openapi: 3.2.0 info: version: 2015-03-31 x-release: v4 title: AWS Lambda Code Signing Configs API description: 'Lambda Overview Lambda is a compute service that lets you run code without provisioning or managing servers.' x-logo: url: https://api.apis.guru/v2/cache/logo/https_twitter.com_awscloud_profile_image.png backgroundColor: '#FFFFFF' termsOfService: https://aws.amazon.com/service-terms/ contact: name: Mike Ralphson email: mike.ralphson@gmail.com url: https://github.com/mermade/aws2openapi x-twitter: PermittedSoc license: name: Apache 2.0 License url: http://www.apache.org/licenses/ x-providerName: amazonaws.com x-serviceName: lambda x-origin: - contentType: application/json url: https://raw.githubusercontent.com/aws/aws-sdk-js/master/apis/lambda-2015-03-31.normal.json converter: url: https://github.com/mermade/aws2openapi version: 1.0.0 x-apisguru-driver: external x-apiClientRegistration: url: https://portal.aws.amazon.com/gp/aws/developer/registration/index.html?nc2=h_ct x-apisguru-categories: - cloud x-preferred: true servers: - url: http://lambda.{region}.amazonaws.com variables: region: description: The AWS region enum: - us-east-1 - us-east-2 - us-west-1 - us-west-2 - us-gov-west-1 - us-gov-east-1 - ca-central-1 - eu-north-1 - eu-west-1 - eu-west-2 - eu-west-3 - eu-central-1 - eu-south-1 - af-south-1 - ap-northeast-1 - ap-northeast-2 - ap-northeast-3 - ap-southeast-1 - ap-southeast-2 - ap-east-1 - ap-south-1 - sa-east-1 - me-south-1 default: us-east-1 description: The AWS Lambda multi-region endpoint - url: https://lambda.{region}.amazonaws.com variables: region: description: The AWS region enum: - us-east-1 - us-east-2 - us-west-1 - us-west-2 - us-gov-west-1 - us-gov-east-1 - ca-central-1 - eu-north-1 - eu-west-1 - eu-west-2 - eu-west-3 - eu-central-1 - eu-south-1 - af-south-1 - ap-northeast-1 - ap-northeast-2 - ap-northeast-3 - ap-southeast-1 - ap-southeast-2 - ap-east-1 - ap-south-1 - sa-east-1 - me-south-1 default: us-east-1 description: The AWS Lambda multi-region endpoint - url: http://lambda.{region}.amazonaws.com.cn variables: region: description: The AWS region enum: - cn-north-1 - cn-northwest-1 default: cn-north-1 description: The AWS Lambda endpoint for China (Beijing) and China (Ningxia) - url: https://lambda.{region}.amazonaws.com.cn variables: region: description: The AWS region enum: - cn-north-1 - cn-northwest-1 default: cn-north-1 description: The AWS Lambda endpoint for China (Beijing) and China (Ningxia) security: - hmac: [] tags: - name: Code Signing Configs paths: /2020-04-22/code-signing-configs/: parameters: - $ref: '#/components/parameters/X-Amz-Content-Sha256' - $ref: '#/components/parameters/X-Amz-Date' - $ref: '#/components/parameters/X-Amz-Algorithm' - $ref: '#/components/parameters/X-Amz-Credential' - $ref: '#/components/parameters/X-Amz-Security-Token' - $ref: '#/components/parameters/X-Amz-Signature' - $ref: '#/components/parameters/X-Amz-SignedHeaders' post: operationId: CreateCodeSigningConfig description: Creates a code signing configuration. A code signing configuration defines a list of allowed signing profiles and defines the code-signing validation policy (action to be taken if deployment validation checks fail). responses: '201': description: Success content: application/json: schema: $ref: '#/components/schemas/CreateCodeSigningConfigResponse' '480': description: ServiceException content: application/json: schema: $ref: '#/components/schemas/ServiceException' '481': description: InvalidParameterValueException content: application/json: schema: $ref: '#/components/schemas/InvalidParameterValueException' parameters: [] requestBody: required: true content: application/json: schema: type: object required: - AllowedPublishers properties: Description: description: Descriptive name for this code signing configuration. type: string minLength: 0 maxLength: 256 AllowedPublishers: description: 'List of signing profiles that can sign a code package. ' type: object properties: SigningProfileVersionArns: allOf: - $ref: '#/components/schemas/SigningProfileVersionArns' - description: 'The Amazon Resource Name (ARN) for each of the signing profiles. A signing profile defines a trusted user who can sign a code package. ' CodeSigningPolicies: description: Code signing configuration policies specify the validation failure action for signature mismatch or expiry. type: object properties: UntrustedArtifactOnDeployment: allOf: - $ref: '#/components/schemas/CodeSigningPolicy' - description: '

Code signing configuration policy for deployment validation failure. If you set the policy to Enforce, Lambda blocks the deployment request if signature validation checks fail. If you set the policy to Warn, Lambda allows the deployment and creates a CloudWatch log.

Default value: Warn

' tags: - Code Signing Configs summary: Create code signing config x-summary-source: derived get: operationId: ListCodeSigningConfigs description: Returns a list of code signing configurations. A request returns up to 10,000 configurations per call. You can use the MaxItems parameter to return fewer configurations per call. responses: '200': description: Success content: application/json: schema: $ref: '#/components/schemas/ListCodeSigningConfigsResponse' '480': description: ServiceException content: application/json: schema: $ref: '#/components/schemas/ServiceException' '481': description: InvalidParameterValueException content: application/json: schema: $ref: '#/components/schemas/InvalidParameterValueException' parameters: - name: Marker in: query required: false description: Specify the pagination token that's returned by a previous request to retrieve the next page of results. schema: type: string - name: MaxItems in: query required: false description: Maximum number of items to return. schema: type: integer minimum: 1 maximum: 10000 tags: - Code Signing Configs summary: List code signing configs x-summary-source: derived /2020-04-22/code-signing-configs/{CodeSigningConfigArn}: parameters: - $ref: '#/components/parameters/X-Amz-Content-Sha256' - $ref: '#/components/parameters/X-Amz-Date' - $ref: '#/components/parameters/X-Amz-Algorithm' - $ref: '#/components/parameters/X-Amz-Credential' - $ref: '#/components/parameters/X-Amz-Security-Token' - $ref: '#/components/parameters/X-Amz-Signature' - $ref: '#/components/parameters/X-Amz-SignedHeaders' delete: operationId: DeleteCodeSigningConfig description: Deletes the code signing configuration. You can delete the code signing configuration only if no function is using it. responses: '204': description: Success content: application/json: schema: $ref: '#/components/schemas/DeleteCodeSigningConfigResponse' '480': description: ServiceException content: application/json: schema: $ref: '#/components/schemas/ServiceException' '481': description: InvalidParameterValueException content: application/json: schema: $ref: '#/components/schemas/InvalidParameterValueException' '482': description: ResourceNotFoundException content: application/json: schema: $ref: '#/components/schemas/ResourceNotFoundException' '483': description: ResourceConflictException content: application/json: schema: $ref: '#/components/schemas/ResourceConflictException' parameters: - name: CodeSigningConfigArn in: path required: true description: The The Amazon Resource Name (ARN) of the code signing configuration. schema: type: string pattern: arn:(aws[a-zA-Z-]*)?:lambda:[a-z]{2}((-gov)|(-iso(b?)))?-[a-z]+-\d{1}:\d{12}:code-signing-config:csc-[a-z0-9]{17} maxLength: 200 tags: - Code Signing Configs summary: Delete code signing config x-summary-source: derived get: operationId: GetCodeSigningConfig description: Returns information about the specified code signing configuration. responses: '200': description: Success content: application/json: schema: $ref: '#/components/schemas/GetCodeSigningConfigResponse' '480': description: ServiceException content: application/json: schema: $ref: '#/components/schemas/ServiceException' '481': description: InvalidParameterValueException content: application/json: schema: $ref: '#/components/schemas/InvalidParameterValueException' '482': description: ResourceNotFoundException content: application/json: schema: $ref: '#/components/schemas/ResourceNotFoundException' parameters: - name: CodeSigningConfigArn in: path required: true description: 'The The Amazon Resource Name (ARN) of the code signing configuration. ' schema: type: string pattern: arn:(aws[a-zA-Z-]*)?:lambda:[a-z]{2}((-gov)|(-iso(b?)))?-[a-z]+-\d{1}:\d{12}:code-signing-config:csc-[a-z0-9]{17} maxLength: 200 tags: - Code Signing Configs summary: Get code signing config x-summary-source: derived put: operationId: UpdateCodeSigningConfig description: Update the code signing configuration. Changes to the code signing configuration take effect the next time a user tries to deploy a code package to the function. responses: '200': description: Success content: application/json: schema: $ref: '#/components/schemas/UpdateCodeSigningConfigResponse' '480': description: ServiceException content: application/json: schema: $ref: '#/components/schemas/ServiceException' '481': description: InvalidParameterValueException content: application/json: schema: $ref: '#/components/schemas/InvalidParameterValueException' '482': description: ResourceNotFoundException content: application/json: schema: $ref: '#/components/schemas/ResourceNotFoundException' parameters: - name: CodeSigningConfigArn in: path required: true description: The The Amazon Resource Name (ARN) of the code signing configuration. schema: type: string pattern: arn:(aws[a-zA-Z-]*)?:lambda:[a-z]{2}((-gov)|(-iso(b?)))?-[a-z]+-\d{1}:\d{12}:code-signing-config:csc-[a-z0-9]{17} maxLength: 200 requestBody: required: true content: application/json: schema: type: object properties: Description: description: Descriptive name for this code signing configuration. type: string minLength: 0 maxLength: 256 AllowedPublishers: description: 'List of signing profiles that can sign a code package. ' type: object properties: SigningProfileVersionArns: allOf: - $ref: '#/components/schemas/SigningProfileVersionArns' - description: 'The Amazon Resource Name (ARN) for each of the signing profiles. A signing profile defines a trusted user who can sign a code package. ' CodeSigningPolicies: description: Code signing configuration policies specify the validation failure action for signature mismatch or expiry. type: object properties: UntrustedArtifactOnDeployment: allOf: - $ref: '#/components/schemas/CodeSigningPolicy' - description: '

Code signing configuration policy for deployment validation failure. If you set the policy to Enforce, Lambda blocks the deployment request if signature validation checks fail. If you set the policy to Warn, Lambda allows the deployment and creates a CloudWatch log.

Default value: Warn

' tags: - Code Signing Configs summary: Update code signing config x-summary-source: derived /2020-04-22/code-signing-configs/{CodeSigningConfigArn}/functions: parameters: - $ref: '#/components/parameters/X-Amz-Content-Sha256' - $ref: '#/components/parameters/X-Amz-Date' - $ref: '#/components/parameters/X-Amz-Algorithm' - $ref: '#/components/parameters/X-Amz-Credential' - $ref: '#/components/parameters/X-Amz-Security-Token' - $ref: '#/components/parameters/X-Amz-Signature' - $ref: '#/components/parameters/X-Amz-SignedHeaders' get: operationId: ListFunctionsByCodeSigningConfig description: List the functions that use the specified code signing configuration. You can use this method prior to deleting a code signing configuration, to verify that no functions are using it. responses: '200': description: Success content: application/json: schema: $ref: '#/components/schemas/ListFunctionsByCodeSigningConfigResponse' '480': description: ServiceException content: application/json: schema: $ref: '#/components/schemas/ServiceException' '481': description: InvalidParameterValueException content: application/json: schema: $ref: '#/components/schemas/InvalidParameterValueException' '482': description: ResourceNotFoundException content: application/json: schema: $ref: '#/components/schemas/ResourceNotFoundException' parameters: - name: CodeSigningConfigArn in: path required: true description: The The Amazon Resource Name (ARN) of the code signing configuration. schema: type: string pattern: arn:(aws[a-zA-Z-]*)?:lambda:[a-z]{2}((-gov)|(-iso(b?)))?-[a-z]+-\d{1}:\d{12}:code-signing-config:csc-[a-z0-9]{17} maxLength: 200 - name: Marker in: query required: false description: Specify the pagination token that's returned by a previous request to retrieve the next page of results. schema: type: string - name: MaxItems in: query required: false description: Maximum number of items to return. schema: type: integer minimum: 1 maximum: 10000 tags: - Code Signing Configs summary: List functions by code signing config x-summary-source: derived components: schemas: ServiceException: {} CodeSigningPolicies: type: object properties: UntrustedArtifactOnDeployment: allOf: - $ref: '#/components/schemas/CodeSigningPolicy' - description: '

Code signing configuration policy for deployment validation failure. If you set the policy to Enforce, Lambda blocks the deployment request if signature validation checks fail. If you set the policy to Warn, Lambda allows the deployment and creates a CloudWatch log.

Default value: Warn

' description: Code signing configuration policies specify the validation failure action for signature mismatch or expiry. AllowedPublishers: type: object required: - SigningProfileVersionArns properties: SigningProfileVersionArns: allOf: - $ref: '#/components/schemas/SigningProfileVersionArns' - description: 'The Amazon Resource Name (ARN) for each of the signing profiles. A signing profile defines a trusted user who can sign a code package. ' description: 'List of signing profiles that can sign a code package. ' GetCodeSigningConfigResponse: type: object required: - CodeSigningConfig properties: CodeSigningConfig: allOf: - $ref: '#/components/schemas/CodeSigningConfig' - description: The code signing configuration ResourceNotFoundException: {} Arn: type: string pattern: arn:(aws[a-zA-Z0-9-]*):([a-zA-Z0-9\-])+:([a-z]{2}(-gov)?-[a-z]+-\d{1})?:(\d{12})?:(.*) FunctionArnList: type: array items: $ref: '#/components/schemas/FunctionArn' InvalidParameterValueException: {} ListFunctionsByCodeSigningConfigResponse: type: object properties: NextMarker: allOf: - $ref: '#/components/schemas/String' - description: The pagination token that's included if more results are available. FunctionArns: allOf: - $ref: '#/components/schemas/FunctionArnList' - description: 'The function ARNs. ' ResourceConflictException: {} CreateCodeSigningConfigResponse: type: object required: - CodeSigningConfig properties: CodeSigningConfig: allOf: - $ref: '#/components/schemas/CodeSigningConfig' - description: The code signing configuration. CodeSigningConfigArn: type: string pattern: arn:(aws[a-zA-Z-]*)?:lambda:[a-z]{2}((-gov)|(-iso(b?)))?-[a-z]+-\d{1}:\d{12}:code-signing-config:csc-[a-z0-9]{17} maxLength: 200 Description: type: string minLength: 0 maxLength: 256 CodeSigningConfig: type: object required: - CodeSigningConfigId - CodeSigningConfigArn - AllowedPublishers - CodeSigningPolicies - LastModified properties: CodeSigningConfigId: allOf: - $ref: '#/components/schemas/CodeSigningConfigId' - description: Unique identifer for the Code signing configuration. CodeSigningConfigArn: allOf: - $ref: '#/components/schemas/CodeSigningConfigArn' - description: The Amazon Resource Name (ARN) of the Code signing configuration. Description: allOf: - $ref: '#/components/schemas/Description' - description: Code signing configuration description. AllowedPublishers: allOf: - $ref: '#/components/schemas/AllowedPublishers' - description: List of allowed publishers. CodeSigningPolicies: allOf: - $ref: '#/components/schemas/CodeSigningPolicies' - description: The code signing policy controls the validation failure action for signature mismatch or expiry. LastModified: allOf: - $ref: '#/components/schemas/Timestamp' - description: 'The date and time that the Code signing configuration was last modified, in ISO-8601 format (YYYY-MM-DDThh:mm:ss.sTZD). ' description: 'Details about a Code signing configuration. ' CodeSigningConfigId: type: string pattern: csc-[a-zA-Z0-9-_\.]{17} SigningProfileVersionArns: type: array items: $ref: '#/components/schemas/Arn' minItems: 1 maxItems: 20 UpdateCodeSigningConfigResponse: type: object required: - CodeSigningConfig properties: CodeSigningConfig: allOf: - $ref: '#/components/schemas/CodeSigningConfig' - description: The code signing configuration Timestamp: type: string CodeSigningConfigList: type: array items: $ref: '#/components/schemas/CodeSigningConfig' String: type: string DeleteCodeSigningConfigResponse: type: object properties: {} FunctionArn: type: string pattern: arn:(aws[a-zA-Z-]*)?:lambda:[a-z]{2}(-gov)?-[a-z]+-\d{1}:\d{12}:function:[a-zA-Z0-9-_]+(:(\$LATEST|[a-zA-Z0-9-_]+))? ListCodeSigningConfigsResponse: type: object properties: NextMarker: allOf: - $ref: '#/components/schemas/String' - description: The pagination token that's included if more results are available. CodeSigningConfigs: allOf: - $ref: '#/components/schemas/CodeSigningConfigList' - description: The code signing configurations CodeSigningPolicy: type: string enum: - Warn - Enforce parameters: X-Amz-Algorithm: name: X-Amz-Algorithm in: header schema: type: string required: false X-Amz-Date: name: X-Amz-Date in: header schema: type: string required: false X-Amz-Signature: name: X-Amz-Signature in: header schema: type: string required: false X-Amz-Content-Sha256: name: X-Amz-Content-Sha256 in: header schema: type: string required: false X-Amz-SignedHeaders: name: X-Amz-SignedHeaders in: header schema: type: string required: false X-Amz-Credential: name: X-Amz-Credential in: header schema: type: string required: false X-Amz-Security-Token: name: X-Amz-Security-Token in: header schema: type: string required: false securitySchemes: hmac: type: apiKey name: Authorization in: header description: Amazon Signature authorization v4 x-amazon-apigateway-authtype: awsSigv4 externalDocs: description: Amazon Web Services documentation url: https://docs.aws.amazon.com/lambda/ x-hasEquivalentPaths: true