Represents a {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend vault_ldap_secret_backend}.
using HashiCorp.Cdktf.Providers.Vault;
new LdapSecretBackend(Construct Scope, string Id, LdapSecretBackendConfig Config);
Name | Type | Description |
---|---|---|
Scope |
Constructs.Construct |
The scope in which to define this construct. |
Id |
string |
The scoped construct ID. |
Config |
LdapSecretBackendConfig |
No description. |
- Type: Constructs.Construct
The scope in which to define this construct.
- Type: string
The scoped construct ID.
Must be unique amongst siblings in the same scope
- Type: LdapSecretBackendConfig
Name | Description |
---|---|
ToString |
Returns a string representation of this construct. |
AddOverride |
No description. |
OverrideLogicalId |
Overrides the auto-generated logical ID with a specific ID. |
ResetOverrideLogicalId |
Resets a previously passed logical Id to use the auto-generated logical id again. |
ToHclTerraform |
No description. |
ToMetadata |
No description. |
ToTerraform |
Adds this resource to the terraform JSON output. |
AddMoveTarget |
Adds a user defined moveTarget string to this resource to be later used in .moveTo(moveTarget) to resolve the location of the move. |
GetAnyMapAttribute |
No description. |
GetBooleanAttribute |
No description. |
GetBooleanMapAttribute |
No description. |
GetListAttribute |
No description. |
GetNumberAttribute |
No description. |
GetNumberListAttribute |
No description. |
GetNumberMapAttribute |
No description. |
GetStringAttribute |
No description. |
GetStringMapAttribute |
No description. |
HasResourceMove |
No description. |
ImportFrom |
No description. |
InterpolationForAttribute |
No description. |
MoveFromId |
Move the resource corresponding to "id" to this resource. |
MoveTo |
Moves this resource to the target resource given by moveTarget. |
MoveToId |
Moves this resource to the resource corresponding to "id". |
ResetAllowedManagedKeys |
No description. |
ResetAllowedResponseHeaders |
No description. |
ResetAuditNonHmacRequestKeys |
No description. |
ResetAuditNonHmacResponseKeys |
No description. |
ResetCertificate |
No description. |
ResetClientTlsCert |
No description. |
ResetClientTlsKey |
No description. |
ResetConnectionTimeout |
No description. |
ResetDefaultLeaseTtlSeconds |
No description. |
ResetDelegatedAuthAccessors |
No description. |
ResetDescription |
No description. |
ResetDisableRemount |
No description. |
ResetExternalEntropyAccess |
No description. |
ResetId |
No description. |
ResetIdentityTokenKey |
No description. |
ResetInsecureTls |
No description. |
ResetListingVisibility |
No description. |
ResetLocal |
No description. |
ResetMaxLeaseTtlSeconds |
No description. |
ResetNamespace |
No description. |
ResetOptions |
No description. |
ResetPassthroughRequestHeaders |
No description. |
ResetPasswordPolicy |
No description. |
ResetPath |
No description. |
ResetPluginVersion |
No description. |
ResetRequestTimeout |
No description. |
ResetSchema |
No description. |
ResetSealWrap |
No description. |
ResetSkipStaticRoleImportRotation |
No description. |
ResetStarttls |
No description. |
ResetUpndomain |
No description. |
ResetUrl |
No description. |
ResetUserattr |
No description. |
ResetUserdn |
No description. |
private string ToString()
Returns a string representation of this construct.
private void AddOverride(string Path, object Value)
- Type: string
- Type: object
private void OverrideLogicalId(string NewLogicalId)
Overrides the auto-generated logical ID with a specific ID.
- Type: string
The new logical ID to use for this stack element.
private void ResetOverrideLogicalId()
Resets a previously passed logical Id to use the auto-generated logical id again.
private object ToHclTerraform()
private object ToMetadata()
private object ToTerraform()
Adds this resource to the terraform JSON output.
private void AddMoveTarget(string MoveTarget)
Adds a user defined moveTarget string to this resource to be later used in .moveTo(moveTarget) to resolve the location of the move.
- Type: string
The string move target that will correspond to this resource.
private System.Collections.Generic.IDictionary<string, object> GetAnyMapAttribute(string TerraformAttribute)
- Type: string
private IResolvable GetBooleanAttribute(string TerraformAttribute)
- Type: string
private System.Collections.Generic.IDictionary<string, bool> GetBooleanMapAttribute(string TerraformAttribute)
- Type: string
private string[] GetListAttribute(string TerraformAttribute)
- Type: string
private double GetNumberAttribute(string TerraformAttribute)
- Type: string
private double[] GetNumberListAttribute(string TerraformAttribute)
- Type: string
private System.Collections.Generic.IDictionary<string, double> GetNumberMapAttribute(string TerraformAttribute)
- Type: string
private string GetStringAttribute(string TerraformAttribute)
- Type: string
private System.Collections.Generic.IDictionary<string, string> GetStringMapAttribute(string TerraformAttribute)
- Type: string
private object HasResourceMove()
private void ImportFrom(string Id, TerraformProvider Provider = null)
- Type: string
- Type: HashiCorp.Cdktf.TerraformProvider
private IResolvable InterpolationForAttribute(string TerraformAttribute)
- Type: string
private void MoveFromId(string Id)
Move the resource corresponding to "id" to this resource.
Note that the resource being moved from must be marked as moved using it's instance function.
- Type: string
Full id of resource being moved from, e.g. "aws_s3_bucket.example".
private void MoveTo(string MoveTarget, object Index = null)
Moves this resource to the target resource given by moveTarget.
- Type: string
The previously set user defined string set by .addMoveTarget() corresponding to the resource to move to.
- Type: object
Optional The index corresponding to the key the resource is to appear in the foreach of a resource to move to.
private void MoveToId(string Id)
Moves this resource to the resource corresponding to "id".
- Type: string
Full id of resource to move to, e.g. "aws_s3_bucket.example".
private void ResetAllowedManagedKeys()
private void ResetAllowedResponseHeaders()
private void ResetAuditNonHmacRequestKeys()
private void ResetAuditNonHmacResponseKeys()
private void ResetCertificate()
private void ResetClientTlsCert()
private void ResetClientTlsKey()
private void ResetConnectionTimeout()
private void ResetDefaultLeaseTtlSeconds()
private void ResetDelegatedAuthAccessors()
private void ResetDescription()
private void ResetDisableRemount()
private void ResetExternalEntropyAccess()
private void ResetId()
private void ResetIdentityTokenKey()
private void ResetInsecureTls()
private void ResetListingVisibility()
private void ResetLocal()
private void ResetMaxLeaseTtlSeconds()
private void ResetNamespace()
private void ResetOptions()
private void ResetPassthroughRequestHeaders()
private void ResetPasswordPolicy()
private void ResetPath()
private void ResetPluginVersion()
private void ResetRequestTimeout()
private void ResetSchema()
private void ResetSealWrap()
private void ResetSkipStaticRoleImportRotation()
private void ResetStarttls()
private void ResetUpndomain()
private void ResetUrl()
private void ResetUserattr()
private void ResetUserdn()
Name | Description |
---|---|
IsConstruct |
Checks if x is a construct. |
IsTerraformElement |
No description. |
IsTerraformResource |
No description. |
GenerateConfigForImport |
Generates CDKTF code for importing a LdapSecretBackend resource upon running "cdktf plan ". |
using HashiCorp.Cdktf.Providers.Vault;
LdapSecretBackend.IsConstruct(object X);
Checks if x
is a construct.
Use this method instead of instanceof
to properly detect Construct
instances, even when the construct library is symlinked.
Explanation: in JavaScript, multiple copies of the constructs
library on
disk are seen as independent, completely different libraries. As a
consequence, the class Construct
in each copy of the constructs
library
is seen as a different class, and an instance of one class will not test as
instanceof
the other class. npm install
will not create installations
like this, but users may manually symlink construct libraries together or
use a monorepo tool: in those cases, multiple copies of the constructs
library can be accidentally installed, and instanceof
will behave
unpredictably. It is safest to avoid using instanceof
, and using
this type-testing method instead.
- Type: object
Any object.
using HashiCorp.Cdktf.Providers.Vault;
LdapSecretBackend.IsTerraformElement(object X);
- Type: object
using HashiCorp.Cdktf.Providers.Vault;
LdapSecretBackend.IsTerraformResource(object X);
- Type: object
using HashiCorp.Cdktf.Providers.Vault;
LdapSecretBackend.GenerateConfigForImport(Construct Scope, string ImportToId, string ImportFromId, TerraformProvider Provider = null);
Generates CDKTF code for importing a LdapSecretBackend resource upon running "cdktf plan ".
- Type: Constructs.Construct
The scope in which to define this construct.
- Type: string
The construct id used in the generated config for the LdapSecretBackend to import.
- Type: string
The id of the existing LdapSecretBackend that should be imported.
Refer to the {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#import import section} in the documentation of this resource for the id to use
- Type: HashiCorp.Cdktf.TerraformProvider
? Optional instance of the provider where the LdapSecretBackend to import is found.
Name | Type | Description |
---|---|---|
Node |
Constructs.Node |
The tree node. |
CdktfStack |
HashiCorp.Cdktf.TerraformStack |
No description. |
Fqn |
string |
No description. |
FriendlyUniqueId |
string |
No description. |
TerraformMetaArguments |
System.Collections.Generic.IDictionary<string, object> |
No description. |
TerraformResourceType |
string |
No description. |
TerraformGeneratorMetadata |
HashiCorp.Cdktf.TerraformProviderGeneratorMetadata |
No description. |
Connection |
object |
No description. |
Count |
object |
No description. |
DependsOn |
string[] |
No description. |
ForEach |
HashiCorp.Cdktf.ITerraformIterator |
No description. |
Lifecycle |
HashiCorp.Cdktf.TerraformResourceLifecycle |
No description. |
Provider |
HashiCorp.Cdktf.TerraformProvider |
No description. |
Provisioners |
object[] |
No description. |
Accessor |
string |
No description. |
AllowedManagedKeysInput |
string[] |
No description. |
AllowedResponseHeadersInput |
string[] |
No description. |
AuditNonHmacRequestKeysInput |
string[] |
No description. |
AuditNonHmacResponseKeysInput |
string[] |
No description. |
BinddnInput |
string |
No description. |
BindpassInput |
string |
No description. |
CertificateInput |
string |
No description. |
ClientTlsCertInput |
string |
No description. |
ClientTlsKeyInput |
string |
No description. |
ConnectionTimeoutInput |
double |
No description. |
DefaultLeaseTtlSecondsInput |
double |
No description. |
DelegatedAuthAccessorsInput |
string[] |
No description. |
DescriptionInput |
string |
No description. |
DisableRemountInput |
object |
No description. |
ExternalEntropyAccessInput |
object |
No description. |
IdentityTokenKeyInput |
string |
No description. |
IdInput |
string |
No description. |
InsecureTlsInput |
object |
No description. |
ListingVisibilityInput |
string |
No description. |
LocalInput |
object |
No description. |
MaxLeaseTtlSecondsInput |
double |
No description. |
NamespaceInput |
string |
No description. |
OptionsInput |
System.Collections.Generic.IDictionary<string, string> |
No description. |
PassthroughRequestHeadersInput |
string[] |
No description. |
PasswordPolicyInput |
string |
No description. |
PathInput |
string |
No description. |
PluginVersionInput |
string |
No description. |
RequestTimeoutInput |
double |
No description. |
SchemaInput |
string |
No description. |
SealWrapInput |
object |
No description. |
SkipStaticRoleImportRotationInput |
object |
No description. |
StarttlsInput |
object |
No description. |
UpndomainInput |
string |
No description. |
UrlInput |
string |
No description. |
UserattrInput |
string |
No description. |
UserdnInput |
string |
No description. |
AllowedManagedKeys |
string[] |
No description. |
AllowedResponseHeaders |
string[] |
No description. |
AuditNonHmacRequestKeys |
string[] |
No description. |
AuditNonHmacResponseKeys |
string[] |
No description. |
Binddn |
string |
No description. |
Bindpass |
string |
No description. |
Certificate |
string |
No description. |
ClientTlsCert |
string |
No description. |
ClientTlsKey |
string |
No description. |
ConnectionTimeout |
double |
No description. |
DefaultLeaseTtlSeconds |
double |
No description. |
DelegatedAuthAccessors |
string[] |
No description. |
Description |
string |
No description. |
DisableRemount |
object |
No description. |
ExternalEntropyAccess |
object |
No description. |
Id |
string |
No description. |
IdentityTokenKey |
string |
No description. |
InsecureTls |
object |
No description. |
ListingVisibility |
string |
No description. |
Local |
object |
No description. |
MaxLeaseTtlSeconds |
double |
No description. |
Namespace |
string |
No description. |
Options |
System.Collections.Generic.IDictionary<string, string> |
No description. |
PassthroughRequestHeaders |
string[] |
No description. |
PasswordPolicy |
string |
No description. |
Path |
string |
No description. |
PluginVersion |
string |
No description. |
RequestTimeout |
double |
No description. |
Schema |
string |
No description. |
SealWrap |
object |
No description. |
SkipStaticRoleImportRotation |
object |
No description. |
Starttls |
object |
No description. |
Upndomain |
string |
No description. |
Url |
string |
No description. |
Userattr |
string |
No description. |
Userdn |
string |
No description. |
public Node Node { get; }
- Type: Constructs.Node
The tree node.
public TerraformStack CdktfStack { get; }
- Type: HashiCorp.Cdktf.TerraformStack
public string Fqn { get; }
- Type: string
public string FriendlyUniqueId { get; }
- Type: string
public System.Collections.Generic.IDictionary<string, object> TerraformMetaArguments { get; }
- Type: System.Collections.Generic.IDictionary<string, object>
public string TerraformResourceType { get; }
- Type: string
public TerraformProviderGeneratorMetadata TerraformGeneratorMetadata { get; }
- Type: HashiCorp.Cdktf.TerraformProviderGeneratorMetadata
public object Connection { get; }
- Type: object
public object Count { get; }
- Type: object
public string[] DependsOn { get; }
- Type: string[]
public ITerraformIterator ForEach { get; }
- Type: HashiCorp.Cdktf.ITerraformIterator
public TerraformResourceLifecycle Lifecycle { get; }
- Type: HashiCorp.Cdktf.TerraformResourceLifecycle
public TerraformProvider Provider { get; }
- Type: HashiCorp.Cdktf.TerraformProvider
public object[] Provisioners { get; }
- Type: object[]
public string Accessor { get; }
- Type: string
public string[] AllowedManagedKeysInput { get; }
- Type: string[]
public string[] AllowedResponseHeadersInput { get; }
- Type: string[]
public string[] AuditNonHmacRequestKeysInput { get; }
- Type: string[]
public string[] AuditNonHmacResponseKeysInput { get; }
- Type: string[]
public string BinddnInput { get; }
- Type: string
public string BindpassInput { get; }
- Type: string
public string CertificateInput { get; }
- Type: string
public string ClientTlsCertInput { get; }
- Type: string
public string ClientTlsKeyInput { get; }
- Type: string
public double ConnectionTimeoutInput { get; }
- Type: double
public double DefaultLeaseTtlSecondsInput { get; }
- Type: double
public string[] DelegatedAuthAccessorsInput { get; }
- Type: string[]
public string DescriptionInput { get; }
- Type: string
public object DisableRemountInput { get; }
- Type: object
public object ExternalEntropyAccessInput { get; }
- Type: object
public string IdentityTokenKeyInput { get; }
- Type: string
public string IdInput { get; }
- Type: string
public object InsecureTlsInput { get; }
- Type: object
public string ListingVisibilityInput { get; }
- Type: string
public object LocalInput { get; }
- Type: object
public double MaxLeaseTtlSecondsInput { get; }
- Type: double
public string NamespaceInput { get; }
- Type: string
public System.Collections.Generic.IDictionary<string, string> OptionsInput { get; }
- Type: System.Collections.Generic.IDictionary<string, string>
public string[] PassthroughRequestHeadersInput { get; }
- Type: string[]
public string PasswordPolicyInput { get; }
- Type: string
public string PathInput { get; }
- Type: string
public string PluginVersionInput { get; }
- Type: string
public double RequestTimeoutInput { get; }
- Type: double
public string SchemaInput { get; }
- Type: string
public object SealWrapInput { get; }
- Type: object
public object SkipStaticRoleImportRotationInput { get; }
- Type: object
public object StarttlsInput { get; }
- Type: object
public string UpndomainInput { get; }
- Type: string
public string UrlInput { get; }
- Type: string
public string UserattrInput { get; }
- Type: string
public string UserdnInput { get; }
- Type: string
public string[] AllowedManagedKeys { get; }
- Type: string[]
public string[] AllowedResponseHeaders { get; }
- Type: string[]
public string[] AuditNonHmacRequestKeys { get; }
- Type: string[]
public string[] AuditNonHmacResponseKeys { get; }
- Type: string[]
public string Binddn { get; }
- Type: string
public string Bindpass { get; }
- Type: string
public string Certificate { get; }
- Type: string
public string ClientTlsCert { get; }
- Type: string
public string ClientTlsKey { get; }
- Type: string
public double ConnectionTimeout { get; }
- Type: double
public double DefaultLeaseTtlSeconds { get; }
- Type: double
public string[] DelegatedAuthAccessors { get; }
- Type: string[]
public string Description { get; }
- Type: string
public object DisableRemount { get; }
- Type: object
public object ExternalEntropyAccess { get; }
- Type: object
public string Id { get; }
- Type: string
public string IdentityTokenKey { get; }
- Type: string
public object InsecureTls { get; }
- Type: object
public string ListingVisibility { get; }
- Type: string
public object Local { get; }
- Type: object
public double MaxLeaseTtlSeconds { get; }
- Type: double
public string Namespace { get; }
- Type: string
public System.Collections.Generic.IDictionary<string, string> Options { get; }
- Type: System.Collections.Generic.IDictionary<string, string>
public string[] PassthroughRequestHeaders { get; }
- Type: string[]
public string PasswordPolicy { get; }
- Type: string
public string Path { get; }
- Type: string
public string PluginVersion { get; }
- Type: string
public double RequestTimeout { get; }
- Type: double
public string Schema { get; }
- Type: string
public object SealWrap { get; }
- Type: object
public object SkipStaticRoleImportRotation { get; }
- Type: object
public object Starttls { get; }
- Type: object
public string Upndomain { get; }
- Type: string
public string Url { get; }
- Type: string
public string Userattr { get; }
- Type: string
public string Userdn { get; }
- Type: string
Name | Type | Description |
---|---|---|
TfResourceType |
string |
No description. |
public string TfResourceType { get; }
- Type: string
using HashiCorp.Cdktf.Providers.Vault;
new LdapSecretBackendConfig {
object Connection = null,
object Count = null,
ITerraformDependable[] DependsOn = null,
ITerraformIterator ForEach = null,
TerraformResourceLifecycle Lifecycle = null,
TerraformProvider Provider = null,
object[] Provisioners = null,
string Binddn,
string Bindpass,
string[] AllowedManagedKeys = null,
string[] AllowedResponseHeaders = null,
string[] AuditNonHmacRequestKeys = null,
string[] AuditNonHmacResponseKeys = null,
string Certificate = null,
string ClientTlsCert = null,
string ClientTlsKey = null,
double ConnectionTimeout = null,
double DefaultLeaseTtlSeconds = null,
string[] DelegatedAuthAccessors = null,
string Description = null,
object DisableRemount = null,
object ExternalEntropyAccess = null,
string Id = null,
string IdentityTokenKey = null,
object InsecureTls = null,
string ListingVisibility = null,
object Local = null,
double MaxLeaseTtlSeconds = null,
string Namespace = null,
System.Collections.Generic.IDictionary<string, string> Options = null,
string[] PassthroughRequestHeaders = null,
string PasswordPolicy = null,
string Path = null,
string PluginVersion = null,
double RequestTimeout = null,
string Schema = null,
object SealWrap = null,
object SkipStaticRoleImportRotation = null,
object Starttls = null,
string Upndomain = null,
string Url = null,
string Userattr = null,
string Userdn = null
};
Name | Type | Description |
---|---|---|
Connection |
object |
No description. |
Count |
object |
No description. |
DependsOn |
HashiCorp.Cdktf.ITerraformDependable[] |
No description. |
ForEach |
HashiCorp.Cdktf.ITerraformIterator |
No description. |
Lifecycle |
HashiCorp.Cdktf.TerraformResourceLifecycle |
No description. |
Provider |
HashiCorp.Cdktf.TerraformProvider |
No description. |
Provisioners |
object[] |
No description. |
Binddn |
string |
Distinguished name of object to bind when performing user and group search. |
Bindpass |
string |
LDAP password for searching for the user DN. |
AllowedManagedKeys |
string[] |
List of managed key registry entry names that the mount in question is allowed to access. |
AllowedResponseHeaders |
string[] |
List of headers to allow and pass from the request to the plugin. |
AuditNonHmacRequestKeys |
string[] |
Specifies the list of keys that will not be HMAC'd by audit devices in the request data object. |
AuditNonHmacResponseKeys |
string[] |
Specifies the list of keys that will not be HMAC'd by audit devices in the response data object. |
Certificate |
string |
CA certificate to use when verifying LDAP server certificate, must be x509 PEM encoded. |
ClientTlsCert |
string |
Client certificate to provide to the LDAP server, must be x509 PEM encoded. |
ClientTlsKey |
string |
Client certificate key to provide to the LDAP server, must be x509 PEM encoded. |
ConnectionTimeout |
double |
Timeout, in seconds, when attempting to connect to the LDAP server before trying the next URL in the configuration. |
DefaultLeaseTtlSeconds |
double |
Default lease duration for tokens and secrets in seconds. |
DelegatedAuthAccessors |
string[] |
List of headers to allow and pass from the request to the plugin. |
Description |
string |
Human-friendly description of the mount. |
DisableRemount |
object |
If set, opts out of mount migration on path updates. |
ExternalEntropyAccess |
object |
Enable the secrets engine to access Vault's external entropy source. |
Id |
string |
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#id LdapSecretBackend#id}. |
IdentityTokenKey |
string |
The key to use for signing plugin workload identity tokens. |
InsecureTls |
object |
Skip LDAP server SSL Certificate verification - insecure and not recommended for production use. |
ListingVisibility |
string |
Specifies whether to show this mount in the UI-specific listing endpoint. |
Local |
object |
Local mount flag that can be explicitly set to true to enforce local mount in HA environment. |
MaxLeaseTtlSeconds |
double |
Maximum possible lease duration for tokens and secrets in seconds. |
Namespace |
string |
Target namespace. (requires Enterprise). |
Options |
System.Collections.Generic.IDictionary<string, string> |
Specifies mount type specific options that are passed to the backend. |
PassthroughRequestHeaders |
string[] |
List of headers to allow and pass from the request to the plugin. |
PasswordPolicy |
string |
Name of the password policy to use to generate passwords. |
Path |
string |
The path where the LDAP secrets backend is mounted. |
PluginVersion |
string |
Specifies the semantic version of the plugin to use, e.g. 'v1.0.0'. |
RequestTimeout |
double |
Timeout, in seconds, for the connection when making requests against the server before returning back an error. |
Schema |
string |
The LDAP schema to use when storing entry passwords. Valid schemas include openldap, ad, and racf. |
SealWrap |
object |
Enable seal wrapping for the mount, causing values stored by the mount to be wrapped by the seal's encryption capability. |
SkipStaticRoleImportRotation |
object |
Skip rotation of static role secrets on import. |
Starttls |
object |
Issue a StartTLS command after establishing unencrypted connection. |
Upndomain |
string |
Enables userPrincipalDomain login with [username]@UPNDomain. |
Url |
string |
LDAP URL to connect to (default: ldap://127.0.0.1). Multiple URLs can be specified by concatenating them with commas; they will be tried in-order. |
Userattr |
string |
Attribute used for users (default: cn). |
Userdn |
string |
LDAP domain to use for users (eg: ou=People,dc=example,dc=org). |
public object Connection { get; set; }
- Type: object
public object Count { get; set; }
- Type: object
public ITerraformDependable[] DependsOn { get; set; }
- Type: HashiCorp.Cdktf.ITerraformDependable[]
public ITerraformIterator ForEach { get; set; }
- Type: HashiCorp.Cdktf.ITerraformIterator
public TerraformResourceLifecycle Lifecycle { get; set; }
- Type: HashiCorp.Cdktf.TerraformResourceLifecycle
public TerraformProvider Provider { get; set; }
- Type: HashiCorp.Cdktf.TerraformProvider
public object[] Provisioners { get; set; }
- Type: object[]
public string Binddn { get; set; }
- Type: string
Distinguished name of object to bind when performing user and group search.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#binddn LdapSecretBackend#binddn}
public string Bindpass { get; set; }
- Type: string
LDAP password for searching for the user DN.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#bindpass LdapSecretBackend#bindpass}
public string[] AllowedManagedKeys { get; set; }
- Type: string[]
List of managed key registry entry names that the mount in question is allowed to access.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#allowed_managed_keys LdapSecretBackend#allowed_managed_keys}
public string[] AllowedResponseHeaders { get; set; }
- Type: string[]
List of headers to allow and pass from the request to the plugin.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#allowed_response_headers LdapSecretBackend#allowed_response_headers}
public string[] AuditNonHmacRequestKeys { get; set; }
- Type: string[]
Specifies the list of keys that will not be HMAC'd by audit devices in the request data object.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#audit_non_hmac_request_keys LdapSecretBackend#audit_non_hmac_request_keys}
public string[] AuditNonHmacResponseKeys { get; set; }
- Type: string[]
Specifies the list of keys that will not be HMAC'd by audit devices in the response data object.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#audit_non_hmac_response_keys LdapSecretBackend#audit_non_hmac_response_keys}
public string Certificate { get; set; }
- Type: string
CA certificate to use when verifying LDAP server certificate, must be x509 PEM encoded.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#certificate LdapSecretBackend#certificate}
public string ClientTlsCert { get; set; }
- Type: string
Client certificate to provide to the LDAP server, must be x509 PEM encoded.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#client_tls_cert LdapSecretBackend#client_tls_cert}
public string ClientTlsKey { get; set; }
- Type: string
Client certificate key to provide to the LDAP server, must be x509 PEM encoded.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#client_tls_key LdapSecretBackend#client_tls_key}
public double ConnectionTimeout { get; set; }
- Type: double
Timeout, in seconds, when attempting to connect to the LDAP server before trying the next URL in the configuration.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#connection_timeout LdapSecretBackend#connection_timeout}
public double DefaultLeaseTtlSeconds { get; set; }
- Type: double
Default lease duration for tokens and secrets in seconds.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#default_lease_ttl_seconds LdapSecretBackend#default_lease_ttl_seconds}
public string[] DelegatedAuthAccessors { get; set; }
- Type: string[]
List of headers to allow and pass from the request to the plugin.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#delegated_auth_accessors LdapSecretBackend#delegated_auth_accessors}
public string Description { get; set; }
- Type: string
Human-friendly description of the mount.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#description LdapSecretBackend#description}
public object DisableRemount { get; set; }
- Type: object
If set, opts out of mount migration on path updates.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#disable_remount LdapSecretBackend#disable_remount}
public object ExternalEntropyAccess { get; set; }
- Type: object
Enable the secrets engine to access Vault's external entropy source.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#external_entropy_access LdapSecretBackend#external_entropy_access}
public string Id { get; set; }
- Type: string
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#id LdapSecretBackend#id}.
Please be aware that the id field is automatically added to all resources in Terraform providers using a Terraform provider SDK version below 2. If you experience problems setting this value it might not be settable. Please take a look at the provider documentation to ensure it should be settable.
public string IdentityTokenKey { get; set; }
- Type: string
The key to use for signing plugin workload identity tokens.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#identity_token_key LdapSecretBackend#identity_token_key}
public object InsecureTls { get; set; }
- Type: object
Skip LDAP server SSL Certificate verification - insecure and not recommended for production use.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#insecure_tls LdapSecretBackend#insecure_tls}
public string ListingVisibility { get; set; }
- Type: string
Specifies whether to show this mount in the UI-specific listing endpoint.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#listing_visibility LdapSecretBackend#listing_visibility}
public object Local { get; set; }
- Type: object
Local mount flag that can be explicitly set to true to enforce local mount in HA environment.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#local LdapSecretBackend#local}
public double MaxLeaseTtlSeconds { get; set; }
- Type: double
Maximum possible lease duration for tokens and secrets in seconds.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#max_lease_ttl_seconds LdapSecretBackend#max_lease_ttl_seconds}
public string Namespace { get; set; }
- Type: string
Target namespace. (requires Enterprise).
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#namespace LdapSecretBackend#namespace}
public System.Collections.Generic.IDictionary<string, string> Options { get; set; }
- Type: System.Collections.Generic.IDictionary<string, string>
Specifies mount type specific options that are passed to the backend.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#options LdapSecretBackend#options}
public string[] PassthroughRequestHeaders { get; set; }
- Type: string[]
List of headers to allow and pass from the request to the plugin.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#passthrough_request_headers LdapSecretBackend#passthrough_request_headers}
public string PasswordPolicy { get; set; }
- Type: string
Name of the password policy to use to generate passwords.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#password_policy LdapSecretBackend#password_policy}
public string Path { get; set; }
- Type: string
The path where the LDAP secrets backend is mounted.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#path LdapSecretBackend#path}
public string PluginVersion { get; set; }
- Type: string
Specifies the semantic version of the plugin to use, e.g. 'v1.0.0'.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#plugin_version LdapSecretBackend#plugin_version}
public double RequestTimeout { get; set; }
- Type: double
Timeout, in seconds, for the connection when making requests against the server before returning back an error.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#request_timeout LdapSecretBackend#request_timeout}
public string Schema { get; set; }
- Type: string
The LDAP schema to use when storing entry passwords. Valid schemas include openldap, ad, and racf.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#schema LdapSecretBackend#schema}
public object SealWrap { get; set; }
- Type: object
Enable seal wrapping for the mount, causing values stored by the mount to be wrapped by the seal's encryption capability.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#seal_wrap LdapSecretBackend#seal_wrap}
public object SkipStaticRoleImportRotation { get; set; }
- Type: object
Skip rotation of static role secrets on import.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#skip_static_role_import_rotation LdapSecretBackend#skip_static_role_import_rotation}
public object Starttls { get; set; }
- Type: object
Issue a StartTLS command after establishing unencrypted connection.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#starttls LdapSecretBackend#starttls}
public string Upndomain { get; set; }
- Type: string
Enables userPrincipalDomain login with [username]@UPNDomain.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#upndomain LdapSecretBackend#upndomain}
public string Url { get; set; }
- Type: string
LDAP URL to connect to (default: ldap://127.0.0.1). Multiple URLs can be specified by concatenating them with commas; they will be tried in-order.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#url LdapSecretBackend#url}
public string Userattr { get; set; }
- Type: string
Attribute used for users (default: cn).
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#userattr LdapSecretBackend#userattr}
public string Userdn { get; set; }
- Type: string
LDAP domain to use for users (eg: ou=People,dc=example,dc=org).
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.5.0/docs/resources/ldap_secret_backend#userdn LdapSecretBackend#userdn}