Skip to main content

signing_profiles

Creates, updates, deletes or gets a signing_profile resource or lists signing_profiles in a region

Overview

Namesigning_profiles
TypeResource
DescriptionA signing profile is a signing template that can be used to carry out a pre-defined signing job.
Idaws.signer.signing_profiles

Fields

NameDatatypeDescription
profile_namestringA name for the signing profile. If you don't specify a name, AWS CloudFormation generates a unique physical ID and uses that ID for the signing profile name.
profile_versionstringA version for the signing profile. AWS Signer generates a unique version for each profile of the same profile name.
arnstringThe Amazon Resource Name (ARN) of the specified signing profile.
profile_version_arnstringThe Amazon Resource Name (ARN) of the specified signing profile version.
signature_validity_periodobjectSignature validity period of the profile.
platform_idstringThe ID of the target signing platform.
tagsarrayA list of tags associated with the signing profile.
regionstringAWS region.

For more information, see AWS::Signer::SigningProfile.

Methods

NameAccessible byRequired Params
create_resourceINSERTPlatformId, region
delete_resourceDELETEdata__Identifier, region
update_resourceUPDATEdata__Identifier, data__PatchDocument, region
list_resourcesSELECTregion
get_resourceSELECTdata__Identifier, region

SELECT examples

Gets all signing_profiles in a region.

SELECT
region,
profile_name,
profile_version,
arn,
profile_version_arn,
signature_validity_period,
platform_id,
tags
FROM aws.signer.signing_profiles
WHERE region = 'us-east-1';

Gets all properties from an individual signing_profile.

SELECT
region,
profile_name,
profile_version,
arn,
profile_version_arn,
signature_validity_period,
platform_id,
tags
FROM aws.signer.signing_profiles
WHERE region = 'us-east-1' AND data__Identifier = '<Arn>';

INSERT example

Use the following StackQL query and manifest file to create a new signing_profile resource, using stack-deploy.

/*+ create */
INSERT INTO aws.signer.signing_profiles (
PlatformId,
region
)
SELECT
'{{ PlatformId }}',
'{{ region }}';

DELETE example

/*+ delete */
DELETE FROM aws.signer.signing_profiles
WHERE data__Identifier = '<Arn>'
AND region = 'us-east-1';

Permissions

To operate on the signing_profiles resource, the following permissions are required:

Create

signer:PutSigningProfile,
signer:TagResource

Read

signer:GetSigningProfile

Delete

signer:CancelSigningProfile,
signer:GetSigningProfile

List

signer:ListSigningProfiles

Update

signer:TagResource,
signer:UntagResource,
signer:GetSigningProfile