_networkfirewall_firewall: the provider rejects none and more than one, so each variant sets one of them.
NetworkfirewallFirewallAttachmentTransitGatewayId
The NetworkfirewallFirewallAttachment.transitGatewayId choice: sets transit_gateway_id.
NetworkfirewallFirewallAttachmentVpcId
The NetworkfirewallFirewallAttachment.vpcId choice: sets vpc_id.
NetworkfirewallFirewallAvailabilityZoneMapping
Typed helper for the availability_zone_mapping block of aws_networkfirewall_firewall (derived from provider schema).
NetworkfirewallFirewallEncryptionConfiguration
Typed helper for the encryption_configuration block of aws_networkfirewall_firewall (derived from provider schema).
NetworkfirewallFirewallPolicy
Typed helper for the firewall_policy block of aws_networkfirewall_firewall_policy (derived from provider schema).
NetworkfirewallFirewallPolicyActionDefinition
Typed helper for the firewall_policy.stateless_custom_action.action_definition block of aws_networkfirewall_firewall_policy (derived from provider schema).
NetworkfirewallFirewallPolicyDimension
Typed helper for the firewall_policy.stateless_custom_action.action_definition.publish_metric_action.dimension block of aws_networkfirewall_firewall_policy (derived from provider schema).
NetworkfirewallFirewallPolicyEncryptionConfiguration
Typed helper for the encryption_configuration block of aws_networkfirewall_firewall_policy (derived from provider schema).
NetworkfirewallFirewallPolicyFlowTimeouts
Typed helper for the firewall_policy.stateful_engine_options.flow_timeouts block of aws_networkfirewall_firewall_policy (derived from provider schema).
NetworkfirewallFirewallPolicyIpSet
Typed helper for the firewall_policy.policy_variables.rule_variables.ip_set block of aws_networkfirewall_firewall_policy (derived from provider schema).
NetworkfirewallFirewallPolicyOverride
Typed helper for the firewall_policy.stateful_rule_group_reference.override block of aws_networkfirewall_firewall_policy (derived from provider schema).
NetworkfirewallFirewallPolicyPublishMetricAction
Typed helper for the firewall_policy.stateless_custom_action.action_definition.publish_metric_action block of aws_networkfirewall_firewall_policy (derived from provider schema).
NetworkfirewallFirewallPolicyRuleVariables
Typed helper for the firewall_policy.policy_variables.rule_variables block of aws_networkfirewall_firewall_policy (derived from provider schema).
NetworkfirewallFirewallPolicyStatefulEngineOptions
Typed helper for the firewall_policy.stateful_engine_options block of aws_networkfirewall_firewall_policy (derived from provider schema).
NetworkfirewallFirewallPolicyStatefulRuleGroupReference
Typed helper for the firewall_policy.stateful_rule_group_reference block of aws_networkfirewall_firewall_policy (derived from provider schema).
NetworkfirewallFirewallPolicyStatelessCustomAction
Typed helper for the firewall_policy.stateless_custom_action block of aws_networkfirewall_firewall_policy (derived from provider schema).
NetworkfirewallFirewallPolicyStatelessRuleGroupReference
Typed helper for the firewall_policy.stateless_rule_group_reference block of aws_networkfirewall_firewall_policy (derived from provider schema).
NetworkfirewallFirewallPolicyVariables
Typed helper for the firewall_policy.policy_variables block of aws_networkfirewall_firewall_policy (derived from provider schema).
NetworkfirewallFirewallSubnetMapping
Typed helper for the subnet_mapping block of aws_networkfirewall_firewall (derived from provider schema).
NetworkfirewallLoggingConfiguration
Typed helper for the logging_configuration block of aws_networkfirewall_logging_configuration (derived from provider schema).
NetworkfirewallLoggingConfigurationLogDestinationConfig
Typed helper for the logging_configuration.log_destination_config block of aws_networkfirewall_logging_configuration (derived from provider schema).
NetworkfirewallRuleGroup
Typed helper for the rule_group block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupActionDefinition
Typed helper for the rule_group.rules_source.stateless_rules_and_custom_actions.custom_action.action_definition block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupCustomAction
Typed helper for the rule_group.rules_source.stateless_rules_and_custom_actions.custom_action block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupDestination
Typed helper for the rule_group.rules_source.stateless_rules_and_custom_actions.stateless_rule.rule_definition.match_attributes.destination block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupDestinationPort
Typed helper for the rule_group.rules_source.stateless_rules_and_custom_actions.stateless_rule.rule_definition.match_attributes.destination_port block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupDimension
Typed helper for the rule_group.rules_source.stateless_rules_and_custom_actions.custom_action.action_definition.publish_metric_action.dimension block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupEncryptionConfiguration
Typed helper for the encryption_configuration block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupHeader
Typed helper for the rule_group.rules_source.stateful_rule.header block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupIpSet
Typed helper for the rule_group.rule_variables.ip_sets.ip_set block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupIpSetReference
Typed helper for the rule_group.reference_sets.ip_set_references.ip_set_reference block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupIpSetReferences
Typed helper for the rule_group.reference_sets.ip_set_references block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupIpSets
Typed helper for the rule_group.rule_variables.ip_sets block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupMatchAttributes
Typed helper for the rule_group.rules_source.stateless_rules_and_custom_actions.stateless_rule.rule_definition.match_attributes block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupPortSet
Typed helper for the rule_group.rule_variables.port_sets.port_set block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupPortSets
Typed helper for the rule_group.rule_variables.port_sets block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupPublishMetricAction
Typed helper for the rule_group.rules_source.stateless_rules_and_custom_actions.custom_action.action_definition.publish_metric_action block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupReferenceSets
Typed helper for the rule_group.reference_sets block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupRuleDefinition
Typed helper for the rule_group.rules_source.stateless_rules_and_custom_actions.stateless_rule.rule_definition block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupRuleOption
Typed helper for the rule_group.rules_source.stateful_rule.rule_option block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupRulesSource
Typed helper for the rule_group.rules_source block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupRulesSourceList
Typed helper for the rule_group.rules_source.rules_source_list block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupRuleVariables
Typed helper for the rule_group.rule_variables block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupSource
Typed helper for the rule_group.rules_source.stateless_rules_and_custom_actions.stateless_rule.rule_definition.match_attributes.source block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupSourcePort
Typed helper for the rule_group.rules_source.stateless_rules_and_custom_actions.stateless_rule.rule_definition.match_attributes.source_port block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupStatefulRule
Typed helper for the rule_group.rules_source.stateful_rule block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupStatefulRuleOptions
Typed helper for the rule_group.stateful_rule_options block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupStatelessRule
Typed helper for the rule_group.rules_source.stateless_rules_and_custom_actions.stateless_rule block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupStatelessRulesAndCustomActions
Typed helper for the rule_group.rules_source.stateless_rules_and_custom_actions block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallRuleGroupTcpFlag
Typed helper for the rule_group.rules_source.stateless_rules_and_custom_actions.stateless_rule.rule_definition.match_attributes.tcp_flag block of aws_networkfirewall_rule_group (derived from provider schema).
NetworkfirewallTlsInspectionConfiguration
Typed helper for the tls_inspection_configuration block of aws_networkfirewall_tls_inspection_configuration (derived from provider schema).
NetworkfirewallTlsInspectionConfigurationCheckCertificateRevocationStatus
Typed helper for the tls_inspection_configuration.server_certificate_configuration.check_certificate_revocation_status block of aws_networkfirewall_tls_inspection_configuration (derived from provider schema).
NetworkfirewallTlsInspectionConfigurationDestination
Typed helper for the tls_inspection_configuration.server_certificate_configuration.scope.destination block of aws_networkfirewall_tls_inspection_configuration (derived from provider schema).
NetworkfirewallTlsInspectionConfigurationDestinationPorts
Typed helper for the tls_inspection_configuration.server_certificate_configuration.scope.destination_ports block of aws_networkfirewall_tls_inspection_configuration (derived from provider schema).
NetworkfirewallTlsInspectionConfigurationScope
Typed helper for the tls_inspection_configuration.server_certificate_configuration.scope block of aws_networkfirewall_tls_inspection_configuration (derived from provider schema).
NetworkfirewallTlsInspectionConfigurationServerCertificate
Typed helper for the tls_inspection_configuration.server_certificate_configuration.server_certificate block of aws_networkfirewall_tls_inspection_configuration (derived from provider schema).
NetworkfirewallTlsInspectionConfigurationServerCertificateConfiguration
Typed helper for the tls_inspection_configuration.server_certificate_configuration block of aws_networkfirewall_tls_inspection_configuration (derived from provider schema).
NetworkfirewallTlsInspectionConfigurationSource
Typed helper for the tls_inspection_configuration.server_certificate_configuration.scope.source block of aws_networkfirewall_tls_inspection_configuration (derived from provider schema).
NetworkfirewallTlsInspectionConfigurationSourcePorts
Typed helper for the tls_inspection_configuration.server_certificate_configuration.scope.source_ports block of aws_networkfirewall_tls_inspection_configuration (derived from provider schema).
NetworkfirewallVpcEndpointAssociationSubnetMapping
Typed helper for the subnet_mapping block of aws_networkfirewall_vpc_endpoint_association (derived from provider schema).
NoProviders
The Stack registers no provider, but declares resources or data sources.
ProviderConflict
Two provider registrations Terraform rejects together: two defaults of one name, a repeated alias, an alias that is not an identifier, or configurations of one name with different source / version constraints.
RefConstant<T>
The AppConstant.ref choice.
ReplaceTrigger
What lifecycle.replaceTriggeredBy lists: a resource of the Stack or an attribute getter of one. Resource and TfRef implement it; synth reports a data source or a data-source attribute as an InvalidLifecycle.
Resource
Base of every user-instantiable Terraform resource.
ResourceRef
Public for sealed pattern matching, but constructor is private — only TfRef.resource() may construct instances.
S3Backend
terraform { backend "s3" { ... } } configuration.
Sensitive<T>
What an argument Terraform marks sensitive takes: a variable, an expression or an attribute getter — a value Terraform resolves, never a Dart literal that would be written into main.tf.json.
SensitiveLiteral
A sensitive field is set to a literal, which would write the secret in plain text into main.tf.json.
Stack
User-extended IaC composition root.
StackBackend
Lightweight backend hook. Core ships GcsBackend, S3Backend, and LocalBackend; anything else implements this interface in the caller. The Stack only stores the value and exposes a discriminator for synth's terraform { backend ... } emitter.
StackProvider
Coordination interface between Stack (in this package) and concrete providers (e.g. GoogleProvider in terradart_google). Concrete providers implement every getter using their baked-in constants from Stage 2 codegen.
SynthIssue
One reason a Stack cannot be synthesized.
SynthResult
Bundle returned by StackSynth.synth.
TfAddressed
Anything that exposes a Terraform address, e.g. google_pubsub_topic.orders.
TfArg<T>
A Terraform argument: a Dart-side literal, a reference to another block's attribute (TfRef), a variable or a raw expression.
TfArgExpression<T>
A raw Terraform expression — the tf.json template string, verbatim.
TfArgLiteral<T>
TfArgVariable<T>
TfCollectionType
list(...), set(...) or map(...).
TfMoved
One moved { from = ... to = ... } block: the state object at from now belongs to the resource at to, so a rename does not become a destroy-and-create.
TfObjectType
object({ ... }).
TfOptionalType
optional(<type>[, <default>]).
TfOutput<T>
An output "<name>" { value = ... } block, registered with Stack.addOutput.
TfPrimitiveType
string, number, bool or any.
TfRef<T>
A Terraform-side reference: an attribute of a resource (AttributeRef) or a data source (DataRef), or a whole resource (ResourceRef).
TfTimeouts
timeouts { ... } on a resource or data source: how long Terraform waits for each operation before giving up.
TfTupleType
tuple([...]).
TfType
A Terraform type constraint: string, list(number), object({ name = string }).
TfVariable
One variable "<name>" { ... } declaration.
UndeclaredVariable
A TfArg.variable or var.<name> in an expression names a variable the Stack does not declare.
UnregisteredReference
A block references another block that was never registered on the Stack: built, but not passed to add(...) / addModule(...).
UnresolvableConstant
An AppConstant.ref whose value is not known at synth: the attribute is not set to a literal, is sensitive, does not match the constant's type, or belongs to a block that is not registered.
ValueConstant<T>
The AppConstant.value choice.

Enums

ResourceKind
Whether a Stack entry is a resource block or a data block in Terraform JSON.

Extension Types

NetworkfirewallContainerAssociationType
Networkfirewall Container Association enum for type.
NetworkfirewallFirewallEnabledAnalysisTypes
Networkfirewall Firewall Enabled Analysis enum for enabled_analysis_types.
NetworkfirewallFirewallIpAddressType
ip_address_type — derived from the provider schema description.
NetworkfirewallFirewallPolicyAction
action — derived from the provider schema description.
NetworkfirewallFirewallPolicyRuleOrder
rule_order — derived from the provider schema description.
NetworkfirewallFirewallPolicyStreamExceptionPolicy
stream_exception_policy — derived from the provider schema description.
NetworkfirewallFirewallPolicyType
type — derived from the provider schema description.
NetworkfirewallFirewallType
type — derived from the provider schema description.
NetworkfirewallLoggingConfigurationLogDestinationType
log_destination_type — derived from the provider schema description.
NetworkfirewallLoggingConfigurationLogType
log_type — derived from the provider schema description.
NetworkfirewallRuleGroupAction
action — derived from the provider schema description.
NetworkfirewallRuleGroupDirection
direction — derived from the provider schema description.
NetworkfirewallRuleGroupEncryptionConfigurationType
type — derived from the provider schema description.
NetworkfirewallRuleGroupFlags
flags — derived from the provider schema description.
NetworkfirewallRuleGroupGeneratedRulesType
generated_rules_type — derived from the provider schema description.
NetworkfirewallRuleGroupMasks
masks — derived from the provider schema description.
NetworkfirewallRuleGroupProtocol
protocol — derived from the provider schema description.
NetworkfirewallRuleGroupRuleOrder
rule_order — derived from the provider schema description.
NetworkfirewallRuleGroupTargetTypes
target_types — derived from the provider schema description.
NetworkfirewallRuleGroupType
Networkfirewall Rule Group enum for type.
NetworkfirewallTlsInspectionConfigurationRevokedStatusAction
revoked_status_action — derived from the provider schema description.
NetworkfirewallTlsInspectionConfigurationUnknownStatusAction
unknown_status_action — derived from the provider schema description.
NetworkfirewallVpcEndpointAssociationIpAddressType
ip_address_type — derived from the provider schema description.
OutputEnvironment
The environment Stack.outputEnvironment returns: each variable and its value, in registration order.
RefTo
A reference to a resource of type R, for an argument that names another resource (network, vpc_id, role_arn, ...).

Extensions

RefToList on TfArg<List<RefTo<R>>>
A list-valued reference argument (security_group_ids, subnet_ids): a literal list of RefTos, or one value that is the whole list (TfArg.variable('subnet_ids'), TfArg.expression(...)).
TerraformDurationExt on Duration
Converts a Dart Duration into a Terraform duration string ("604800s").

Exceptions / Errors

DuplicateModuleError
A ModuleCall registered twice under one name.
DuplicateResourceError
Thrown by Stack.add when an entry with the same (kind, terraformType, localName) triple is registered twice.
SynthException
Thrown by Stack.synth() and Stack.writeTo() when the Stack has one or more SynthIssues. Nothing is written.