signing_profiles
Creates, updates, deletes or gets a signing_profile resource or lists signing_profiles in a region
Overview
| Name | signing_profiles |
| Type | Resource |
| Description | A signing profile is a signing template that can be used to carry out a pre-defined signing job. |
| Id | aws.signer.signing_profiles |
Fields
| Name | Datatype | Description |
|---|---|---|
profile_name | string | A name for the signing profile. If you don't specify a name, AWS CloudFormation generates a unique physical ID and uses that ID for the signing profile name. |
profile_version | string | A version for the signing profile. AWS Signer generates a unique version for each profile of the same profile name. |
arn | string | The Amazon Resource Name (ARN) of the specified signing profile. |
profile_version_arn | string | The Amazon Resource Name (ARN) of the specified signing profile version. |
signature_validity_period | object | Signature validity period of the profile. |
platform_id | string | The ID of the target signing platform. |
tags | array | A list of tags associated with the signing profile. |
region | string | AWS region. |
For more information, see AWS::Signer::SigningProfile.
Methods
| Name | Accessible by | Required Params |
|---|---|---|
create_resource | INSERT | PlatformId, region |
delete_resource | DELETE | data__Identifier, region |
update_resource | UPDATE | data__Identifier, data__PatchDocument, region |
list_resources | SELECT | region |
get_resource | SELECT | data__Identifier, region |
SELECT examples
Gets all signing_profiles in a region.
SELECT
region,
profile_name,
profile_version,
arn,
profile_version_arn,
signature_validity_period,
platform_id,
tags
FROM aws.signer.signing_profiles
WHERE region = 'us-east-1';
Gets all properties from an individual signing_profile.
SELECT
region,
profile_name,
profile_version,
arn,
profile_version_arn,
signature_validity_period,
platform_id,
tags
FROM aws.signer.signing_profiles
WHERE region = 'us-east-1' AND data__Identifier = '<Arn>';
INSERT example
Use the following StackQL query and manifest file to create a new signing_profile resource, using stack-deploy.
- Required Properties
- All Properties
- Manifest
/*+ create */
INSERT INTO aws.signer.signing_profiles (
PlatformId,
region
)
SELECT
'{{ PlatformId }}',
'{{ region }}';
/*+ create */
INSERT INTO aws.signer.signing_profiles (
SignatureValidityPeriod,
PlatformId,
Tags,
region
)
SELECT
'{{ SignatureValidityPeriod }}',
'{{ PlatformId }}',
'{{ Tags }}',
'{{ region }}';
version: 1
name: stack name
description: stack description
providers:
- aws
globals:
- name: region
value: '{{ vars.AWS_REGION }}'
resources:
- name: signing_profile
props:
- name: SignatureValidityPeriod
value:
Value: '{{ Value }}'
Type: '{{ Type }}'
- name: PlatformId
value: '{{ PlatformId }}'
- name: Tags
value:
- Key: '{{ Key }}'
Value: '{{ Value }}'
DELETE example
/*+ delete */
DELETE FROM aws.signer.signing_profiles
WHERE data__Identifier = '<Arn>'
AND region = 'us-east-1';
Permissions
To operate on the signing_profiles resource, the following permissions are required:
Create
signer:PutSigningProfile,
signer:TagResource
Read
signer:GetSigningProfile
Delete
signer:CancelSigningProfile,
signer:GetSigningProfile
List
signer:ListSigningProfiles
Update
signer:TagResource,
signer:UntagResource,
signer:GetSigningProfile