networkfirewall library
AWS Network Firewall.
Classes
-
AppConstant<
T> -
A value the Stack hands to application code as a
static constin the generated AppExports file — known when synth runs, so the app compiles against it. - AppExports
-
Where synth writes the Dart file application code imports: the Stack's
constants, as the
static constmembers of<name>Constants, and a typed reader of its Terraform outputs,<name>Outputs. -
AttributeRef<
T> -
Public for sealed pattern matching, but constructor is private — only
TfRef.attribute()may construct instances. - AwsNetworkfirewallContainerAssociation
-
Factory wrapper for
aws_networkfirewall_container_association. - AwsNetworkfirewallFirewall
-
Factory wrapper for
aws_networkfirewall_firewall. - AwsNetworkfirewallFirewallPolicy
-
Factory wrapper for
aws_networkfirewall_firewall_policy. - AwsNetworkfirewallFirewallTransitGatewayAttachmentAccepter
-
Factory wrapper for
aws_networkfirewall_firewall_transit_gateway_attachment_accepter. - AwsNetworkfirewallLoggingConfiguration
-
Factory wrapper for
aws_networkfirewall_logging_configuration. - AwsNetworkfirewallResourcePolicy
-
Factory wrapper for
aws_networkfirewall_resource_policy. - AwsNetworkfirewallRuleGroup
-
Factory wrapper for
aws_networkfirewall_rule_group. - AwsNetworkfirewallTlsInspectionConfiguration
-
Factory wrapper for
aws_networkfirewall_tls_inspection_configuration. - AwsNetworkfirewallVpcEndpointAssociation
-
Factory wrapper for
aws_networkfirewall_vpc_endpoint_association. - DartDefineOutput
-
An
outputwhose value is the client build's--dart-definefile, registered withStack.addDartDefineOutput. - Data
-
Base of every user-instantiable Terraform
datablock. - DataAwsNetworkfirewallFirewall
-
Factory wrapper for
aws_networkfirewall_firewall. - DataAwsNetworkfirewallFirewallPolicy
-
Factory wrapper for
aws_networkfirewall_firewall_policy. - DataAwsNetworkfirewallResourcePolicy
-
Factory wrapper for
aws_networkfirewall_resource_policy. -
DataRef<
T> -
Public for sealed pattern matching, but constructor is private — only
TfRef.data()may construct instances. - EnvironmentConstant
- The AppConstant.fromEnvironment choice.
- GcsBackend
-
terraform { backend "gcs" { ... } }configuration. - IgnoreAllChanges
- IgnoreChanges.all.
- IgnoreAttributes
- IgnoreChanges.of.
- IgnoreChanges
-
What
ignore_changescovers: every attribute, or the listed ones. - InvalidDartDefineOutput
-
An output of
Stack.addDartDefineOutputthat cannot carry what it names: an output that is not registered, is sensitive or has no environment value, two outputs read from one variable, or no output at all. - InvalidLifecycle
-
A
lifecycleblock Terraform rejects: a data source (or one of its attributes) inreplaceTriggeredBy,allinside IgnoreChanges.of, or a condition with an empty error message. - InvalidMoveTarget
-
A
movedblock whosetonames no resource of the Stack. - InvalidTimeout
-
A negative
timeoutsduration. - LifecycleCondition
-
A
preconditionorpostconditionblock: Terraform fails the plan (LifecycleCondition.pre) or the apply (LifecycleCondition.post) with errorMessage when condition is false. - LifecycleOptions
-
lifecycle { ... }block on a resource. - LocalBackend
-
terraform { backend "local" { ... } }configuration. - MissingProvider
-
A block needs a provider configuration the Stack does not register:
the provider its type implies (
googleforgoogle_pubsub_topic), the one itsprovidermeta-argument names, or one a module call passes on. - ModuleCall
-
A
module "<localName>" { ... }call as a Dart value. - NetworkfirewallContainerAssociationAttributeFilter
-
Typed helper for the
container_monitoring_configuration.attribute_filterblock ofaws_networkfirewall_container_association(derived from provider schema). - NetworkfirewallContainerAssociationContainerMonitoringConfiguration
-
Typed helper for the
container_monitoring_configurationblock ofaws_networkfirewall_container_association(derived from provider schema). - NetworkfirewallFirewallAttachment
-
Exactly one of
transit_gateway_id,vpc_idonaws_networkfirewall_firewall: the provider rejects none and more than one, so each variant sets one of them. - NetworkfirewallFirewallAttachmentTransitGatewayId
-
The NetworkfirewallFirewallAttachment.transitGatewayId choice: sets
transit_gateway_id. - NetworkfirewallFirewallAttachmentVpcId
-
The NetworkfirewallFirewallAttachment.vpcId choice: sets
vpc_id. - NetworkfirewallFirewallAvailabilityZoneMapping
-
Typed helper for the
availability_zone_mappingblock ofaws_networkfirewall_firewall(derived from provider schema). - NetworkfirewallFirewallEncryptionConfiguration
-
Typed helper for the
encryption_configurationblock ofaws_networkfirewall_firewall(derived from provider schema). - NetworkfirewallFirewallPolicy
-
Typed helper for the
firewall_policyblock ofaws_networkfirewall_firewall_policy(derived from provider schema). - NetworkfirewallFirewallPolicyActionDefinition
-
Typed helper for the
firewall_policy.stateless_custom_action.action_definitionblock ofaws_networkfirewall_firewall_policy(derived from provider schema). - NetworkfirewallFirewallPolicyDimension
-
Typed helper for the
firewall_policy.stateless_custom_action.action_definition.publish_metric_action.dimensionblock ofaws_networkfirewall_firewall_policy(derived from provider schema). - NetworkfirewallFirewallPolicyEncryptionConfiguration
-
Typed helper for the
encryption_configurationblock ofaws_networkfirewall_firewall_policy(derived from provider schema). - NetworkfirewallFirewallPolicyFlowTimeouts
-
Typed helper for the
firewall_policy.stateful_engine_options.flow_timeoutsblock ofaws_networkfirewall_firewall_policy(derived from provider schema). - NetworkfirewallFirewallPolicyIpSet
-
Typed helper for the
firewall_policy.policy_variables.rule_variables.ip_setblock ofaws_networkfirewall_firewall_policy(derived from provider schema). - NetworkfirewallFirewallPolicyOverride
-
Typed helper for the
firewall_policy.stateful_rule_group_reference.overrideblock ofaws_networkfirewall_firewall_policy(derived from provider schema). - NetworkfirewallFirewallPolicyPublishMetricAction
-
Typed helper for the
firewall_policy.stateless_custom_action.action_definition.publish_metric_actionblock ofaws_networkfirewall_firewall_policy(derived from provider schema). - NetworkfirewallFirewallPolicyRuleVariables
-
Typed helper for the
firewall_policy.policy_variables.rule_variablesblock ofaws_networkfirewall_firewall_policy(derived from provider schema). - NetworkfirewallFirewallPolicyStatefulEngineOptions
-
Typed helper for the
firewall_policy.stateful_engine_optionsblock ofaws_networkfirewall_firewall_policy(derived from provider schema). - NetworkfirewallFirewallPolicyStatefulRuleGroupReference
-
Typed helper for the
firewall_policy.stateful_rule_group_referenceblock ofaws_networkfirewall_firewall_policy(derived from provider schema). - NetworkfirewallFirewallPolicyStatelessCustomAction
-
Typed helper for the
firewall_policy.stateless_custom_actionblock ofaws_networkfirewall_firewall_policy(derived from provider schema). - NetworkfirewallFirewallPolicyStatelessRuleGroupReference
-
Typed helper for the
firewall_policy.stateless_rule_group_referenceblock ofaws_networkfirewall_firewall_policy(derived from provider schema). - NetworkfirewallFirewallPolicyVariables
-
Typed helper for the
firewall_policy.policy_variablesblock ofaws_networkfirewall_firewall_policy(derived from provider schema). - NetworkfirewallFirewallSubnetMapping
-
Typed helper for the
subnet_mappingblock ofaws_networkfirewall_firewall(derived from provider schema). - NetworkfirewallLoggingConfiguration
-
Typed helper for the
logging_configurationblock ofaws_networkfirewall_logging_configuration(derived from provider schema). - NetworkfirewallLoggingConfigurationLogDestinationConfig
-
Typed helper for the
logging_configuration.log_destination_configblock ofaws_networkfirewall_logging_configuration(derived from provider schema). - NetworkfirewallRuleGroup
-
Typed helper for the
rule_groupblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupActionDefinition
-
Typed helper for the
rule_group.rules_source.stateless_rules_and_custom_actions.custom_action.action_definitionblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupCustomAction
-
Typed helper for the
rule_group.rules_source.stateless_rules_and_custom_actions.custom_actionblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupDestination
-
Typed helper for the
rule_group.rules_source.stateless_rules_and_custom_actions.stateless_rule.rule_definition.match_attributes.destinationblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupDestinationPort
-
Typed helper for the
rule_group.rules_source.stateless_rules_and_custom_actions.stateless_rule.rule_definition.match_attributes.destination_portblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupDimension
-
Typed helper for the
rule_group.rules_source.stateless_rules_and_custom_actions.custom_action.action_definition.publish_metric_action.dimensionblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupEncryptionConfiguration
-
Typed helper for the
encryption_configurationblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupHeader
-
Typed helper for the
rule_group.rules_source.stateful_rule.headerblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupIpSet
-
Typed helper for the
rule_group.rule_variables.ip_sets.ip_setblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupIpSetReference
-
Typed helper for the
rule_group.reference_sets.ip_set_references.ip_set_referenceblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupIpSetReferences
-
Typed helper for the
rule_group.reference_sets.ip_set_referencesblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupIpSets
-
Typed helper for the
rule_group.rule_variables.ip_setsblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupMatchAttributes
-
Typed helper for the
rule_group.rules_source.stateless_rules_and_custom_actions.stateless_rule.rule_definition.match_attributesblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupPortSet
-
Typed helper for the
rule_group.rule_variables.port_sets.port_setblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupPortSets
-
Typed helper for the
rule_group.rule_variables.port_setsblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupPublishMetricAction
-
Typed helper for the
rule_group.rules_source.stateless_rules_and_custom_actions.custom_action.action_definition.publish_metric_actionblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupReferenceSets
-
Typed helper for the
rule_group.reference_setsblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupRuleDefinition
-
Typed helper for the
rule_group.rules_source.stateless_rules_and_custom_actions.stateless_rule.rule_definitionblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupRuleOption
-
Typed helper for the
rule_group.rules_source.stateful_rule.rule_optionblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupRulesSource
-
Typed helper for the
rule_group.rules_sourceblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupRulesSourceList
-
Typed helper for the
rule_group.rules_source.rules_source_listblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupRuleVariables
-
Typed helper for the
rule_group.rule_variablesblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupSource
-
Typed helper for the
rule_group.rules_source.stateless_rules_and_custom_actions.stateless_rule.rule_definition.match_attributes.sourceblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupSourcePort
-
Typed helper for the
rule_group.rules_source.stateless_rules_and_custom_actions.stateless_rule.rule_definition.match_attributes.source_portblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupStatefulRule
-
Typed helper for the
rule_group.rules_source.stateful_ruleblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupStatefulRuleOptions
-
Typed helper for the
rule_group.stateful_rule_optionsblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupStatelessRule
-
Typed helper for the
rule_group.rules_source.stateless_rules_and_custom_actions.stateless_ruleblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupStatelessRulesAndCustomActions
-
Typed helper for the
rule_group.rules_source.stateless_rules_and_custom_actionsblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallRuleGroupTcpFlag
-
Typed helper for the
rule_group.rules_source.stateless_rules_and_custom_actions.stateless_rule.rule_definition.match_attributes.tcp_flagblock ofaws_networkfirewall_rule_group(derived from provider schema). - NetworkfirewallTlsInspectionConfiguration
-
Typed helper for the
tls_inspection_configurationblock ofaws_networkfirewall_tls_inspection_configuration(derived from provider schema). - NetworkfirewallTlsInspectionConfigurationCheckCertificateRevocationStatus
-
Typed helper for the
tls_inspection_configuration.server_certificate_configuration.check_certificate_revocation_statusblock ofaws_networkfirewall_tls_inspection_configuration(derived from provider schema). - NetworkfirewallTlsInspectionConfigurationDestination
-
Typed helper for the
tls_inspection_configuration.server_certificate_configuration.scope.destinationblock ofaws_networkfirewall_tls_inspection_configuration(derived from provider schema). - NetworkfirewallTlsInspectionConfigurationDestinationPorts
-
Typed helper for the
tls_inspection_configuration.server_certificate_configuration.scope.destination_portsblock ofaws_networkfirewall_tls_inspection_configuration(derived from provider schema). - NetworkfirewallTlsInspectionConfigurationScope
-
Typed helper for the
tls_inspection_configuration.server_certificate_configuration.scopeblock ofaws_networkfirewall_tls_inspection_configuration(derived from provider schema). - NetworkfirewallTlsInspectionConfigurationServerCertificate
-
Typed helper for the
tls_inspection_configuration.server_certificate_configuration.server_certificateblock ofaws_networkfirewall_tls_inspection_configuration(derived from provider schema). - NetworkfirewallTlsInspectionConfigurationServerCertificateConfiguration
-
Typed helper for the
tls_inspection_configuration.server_certificate_configurationblock ofaws_networkfirewall_tls_inspection_configuration(derived from provider schema). - NetworkfirewallTlsInspectionConfigurationSource
-
Typed helper for the
tls_inspection_configuration.server_certificate_configuration.scope.sourceblock ofaws_networkfirewall_tls_inspection_configuration(derived from provider schema). - NetworkfirewallTlsInspectionConfigurationSourcePorts
-
Typed helper for the
tls_inspection_configuration.server_certificate_configuration.scope.source_portsblock ofaws_networkfirewall_tls_inspection_configuration(derived from provider schema). - NetworkfirewallVpcEndpointAssociationSubnetMapping
-
Typed helper for the
subnet_mappingblock ofaws_networkfirewall_vpc_endpoint_association(derived from provider schema). - NoProviders
- The Stack registers no provider, but declares resources or data sources.
- ProviderConflict
- Two provider registrations Terraform rejects together: two defaults of one name, a repeated alias, an alias that is not an identifier, or configurations of one name with different source / version constraints.
-
RefConstant<
T> - The AppConstant.ref choice.
- ReplaceTrigger
-
What
lifecycle.replaceTriggeredBylists: a resource of the Stack or an attribute getter of one.Resourceand TfRef implement it; synth reports a data source or a data-source attribute as anInvalidLifecycle. - Resource
- Base of every user-instantiable Terraform resource.
- ResourceRef
-
Public for sealed pattern matching, but constructor is private — only
TfRef.resource()may construct instances. - S3Backend
-
terraform { backend "s3" { ... } }configuration. -
Sensitive<
T> -
What an argument Terraform marks sensitive takes: a variable, an
expression or an attribute getter — a value Terraform resolves, never a
Dart literal that would be written into
main.tf.json. - SensitiveLiteral
-
A sensitive field is set to a literal, which would write the secret in
plain text into
main.tf.json. - Stack
- User-extended IaC composition root.
- StackBackend
-
Lightweight backend hook. Core ships
GcsBackend,S3Backend, andLocalBackend; anything else implements this interface in the caller. TheStackonly stores the value and exposes a discriminator for synth'sterraform { backend ... }emitter. - StackProvider
-
Coordination interface between
Stack(in this package) and concrete providers (e.g.GoogleProviderinterradart_google). Concrete providers implement every getter using their baked-in constants from Stage 2 codegen. - SynthIssue
- One reason a Stack cannot be synthesized.
- SynthResult
-
Bundle returned by
StackSynth.synth. - TfAddressed
-
Anything that exposes a Terraform address, e.g.
google_pubsub_topic.orders. -
TfArg<
T> - A Terraform argument: a Dart-side literal, a reference to another block's attribute (TfRef), a variable or a raw expression.
-
TfArgExpression<
T> - A raw Terraform expression — the tf.json template string, verbatim.
-
TfArgLiteral<
T> -
TfArgVariable<
T> - TfCollectionType
-
list(...),set(...)ormap(...). - TfMoved
-
One
moved { from = ... to = ... }block: the state object at from now belongs to the resource at to, so a rename does not become a destroy-and-create. - TfObjectType
-
object({ ... }). - TfOptionalType
-
optional(<type>[, <default>]). -
TfOutput<
T> -
An
output "<name>" { value = ... }block, registered withStack.addOutput. - TfPrimitiveType
-
string,number,boolorany. -
TfRef<
T> - A Terraform-side reference: an attribute of a resource (AttributeRef) or a data source (DataRef), or a whole resource (ResourceRef).
- TfTimeouts
-
timeouts { ... }on a resource or data source: how long Terraform waits for each operation before giving up. - TfTupleType
-
tuple([...]). - TfType
-
A Terraform type constraint:
string,list(number),object({ name = string }). - TfVariable
-
One
variable "<name>" { ... }declaration. - UndeclaredVariable
-
A
TfArg.variableorvar.<name>in an expression names a variable the Stack does not declare. - UnregisteredReference
-
A block references another block that was never registered on the
Stack: built, but not passed to
add(...)/addModule(...). - UnresolvableConstant
-
An
AppConstant.refwhose value is not known at synth: the attribute is not set to a literal, is sensitive, does not match the constant's type, or belongs to a block that is not registered. -
ValueConstant<
T> - The AppConstant.value choice.
Enums
- ResourceKind
-
Whether a Stack entry is a
resourceblock or adatablock in Terraform JSON.
Extension Types
- NetworkfirewallContainerAssociationType
-
Networkfirewall Container Association enum for
type. - NetworkfirewallFirewallEnabledAnalysisTypes
-
Networkfirewall Firewall Enabled Analysis enum for
enabled_analysis_types. - NetworkfirewallFirewallIpAddressType
-
ip_address_type— derived from the provider schema description. - NetworkfirewallFirewallPolicyAction
-
action— derived from the provider schema description. - NetworkfirewallFirewallPolicyRuleOrder
-
rule_order— derived from the provider schema description. - NetworkfirewallFirewallPolicyStreamExceptionPolicy
-
stream_exception_policy— derived from the provider schema description. - NetworkfirewallFirewallPolicyType
-
type— derived from the provider schema description. - NetworkfirewallFirewallType
-
type— derived from the provider schema description. - NetworkfirewallLoggingConfigurationLogDestinationType
-
log_destination_type— derived from the provider schema description. - NetworkfirewallLoggingConfigurationLogType
-
log_type— derived from the provider schema description. - NetworkfirewallRuleGroupAction
-
action— derived from the provider schema description. - NetworkfirewallRuleGroupDirection
-
direction— derived from the provider schema description. - NetworkfirewallRuleGroupEncryptionConfigurationType
-
type— derived from the provider schema description. - NetworkfirewallRuleGroupFlags
-
flags— derived from the provider schema description. - NetworkfirewallRuleGroupGeneratedRulesType
-
generated_rules_type— derived from the provider schema description. - NetworkfirewallRuleGroupMasks
-
masks— derived from the provider schema description. - NetworkfirewallRuleGroupProtocol
-
protocol— derived from the provider schema description. - NetworkfirewallRuleGroupRuleOrder
-
rule_order— derived from the provider schema description. - NetworkfirewallRuleGroupTargetTypes
-
target_types— derived from the provider schema description. - NetworkfirewallRuleGroupType
-
Networkfirewall Rule Group enum for
type. - NetworkfirewallTlsInspectionConfigurationRevokedStatusAction
-
revoked_status_action— derived from the provider schema description. - NetworkfirewallTlsInspectionConfigurationUnknownStatusAction
-
unknown_status_action— derived from the provider schema description. - NetworkfirewallVpcEndpointAssociationIpAddressType
-
ip_address_type— derived from the provider schema description. - OutputEnvironment
-
The environment
Stack.outputEnvironmentreturns: each variable and its value, in registration order. - RefTo
-
A reference to a resource of type
R, for an argument that names another resource (network,vpc_id,role_arn, ...).
Extensions
-
RefToList
on TfArg<
List< RefTo< >R> > -
A list-valued reference argument (
security_group_ids,subnet_ids): a literal list of RefTos, or one value that is the whole list (TfArg.variable('subnet_ids'),TfArg.expression(...)). - TerraformDurationExt on Duration
- Converts a Dart Duration into a Terraform duration string ("604800s").
Exceptions / Errors
- DuplicateModuleError
-
A
ModuleCallregistered twice under one name. - DuplicateResourceError
-
Thrown by
Stack.addwhen an entry with the same(kind, terraformType, localName)triple is registered twice. - SynthException
-
Thrown by
Stack.synth()andStack.writeTo()when the Stack has one or more SynthIssues. Nothing is written.