network library

Network Connectivity Center (hub / group / spoke / internal range / regional endpoint / policy-based route; gateway advertised route and service connection policy are debt-only), transports / multicloud data-transfer (Partner Cross-Cloud Interconnect managed transport is never_apply — $17+/h), Network Security ULL mirroring, OOB intercept / mirroring deployments + endpoints (Deployment Uptime $0.025/h is never_apply), address groups, URL lists, client/server TLS policies, gateway security policies, Cloud NGFW firewall endpoints (Enterprise Endpoint Uptime is never_apply — $1.75/h), VPC Flow Logs configs, Network Services Mesh, Service Extensions (Authz / LB traffic / route / edge — debt-only: schema required forwarding_rules bill Cloud LB Forwarding Rule Minimum $0.025/h), Wasm plugin metadata (apply-excluded — needs an uploaded plugin image), and Network Services gateways (Secure Web Gateway is never_apply — $1.25/h).

Classes

AppConstant<T>
A value the Stack hands to application code as a static const in the generated AppExports file — known when synth runs, so the app compiles against it.
AppExports
Where synth writes the Dart file application code imports: the Stack's constants, as the static const members of <name>Constants, and a typed reader of its Terraform outputs, <name>Outputs.
AttributeRef<T>
Public for sealed pattern matching, but constructor is private — only TfRef.attribute() may construct instances.
DartDefineOutput
An output whose value is the client build's --dart-define file, registered with Stack.addDartDefineOutput.
Data
Base of every user-instantiable Terraform data block.
DataGoogleNetworkConnectivityHubIamPolicy
Factory wrapper for google_network_connectivity_hub_iam_policy.
DataGoogleNetworkManagementConnectivityTestRun
Factory wrapper for google_network_management_connectivity_test_run.
DataGoogleNetworkManagementConnectivityTests
Factory wrapper for google_network_management_connectivity_tests.
DataGoogleNetworkSecurityAddressGroupIamPolicy
Factory wrapper for google_network_security_address_group_iam_policy.
DataGoogleNetworkSecurityAddressGroups
Factory wrapper for google_network_security_address_groups.
DataRef<T>
Public for sealed pattern matching, but constructor is private — only TfRef.data() may construct instances.
EnvironmentConstant
The AppConstant.fromEnvironment choice.
GcsBackend
terraform { backend "gcs" { ... } } configuration.
GoogleNetworkConnectivityDestination
Factory wrapper for google_network_connectivity_destination.
GoogleNetworkConnectivityGatewayAdvertisedRoute
Factory wrapper for google_network_connectivity_gateway_advertised_route.
GoogleNetworkConnectivityGroup
Factory wrapper for google_network_connectivity_group.
GoogleNetworkConnectivityHub
Factory wrapper for google_network_connectivity_hub.
GoogleNetworkConnectivityHubIamBinding
Factory wrapper for google_network_connectivity_hub_iam_binding.
GoogleNetworkConnectivityHubIamMember
Factory wrapper for google_network_connectivity_hub_iam_member.
GoogleNetworkConnectivityHubIamPolicy
Factory wrapper for google_network_connectivity_hub_iam_policy.
GoogleNetworkConnectivityInternalRange
Factory wrapper for google_network_connectivity_internal_range.
GoogleNetworkConnectivityMulticloudDataTransferConfig
Factory wrapper for google_network_connectivity_multicloud_data_transfer_config.
GoogleNetworkConnectivityPolicyBasedRoute
Factory wrapper for google_network_connectivity_policy_based_route.
GoogleNetworkConnectivityRegionalEndpoint
Factory wrapper for google_network_connectivity_regional_endpoint.
GoogleNetworkConnectivityServiceConnectionPolicy
Factory wrapper for google_network_connectivity_service_connection_policy.
GoogleNetworkConnectivitySpoke
Factory wrapper for google_network_connectivity_spoke.
GoogleNetworkConnectivityTransport
Factory wrapper for google_network_connectivity_transport.
GoogleNetworkManagementConnectivityTest
Factory wrapper for google_network_management_connectivity_test.
GoogleNetworkManagementNetworkMonitoringProvider
Factory wrapper for google_network_management_network_monitoring_provider.
GoogleNetworkManagementOrganizationVpcFlowLogsConfig
Factory wrapper for google_network_management_organization_vpc_flow_logs_config.
GoogleNetworkManagementVpcFlowLogsConfig
Factory wrapper for google_network_management_vpc_flow_logs_config.
GoogleNetworkSecurityAddressGroup
Factory wrapper for google_network_security_address_group.
GoogleNetworkSecurityAddressGroupIamBinding
Factory wrapper for google_network_security_address_group_iam_binding.
GoogleNetworkSecurityAddressGroupIamMember
Factory wrapper for google_network_security_address_group_iam_member.
GoogleNetworkSecurityAddressGroupIamPolicy
Factory wrapper for google_network_security_address_group_iam_policy.
GoogleNetworkSecurityAuthzPolicy
Factory wrapper for google_network_security_authz_policy.
GoogleNetworkSecurityBackendAuthenticationConfig
Factory wrapper for google_network_security_backend_authentication_config.
GoogleNetworkSecurityClientTlsPolicy
Factory wrapper for google_network_security_client_tls_policy.
GoogleNetworkSecurityDnsThreatDetector
Factory wrapper for google_network_security_dns_threat_detector.
GoogleNetworkSecurityFirewallEndpoint
Factory wrapper for google_network_security_firewall_endpoint.
GoogleNetworkSecurityFirewallEndpointAssociation
Factory wrapper for google_network_security_firewall_endpoint_association.
GoogleNetworkSecurityGatewaySecurityPolicy
Factory wrapper for google_network_security_gateway_security_policy.
GoogleNetworkSecurityGatewaySecurityPolicyRule
Factory wrapper for google_network_security_gateway_security_policy_rule.
GoogleNetworkSecurityInterceptDeployment
Factory wrapper for google_network_security_intercept_deployment.
GoogleNetworkSecurityInterceptDeploymentGroup
Factory wrapper for google_network_security_intercept_deployment_group.
GoogleNetworkSecurityInterceptEndpointGroup
Factory wrapper for google_network_security_intercept_endpoint_group.
GoogleNetworkSecurityInterceptEndpointGroupAssociation
Factory wrapper for google_network_security_intercept_endpoint_group_association.
GoogleNetworkSecurityMirroringDeployment
Factory wrapper for google_network_security_mirroring_deployment.
GoogleNetworkSecurityMirroringDeploymentGroup
Factory wrapper for google_network_security_mirroring_deployment_group.
GoogleNetworkSecurityMirroringEndpoint
Factory wrapper for google_network_security_mirroring_endpoint.
GoogleNetworkSecurityMirroringEndpointGroup
Factory wrapper for google_network_security_mirroring_endpoint_group.
GoogleNetworkSecurityMirroringEndpointGroupAssociation
Factory wrapper for google_network_security_mirroring_endpoint_group_association.
GoogleNetworkSecuritySecurityProfile
Factory wrapper for google_network_security_security_profile.
GoogleNetworkSecuritySecurityProfileGroup
Factory wrapper for google_network_security_security_profile_group.
GoogleNetworkSecurityServerTlsPolicy
Factory wrapper for google_network_security_server_tls_policy.
GoogleNetworkSecurityTlsInspectionPolicy
Factory wrapper for google_network_security_tls_inspection_policy.
GoogleNetworkSecurityUllMirroringCollector
Factory wrapper for google_network_security_ull_mirroring_collector.
GoogleNetworkSecurityUllMirroringCollectorRule
Factory wrapper for google_network_security_ull_mirroring_collector_rule.
GoogleNetworkSecurityUllMirroringEngine
Factory wrapper for google_network_security_ull_mirroring_engine.
GoogleNetworkSecurityUrlLists
Factory wrapper for google_network_security_url_lists.
GoogleNetworkServicesAgentConnectivityTemplate
Factory wrapper for google_network_services_agent_connectivity_template.
GoogleNetworkServicesAgentGateway
Factory wrapper for google_network_services_agent_gateway.
GoogleNetworkServicesAuthzExtension
Factory wrapper for google_network_services_authz_extension.
GoogleNetworkServicesEdgeCacheKeyset
Factory wrapper for google_network_services_edge_cache_keyset.
GoogleNetworkServicesEdgeCacheOrigin
Factory wrapper for google_network_services_edge_cache_origin.
GoogleNetworkServicesEdgeCacheService
Factory wrapper for google_network_services_edge_cache_service.
GoogleNetworkServicesEndpointPolicy
Factory wrapper for google_network_services_endpoint_policy.
GoogleNetworkServicesGateway
Factory wrapper for google_network_services_gateway.
GoogleNetworkServicesGrpcRoute
Factory wrapper for google_network_services_grpc_route.
GoogleNetworkServicesHttpRoute
Factory wrapper for google_network_services_http_route.
GoogleNetworkServicesLbEdgeExtension
Factory wrapper for google_network_services_lb_edge_extension.
GoogleNetworkServicesLbRouteExtension
Factory wrapper for google_network_services_lb_route_extension.
GoogleNetworkServicesLbTrafficExtension
Factory wrapper for google_network_services_lb_traffic_extension.
GoogleNetworkServicesMesh
Factory wrapper for google_network_services_mesh.
GoogleNetworkServicesMulticastConsumerAssociation
Factory wrapper for google_network_services_multicast_consumer_association.
GoogleNetworkServicesMulticastDomain
Factory wrapper for google_network_services_multicast_domain.
GoogleNetworkServicesMulticastDomainActivation
Factory wrapper for google_network_services_multicast_domain_activation.
GoogleNetworkServicesMulticastDomainGroup
Factory wrapper for google_network_services_multicast_domain_group.
GoogleNetworkServicesMulticastGroupConsumerActivation
Factory wrapper for google_network_services_multicast_group_consumer_activation.
GoogleNetworkServicesMulticastGroupProducerActivation
Factory wrapper for google_network_services_multicast_group_producer_activation.
GoogleNetworkServicesMulticastGroupRange
Factory wrapper for google_network_services_multicast_group_range.
GoogleNetworkServicesMulticastGroupRangeActivation
Factory wrapper for google_network_services_multicast_group_range_activation.
GoogleNetworkServicesMulticastProducerAssociation
Factory wrapper for google_network_services_multicast_producer_association.
GoogleNetworkServicesServiceBinding
Factory wrapper for google_network_services_service_binding.
GoogleNetworkServicesTcpRoute
Factory wrapper for google_network_services_tcp_route.
GoogleNetworkServicesTlsRoute
Factory wrapper for google_network_services_tls_route.
GoogleNetworkServicesWasmPlugin
Factory wrapper for google_network_services_wasm_plugin.
IgnoreAllChanges
IgnoreChanges.all.
IgnoreAttributes
IgnoreChanges.of.
IgnoreChanges
What ignore_changes covers: every attribute, or the listed ones.
InvalidDartDefineOutput
An output of Stack.addDartDefineOutput that cannot carry what it names: an output that is not registered, is sensitive or has no environment value, two outputs read from one variable, or no output at all.
InvalidLifecycle
A lifecycle block Terraform rejects: a data source (or one of its attributes) in replaceTriggeredBy, all inside IgnoreChanges.of, or a condition with an empty error message.
InvalidMoveTarget
A moved block whose to names no resource of the Stack.
InvalidTimeout
A negative timeouts duration.
LifecycleCondition
A precondition or postcondition block: Terraform fails the plan (LifecycleCondition.pre) or the apply (LifecycleCondition.post) with errorMessage when condition is false.
LifecycleOptions
lifecycle { ... } block on a resource.
LocalBackend
terraform { backend "local" { ... } } configuration.
MissingProvider
A block needs a provider configuration the Stack does not register: the provider its type implies (google for google_pubsub_topic), the one its provider meta-argument names, or one a module call passes on.
ModuleCall
A module "<localName>" { ... } call as a Dart value.
NetworkConnectivityDestinationEndpoints
Typed helper for the endpoints block of google_network_connectivity_destination (derived from provider schema).
NetworkConnectivityGroupAutoAccept
Optional auto_accept block on GoogleNetworkConnectivityGroup.
NetworkConnectivityHubIamBindingCondition
Typed helper for the condition block of google_network_connectivity_hub_iam_binding (derived from provider schema).
NetworkConnectivityHubIamMemberCondition
Typed helper for the condition block of google_network_connectivity_hub_iam_member (derived from provider schema).
NetworkConnectivityInternalRangeAllocationOptions
Optional allocation_options when auto-allocating via prefixLength.
NetworkConnectivityInternalRangeMigration
Typed helper for the migration block of google_network_connectivity_internal_range (derived from provider schema).
NetworkConnectivityMulticloudDataTransferConfigServices
Typed helper for the services block of google_network_connectivity_multicloud_data_transfer_config (derived from provider schema).
NetworkConnectivityPolicyBasedRouteFilter
Typed helper for the filter block of google_network_connectivity_policy_based_route (derived from provider schema).
NetworkConnectivityPolicyBasedRouteInterconnectAttachment
Typed helper for the interconnect_attachment block of google_network_connectivity_policy_based_route (derived from provider schema).
NetworkConnectivityPolicyBasedRouteNextHop
Exactly one next-hop for GoogleNetworkConnectivityPolicyBasedRoute (MM exactly_one_of on next_hop_ilb_ip / next_hop_other_routes). Use NetworkConnectivityPolicyBasedRouteNextHopOtherRoutes (derived) for the otherRoutes variant.
NetworkConnectivityPolicyBasedRouteNextHopIlbIp
next_hop_ilb_ip variant.
NetworkConnectivityPolicyBasedRouteNextHopOtherRoutesChoice
next_hop_other_routes variant.
NetworkConnectivityPolicyBasedRouteScope
At most one of virtual_machine, interconnect_attachment on google_network_connectivity_policy_based_route: the provider rejects more than one, so each variant sets one of them and a null choice sets none.
NetworkConnectivityPolicyBasedRouteScopeInterconnectAttachment
The NetworkConnectivityPolicyBasedRouteScope.interconnectAttachment choice: sets interconnect_attachment.
NetworkConnectivityPolicyBasedRouteScopeVirtualMachine
The NetworkConnectivityPolicyBasedRouteScope.virtualMachine choice: sets virtual_machine.
NetworkConnectivityPolicyBasedRouteVirtualMachine
Typed helper for the virtual_machine block of google_network_connectivity_policy_based_route (derived from provider schema).
NetworkConnectivityServiceConnectionPolicyPscConfig
Typed helper for the psc_config block of google_network_connectivity_service_connection_policy (derived from provider schema).
NetworkConnectivitySpokeAttachment
Exactly one of gateway, linked_interconnect_attachments, linked_producer_vpc_network, linked_router_appliance_instances, linked_vpc_network, linked_vpn_tunnels on google_network_connectivity_spoke: the provider rejects none and more than one, so each variant sets one of them.
NetworkConnectivitySpokeAttachmentGateway
The NetworkConnectivitySpokeAttachment.gateway choice: sets gateway.
NetworkConnectivitySpokeAttachmentLinkedInterconnectAttachments
The NetworkConnectivitySpokeAttachment.linkedInterconnectAttachments choice: sets linked_interconnect_attachments.
NetworkConnectivitySpokeAttachmentLinkedProducerVpcNetwork
The NetworkConnectivitySpokeAttachment.linkedProducerVpcNetwork choice: sets linked_producer_vpc_network.
NetworkConnectivitySpokeAttachmentLinkedRouterApplianceInstances
The NetworkConnectivitySpokeAttachment.linkedRouterApplianceInstances choice: sets linked_router_appliance_instances.
NetworkConnectivitySpokeAttachmentLinkedVpcNetwork
The NetworkConnectivitySpokeAttachment.linkedVpcNetwork choice: sets linked_vpc_network.
NetworkConnectivitySpokeAttachmentLinkedVpnTunnels
The NetworkConnectivitySpokeAttachment.linkedVpnTunnels choice: sets linked_vpn_tunnels.
NetworkConnectivitySpokeGateway
Typed helper for the gateway block of google_network_connectivity_spoke (derived from provider schema).
NetworkConnectivitySpokeInstances
Typed helper for the linked_router_appliance_instances.instances block of google_network_connectivity_spoke (derived from provider schema).
NetworkConnectivitySpokeIpRangeReservations
Typed helper for the gateway.ip_range_reservations block of google_network_connectivity_spoke (derived from provider schema).
NetworkConnectivitySpokeLinkedInterconnectAttachments
Typed helper for the linked_interconnect_attachments block of google_network_connectivity_spoke (derived from provider schema).
NetworkConnectivitySpokeLinkedProducerVpcNetwork
Typed helper for the linked_producer_vpc_network block of google_network_connectivity_spoke (derived from provider schema).
NetworkConnectivitySpokeLinkedRouterApplianceInstances
Typed helper for the linked_router_appliance_instances block of google_network_connectivity_spoke (derived from provider schema).
NetworkConnectivitySpokeLinkedVpcNetwork
Typed helper for the linked_vpc_network block of google_network_connectivity_spoke (derived from provider schema).
NetworkConnectivitySpokeLinkedVpnTunnels
Typed helper for the linked_vpn_tunnels block of google_network_connectivity_spoke (derived from provider schema).
NetworkManagementConnectivityTestAppEngineVersion
Typed helper for the source.app_engine_version block of google_network_management_connectivity_test (derived from provider schema).
NetworkManagementConnectivityTestCloudFunction
Typed helper for the source.cloud_function block of google_network_management_connectivity_test (derived from provider schema).
NetworkManagementConnectivityTestCloudRunRevision
Typed helper for the source.cloud_run_revision block of google_network_management_connectivity_test (derived from provider schema).
NetworkManagementConnectivityTestDestination
Typed helper for the destination block of google_network_management_connectivity_test (derived from provider schema).
NetworkManagementConnectivityTestSource
Typed helper for the source block of google_network_management_connectivity_test (derived from provider schema).
NetworkSecurityAddressGroupIamBindingCondition
Typed helper for the condition block of google_network_security_address_group_iam_binding (derived from provider schema).
NetworkSecurityAddressGroupIamMemberCondition
Typed helper for the condition block of google_network_security_address_group_iam_member (derived from provider schema).
NetworkSecurityAuthzPolicyAuthzExtension
Typed helper for the custom_provider.authz_extension block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyCloudIap
Typed helper for the custom_provider.cloud_iap block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyCustomProvider
Typed helper for the custom_provider block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyHeaders
Typed helper for the http_rules.to.not_operations.header_set.headers block of google_network_security_authz_policy (derived from provider schema). Shared by every block of this shape in the resource.
NetworkSecurityAuthzPolicyHeaderSet
Typed helper for the http_rules.to.not_operations.header_set block of google_network_security_authz_policy (derived from provider schema). Shared by every block of this shape in the resource.
NetworkSecurityAuthzPolicyHosts
Typed helper for the http_rules.to.not_operations.hosts block of google_network_security_authz_policy (derived from provider schema). Shared by every block of this shape in the resource.
NetworkSecurityAuthzPolicyHttpRules
Typed helper for the http_rules block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyHttpRulesFrom
Typed helper for the http_rules.from block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyHttpRulesNotSources
Typed helper for the http_rules.from.not_sources block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyHttpRulesOperations
Typed helper for the http_rules.to.operations block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyHttpRulesPrincipal
Typed helper for the http_rules.from.not_sources.principals.principal block of google_network_security_authz_policy (derived from provider schema). Shared by every block of this shape in the resource.
NetworkSecurityAuthzPolicyHttpRulesPrincipals
Typed helper for the http_rules.from.not_sources.principals block of google_network_security_authz_policy (derived from provider schema). Shared by every block of this shape in the resource.
NetworkSecurityAuthzPolicyHttpRulesSources
Typed helper for the http_rules.from.sources block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyHttpRulesTo
Typed helper for the http_rules.to block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyIamServiceAccount
Typed helper for the http_rules.from.not_sources.resources.iam_service_account block of google_network_security_authz_policy (derived from provider schema). Shared by every block of this shape in the resource.
NetworkSecurityAuthzPolicyIpBlocks
Typed helper for the http_rules.from.not_sources.ip_blocks block of google_network_security_authz_policy (derived from provider schema). Shared by every block of this shape in the resource.
NetworkSecurityAuthzPolicyMcp
Typed helper for the http_rules.to.operations.mcp block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyMethods
Typed helper for the http_rules.to.operations.mcp.methods block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyNetworkRules
Typed helper for the network_rules block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyNetworkRulesFrom
Typed helper for the network_rules.from block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyNetworkRulesNotSources
Typed helper for the network_rules.from.not_sources block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyNetworkRulesOperations
Typed helper for the network_rules.to.operations block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyNetworkRulesPrincipal
Typed helper for the network_rules.from.not_sources.principals.principal block of google_network_security_authz_policy (derived from provider schema). Shared by every block of this shape in the resource.
NetworkSecurityAuthzPolicyNetworkRulesPrincipals
Typed helper for the network_rules.from.not_sources.principals block of google_network_security_authz_policy (derived from provider schema). Shared by every block of this shape in the resource.
NetworkSecurityAuthzPolicyNetworkRulesSources
Typed helper for the network_rules.from.sources block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyNetworkRulesTo
Typed helper for the network_rules.to block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyNotOperations
Typed helper for the http_rules.to.not_operations block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyParams
Typed helper for the http_rules.to.operations.mcp.methods.params block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyPaths
Typed helper for the http_rules.to.not_operations.paths block of google_network_security_authz_policy (derived from provider schema). Shared by every block of this shape in the resource.
NetworkSecurityAuthzPolicyResources
Typed helper for the http_rules.from.not_sources.resources block of google_network_security_authz_policy (derived from provider schema). Shared by every block of this shape in the resource.
NetworkSecurityAuthzPolicySnis
Typed helper for the network_rules.to.operations.snis block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyTagValueIdSet
Typed helper for the http_rules.from.not_sources.resources.tag_value_id_set block of google_network_security_authz_policy (derived from provider schema). Shared by every block of this shape in the resource.
NetworkSecurityAuthzPolicyTarget
Typed helper for the target block of google_network_security_authz_policy (derived from provider schema).
NetworkSecurityAuthzPolicyValue
Typed helper for the http_rules.to.not_operations.header_set.headers.value block of google_network_security_authz_policy (derived from provider schema). Shared by every block of this shape in the resource.
NetworkSecurityClientTlsPolicyCertificateProviderInstance
Typed helper for the client_certificate.certificate_provider_instance block of google_network_security_client_tls_policy (derived from provider schema). Shared by every block of this shape in the resource.
NetworkSecurityClientTlsPolicyClientCertificate
Exactly one of grpc_endpoint, certificate_provider_instance on the client_certificate block of google_network_security_client_tls_policy: the provider rejects none and more than one, so each variant sets one of them.
NetworkSecurityClientTlsPolicyClientCertificateGrpcEndpoint
The NetworkSecurityClientTlsPolicyClientCertificate.grpcEndpoint choice: sets grpc_endpoint.
NetworkSecurityClientTlsPolicyClientCertificateProviderInstance
The NetworkSecurityClientTlsPolicyClientCertificate.certificateProviderInstance choice: sets certificate_provider_instance.
NetworkSecurityClientTlsPolicyGrpcEndpoint
Typed helper for the client_certificate.grpc_endpoint block of google_network_security_client_tls_policy (derived from provider schema). Shared by every block of this shape in the resource.
NetworkSecurityClientTlsPolicyServerValidationCa
Exactly one of grpc_endpoint, certificate_provider_instance on the server_validation_ca block of google_network_security_client_tls_policy: the provider rejects none and more than one, so each variant sets one of them.
NetworkSecurityClientTlsPolicyServerValidationCaCertificateProviderInstance
The NetworkSecurityClientTlsPolicyServerValidationCa.certificateProviderInstance choice: sets certificate_provider_instance.
NetworkSecurityClientTlsPolicyServerValidationCaGrpcEndpoint
The NetworkSecurityClientTlsPolicyServerValidationCa.grpcEndpoint choice: sets grpc_endpoint.
NetworkSecurityFirewallEndpointSettings
Typed helper for the endpoint_settings block of google_network_security_firewall_endpoint (derived from provider schema).
mirroring_deployment_groups variant (BROKER).
Exactly-one link from a mirroring endpoint group to its deployment group(s). DIRECT uses a single group; BROKER uses a list.
mirroring_deployment_group variant (DIRECT).
NetworkSecuritySecurityProfileAntivirusOverrides
Typed helper for the threat_prevention_profile.antivirus_overrides block of google_network_security_security_profile (derived from provider schema).
NetworkSecuritySecurityProfileCustomInterceptProfile
Typed helper for the custom_intercept_profile block of google_network_security_security_profile (derived from provider schema).
NetworkSecuritySecurityProfileCustomMirroringProfile
Typed helper for the custom_mirroring_profile block of google_network_security_security_profile (derived from provider schema).
NetworkSecuritySecurityProfileSettings
At most one of threat_prevention_profile, url_filtering_profile, custom_mirroring_profile, custom_intercept_profile on google_network_security_security_profile: the provider rejects more than one, so each variant sets one of them and a null choice sets none.
NetworkSecuritySecurityProfileSettingsCustomInterceptProfile
The NetworkSecuritySecurityProfileSettings.customInterceptProfile choice: sets custom_intercept_profile.
NetworkSecuritySecurityProfileSettingsCustomMirroringProfile
The NetworkSecuritySecurityProfileSettings.customMirroringProfile choice: sets custom_mirroring_profile.
NetworkSecuritySecurityProfileSettingsThreatPreventionProfile
The NetworkSecuritySecurityProfileSettings.threatPreventionProfile choice: sets threat_prevention_profile.
NetworkSecuritySecurityProfileSettingsUrlFilteringProfile
The NetworkSecuritySecurityProfileSettings.urlFilteringProfile choice: sets url_filtering_profile.
NetworkSecuritySecurityProfileSeverityOverrides
Typed helper for the threat_prevention_profile.severity_overrides block of google_network_security_security_profile (derived from provider schema).
NetworkSecuritySecurityProfileThreatOverrides
Typed helper for the threat_prevention_profile.threat_overrides block of google_network_security_security_profile (derived from provider schema).
NetworkSecuritySecurityProfileThreatPreventionProfile
Typed helper for the threat_prevention_profile block of google_network_security_security_profile (derived from provider schema).
NetworkSecuritySecurityProfileUrlFilteringProfile
Typed helper for the url_filtering_profile block of google_network_security_security_profile (derived from provider schema).
NetworkSecuritySecurityProfileUrlFilters
Typed helper for the url_filtering_profile.url_filters block of google_network_security_security_profile (derived from provider schema).
NetworkSecurityServerTlsPolicyCertificateProviderInstance
Typed helper for the server_certificate.certificate_provider_instance block of google_network_security_server_tls_policy (derived from provider schema). Shared by every block of this shape in the resource.
NetworkSecurityServerTlsPolicyClientValidationCa
Exactly one of grpc_endpoint, certificate_provider_instance on the mtls_policy.client_validation_ca block of google_network_security_server_tls_policy: the provider rejects none and more than one, so each variant sets one of them.
NetworkSecurityServerTlsPolicyClientValidationCaCertificateProviderInstance
The NetworkSecurityServerTlsPolicyClientValidationCa.certificateProviderInstance choice: sets certificate_provider_instance.
NetworkSecurityServerTlsPolicyClientValidationCaGrpcEndpoint
The NetworkSecurityServerTlsPolicyClientValidationCa.grpcEndpoint choice: sets grpc_endpoint.
NetworkSecurityServerTlsPolicyGrpcEndpoint
Typed helper for the server_certificate.grpc_endpoint block of google_network_security_server_tls_policy (derived from provider schema). Shared by every block of this shape in the resource.
NetworkSecurityServerTlsPolicyMtlsPolicy
Typed helper for the mtls_policy block of google_network_security_server_tls_policy (derived from provider schema).
NetworkSecurityServerTlsPolicyServerCertificate
Exactly one of grpc_endpoint, certificate_provider_instance on the server_certificate block of google_network_security_server_tls_policy: the provider rejects none and more than one, so each variant sets one of them.
NetworkSecurityServerTlsPolicyServerCertificateGrpcEndpoint
The NetworkSecurityServerTlsPolicyServerCertificate.grpcEndpoint choice: sets grpc_endpoint.
NetworkSecurityServerTlsPolicyServerCertificateProviderInstance
The NetworkSecurityServerTlsPolicyServerCertificate.certificateProviderInstance choice: sets certificate_provider_instance.
NetworkSecurityUllMirroringCollectorRuleMatch
match block on a ULL mirroring collector rule.
NetworkServicesAgentConnectivityTemplateDnsPeeringConfig
Typed helper for the egress_network_config.dns_peering_config block of google_network_services_agent_connectivity_template (derived from provider schema).
NetworkServicesAgentConnectivityTemplateEgressNetworkConfig
Typed helper for the egress_network_config block of google_network_services_agent_connectivity_template (derived from provider schema).
NetworkServicesAgentGatewayDeployment
Exactly one of google_managed / self_managed (MM exactly_one_of).
NetworkServicesAgentGatewayDnsPeeringConfig
Typed helper for the network_config.dns_peering_config block of google_network_services_agent_gateway (derived from provider schema).
NetworkServicesAgentGatewayEgress
Typed helper for the network_config.egress block of google_network_services_agent_gateway (derived from provider schema).
NetworkServicesAgentGatewayGoogleManaged
google_managed — proxy orchestrated in a Google tenant project.
NetworkServicesAgentGatewayNetworkConfig
Typed helper for the network_config block of google_network_services_agent_gateway (derived from provider schema).
NetworkServicesAgentGatewaySelfManaged
self_managed — attach an existing networking proxy in-project.
NetworkServicesEdgeCacheKeysetPublicKey
Typed helper for the public_key block of google_network_services_edge_cache_keyset (derived from provider schema).
NetworkServicesEdgeCacheKeysetValidationSharedKeys
Typed helper for the validation_shared_keys block of google_network_services_edge_cache_keyset (derived from provider schema).
NetworkServicesEdgeCacheOriginAwsV4Authentication
Typed helper for the aws_v4_authentication block of google_network_services_edge_cache_origin (derived from provider schema).
NetworkServicesEdgeCacheOriginFlexShielding
Typed helper for the flex_shielding block of google_network_services_edge_cache_origin (derived from provider schema).
NetworkServicesEdgeCacheOriginHeaderAction
Typed helper for the origin_override_action.header_action block of google_network_services_edge_cache_origin (derived from provider schema).
NetworkServicesEdgeCacheOriginOverrideAction
Typed helper for the origin_override_action block of google_network_services_edge_cache_origin (derived from provider schema).
NetworkServicesEdgeCacheOriginRedirect
Typed helper for the origin_redirect block of google_network_services_edge_cache_origin (derived from provider schema).
NetworkServicesEdgeCacheOriginRequestHeadersToAdd
Typed helper for the origin_override_action.header_action.request_headers_to_add block of google_network_services_edge_cache_origin (derived from provider schema).
NetworkServicesEdgeCacheOriginTimeout
Typed helper for the timeout block of google_network_services_edge_cache_origin (derived from provider schema).
NetworkServicesEdgeCacheOriginUrlRewrite
Typed helper for the origin_override_action.url_rewrite block of google_network_services_edge_cache_origin (derived from provider schema).
NetworkServicesEdgeCacheServiceAddSignatures
Typed helper for the routing.path_matcher.route_rule.route_action.cdn_policy.add_signatures block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServiceCacheKeyPolicy
Typed helper for the routing.path_matcher.route_rule.route_action.cdn_policy.cache_key_policy block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServiceCdnPolicy
Typed helper for the routing.path_matcher.route_rule.route_action.cdn_policy block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServiceCorsPolicy
Typed helper for the routing.path_matcher.route_rule.route_action.cors_policy block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServiceHeaderAction
Typed helper for the routing.path_matcher.route_rule.header_action block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServiceHeaderMatch
Typed helper for the routing.path_matcher.route_rule.match_rule.header_match block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServiceHostRule
Typed helper for the routing.host_rule block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServiceLogConfig
Typed helper for the log_config block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServiceMatchRule
Typed helper for the routing.path_matcher.route_rule.match_rule block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServicePathMatcher
Typed helper for the routing.path_matcher block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServiceQueryParameterMatch
Typed helper for the routing.path_matcher.route_rule.match_rule.query_parameter_match block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServiceRequestHeaderToAdd
Typed helper for the routing.path_matcher.route_rule.header_action.request_header_to_add block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServiceRequestHeaderToRemove
Typed helper for the routing.path_matcher.route_rule.header_action.request_header_to_remove block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServiceResponseHeaderToAdd
Typed helper for the routing.path_matcher.route_rule.header_action.response_header_to_add block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServiceResponseHeaderToRemove
Typed helper for the routing.path_matcher.route_rule.header_action.response_header_to_remove block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServiceRouteAction
Typed helper for the routing.path_matcher.route_rule.route_action block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServiceRouteMethods
Typed helper for the routing.path_matcher.route_rule.route_methods block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServiceRouteRule
Typed helper for the routing.path_matcher.route_rule block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServiceRouting
Typed helper for the routing block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServiceSignedTokenOptions
Typed helper for the routing.path_matcher.route_rule.route_action.cdn_policy.signed_token_options block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServiceUrlRedirect
Typed helper for the routing.path_matcher.route_rule.url_redirect block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEdgeCacheServiceUrlRewrite
Typed helper for the routing.path_matcher.route_rule.route_action.url_rewrite block of google_network_services_edge_cache_service (derived from provider schema).
NetworkServicesEndpointPolicyEndpointMatcher
Typed helper for the endpoint_matcher block of google_network_services_endpoint_policy (derived from provider schema).
NetworkServicesEndpointPolicyMetadataLabelMatcher
Typed helper for the endpoint_matcher.metadata_label_matcher block of google_network_services_endpoint_policy (derived from provider schema).
NetworkServicesEndpointPolicyMetadataLabels
Typed helper for the endpoint_matcher.metadata_label_matcher.metadata_labels block of google_network_services_endpoint_policy (derived from provider schema).
NetworkServicesEndpointPolicyTrafficPortSelector
Typed helper for the traffic_port_selector block of google_network_services_endpoint_policy (derived from provider schema).
NetworkServicesGatewayAllPorts
The NetworkServicesGatewayPorts.allPorts choice: sets all_ports.
NetworkServicesGatewayPorts
At most one of all_ports, ports on google_network_services_gateway: the provider rejects more than one, so each variant sets one of them and a null choice sets none.
NetworkServicesGatewayPortsChoice
The NetworkServicesGatewayPorts.ports choice: sets ports.
NetworkServicesGrpcRouteAbort
Typed helper for the rules.action.fault_injection_policy.abort block of google_network_services_grpc_route (derived from provider schema).
NetworkServicesGrpcRouteAction
Typed helper for the rules.action block of google_network_services_grpc_route (derived from provider schema).
NetworkServicesGrpcRouteDelay
Typed helper for the rules.action.fault_injection_policy.delay block of google_network_services_grpc_route (derived from provider schema).
NetworkServicesGrpcRouteDestinations
Typed helper for the rules.action.destinations block of google_network_services_grpc_route (derived from provider schema).
NetworkServicesGrpcRouteFaultInjectionPolicy
Typed helper for the rules.action.fault_injection_policy block of google_network_services_grpc_route (derived from provider schema).
NetworkServicesGrpcRouteHeaders
Typed helper for the rules.matches.headers block of google_network_services_grpc_route (derived from provider schema).
NetworkServicesGrpcRouteMatches
Typed helper for the rules.matches block of google_network_services_grpc_route (derived from provider schema).
NetworkServicesGrpcRouteMethod
Typed helper for the rules.matches.method block of google_network_services_grpc_route (derived from provider schema).
NetworkServicesGrpcRouteRetryPolicy
Typed helper for the rules.action.retry_policy block of google_network_services_grpc_route (derived from provider schema).
NetworkServicesGrpcRouteRules
Typed helper for the rules block of google_network_services_grpc_route (derived from provider schema).
NetworkServicesHttpRouteAbort
Typed helper for the rules.action.fault_injection_policy.abort block of google_network_services_http_route (derived from provider schema).
NetworkServicesHttpRouteAction
Typed helper for the rules.action block of google_network_services_http_route (derived from provider schema).
NetworkServicesHttpRouteCorsPolicy
Typed helper for the rules.action.cors_policy block of google_network_services_http_route (derived from provider schema).
NetworkServicesHttpRouteDelay
Typed helper for the rules.action.fault_injection_policy.delay block of google_network_services_http_route (derived from provider schema).
NetworkServicesHttpRouteDestination
Typed helper for the rules.action.request_mirror_policy.destination block of google_network_services_http_route (derived from provider schema).
NetworkServicesHttpRouteDestinations
Typed helper for the rules.action.destinations block of google_network_services_http_route (derived from provider schema).
NetworkServicesHttpRouteFaultInjectionPolicy
Typed helper for the rules.action.fault_injection_policy block of google_network_services_http_route (derived from provider schema).
NetworkServicesHttpRouteFullPathMatch
The NetworkServicesHttpRouteMatch.fullPathMatch choice: sets full_path_match.
NetworkServicesHttpRouteHeaders
Typed helper for the rules.matches.headers block of google_network_services_http_route (derived from provider schema).
NetworkServicesHttpRouteHeadersExactMatch
The NetworkServicesHttpRouteHeadersMatch.exactMatch choice: sets exact_match.
NetworkServicesHttpRouteHeadersMatch
Exactly one of exact_match, regex_match, prefix_match, present_match, suffix_match, range_match on the rules.matches.headers block of google_network_services_http_route: the provider rejects none and more than one, so each variant sets one of them.
NetworkServicesHttpRouteHeadersPrefixMatch
The NetworkServicesHttpRouteHeadersMatch.prefixMatch choice: sets prefix_match.
NetworkServicesHttpRouteHeadersPresentMatch
The NetworkServicesHttpRouteHeadersMatch.presentMatch choice: sets present_match.
NetworkServicesHttpRouteHeadersRangeMatch
The NetworkServicesHttpRouteHeadersMatch.rangeMatch choice: sets range_match.
NetworkServicesHttpRouteHeadersRegexMatch
The NetworkServicesHttpRouteHeadersMatch.regexMatch choice: sets regex_match.
NetworkServicesHttpRouteHeadersSuffixMatch
The NetworkServicesHttpRouteHeadersMatch.suffixMatch choice: sets suffix_match.
NetworkServicesHttpRouteMatch
Exactly one of full_path_match, prefix_match, regex_match on the rules.matches block of google_network_services_http_route: the provider rejects none and more than one, so each variant sets one of them.
NetworkServicesHttpRouteMatches
Typed helper for the rules.matches block of google_network_services_http_route (derived from provider schema).
NetworkServicesHttpRoutePrefixMatch
The NetworkServicesHttpRouteMatch.prefixMatch choice: sets prefix_match.
NetworkServicesHttpRouteQueryParameters
Typed helper for the rules.matches.query_parameters block of google_network_services_http_route (derived from provider schema).
NetworkServicesHttpRouteQueryParametersExactMatch
The NetworkServicesHttpRouteQueryParametersMatch.exactMatch choice: sets exact_match.
NetworkServicesHttpRouteQueryParametersMatch
Exactly one of exact_match, regex_match, present_match on the rules.matches.query_parameters block of google_network_services_http_route: the provider rejects none and more than one, so each variant sets one of them.
NetworkServicesHttpRouteQueryParametersPresentMatch
The NetworkServicesHttpRouteQueryParametersMatch.presentMatch choice: sets present_match.
NetworkServicesHttpRouteQueryParametersRegexMatch
The NetworkServicesHttpRouteQueryParametersMatch.regexMatch choice: sets regex_match.
NetworkServicesHttpRouteRangeMatch
Typed helper for the rules.matches.headers.range_match block of google_network_services_http_route (derived from provider schema).
NetworkServicesHttpRouteRedirect
Typed helper for the rules.action.redirect block of google_network_services_http_route (derived from provider schema).
NetworkServicesHttpRouteRegexMatch
The NetworkServicesHttpRouteMatch.regexMatch choice: sets regex_match.
NetworkServicesHttpRouteRequestHeaderModifier
Typed helper for the rules.action.request_header_modifier block of google_network_services_http_route (derived from provider schema).
NetworkServicesHttpRouteRequestMirrorPolicy
Typed helper for the rules.action.request_mirror_policy block of google_network_services_http_route (derived from provider schema).
NetworkServicesHttpRouteResponseHeaderModifier
Typed helper for the rules.action.response_header_modifier block of google_network_services_http_route (derived from provider schema).
NetworkServicesHttpRouteRetryPolicy
Typed helper for the rules.action.retry_policy block of google_network_services_http_route (derived from provider schema).
NetworkServicesHttpRouteRules
Typed helper for the rules block of google_network_services_http_route (derived from provider schema).
NetworkServicesHttpRouteUrlRewrite
Typed helper for the rules.action.url_rewrite block of google_network_services_http_route (derived from provider schema).
NetworkServicesLbEdgeExtensionChains
Typed helper for the extension_chains block of google_network_services_lb_edge_extension (derived from provider schema).
NetworkServicesLbEdgeExtensionExtensions
Typed helper for the extension_chains.extensions block of google_network_services_lb_edge_extension (derived from provider schema).
NetworkServicesLbEdgeExtensionMatchCondition
Typed helper for the extension_chains.match_condition block of google_network_services_lb_edge_extension (derived from provider schema).
NetworkServicesLbRouteExtensionChains
Typed helper for the extension_chains block of google_network_services_lb_route_extension (derived from provider schema).
NetworkServicesLbRouteExtensionExtensions
Typed helper for the extension_chains.extensions block of google_network_services_lb_route_extension (derived from provider schema).
NetworkServicesLbRouteExtensionMatchCondition
Typed helper for the extension_chains.match_condition block of google_network_services_lb_route_extension (derived from provider schema).
NetworkServicesLbTrafficExtensionChains
Typed helper for the extension_chains block of google_network_services_lb_traffic_extension (derived from provider schema).
NetworkServicesLbTrafficExtensionExtensions
Typed helper for the extension_chains.extensions block of google_network_services_lb_traffic_extension (derived from provider schema).
NetworkServicesLbTrafficExtensionMatchCondition
Typed helper for the extension_chains.match_condition block of google_network_services_lb_traffic_extension (derived from provider schema).
NetworkServicesMulticastDomainActivationTrafficSpec
Typed helper for the traffic_spec block of google_network_services_multicast_domain_activation (derived from provider schema).
NetworkServicesMulticastDomainConnectionConfig
Typed helper for the connection_config block of google_network_services_multicast_domain (derived from provider schema).
NetworkServicesMulticastDomainUllMulticastDomain
Typed helper for the ull_multicast_domain block of google_network_services_multicast_domain (derived from provider schema).
NetworkServicesMulticastGroupConsumerActivationLogConfig
Typed helper for the log_config block of google_network_services_multicast_group_consumer_activation (derived from provider schema).
NetworkServicesMulticastGroupRangeActivationLogConfig
Typed helper for the log_config block of google_network_services_multicast_group_range_activation (derived from provider schema).
NetworkServicesMulticastGroupRangeLogConfig
Typed helper for the log_config block of google_network_services_multicast_group_range (derived from provider schema).
NetworkServicesTcpRouteAction
Typed helper for the rules.action block of google_network_services_tcp_route (derived from provider schema).
NetworkServicesTcpRouteDestinations
Typed helper for the rules.action.destinations block of google_network_services_tcp_route (derived from provider schema).
NetworkServicesTcpRouteMatches
Typed helper for the rules.matches block of google_network_services_tcp_route (derived from provider schema).
NetworkServicesTcpRouteRules
Typed helper for the rules block of google_network_services_tcp_route (derived from provider schema).
NetworkServicesTlsRouteAction
Typed helper for the rules.action block of google_network_services_tls_route (derived from provider schema).
NetworkServicesTlsRouteDestinations
Typed helper for the rules.action.destinations block of google_network_services_tls_route (derived from provider schema).
NetworkServicesTlsRouteMatches
Typed helper for the rules.matches block of google_network_services_tls_route (derived from provider schema).
NetworkServicesTlsRouteRules
Typed helper for the rules block of google_network_services_tls_route (derived from provider schema).
NetworkServicesWasmPluginLogConfig
Typed helper for the log_config block of google_network_services_wasm_plugin (derived from provider schema).
NetworkServicesWasmPluginVersions
Typed helper for the versions block of google_network_services_wasm_plugin (derived from provider schema).
NoProviders
The Stack registers no provider, but declares resources or data sources.
ProviderConflict
Two provider registrations Terraform rejects together: two defaults of one name, a repeated alias, an alias that is not an identifier, or configurations of one name with different source / version constraints.
RefConstant<T>
The AppConstant.ref choice.
ReplaceTrigger
What lifecycle.replaceTriggeredBy lists: a resource of the Stack or an attribute getter of one. Resource and TfRef implement it; synth reports a data source or a data-source attribute as an InvalidLifecycle.
Resource
Base of every user-instantiable Terraform resource.
ResourceRef
Public for sealed pattern matching, but constructor is private — only TfRef.resource() may construct instances.
S3Backend
terraform { backend "s3" { ... } } configuration.
Sensitive<T>
What an argument Terraform marks sensitive takes: a variable, an expression or an attribute getter — a value Terraform resolves, never a Dart literal that would be written into main.tf.json.
SensitiveLiteral
A sensitive field is set to a literal, which would write the secret in plain text into main.tf.json.
Stack
User-extended IaC composition root.
StackBackend
Lightweight backend hook. Core ships GcsBackend, S3Backend, and LocalBackend; anything else implements this interface in the caller. The Stack only stores the value and exposes a discriminator for synth's terraform { backend ... } emitter.
StackProvider
Coordination interface between Stack (in this package) and concrete providers (e.g. GoogleProvider in terradart_google). Concrete providers implement every getter using their baked-in constants from Stage 2 codegen.
SynthIssue
One reason a Stack cannot be synthesized.
SynthResult
Bundle returned by StackSynth.synth.
TfAddressed
Anything that exposes a Terraform address, e.g. google_pubsub_topic.orders.
TfArg<T>
A Terraform argument: a Dart-side literal, a reference to another block's attribute (TfRef), a variable or a raw expression.
TfArgExpression<T>
A raw Terraform expression — the tf.json template string, verbatim.
TfArgLiteral<T>
TfArgVariable<T>
TfCollectionType
list(...), set(...) or map(...).
TfMoved
One moved { from = ... to = ... } block: the state object at from now belongs to the resource at to, so a rename does not become a destroy-and-create.
TfObjectType
object({ ... }).
TfOptionalType
optional(<type>[, <default>]).
TfOutput<T>
An output "<name>" { value = ... } block, registered with Stack.addOutput.
TfPrimitiveType
string, number, bool or any.
TfRef<T>
A Terraform-side reference: an attribute of a resource (AttributeRef) or a data source (DataRef), or a whole resource (ResourceRef).
TfTimeouts
timeouts { ... } on a resource or data source: how long Terraform waits for each operation before giving up.
TfTupleType
tuple([...]).
TfType
A Terraform type constraint: string, list(number), object({ name = string }).
TfVariable
One variable "<name>" { ... } declaration.
UndeclaredVariable
A TfArg.variable or var.<name> in an expression names a variable the Stack does not declare.
UnregisteredReference
A block references another block that was never registered on the Stack: built, but not passed to add(...) / addModule(...).
UnresolvableConstant
An AppConstant.ref whose value is not known at synth: the attribute is not set to a literal, is sensitive, does not match the constant's type, or belongs to a block that is not registered.
ValueConstant<T>
The AppConstant.value choice.

Enums

ResourceKind
Whether a Stack entry is a resource block or a data block in Terraform JSON.

Extension Types

NetworkConnectivityGatewayAdvertisedRouteRecipient
Network Connectivity Gateway Advertised Route enum for recipient.
NetworkConnectivityGatewayAdvertisedRouteState
Network Connectivity Gateway Advertised Route enum for state.
NetworkConnectivityGroupName
Network Connectivity Group enum for name.
NetworkConnectivityInternalRangeAllocationStrategy
allocation_strategy on NetworkConnectivityInternalRangeAllocationOptions.
NetworkConnectivityInternalRangePeering
peering for GoogleNetworkConnectivityInternalRange.
NetworkConnectivityInternalRangeUsage
usage for GoogleNetworkConnectivityInternalRange.
NetworkConnectivityPolicyBasedRouteNextHopOtherRoutes
Network Connectivity Policy Based Route Next Hop Other enum for next_hop_other_routes.
NetworkConnectivityPolicyBasedRouteProtocolVersion
protocol_version — derived from the provider schema description.
NetworkConnectivityRegionalEndpointAccessType
Network Connectivity Regional Endpoint Access enum for access_type.
NetworkConnectivityServiceConnectionPolicyProducerInstanceLocation
producer_instance_location — derived from the provider schema description.
NetworkConnectivitySpokeCapacity
capacity — derived from the provider schema description.
NetworkConnectivityTransportDeletionPolicy
Terraform deletion_policy for Network Connectivity transports.
NetworkConnectivityTransportStackType
IP stack for google_network_connectivity_transport.stack_type.
NetworkManagementConnectivityTestDestinationNetworkType
network_type — derived from the provider schema description.
NetworkManagementConnectivityTestSourceNetworkType
network_type — derived from the provider schema description.
NetworkManagementVpcFlowLogsConfigAggregationInterval
aggregation_interval for google_network_management_vpc_flow_logs_config.
NetworkManagementVpcFlowLogsConfigMetadata
metadata for google_network_management_vpc_flow_logs_config.
NetworkManagementVpcFlowLogsConfigState
state for google_network_management_vpc_flow_logs_config.
NetworkSecurityAddressGroupType
Network Security Address Group enum for type.
NetworkSecurityAuthzPolicyAction
Network Security Authz Policy enum for action.
NetworkSecurityAuthzPolicyBaseProtocolMethodsOption
base_protocol_methods_option — derived from the provider schema description.
NetworkSecurityAuthzPolicyLoadBalancingScheme
load_balancing_scheme — derived from the provider schema description.
NetworkSecurityAuthzPolicyPrincipalSelector
principal_selector — derived from the provider schema description.
NetworkSecurityAuthzPolicyProfile
Network Security Authz Policy enum for policy_profile.
NetworkSecurityBackendAuthenticationConfigWellKnownRoots
Network Security Backend Authentication Config Well Known enum for well_known_roots.
NetworkSecurityDnsThreatDetectorProvider
threat_detector_provider for GoogleNetworkSecurityDnsThreatDetector.
NetworkSecurityFirewallEndpointAssociationState
Network Security Firewall Endpoint Association enum for state.
NetworkSecurityGatewaySecurityPolicyRuleBasicProfile
Network Security Gateway Security Policy Rule Basic enum for basic_profile.
NetworkSecuritySecurityProfileAction
action — derived from the provider schema description.
NetworkSecuritySecurityProfileFilteringAction
filtering_action — derived from the provider schema description.
NetworkSecuritySecurityProfileProtocol
protocol — derived from the provider schema description.
NetworkSecuritySecurityProfileSeverity
severity — derived from the provider schema description.
NetworkSecuritySecurityProfileType
Network Security Security Profile enum for type.
NetworkSecurityServerTlsPolicyClientValidationMode
client_validation_mode — derived from the provider schema description.
NetworkSecurityTlsInspectionPolicyMinTlsVersion
Network Security Tls Inspection Policy Min Tls enum for min_tls_version.
NetworkSecurityTlsInspectionPolicyTlsFeatureProfile
Network Security Tls Inspection Policy Tls Feature enum for tls_feature_profile.
NetworkSecurityUllMirroringCollectorDeletionPolicy
Terraform deletion_policy for ULL mirroring collectors.
NetworkSecurityUllMirroringCollectorRuleDeletionPolicy
Terraform deletion_policy for ULL mirroring collector rules.
NetworkSecurityUllMirroringCollectorRuleDirection
Traffic direction for match.direction.
NetworkSecurityUllMirroringEngineDeletionPolicy
Terraform deletion_policy for ULL mirroring engines.
NetworkServicesAgentConnectivityTemplateAccessPath
Network Services Agent Connectivity Template Access enum for access_path.
NetworkServicesAgentConnectivityTemplateVpcEgress
vpc_egress — derived from the provider schema description.
NetworkServicesAgentGatewayGoogleManagedGovernedAccessPath
governed_access_path under google_managed.
NetworkServicesAuthzExtensionLoadBalancingScheme
Network Services Authz Extension Load Balancing enum for load_balancing_scheme.
NetworkServicesAuthzExtensionWireFormat
Network Services Authz Extension Wire enum for wire_format.
NetworkServicesEdgeCacheOriginFlexShieldingRegions
flex_shielding_regions — derived from the provider schema description.
NetworkServicesEdgeCacheOriginProtocol
Network Services Edge Cache Origin enum for protocol.
NetworkServicesEdgeCacheServiceActions
actions — derived from the provider schema description.
NetworkServicesEdgeCacheServiceAllowedSignatureAlgorithms
allowed_signature_algorithms — derived from the provider schema description.
NetworkServicesEdgeCacheServiceCacheMode
cache_mode — derived from the provider schema description.
NetworkServicesEdgeCacheServiceCompressionMode
compression_mode — derived from the provider schema description.
NetworkServicesEdgeCacheServiceRedirectResponseCode
redirect_response_code — derived from the provider schema description.
NetworkServicesEdgeCacheServiceSignedRequestMode
signed_request_mode — derived from the provider schema description.
NetworkServicesEndpointPolicyMetadataLabelMatchCriteria
metadata_label_match_criteria — derived from the provider schema description.
NetworkServicesEndpointPolicyType
Network Services Endpoint Policy enum for type.
NetworkServicesGatewayEnvoyHeaders
Network Services Gateway Envoy enum for envoy_headers.
NetworkServicesGatewayIpVersion
Network Services Gateway Ip enum for ip_version.
NetworkServicesGatewayRoutingMode
Network Services Gateway Routing enum for routing_mode.
NetworkServicesGatewayType
Network Services Gateway enum for type.
NetworkServicesGrpcRouteRetryConditions
retry_conditions — derived from the provider schema description.
NetworkServicesGrpcRouteType
type — derived from the provider schema description.
NetworkServicesLbEdgeExtensionLoadBalancingScheme
Network Services Lb Edge Extension Load Balancing enum for load_balancing_scheme.
NetworkServicesLbRouteExtensionLoadBalancingScheme
Network Services Lb Route Extension Load Balancing enum for load_balancing_scheme.
NetworkServicesLbRouteExtensionRequestBodySendMode
request_body_send_mode — derived from the provider schema description.
NetworkServicesLbTrafficExtensionLoadBalancingScheme
Network Services Lb Traffic Extension Load Balancing enum for load_balancing_scheme.
NetworkServicesWasmPluginMinLogLevel
min_log_level — derived from the provider schema description.
OutputEnvironment
The environment Stack.outputEnvironment returns: each variable and its value, in registration order.
RefTo
A reference to a resource of type R, for an argument that names another resource (network, vpc_id, role_arn, ...).

Extensions

RefToList on TfArg<List<RefTo<R>>>
A list-valued reference argument (security_group_ids, subnet_ids): a literal list of RefTos, or one value that is the whole list (TfArg.variable('subnet_ids'), TfArg.expression(...)).
TerraformDurationExt on Duration
Converts a Dart Duration into a Terraform duration string ("604800s").

Constants

terradartManifestVariable → const String
The environment variable the terradart command sets to the file runStack and runEnvironments describe what they wrote in.

Functions

runEnvironments<E extends Enum>(List<String> args, List<E> environments, Stack build(E env), {String dir(E env)?, String? workspace(E env)?, List<String> backendConfig(E env)?, E? defaultEnv}) → Future<void>
The entry point of a project with one Stack per environment. The environments are the members of an enum of the project's own — any names, each carrying its values — so the Stack takes a typed env and derives everything per environment from it, its backend included:
runStack(List<String> args, Stack build(), {String out = 'tf-out'}) → Future<void>
The entry point of a project with one Stack: writes it to out.

Exceptions / Errors

DuplicateModuleError
A ModuleCall registered twice under one name.
DuplicateResourceError
Thrown by Stack.add when an entry with the same (kind, terraformType, localName) triple is registered twice.
SynthException
Thrown by Stack.synth() and Stack.writeTo() when the Stack has one or more SynthIssues. Nothing is written.