@ThreadSafe @Generated(value="com.amazonaws:aws-java-sdk-code-generator") public class AmazonRoute53ResolverClient extends AmazonWebServiceClient implements AmazonRoute53Resolver
When you create a VPC using Amazon VPC, you automatically get DNS resolution within the VPC from Route 53 Resolver. By default, Resolver answers DNS queries for VPC domain names such as domain names for EC2 instances or Elastic Load Balancing load balancers. Resolver performs recursive lookups against public name servers for all other domain names.
You can also configure DNS resolution between your VPC and your network over a Direct Connect or VPN connection:
Forward DNS queries from resolvers on your network to Route 53 Resolver
DNS resolvers on your network can forward DNS queries to Resolver in a specified VPC. This allows your DNS resolvers to easily resolve domain names for Amazon Web Services resources such as EC2 instances or records in a Route 53 private hosted zone. For more information, see How DNS Resolvers on Your Network Forward DNS Queries to Route 53 Resolver in the Amazon Route 53 Developer Guide.
Conditionally forward queries from a VPC to resolvers on your network
You can configure Resolver to forward queries that it receives from EC2 instances in your VPCs to DNS resolvers on your network. To forward selected queries, you create Resolver rules that specify the domain names for the DNS queries that you want to forward (such as example.com), and the IP addresses of the DNS resolvers on your network that you want to forward the queries to. If a query matches multiple rules (example.com, acme.example.com), Resolver chooses the rule with the most specific match (acme.example.com) and forwards the query to the IP addresses that you specified in that rule. For more information, see How Route 53 Resolver Forwards DNS Queries from Your VPCs to Your Network in the Amazon Route 53 Developer Guide.
Like Amazon VPC, Resolver is Regional. In each Region where you have VPCs, you can choose whether to forward queries from your VPCs to your network (outbound queries), from your network to your VPCs (inbound queries), or both.
LOGGING_AWS_REQUEST_METRICENDPOINT_PREFIX| Modifier and Type | Method and Description |
|---|---|
AssociateFirewallRuleGroupResult |
associateFirewallRuleGroup(AssociateFirewallRuleGroupRequest request)
Associates a FirewallRuleGroup with a VPC, to provide DNS filtering for the VPC.
|
AssociateResolverEndpointIpAddressResult |
associateResolverEndpointIpAddress(AssociateResolverEndpointIpAddressRequest request)
Adds IP addresses to an inbound or an outbound Resolver endpoint.
|
AssociateResolverQueryLogConfigResult |
associateResolverQueryLogConfig(AssociateResolverQueryLogConfigRequest request)
Associates an Amazon VPC with a specified query logging configuration.
|
AssociateResolverRuleResult |
associateResolverRule(AssociateResolverRuleRequest request)
Associates a Resolver rule with a VPC.
|
static AmazonRoute53ResolverClientBuilder |
builder() |
CreateFirewallDomainListResult |
createFirewallDomainList(CreateFirewallDomainListRequest request)
Creates an empty firewall domain list for use in DNS Firewall rules.
|
CreateFirewallRuleResult |
createFirewallRule(CreateFirewallRuleRequest request)
Creates a single DNS Firewall rule in the specified rule group, using the specified domain list.
|
CreateFirewallRuleGroupResult |
createFirewallRuleGroup(CreateFirewallRuleGroupRequest request)
Creates an empty DNS Firewall rule group for filtering DNS network traffic in a VPC.
|
CreateOutpostResolverResult |
createOutpostResolver(CreateOutpostResolverRequest request)
Creates a Route 53 Resolver on an Outpost.
|
CreateResolverEndpointResult |
createResolverEndpoint(CreateResolverEndpointRequest request)
Creates a Resolver endpoint.
|
CreateResolverQueryLogConfigResult |
createResolverQueryLogConfig(CreateResolverQueryLogConfigRequest request)
Creates a Resolver query logging configuration, which defines where you want Resolver to save DNS query logs that
originate in your VPCs.
|
CreateResolverRuleResult |
createResolverRule(CreateResolverRuleRequest request)
For DNS queries that originate in your VPCs, specifies which Resolver endpoint the queries pass through, one
domain name that you want to forward to your network, and the IP addresses of the DNS resolvers in your network.
|
DeleteFirewallDomainListResult |
deleteFirewallDomainList(DeleteFirewallDomainListRequest request)
Deletes the specified domain list.
|
DeleteFirewallRuleResult |
deleteFirewallRule(DeleteFirewallRuleRequest request)
Deletes the specified firewall rule.
|
DeleteFirewallRuleGroupResult |
deleteFirewallRuleGroup(DeleteFirewallRuleGroupRequest request)
Deletes the specified firewall rule group.
|
DeleteOutpostResolverResult |
deleteOutpostResolver(DeleteOutpostResolverRequest request)
Deletes a Resolver on the Outpost.
|
DeleteResolverEndpointResult |
deleteResolverEndpoint(DeleteResolverEndpointRequest request)
Deletes a Resolver endpoint.
|
DeleteResolverQueryLogConfigResult |
deleteResolverQueryLogConfig(DeleteResolverQueryLogConfigRequest request)
Deletes a query logging configuration.
|
DeleteResolverRuleResult |
deleteResolverRule(DeleteResolverRuleRequest request)
Deletes a Resolver rule.
|
DisassociateFirewallRuleGroupResult |
disassociateFirewallRuleGroup(DisassociateFirewallRuleGroupRequest request)
Disassociates a FirewallRuleGroup from a VPC, to remove DNS filtering from the VPC.
|
DisassociateResolverEndpointIpAddressResult |
disassociateResolverEndpointIpAddress(DisassociateResolverEndpointIpAddressRequest request)
Removes IP addresses from an inbound or an outbound Resolver endpoint.
|
DisassociateResolverQueryLogConfigResult |
disassociateResolverQueryLogConfig(DisassociateResolverQueryLogConfigRequest request)
Disassociates a VPC from a query logging configuration.
|
DisassociateResolverRuleResult |
disassociateResolverRule(DisassociateResolverRuleRequest request)
Removes the association between a specified Resolver rule and a specified VPC.
|
ResponseMetadata |
getCachedResponseMetadata(AmazonWebServiceRequest request)
Returns additional metadata for a previously executed successful, request, typically used for debugging issues
where a service isn't acting as expected.
|
GetFirewallConfigResult |
getFirewallConfig(GetFirewallConfigRequest request)
Retrieves the configuration of the firewall behavior provided by DNS Firewall for a single VPC from Amazon
Virtual Private Cloud (Amazon VPC).
|
GetFirewallDomainListResult |
getFirewallDomainList(GetFirewallDomainListRequest request)
Retrieves the specified firewall domain list.
|
GetFirewallRuleGroupResult |
getFirewallRuleGroup(GetFirewallRuleGroupRequest request)
Retrieves the specified firewall rule group.
|
GetFirewallRuleGroupAssociationResult |
getFirewallRuleGroupAssociation(GetFirewallRuleGroupAssociationRequest request)
Retrieves a firewall rule group association, which enables DNS filtering for a VPC with one rule group.
|
GetFirewallRuleGroupPolicyResult |
getFirewallRuleGroupPolicy(GetFirewallRuleGroupPolicyRequest request)
Returns the Identity and Access Management (Amazon Web Services IAM) policy for sharing the specified rule group.
|
GetOutpostResolverResult |
getOutpostResolver(GetOutpostResolverRequest request)
Gets information about a specified Resolver on the Outpost, such as its instance count and type, name, and the
current status of the Resolver.
|
GetResolverConfigResult |
getResolverConfig(GetResolverConfigRequest request)
Retrieves the behavior configuration of Route 53 Resolver behavior for a single VPC from Amazon Virtual Private
Cloud.
|
GetResolverDnssecConfigResult |
getResolverDnssecConfig(GetResolverDnssecConfigRequest request)
Gets DNSSEC validation information for a specified resource.
|
GetResolverEndpointResult |
getResolverEndpoint(GetResolverEndpointRequest request)
Gets information about a specified Resolver endpoint, such as whether it's an inbound or an outbound Resolver
endpoint, and the current status of the endpoint.
|
GetResolverQueryLogConfigResult |
getResolverQueryLogConfig(GetResolverQueryLogConfigRequest request)
Gets information about a specified Resolver query logging configuration, such as the number of VPCs that the
configuration is logging queries for and the location that logs are sent to.
|
GetResolverQueryLogConfigAssociationResult |
getResolverQueryLogConfigAssociation(GetResolverQueryLogConfigAssociationRequest request)
Gets information about a specified association between a Resolver query logging configuration and an Amazon VPC.
|
GetResolverQueryLogConfigPolicyResult |
getResolverQueryLogConfigPolicy(GetResolverQueryLogConfigPolicyRequest request)
Gets information about a query logging policy.
|
GetResolverRuleResult |
getResolverRule(GetResolverRuleRequest request)
Gets information about a specified Resolver rule, such as the domain name that the rule forwards DNS queries for
and the ID of the outbound Resolver endpoint that the rule is associated with.
|
GetResolverRuleAssociationResult |
getResolverRuleAssociation(GetResolverRuleAssociationRequest request)
Gets information about an association between a specified Resolver rule and a VPC.
|
GetResolverRulePolicyResult |
getResolverRulePolicy(GetResolverRulePolicyRequest request)
Gets information about the Resolver rule policy for a specified rule.
|
ImportFirewallDomainsResult |
importFirewallDomains(ImportFirewallDomainsRequest request)
Imports domain names from a file into a domain list, for use in a DNS firewall rule group.
|
ListFirewallConfigsResult |
listFirewallConfigs(ListFirewallConfigsRequest request)
Retrieves the firewall configurations that you have defined.
|
ListFirewallDomainListsResult |
listFirewallDomainLists(ListFirewallDomainListsRequest request)
Retrieves the firewall domain lists that you have defined.
|
ListFirewallDomainsResult |
listFirewallDomains(ListFirewallDomainsRequest request)
Retrieves the domains that you have defined for the specified firewall domain list.
|
ListFirewallRuleGroupAssociationsResult |
listFirewallRuleGroupAssociations(ListFirewallRuleGroupAssociationsRequest request)
Retrieves the firewall rule group associations that you have defined.
|
ListFirewallRuleGroupsResult |
listFirewallRuleGroups(ListFirewallRuleGroupsRequest request)
Retrieves the minimal high-level information for the rule groups that you have defined.
|
ListFirewallRulesResult |
listFirewallRules(ListFirewallRulesRequest request)
Retrieves the firewall rules that you have defined for the specified firewall rule group.
|
ListOutpostResolversResult |
listOutpostResolvers(ListOutpostResolversRequest request)
Lists all the Resolvers on Outposts that were created using the current Amazon Web Services account.
|
ListResolverConfigsResult |
listResolverConfigs(ListResolverConfigsRequest request)
Retrieves the Resolver configurations that you have defined.
|
ListResolverDnssecConfigsResult |
listResolverDnssecConfigs(ListResolverDnssecConfigsRequest request)
Lists the configurations for DNSSEC validation that are associated with the current Amazon Web Services account.
|
ListResolverEndpointIpAddressesResult |
listResolverEndpointIpAddresses(ListResolverEndpointIpAddressesRequest request)
Gets the IP addresses for a specified Resolver endpoint.
|
ListResolverEndpointsResult |
listResolverEndpoints(ListResolverEndpointsRequest request)
Lists all the Resolver endpoints that were created using the current Amazon Web Services account.
|
ListResolverQueryLogConfigAssociationsResult |
listResolverQueryLogConfigAssociations(ListResolverQueryLogConfigAssociationsRequest request)
Lists information about associations between Amazon VPCs and query logging configurations.
|
ListResolverQueryLogConfigsResult |
listResolverQueryLogConfigs(ListResolverQueryLogConfigsRequest request)
Lists information about the specified query logging configurations.
|
ListResolverRuleAssociationsResult |
listResolverRuleAssociations(ListResolverRuleAssociationsRequest request)
Lists the associations that were created between Resolver rules and VPCs using the current Amazon Web Services
account.
|
ListResolverRulesResult |
listResolverRules(ListResolverRulesRequest request)
Lists the Resolver rules that were created using the current Amazon Web Services account.
|
ListTagsForResourceResult |
listTagsForResource(ListTagsForResourceRequest request)
Lists the tags that you associated with the specified resource.
|
PutFirewallRuleGroupPolicyResult |
putFirewallRuleGroupPolicy(PutFirewallRuleGroupPolicyRequest request)
Attaches an Identity and Access Management (Amazon Web Services IAM) policy for sharing the rule group.
|
PutResolverQueryLogConfigPolicyResult |
putResolverQueryLogConfigPolicy(PutResolverQueryLogConfigPolicyRequest request)
Specifies an Amazon Web Services account that you want to share a query logging configuration with, the query
logging configuration that you want to share, and the operations that you want the account to be able to perform
on the configuration.
|
PutResolverRulePolicyResult |
putResolverRulePolicy(PutResolverRulePolicyRequest request)
Specifies an Amazon Web Services rule that you want to share with another account, the account that you want to
share the rule with, and the operations that you want the account to be able to perform on the rule.
|
void |
shutdown()
Shuts down this client object, releasing any resources that might be held
open.
|
TagResourceResult |
tagResource(TagResourceRequest request)
Adds one or more tags to a specified resource.
|
UntagResourceResult |
untagResource(UntagResourceRequest request)
Removes one or more tags from a specified resource.
|
UpdateFirewallConfigResult |
updateFirewallConfig(UpdateFirewallConfigRequest request)
Updates the configuration of the firewall behavior provided by DNS Firewall for a single VPC from Amazon Virtual
Private Cloud (Amazon VPC).
|
UpdateFirewallDomainsResult |
updateFirewallDomains(UpdateFirewallDomainsRequest request)
Updates the firewall domain list from an array of domain specifications.
|
UpdateFirewallRuleResult |
updateFirewallRule(UpdateFirewallRuleRequest request)
Updates the specified firewall rule.
|
UpdateFirewallRuleGroupAssociationResult |
updateFirewallRuleGroupAssociation(UpdateFirewallRuleGroupAssociationRequest request)
Changes the association of a FirewallRuleGroup with a VPC.
|
UpdateOutpostResolverResult |
updateOutpostResolver(UpdateOutpostResolverRequest request)
You can use
UpdateOutpostResolver to update the instance count, type, or name of a Resolver on an
Outpost. |
UpdateResolverConfigResult |
updateResolverConfig(UpdateResolverConfigRequest request)
Updates the behavior configuration of Route 53 Resolver behavior for a single VPC from Amazon Virtual Private
Cloud.
|
UpdateResolverDnssecConfigResult |
updateResolverDnssecConfig(UpdateResolverDnssecConfigRequest request)
Updates an existing DNSSEC validation configuration.
|
UpdateResolverEndpointResult |
updateResolverEndpoint(UpdateResolverEndpointRequest request)
Updates the name, or endpoint type for an inbound or an outbound Resolver endpoint.
|
UpdateResolverRuleResult |
updateResolverRule(UpdateResolverRuleRequest request)
Updates settings for a specified Resolver rule.
|
addRequestHandler, addRequestHandler, configureRegion, getClientConfiguration, getEndpointPrefix, getMonitoringListeners, getRequestMetricsCollector, getServiceName, getSignerByURI, getSignerOverride, getSignerRegionOverride, getTimeOffset, makeImmutable, removeRequestHandler, removeRequestHandler, setEndpoint, setEndpoint, setRegion, setServiceNameIntern, setSignerRegionOverride, setTimeOffset, withEndpoint, withRegion, withRegion, withTimeOffsetpublic static AmazonRoute53ResolverClientBuilder builder()
public AssociateFirewallRuleGroupResult associateFirewallRuleGroup(AssociateFirewallRuleGroupRequest request)
Associates a FirewallRuleGroup with a VPC, to provide DNS filtering for the VPC.
associateFirewallRuleGroup in interface AmazonRoute53ResolverassociateFirewallRuleGroupRequest - ResourceNotFoundException - The specified resource doesn't exist.ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.LimitExceededException - The request caused one or more limits to be exceeded.ConflictException - The requested state transition isn't valid. For example, you can't delete a firewall domain list if it is
in the process of being deleted, or you can't import domains into a domain list that is in the process of
being deleted.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public AssociateResolverEndpointIpAddressResult associateResolverEndpointIpAddress(AssociateResolverEndpointIpAddressRequest request)
Adds IP addresses to an inbound or an outbound Resolver endpoint. If you want to add more than one IP address,
submit one AssociateResolverEndpointIpAddress request for each IP address.
To remove an IP address from an endpoint, see DisassociateResolverEndpointIpAddress.
associateResolverEndpointIpAddress in interface AmazonRoute53ResolverassociateResolverEndpointIpAddressRequest - ResourceNotFoundException - The specified resource doesn't exist.InvalidParameterException - One or more parameters in this request are not valid.InvalidRequestException - The request is invalid.ResourceExistsException - The resource that you tried to create already exists.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.LimitExceededException - The request caused one or more limits to be exceeded.ThrottlingException - The request was throttled. Try again in a few minutes.public AssociateResolverQueryLogConfigResult associateResolverQueryLogConfig(AssociateResolverQueryLogConfigRequest request)
Associates an Amazon VPC with a specified query logging configuration. Route 53 Resolver logs DNS queries that
originate in all of the Amazon VPCs that are associated with a specified query logging configuration. To
associate more than one VPC with a configuration, submit one AssociateResolverQueryLogConfig request
for each VPC.
The VPCs that you associate with a query logging configuration must be in the same Region as the configuration.
To remove a VPC from a query logging configuration, see DisassociateResolverQueryLogConfig.
associateResolverQueryLogConfig in interface AmazonRoute53ResolverassociateResolverQueryLogConfigRequest - InvalidParameterException - One or more parameters in this request are not valid.ResourceNotFoundException - The specified resource doesn't exist.InvalidRequestException - The request is invalid.ResourceExistsException - The resource that you tried to create already exists.LimitExceededException - The request caused one or more limits to be exceeded.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
public AssociateResolverRuleResult associateResolverRule(AssociateResolverRuleRequest request)
Associates a Resolver rule with a VPC. When you associate a rule with a VPC, Resolver forwards all DNS queries for the domain name that is specified in the rule and that originate in the VPC. The queries are forwarded to the IP addresses for the DNS resolvers that are specified in the rule. For more information about rules, see CreateResolverRule.
associateResolverRule in interface AmazonRoute53ResolverassociateResolverRuleRequest - ResourceNotFoundException - The specified resource doesn't exist.InvalidRequestException - The request is invalid.LimitExceededException - The request caused one or more limits to be exceeded.InvalidParameterException - One or more parameters in this request are not valid.ResourceUnavailableException - The specified resource isn't available.ResourceExistsException - The resource that you tried to create already exists.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public CreateFirewallDomainListResult createFirewallDomainList(CreateFirewallDomainListRequest request)
Creates an empty firewall domain list for use in DNS Firewall rules. You can populate the domains for the new list with a file, using ImportFirewallDomains, or with domain strings, using UpdateFirewallDomains.
createFirewallDomainList in interface AmazonRoute53ResolvercreateFirewallDomainListRequest - LimitExceededException - The request caused one or more limits to be exceeded.ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public CreateFirewallRuleResult createFirewallRule(CreateFirewallRuleRequest request)
Creates a single DNS Firewall rule in the specified rule group, using the specified domain list.
createFirewallRule in interface AmazonRoute53ResolvercreateFirewallRuleRequest - ResourceNotFoundException - The specified resource doesn't exist.ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.LimitExceededException - The request caused one or more limits to be exceeded.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public CreateFirewallRuleGroupResult createFirewallRuleGroup(CreateFirewallRuleGroupRequest request)
Creates an empty DNS Firewall rule group for filtering DNS network traffic in a VPC. You can add rules to the new rule group by calling CreateFirewallRule.
createFirewallRuleGroup in interface AmazonRoute53ResolvercreateFirewallRuleGroupRequest - LimitExceededException - The request caused one or more limits to be exceeded.ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public CreateOutpostResolverResult createOutpostResolver(CreateOutpostResolverRequest request)
Creates a Route 53 Resolver on an Outpost.
createOutpostResolver in interface AmazonRoute53ResolvercreateOutpostResolverRequest - AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ResourceNotFoundException - The specified resource doesn't exist.ServiceQuotaExceededException - Fulfilling the request would cause one or more quotas to be exceeded.ThrottlingException - The request was throttled. Try again in a few minutes.ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.public CreateResolverEndpointResult createResolverEndpoint(CreateResolverEndpointRequest request)
Creates a Resolver endpoint. There are two types of Resolver endpoints, inbound and outbound:
An inbound Resolver endpoint forwards DNS queries to the DNS service for a VPC from your network.
An outbound Resolver endpoint forwards DNS queries from the DNS service for a VPC to your network.
createResolverEndpoint in interface AmazonRoute53ResolvercreateResolverEndpointRequest - InvalidParameterException - One or more parameters in this request are not valid.ResourceNotFoundException - The specified resource doesn't exist.InvalidRequestException - The request is invalid.ResourceExistsException - The resource that you tried to create already exists.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
LimitExceededException - The request caused one or more limits to be exceeded.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public CreateResolverQueryLogConfigResult createResolverQueryLogConfig(CreateResolverQueryLogConfigRequest request)
Creates a Resolver query logging configuration, which defines where you want Resolver to save DNS query logs that originate in your VPCs. Resolver can log queries only for VPCs that are in the same Region as the query logging configuration.
To specify which VPCs you want to log queries for, you use AssociateResolverQueryLogConfig. For more
information, see AssociateResolverQueryLogConfig.
You can optionally use Resource Access Manager (RAM) to share a query logging configuration with other Amazon Web Services accounts. The other accounts can then associate VPCs with the configuration. The query logs that Resolver creates for a configuration include all DNS queries that originate in all VPCs that are associated with the configuration.
createResolverQueryLogConfig in interface AmazonRoute53ResolvercreateResolverQueryLogConfigRequest - InvalidParameterException - One or more parameters in this request are not valid.ResourceNotFoundException - The specified resource doesn't exist.InvalidRequestException - The request is invalid.ResourceExistsException - The resource that you tried to create already exists.LimitExceededException - The request caused one or more limits to be exceeded.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
public CreateResolverRuleResult createResolverRule(CreateResolverRuleRequest request)
For DNS queries that originate in your VPCs, specifies which Resolver endpoint the queries pass through, one domain name that you want to forward to your network, and the IP addresses of the DNS resolvers in your network.
createResolverRule in interface AmazonRoute53ResolvercreateResolverRuleRequest - InvalidParameterException - One or more parameters in this request are not valid.InvalidRequestException - The request is invalid.LimitExceededException - The request caused one or more limits to be exceeded.ResourceNotFoundException - The specified resource doesn't exist.ResourceExistsException - The resource that you tried to create already exists.ResourceUnavailableException - The specified resource isn't available.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
ThrottlingException - The request was throttled. Try again in a few minutes.public DeleteFirewallDomainListResult deleteFirewallDomainList(DeleteFirewallDomainListRequest request)
Deletes the specified domain list.
deleteFirewallDomainList in interface AmazonRoute53ResolverdeleteFirewallDomainListRequest - ResourceNotFoundException - The specified resource doesn't exist.ConflictException - The requested state transition isn't valid. For example, you can't delete a firewall domain list if it is
in the process of being deleted, or you can't import domains into a domain list that is in the process of
being deleted.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public DeleteFirewallRuleResult deleteFirewallRule(DeleteFirewallRuleRequest request)
Deletes the specified firewall rule.
deleteFirewallRule in interface AmazonRoute53ResolverdeleteFirewallRuleRequest - ResourceNotFoundException - The specified resource doesn't exist.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public DeleteFirewallRuleGroupResult deleteFirewallRuleGroup(DeleteFirewallRuleGroupRequest request)
Deletes the specified firewall rule group.
deleteFirewallRuleGroup in interface AmazonRoute53ResolverdeleteFirewallRuleGroupRequest - ResourceNotFoundException - The specified resource doesn't exist.ConflictException - The requested state transition isn't valid. For example, you can't delete a firewall domain list if it is
in the process of being deleted, or you can't import domains into a domain list that is in the process of
being deleted.ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public DeleteOutpostResolverResult deleteOutpostResolver(DeleteOutpostResolverRequest request)
Deletes a Resolver on the Outpost.
deleteOutpostResolver in interface AmazonRoute53ResolverdeleteOutpostResolverRequest - AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
ConflictException - The requested state transition isn't valid. For example, you can't delete a firewall domain list if it is
in the process of being deleted, or you can't import domains into a domain list that is in the process of
being deleted.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ResourceNotFoundException - The specified resource doesn't exist.ThrottlingException - The request was throttled. Try again in a few minutes.ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.public DeleteResolverEndpointResult deleteResolverEndpoint(DeleteResolverEndpointRequest request)
Deletes a Resolver endpoint. The effect of deleting a Resolver endpoint depends on whether it's an inbound or an outbound Resolver endpoint:
Inbound: DNS queries from your network are no longer routed to the DNS service for the specified VPC.
Outbound: DNS queries from a VPC are no longer routed to your network.
deleteResolverEndpoint in interface AmazonRoute53ResolverdeleteResolverEndpointRequest - ResourceNotFoundException - The specified resource doesn't exist.InvalidParameterException - One or more parameters in this request are not valid.InvalidRequestException - The request is invalid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public DeleteResolverQueryLogConfigResult deleteResolverQueryLogConfig(DeleteResolverQueryLogConfigRequest request)
Deletes a query logging configuration. When you delete a configuration, Resolver stops logging DNS queries for all of the Amazon VPCs that are associated with the configuration. This also applies if the query logging configuration is shared with other Amazon Web Services accounts, and the other accounts have associated VPCs with the shared configuration.
Before you can delete a query logging configuration, you must first disassociate all VPCs from the configuration. See DisassociateResolverQueryLogConfig.
If you used Resource Access Manager (RAM) to share a query logging configuration with other accounts, you must stop sharing the configuration before you can delete a configuration. The accounts that you shared the configuration with can first disassociate VPCs that they associated with the configuration, but that's not necessary. If you stop sharing the configuration, those VPCs are automatically disassociated from the configuration.
deleteResolverQueryLogConfig in interface AmazonRoute53ResolverdeleteResolverQueryLogConfigRequest - ResourceNotFoundException - The specified resource doesn't exist.InvalidParameterException - One or more parameters in this request are not valid.InvalidRequestException - The request is invalid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
public DeleteResolverRuleResult deleteResolverRule(DeleteResolverRuleRequest request)
Deletes a Resolver rule. Before you can delete a Resolver rule, you must disassociate it from all the VPCs that you associated the Resolver rule with. For more information, see DisassociateResolverRule.
deleteResolverRule in interface AmazonRoute53ResolverdeleteResolverRuleRequest - InvalidParameterException - One or more parameters in this request are not valid.ResourceNotFoundException - The specified resource doesn't exist.ResourceInUseException - The resource that you tried to update or delete is currently in use.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public DisassociateFirewallRuleGroupResult disassociateFirewallRuleGroup(DisassociateFirewallRuleGroupRequest request)
Disassociates a FirewallRuleGroup from a VPC, to remove DNS filtering from the VPC.
disassociateFirewallRuleGroup in interface AmazonRoute53ResolverdisassociateFirewallRuleGroupRequest - ResourceNotFoundException - The specified resource doesn't exist.ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
ConflictException - The requested state transition isn't valid. For example, you can't delete a firewall domain list if it is
in the process of being deleted, or you can't import domains into a domain list that is in the process of
being deleted.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public DisassociateResolverEndpointIpAddressResult disassociateResolverEndpointIpAddress(DisassociateResolverEndpointIpAddressRequest request)
Removes IP addresses from an inbound or an outbound Resolver endpoint. If you want to remove more than one IP
address, submit one DisassociateResolverEndpointIpAddress request for each IP address.
To add an IP address to an endpoint, see AssociateResolverEndpointIpAddress.
disassociateResolverEndpointIpAddress in interface AmazonRoute53ResolverdisassociateResolverEndpointIpAddressRequest - ResourceNotFoundException - The specified resource doesn't exist.InvalidParameterException - One or more parameters in this request are not valid.InvalidRequestException - The request is invalid.ResourceExistsException - The resource that you tried to create already exists.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public DisassociateResolverQueryLogConfigResult disassociateResolverQueryLogConfig(DisassociateResolverQueryLogConfigRequest request)
Disassociates a VPC from a query logging configuration.
Before you can delete a query logging configuration, you must first disassociate all VPCs from the configuration. If you used Resource Access Manager (RAM) to share a query logging configuration with other accounts, VPCs can be disassociated from the configuration in the following ways:
The accounts that you shared the configuration with can disassociate VPCs from the configuration.
You can stop sharing the configuration.
disassociateResolverQueryLogConfig in interface AmazonRoute53ResolverdisassociateResolverQueryLogConfigRequest - ResourceNotFoundException - The specified resource doesn't exist.InvalidParameterException - One or more parameters in this request are not valid.InvalidRequestException - The request is invalid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
public DisassociateResolverRuleResult disassociateResolverRule(DisassociateResolverRuleRequest request)
Removes the association between a specified Resolver rule and a specified VPC.
If you disassociate a Resolver rule from a VPC, Resolver stops forwarding DNS queries for the domain name that you specified in the Resolver rule.
disassociateResolverRule in interface AmazonRoute53ResolverdisassociateResolverRuleRequest - ResourceNotFoundException - The specified resource doesn't exist.InvalidParameterException - One or more parameters in this request are not valid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public GetFirewallConfigResult getFirewallConfig(GetFirewallConfigRequest request)
Retrieves the configuration of the firewall behavior provided by DNS Firewall for a single VPC from Amazon Virtual Private Cloud (Amazon VPC).
getFirewallConfig in interface AmazonRoute53ResolvergetFirewallConfigRequest - ResourceNotFoundException - The specified resource doesn't exist.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.public GetFirewallDomainListResult getFirewallDomainList(GetFirewallDomainListRequest request)
Retrieves the specified firewall domain list.
getFirewallDomainList in interface AmazonRoute53ResolvergetFirewallDomainListRequest - ResourceNotFoundException - The specified resource doesn't exist.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public GetFirewallRuleGroupResult getFirewallRuleGroup(GetFirewallRuleGroupRequest request)
Retrieves the specified firewall rule group.
getFirewallRuleGroup in interface AmazonRoute53ResolvergetFirewallRuleGroupRequest - ResourceNotFoundException - The specified resource doesn't exist.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public GetFirewallRuleGroupAssociationResult getFirewallRuleGroupAssociation(GetFirewallRuleGroupAssociationRequest request)
Retrieves a firewall rule group association, which enables DNS filtering for a VPC with one rule group. A VPC can have more than one firewall rule group association, and a rule group can be associated with more than one VPC.
getFirewallRuleGroupAssociation in interface AmazonRoute53ResolvergetFirewallRuleGroupAssociationRequest - ResourceNotFoundException - The specified resource doesn't exist.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public GetFirewallRuleGroupPolicyResult getFirewallRuleGroupPolicy(GetFirewallRuleGroupPolicyRequest request)
Returns the Identity and Access Management (Amazon Web Services IAM) policy for sharing the specified rule group. You can use the policy to share the rule group using Resource Access Manager (RAM).
getFirewallRuleGroupPolicy in interface AmazonRoute53ResolvergetFirewallRuleGroupPolicyRequest - ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.ResourceNotFoundException - The specified resource doesn't exist.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public GetOutpostResolverResult getOutpostResolver(GetOutpostResolverRequest request)
Gets information about a specified Resolver on the Outpost, such as its instance count and type, name, and the current status of the Resolver.
getOutpostResolver in interface AmazonRoute53ResolvergetOutpostResolverRequest - AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ResourceNotFoundException - The specified resource doesn't exist.ThrottlingException - The request was throttled. Try again in a few minutes.ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.public GetResolverConfigResult getResolverConfig(GetResolverConfigRequest request)
Retrieves the behavior configuration of Route 53 Resolver behavior for a single VPC from Amazon Virtual Private Cloud.
getResolverConfig in interface AmazonRoute53ResolvergetResolverConfigRequest - ResourceNotFoundException - The specified resource doesn't exist.InvalidParameterException - One or more parameters in this request are not valid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.public GetResolverDnssecConfigResult getResolverDnssecConfig(GetResolverDnssecConfigRequest request)
Gets DNSSEC validation information for a specified resource.
getResolverDnssecConfig in interface AmazonRoute53ResolvergetResolverDnssecConfigRequest - InvalidParameterException - One or more parameters in this request are not valid.ResourceNotFoundException - The specified resource doesn't exist.InvalidRequestException - The request is invalid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
public GetResolverEndpointResult getResolverEndpoint(GetResolverEndpointRequest request)
Gets information about a specified Resolver endpoint, such as whether it's an inbound or an outbound Resolver endpoint, and the current status of the endpoint.
getResolverEndpoint in interface AmazonRoute53ResolvergetResolverEndpointRequest - ResourceNotFoundException - The specified resource doesn't exist.InvalidParameterException - One or more parameters in this request are not valid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public GetResolverQueryLogConfigResult getResolverQueryLogConfig(GetResolverQueryLogConfigRequest request)
Gets information about a specified Resolver query logging configuration, such as the number of VPCs that the configuration is logging queries for and the location that logs are sent to.
getResolverQueryLogConfig in interface AmazonRoute53ResolvergetResolverQueryLogConfigRequest - ResourceNotFoundException - The specified resource doesn't exist.InvalidRequestException - The request is invalid.InvalidParameterException - One or more parameters in this request are not valid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
public GetResolverQueryLogConfigAssociationResult getResolverQueryLogConfigAssociation(GetResolverQueryLogConfigAssociationRequest request)
Gets information about a specified association between a Resolver query logging configuration and an Amazon VPC. When you associate a VPC with a query logging configuration, Resolver logs DNS queries that originate in that VPC.
getResolverQueryLogConfigAssociation in interface AmazonRoute53ResolvergetResolverQueryLogConfigAssociationRequest - ResourceNotFoundException - The specified resource doesn't exist.InvalidRequestException - The request is invalid.InvalidParameterException - One or more parameters in this request are not valid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
public GetResolverQueryLogConfigPolicyResult getResolverQueryLogConfigPolicy(GetResolverQueryLogConfigPolicyRequest request)
Gets information about a query logging policy. A query logging policy specifies the Resolver query logging operations and resources that you want to allow another Amazon Web Services account to be able to use.
getResolverQueryLogConfigPolicy in interface AmazonRoute53ResolvergetResolverQueryLogConfigPolicyRequest - InvalidParameterException - One or more parameters in this request are not valid.InvalidRequestException - The request is invalid.UnknownResourceException - The specified resource doesn't exist.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
public GetResolverRuleResult getResolverRule(GetResolverRuleRequest request)
Gets information about a specified Resolver rule, such as the domain name that the rule forwards DNS queries for and the ID of the outbound Resolver endpoint that the rule is associated with.
getResolverRule in interface AmazonRoute53ResolvergetResolverRuleRequest - ResourceNotFoundException - The specified resource doesn't exist.InvalidParameterException - One or more parameters in this request are not valid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public GetResolverRuleAssociationResult getResolverRuleAssociation(GetResolverRuleAssociationRequest request)
Gets information about an association between a specified Resolver rule and a VPC. You associate a Resolver rule and a VPC using AssociateResolverRule.
getResolverRuleAssociation in interface AmazonRoute53ResolvergetResolverRuleAssociationRequest - ResourceNotFoundException - The specified resource doesn't exist.InvalidParameterException - One or more parameters in this request are not valid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public GetResolverRulePolicyResult getResolverRulePolicy(GetResolverRulePolicyRequest request)
Gets information about the Resolver rule policy for a specified rule. A Resolver rule policy includes the rule that you want to share with another account, the account that you want to share the rule with, and the Resolver operations that you want to allow the account to use.
getResolverRulePolicy in interface AmazonRoute53ResolvergetResolverRulePolicyRequest - InvalidParameterException - One or more parameters in this request are not valid.UnknownResourceException - The specified resource doesn't exist.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
public ImportFirewallDomainsResult importFirewallDomains(ImportFirewallDomainsRequest request)
Imports domain names from a file into a domain list, for use in a DNS firewall rule group.
Each domain specification in your domain list must satisfy the following requirements:
It can optionally start with * (asterisk).
With the exception of the optional starting asterisk, it must only contain the following characters:
A-Z, a-z, 0-9, - (hyphen).
It must be from 1-255 characters in length.
importFirewallDomains in interface AmazonRoute53ResolverimportFirewallDomainsRequest - ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
ResourceNotFoundException - The specified resource doesn't exist.LimitExceededException - The request caused one or more limits to be exceeded.ConflictException - The requested state transition isn't valid. For example, you can't delete a firewall domain list if it is
in the process of being deleted, or you can't import domains into a domain list that is in the process of
being deleted.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public ListFirewallConfigsResult listFirewallConfigs(ListFirewallConfigsRequest request)
Retrieves the firewall configurations that you have defined. DNS Firewall uses the configurations to manage firewall behavior for your VPCs.
A single call might return only a partial list of the configurations. For information, see
MaxResults.
listFirewallConfigs in interface AmazonRoute53ResolverlistFirewallConfigsRequest - ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public ListFirewallDomainListsResult listFirewallDomainLists(ListFirewallDomainListsRequest request)
Retrieves the firewall domain lists that you have defined. For each firewall domain list, you can retrieve the domains that are defined for a list by calling ListFirewallDomains.
A single call to this list operation might return only a partial list of the domain lists. For information, see
MaxResults.
listFirewallDomainLists in interface AmazonRoute53ResolverlistFirewallDomainListsRequest - ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public ListFirewallDomainsResult listFirewallDomains(ListFirewallDomainsRequest request)
Retrieves the domains that you have defined for the specified firewall domain list.
A single call might return only a partial list of the domains. For information, see MaxResults.
listFirewallDomains in interface AmazonRoute53ResolverlistFirewallDomainsRequest - ResourceNotFoundException - The specified resource doesn't exist.ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public ListFirewallRuleGroupAssociationsResult listFirewallRuleGroupAssociations(ListFirewallRuleGroupAssociationsRequest request)
Retrieves the firewall rule group associations that you have defined. Each association enables DNS filtering for a VPC with one rule group.
A single call might return only a partial list of the associations. For information, see MaxResults.
listFirewallRuleGroupAssociations in interface AmazonRoute53ResolverlistFirewallRuleGroupAssociationsRequest - ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public ListFirewallRuleGroupsResult listFirewallRuleGroups(ListFirewallRuleGroupsRequest request)
Retrieves the minimal high-level information for the rule groups that you have defined.
A single call might return only a partial list of the rule groups. For information, see MaxResults.
listFirewallRuleGroups in interface AmazonRoute53ResolverlistFirewallRuleGroupsRequest - ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public ListFirewallRulesResult listFirewallRules(ListFirewallRulesRequest request)
Retrieves the firewall rules that you have defined for the specified firewall rule group. DNS Firewall uses the rules in a rule group to filter DNS network traffic for a VPC.
A single call might return only a partial list of the rules. For information, see MaxResults.
listFirewallRules in interface AmazonRoute53ResolverlistFirewallRulesRequest - ResourceNotFoundException - The specified resource doesn't exist.ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public ListOutpostResolversResult listOutpostResolvers(ListOutpostResolversRequest request)
Lists all the Resolvers on Outposts that were created using the current Amazon Web Services account.
listOutpostResolvers in interface AmazonRoute53ResolverlistOutpostResolversRequest - AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ResourceNotFoundException - The specified resource doesn't exist.ThrottlingException - The request was throttled. Try again in a few minutes.ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.public ListResolverConfigsResult listResolverConfigs(ListResolverConfigsRequest request)
Retrieves the Resolver configurations that you have defined. Route 53 Resolver uses the configurations to manage DNS resolution behavior for your VPCs.
listResolverConfigs in interface AmazonRoute53ResolverlistResolverConfigsRequest - InvalidNextTokenException - The value that you specified for NextToken in a List request isn't valid.InvalidRequestException - The request is invalid.InvalidParameterException - One or more parameters in this request are not valid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.public ListResolverDnssecConfigsResult listResolverDnssecConfigs(ListResolverDnssecConfigsRequest request)
Lists the configurations for DNSSEC validation that are associated with the current Amazon Web Services account.
listResolverDnssecConfigs in interface AmazonRoute53ResolverlistResolverDnssecConfigsRequest - InvalidNextTokenException - The value that you specified for NextToken in a List request isn't valid.InvalidParameterException - One or more parameters in this request are not valid.InvalidRequestException - The request is invalid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
public ListResolverEndpointIpAddressesResult listResolverEndpointIpAddresses(ListResolverEndpointIpAddressesRequest request)
Gets the IP addresses for a specified Resolver endpoint.
listResolverEndpointIpAddresses in interface AmazonRoute53ResolverlistResolverEndpointIpAddressesRequest - ResourceNotFoundException - The specified resource doesn't exist.InvalidParameterException - One or more parameters in this request are not valid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.InvalidNextTokenException - The value that you specified for NextToken in a List request isn't valid.ThrottlingException - The request was throttled. Try again in a few minutes.public ListResolverEndpointsResult listResolverEndpoints(ListResolverEndpointsRequest request)
Lists all the Resolver endpoints that were created using the current Amazon Web Services account.
listResolverEndpoints in interface AmazonRoute53ResolverlistResolverEndpointsRequest - InvalidNextTokenException - The value that you specified for NextToken in a List request isn't valid.InvalidRequestException - The request is invalid.InvalidParameterException - One or more parameters in this request are not valid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public ListResolverQueryLogConfigAssociationsResult listResolverQueryLogConfigAssociations(ListResolverQueryLogConfigAssociationsRequest request)
Lists information about associations between Amazon VPCs and query logging configurations.
listResolverQueryLogConfigAssociations in interface AmazonRoute53ResolverlistResolverQueryLogConfigAssociationsRequest - InvalidParameterException - One or more parameters in this request are not valid.InvalidRequestException - The request is invalid.LimitExceededException - The request caused one or more limits to be exceeded.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
public ListResolverQueryLogConfigsResult listResolverQueryLogConfigs(ListResolverQueryLogConfigsRequest request)
Lists information about the specified query logging configurations. Each configuration defines where you want Resolver to save DNS query logs and specifies the VPCs that you want to log queries for.
listResolverQueryLogConfigs in interface AmazonRoute53ResolverlistResolverQueryLogConfigsRequest - InvalidNextTokenException - The value that you specified for NextToken in a List request isn't valid.InvalidRequestException - The request is invalid.InvalidParameterException - One or more parameters in this request are not valid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
public ListResolverRuleAssociationsResult listResolverRuleAssociations(ListResolverRuleAssociationsRequest request)
Lists the associations that were created between Resolver rules and VPCs using the current Amazon Web Services account.
listResolverRuleAssociations in interface AmazonRoute53ResolverlistResolverRuleAssociationsRequest - InvalidNextTokenException - The value that you specified for NextToken in a List request isn't valid.InvalidRequestException - The request is invalid.InvalidParameterException - One or more parameters in this request are not valid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public ListResolverRulesResult listResolverRules(ListResolverRulesRequest request)
Lists the Resolver rules that were created using the current Amazon Web Services account.
listResolverRules in interface AmazonRoute53ResolverlistResolverRulesRequest - InvalidNextTokenException - The value that you specified for NextToken in a List request isn't valid.InvalidRequestException - The request is invalid.InvalidParameterException - One or more parameters in this request are not valid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public ListTagsForResourceResult listTagsForResource(ListTagsForResourceRequest request)
Lists the tags that you associated with the specified resource.
listTagsForResource in interface AmazonRoute53ResolverlistTagsForResourceRequest - ResourceNotFoundException - The specified resource doesn't exist.InvalidParameterException - One or more parameters in this request are not valid.InvalidNextTokenException - The value that you specified for NextToken in a List request isn't valid.InvalidRequestException - The request is invalid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public PutFirewallRuleGroupPolicyResult putFirewallRuleGroupPolicy(PutFirewallRuleGroupPolicyRequest request)
Attaches an Identity and Access Management (Amazon Web Services IAM) policy for sharing the rule group. You can use the policy to share the rule group using Resource Access Manager (RAM).
putFirewallRuleGroupPolicy in interface AmazonRoute53ResolverputFirewallRuleGroupPolicyRequest - ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.ResourceNotFoundException - The specified resource doesn't exist.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public PutResolverQueryLogConfigPolicyResult putResolverQueryLogConfigPolicy(PutResolverQueryLogConfigPolicyRequest request)
Specifies an Amazon Web Services account that you want to share a query logging configuration with, the query logging configuration that you want to share, and the operations that you want the account to be able to perform on the configuration.
putResolverQueryLogConfigPolicy in interface AmazonRoute53ResolverputResolverQueryLogConfigPolicyRequest - InvalidPolicyDocumentException - The specified Resolver rule policy is invalid.InvalidParameterException - One or more parameters in this request are not valid.InvalidRequestException - The request is invalid.UnknownResourceException - The specified resource doesn't exist.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
public PutResolverRulePolicyResult putResolverRulePolicy(PutResolverRulePolicyRequest request)
Specifies an Amazon Web Services rule that you want to share with another account, the account that you want to share the rule with, and the operations that you want the account to be able to perform on the rule.
putResolverRulePolicy in interface AmazonRoute53ResolverputResolverRulePolicyRequest - InvalidPolicyDocumentException - The specified Resolver rule policy is invalid.InvalidParameterException - One or more parameters in this request are not valid.UnknownResourceException - The specified resource doesn't exist.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
public TagResourceResult tagResource(TagResourceRequest request)
Adds one or more tags to a specified resource.
tagResource in interface AmazonRoute53ResolvertagResourceRequest - LimitExceededException - The request caused one or more limits to be exceeded.ResourceNotFoundException - The specified resource doesn't exist.InvalidParameterException - One or more parameters in this request are not valid.InvalidRequestException - The request is invalid.InvalidTagException - The specified tag is invalid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public UntagResourceResult untagResource(UntagResourceRequest request)
Removes one or more tags from a specified resource.
untagResource in interface AmazonRoute53ResolveruntagResourceRequest - ResourceNotFoundException - The specified resource doesn't exist.InvalidParameterException - One or more parameters in this request are not valid.InvalidRequestException - The request is invalid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public UpdateFirewallConfigResult updateFirewallConfig(UpdateFirewallConfigRequest request)
Updates the configuration of the firewall behavior provided by DNS Firewall for a single VPC from Amazon Virtual Private Cloud (Amazon VPC).
updateFirewallConfig in interface AmazonRoute53ResolverupdateFirewallConfigRequest - ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.ResourceNotFoundException - The specified resource doesn't exist.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public UpdateFirewallDomainsResult updateFirewallDomains(UpdateFirewallDomainsRequest request)
Updates the firewall domain list from an array of domain specifications.
updateFirewallDomains in interface AmazonRoute53ResolverupdateFirewallDomainsRequest - ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
ResourceNotFoundException - The specified resource doesn't exist.LimitExceededException - The request caused one or more limits to be exceeded.ConflictException - The requested state transition isn't valid. For example, you can't delete a firewall domain list if it is
in the process of being deleted, or you can't import domains into a domain list that is in the process of
being deleted.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public UpdateFirewallRuleResult updateFirewallRule(UpdateFirewallRuleRequest request)
Updates the specified firewall rule.
updateFirewallRule in interface AmazonRoute53ResolverupdateFirewallRuleRequest - ResourceNotFoundException - The specified resource doesn't exist.ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.ConflictException - The requested state transition isn't valid. For example, you can't delete a firewall domain list if it is
in the process of being deleted, or you can't import domains into a domain list that is in the process of
being deleted.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public UpdateFirewallRuleGroupAssociationResult updateFirewallRuleGroupAssociation(UpdateFirewallRuleGroupAssociationRequest request)
Changes the association of a FirewallRuleGroup with a VPC. The association enables DNS filtering for the VPC.
updateFirewallRuleGroupAssociation in interface AmazonRoute53ResolverupdateFirewallRuleGroupAssociationRequest - ResourceNotFoundException - The specified resource doesn't exist.ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.ConflictException - The requested state transition isn't valid. For example, you can't delete a firewall domain list if it is
in the process of being deleted, or you can't import domains into a domain list that is in the process of
being deleted.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public UpdateOutpostResolverResult updateOutpostResolver(UpdateOutpostResolverRequest request)
You can use UpdateOutpostResolver to update the instance count, type, or name of a Resolver on an
Outpost.
updateOutpostResolver in interface AmazonRoute53ResolverupdateOutpostResolverRequest - AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
ConflictException - The requested state transition isn't valid. For example, you can't delete a firewall domain list if it is
in the process of being deleted, or you can't import domains into a domain list that is in the process of
being deleted.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ResourceNotFoundException - The specified resource doesn't exist.ServiceQuotaExceededException - Fulfilling the request would cause one or more quotas to be exceeded.ThrottlingException - The request was throttled. Try again in a few minutes.ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.public UpdateResolverConfigResult updateResolverConfig(UpdateResolverConfigRequest request)
Updates the behavior configuration of Route 53 Resolver behavior for a single VPC from Amazon Virtual Private Cloud.
updateResolverConfig in interface AmazonRoute53ResolverupdateResolverConfigRequest - InvalidRequestException - The request is invalid.InvalidParameterException - One or more parameters in this request are not valid.ResourceNotFoundException - The specified resource doesn't exist.ResourceUnavailableException - The specified resource isn't available.LimitExceededException - The request caused one or more limits to be exceeded.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
ValidationException - You have provided an invalid command. If you ran the UpdateFirewallDomains request.
supported values are ADD, REMOVE, or REPLACE a domain.public UpdateResolverDnssecConfigResult updateResolverDnssecConfig(UpdateResolverDnssecConfigRequest request)
Updates an existing DNSSEC validation configuration. If there is no existing DNSSEC validation configuration, one is created.
updateResolverDnssecConfig in interface AmazonRoute53ResolverupdateResolverDnssecConfigRequest - InvalidParameterException - One or more parameters in this request are not valid.ResourceNotFoundException - The specified resource doesn't exist.InvalidRequestException - The request is invalid.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
public UpdateResolverEndpointResult updateResolverEndpoint(UpdateResolverEndpointRequest request)
Updates the name, or endpoint type for an inbound or an outbound Resolver endpoint. You can only update between IPV4 and DUALSTACK, IPV6 endpoint type can't be updated to other type.
updateResolverEndpoint in interface AmazonRoute53ResolverupdateResolverEndpointRequest - ResourceNotFoundException - The specified resource doesn't exist.InvalidParameterException - One or more parameters in this request are not valid.InvalidRequestException - The request is invalid.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.public UpdateResolverRuleResult updateResolverRule(UpdateResolverRuleRequest request)
Updates settings for a specified Resolver rule. ResolverRuleId is required, and all other parameters
are optional. If you don't specify a parameter, it retains its current value.
updateResolverRule in interface AmazonRoute53ResolverupdateResolverRuleRequest - InvalidRequestException - The request is invalid.InvalidParameterException - One or more parameters in this request are not valid.ResourceNotFoundException - The specified resource doesn't exist.ResourceUnavailableException - The specified resource isn't available.LimitExceededException - The request caused one or more limits to be exceeded.InternalServiceErrorException - We encountered an unknown error. Try again in a few minutes.ThrottlingException - The request was throttled. Try again in a few minutes.AccessDeniedException - The current account doesn't have the IAM permissions required to perform the specified Resolver
operation.
This error can also be thrown when a customer has reached the 5120 character limit for a resource policy for CloudWatch Logs.
public ResponseMetadata getCachedResponseMetadata(AmazonWebServiceRequest request)
Response metadata is only cached for a limited period of time, so if you need to access this extra diagnostic information for an executed request, you should use this method to retrieve it as soon as possible after executing the request.
getCachedResponseMetadata in interface AmazonRoute53Resolverrequest - The originally executed requestpublic void shutdown()
AmazonWebServiceClientshutdown in interface AmazonRoute53Resolvershutdown in class AmazonWebServiceClient