1// Code generated by smithy-go-codegen DO NOT EDIT.
2
3package kms
4
5import (
6	"context"
7	awsmiddleware "github.com/aws/aws-sdk-go-v2/aws/middleware"
8	"github.com/aws/aws-sdk-go-v2/aws/signer/v4"
9	"github.com/aws/smithy-go/middleware"
10	smithyhttp "github.com/aws/smithy-go/transport/http"
11)
12
13// Gets a key policy attached to the specified customer master key (CMK).
14// Cross-account use: No. You cannot perform this operation on a CMK in a different
15// AWS account. Required permissions: kms:GetKeyPolicy
16// (https://docs.aws.amazon.com/kms/latest/developerguide/kms-api-permissions-reference.html)
17// (key policy) Related operations: PutKeyPolicy
18func (c *Client) GetKeyPolicy(ctx context.Context, params *GetKeyPolicyInput, optFns ...func(*Options)) (*GetKeyPolicyOutput, error) {
19	if params == nil {
20		params = &GetKeyPolicyInput{}
21	}
22
23	result, metadata, err := c.invokeOperation(ctx, "GetKeyPolicy", params, optFns, addOperationGetKeyPolicyMiddlewares)
24	if err != nil {
25		return nil, err
26	}
27
28	out := result.(*GetKeyPolicyOutput)
29	out.ResultMetadata = metadata
30	return out, nil
31}
32
33type GetKeyPolicyInput struct {
34
35	// A unique identifier for the customer master key (CMK). Specify the key ID or the
36	// Amazon Resource Name (ARN) of the CMK. For example:
37	//
38	// * Key ID:
39	// 1234abcd-12ab-34cd-56ef-1234567890ab
40	//
41	// * Key ARN:
42	// arn:aws:kms:us-east-2:111122223333:key/1234abcd-12ab-34cd-56ef-1234567890ab
43	//
44	// To
45	// get the key ID and key ARN for a CMK, use ListKeys or DescribeKey.
46	//
47	// This member is required.
48	KeyId *string
49
50	// Specifies the name of the key policy. The only valid name is default. To get the
51	// names of key policies, use ListKeyPolicies.
52	//
53	// This member is required.
54	PolicyName *string
55}
56
57type GetKeyPolicyOutput struct {
58
59	// A key policy document in JSON format.
60	Policy *string
61
62	// Metadata pertaining to the operation's result.
63	ResultMetadata middleware.Metadata
64}
65
66func addOperationGetKeyPolicyMiddlewares(stack *middleware.Stack, options Options) (err error) {
67	err = stack.Serialize.Add(&awsAwsjson11_serializeOpGetKeyPolicy{}, middleware.After)
68	if err != nil {
69		return err
70	}
71	err = stack.Deserialize.Add(&awsAwsjson11_deserializeOpGetKeyPolicy{}, middleware.After)
72	if err != nil {
73		return err
74	}
75	if err = addSetLoggerMiddleware(stack, options); err != nil {
76		return err
77	}
78	if err = awsmiddleware.AddClientRequestIDMiddleware(stack); err != nil {
79		return err
80	}
81	if err = smithyhttp.AddComputeContentLengthMiddleware(stack); err != nil {
82		return err
83	}
84	if err = addResolveEndpointMiddleware(stack, options); err != nil {
85		return err
86	}
87	if err = v4.AddComputePayloadSHA256Middleware(stack); err != nil {
88		return err
89	}
90	if err = addRetryMiddlewares(stack, options); err != nil {
91		return err
92	}
93	if err = addHTTPSignerV4Middleware(stack, options); err != nil {
94		return err
95	}
96	if err = awsmiddleware.AddRawResponseToMetadata(stack); err != nil {
97		return err
98	}
99	if err = awsmiddleware.AddRecordResponseTiming(stack); err != nil {
100		return err
101	}
102	if err = addClientUserAgent(stack); err != nil {
103		return err
104	}
105	if err = smithyhttp.AddErrorCloseResponseBodyMiddleware(stack); err != nil {
106		return err
107	}
108	if err = smithyhttp.AddCloseResponseBodyMiddleware(stack); err != nil {
109		return err
110	}
111	if err = addOpGetKeyPolicyValidationMiddleware(stack); err != nil {
112		return err
113	}
114	if err = stack.Initialize.Add(newServiceMetadataMiddleware_opGetKeyPolicy(options.Region), middleware.Before); err != nil {
115		return err
116	}
117	if err = addRequestIDRetrieverMiddleware(stack); err != nil {
118		return err
119	}
120	if err = addResponseErrorMiddleware(stack); err != nil {
121		return err
122	}
123	if err = addRequestResponseLogging(stack, options); err != nil {
124		return err
125	}
126	return nil
127}
128
129func newServiceMetadataMiddleware_opGetKeyPolicy(region string) *awsmiddleware.RegisterServiceMetadata {
130	return &awsmiddleware.RegisterServiceMetadata{
131		Region:        region,
132		ServiceID:     ServiceID,
133		SigningName:   "kms",
134		OperationName: "GetKeyPolicy",
135	}
136}
137