compute library

Compute Engine resources: instances, addresses, firewalls, networks, subnetworks, hierarchical firewall policies with rules, organization Cloud Armor policies, BYOIP advertised/delegated prefixes (apply- excluded), Hyperdisk Storage Pools (pool capacity is never_apply), Cross-Site / wire groups (Partner Cross-Cloud Interconnect $17+/h is never_apply), and packet mirroring (mirrored GiBy is never_apply).

Classes

AppConstant<T>
A value the Stack hands to application code as a static const in the generated AppExports file — known when synth runs, so the app compiles against it.
AppExports
Where synth writes the Dart file application code imports: the Stack's constants, as the static const members of <name>Constants, and a typed reader of its Terraform outputs, <name>Outputs.
AttributeRef<T>
Public for sealed pattern matching, but constructor is private — only TfRef.attribute() may construct instances.
ComputeAutoscalerAutoscalingPolicy
autoscaling_policy block — the heart of the autoscaler. Combines a replica range (minReplicas..maxReplicas) with one or more signal sub-blocks (cpuUtilization, loadBalancingUtilization, metrics) and optional smoothing controls (cooldownPeriod, scaleInControl, scalingSchedules).
ComputeAutoscalerCpuUtilization
cpu_utilization block. Drives autoscaling against the average CPU usage of instances in the target MIG.
ComputeAutoscalerLoadBalancingUtilization
load_balancing_utilization block. Drives autoscaling against backend-capacity utilization (HTTP(S) load balancer with utilization balancing mode).
ComputeAutoscalerMetric
One metric entry — a custom Stackdriver / Cloud Monitoring signal. Exactly one of target / singleInstanceAssignment is typically set; the GCP API enforces the constraint at apply time.
ComputeAutoscalerScaleInControl
scale_in_control block. Caps how aggressively the autoscaler may shed replicas inside a timeWindowSec-second sliding window — useful for stateful workloads that need warm capacity to drain gracefully.
ComputeAutoscalerScaleInReplicas
max_scaled_in_replicas sub-block. Express the cap as either a fixed count or a percent of the current MIG size; the schema requires at least one of the two.
ComputeAutoscalerScalingSchedule
One scaling_schedules entry. The Dart Map<String, _> key becomes the schedule's name on the wire (the schema models this as a set of blocks with name baked in).
ComputeBackendBucketCdnBypassCacheOnRequestHeader
Cache-bypass rule keyed on a request header name (one entry in cdn_policy.bypass_cache_on_request_headers, max 5 entries).
ComputeBackendBucketCdnCacheKeyPolicy
cdn_policy.cache_key_policy (max_items=1). Buckets only expose the queryStringWhitelist / includeHttpHeaders axes — unlike BackendServiceCdnCacheKeyPolicy, there is no host / protocol / query-string-as-a-whole toggle.
ComputeBackendBucketCdnNegativeCachingPolicy
One row in cdn_policy.negative_caching_policy.
ComputeBackendBucketCdnPolicy
cdn_policy block — Cloud CDN configuration for this backend bucket. Only honored when GoogleComputeBackendBucket.enableCdn is true. Distinct type from BackendServiceCdnPolicy: the shape is similar but the schema has bucket-specific quirks (no cacheKeyPolicy.includeHost / includeProtocol / includeQueryString — buckets only expose the queryStringWhitelist / includeHttpHeaders axes).
ComputeBackendBucketParams
params block — currently only carries resource-manager tags applied at creation time. Immutable: changes force replacement.
ComputeBackendServiceAwsV4Authentication
Typed helper for the security_settings.aws_v4_authentication block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceBackend
Typed helper for the backend block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceBackendCustomMetrics
Typed helper for the backend.custom_metrics block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceBaseEjectionTime
Typed helper for the outlier_detection.base_ejection_time block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceBypassCacheOnRequestHeaders
Typed helper for the cdn_policy.bypass_cache_on_request_headers block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceCacheKeyPolicy
Typed helper for the cdn_policy.cache_key_policy block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceCdnPolicy
Typed helper for the cdn_policy block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceCircuitBreakers
Typed helper for the circuit_breakers block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceConsistentHash
Typed helper for the consistent_hash block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceCustomMetrics
Typed helper for the custom_metrics block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceCustomPolicy
Typed helper for the locality_lb_policies.custom_policy block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceHttpCookie
Typed helper for the consistent_hash.http_cookie block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceIap
Typed helper for the iap block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceInterval
Typed helper for the outlier_detection.interval block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceLocalityLbPolicies
Exactly one of policy, custom_policy on the locality_lb_policies block of google_compute_backend_service: the provider rejects none and more than one, so each variant sets one of them.
ComputeBackendServiceLocalityLbPoliciesCustomPolicy
The ComputeBackendServiceLocalityLbPolicies.customPolicy choice: sets custom_policy.
ComputeBackendServiceLocalityLbPoliciesPolicy
The ComputeBackendServiceLocalityLbPolicies.policy choice: sets policy.
ComputeBackendServiceLogConfig
Typed helper for the log_config block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceMaxStreamDuration
Typed helper for the max_stream_duration block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceNegativeCachingPolicy
Typed helper for the cdn_policy.negative_caching_policy block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceOauth2ClientId
At most one of oauth2_client_id, oauth2_client_id_wo on the iap block of google_compute_backend_service: the provider rejects more than one, so each variant sets one of them and a null choice sets none.
ComputeBackendServiceOauth2ClientIdChoice
The ComputeBackendServiceOauth2ClientId.oauth2ClientId choice: sets oauth2_client_id.
ComputeBackendServiceOauth2ClientIdWo
The ComputeBackendServiceOauth2ClientId.oauth2ClientIdWo choice: sets oauth2_client_id_wo.
ComputeBackendServiceOauth2ClientSecret
At most one of oauth2_client_secret, oauth2_client_secret_wo on the iap block of google_compute_backend_service: the provider rejects more than one, so each variant sets one of them and a null choice sets none.
ComputeBackendServiceOauth2ClientSecretChoice
The ComputeBackendServiceOauth2ClientSecret.oauth2ClientSecret choice: sets oauth2_client_secret.
ComputeBackendServiceOauth2ClientSecretWo
The ComputeBackendServiceOauth2ClientSecret.oauth2ClientSecretWo choice: sets oauth2_client_secret_wo.
ComputeBackendServiceOutlierDetection
Typed helper for the outlier_detection block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceParams
Typed helper for the params block of google_compute_backend_service (derived from provider schema).
ComputeBackendServicePolicy
Typed helper for the locality_lb_policies.policy block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceRequestHeaders
Typed helper for the log_config.request_headers block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceResponseHeaders
Typed helper for the log_config.response_headers block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceSecuritySettings
Typed helper for the security_settings block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceStrongSessionAffinityCookie
Typed helper for the strong_session_affinity_cookie block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceSubjectAltNames
Typed helper for the tls_settings.subject_alt_names block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceTlsSettings
Typed helper for the tls_settings block of google_compute_backend_service (derived from provider schema).
ComputeBackendServiceTtl
Typed helper for the strong_session_affinity_cookie.ttl block of google_compute_backend_service (derived from provider schema). Shared by every block of this shape in the resource.
ComputeBulkPerInstanceConfigInstances
Typed helper for the instances block of google_compute_bulk_per_instance_config (derived from provider schema).
ComputeDiskAsyncPrimaryDisk
Typed helper for the async_primary_disk block of google_compute_disk (derived from provider schema).
ComputeDiskAsyncReplicationSecondaryDisk
Typed helper for the secondary_disk block of google_compute_disk_async_replication (derived from provider schema).
ComputeDiskEncryptionKey
Typed helper for the disk_encryption_key block of google_compute_disk (derived from provider schema).
ComputeDiskGuestOsFeature
One entry of the guest_os_features block (repeatable list).
ComputeDiskIamBindingCondition
Typed helper for the condition block of google_compute_disk_iam_binding (derived from provider schema).
ComputeDiskIamMemberCondition
Typed helper for the condition block of google_compute_disk_iam_member (derived from provider schema).
ComputeDiskParams
Typed helper for the params block of google_compute_disk (derived from provider schema).
ComputeDiskSourceImageEncryptionKey
Typed helper for the source_image_encryption_key block of google_compute_disk (derived from provider schema).
ComputeDiskSourceSnapshotEncryptionKey
Typed helper for the source_snapshot_encryption_key block of google_compute_disk (derived from provider schema).
ComputeExternalVpnGatewayInterface
Typed helper for the interface block of google_compute_external_vpn_gateway (derived from provider schema).
ComputeExternalVpnGatewayParams
Typed helper for the params block of google_compute_external_vpn_gateway (derived from provider schema).
ComputeFirewallAllowPolicy
ComputeFirewallAllowRule
One allow entry: an IP protocol plus optional list of port specs.
ComputeFirewallDenyPolicy
ComputeFirewallDenyRule
One deny entry. Same shape as ComputeFirewallAllowRule; kept separate so caller intent is obvious at the call site (allow: vs deny: lists are mutually exclusive per GCP API).
ComputeFirewallLogConfig
Firewall logging configuration (single block, max_items=1). Setting this enables Cloud Logging export for matched traffic.
ComputeFirewallParams
Typed helper for the params block of google_compute_firewall (derived from provider schema).
ComputeFirewallPolicyIamBindingCondition
Typed helper for the condition block of google_compute_firewall_policy_iam_binding (derived from provider schema).
ComputeFirewallPolicyIamMemberCondition
Typed helper for the condition block of google_compute_firewall_policy_iam_member (derived from provider schema).
ComputeFirewallPolicyRuleLayer4Configs
Typed helper for the match.layer4_configs block of google_compute_firewall_policy_rule (derived from provider schema).
ComputeFirewallPolicyRuleMatch
Typed helper for the match block of google_compute_firewall_policy_rule (derived from provider schema).
ComputeFirewallPolicyRuleSrcSecureTags
Typed helper for the match.src_secure_tags block of google_compute_firewall_policy_rule (derived from provider schema).
ComputeFirewallPolicyRuleTargetSecureTags
Typed helper for the target_secure_tags block of google_compute_firewall_policy_rule (derived from provider schema).
ComputeFirewallPolicyWithRulesLayer4Config
Typed helper for the rule.match.layer4_config block of google_compute_firewall_policy_with_rules (derived from provider schema).
ComputeFirewallPolicyWithRulesMatch
Typed helper for the rule.match block of google_compute_firewall_policy_with_rules (derived from provider schema).
ComputeFirewallPolicyWithRulesRule
Typed helper for the rule block of google_compute_firewall_policy_with_rules (derived from provider schema).
ComputeFirewallPolicyWithRulesSrcSecureTag
Typed helper for the rule.match.src_secure_tag block of google_compute_firewall_policy_with_rules (derived from provider schema).
ComputeFirewallPolicyWithRulesTargetSecureTag
Typed helper for the rule.target_secure_tag block of google_compute_firewall_policy_with_rules (derived from provider schema).
ComputeFirewallRulePolicy
ComputeForwardingRuleServiceDirectoryRegistration
One entry in service_directory_registrations. The schema caps the list at one entry; populated only for forwarding rules whose loadBalancingScheme is INTERNAL or INTERNAL_MANAGED so other consumers in the same project can resolve the rule by Service Directory name.
ComputeGlobalForwardingRuleMetadataFilter
One entry in metadata_filters. Only consulted by Traffic Director (loadBalancingScheme: INTERNAL_SELF_MANAGED) forwarding rules — silently ignored for every other scheme. xDS clients present node metadata in their config request; this filter gates which routing config gets returned to which client.
ComputeGlobalForwardingRuleMetadataFilterLabel
One metadata_filters[*].filter_labels[*] entry. Both name and value are required by the provider schema; lengths are capped at 1024 characters by the API (not enforced here).
ComputeGlobalForwardingRuleServiceDirectoryRegistration
One entry in service_directory_registrations. The schema caps the list at one entry; populated only for Private Service Connect forwarding rules that target Google APIs (so other consumers in the same project can resolve the rule by Service Directory name).
ComputeGlobalVmExtensionPolicyExtensionPolicies
Typed helper for the extension_policies block of google_compute_global_vm_extension_policy (derived from provider schema).
ComputeGlobalVmExtensionPolicyInstanceSelectors
Typed helper for the instance_selectors block of google_compute_global_vm_extension_policy (derived from provider schema).
ComputeGlobalVmExtensionPolicyLabelSelector
Typed helper for the instance_selectors.label_selector block of google_compute_global_vm_extension_policy (derived from provider schema).
ComputeGlobalVmExtensionPolicyPlan
Exactly one of name, predefined_rollout_plan on the rollout_operation.rollout_input block of google_compute_global_vm_extension_policy: the provider rejects none and more than one, so each variant sets one of them.
ComputeGlobalVmExtensionPolicyPlanName
The ComputeGlobalVmExtensionPolicyPlan.name choice: sets name.
ComputeGlobalVmExtensionPolicyPredefinedRolloutPlan
The ComputeGlobalVmExtensionPolicyPlan.predefinedRolloutPlan choice: sets predefined_rollout_plan.
ComputeGlobalVmExtensionPolicyRolloutInput
Typed helper for the rollout_operation.rollout_input block of google_compute_global_vm_extension_policy (derived from provider schema).
ComputeGlobalVmExtensionPolicyRolloutOperation
Typed helper for the rollout_operation block of google_compute_global_vm_extension_policy (derived from provider schema).
ComputeHaVpnGatewayParams
Typed helper for the params block of google_compute_ha_vpn_gateway (derived from provider schema).
ComputeHaVpnGatewayVpnInterfaces
Typed helper for the vpn_interfaces block of google_compute_ha_vpn_gateway (derived from provider schema).
ComputeHealthCheckGrpcHealthCheckConfig
grpc_health_check block. Probes via the gRPC Health Checking Protocol (grpc.health.v1.Health/Check).
ComputeHealthCheckGrpcTlsHealthCheckConfig
grpc_tls_health_check block. Probes via the gRPC Health Checking Protocol over TLS.
ComputeHealthCheckHttp2HealthCheckConfig
http2_health_check block.
ComputeHealthCheckHttpHealthCheckConfig
http_health_check block. Set this (and only this) to make the resource an HTTP health check.
ComputeHealthCheckHttpsHealthCheckConfig
https_health_check block.
ComputeHealthCheckLogConfig
log_config block. Toggles Cloud Logging export of probe results.
ComputeHealthCheckProtocol
Mutually exclusive per-protocol config block. Each concrete *Config type below is a sealed variant with its own blockKey.
ComputeHealthCheckSslHealthCheckConfig
ssl_health_check block. Pure SSL/TLS probe.
ComputeHealthCheckTcpHealthCheckConfig
tcp_health_check block. Pure TCP connect-or-payload probe.
ComputeImageDbs
Typed helper for the shielded_instance_initial_state.dbs block of google_compute_image (derived from provider schema).
ComputeImageDbxs
Typed helper for the shielded_instance_initial_state.dbxs block of google_compute_image (derived from provider schema).
ComputeImageEncryptionKey
Typed helper for the image_encryption_key block of google_compute_image (derived from provider schema).
ComputeImageGuestOsFeatures
Typed helper for the guest_os_features block of google_compute_image (derived from provider schema).
ComputeImageIamBindingCondition
Typed helper for the condition block of google_compute_image_iam_binding (derived from provider schema).
ComputeImageIamMemberCondition
Typed helper for the condition block of google_compute_image_iam_member (derived from provider schema).
ComputeImageKeks
Typed helper for the shielded_instance_initial_state.keks block of google_compute_image (derived from provider schema).
ComputeImageParams
Typed helper for the params block of google_compute_image (derived from provider schema).
ComputeImagePk
Typed helper for the shielded_instance_initial_state.pk block of google_compute_image (derived from provider schema).
ComputeImageRawDisk
Typed helper for the raw_disk block of google_compute_image (derived from provider schema).
ComputeImageShieldedInstanceInitialState
Typed helper for the shielded_instance_initial_state block of google_compute_image (derived from provider schema).
ComputeImageSource
Image source for GoogleComputeImage. Sealed so callers pick exactly one of source_disk / source_image / source_snapshot / raw_disk at the type level (MM documents mutual exclusion in prose; there is no exactly_one_of metadata on this resource).
ComputeImageSourceDisk
Create the image from a Persistent Disk (name or self-link).
ComputeImageSourceDiskEncryptionKey
Typed helper for the source_disk_encryption_key block of google_compute_image (derived from provider schema).
ComputeImageSourceImage
Create the image from another Image (name or self-link).
ComputeImageSourceImageEncryptionKey
Typed helper for the source_image_encryption_key block of google_compute_image (derived from provider schema).
ComputeImageSourceRawDisk
Import the image from a tarball in Cloud Storage (raw_disk).
ComputeImageSourceSnapshot
Create the image from a Persistent Disk Snapshot (name or self-link).
ComputeImageSourceSnapshotEncryptionKey
Typed helper for the source_snapshot_encryption_key block of google_compute_image (derived from provider schema).
ComputeInstanceAccessConfig
Typed helper for the network_interface.access_config block of google_compute_instance (derived from provider schema).
ComputeInstanceAdvancedMachineFeatures
Typed helper for the advanced_machine_features block of google_compute_instance (derived from provider schema).
ComputeInstanceAliasIpRange
Typed helper for the network_interface.alias_ip_range block of google_compute_instance (derived from provider schema).
ComputeInstanceAttachedDisk
Typed helper for the attached_disk block of google_compute_instance (derived from provider schema).
ComputeInstanceBootDisk
Typed helper for the boot_disk block of google_compute_instance (derived from provider schema).
ComputeInstanceConfidentialInstanceConfig
Typed helper for the confidential_instance_config block of google_compute_instance (derived from provider schema).
ComputeInstanceEncryptionKey
Typed helper for the instance_encryption_key block of google_compute_instance (derived from provider schema).
ComputeInstanceFromTemplateAccessConfig
Typed helper for the network_interface.access_config block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateAdvancedMachineFeatures
Typed helper for the advanced_machine_features block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateAliasIpRange
Typed helper for the network_interface.alias_ip_range block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateAttachedDisk
Typed helper for the attached_disk block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateBootDisk
Typed helper for the boot_disk block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateConfidentialInstanceConfig
Typed helper for the confidential_instance_config block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateGuestAccelerator
Typed helper for the guest_accelerator block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateInitializeParams
Typed helper for the boot_disk.initialize_params block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateInstanceEncryptionKey
Typed helper for the instance_encryption_key block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateIpv6AccessConfig
Typed helper for the network_interface.ipv6_access_config block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateLocalSsdRecoveryTimeout
Typed helper for the scheduling.local_ssd_recovery_timeout block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateMaxRunDuration
Typed helper for the scheduling.max_run_duration block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateNetworkInterface
Typed helper for the network_interface block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateNetworkPerformanceConfig
Typed helper for the network_performance_config block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateNodeAffinities
Typed helper for the scheduling.node_affinities block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateOnInstanceStopAction
Typed helper for the scheduling.on_instance_stop_action block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateParams
Typed helper for the params block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateReservationAffinity
Typed helper for the reservation_affinity block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateScheduling
Typed helper for the scheduling block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateScratchDisk
Typed helper for the scratch_disk block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateServiceAccount
Typed helper for the service_account block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateShieldedInstanceConfig
Typed helper for the shielded_instance_config block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateSourceImageEncryptionKey
Typed helper for the boot_disk.initialize_params.source_image_encryption_key block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateSourceSnapshotEncryptionKey
Typed helper for the boot_disk.initialize_params.source_snapshot_encryption_key block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateSpecificReservation
Typed helper for the reservation_affinity.specific_reservation block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceFromTemplateWorkloadIdentityConfig
Typed helper for the workload_identity_config block of google_compute_instance_from_template (derived from provider schema).
ComputeInstanceGroupManagerAllInstancesConfig
all_instances_config block. Patches labels and metadata onto every VM the MIG manages, overlaying the instance template's values.
ComputeInstanceGroupManagerAutoHealingPolicy
auto_healing_policies block. When a VM fails its healthCheck for longer than the initial-delay window, the MIG recreates it. Schema marks both fields as required.
ComputeInstanceGroupManagerInstanceLifecyclePolicy
instance_lifecycle_policy block — fine-grained behavior on failures and template updates.
ComputeInstanceGroupManagerNamedPort
One entry in namedPorts. Backend services that reference this MIG by port_name look up the matching port number here.
ComputeInstanceGroupManagerResourcePolicies
resource_policies block — wires the MIG to a google_compute_resource_policy workload policy.
ComputeInstanceGroupManagerStandbyPolicy
standby_policy block — controls how the MIG resumes VMs from a standby pool during scale-out.
ComputeInstanceGroupManagerStatefulDisk
One entry in statefulDisks. Marks a disk attached at deviceName as stateful — the MIG preserves the disk across VM recreates per deleteRule.
ComputeInstanceGroupManagerStatefulIp
One entry in statefulInternalIps / statefulExternalIps. Both blocks share the same shape.
ComputeInstanceGroupManagerTargetSizePolicy
One entry in targetSizePolicies. Configures whether the MIG creates VMs individually or all at once to reach GoogleComputeInstanceGroupManager.targetSize.
ComputeInstanceGroupManagerUpdatePolicy
update_policy block. Drives how the MIG rolls a new ComputeInstanceGroupManagerVersion across its members.
ComputeInstanceGroupManagerVersion
One entry in versions. Each version pins an instanceTemplate (a google_compute_instance_template self-link, typically a within-batch sibling) and optionally caps how many instances run that version via targetSize.
ComputeInstanceGroupManagerVersionTargetSize
version.target_size (max_items=1). Exactly one of fixed or percent should be set.
ComputeInstanceGroupNamedPort
Typed helper for the named_port block of google_compute_instance_group (derived from provider schema).
ComputeInstanceGuestAccelerator
Typed helper for the guest_accelerator block of google_compute_instance (derived from provider schema).
ComputeInstanceIamBindingCondition
Typed helper for the condition block of google_compute_instance_iam_binding (derived from provider schema).
ComputeInstanceIamMemberCondition
Typed helper for the condition block of google_compute_instance_iam_member (derived from provider schema).
ComputeInstanceInitializeParams
Typed helper for the boot_disk.initialize_params block of google_compute_instance (derived from provider schema).
ComputeInstanceIpv6AccessConfig
Typed helper for the network_interface.ipv6_access_config block of google_compute_instance (derived from provider schema).
ComputeInstanceLocalSsdRecoveryTimeout
Typed helper for the scheduling.local_ssd_recovery_timeout block of google_compute_instance (derived from provider schema).
ComputeInstanceMaxRunDuration
Typed helper for the scheduling.max_run_duration block of google_compute_instance (derived from provider schema).
ComputeInstanceNetworkInterface
Typed helper for the network_interface block of google_compute_instance (derived from provider schema).
ComputeInstanceNetworkPerformanceConfig
Typed helper for the network_performance_config block of google_compute_instance (derived from provider schema).
ComputeInstanceNodeAffinities
Typed helper for the scheduling.node_affinities block of google_compute_instance (derived from provider schema).
ComputeInstanceOnInstanceStopAction
Typed helper for the scheduling.on_instance_stop_action block of google_compute_instance (derived from provider schema).
ComputeInstanceParams
Typed helper for the params block of google_compute_instance (derived from provider schema).
ComputeInstanceReservationAffinity
Typed helper for the reservation_affinity block of google_compute_instance (derived from provider schema).
ComputeInstanceScheduling
Typed helper for the scheduling block of google_compute_instance (derived from provider schema).
ComputeInstanceScratchDisk
Typed helper for the scratch_disk block of google_compute_instance (derived from provider schema).
ComputeInstanceServiceAccount
Typed helper for the service_account block of google_compute_instance (derived from provider schema).
ComputeInstanceSettingsMetadata
Typed helper for the metadata block of google_compute_instance_settings (derived from provider schema).
ComputeInstanceShieldedInstanceConfig
Typed helper for the shielded_instance_config block of google_compute_instance (derived from provider schema).
ComputeInstanceSourceImageEncryptionKey
Typed helper for the boot_disk.initialize_params.source_image_encryption_key block of google_compute_instance (derived from provider schema).
ComputeInstanceSourceSnapshotEncryptionKey
Typed helper for the boot_disk.initialize_params.source_snapshot_encryption_key block of google_compute_instance (derived from provider schema).
ComputeInstanceSpecificReservation
Typed helper for the reservation_affinity.specific_reservation block of google_compute_instance (derived from provider schema).
ComputeInstanceTemplateAccessConfig
Typed helper for the network_interface.access_config block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateAdvancedMachineFeatures
Typed helper for the advanced_machine_features block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateAliasIpRange
Typed helper for the network_interface.alias_ip_range block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateConfidentialInstanceConfig
Typed helper for the confidential_instance_config block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateDisk
Typed helper for the disk block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateDiskEncryptionKey
Typed helper for the disk.disk_encryption_key block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateGuestAccelerator
Typed helper for the guest_accelerator block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateIamBindingCondition
Typed helper for the condition block of google_compute_instance_template_iam_binding (derived from provider schema).
ComputeInstanceTemplateIamMemberCondition
Typed helper for the condition block of google_compute_instance_template_iam_member (derived from provider schema).
ComputeInstanceTemplateIpv6AccessConfig
Typed helper for the network_interface.ipv6_access_config block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateLocalSsdRecoveryTimeout
Typed helper for the scheduling.local_ssd_recovery_timeout block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateMaxRunDuration
Typed helper for the scheduling.max_run_duration block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateNetworkInterface
Typed helper for the network_interface block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateNetworkPerformanceConfig
Typed helper for the network_performance_config block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateNodeAffinities
Typed helper for the scheduling.node_affinities block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateOnInstanceStopAction
Typed helper for the scheduling.on_instance_stop_action block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateReservationAffinity
Typed helper for the reservation_affinity block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateScheduling
Typed helper for the scheduling block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateServiceAccount
Typed helper for the service_account block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateShieldedInstanceConfig
Typed helper for the shielded_instance_config block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateSourceImageEncryptionKey
Typed helper for the disk.source_image_encryption_key block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateSourceSnapshotEncryptionKey
Typed helper for the disk.source_snapshot_encryption_key block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateSpecificReservation
Typed helper for the reservation_affinity.specific_reservation block of google_compute_instance_template (derived from provider schema).
ComputeInstanceTemplateWorkloadIdentityConfig
Typed helper for the workload_identity_config block of google_compute_instance_template (derived from provider schema).
ComputeInstanceWorkloadIdentityConfig
Typed helper for the workload_identity_config block of google_compute_instance (derived from provider schema).
ComputeInstantSnapshotIamBindingCondition
Typed helper for the condition block of google_compute_instant_snapshot_iam_binding (derived from provider schema).
ComputeInstantSnapshotIamMemberCondition
Typed helper for the condition block of google_compute_instant_snapshot_iam_member (derived from provider schema).
ComputeInstantSnapshotParams
Typed helper for the params block of google_compute_instant_snapshot (derived from provider schema).
ComputeInterconnectAttachmentApplianceMappings
Typed helper for the l2_forwarding.appliance_mappings block of google_compute_interconnect_attachment (derived from provider schema).
ComputeInterconnectAttachmentGeneveHeader
Typed helper for the l2_forwarding.geneve_header block of google_compute_interconnect_attachment (derived from provider schema).
ComputeInterconnectAttachmentGroupAttachments
Typed helper for the attachments block of google_compute_interconnect_attachment_group (derived from provider schema).
ComputeInterconnectAttachmentGroupIntent
Typed helper for the intent block of google_compute_interconnect_attachment_group (derived from provider schema).
ComputeInterconnectAttachmentInnerVlanToApplianceMappings
Typed helper for the l2_forwarding.appliance_mappings.inner_vlan_to_appliance_mappings block of google_compute_interconnect_attachment (derived from provider schema).
ComputeInterconnectAttachmentL2Forwarding
Typed helper for the l2_forwarding block of google_compute_interconnect_attachment (derived from provider schema).
ComputeInterconnectAttachmentParams
Typed helper for the params block of google_compute_interconnect_attachment (derived from provider schema).
ComputeInterconnectGroupIntent
Typed helper for the intent block of google_compute_interconnect_group (derived from provider schema).
ComputeInterconnectGroupInterconnects
Typed helper for the interconnects block of google_compute_interconnect_group (derived from provider schema).
ComputeInterconnectMacsec
Typed helper for the macsec block of google_compute_interconnect (derived from provider schema).
ComputeInterconnectParams
Typed helper for the params block of google_compute_interconnect (derived from provider schema).
ComputeInterconnectPreSharedKeys
Typed helper for the macsec.pre_shared_keys block of google_compute_interconnect (derived from provider schema).
ComputeManagedSslCertificateConfig
managed block payload (single block, max_items=1). Carries the list of domains Google should issue the certificate for.
ComputeNetworkEndpoints
Typed helper for the network_endpoints block of google_compute_network_endpoints (derived from provider schema).
ComputeNetworkFirewallPolicyIamBindingCondition
Typed helper for the condition block of google_compute_network_firewall_policy_iam_binding (derived from provider schema).
ComputeNetworkFirewallPolicyIamMemberCondition
Typed helper for the condition block of google_compute_network_firewall_policy_iam_member (derived from provider schema).
ComputeNetworkFirewallPolicyRuleLayer4Configs
Typed helper for the match.layer4_configs block of google_compute_network_firewall_policy_rule (derived from provider schema).
ComputeNetworkFirewallPolicyRuleMatch
Typed helper for the match block of google_compute_network_firewall_policy_rule (derived from provider schema).
ComputeNetworkFirewallPolicyRuleSrcSecureTags
Typed helper for the match.src_secure_tags block of google_compute_network_firewall_policy_rule (derived from provider schema).
ComputeNetworkFirewallPolicyRuleTargetSecureTags
Typed helper for the target_secure_tags block of google_compute_network_firewall_policy_rule (derived from provider schema).
ComputeNetworkFirewallPolicyWithRulesLayer4Config
Typed helper for the rule.match.layer4_config block of google_compute_network_firewall_policy_with_rules (derived from provider schema).
ComputeNetworkFirewallPolicyWithRulesMatch
Typed helper for the rule.match block of google_compute_network_firewall_policy_with_rules (derived from provider schema).
ComputeNetworkFirewallPolicyWithRulesRule
Typed helper for the rule block of google_compute_network_firewall_policy_with_rules (derived from provider schema).
ComputeNetworkFirewallPolicyWithRulesSrcSecureTag
Typed helper for the rule.match.src_secure_tag block of google_compute_network_firewall_policy_with_rules (derived from provider schema).
ComputeNetworkFirewallPolicyWithRulesTargetSecureTag
Typed helper for the rule.target_secure_tag block of google_compute_network_firewall_policy_with_rules (derived from provider schema).
ComputeNetworkParams
Typed helper for the params block of google_compute_network (derived from provider schema).
ComputeNodeGroupAutoscalingPolicy
Typed helper for the autoscaling_policy block of google_compute_node_group (derived from provider schema).
ComputeNodeGroupMaintenanceWindow
Typed helper for the maintenance_window block of google_compute_node_group (derived from provider schema).
ComputeNodeGroupProjectMap
Typed helper for the share_settings.project_map block of google_compute_node_group (derived from provider schema).
ComputeNodeGroupShareSettings
Typed helper for the share_settings block of google_compute_node_group (derived from provider schema).
ComputeNodeTemplateAccelerators
Typed helper for the accelerators block of google_compute_node_template (derived from provider schema).
ComputeNodeTemplateDisks
Typed helper for the disks block of google_compute_node_template (derived from provider schema).
ComputeNodeTemplateNodeType
At most one of node_type, node_type_flexibility on google_compute_node_template: the provider rejects more than one, so each variant sets one of them and a null choice sets none.
ComputeNodeTemplateNodeTypeChoice
The ComputeNodeTemplateNodeType.nodeType choice: sets node_type.
ComputeNodeTemplateNodeTypeFlexibility
Typed helper for the node_type_flexibility block of google_compute_node_template (derived from provider schema).
ComputeNodeTemplateNodeTypeFlexibilityChoice
The ComputeNodeTemplateNodeType.nodeTypeFlexibility choice: sets node_type_flexibility.
ComputeNodeTemplateServerBinding
Typed helper for the server_binding block of google_compute_node_template (derived from provider schema).
ComputeOrganizationSecurityPolicyAdvancedOptionsConfig
Typed helper for the advanced_options_config block of google_compute_organization_security_policy (derived from provider schema).
ComputeOrganizationSecurityPolicyJsonCustomConfig
Typed helper for the advanced_options_config.json_custom_config block of google_compute_organization_security_policy (derived from provider schema).
ComputeOrganizationSecurityPolicyRuleConfig
Typed helper for the match.config block of google_compute_organization_security_policy_rule (derived from provider schema).
ComputeOrganizationSecurityPolicyRuleExclusion
Typed helper for the preconfigured_waf_config.exclusion block of google_compute_organization_security_policy_rule (derived from provider schema).
ComputeOrganizationSecurityPolicyRuleExpr
Typed helper for the match.expr block of google_compute_organization_security_policy_rule (derived from provider schema).
ComputeOrganizationSecurityPolicyRuleHeaderAction
Typed helper for the header_action block of google_compute_organization_security_policy_rule (derived from provider schema).
ComputeOrganizationSecurityPolicyRuleMatch
Typed helper for the match block of google_compute_organization_security_policy_rule (derived from provider schema).
ComputeOrganizationSecurityPolicyRulePreconfiguredWafConfig
Typed helper for the preconfigured_waf_config block of google_compute_organization_security_policy_rule (derived from provider schema).
ComputeOrganizationSecurityPolicyRuleRedirectOptions
Typed helper for the redirect_options block of google_compute_organization_security_policy_rule (derived from provider schema).
ComputeOrganizationSecurityPolicyRuleRequestCookie
Typed helper for the preconfigured_waf_config.exclusion.request_cookie block of google_compute_organization_security_policy_rule (derived from provider schema).
ComputeOrganizationSecurityPolicyRuleRequestHeader
Typed helper for the preconfigured_waf_config.exclusion.request_header block of google_compute_organization_security_policy_rule (derived from provider schema).
ComputeOrganizationSecurityPolicyRuleRequestHeadersToAdds
Typed helper for the header_action.request_headers_to_adds block of google_compute_organization_security_policy_rule (derived from provider schema).
ComputeOrganizationSecurityPolicyRuleRequestQueryParam
Typed helper for the preconfigured_waf_config.exclusion.request_query_param block of google_compute_organization_security_policy_rule (derived from provider schema).
ComputeOrganizationSecurityPolicyRuleRequestUri
Typed helper for the preconfigured_waf_config.exclusion.request_uri block of google_compute_organization_security_policy_rule (derived from provider schema).
ComputePacketMirroringCollectorIlb
Typed helper for the collector_ilb block of google_compute_packet_mirroring (derived from provider schema).
ComputePacketMirroringFilter
Typed helper for the filter block of google_compute_packet_mirroring (derived from provider schema).
ComputePacketMirroringInstances
Typed helper for the mirrored_resources.instances block of google_compute_packet_mirroring (derived from provider schema).
ComputePacketMirroringMirroredResources
Typed helper for the mirrored_resources block of google_compute_packet_mirroring (derived from provider schema).
ComputePacketMirroringNetwork
Typed helper for the network block of google_compute_packet_mirroring (derived from provider schema).
ComputePacketMirroringSubnetworks
Typed helper for the mirrored_resources.subnetworks block of google_compute_packet_mirroring (derived from provider schema).
ComputePerInstanceConfigDisk
Typed helper for the preserved_state.disk block of google_compute_per_instance_config (derived from provider schema).
ComputePerInstanceConfigExternalIp
Typed helper for the preserved_state.external_ip block of google_compute_per_instance_config (derived from provider schema).
ComputePerInstanceConfigInternalIp
Typed helper for the preserved_state.internal_ip block of google_compute_per_instance_config (derived from provider schema).
ComputePerInstanceConfigIpAddress
Typed helper for the preserved_state.external_ip.ip_address block of google_compute_per_instance_config (derived from provider schema). Shared by every block of this shape in the resource.
ComputePerInstanceConfigPreservedState
Typed helper for the preserved_state block of google_compute_per_instance_config (derived from provider schema).
ComputePreviewFeatureRolloutInput
Typed helper for the rollout_operation.rollout_input block of google_compute_preview_feature (derived from provider schema).
ComputePreviewFeatureRolloutOperation
Typed helper for the rollout_operation block of google_compute_preview_feature (derived from provider schema).
ComputeRegionAutoscalerAutoscalingPolicy
autoscaling_policy block — the heart of the autoscaler. Combines a replica range (minReplicas..maxReplicas) with one or more signal sub-blocks (cpuUtilization, loadBalancingUtilization, metrics) and optional smoothing controls (cooldownPeriod, scaleInControl, scalingSchedules).
ComputeRegionAutoscalerCpuUtilization
cpu_utilization block. Drives autoscaling against the average CPU usage of instances in the target regional MIG.
ComputeRegionAutoscalerLoadBalancingUtilization
load_balancing_utilization block. Drives autoscaling against backend-capacity utilization (HTTP(S) load balancer with utilization balancing mode).
ComputeRegionAutoscalerMetric
One metric entry — a custom Stackdriver / Cloud Monitoring signal. Exactly one of target / singleInstanceAssignment is typically set; the GCP API enforces the constraint at apply time.
ComputeRegionAutoscalerScaleInControl
scale_in_control block. Caps how aggressively the autoscaler may shed replicas inside a timeWindowSec-second sliding window — useful for stateful workloads that need warm capacity to drain gracefully.
ComputeRegionAutoscalerScaleInReplicas
max_scaled_in_replicas sub-block. Express the cap as either a fixed count or a percent of the current MIG size; the schema requires at least one of the two.
ComputeRegionAutoscalerScalingSchedule
One scaling_schedules entry. The Dart Map<String, _> key becomes the schedule's name on the wire (the schema models this as a set of blocks with name baked in).
ComputeRegionBackendServiceBackend
Typed helper for the backend block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceBackendCustomMetrics
Typed helper for the backend.custom_metrics block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceBaseEjectionTime
Typed helper for the outlier_detection.base_ejection_time block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceCacheKeyPolicy
Typed helper for the cdn_policy.cache_key_policy block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceCdnPolicy
Typed helper for the cdn_policy block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceCircuitBreakers
Typed helper for the circuit_breakers block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceConnectionTrackingPolicy
Typed helper for the connection_tracking_policy block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceConsistentHash
Typed helper for the consistent_hash block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceCustomMetrics
Typed helper for the custom_metrics block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceFailoverPolicy
Typed helper for the failover_policy block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceHaPolicy
Typed helper for the ha_policy block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceHttpCookie
Typed helper for the consistent_hash.http_cookie block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceIap
Typed helper for the iap block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceInterval
Typed helper for the outlier_detection.interval block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceLeader
Typed helper for the ha_policy.leader block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceLogConfig
Typed helper for the log_config block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceNegativeCachingPolicy
Typed helper for the cdn_policy.negative_caching_policy block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceNetworkEndpoint
Typed helper for the ha_policy.leader.network_endpoint block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceNetworkPassThroughLbTrafficPolicy
Typed helper for the network_pass_through_lb_traffic_policy block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceOutlierDetection
Typed helper for the outlier_detection block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceParams
Typed helper for the params block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceRequestHeaders
Typed helper for the log_config.request_headers block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceResponseHeaders
Typed helper for the log_config.response_headers block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceStrongSessionAffinityCookie
Typed helper for the strong_session_affinity_cookie block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceSubjectAltNames
Typed helper for the tls_settings.subject_alt_names block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceTlsSettings
Typed helper for the tls_settings block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionBackendServiceTtl
Typed helper for the strong_session_affinity_cookie.ttl block of google_compute_region_backend_service (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionBackendServiceZonalAffinity
Typed helper for the network_pass_through_lb_traffic_policy.zonal_affinity block of google_compute_region_backend_service (derived from provider schema).
ComputeRegionCommitmentLicenseResource
Typed helper for the license_resource block of google_compute_region_commitment (derived from provider schema).
ComputeRegionCommitmentParams
Typed helper for the params block of google_compute_region_commitment (derived from provider schema).
ComputeRegionCommitmentResources
Typed helper for the resources block of google_compute_region_commitment (derived from provider schema).
ComputeRegionDiskAsyncPrimaryDisk
Typed helper for the async_primary_disk block of google_compute_region_disk (derived from provider schema).
ComputeRegionDiskEncryptionKey
Typed helper for the disk_encryption_key block of google_compute_region_disk (derived from provider schema).
ComputeRegionDiskGuestOsFeature
One entry of the guest_os_features block (repeatable list).
ComputeRegionDiskIamBindingCondition
Typed helper for the condition block of google_compute_region_disk_iam_binding (derived from provider schema).
ComputeRegionDiskIamMemberCondition
Typed helper for the condition block of google_compute_region_disk_iam_member (derived from provider schema).
ComputeRegionDiskSourceImageEncryptionKey
Typed helper for the source_image_encryption_key block of google_compute_region_disk (derived from provider schema).
ComputeRegionDiskSourceSnapshotEncryptionKey
Typed helper for the source_snapshot_encryption_key block of google_compute_region_disk (derived from provider schema).
ComputeRegionHealthCheckGrpcHealthCheckConfig
grpc_health_check block. Probes via the gRPC Health Checking Protocol (grpc.health.v1.Health/Check).
ComputeRegionHealthCheckGrpcTlsHealthCheckConfig
grpc_tls_health_check block. Probes via the gRPC Health Checking Protocol over TLS.
ComputeRegionHealthCheckHttp2HealthCheckConfig
http2_health_check block.
ComputeRegionHealthCheckHttpHealthCheckConfig
http_health_check block. Set this (and only this) to make the resource an HTTP health check.
ComputeRegionHealthCheckHttpsHealthCheckConfig
https_health_check block.
ComputeRegionHealthCheckLogConfig
log_config block. Toggles Cloud Logging export of probe results.
ComputeRegionHealthCheckProtocol
ComputeRegionHealthCheckSslHealthCheckConfig
ssl_health_check block. Pure SSL/TLS probe.
ComputeRegionHealthCheckTcpHealthCheckConfig
tcp_health_check block. Pure TCP connect-or-payload probe.
ComputeRegionInstanceGroupManagerAllInstancesConfig
all_instances_config block. Patches labels and metadata onto every VM the MIG manages, overlaying the instance template's values.
ComputeRegionInstanceGroupManagerAutoHealingPolicy
auto_healing_policies block. When a VM fails its healthCheck for longer than the initial-delay window, the MIG recreates it. Schema marks both fields as required.
ComputeRegionInstanceGroupManagerInstanceFlexibilityPolicy
instance_flexibility_policy block — regional only. Lets the MIG pick from multiple machine types when creating new VMs, instead of the single machine type set on the instance template.
ComputeRegionInstanceGroupManagerInstanceLifecyclePolicy
instance_lifecycle_policy block — fine-grained behavior on failures and template updates.
ComputeRegionInstanceGroupManagerInstanceSelection
One entry in ComputeRegionInstanceGroupManagerInstanceFlexibilityPolicy.instanceSelections.
ComputeRegionInstanceGroupManagerNamedPort
One entry in namedPorts. Backend services that reference this MIG by port_name look up the matching port number here.
ComputeRegionInstanceGroupManagerResourcePolicies
resource_policies block — wires the MIG to a google_compute_resource_policy workload policy.
ComputeRegionInstanceGroupManagerStandbyPolicy
standby_policy block — controls how the MIG resumes VMs from a standby pool during scale-out.
ComputeRegionInstanceGroupManagerStatefulDisk
One entry in statefulDisks. Marks a disk attached at deviceName as stateful — the MIG preserves the disk across VM recreates per deleteRule. Note: cross-zone instance redistribution must be disabled (set ComputeRegionInstanceGroupManagerUpdatePolicy.instanceRedistributionType to RegionInstanceGroupManagerInstanceRedistributionType.none) before updating stateful disks on an existing regional MIG.
ComputeRegionInstanceGroupManagerStatefulIp
One entry in statefulInternalIps / statefulExternalIps. Both blocks share the same shape.
ComputeRegionInstanceGroupManagerTargetSizePolicy
One entry in targetSizePolicies. Configures whether the MIG creates VMs individually or all at once to reach GoogleComputeRegionInstanceGroupManager.targetSize.
ComputeRegionInstanceGroupManagerUpdatePolicy
update_policy block. Drives how the regional MIG rolls a new ComputeRegionInstanceGroupManagerVersion across its members and how aggressively it rebalances across distributionPolicyZones.
ComputeRegionInstanceGroupManagerVersion
One entry in versions. Each version pins an instanceTemplate (a google_compute_instance_template self-link, typically a within-batch sibling) and optionally caps how many instances run that version via targetSize.
ComputeRegionInstanceGroupManagerVersionTargetSize
version.target_size (max_items=1). Exactly one of fixed or percent should be set.
ComputeRegionInstanceTemplateAccessConfig
Typed helper for the network_interface.access_config block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateAdvancedMachineFeatures
Typed helper for the advanced_machine_features block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateAliasIpRange
Typed helper for the network_interface.alias_ip_range block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateConfidentialInstanceConfig
Typed helper for the confidential_instance_config block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateDisk
Typed helper for the disk block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateDiskEncryptionKey
Typed helper for the disk.disk_encryption_key block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateGuestAccelerator
Typed helper for the guest_accelerator block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateIpv6AccessConfig
Typed helper for the network_interface.ipv6_access_config block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateLocalSsdRecoveryTimeout
Typed helper for the scheduling.local_ssd_recovery_timeout block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateMaxRunDuration
Typed helper for the scheduling.max_run_duration block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateNetworkInterface
Typed helper for the network_interface block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateNetworkPerformanceConfig
Typed helper for the network_performance_config block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateNodeAffinities
Typed helper for the scheduling.node_affinities block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateOnInstanceStopAction
Typed helper for the scheduling.on_instance_stop_action block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateReservationAffinity
Typed helper for the reservation_affinity block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateScheduling
Typed helper for the scheduling block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateServiceAccount
Typed helper for the service_account block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateShieldedInstanceConfig
Typed helper for the shielded_instance_config block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateSourceImageEncryptionKey
Typed helper for the disk.source_image_encryption_key block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateSourceSnapshotEncryptionKey
Typed helper for the disk.source_snapshot_encryption_key block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateSpecificReservation
Typed helper for the reservation_affinity.specific_reservation block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstanceTemplateWorkloadIdentityConfig
Typed helper for the workload_identity_config block of google_compute_region_instance_template (derived from provider schema).
ComputeRegionInstantSnapshotIamBindingCondition
Typed helper for the condition block of google_compute_region_instant_snapshot_iam_binding (derived from provider schema).
ComputeRegionInstantSnapshotIamMemberCondition
Typed helper for the condition block of google_compute_region_instant_snapshot_iam_member (derived from provider schema).
ComputeRegionInstantSnapshotParams
params block (max=1). Carries request-time metadata such as Resource Manager tags applied at create time.
ComputeRegionNetworkEndpointGroupAppEngine
app_engine slot of google_compute_region_network_endpoint_group. Only valid when networkEndpointType is RegionNetworkEndpointGroupType.serverless and mutually exclusive with cloudRun / cloudFunction.
ComputeRegionNetworkEndpointGroupCloudFunction
cloud_function slot of google_compute_region_network_endpoint_group. Only valid when networkEndpointType is RegionNetworkEndpointGroupType.serverless and mutually exclusive with cloudRun / appEngine.
ComputeRegionNetworkEndpointGroupCloudRun
cloud_run slot of google_compute_region_network_endpoint_group. Only valid when networkEndpointType is RegionNetworkEndpointGroupType.serverless and mutually exclusive with cloudFunction / appEngine.
ComputeRegionNetworkEndpointGroupPscData
Typed helper for the psc_data block of google_compute_region_network_endpoint_group (derived from provider schema).
ComputeRegionNetworkEndpointGroupServerless
At most one of cloud_run, cloud_function, app_engine on google_compute_region_network_endpoint_group: the provider rejects more than one, so each variant sets one of them and a null choice sets none.
ComputeRegionNetworkEndpointGroupServerlessAppEngine
The ComputeRegionNetworkEndpointGroupServerless.appEngine choice: sets app_engine.
ComputeRegionNetworkEndpointGroupServerlessCloudFunction
The ComputeRegionNetworkEndpointGroupServerless.cloudFunction choice: sets cloud_function.
ComputeRegionNetworkEndpointGroupServerlessCloudRun
The ComputeRegionNetworkEndpointGroupServerless.cloudRun choice: sets cloud_run.
ComputeRegionNetworkFirewallPolicyIamBindingCondition
Typed helper for the condition block of google_compute_region_network_firewall_policy_iam_binding (derived from provider schema).
ComputeRegionNetworkFirewallPolicyIamMemberCondition
Typed helper for the condition block of google_compute_region_network_firewall_policy_iam_member (derived from provider schema).
ComputeRegionNetworkFirewallPolicyRuleLayer4Configs
Typed helper for the match.layer4_configs block of google_compute_region_network_firewall_policy_rule (derived from provider schema).
ComputeRegionNetworkFirewallPolicyRuleMatch
Typed helper for the match block of google_compute_region_network_firewall_policy_rule (derived from provider schema).
ComputeRegionNetworkFirewallPolicyRuleSrcSecureTags
Typed helper for the match.src_secure_tags block of google_compute_region_network_firewall_policy_rule (derived from provider schema).
ComputeRegionNetworkFirewallPolicyRuleTargetSecureTags
Typed helper for the target_secure_tags block of google_compute_region_network_firewall_policy_rule (derived from provider schema).
ComputeRegionNetworkFirewallPolicyWithRulesLayer4Config
Typed helper for the rule.match.layer4_config block of google_compute_region_network_firewall_policy_with_rules (derived from provider schema).
ComputeRegionNetworkFirewallPolicyWithRulesMatch
Typed helper for the rule.match block of google_compute_region_network_firewall_policy_with_rules (derived from provider schema).
ComputeRegionNetworkFirewallPolicyWithRulesRule
Typed helper for the rule block of google_compute_region_network_firewall_policy_with_rules (derived from provider schema).
ComputeRegionNetworkFirewallPolicyWithRulesSrcSecureTag
Typed helper for the rule.match.src_secure_tag block of google_compute_region_network_firewall_policy_with_rules (derived from provider schema).
ComputeRegionNetworkFirewallPolicyWithRulesTargetSecureTag
Typed helper for the rule.target_secure_tag block of google_compute_region_network_firewall_policy_with_rules (derived from provider schema).
ComputeRegionPerInstanceConfigDisk
Typed helper for the preserved_state.disk block of google_compute_region_per_instance_config (derived from provider schema).
ComputeRegionPerInstanceConfigExternalIp
Typed helper for the preserved_state.external_ip block of google_compute_region_per_instance_config (derived from provider schema).
ComputeRegionPerInstanceConfigInternalIp
Typed helper for the preserved_state.internal_ip block of google_compute_region_per_instance_config (derived from provider schema).
ComputeRegionPerInstanceConfigIpAddress
Typed helper for the preserved_state.external_ip.ip_address block of google_compute_region_per_instance_config (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionPerInstanceConfigPreservedState
Typed helper for the preserved_state block of google_compute_region_per_instance_config (derived from provider schema).
ComputeRegionResizeRequestRequestedRunDuration
Typed helper for the requested_run_duration block of google_compute_region_resize_request (derived from provider schema).
ComputeRegionSecurityPolicyAdvancedOptionsConfig
ComputeRegionSecurityPolicyDdosProtectionConfig
ComputeRegionSecurityPolicyJsonCustomConfig
ComputeRegionSecurityPolicyRuleMatch
ComputeRegionSecurityPolicyRuleMatchConfig
ComputeRegionSecurityPolicyRuleNetworkMatch
Typed helper for the network_match block of google_compute_region_security_policy_rule (derived from provider schema).
ComputeRegionSecurityPolicyRulePreconfiguredWafConfig
ComputeRegionSecurityPolicyRulePreconfiguredWafExclusion
ComputeRegionSecurityPolicyRulePreconfiguredWafExclusionMatch
ComputeRegionSecurityPolicyRuleRateLimitEnforceOnKeyConfig
ComputeRegionSecurityPolicyRuleRateLimitOptions
ComputeRegionSecurityPolicyRules
One entry in rules[]. Rules are evaluated from highest priority (lowest numeric value) to lowest priority. Cloud Armor REQUIRES a default rule at priority 2147483647 matching all traffic ('*') -- if you omit it the provider injects one with action allow.
ComputeRegionSecurityPolicyRulesEnforceOnKeyConfig
ComputeRegionSecurityPolicyRulesMatch
rules.match -- mutually-exclusive config (versioned predicate) or expr (CEL) variants.
ComputeRegionSecurityPolicyRulesMatchConfig
ComputeRegionSecurityPolicyRulesMatchExpr
ComputeRegionSecurityPolicyRulesPreconfiguredWafConfig
ComputeRegionSecurityPolicyRulesPreconfiguredWafExclusion
ComputeRegionSecurityPolicyRulesPreconfiguredWafExclusionMatch
ComputeRegionSecurityPolicyRulesRateLimitOptions
rules.rate_limit_options -- required when action is rate_based_ban or throttle.
ComputeRegionSecurityPolicyRulesRateLimitThreshold
ComputeRegionSecurityPolicyRuleUserDefinedFields
Typed helper for the network_match.user_defined_fields block of google_compute_region_security_policy_rule (derived from provider schema).
ComputeRegionSecurityPolicyUserDefinedField
ComputeRegionSslCertificatePrivateKey
Exactly one of private_key, private_key_wo on google_compute_region_ssl_certificate: the provider rejects none and more than one, so each variant sets one of them.
ComputeRegionSslCertificatePrivateKeyChoice
The ComputeRegionSslCertificatePrivateKey.privateKey choice: sets private_key.
ComputeRegionSslCertificatePrivateKeyWo
The ComputeRegionSslCertificatePrivateKey.privateKeyWo choice: sets private_key_wo.
ComputeRegionTargetHttpsProxyCertificateManagerCertificates
The ComputeRegionTargetHttpsProxyCertificates.certificateManagerCertificates choice: sets certificate_manager_certificates.
ComputeRegionTargetHttpsProxyCertificates
At most one of certificate_manager_certificates, ssl_certificates on google_compute_region_target_https_proxy: the provider rejects more than one, so each variant sets one of them and a null choice sets none.
ComputeRegionTargetHttpsProxySslCertificates
The ComputeRegionTargetHttpsProxyCertificates.sslCertificates choice: sets ssl_certificates.
ComputeRegionUrlMapAbort
Typed helper for the default_route_action.fault_injection_policy.abort block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapCorsPolicy
Typed helper for the default_route_action.cors_policy block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapDefaultAction
At most one of default_url_redirect, default_route_action on google_compute_region_url_map: the provider rejects more than one, so each variant sets one of them and a null choice sets none.
ComputeRegionUrlMapDefaultActionDefaultRouteAction
The ComputeRegionUrlMapDefaultAction.defaultRouteAction choice: sets default_route_action.
ComputeRegionUrlMapDefaultActionDefaultUrlRedirect
The ComputeRegionUrlMapDefaultAction.defaultUrlRedirect choice: sets default_url_redirect.
ComputeRegionUrlMapDefaultRouteAction
Typed helper for the default_route_action block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapDefaultRouteActionRequestMirrorPolicy
Typed helper for the path_matcher.default_route_action.request_mirror_policy block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapDefaultRouteActionUrlRewrite
Typed helper for the path_matcher.default_route_action.url_rewrite block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapDefaultRouteActionWeightedBackendServices
Typed helper for the path_matcher.default_route_action.weighted_backend_services block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapDefaultUrlRedirect
Typed helper for the default_url_redirect block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapDelay
Typed helper for the default_route_action.fault_injection_policy.delay block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapDelayFixedDelay
Typed helper for the path_matcher.path_rule.route_action.fault_injection_policy.delay.fixed_delay block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapFaultInjectionPolicy
Typed helper for the default_route_action.fault_injection_policy block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapFaultInjectionPolicyAbort
Typed helper for the path_matcher.path_rule.route_action.fault_injection_policy.abort block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapFilterLabels
Typed helper for the path_matcher.route_rules.match_rules.metadata_filters.filter_labels block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapFixedDelay
Typed helper for the default_route_action.fault_injection_policy.delay.fixed_delay block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapHeaderAction
Typed helper for the header_action block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapHeaderActionRequestHeadersToAdd
Typed helper for the path_matcher.route_rules.header_action.request_headers_to_add block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapHeaderActionResponseHeadersToAdd
Typed helper for the path_matcher.route_rules.header_action.response_headers_to_add block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapHeaderMatches
Typed helper for the path_matcher.route_rules.match_rules.header_matches block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapHostRule
Typed helper for the host_rule block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapMatchRules
Typed helper for the path_matcher.route_rules.match_rules block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapMaxStreamDuration
Typed helper for the path_matcher.default_route_action.max_stream_duration block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapMetadataFilters
Typed helper for the path_matcher.route_rules.match_rules.metadata_filters block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapPathMatcher
Typed helper for the path_matcher block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapPathMatcherDefaultRouteAction
Typed helper for the path_matcher.default_route_action block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapPathRule
Typed helper for the path_matcher.path_rule block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapPathRuleDelay
Typed helper for the path_matcher.path_rule.route_action.fault_injection_policy.delay block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapPathRuleFaultInjectionPolicy
Typed helper for the path_matcher.path_rule.route_action.fault_injection_policy block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapPathRuleRetryPolicy
Typed helper for the path_matcher.path_rule.route_action.retry_policy block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapPathRuleRouteAction
Typed helper for the path_matcher.path_rule.route_action block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapPathRuleUrlRedirect
Typed helper for the path_matcher.path_rule.url_redirect block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapPerTryTimeout
Typed helper for the default_route_action.retry_policy.per_try_timeout block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapQueryParameterMatches
Typed helper for the path_matcher.route_rules.match_rules.query_parameter_matches block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapRangeMatch
Typed helper for the path_matcher.route_rules.match_rules.header_matches.range_match block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapRequestHeadersToAdd
Typed helper for the header_action.request_headers_to_add block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapRequestMirrorPolicy
Typed helper for the default_route_action.request_mirror_policy block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapResponseHeadersToAdd
Typed helper for the header_action.response_headers_to_add block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapRetryPolicy
Typed helper for the default_route_action.retry_policy block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapRetryPolicyPerTryTimeout
Typed helper for the path_matcher.path_rule.route_action.retry_policy.per_try_timeout block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapRouteActionCorsPolicy
Typed helper for the path_matcher.path_rule.route_action.cors_policy block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapRouteActionRequestMirrorPolicy
Typed helper for the path_matcher.path_rule.route_action.request_mirror_policy block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapRouteActionTimeout
Typed helper for the path_matcher.path_rule.route_action.timeout block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapRouteActionWeightedBackendServices
Typed helper for the path_matcher.path_rule.route_action.weighted_backend_services block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapRouteRules
Typed helper for the path_matcher.route_rules block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapRouteRulesDelay
Typed helper for the path_matcher.route_rules.route_action.fault_injection_policy.delay block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapRouteRulesFaultInjectionPolicy
Typed helper for the path_matcher.route_rules.route_action.fault_injection_policy block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapRouteRulesHeaderAction
Typed helper for the path_matcher.route_rules.header_action block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapRouteRulesRetryPolicy
Typed helper for the path_matcher.route_rules.route_action.retry_policy block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapRouteRulesRouteAction
Typed helper for the path_matcher.route_rules.route_action block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapRouteRulesUrlRedirect
Typed helper for the path_matcher.route_rules.url_redirect block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapTest
Typed helper for the test block of google_compute_region_url_map (derived from provider schema).
ComputeRegionUrlMapTimeout
Typed helper for the default_route_action.timeout block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapUrlRewrite
Typed helper for the default_route_action.url_rewrite block of google_compute_region_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeRegionUrlMapWeightedBackendServices
Typed helper for the default_route_action.weighted_backend_services block of google_compute_region_url_map (derived from provider schema).
ComputeReservationDeleteAfterDuration
Typed helper for the delete_after_duration block of google_compute_reservation (derived from provider schema).
ComputeReservationGuestAccelerators
Typed helper for the specific_reservation.instance_properties.guest_accelerators block of google_compute_reservation (derived from provider schema).
ComputeReservationInstanceProperties
Typed helper for the specific_reservation.instance_properties block of google_compute_reservation (derived from provider schema).
ComputeReservationInstanceSpec
Exactly one of instance_properties, source_instance_template on the specific_reservation block of google_compute_reservation: the provider rejects none and more than one, so each variant sets one of them.
ComputeReservationInstanceSpecInstanceProperties
The ComputeReservationInstanceSpec.instanceProperties choice: sets instance_properties.
ComputeReservationInstanceSpecSourceInstanceTemplate
The ComputeReservationInstanceSpec.sourceInstanceTemplate choice: sets source_instance_template.
ComputeReservationLocalSsds
Typed helper for the specific_reservation.instance_properties.local_ssds block of google_compute_reservation (derived from provider schema).
ComputeReservationParams
Typed helper for the params block of google_compute_reservation (derived from provider schema).
ComputeReservationProjectMap
Typed helper for the share_settings.project_map block of google_compute_reservation (derived from provider schema).
ComputeReservationShareSettings
Typed helper for the share_settings block of google_compute_reservation (derived from provider schema).
ComputeReservationSharingPolicy
Typed helper for the reservation_sharing_policy block of google_compute_reservation (derived from provider schema).
ComputeReservationSpecificReservation
Typed helper for the specific_reservation block of google_compute_reservation (derived from provider schema).
ComputeResizeRequestRequestedRunDuration
Typed helper for the requested_run_duration block of google_compute_resize_request (derived from provider schema).
ComputeResourcePolicyDailySchedule
Typed helper for the snapshot_schedule_policy.schedule.daily_schedule block of google_compute_resource_policy (derived from provider schema).
ComputeResourcePolicyDailyScheduleChoice
The ComputeResourcePolicySchedule.dailySchedule choice: sets daily_schedule.
ComputeResourcePolicyDayOfWeeks
Typed helper for the snapshot_schedule_policy.schedule.weekly_schedule.day_of_weeks block of google_compute_resource_policy (derived from provider schema).
ComputeResourcePolicyDiskConsistencyGroupPolicy
Typed helper for the disk_consistency_group_policy block of google_compute_resource_policy (derived from provider schema).
ComputeResourcePolicyGroupPlacementPolicy
Typed helper for the group_placement_policy block of google_compute_resource_policy (derived from provider schema).
ComputeResourcePolicyHourlySchedule
Typed helper for the snapshot_schedule_policy.schedule.hourly_schedule block of google_compute_resource_policy (derived from provider schema).
ComputeResourcePolicyHourlyScheduleChoice
The ComputeResourcePolicySchedule.hourlySchedule choice: sets hourly_schedule.
ComputeResourcePolicyInstanceSchedulePolicy
Typed helper for the instance_schedule_policy block of google_compute_resource_policy (derived from provider schema).
ComputeResourcePolicyKind
At most one of snapshot_schedule_policy, group_placement_policy, instance_schedule_policy, disk_consistency_group_policy on google_compute_resource_policy: the provider rejects more than one, so each variant sets one of them and a null choice sets none.
ComputeResourcePolicyKindDiskConsistencyGroupPolicy
The ComputeResourcePolicyKind.diskConsistencyGroupPolicy choice: sets disk_consistency_group_policy.
ComputeResourcePolicyKindGroupPlacementPolicy
The ComputeResourcePolicyKind.groupPlacementPolicy choice: sets group_placement_policy.
ComputeResourcePolicyKindInstanceSchedulePolicy
The ComputeResourcePolicyKind.instanceSchedulePolicy choice: sets instance_schedule_policy.
ComputeResourcePolicyKindSnapshotSchedulePolicy
The ComputeResourcePolicyKind.snapshotSchedulePolicy choice: sets snapshot_schedule_policy.
ComputeResourcePolicyRetentionPolicy
Typed helper for the snapshot_schedule_policy.retention_policy block of google_compute_resource_policy (derived from provider schema).
ComputeResourcePolicySchedule
Exactly one of hourly_schedule, daily_schedule, weekly_schedule on the snapshot_schedule_policy.schedule block of google_compute_resource_policy: the provider rejects none and more than one, so each variant sets one of them.
ComputeResourcePolicySnapshotProperties
Typed helper for the snapshot_schedule_policy.snapshot_properties block of google_compute_resource_policy (derived from provider schema).
ComputeResourcePolicySnapshotSchedulePolicy
Typed helper for the snapshot_schedule_policy block of google_compute_resource_policy (derived from provider schema).
ComputeResourcePolicyVmStartSchedule
Typed helper for the instance_schedule_policy.vm_start_schedule block of google_compute_resource_policy (derived from provider schema).
ComputeResourcePolicyVmStopSchedule
Typed helper for the instance_schedule_policy.vm_stop_schedule block of google_compute_resource_policy (derived from provider schema).
ComputeResourcePolicyWeeklySchedule
Typed helper for the snapshot_schedule_policy.schedule.weekly_schedule block of google_compute_resource_policy (derived from provider schema).
ComputeResourcePolicyWeeklyScheduleChoice
The ComputeResourcePolicySchedule.weeklySchedule choice: sets weekly_schedule.
ComputeResourcePolicyWorkloadPolicy
Typed helper for the workload_policy block of google_compute_resource_policy (derived from provider schema).
ComputeRolloutPlanDelays
Typed helper for the waves.orchestration_options.delays block of google_compute_rollout_plan (derived from provider schema).
ComputeRolloutPlanLocationSelector
Typed helper for the waves.selectors.location_selector block of google_compute_rollout_plan (derived from provider schema).
ComputeRolloutPlanOrchestrationOptions
Typed helper for the waves.orchestration_options block of google_compute_rollout_plan (derived from provider schema).
ComputeRolloutPlanResourceHierarchySelector
Typed helper for the waves.selectors.resource_hierarchy_selector block of google_compute_rollout_plan (derived from provider schema).
ComputeRolloutPlanSelectors
Typed helper for the waves.selectors block of google_compute_rollout_plan (derived from provider schema).
ComputeRolloutPlanTimeBasedValidationMetadata
Typed helper for the waves.validation.time_based_validation_metadata block of google_compute_rollout_plan (derived from provider schema).
ComputeRolloutPlanValidation
Typed helper for the waves.validation block of google_compute_rollout_plan (derived from provider schema).
ComputeRolloutPlanWaves
Typed helper for the waves block of google_compute_rollout_plan (derived from provider schema).
ComputeRouteGatewayNextHop
Route via the default internet gateway (default-internet-gateway).
ComputeRouteIlbNextHop
Route via an internal load balancer.
ComputeRouteInstanceNextHop
Route via a Compute Engine VM instance (name or self-link).
ComputeRouteIpNextHop
Route via an explicit next-hop IP address.
ComputeRouteNextHop
Next-hop target for GoogleComputeRoute. Sealed so the provider exactly_one_of on the next_hop_* attributes is exhaustive at the type level.
ComputeRouteParams
Typed helper for the params block of google_compute_route (derived from provider schema).
ComputeRouterBgp
bgp block — local BGP session parameters for a Cloud Router.
ComputeRouterMd5AuthenticationKeys
Typed helper for the md5_authentication_keys block of google_compute_router (derived from provider schema).
ComputeRouterNamedSetElements
Typed helper for the elements block of google_compute_router_named_set (derived from provider schema).
ComputeRouterNatAction
Typed helper for the rules.action block of google_compute_router_nat (derived from provider schema).
ComputeRouterNatLogConfig
Typed helper for the log_config block of google_compute_router_nat (derived from provider schema).
ComputeRouterNatNat64Subnetwork
Typed helper for the nat64_subnetwork block of google_compute_router_nat (derived from provider schema).
ComputeRouterNatRules
Typed helper for the rules block of google_compute_router_nat (derived from provider schema).
ComputeRouterNatSubnetwork
Typed helper for the subnetwork block of google_compute_router_nat (derived from provider schema).
ComputeRouterNetwork
At most one of network, ncc_gateway on google_compute_router: the provider rejects more than one, so each variant sets one of them and a null choice sets none.
ComputeRouterNetworkChoice
The ComputeRouterNetwork.network choice: sets network.
ComputeRouterNetworkNccGateway
The ComputeRouterNetwork.nccGateway choice: sets ncc_gateway.
ComputeRouterParams
Typed helper for the params block of google_compute_router (derived from provider schema).
ComputeRouterPeerAdvertisedIpRanges
Typed helper for the advertised_ip_ranges block of google_compute_router_peer (derived from provider schema).
ComputeRouterPeerBfd
Typed helper for the bfd block of google_compute_router_peer (derived from provider schema).
ComputeRouterPeerCustomLearnedIpRanges
Typed helper for the custom_learned_ip_ranges block of google_compute_router_peer (derived from provider schema).
ComputeRouterPeerMd5AuthenticationKey
Typed helper for the md5_authentication_key block of google_compute_router_peer (derived from provider schema).
ComputeRouterRoutePolicyActions
Typed helper for the terms.actions block of google_compute_router_route_policy (derived from provider schema).
ComputeRouterRoutePolicyMatch
Typed helper for the terms.match block of google_compute_router_route_policy (derived from provider schema).
ComputeRouterRoutePolicyTerms
Typed helper for the terms block of google_compute_router_route_policy (derived from provider schema).
ComputeRouteVpnTunnelNextHop
Route via a Cloud VPN tunnel.
ComputeSecurityPolicyAdaptiveProtectionConfig
adaptive_protection_config -- Google's ML-driven layer-7 DDoS auto-mitigation. When enabled, Cloud Armor watches traffic patterns and proposes / auto-deploys rules during a suspected attack.
ComputeSecurityPolicyAdaptiveProtectionThresholdConfig
One entry in threshold_configs. The numeric knobs are passed through verbatim -- consult the Cloud Armor adaptive-protection docs for tuning guidance.
ComputeSecurityPolicyAdvancedOptionsConfig
advanced_options_config -- knobs that apply across the whole policy: JSON-body inspection for preconfigured WAF rules, log verbosity, and client-IP resolution headers.
ComputeSecurityPolicyJsonCustomConfig
advanced_options_config.json_custom_config -- list of additional Content-Type values Cloud Armor should treat as JSON for WAF body inspection (beyond the default application/json).
ComputeSecurityPolicyLayer7DdosDefenseConfig
layer_7_ddos_defense_config block. Pair enable with ruleVisibility (typically 'STANDARD'); per-segment thresholds can be tuned via thresholdConfigs for tenants with predictable traffic shape.
ComputeSecurityPolicyRecaptchaOptionsConfig
recaptcha_options_config -- policy-wide reCAPTCHA site key used for redirect-to-reCAPTCHA actions. Only the redirect site key is exposed by Terraform today; if unset, Cloud Armor uses a Google- managed key.
ComputeSecurityPolicyRuleHeaderAction
Typed helper for the header_action block of google_compute_security_policy_rule (derived from provider schema).
ComputeSecurityPolicyRuleMatch
match block — condition that fires this standalone rule.
ComputeSecurityPolicyRuleMatchConfig
ComputeSecurityPolicyRulePreconfiguredWafConfig
ComputeSecurityPolicyRulePreconfiguredWafExclusion
ComputeSecurityPolicyRulePreconfiguredWafExclusionMatch
ComputeSecurityPolicyRuleRateLimitEnforceOnKeyConfig
ComputeSecurityPolicyRuleRateLimitOptions
ComputeSecurityPolicyRuleRedirectOptions
Typed helper for the redirect_options block of google_compute_security_policy_rule (derived from provider schema).
ComputeSecurityPolicyRuleRequestHeadersToAdds
Typed helper for the header_action.request_headers_to_adds block of google_compute_security_policy_rule (derived from provider schema).
ComputeSecurityPolicyRules
One entry in rule[]. Rules are evaluated from highest priority (lowest numeric value) to lowest priority. The first match wins and its action is enforced. Cloud Armor REQUIRES a default rule at priority 2147483647 matching all traffic ('*') -- if you omit it the provider injects one with SecurityPolicyRuleAction.allow, which silently disables a deny-list policy. Always author the default rule explicitly.
ComputeSecurityPolicyRulesEnforceOnKeyConfig
One entry in rate_limit_options.enforce_on_key_configs. Lets a rule key on a composite of attributes (e.g. "(client IP, region)").
ComputeSecurityPolicyRulesHeaderAction
rule.header_action -- request-header rewrites applied alongside the rule's match action. Useful for tagging matched requests so downstream services (or Cloud Logging) can see which Cloud Armor rule fired.
ComputeSecurityPolicyRulesHeaderAdd
One header rewrite in ComputeSecurityPolicyRulesHeaderAction.requestHeadersToAdds. headerValue is optional -- omitting it adds the header with an empty string value.
ComputeSecurityPolicyRulesMatch
rule.match -- the condition under which a rule fires. Mutually-exclusive variants:
ComputeSecurityPolicyRulesMatchConfig
match.config -- payload for the SRC_IPS_V1 predicate. The only field today is srcIpRanges; the schema limits this to 10 entries per rule. Pass ['*'] to match ALL inbound IPs (the canonical default-deny / default-allow shape).
ComputeSecurityPolicyRulesMatchExpr
match.expr -- a user-defined Common Expression Language (CEL) predicate evaluated against the request. The expression is passed to Cloud Armor as an opaque string; the Dart wrapper does NOT type-check CEL syntax, so callers are responsible for matching Cloud Armor's CEL dialect (see https://cloud.google.com/armor/docs/rules-language-reference).
ComputeSecurityPolicyRulesRateLimitOptions
rule.rate_limit_options -- threshold + action plumbing for SecurityPolicyRuleAction.throttle and SecurityPolicyRuleAction.rateBasedBan. Throttle simply rejects requests over the threshold; rate-based ban additionally locks the offending key out for banDurationSec seconds once it trips banThreshold.
ComputeSecurityPolicyRulesRateLimitThreshold
rate_limit_threshold / ban_threshold shape. Count of requests per fixed intervalSec window.
ComputeSecurityPolicyRulesRedirectOptions
rule.redirect_options -- redirect target shape, also reused as rate_limit_options.exceed_redirect_options. Two flavors: 'EXTERNAL_302' requires target (an HTTPS URL Cloud Armor 302s to); 'GOOGLE_RECAPTCHA' swaps the request for a Google-hosted reCAPTCHA challenge and MUST NOT set target.
ComputeSecurityPolicyTrafficGranularityConfig
One entry in traffic_granularity_configs. enableEachUniqueValue (true) and value (non-empty string) are mutually exclusive: the schema rejects setting both.
ComputeServiceAttachmentConsumerAcceptLists
Typed helper for the consumer_accept_lists block of google_compute_service_attachment (derived from provider schema).
ComputeSnapshotDiskSource
Create the snapshot from a Persistent Disk (name or self-link).
ComputeSnapshotEncryptionKey
Typed helper for the snapshot_encryption_key block of google_compute_snapshot (derived from provider schema).
ComputeSnapshotIamBindingCondition
Typed helper for the condition block of google_compute_snapshot_iam_binding (derived from provider schema).
ComputeSnapshotIamMemberCondition
Typed helper for the condition block of google_compute_snapshot_iam_member (derived from provider schema).
ComputeSnapshotInstantSource
Create the snapshot from a zonal Instant Snapshot (name or self-link).
ComputeSnapshotParams
Typed helper for the params block of google_compute_snapshot (derived from provider schema).
ComputeSnapshotSettingsLocations
Typed helper for the storage_location.locations block of google_compute_snapshot_settings (derived from provider schema).
ComputeSnapshotSettingsStorageLocation
Typed helper for the storage_location block of google_compute_snapshot_settings (derived from provider schema).
ComputeSnapshotSource
Snapshot source for GoogleComputeSnapshot. Sealed so the provider exactly_one_of on source_disk / source_instant_snapshot is exhaustive at the type level.
ComputeSnapshotSourceDiskEncryptionKey
Typed helper for the source_disk_encryption_key block of google_compute_snapshot (derived from provider schema).
ComputeSslCertificatePrivateKey
Exactly one of private_key, private_key_wo on google_compute_ssl_certificate: the provider rejects none and more than one, so each variant sets one of them.
ComputeSslCertificatePrivateKeyChoice
The ComputeSslCertificatePrivateKey.privateKey choice: sets private_key.
ComputeSslCertificatePrivateKeyWo
The ComputeSslCertificatePrivateKey.privateKeyWo choice: sets private_key_wo.
ComputeStoragePoolIamBindingCondition
Typed helper for the condition block of google_compute_storage_pool_iam_binding (derived from provider schema).
ComputeStoragePoolIamMemberCondition
Typed helper for the condition block of google_compute_storage_pool_iam_member (derived from provider schema).
ComputeStoragePoolParams
Typed helper for the params block of google_compute_storage_pool (derived from provider schema).
ComputeSubnetworkIamBindingCondition
Typed helper for the condition block of google_compute_subnetwork_iam_binding (derived from provider schema).
ComputeSubnetworkIamMemberCondition
Typed helper for the condition block of google_compute_subnetwork_iam_member (derived from provider schema).
ComputeSubnetworkLogConfig
log_config block. Enables VPC flow logs for the subnetwork. Flow logging is not supported when the subnetwork purpose is REGIONAL_MANAGED_PROXY or GLOBAL_MANAGED_PROXY.
ComputeSubnetworkParams
Typed helper for the params block of google_compute_subnetwork (derived from provider schema).
ComputeSubnetworkSecondaryIpRange
One secondary_ip_range entry. Defines an alias IP range usable by instances in this subnetwork (typically consumed by GKE pods/services).
ComputeTargetHttpsProxyCertificateManagerCertificates
The ComputeTargetHttpsProxyCertificates.certificateManagerCertificates choice: sets certificate_manager_certificates.
ComputeTargetHttpsProxyCertificates
At most one of certificate_manager_certificates, ssl_certificates on google_compute_target_https_proxy: the provider rejects more than one, so each variant sets one of them and a null choice sets none.
ComputeTargetHttpsProxySslCertificates
The ComputeTargetHttpsProxyCertificates.sslCertificates choice: sets ssl_certificates.
ComputeUrlMapAbort
Typed helper for the default_route_action.fault_injection_policy.abort block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapCacheKeyPolicy
Typed helper for the default_route_action.cache_policy.cache_key_policy block of google_compute_url_map (derived from provider schema).
ComputeUrlMapCachePolicy
Typed helper for the default_route_action.cache_policy block of google_compute_url_map (derived from provider schema).
ComputeUrlMapCachePolicyCacheKeyPolicy
Typed helper for the path_matcher.default_route_action.cache_policy.cache_key_policy block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapClientTtl
Typed helper for the default_route_action.cache_policy.client_ttl block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapCorsPolicy
Typed helper for the default_route_action.cors_policy block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapCustomErrorResponsePolicy
Typed helper for the path_matcher.path_rule.custom_error_response_policy block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapDefaultAction
At most one of default_url_redirect, default_route_action on google_compute_url_map: the provider rejects more than one, so each variant sets one of them and a null choice sets none.
ComputeUrlMapDefaultActionDefaultRouteAction
The ComputeUrlMapDefaultAction.defaultRouteAction choice: sets default_route_action.
ComputeUrlMapDefaultActionDefaultUrlRedirect
The ComputeUrlMapDefaultAction.defaultUrlRedirect choice: sets default_url_redirect.
ComputeUrlMapDefaultCustomErrorResponsePolicy
Typed helper for the default_custom_error_response_policy block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapDefaultRouteAction
Typed helper for the default_route_action block of google_compute_url_map (derived from provider schema).
ComputeUrlMapDefaultRouteActionCachePolicy
Typed helper for the path_matcher.default_route_action.cache_policy block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapDefaultTtl
Typed helper for the default_route_action.cache_policy.default_ttl block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapDefaultUrlRedirect
Typed helper for the default_url_redirect block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapDelay
Typed helper for the default_route_action.fault_injection_policy.delay block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapDelayFixedDelay
Typed helper for the path_matcher.path_rule.route_action.fault_injection_policy.delay.fixed_delay block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapErrorResponseRule
Typed helper for the default_custom_error_response_policy.error_response_rule block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapExcludedQueryParameters
The ComputeUrlMapQueryParameters.excludedQueryParameters choice: sets excluded_query_parameters.
ComputeUrlMapFaultInjectionPolicy
Typed helper for the default_route_action.fault_injection_policy block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapFaultInjectionPolicyAbort
Typed helper for the path_matcher.path_rule.route_action.fault_injection_policy.abort block of google_compute_url_map (derived from provider schema).
ComputeUrlMapFilterLabels
Typed helper for the path_matcher.route_rules.match_rules.metadata_filters.filter_labels block of google_compute_url_map (derived from provider schema).
ComputeUrlMapFixedDelay
Typed helper for the default_route_action.fault_injection_policy.delay.fixed_delay block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapHeaderAction
Typed helper for the header_action block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapHeaderActionRequestHeadersToAdd
Typed helper for the default_route_action.weighted_backend_services.header_action.request_headers_to_add block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapHeaderActionResponseHeadersToAdd
Typed helper for the default_route_action.weighted_backend_services.header_action.response_headers_to_add block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapHeaderMatches
Typed helper for the path_matcher.route_rules.match_rules.header_matches block of google_compute_url_map (derived from provider schema).
ComputeUrlMapHeaders
Typed helper for the test.headers block of google_compute_url_map (derived from provider schema).
ComputeUrlMapHostRule
Typed helper for the host_rule block of google_compute_url_map (derived from provider schema).
ComputeUrlMapIncludedQueryParameters
The ComputeUrlMapQueryParameters.includedQueryParameters choice: sets included_query_parameters.
ComputeUrlMapMatchRules
Typed helper for the path_matcher.route_rules.match_rules block of google_compute_url_map (derived from provider schema).
ComputeUrlMapMaxStreamDuration
Typed helper for the default_route_action.max_stream_duration block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapMaxTtl
Typed helper for the default_route_action.cache_policy.max_ttl block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapMetadataFilters
Typed helper for the path_matcher.route_rules.match_rules.metadata_filters block of google_compute_url_map (derived from provider schema).
ComputeUrlMapNegativeCachingPolicy
Typed helper for the default_route_action.cache_policy.negative_caching_policy block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapPathMatcher
Typed helper for the path_matcher block of google_compute_url_map (derived from provider schema).
ComputeUrlMapPathMatcherDefaultRouteAction
Typed helper for the path_matcher.default_route_action block of google_compute_url_map (derived from provider schema).
ComputeUrlMapPathRule
Typed helper for the path_matcher.path_rule block of google_compute_url_map (derived from provider schema).
ComputeUrlMapPathRuleDelay
Typed helper for the path_matcher.path_rule.route_action.fault_injection_policy.delay block of google_compute_url_map (derived from provider schema).
ComputeUrlMapPathRuleFaultInjectionPolicy
Typed helper for the path_matcher.path_rule.route_action.fault_injection_policy block of google_compute_url_map (derived from provider schema).
ComputeUrlMapPathRuleRetryPolicy
Typed helper for the path_matcher.path_rule.route_action.retry_policy block of google_compute_url_map (derived from provider schema).
ComputeUrlMapPathRuleRouteAction
Typed helper for the path_matcher.path_rule.route_action block of google_compute_url_map (derived from provider schema).
ComputeUrlMapPathRuleUrlRedirect
Typed helper for the path_matcher.path_rule.url_redirect block of google_compute_url_map (derived from provider schema).
ComputeUrlMapPerTryTimeout
Typed helper for the default_route_action.retry_policy.per_try_timeout block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapQueryParameterMatches
Typed helper for the path_matcher.route_rules.match_rules.query_parameter_matches block of google_compute_url_map (derived from provider schema).
ComputeUrlMapQueryParameters
At most one of included_query_parameters, excluded_query_parameters on the default_route_action.cache_policy.cache_key_policy block of google_compute_url_map: the provider rejects more than one, so each variant sets one of them and a null choice sets none.
ComputeUrlMapRangeMatch
Typed helper for the path_matcher.route_rules.match_rules.header_matches.range_match block of google_compute_url_map (derived from provider schema).
ComputeUrlMapRequestHeadersToAdd
Typed helper for the header_action.request_headers_to_add block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapRequestMirrorPolicy
Typed helper for the default_route_action.request_mirror_policy block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapResponseHeadersToAdd
Typed helper for the header_action.response_headers_to_add block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapRetryPolicy
Typed helper for the default_route_action.retry_policy block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapRetryPolicyPerTryTimeout
Typed helper for the path_matcher.path_rule.route_action.retry_policy.per_try_timeout block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapRouteActionCorsPolicy
Typed helper for the path_matcher.path_rule.route_action.cors_policy block of google_compute_url_map (derived from provider schema).
ComputeUrlMapRouteActionTimeout
Typed helper for the path_matcher.path_rule.route_action.timeout block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapRouteActionUrlRewrite
Typed helper for the path_matcher.route_rules.route_action.url_rewrite block of google_compute_url_map (derived from provider schema).
ComputeUrlMapRouteActionWeightedBackendServices
Typed helper for the path_matcher.path_rule.route_action.weighted_backend_services block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapRouteRules
Typed helper for the path_matcher.route_rules block of google_compute_url_map (derived from provider schema).
ComputeUrlMapRouteRulesDelay
Typed helper for the path_matcher.route_rules.route_action.fault_injection_policy.delay block of google_compute_url_map (derived from provider schema).
ComputeUrlMapRouteRulesFaultInjectionPolicy
Typed helper for the path_matcher.route_rules.route_action.fault_injection_policy block of google_compute_url_map (derived from provider schema).
ComputeUrlMapRouteRulesRetryPolicy
Typed helper for the path_matcher.route_rules.route_action.retry_policy block of google_compute_url_map (derived from provider schema).
ComputeUrlMapRouteRulesRouteAction
Typed helper for the path_matcher.route_rules.route_action block of google_compute_url_map (derived from provider schema).
ComputeUrlMapRouteRulesUrlRedirect
Typed helper for the path_matcher.route_rules.url_redirect block of google_compute_url_map (derived from provider schema).
ComputeUrlMapServeWhileStale
Typed helper for the default_route_action.cache_policy.serve_while_stale block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapTest
Typed helper for the test block of google_compute_url_map (derived from provider schema).
ComputeUrlMapTimeout
Typed helper for the default_route_action.timeout block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapTtl
Typed helper for the default_route_action.cache_policy.negative_caching_policy.ttl block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapUrlRewrite
Typed helper for the default_route_action.url_rewrite block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapWeightedBackendServices
Typed helper for the default_route_action.weighted_backend_services block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeUrlMapWeightedBackendServicesHeaderAction
Typed helper for the default_route_action.weighted_backend_services.header_action block of google_compute_url_map (derived from provider schema). Shared by every block of this shape in the resource.
ComputeVpnGatewayParams
Typed helper for the params block of google_compute_vpn_gateway (derived from provider schema).
ComputeVpnTunnelCipherSuite
Typed helper for the cipher_suite block of google_compute_vpn_tunnel (derived from provider schema).
ComputeVpnTunnelParams
Typed helper for the params block of google_compute_vpn_tunnel (derived from provider schema).
ComputeVpnTunnelPeer
At most one of peer_external_gateway, peer_gcp_gateway on google_compute_vpn_tunnel: the provider rejects more than one, so each variant sets one of them and a null choice sets none.
ComputeVpnTunnelPeerExternalGateway
The ComputeVpnTunnelPeer.peerExternalGateway choice: sets peer_external_gateway.
ComputeVpnTunnelPeerGcpGateway
The ComputeVpnTunnelPeer.peerGcpGateway choice: sets peer_gcp_gateway.
ComputeVpnTunnelPhase1
Typed helper for the cipher_suite.phase1 block of google_compute_vpn_tunnel (derived from provider schema).
ComputeVpnTunnelPhase2
Typed helper for the cipher_suite.phase2 block of google_compute_vpn_tunnel (derived from provider schema).
ComputeVpnTunnelSharedSecret
Exactly one of shared_secret, shared_secret_wo on google_compute_vpn_tunnel: the provider rejects none and more than one, so each variant sets one of them.
ComputeVpnTunnelSharedSecretChoice
The ComputeVpnTunnelSharedSecret.sharedSecret choice: sets shared_secret.
ComputeVpnTunnelSharedSecretWo
The ComputeVpnTunnelSharedSecret.sharedSecretWo choice: sets shared_secret_wo.
ComputeWireGroupEndpoints
Typed helper for the endpoints block of google_compute_wire_group (derived from provider schema).
ComputeWireGroupInterconnects
Typed helper for the endpoints.interconnects block of google_compute_wire_group (derived from provider schema).
ComputeWireGroupWireProperties
Typed helper for the wire_properties block of google_compute_wire_group (derived from provider schema).
ComputeZoneVmExtensionPolicyExtensionPolicies
Typed helper for the extension_policies block of google_compute_zone_vm_extension_policy (derived from provider schema).
ComputeZoneVmExtensionPolicyInstanceSelectors
Typed helper for the instance_selectors block of google_compute_zone_vm_extension_policy (derived from provider schema).
ComputeZoneVmExtensionPolicyLabelSelector
Typed helper for the instance_selectors.label_selector block of google_compute_zone_vm_extension_policy (derived from provider schema).
DartDefineOutput
An output whose value is the client build's --dart-define file, registered with Stack.addDartDefineOutput.
Data
Base of every user-instantiable Terraform data block.
DataGoogleComputeAddress
Factory wrapper for google_compute_address.
DataGoogleComputeAddresses
Factory wrapper for google_compute_addresses.
DataGoogleComputeBackendBucket
Factory wrapper for google_compute_backend_bucket.
DataGoogleComputeBackendService
Factory wrapper for google_compute_backend_service.
DataGoogleComputeDefaultServiceAccount
Factory wrapper for google_compute_default_service_account.
DataGoogleComputeDisk
Factory wrapper for google_compute_disk.
DataGoogleComputeDiskIamPolicy
Factory wrapper for google_compute_disk_iam_policy.
DataGoogleComputeFirewallPolicyIamPolicy
Factory wrapper for google_compute_firewall_policy_iam_policy.
DataGoogleComputeForwardingRule
Factory wrapper for google_compute_forwarding_rule.
DataGoogleComputeForwardingRules
Factory wrapper for google_compute_forwarding_rules.
DataGoogleComputeGlobalAddress
Factory wrapper for google_compute_global_address.
DataGoogleComputeGlobalForwardingRule
Factory wrapper for google_compute_global_forwarding_rule.
DataGoogleComputeHaVpnGateway
Factory wrapper for google_compute_ha_vpn_gateway.
DataGoogleComputeHealthCheck
Factory wrapper for google_compute_health_check.
DataGoogleComputeImage
Factory wrapper for google_compute_image.
DataGoogleComputeImageIamPolicy
Factory wrapper for google_compute_image_iam_policy.
DataGoogleComputeImages
Factory wrapper for google_compute_images.
DataGoogleComputeInstance
Factory wrapper for google_compute_instance.
DataGoogleComputeInstanceGroup
Factory wrapper for google_compute_instance_group.
DataGoogleComputeInstanceGroupManager
Factory wrapper for google_compute_instance_group_manager.
DataGoogleComputeInstanceGroups
Factory wrapper for google_compute_instance_groups.
DataGoogleComputeInstanceGuestAttributes
Factory wrapper for google_compute_instance_guest_attributes.
DataGoogleComputeInstanceIamPolicy
Factory wrapper for google_compute_instance_iam_policy.
DataGoogleComputeInstanceSerialPort
Factory wrapper for google_compute_instance_serial_port.
DataGoogleComputeInstanceTemplate
Factory wrapper for google_compute_instance_template.
DataGoogleComputeInstanceTemplateIamPolicy
Factory wrapper for google_compute_instance_template_iam_policy.
DataGoogleComputeInstantSnapshotIamPolicy
Factory wrapper for google_compute_instant_snapshot_iam_policy.
DataGoogleComputeInterconnectLocation
Factory wrapper for google_compute_interconnect_location.
DataGoogleComputeInterconnectLocations
Factory wrapper for google_compute_interconnect_locations.
DataGoogleComputeLbIpRanges
Factory wrapper for google_compute_lb_ip_ranges.
DataGoogleComputeMachineTypes
Factory wrapper for google_compute_machine_types.
DataGoogleComputeNetwork
Factory wrapper for google_compute_network.
DataGoogleComputeNetworkAttachment
Factory wrapper for google_compute_network_attachment.
DataGoogleComputeNetworkEndpointGroup
Factory wrapper for google_compute_network_endpoint_group.
DataGoogleComputeNetworkEndpointGroups
Factory wrapper for google_compute_network_endpoint_groups.
DataGoogleComputeNetworkFirewallPolicyIamPolicy
Factory wrapper for google_compute_network_firewall_policy_iam_policy.
DataGoogleComputeNetworkPeering
Factory wrapper for google_compute_network_peering.
DataGoogleComputeNetworks
Factory wrapper for google_compute_networks.
DataGoogleComputeNodeTypes
Factory wrapper for google_compute_node_types.
DataGoogleComputeRegionBackendService
Factory wrapper for google_compute_region_backend_service.
DataGoogleComputeRegionDisk
Factory wrapper for google_compute_region_disk.
DataGoogleComputeRegionDiskIamPolicy
Factory wrapper for google_compute_region_disk_iam_policy.
DataGoogleComputeRegionInstanceGroup
Factory wrapper for google_compute_region_instance_group.
DataGoogleComputeRegionInstanceGroupManager
Factory wrapper for google_compute_region_instance_group_manager.
DataGoogleComputeRegionInstanceTemplate
Factory wrapper for google_compute_region_instance_template.
DataGoogleComputeRegionInstantSnapshotIamPolicy
Factory wrapper for google_compute_region_instant_snapshot_iam_policy.
DataGoogleComputeRegionNetworkEndpointGroup
Factory wrapper for google_compute_region_network_endpoint_group.
DataGoogleComputeRegionNetworkFirewallPolicyIamPolicy
Factory wrapper for google_compute_region_network_firewall_policy_iam_policy.
DataGoogleComputeRegions
Factory wrapper for google_compute_regions.
DataGoogleComputeRegionSecurityPolicy
Factory wrapper for google_compute_region_security_policy.
DataGoogleComputeRegionSslCertificate
Factory wrapper for google_compute_region_ssl_certificate.
DataGoogleComputeRegionSslPolicy
Factory wrapper for google_compute_region_ssl_policy.
DataGoogleComputeRegionTargetHttpProxy
Factory wrapper for google_compute_region_target_http_proxy.
DataGoogleComputeRegionTargetHttpsProxy
Factory wrapper for google_compute_region_target_https_proxy.
DataGoogleComputeReservation
Factory wrapper for google_compute_reservation.
DataGoogleComputeReservationBlock
Factory wrapper for google_compute_reservation_block.
DataGoogleComputeReservationSubBlock
Factory wrapper for google_compute_reservation_sub_block.
DataGoogleComputeResourcePolicy
Factory wrapper for google_compute_resource_policy.
DataGoogleComputeRouter
Factory wrapper for google_compute_router.
DataGoogleComputeRouterNat
Factory wrapper for google_compute_router_nat.
DataGoogleComputeRouters
Factory wrapper for google_compute_routers.
DataGoogleComputeRouterStatus
Factory wrapper for google_compute_router_status.
DataGoogleComputeSecurityPolicy
Factory wrapper for google_compute_security_policy.
DataGoogleComputeServiceAttachment
Factory wrapper for google_compute_service_attachment.
DataGoogleComputeServiceAttachments
Factory wrapper for google_compute_service_attachments.
DataGoogleComputeSnapshot
Factory wrapper for google_compute_snapshot.
DataGoogleComputeSnapshotIamPolicy
Factory wrapper for google_compute_snapshot_iam_policy.
DataGoogleComputeSslCertificate
Factory wrapper for google_compute_ssl_certificate.
DataGoogleComputeSslPolicy
Factory wrapper for google_compute_ssl_policy.
DataGoogleComputeStoragePool
Factory wrapper for google_compute_storage_pool.
DataGoogleComputeStoragePoolIamPolicy
Factory wrapper for google_compute_storage_pool_iam_policy.
DataGoogleComputeStoragePoolTypes
Factory wrapper for google_compute_storage_pool_types.
DataGoogleComputeSubnetwork
Factory wrapper for google_compute_subnetwork.
DataGoogleComputeSubnetworkIamPolicy
Factory wrapper for google_compute_subnetwork_iam_policy.
DataGoogleComputeSubnetworks
Factory wrapper for google_compute_subnetworks.
DataGoogleComputeTargetHttpProxy
Factory wrapper for google_compute_target_http_proxy.
DataGoogleComputeTargetHttpsProxy
Factory wrapper for google_compute_target_https_proxy.
DataGoogleComputeVpnGateway
Factory wrapper for google_compute_vpn_gateway.
DataGoogleComputeZones
Factory wrapper for google_compute_zones.
DataRef<T>
Public for sealed pattern matching, but constructor is private — only TfRef.data() may construct instances.
EnvironmentConstant
The AppConstant.fromEnvironment choice.
GcsBackend
terraform { backend "gcs" { ... } } configuration.
GoogleComputeAddress
Factory wrapper for google_compute_address.
GoogleComputeAttachedDisk
Factory wrapper for google_compute_attached_disk.
GoogleComputeAutoscaler
Factory wrapper for google_compute_autoscaler.
GoogleComputeBackendBucket
Factory wrapper for google_compute_backend_bucket.
GoogleComputeBackendBucketSignedUrlKey
Factory wrapper for google_compute_backend_bucket_signed_url_key.
GoogleComputeBackendService
Factory wrapper for google_compute_backend_service.
GoogleComputeBackendServiceSignedUrlKey
Factory wrapper for google_compute_backend_service_signed_url_key.
GoogleComputeBulkPerInstanceConfig
Factory wrapper for google_compute_bulk_per_instance_config.
GoogleComputeCrossSiteNetwork
Factory wrapper for google_compute_cross_site_network.
GoogleComputeDisk
Factory wrapper for google_compute_disk.
GoogleComputeDiskAsyncReplication
Factory wrapper for google_compute_disk_async_replication.
GoogleComputeDiskIamBinding
Factory wrapper for google_compute_disk_iam_binding.
GoogleComputeDiskIamMember
Factory wrapper for google_compute_disk_iam_member.
GoogleComputeDiskIamPolicy
Factory wrapper for google_compute_disk_iam_policy.
GoogleComputeDiskResourcePolicyAttachment
Factory wrapper for google_compute_disk_resource_policy_attachment.
GoogleComputeExternalVpnGateway
Factory wrapper for google_compute_external_vpn_gateway.
GoogleComputeFirewall
Factory wrapper for google_compute_firewall.
GoogleComputeFirewallPolicy
Factory wrapper for google_compute_firewall_policy.
GoogleComputeFirewallPolicyAssociation
Factory wrapper for google_compute_firewall_policy_association.
GoogleComputeFirewallPolicyIamBinding
Factory wrapper for google_compute_firewall_policy_iam_binding.
GoogleComputeFirewallPolicyIamMember
Factory wrapper for google_compute_firewall_policy_iam_member.
GoogleComputeFirewallPolicyIamPolicy
Factory wrapper for google_compute_firewall_policy_iam_policy.
GoogleComputeFirewallPolicyRule
Factory wrapper for google_compute_firewall_policy_rule.
GoogleComputeFirewallPolicyWithRules
Factory wrapper for google_compute_firewall_policy_with_rules.
GoogleComputeForwardingRule
Factory wrapper for google_compute_forwarding_rule.
GoogleComputeGlobalAddress
Factory wrapper for google_compute_global_address.
GoogleComputeGlobalForwardingRule
Factory wrapper for google_compute_global_forwarding_rule.
GoogleComputeGlobalNetworkEndpoint
Factory wrapper for google_compute_global_network_endpoint.
GoogleComputeGlobalNetworkEndpointGroup
Factory wrapper for google_compute_global_network_endpoint_group.
GoogleComputeGlobalVmExtensionPolicy
Factory wrapper for google_compute_global_vm_extension_policy.
GoogleComputeHaVpnGateway
Factory wrapper for google_compute_ha_vpn_gateway.
GoogleComputeHealthCheck
Factory wrapper for google_compute_health_check.
GoogleComputeHttpHealthCheck
Factory wrapper for google_compute_http_health_check.
GoogleComputeHttpsHealthCheck
Factory wrapper for google_compute_https_health_check.
GoogleComputeImage
Factory wrapper for google_compute_image.
GoogleComputeImageIamBinding
Factory wrapper for google_compute_image_iam_binding.
GoogleComputeImageIamMember
Factory wrapper for google_compute_image_iam_member.
GoogleComputeImageIamPolicy
Factory wrapper for google_compute_image_iam_policy.
GoogleComputeInstance
Factory wrapper for google_compute_instance.
GoogleComputeInstanceFromTemplate
Factory wrapper for google_compute_instance_from_template.
GoogleComputeInstanceGroup
Factory wrapper for google_compute_instance_group.
GoogleComputeInstanceGroupManager
Factory wrapper for google_compute_instance_group_manager.
GoogleComputeInstanceGroupMembership
Factory wrapper for google_compute_instance_group_membership.
GoogleComputeInstanceGroupNamedPort
Factory wrapper for google_compute_instance_group_named_port.
GoogleComputeInstanceIamBinding
Factory wrapper for google_compute_instance_iam_binding.
GoogleComputeInstanceIamMember
Factory wrapper for google_compute_instance_iam_member.
GoogleComputeInstanceIamPolicy
Factory wrapper for google_compute_instance_iam_policy.
GoogleComputeInstanceSettings
Factory wrapper for google_compute_instance_settings.
GoogleComputeInstanceTemplate
Factory wrapper for google_compute_instance_template.
GoogleComputeInstanceTemplateIamBinding
Factory wrapper for google_compute_instance_template_iam_binding.
GoogleComputeInstanceTemplateIamMember
Factory wrapper for google_compute_instance_template_iam_member.
GoogleComputeInstanceTemplateIamPolicy
Factory wrapper for google_compute_instance_template_iam_policy.
GoogleComputeInstantSnapshot
Factory wrapper for google_compute_instant_snapshot.
GoogleComputeInstantSnapshotIamBinding
Factory wrapper for google_compute_instant_snapshot_iam_binding.
GoogleComputeInstantSnapshotIamMember
Factory wrapper for google_compute_instant_snapshot_iam_member.
GoogleComputeInstantSnapshotIamPolicy
Factory wrapper for google_compute_instant_snapshot_iam_policy.
GoogleComputeInterconnect
Factory wrapper for google_compute_interconnect.
GoogleComputeInterconnectAttachment
Factory wrapper for google_compute_interconnect_attachment.
GoogleComputeInterconnectAttachmentGroup
Factory wrapper for google_compute_interconnect_attachment_group.
GoogleComputeInterconnectGroup
Factory wrapper for google_compute_interconnect_group.
GoogleComputeManagedSslCertificate
Factory wrapper for google_compute_managed_ssl_certificate.
GoogleComputeNetwork
Factory wrapper for google_compute_network.
GoogleComputeNetworkAttachment
Factory wrapper for google_compute_network_attachment.
GoogleComputeNetworkEdgeSecurityService
Factory wrapper for google_compute_network_edge_security_service.
GoogleComputeNetworkEndpoint
Factory wrapper for google_compute_network_endpoint.
GoogleComputeNetworkEndpointGroup
Factory wrapper for google_compute_network_endpoint_group.
GoogleComputeNetworkEndpoints
Factory wrapper for google_compute_network_endpoints.
GoogleComputeNetworkFirewallPolicy
Factory wrapper for google_compute_network_firewall_policy.
GoogleComputeNetworkFirewallPolicyAssociation
Factory wrapper for google_compute_network_firewall_policy_association.
GoogleComputeNetworkFirewallPolicyIamBinding
Factory wrapper for google_compute_network_firewall_policy_iam_binding.
GoogleComputeNetworkFirewallPolicyIamMember
Factory wrapper for google_compute_network_firewall_policy_iam_member.
GoogleComputeNetworkFirewallPolicyIamPolicy
Factory wrapper for google_compute_network_firewall_policy_iam_policy.
GoogleComputeNetworkFirewallPolicyRule
Factory wrapper for google_compute_network_firewall_policy_rule.
GoogleComputeNetworkFirewallPolicyWithRules
Factory wrapper for google_compute_network_firewall_policy_with_rules.
GoogleComputeNetworkPeering
Factory wrapper for google_compute_network_peering.
GoogleComputeNetworkPeeringRoutesConfig
Factory wrapper for google_compute_network_peering_routes_config.
GoogleComputeNodeGroup
Factory wrapper for google_compute_node_group.
GoogleComputeNodeTemplate
Factory wrapper for google_compute_node_template.
GoogleComputeOrganizationSecurityPolicy
Factory wrapper for google_compute_organization_security_policy.
GoogleComputeOrganizationSecurityPolicyAssociation
Factory wrapper for google_compute_organization_security_policy_association.
GoogleComputeOrganizationSecurityPolicyRule
Factory wrapper for google_compute_organization_security_policy_rule.
GoogleComputePacketMirroring
Factory wrapper for google_compute_packet_mirroring.
GoogleComputePerInstanceConfig
Factory wrapper for google_compute_per_instance_config.
GoogleComputePreviewFeature
Factory wrapper for google_compute_preview_feature.
GoogleComputeProjectCloudArmorTier
Factory wrapper for google_compute_project_cloud_armor_tier.
GoogleComputeProjectDefaultNetworkTier
Factory wrapper for google_compute_project_default_network_tier.
GoogleComputeProjectMetadata
Factory wrapper for google_compute_project_metadata.
GoogleComputeProjectMetadataItem
Factory wrapper for google_compute_project_metadata_item.
GoogleComputePublicAdvertisedPrefix
Factory wrapper for google_compute_public_advertised_prefix.
GoogleComputePublicDelegatedPrefix
Factory wrapper for google_compute_public_delegated_prefix.
GoogleComputeRegionAutoscaler
Factory wrapper for google_compute_region_autoscaler.
GoogleComputeRegionBackendService
Factory wrapper for google_compute_region_backend_service.
GoogleComputeRegionCommitment
Factory wrapper for google_compute_region_commitment.
GoogleComputeRegionCompositeHealthCheck
Factory wrapper for google_compute_region_composite_health_check.
GoogleComputeRegionDisk
Factory wrapper for google_compute_region_disk.
GoogleComputeRegionDiskIamBinding
Factory wrapper for google_compute_region_disk_iam_binding.
GoogleComputeRegionDiskIamMember
Factory wrapper for google_compute_region_disk_iam_member.
GoogleComputeRegionDiskIamPolicy
Factory wrapper for google_compute_region_disk_iam_policy.
GoogleComputeRegionDiskResourcePolicyAttachment
Factory wrapper for google_compute_region_disk_resource_policy_attachment.
GoogleComputeRegionHealthAggregationPolicy
Factory wrapper for google_compute_region_health_aggregation_policy.
GoogleComputeRegionHealthCheck
Factory wrapper for google_compute_region_health_check.
GoogleComputeRegionHealthSource
Factory wrapper for google_compute_region_health_source.
GoogleComputeRegionInstanceGroupManager
Factory wrapper for google_compute_region_instance_group_manager.
GoogleComputeRegionInstanceTemplate
Factory wrapper for google_compute_region_instance_template.
GoogleComputeRegionInstantSnapshot
Factory wrapper for google_compute_region_instant_snapshot.
GoogleComputeRegionInstantSnapshotIamBinding
Factory wrapper for google_compute_region_instant_snapshot_iam_binding.
GoogleComputeRegionInstantSnapshotIamMember
Factory wrapper for google_compute_region_instant_snapshot_iam_member.
GoogleComputeRegionInstantSnapshotIamPolicy
Factory wrapper for google_compute_region_instant_snapshot_iam_policy.
GoogleComputeRegionNetworkEndpoint
Factory wrapper for google_compute_region_network_endpoint.
GoogleComputeRegionNetworkEndpointGroup
Factory wrapper for google_compute_region_network_endpoint_group.
GoogleComputeRegionNetworkFirewallPolicy
Factory wrapper for google_compute_region_network_firewall_policy.
GoogleComputeRegionNetworkFirewallPolicyAssociation
Factory wrapper for google_compute_region_network_firewall_policy_association.
GoogleComputeRegionNetworkFirewallPolicyIamBinding
Factory wrapper for google_compute_region_network_firewall_policy_iam_binding.
GoogleComputeRegionNetworkFirewallPolicyIamMember
Factory wrapper for google_compute_region_network_firewall_policy_iam_member.
GoogleComputeRegionNetworkFirewallPolicyIamPolicy
Factory wrapper for google_compute_region_network_firewall_policy_iam_policy.
GoogleComputeRegionNetworkFirewallPolicyRule
Factory wrapper for google_compute_region_network_firewall_policy_rule.
GoogleComputeRegionNetworkFirewallPolicyWithRules
Factory wrapper for google_compute_region_network_firewall_policy_with_rules.
GoogleComputeRegionPerInstanceConfig
Factory wrapper for google_compute_region_per_instance_config.
GoogleComputeRegionResizeRequest
Factory wrapper for google_compute_region_resize_request.
GoogleComputeRegionSecurityPolicy
Factory wrapper for google_compute_region_security_policy.
GoogleComputeRegionSecurityPolicyRule
Factory wrapper for google_compute_region_security_policy_rule.
GoogleComputeRegionSslCertificate
Factory wrapper for google_compute_region_ssl_certificate.
GoogleComputeRegionSslPolicy
Factory wrapper for google_compute_region_ssl_policy.
GoogleComputeRegionTargetHttpProxy
Factory wrapper for google_compute_region_target_http_proxy.
GoogleComputeRegionTargetHttpsProxy
Factory wrapper for google_compute_region_target_https_proxy.
GoogleComputeRegionTargetTcpProxy
Factory wrapper for google_compute_region_target_tcp_proxy.
GoogleComputeRegionUrlMap
Factory wrapper for google_compute_region_url_map.
GoogleComputeReservation
Factory wrapper for google_compute_reservation.
GoogleComputeResizeRequest
Factory wrapper for google_compute_resize_request.
GoogleComputeResourcePolicy
Factory wrapper for google_compute_resource_policy.
GoogleComputeResourcePolicyAttachment
Factory wrapper for google_compute_resource_policy_attachment.
GoogleComputeRolloutPlan
Factory wrapper for google_compute_rollout_plan.
GoogleComputeRoute
Factory wrapper for google_compute_route.
GoogleComputeRouter
Factory wrapper for google_compute_router.
GoogleComputeRouterInterface
Factory wrapper for google_compute_router_interface.
GoogleComputeRouterNamedSet
Factory wrapper for google_compute_router_named_set.
GoogleComputeRouterNat
Factory wrapper for google_compute_router_nat.
GoogleComputeRouterNatAddress
Factory wrapper for google_compute_router_nat_address.
GoogleComputeRouterPeer
Factory wrapper for google_compute_router_peer.
GoogleComputeRouterRoutePolicy
Factory wrapper for google_compute_router_route_policy.
GoogleComputeSecurityPolicy
Factory wrapper for google_compute_security_policy.
GoogleComputeSecurityPolicyRule
Factory wrapper for google_compute_security_policy_rule.
GoogleComputeServiceAttachment
Factory wrapper for google_compute_service_attachment.
GoogleComputeSharedVpcHostProject
Factory wrapper for google_compute_shared_vpc_host_project.
GoogleComputeSharedVpcServiceProject
Factory wrapper for google_compute_shared_vpc_service_project.
GoogleComputeSnapshot
Factory wrapper for google_compute_snapshot.
GoogleComputeSnapshotIamBinding
Factory wrapper for google_compute_snapshot_iam_binding.
GoogleComputeSnapshotIamMember
Factory wrapper for google_compute_snapshot_iam_member.
GoogleComputeSnapshotIamPolicy
Factory wrapper for google_compute_snapshot_iam_policy.
GoogleComputeSnapshotSettings
Factory wrapper for google_compute_snapshot_settings.
GoogleComputeSslCertificate
Factory wrapper for google_compute_ssl_certificate.
GoogleComputeSslPolicy
Factory wrapper for google_compute_ssl_policy.
GoogleComputeStoragePool
Factory wrapper for google_compute_storage_pool.
GoogleComputeStoragePoolIamBinding
Factory wrapper for google_compute_storage_pool_iam_binding.
GoogleComputeStoragePoolIamMember
Factory wrapper for google_compute_storage_pool_iam_member.
GoogleComputeStoragePoolIamPolicy
Factory wrapper for google_compute_storage_pool_iam_policy.
GoogleComputeSubnetwork
Factory wrapper for google_compute_subnetwork.
GoogleComputeSubnetworkIamBinding
Factory wrapper for google_compute_subnetwork_iam_binding.
GoogleComputeSubnetworkIamMember
Factory wrapper for google_compute_subnetwork_iam_member.
GoogleComputeSubnetworkIamPolicy
Factory wrapper for google_compute_subnetwork_iam_policy.
GoogleComputeTargetGrpcProxy
Factory wrapper for google_compute_target_grpc_proxy.
GoogleComputeTargetHttpProxy
Factory wrapper for google_compute_target_http_proxy.
GoogleComputeTargetHttpsProxy
Factory wrapper for google_compute_target_https_proxy.
GoogleComputeTargetInstance
Factory wrapper for google_compute_target_instance.
GoogleComputeTargetPool
Factory wrapper for google_compute_target_pool.
GoogleComputeTargetSslProxy
Factory wrapper for google_compute_target_ssl_proxy.
GoogleComputeTargetTcpProxy
Factory wrapper for google_compute_target_tcp_proxy.
GoogleComputeUrlMap
Factory wrapper for google_compute_url_map.
GoogleComputeVpnGateway
Factory wrapper for google_compute_vpn_gateway.
GoogleComputeVpnTunnel
Factory wrapper for google_compute_vpn_tunnel.
GoogleComputeWireGroup
Factory wrapper for google_compute_wire_group.
GoogleComputeZoneVmExtensionPolicy
Factory wrapper for google_compute_zone_vm_extension_policy.
IgnoreAllChanges
IgnoreChanges.all.
IgnoreAttributes
IgnoreChanges.of.
IgnoreChanges
What ignore_changes covers: every attribute, or the listed ones.
InvalidDartDefineOutput
An output of Stack.addDartDefineOutput that cannot carry what it names: an output that is not registered, is sensitive or has no environment value, two outputs read from one variable, or no output at all.
InvalidLifecycle
A lifecycle block Terraform rejects: a data source (or one of its attributes) in replaceTriggeredBy, all inside IgnoreChanges.of, or a condition with an empty error message.
InvalidMoveTarget
A moved block whose to names no resource of the Stack.
InvalidTimeout
A negative timeouts duration.
LifecycleCondition
A precondition or postcondition block: Terraform fails the plan (LifecycleCondition.pre) or the apply (LifecycleCondition.post) with errorMessage when condition is false.
LifecycleOptions
lifecycle { ... } block on a resource.
LocalBackend
terraform { backend "local" { ... } } configuration.
MissingProvider
A block needs a provider configuration the Stack does not register: the provider its type implies (google for google_pubsub_topic), the one its provider meta-argument names, or one a module call passes on.
ModuleCall
A module "<localName>" { ... } call as a Dart value.
NoProviders
The Stack registers no provider, but declares resources or data sources.
ProviderConflict
Two provider registrations Terraform rejects together: two defaults of one name, a repeated alias, an alias that is not an identifier, or configurations of one name with different source / version constraints.
RefConstant<T>
The AppConstant.ref choice.
ReplaceTrigger
What lifecycle.replaceTriggeredBy lists: a resource of the Stack or an attribute getter of one. Resource and TfRef implement it; synth reports a data source or a data-source attribute as an InvalidLifecycle.
Resource
Base of every user-instantiable Terraform resource.
ResourceRef
Public for sealed pattern matching, but constructor is private — only TfRef.resource() may construct instances.
S3Backend
terraform { backend "s3" { ... } } configuration.
Sensitive<T>
What an argument Terraform marks sensitive takes: a variable, an expression or an attribute getter — a value Terraform resolves, never a Dart literal that would be written into main.tf.json.
SensitiveLiteral
A sensitive field is set to a literal, which would write the secret in plain text into main.tf.json.
Stack
User-extended IaC composition root.
StackBackend
Lightweight backend hook. Core ships GcsBackend, S3Backend, and LocalBackend; anything else implements this interface in the caller. The Stack only stores the value and exposes a discriminator for synth's terraform { backend ... } emitter.
StackProvider
Coordination interface between Stack (in this package) and concrete providers (e.g. GoogleProvider in terradart_google). Concrete providers implement every getter using their baked-in constants from Stage 2 codegen.
SynthIssue
One reason a Stack cannot be synthesized.
SynthResult
Bundle returned by StackSynth.synth.
TfAddressed
Anything that exposes a Terraform address, e.g. google_pubsub_topic.orders.
TfArg<T>
A Terraform argument: a Dart-side literal, a reference to another block's attribute (TfRef), a variable or a raw expression.
TfArgExpression<T>
A raw Terraform expression — the tf.json template string, verbatim.
TfArgLiteral<T>
TfArgVariable<T>
TfCollectionType
list(...), set(...) or map(...).
TfMoved
One moved { from = ... to = ... } block: the state object at from now belongs to the resource at to, so a rename does not become a destroy-and-create.
TfObjectType
object({ ... }).
TfOptionalType
optional(<type>[, <default>]).
TfOutput<T>
An output "<name>" { value = ... } block, registered with Stack.addOutput.
TfPrimitiveType
string, number, bool or any.
TfRef<T>
A Terraform-side reference: an attribute of a resource (AttributeRef) or a data source (DataRef), or a whole resource (ResourceRef).
TfTimeouts
timeouts { ... } on a resource or data source: how long Terraform waits for each operation before giving up.
TfTupleType
tuple([...]).
TfType
A Terraform type constraint: string, list(number), object({ name = string }).
TfVariable
One variable "<name>" { ... } declaration.
UndeclaredVariable
A TfArg.variable or var.<name> in an expression names a variable the Stack does not declare.
UnregisteredReference
A block references another block that was never registered on the Stack: built, but not passed to add(...) / addModule(...).
UnresolvableConstant
An AppConstant.ref whose value is not known at synth: the attribute is not set to a literal, is sensitive, does not match the constant's type, or belongs to a block that is not registered.
ValueConstant<T>
The AppConstant.value choice.

Enums

ResourceKind
Whether a Stack entry is a resource block or a data block in Terraform JSON.

Extension Types

AccessConfigNetworkTier
network_interface.access_config.network_tier -- service tier for the external IP. STANDARD is regional; PREMIUM is global.
AddressType
Address allocation scope: INTERNAL (VPC-private) or EXTERNAL (public IP).
AutoscalerCpuPredictiveMethod
Predictive autoscaling method for ComputeAutoscalerCpuUtilization.
AutoscalerMetricType
Defines how a custom-metric value is interpreted by the autoscaler. Mirrors the API's utilizationTargetType enum.
AutoscalerMode
Operating mode for the autoscaling policy. The schema declares this as a free-form string — the enum below pins the API-accepted set so callers cannot mis-spell it. Default is on when the field is omitted from the request.
BackendBucketCacheMode
cdn_policy.cache_mode. Enabling CDN (enable_cdn = true) without setting this defaults to CACHE_ALL_STATIC. Note: this is a distinct type from BackendServiceCacheMode — bucket-side CDN policies are not interchangeable with service-side policies.
BackendBucketCompressionMode
compression_mode — Brotli / gzip negotiation based on the client's Accept-Encoding header. Note: this is a distinct type from BackendServiceCompressionMode even though the wire values (AUTOMATIC / DISABLED) coincide.
BackendBucketLoadBalancingScheme
load_balancing_scheme. The bucket can be left scheme-less (the usual case — works with classic global external and global application external load balancers) or set to internalManaged for cross-region internal layer-7 load balancing. Important: when internalManaged is set, enable_cdn must be false (Cloud CDN is not available for internal schemes).
BackendServiceBalancingMode
Per-backend balancing mode. See ComputeBackendServiceBackend.balancingMode.
BackendServiceCacheMode
cdn_policy.cache_mode. Enabling CDN (enable_cdn = true) without setting this defaults to CACHE_ALL_STATIC.
BackendServiceCompressionMode
compression_mode. Brotli / gzip negotiation based on the client's Accept-Encoding header.
BackendServiceLogOptionalMode
log_config.optional_mode. Controls which optional access-log fields are exported when ComputeBackendServiceLogConfig.enable is true.
BackendServicePreference
backend.preference. Cannot be set when load_balancing_scheme is EXTERNAL.
BackendServiceProtocol
Wire protocol the backend service uses to talk to backends. HTTP2 and H2C require an HTTP(S)-class load balancer; TCP, SSL, and UDP are for Network Load Balancing / Traffic Director TCP routing. GRPC is required when the URL map is bound to a target gRPC proxy.
BgpBestPathSelectionMode
BGP best-path selection algorithm for the VPC.
BgpInterRegionCost
BGP inter-region cost calculation behaviour. Used when bgpBestPathSelectionMode == standard.
ComputeDiskGuestOsFeatureType
guest_os_features[].type for zonal persistent disks.
ComputeExternalVpnGatewayRedundancyType
Compute External Vpn Gateway Redundancy enum for redundancy_type.
ComputeFirewallPolicyRuleDestNetworkContext
dest_network_context — derived from the provider schema description.
ComputeFirewallPolicyRuleDirection
Compute Firewall Policy Rule enum for direction.
ComputeFirewallPolicyRuleSrcNetworkContext
src_network_context — derived from the provider schema description.
ComputeFirewallPolicyWithRulesDirection
direction — derived from the provider schema description.
ComputeHaVpnGatewayIpVersion
Compute Ha Vpn Gateway Ip enum for gateway_ip_version.
ComputeHaVpnGatewayStackType
Compute Ha Vpn Gateway Stack enum for stack_type.
ComputeImageType
type — derived from the provider schema description.
ComputeInstanceFromTemplateNicType
nic_type — derived from the provider schema description.
ComputeInstanceFromTemplateTotalEgressBandwidthTier
total_egress_bandwidth_tier — derived from the provider schema description.
ComputeInstanceNetworkPerformanceConfigTotalEgressBandwidthTier
network_performance_config.total_egress_bandwidth_tier — VM egress bandwidth profile.
ComputeInstanceTemplateTotalEgressBandwidthTier
total_egress_bandwidth_tier — derived from the provider schema description.
ComputeInterconnectAttachmentBandwidth
Compute Interconnect Attachment enum for bandwidth.
ComputeInterconnectAttachmentEncryption
Compute Interconnect Attachment enum for encryption.
ComputeInterconnectAttachmentGroupAvailabilitySla
availability_sla — derived from the provider schema description.
ComputeInterconnectAttachmentStackType
Compute Interconnect Attachment Stack enum for stack_type.
ComputeInterconnectAttachmentState
Compute Interconnect Attachment enum for state.
ComputeInterconnectAttachmentType
Compute Interconnect Attachment enum for type.
ComputeInterconnectGroupTopologyCapability
topology_capability — derived from the provider schema description.
ComputeInterconnectLinkType
Compute Interconnect Link enum for link_type.
ComputeInterconnectOperationalStatus
Compute Interconnect Operational enum for operational_status.
ComputeInterconnectState
Compute Interconnect enum for state.
ComputeInterconnectType
Compute Interconnect enum for interconnect_type.
ComputeNetworkAttachmentConnectionPreference
Compute Network Attachment Connection enum for connection_preference.
ComputeNetworkFirewallPolicyRuleDestNetworkContext
dest_network_context — derived from the provider schema description.
ComputeNetworkFirewallPolicyRuleDirection
Compute Network Firewall Policy Rule enum for direction.
ComputeNetworkFirewallPolicyRuleSrcNetworkContext
src_network_context — derived from the provider schema description.
ComputeNetworkFirewallPolicyRuleTargetType
Compute Network Firewall Policy Rule Target enum for target_type.
ComputeNetworkFirewallPolicyWithRulesDirection
direction — derived from the provider schema description.
ComputeNetworkFirewallPolicyWithRulesPolicyType
Compute Network Firewall Policy With Rules Policy enum for policy_type.
ComputeNetworkPeeringStackType
stack_type — IP version stack of the peering. Default (when unset) is ComputeNetworkPeeringStackType.ipv4Only.
ComputeNetworkPeeringUpdateStrategy
update_strategy — how changes to peering config are reconciled. Default (when unset) is ComputeNetworkPeeringUpdateStrategy.independent.
ComputeNodeGroupMode
mode — derived from the provider schema description.
ComputeNodeGroupShareType
share_type — derived from the provider schema description.
ComputeNodeTemplateCpuOvercommitType
Compute Node Template Cpu Overcommit enum for cpu_overcommit_type.
ComputeNodeTemplateType
type — derived from the provider schema description.
ComputeOrganizationSecurityPolicyJsonParsing
json_parsing — derived from the provider schema description.
ComputeOrganizationSecurityPolicyLogLevel
log_level — derived from the provider schema description.
ComputeOrganizationSecurityPolicyRequestBodyInspectionSize
request_body_inspection_size — derived from the provider schema description.
ComputePacketMirroringDirection
direction — derived from the provider schema description.
ComputePacketMirroringEnable
Compute Packet Mirroring enum for enable.
ComputePerInstanceConfigAutoDelete
auto_delete — derived from the provider schema description.
ComputePerInstanceConfigDeleteRule
delete_rule — derived from the provider schema description.
ComputePerInstanceConfigMode
mode — derived from the provider schema description.
ComputePreviewFeatureActivationStatus
Compute Preview Feature Activation enum for activation_status.
ComputeProjectCloudArmorTier
Cloud Armor managed protection tier for the project. Prefer caStandard in smoke stacks — Enterprise Annual bills ~$3000/mo.
ComputeProjectDefaultNetworkTier
Default network service tier for new external IPs in the project. PREMIUM uses Google's global backbone; STANDARD is regional/ISP.
ComputePublicAdvertisedPrefixIpv6AccessType
Compute Public Advertised Prefix Ipv6 Access enum for ipv6_access_type.
ComputePublicAdvertisedPrefixPdpScope
Compute Public Advertised Prefix Pdp enum for pdp_scope.
ComputePublicDelegatedPrefixIpv6AccessType
Compute Public Delegated Prefix Ipv6 Access enum for ipv6_access_type.
ComputePublicDelegatedPrefixMode
Compute Public Delegated Prefix enum for mode.
ComputeRegionCommitmentCategory
Compute Region Commitment enum for category.
ComputeRegionCommitmentPlan
Compute Region Commitment enum for plan.
ComputeRegionCommitmentStatus
Compute Region Commitment enum for status.
ComputeRegionDiskGuestOsFeatureType
guest_os_features[].type for regional persistent disks.
ComputeRegionHealthAggregationPolicyType
Compute Region Health Aggregation Policy enum for policy_type.
ComputeRegionHealthSourceType
Compute Region Health Source enum for source_type.
ComputeRegionInstanceTemplateNicType
nic_type — derived from the provider schema description.
ComputeRegionInstanceTemplateTotalEgressBandwidthTier
total_egress_bandwidth_tier — derived from the provider schema description.
ComputeRegionInstantSnapshotDeletionPolicy
Terraform deletion_policy for regional instant snapshots.
ComputeRegionNetworkFirewallPolicyRuleDestNetworkContext
dest_network_context — derived from the provider schema description.
ComputeRegionNetworkFirewallPolicyRuleDirection
Compute Region Network Firewall Policy Rule enum for direction.
ComputeRegionNetworkFirewallPolicyRuleSrcNetworkContext
src_network_context — derived from the provider schema description.
ComputeRegionNetworkFirewallPolicyRuleTargetType
Compute Region Network Firewall Policy Rule Target enum for target_type.
ComputeRegionNetworkFirewallPolicyType
Compute Region Network Firewall Policy enum for policy_type.
ComputeRegionNetworkFirewallPolicyWithRulesDirection
direction — derived from the provider schema description.
ComputeRegionNetworkFirewallPolicyWithRulesPolicyType
Compute Region Network Firewall Policy With Rules Policy enum for policy_type.
ComputeRegionNetworkFirewallPolicyWithRulesTargetType
target_type — derived from the provider schema description.
ComputeRegionPerInstanceConfigAutoDelete
auto_delete — derived from the provider schema description.
ComputeRegionPerInstanceConfigDeleteRule
delete_rule — derived from the provider schema description.
ComputeRegionPerInstanceConfigMode
mode — derived from the provider schema description.
ComputeReservationInterface
interface — derived from the provider schema description.
ComputeReservationServiceShareType
service_share_type — derived from the provider schema description.
ComputeReservationShareType
share_type — derived from the provider schema description.
ComputeResourcePolicyMaxTopologyDistance
Maximum topology distance for a high-throughput workload policy.
ComputeResourcePolicyOnSourceDiskDelete
Behaviour when the source disk of a scheduled snapshot is deleted.
ComputeResourcePolicySnapshotDayOfWeek
Day of week for a weekly snapshot schedule.
ComputeResourcePolicyWorkloadType
Workload-placement intent for a GoogleComputeResourcePolicy.
ComputeRolloutPlanDelimiter
delimiter — derived from the provider schema description.
ComputeRolloutPlanLocationScope
Compute Rollout Plan Location enum for location_scope.
ComputeRolloutPlanType
type — derived from the provider schema description.
ComputeRouterBgpAdvertiseMode
bgp.advertise_mode — which BGP prefix advertisement mode the router uses. Default (when unset) is ComputeRouterBgpAdvertiseMode.defaultMode.
ComputeRouterNamedSetType
Compute Router Named Set enum for type.
ComputeRouterNatAutoNetworkTier
Compute Router Nat Auto Network enum for auto_network_tier.
ComputeRouterNatFilter
filter — derived from the provider schema description.
ComputeRouterNatIpAllocateOption
Compute Router Nat Ip Allocate enum for nat_ip_allocate_option.
ComputeRouterNatSourceSubnetworkIpRangesToNat
Compute Router Nat Source Subnetwork Ip Ranges To enum for source_subnetwork_ip_ranges_to_nat.
ComputeRouterNatSourceSubnetworkIpRangesToNat64
Compute Router Nat Source Subnetwork Ip Ranges To enum for source_subnetwork_ip_ranges_to_nat64.
ComputeRouterNatType
Compute Router Nat enum for type.
ComputeRouterPeerAdvertiseMode
advertise_mode — BGP prefix advertisement mode of this peer. Default (when unset) is ComputeRouterPeerAdvertiseMode.defaultMode.
ComputeRouterPeerSessionInitializationMode
session_initialization_mode — derived from the provider schema description.
ComputeRouterRoutePolicyType
Compute Router Route Policy enum for type.
ComputeSnapshotSettingsPolicy
policy — derived from the provider schema description.
ComputeSnapshotType
Compute Snapshot enum for snapshot_type.
ComputeStoragePoolCapacityProvisioningType
Compute Storage Pool Capacity Provisioning enum for capacity_provisioning_type.
ComputeStoragePoolPerformanceProvisioningType
Compute Storage Pool Performance Provisioning enum for performance_provisioning_type.
ComputeTargetInstanceNatPolicy
Compute Target Instance Nat enum for nat_policy.
ConfidentialInstanceType
confidential_instance_config.confidential_instance_type -- confidential computing technology. SEV and SEV_SNP require AMD CPUs (the latter also requires min_cpu_platform = "AMD Milan"). TDX requires Intel.
ExternalManagedMigrationState
external_managed_migration_state. Drives the Classic ALB → Application Load Balancer migration. State must transition PREPARE → optional TEST_BY_PERCENTAGE → TEST_ALL_TRAFFIC before the load balancing scheme can flip from EXTERNAL to EXTERNAL_MANAGED; same order in reverse to roll back.
FirewallDirection
Direction of traffic this firewall rule applies to. For ingress, at least one of sourceRanges / sourceTags / sourceServiceAccounts is required by GCP.
FirewallLogMetadata
Whether to include or exclude metadata for firewall logs. Used as the metadata field of ComputeFirewallLogConfig.
ForwardingRuleIpProtocol
IP protocol for google_compute_forwarding_rule.ip_protocol. The set of protocols accepted at apply time depends on the load balancing scheme and target type — Application Load Balancers want tcp; protocol forwarding rules may also pick udp / esp / ah / sctp / icmp.
ForwardingRuleIpVersion
IP version for the regional forwarding rule's VIP. Default IPV4. Selecting ipv6 requires a regional IPv6 GoogleComputeAddress for GoogleComputeForwardingRule.ipAddress, and (for external IPv6 NetLB rules) typically pairs with GoogleComputeForwardingRule.ipCollection pointing at a PublicDelegatedPrefix in EXTERNAL_IPV6_FORWARDING_RULE_CREATION mode.
ForwardingRuleLoadBalancingScheme
load_balancing_scheme. Picks which regional load balancer variant this forwarding rule fronts.
ForwardingRuleNetworkTier
network_tier. Unlike global forwarding rules (which only accept PREMIUM), regional forwarding rules accept both tiers. The tier must match the tier of the referenced GoogleComputeForwardingRule.ipAddress when one is supplied. Leave null to inherit the provider default (PREMIUM).
GlobalAddressIpVersion
IP protocol version for the global address. Default ipv4.
GlobalAddressPurpose
purpose for google_compute_global_address. Selects the role the reserved range plays.
GlobalAddressType
address_type for google_compute_global_address. Default external (public IP). Use internal for in-VPC ranges (private-services peering, internal load balancer VIPs).
GlobalForwardingRuleIpProtocol
IP protocol for google_compute_global_forwarding_rule.ip_protocol. The set of protocols accepted at apply time depends on the load balancing scheme and target type — Application Load Balancers want tcp; protocol forwarding rules may also pick udp / esp / ah / sctp / icmp.
GlobalForwardingRuleIpVersion
IP version for the global forwarding rule's VIP. Default IPV4. Selecting ipv6 requires a global IPv6 GoogleComputeGlobalAddress for GoogleComputeGlobalForwardingRule.ipAddress.
GlobalForwardingRuleLoadBalancingScheme
load_balancing_scheme. Picks which load balancer variant this forwarding rule fronts.
GlobalForwardingRuleMetadataFilterMatchCriteria
metadata_filters[*].filter_match_criteria. Controls how the nested ComputeGlobalForwardingRuleMetadataFilterLabel entries combine.
GlobalForwardingRuleMigrationState
external_managed_backend_bucket_migration_state. Drives the canary migration of backend buckets attached to this forwarding rule from EXTERNAL (Classic ALB) to EXTERNAL_MANAGED (modern global external ALB).
GlobalForwardingRuleNetworkTier
network_tier. For global forwarding rules GCP only accepts PREMIUM at apply time — the schema lists STANDARD for symmetry with the regional resource, but supplying it on a global rule errors out. Leave the field null (provider default = PREMIUM) unless overriding is explicitly needed.
GlobalNetworkEndpointGroupType
network_endpoint_type for google_compute_global_network_endpoint_group.
HealthCheckPortSpecification
port_specification value shared by every per-protocol config block.
HealthCheckProxyHeader
proxy_header value used inside every per-protocol HTTP-shaped block (HTTP, HTTPS, HTTP2, TCP, SSL). Defaults to none on the GCP API.
HealthCheckType
Health-check protocol. Computed on the resource (the GCP API derives it from which per-protocol config block was set), so callers don't set this directly — they pick the matching *HealthCheck block. Listed here for use in == comparisons against the derived type getter.
InstanceGroupManagerListManagedInstancesResults
list_managed_instances_results — pagination for the listManagedInstances API on this MIG.
InstanceGroupManagerUpdatePolicyAction
update_policy.minimal_action / update_policy.most_disruptive_allowed_action. Shared enum — both fields accept the same value set.
InstanceGroupManagerUpdatePolicyReplacementMethod
update_policy.replacement_method. SUBSTITUTE (default) replaces VMs with newly-named ones; RECREATE preserves instance names but requires max_unavailable_* > 0.
InstanceGroupManagerUpdatePolicyType
update_policy.type. Controls whether the MIG actively performs the rolling update or waits for an external action (resize, recreate-instances) to apply it.
InstanceTemplateAccessConfigNetworkTier
network_interface.access_config.network_tier -- service tier for the external IP. STANDARD is regional; PREMIUM is global.
InstanceTemplateConfidentialInstanceType
confidential_instance_config.confidential_instance_type -- confidential computing technology. SEV and SEV_SNP require AMD CPUs (the latter also requires min_cpu_platform = "AMD Milan"). TDX requires Intel.
InstanceTemplateDiskMode
disk.mode -- read / write mode for an attached or boot disk. Boot disks must be READ_WRITE.
InstanceTemplateInstanceTerminationAction
scheduling.instance_termination_action -- action when a SPOT VM is preempted or max_run_duration elapses.
InstanceTemplateNicType
network_interface.nic_type -- vNIC family used for the interface.
InstanceTemplateOnHostMaintenance
scheduling.on_host_maintenance -- behaviour during host maintenance. MIGRATE (live migration) is the default for standard VMs; preemptible / SPOT / confidential VMs must use TERMINATE.
InstanceTemplatePerformanceMonitoringUnit
advanced_machine_features.performance_monitoring_unit -- PMU level exposed to the guest. ARCHITECTURAL is the minimum stable subset; ENHANCED exposes the broadest set of counters.
InstanceTemplateProvisioningModel
scheduling.provisioning_model -- VM provisioning model. STANDARD runs at on-demand prices with no termination guarantees from GCP; SPOT runs at preemptible prices and may be reclaimed at any time.
InstanceTemplateReservationAffinityType
reservation_affinity.type -- reservation consumption mode. Pair specificReservation with InstanceTemplateReservationAffinityType.specificReservation to target a named reservation; noReservation opts out.
InstanceTerminationAction
scheduling.instance_termination_action -- action when a SPOT VM is preempted or max_run_duration elapses.
IpAddressSelectionPolicy
ip_address_selection_policy. Controls IPv4-vs-IPv6 preference when the load balancer dials a backend (or when a proxyless gRPC client dials directly).
Ipv6EndpointType
IPv6 endpoint type. Used when GoogleComputeAddress.ipVersion is IpVersion.ipv6.
IpVersion
IP protocol version for the address.
LoadBalancingScheme
load_balancing_scheme. A backend service of one scheme cannot be repurposed for another — the value is effectively immutable except through the ExternalManagedMigrationState dance.
LocalityLbPolicy
locality_lb_policy. See the schema docstring for the matrix of which values are valid for which combination of protocol and load_balancing_scheme — Cloud Load Balancing silently coerces invalid values to the scheme's default at apply time.
ManagedSslCertificateType
Certificate provisioning mode. The schema for this resource accepts only MANAGED, and that value is the default — the enum exists for symmetry with the legacy unified google_compute_ssl_certificate resource (which historically distinguished MANAGED from SELF_MANAGED). For new code, omit type entirely.
NetworkEndpointGroupType
network_endpoint_type for google_compute_network_endpoint_group.
NetworkFirewallPolicyEnforcementOrder
Order in which a network firewall policy is enforced relative to classic firewall rules.
NetworkTier
Network service tier. PREMIUM uses Google's premium global backbone; STANDARD uses ISP-level routing (cheaper, regional).
NicType
network_interface.nic_type -- vNIC family used for the interface.
OnHostMaintenance
scheduling.on_host_maintenance -- behaviour during host maintenance. MIGRATE (live migration) is the default for standard VMs; preemptible / SPOT / confidential VMs must use TERMINATE.
OutputEnvironment
The environment Stack.outputEnvironment returns: each variable and its value, in registration order.
PerformanceMonitoringUnit
advanced_machine_features.performance_monitoring_unit -- PMU level exposed to the guest. ARCHITECTURAL is the minimum stable subset; ENHANCED exposes the broadest set of counters.
ProvisioningModel
scheduling.provisioning_model -- VM provisioning model. STANDARD runs at on-demand prices with no termination guarantees from GCP; SPOT runs at preemptible prices and may be reclaimed at any time.
QuicOverride
QUIC negotiation policy for the HTTPS target proxy. When set to none (the default), Google manages whether QUIC is offered to clients; enable always offers QUIC; disable never offers it.
RefTo
A reference to a resource of type R, for an argument that names another resource (network, vpc_id, role_arn, ...).
RegionAutoscalerCpuPredictiveMethod
Predictive autoscaling method for ComputeRegionAutoscalerCpuUtilization.
RegionAutoscalerMetricType
Defines how a custom-metric value is interpreted by the autoscaler. Mirrors the API's utilizationTargetType enum.
RegionAutoscalerMode
Operating mode for the autoscaling policy. The schema declares this as a free-form string — the enum below pins the API-accepted set so callers cannot mis-spell it. Default is on when the field is omitted from the request.
RegionBackendServiceBalancingMode
Per-backend balancing mode. See ComputeRegionBackendServiceBackend.balancingMode. Note: the regional resource omits the global IN_FLIGHT mode.
RegionBackendServiceCacheMode
cdn_policy.cache_mode. Enabling CDN (enable_cdn = true) without setting this defaults to CACHE_ALL_STATIC.
RegionBackendServiceConnectionPersistence
connection_tracking_policy.connection_persistence_on_unhealthy_backends. Whether existing connections persist on backends that have become unhealthy. Default DEFAULT_FOR_PROTOCOL.
RegionBackendServiceFastIpMove
ha_policy.fast_ip_move. Controls fast IP-move behavior for self-managed HA on Passthrough NLBs.
RegionBackendServiceIpAddressSelectionPolicy
ip_address_selection_policy. Controls IPv4-vs-IPv6 preference when the load balancer dials a backend (or when a proxyless gRPC client dials directly).
RegionBackendServiceLoadBalancingScheme
load_balancing_scheme. A backend service of one scheme cannot be repurposed for another — the value is effectively immutable.
RegionBackendServiceLocalityLbPolicy
locality_lb_policy. See the schema docstring for the matrix of which values are valid for which combination of protocol and load_balancing_scheme — Cloud Load Balancing silently coerces invalid values to the scheme's default at apply time. For External Passthrough NLBs only maglev and weightedMaglev are honored; for INTERNAL_MANAGED with HTTP-class protocols the full set is available.
RegionBackendServiceLogOptionalMode
log_config.optional_mode. Controls which optional access-log fields are exported when ComputeRegionBackendServiceLogConfig.enable is true.
RegionBackendServiceProtocol
Wire protocol the regional backend service uses to talk to backends. HTTP2 and H2C require an HTTP(S)-class load balancer; TCP, SSL, and UDP are for Passthrough Network Load Balancing / regional internal proxy routing. GRPC is required when the URL map is bound to a regional target gRPC proxy.
RegionBackendServiceSessionAffinity
session_affinity. Applicable only when the locality LB policy is one of MAGLEV, WEIGHTED_MAGLEV, or RING_HASH for HTTP-class balancers; for Passthrough NLBs clientIp and the 5-tuple variants apply directly. The regional resource adds clientIpNoDestination (Passthrough NLB variant that ignores the destination tuple component) versus the global resource.
RegionBackendServiceTrackingMode
connection_tracking_policy.tracking_mode. Connection-tracking key: perConnection tracks 5-tuple (default); perSession tracks 3-tuple.
RegionBackendServiceZonalAffinitySpillover
network_pass_through_lb_traffic_policy.zonal_affinity.spillover. Zonal-affinity selector for Internal Passthrough NLBs.
RegionHealthCheckPortSpecification
port_specification value shared by every per-protocol config block.
RegionHealthCheckProxyHeader
proxy_header value used inside the per-protocol HTTP-shaped blocks (HTTP, HTTPS, HTTP2, TCP, SSL). Defaults to none on the GCP API.
RegionHealthCheckType
Health-check protocol on a regional health check. Computed on the resource (the GCP API derives it from which per-protocol config block was set), so callers don't set this directly — they pick the matching *HealthCheck block. Listed here for use in == comparisons against the derived type getter.
RegionInstanceGroupManagerDistributionPolicyTargetShape
distribution_policy_target_shape. Controls how strictly the MIG converges on an even spread across distributionPolicyZones during proactive or resize-triggered rebalancing.
RegionInstanceGroupManagerInstanceRedistributionType
update_policy.instance_redistribution_type (regional only). PROACTIVE (default) keeps zones balanced as VMs come and go; NONE disables proactive rebalancing.
RegionInstanceGroupManagerListManagedInstancesResults
list_managed_instances_results — pagination for the listManagedInstances API on this regional MIG.
RegionInstanceGroupManagerUpdatePolicyAction
update_policy.minimal_action / update_policy.most_disruptive_allowed_action. Shared enum — both fields accept the same value set.
RegionInstanceGroupManagerUpdatePolicyReplacementMethod
update_policy.replacement_method. SUBSTITUTE (default) replaces VMs with newly-named ones; RECREATE preserves instance names but requires max_unavailable_* > 0.
RegionInstanceGroupManagerUpdatePolicyType
update_policy.type. Controls whether the MIG actively performs the rolling update or waits for an external action (resize, recreate-instances) to apply it.
RegionNetworkEndpointGroupType
network_endpoint_type for google_compute_region_network_endpoint_group. Defaults to serverless on the API side.
RegionSecurityPolicyDdosProtection
ddos_protection_config.ddos_protection -- DDoS protection tier for network load balancing policies.
RegionSecurityPolicyJsonParsing
advanced_options_config.json_parsing -- JSON body parsing mode for preconfigured WAF evaluation. Regional policies also support GraphQL body parsing via standardWithGraphql.
RegionSecurityPolicyType
RegionSecurityPolicyUserDefinedFieldBase
user_defined_fields.base -- header anchor for a user-defined match field in CLOUD_ARMOR_NETWORK policies.
RegionSslPolicyMinTlsVersion
RegionSslPolicyProfile
RegionTargetTcpProxyProxyHeader
RegionUrlMapMetadataFilterMatchCriteria
match_rules.metadata_filters.filter_match_criteria.
RegionUrlMapRedirectResponseCode
HTTP redirect response code emitted by a default_url_redirect / path_rule.url_redirect / route_rules.url_redirect block. The schema declares this as a free-form string -- the enum below pins the API-accepted set so callers cannot mis-spell it.
ReservationAffinityType
reservation_affinity.type -- reservation consumption mode. Pair specificReservation with a ReservationAffinityType.specificReservation value to target a named reservation; noReservation opts out.
RoutingMode
Routing mode for google_compute_network. Controls how routes are advertised between VPC subnets (regional) or all subnets (global).
ScratchDiskInterface
scratch_disk.interface -- attach bus for the local SSD. Defaults to NVME; SCSI is retained for legacy machine families.
SecurityPolicyJsonParsing
advanced_options_config.json_parsing -- whether Cloud Armor parses JSON request bodies during WAF evaluation. standard is required for the JSON-aware preconfigured WAF rules to inspect body content; otherwise default disabled keeps inspection limited to URI / headers / query string.
SecurityPolicyLogLevel
advanced_options_config.log_level -- verbosity of Cloud Armor's Cloud Logging output. verbose includes preconfigured-WAF rule match details and is the recommended setting during policy tuning; switch back to normal for steady-state to control log volume.
SecurityPolicyRuleAction
rule.action -- what Cloud Armor does when the ComputeSecurityPolicyRules matches. The deny(NNN) actions return a fixed HTTP status to the client; rateBasedBan and throttle REQUIRE ComputeSecurityPolicyRules.rateLimitOptions; redirect REQUIRES ComputeSecurityPolicyRules.redirectOptions. The Terraform value preserves the literal provider strings (parentheses and digits included) -- the Dart variants pick identifier-safe names.
SecurityPolicyRuleMatchVersionedExpr
match.versioned_expr -- Cloud Armor's only built-in predicate today. Pair with ComputeSecurityPolicyRulesMatchConfig.srcIpRanges to match by source IP / CIDR. For richer matching (geo, path, headers), use ComputeSecurityPolicyRulesMatchExpr (CEL) instead.
SecurityPolicyRuleRateLimitEnforceOnKey
rate_limit_options.enforce_on_key / enforce_on_key_configs.enforce_on_key_type.
SecurityPolicyType
type -- intended use of the security policy. Forces replacement when changed. The default (when unset on create) is SecurityPolicyType.cloudArmor.
SecurityPolicyWafExclusionOperator
Operator for preconfigured WAF exclusion match clauses.
ServiceAttachmentConnectionPreference
Connection preference for google_compute_service_attachment.connection_preference.
SessionAffinity
session_affinity. Applicable only when the locality LB policy is one of MAGLEV, WEIGHTED_MAGLEV, or RING_HASH (otherwise the setting is silently ignored).
SslPolicyMinTlsVersion
min_tls_version — the protocol-version floor. TLS 1.3 is always offered by the load balancer and is not selectable as a minimum here; the API only exposes the 1.0 / 1.1 / 1.2 floors. To force TLS 1.3 only, pair tls12 with SslPolicyProfile.restricted, which drops the legacy 1.x suites from the negotiated set.
SslPolicyProfile
profile — the curated cipher-suite preset. See the class-level security guidance for picking between restricted (compliance default), modern (modern browsers only), compatible (permissive legacy default), fips202205 (FIPS 202205-pinned), and custom (caller-supplied via GoogleComputeSslPolicy.customFeatures).
SubnetworkIpv6AccessType
Access type of the IPv6 address range held by the subnetwork. Immutable after creation. Only meaningful when SubnetworkStackType includes IPv6.
SubnetworkLogConfigAggregationInterval
VPC flow log aggregation interval. The default on GCP is interval5Sec (denser sampling, higher cost).
SubnetworkLogConfigMetadata
VPC flow log metadata-inclusion mode. Pair customMetadata with the ComputeSubnetworkLogConfig.metadataFields selector.
SubnetworkPurpose
Purpose of the subnetwork. Defaults to private when unspecified.
SubnetworkResolveSubnetMask
ARP resolution mode for the subnetwork. Controls which ranges respond to ARP requests. Used only by reserved-internal-range subnetworks.
SubnetworkRole
Role of a managed-proxy subnetwork. Only meaningful when purpose is REGIONAL_MANAGED_PROXY or GLOBAL_MANAGED_PROXY.
SubnetworkStackType
IP stack type for the subnetwork. Immutable after creation.
TargetSslProxyProxyHeader
TargetTcpProxyProxyHeader
TlsEarlyData
TLS 1.3 0-RTT ("Early Data") acceptance policy. Early Data lets a TLS resumption handshake carry the initial application payload alongside the handshake itself, eliminating the extra round trip at the cost of replay risk.
UrlMapCacheMode
route_action.cache_policy.cache_mode and nested cache policy blocks.
UrlMapMetadataFilterMatchCriteria
match_rules.metadata_filters.filter_match_criteria.
UrlMapRedirectResponseCode
HTTP redirect response code emitted by a default_url_redirect / path_rule.url_redirect / route_rules.url_redirect block. The schema declares this as a free-form string -- the enum below pins the API-accepted set so callers cannot mis-spell it.

Extensions

RefToList on TfArg<List<RefTo<R>>>
A list-valued reference argument (security_group_ids, subnet_ids): a literal list of RefTos, or one value that is the whole list (TfArg.variable('subnet_ids'), TfArg.expression(...)).
TerraformDurationExt on Duration
Converts a Dart Duration into a Terraform duration string ("604800s").

Constants

terradartManifestVariable → const String
The environment variable the terradart command sets to the file runStack and runEnvironments describe what they wrote in.

Functions

runEnvironments<E extends Enum>(List<String> args, List<E> environments, Stack build(E env), {String dir(E env)?, String? workspace(E env)?, List<String> backendConfig(E env)?, E? defaultEnv}) → Future<void>
The entry point of a project with one Stack per environment. The environments are the members of an enum of the project's own — any names, each carrying its values — so the Stack takes a typed env and derives everything per environment from it, its backend included:
runStack(List<String> args, Stack build(), {String out = 'tf-out'}) → Future<void>
The entry point of a project with one Stack: writes it to out.

Exceptions / Errors

DuplicateModuleError
A ModuleCall registered twice under one name.
DuplicateResourceError
Thrown by Stack.add when an entry with the same (kind, terraformType, localName) triple is registered twice.
SynthException
Thrown by Stack.synth() and Stack.writeTo() when the Stack has one or more SynthIssues. Nothing is written.