GoogleKmsKeyRingImportJob class final

Factory wrapper for google_kms_key_ring_import_job.

A KeyRingImportJob can be used to create CryptoKeys and CryptoKeyVersions using pre-existing key material, generated outside of Cloud KMS. A KeyRingImportJob expires 3 days after it is created. Once expired, Cloud KMS will no longer be able to import or unwrap any key material that was wrapped with the KeyRingImportJob's public key.

~> Note: KeyRingImportJobs cannot be deleted from Google Cloud Platform. Destroying a Terraform-managed KeyRingImportJob will remove it from state but will not delete the resource from the project.

Cloud KMS key-ring import job — wrapping key used to import externally generated key material into a GoogleKmsKeyRing.

Jobs expire ~3 days after create. Terraform destroy removes the job from state only (GCP does not delete import jobs).

Example:

GoogleKmsKeyRingImportJob(
  'import',
  keyRing: ring.ref,
  importJobId: TfArg.literal('terradart-import'),
  importMethod: KmsKeyRingImportJobImportMethod.rsaOaep3072Sha1Aes256,
  protectionLevel: KmsKeyRingImportJobProtectionLevel.software,
);
Inheritance

Constructors

GoogleKmsKeyRingImportJob(String localName, {required RefTo<GoogleKmsKeyRing> keyRing, required TfArg<String> importJobId, required KmsKeyRingImportJobImportMethod importMethod, required KmsKeyRingImportJobProtectionLevel protectionLevel, TfArg<String>? deletionPolicy, LifecycleOptions? lifecycle, List<TfAddressed>? dependsOn, StackProvider? provider, TfTimeouts? timeouts})

Properties

argMap → Map<String, TfArg?>
Argument-name → TfArg map. Keys are snake_case (Terraform JSON name). Synth emits these keys directly; the factory is responsible for the camelCase → snake_case translation at construction time.
finalinherited
attestation → TfRef<List<Map<String, Object?>>>
Reference to attestation attribute.
no setter
defaultProvider → String
The provider name a block without provider uses: by default the prefix of terraformType (google for google_pubsub_topic).
no setterinherited
deletionPolicy → TfRef<String>
Reference to deletion_policy attribute.
no setter
dependsOn → List<TfAddressed>?
Optional depends_on = [...]: the resources, data sources and module calls this block waits for, e.g. dependsOn: [api, ...apiDeps]. Terraform takes whole blocks only, so an entry is never an attribute.
finalinherited
expireTime → TfRef<String>
Reference to expire_time attribute.
no setter
hashCode → int
The hash code for this object.
no setterinherited
id → TfRef<String>
Reference to id attribute.
no setter
importJobId → TfRef<String>
Reference to import_job_id attribute.
no setter
importMethod → TfRef<String>
Reference to import_method attribute.
no setter
keyRing → TfRef<String>
Reference to key_ring attribute.
no setter
kind → ResourceKind
Always ResourceKind.resource. Overridden by Data.
no setterinherited
lifecycle → LifecycleOptions?
Optional lifecycle { ... } block.
finalinherited
localName → String
User-supplied local name within a Stack.
finalinherited
name → TfRef<String>
Reference to name attribute.
no setter
protectionLevel → TfRef<String>
Reference to protection_level attribute.
no setter
provider → StackProvider?
Optional Terraform provider meta-argument: the provider configuration this block uses, e.g. the aliased GoogleProvider(alias: 'eu') the Stack registered with addProvider.
finalinherited
publicKey → TfRef<List<Map<String, Object?>>>
Reference to public_key attribute.
no setter
ref → RefTo<GoogleKmsKeyRingImportJob>
A reference to this resource, for arguments typed RefTo<GoogleKmsKeyRingImportJob>.
no setter
runtimeType → Type
A representation of the runtime type of the object.
no setterinherited
sensitiveFields → Set<String>
Field names that are @Sensitive per the IR-derived per-resource constant. Curated factories override with a baked-in static const Set<String> (file-private in v0.5+).
no setteroverride
state → TfRef<String>
Reference to state attribute.
no setter
supportsDeletionProtection → bool
Capability flag: true when this resource's underlying Terraform schema has a deletion_protection boolean attribute that the synth-time devMode flow can flip to false. Defaults to false; the codegen emitter overrides this to true for wrappers whose schema includes the attribute.
no setterinherited
terraformType → String
Terraform resource type, e.g. google_pubsub_topic.
finalinherited
tfAddress → String
Terraform address <terraformType>.<localName>, e.g. google_pubsub_topic.orders.
no setterinherited
timeouts → TfTimeouts?
Optional timeouts { ... } block: how long Terraform waits for each operation. Provider-neutral like lifecycle — synth copies the duration strings verbatim, and terraform validate decides whether this resource's schema declares the operations set here.
finalinherited

Methods

noSuchMethod(Invocation invocation) → dynamic
Invoked when a nonexistent method or property is accessed.
inherited
toString() → String
A string representation of this object.
inherited

Operators

operator ==(Object other) → bool
The equality operator.
inherited

Constants

tfType → const String