Oracle Cloud Infrastructure v2.17.0 published on Friday, Nov 15, 2024 by Pulumi
oci.Dns.getZones
Explore with Pulumi AI
This data source provides the list of Zones in Oracle Cloud Infrastructure DNS service.
Gets a list of all zones in the specified compartment.
The collection can be filtered by name, time created, scope, associated view, and zone type. Filtering by view is only supported for private zones.
Example Usage
import * as pulumi from "@pulumi/pulumi";
import * as oci from "@pulumi/oci";
const testZones = oci.Dns.getZones({
compartmentId: compartmentId,
dnssecState: zoneDnssecState,
name: zoneName,
nameContains: zoneNameContains,
scope: zoneScope,
state: zoneState,
timeCreatedGreaterThanOrEqualTo: zoneTimeCreatedGreaterThanOrEqualTo,
timeCreatedLessThan: zoneTimeCreatedLessThan,
tsigKeyId: testTsigKey.id,
viewId: testView.id,
zoneType: zoneZoneType,
});
import pulumi
import pulumi_oci as oci
test_zones = oci.Dns.get_zones(compartment_id=compartment_id,
dnssec_state=zone_dnssec_state,
name=zone_name,
name_contains=zone_name_contains,
scope=zone_scope,
state=zone_state,
time_created_greater_than_or_equal_to=zone_time_created_greater_than_or_equal_to,
time_created_less_than=zone_time_created_less_than,
tsig_key_id=test_tsig_key["id"],
view_id=test_view["id"],
zone_type=zone_zone_type)
package main
import (
"github.com/pulumi/pulumi-oci/sdk/v2/go/oci/Dns"
"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
)
func main() {
pulumi.Run(func(ctx *pulumi.Context) error {
_, err := Dns.GetZones(ctx, &dns.GetZonesArgs{
CompartmentId: compartmentId,
DnssecState: pulumi.StringRef(zoneDnssecState),
Name: pulumi.StringRef(zoneName),
NameContains: pulumi.StringRef(zoneNameContains),
Scope: pulumi.StringRef(zoneScope),
State: pulumi.StringRef(zoneState),
TimeCreatedGreaterThanOrEqualTo: pulumi.StringRef(zoneTimeCreatedGreaterThanOrEqualTo),
TimeCreatedLessThan: pulumi.StringRef(zoneTimeCreatedLessThan),
TsigKeyId: pulumi.StringRef(testTsigKey.Id),
ViewId: pulumi.StringRef(testView.Id),
ZoneType: pulumi.StringRef(zoneZoneType),
}, nil)
if err != nil {
return err
}
return nil
})
}
using System.Collections.Generic;
using System.Linq;
using Pulumi;
using Oci = Pulumi.Oci;
return await Deployment.RunAsync(() =>
{
var testZones = Oci.Dns.GetZones.Invoke(new()
{
CompartmentId = compartmentId,
DnssecState = zoneDnssecState,
Name = zoneName,
NameContains = zoneNameContains,
Scope = zoneScope,
State = zoneState,
TimeCreatedGreaterThanOrEqualTo = zoneTimeCreatedGreaterThanOrEqualTo,
TimeCreatedLessThan = zoneTimeCreatedLessThan,
TsigKeyId = testTsigKey.Id,
ViewId = testView.Id,
ZoneType = zoneZoneType,
});
});
package generated_program;
import com.pulumi.Context;
import com.pulumi.Pulumi;
import com.pulumi.core.Output;
import com.pulumi.oci.Dns.DnsFunctions;
import com.pulumi.oci.Dns.inputs.GetZonesArgs;
import java.util.List;
import java.util.ArrayList;
import java.util.Map;
import java.io.File;
import java.nio.file.Files;
import java.nio.file.Paths;
public class App {
public static void main(String[] args) {
Pulumi.run(App::stack);
}
public static void stack(Context ctx) {
final var testZones = DnsFunctions.getZones(GetZonesArgs.builder()
.compartmentId(compartmentId)
.dnssecState(zoneDnssecState)
.name(zoneName)
.nameContains(zoneNameContains)
.scope(zoneScope)
.state(zoneState)
.timeCreatedGreaterThanOrEqualTo(zoneTimeCreatedGreaterThanOrEqualTo)
.timeCreatedLessThan(zoneTimeCreatedLessThan)
.tsigKeyId(testTsigKey.id())
.viewId(testView.id())
.zoneType(zoneZoneType)
.build());
}
}
variables:
testZones:
fn::invoke:
Function: oci:Dns:getZones
Arguments:
compartmentId: ${compartmentId}
dnssecState: ${zoneDnssecState}
name: ${zoneName}
nameContains: ${zoneNameContains}
scope: ${zoneScope}
state: ${zoneState}
timeCreatedGreaterThanOrEqualTo: ${zoneTimeCreatedGreaterThanOrEqualTo}
timeCreatedLessThan: ${zoneTimeCreatedLessThan}
tsigKeyId: ${testTsigKey.id}
viewId: ${testView.id}
zoneType: ${zoneZoneType}
Using getZones
Two invocation forms are available. The direct form accepts plain arguments and either blocks until the result value is available, or returns a Promise-wrapped result. The output form accepts Input-wrapped arguments and returns an Output-wrapped result.
function getZones(args: GetZonesArgs, opts?: InvokeOptions): Promise<GetZonesResult>
function getZonesOutput(args: GetZonesOutputArgs, opts?: InvokeOptions): Output<GetZonesResult>
def get_zones(compartment_id: Optional[str] = None,
dnssec_state: Optional[str] = None,
filters: Optional[Sequence[_dns.GetZonesFilter]] = None,
name: Optional[str] = None,
name_contains: Optional[str] = None,
scope: Optional[str] = None,
sort_by: Optional[str] = None,
sort_order: Optional[str] = None,
state: Optional[str] = None,
time_created_greater_than_or_equal_to: Optional[str] = None,
time_created_less_than: Optional[str] = None,
tsig_key_id: Optional[str] = None,
view_id: Optional[str] = None,
zone_type: Optional[str] = None,
opts: Optional[InvokeOptions] = None) -> GetZonesResult
def get_zones_output(compartment_id: Optional[pulumi.Input[str]] = None,
dnssec_state: Optional[pulumi.Input[str]] = None,
filters: Optional[pulumi.Input[Sequence[pulumi.Input[_dns.GetZonesFilterArgs]]]] = None,
name: Optional[pulumi.Input[str]] = None,
name_contains: Optional[pulumi.Input[str]] = None,
scope: Optional[pulumi.Input[str]] = None,
sort_by: Optional[pulumi.Input[str]] = None,
sort_order: Optional[pulumi.Input[str]] = None,
state: Optional[pulumi.Input[str]] = None,
time_created_greater_than_or_equal_to: Optional[pulumi.Input[str]] = None,
time_created_less_than: Optional[pulumi.Input[str]] = None,
tsig_key_id: Optional[pulumi.Input[str]] = None,
view_id: Optional[pulumi.Input[str]] = None,
zone_type: Optional[pulumi.Input[str]] = None,
opts: Optional[InvokeOptions] = None) -> Output[GetZonesResult]
func GetZones(ctx *Context, args *GetZonesArgs, opts ...InvokeOption) (*GetZonesResult, error)
func GetZonesOutput(ctx *Context, args *GetZonesOutputArgs, opts ...InvokeOption) GetZonesResultOutput
> Note: This function is named GetZones
in the Go SDK.
public static class GetZones
{
public static Task<GetZonesResult> InvokeAsync(GetZonesArgs args, InvokeOptions? opts = null)
public static Output<GetZonesResult> Invoke(GetZonesInvokeArgs args, InvokeOptions? opts = null)
}
public static CompletableFuture<GetZonesResult> getZones(GetZonesArgs args, InvokeOptions options)
// Output-based functions aren't available in Java yet
fn::invoke:
function: oci:Dns/getZones:getZones
arguments:
# arguments dictionary
The following arguments are supported:
- Compartment
Id string - The OCID of the compartment the resource belongs to.
- Dnssec
State string - Search for zones that have the given
DnssecState
. - Filters
List<Get
Zones Filter> - Name string
- A case-sensitive filter for zone names. Will match any zone with a name that equals the provided value.
- Name
Contains string - Search by zone name. Will match any zone whose name (case-insensitive) contains the provided value.
- Scope string
- Specifies to operate only on resources that have a matching DNS scope.
- Sort
By string - The field by which to sort zones. Allowed values are: name|zoneType|timeCreated
- Sort
Order string - The order to sort the resources. Allowed values are: ASC|DESC
- State string
- The state of a resource.
- Time
Created stringGreater Than Or Equal To - An RFC 3339 timestamp that states all returned resources were created on or after the indicated time.
- Time
Created stringLess Than - An RFC 3339 timestamp that states all returned resources were created before the indicated time.
- Tsig
Key stringId - Search for zones that are associated with a TSIG key.
- View
Id string - The OCID of the view the resource is associated with.
- Zone
Type string - Search by zone type,
PRIMARY
orSECONDARY
. Will match any zone whose type equals the provided value.
- Compartment
Id string - The OCID of the compartment the resource belongs to.
- Dnssec
State string - Search for zones that have the given
DnssecState
. - Filters
[]Get
Zones Filter - Name string
- A case-sensitive filter for zone names. Will match any zone with a name that equals the provided value.
- Name
Contains string - Search by zone name. Will match any zone whose name (case-insensitive) contains the provided value.
- Scope string
- Specifies to operate only on resources that have a matching DNS scope.
- Sort
By string - The field by which to sort zones. Allowed values are: name|zoneType|timeCreated
- Sort
Order string - The order to sort the resources. Allowed values are: ASC|DESC
- State string
- The state of a resource.
- Time
Created stringGreater Than Or Equal To - An RFC 3339 timestamp that states all returned resources were created on or after the indicated time.
- Time
Created stringLess Than - An RFC 3339 timestamp that states all returned resources were created before the indicated time.
- Tsig
Key stringId - Search for zones that are associated with a TSIG key.
- View
Id string - The OCID of the view the resource is associated with.
- Zone
Type string - Search by zone type,
PRIMARY
orSECONDARY
. Will match any zone whose type equals the provided value.
- compartment
Id String - The OCID of the compartment the resource belongs to.
- dnssec
State String - Search for zones that have the given
DnssecState
. - filters
List<Get
Zones Filter> - name String
- A case-sensitive filter for zone names. Will match any zone with a name that equals the provided value.
- name
Contains String - Search by zone name. Will match any zone whose name (case-insensitive) contains the provided value.
- scope String
- Specifies to operate only on resources that have a matching DNS scope.
- sort
By String - The field by which to sort zones. Allowed values are: name|zoneType|timeCreated
- sort
Order String - The order to sort the resources. Allowed values are: ASC|DESC
- state String
- The state of a resource.
- time
Created StringGreater Than Or Equal To - An RFC 3339 timestamp that states all returned resources were created on or after the indicated time.
- time
Created StringLess Than - An RFC 3339 timestamp that states all returned resources were created before the indicated time.
- tsig
Key StringId - Search for zones that are associated with a TSIG key.
- view
Id String - The OCID of the view the resource is associated with.
- zone
Type String - Search by zone type,
PRIMARY
orSECONDARY
. Will match any zone whose type equals the provided value.
- compartment
Id string - The OCID of the compartment the resource belongs to.
- dnssec
State string - Search for zones that have the given
DnssecState
. - filters
Get
Zones Filter[] - name string
- A case-sensitive filter for zone names. Will match any zone with a name that equals the provided value.
- name
Contains string - Search by zone name. Will match any zone whose name (case-insensitive) contains the provided value.
- scope string
- Specifies to operate only on resources that have a matching DNS scope.
- sort
By string - The field by which to sort zones. Allowed values are: name|zoneType|timeCreated
- sort
Order string - The order to sort the resources. Allowed values are: ASC|DESC
- state string
- The state of a resource.
- time
Created stringGreater Than Or Equal To - An RFC 3339 timestamp that states all returned resources were created on or after the indicated time.
- time
Created stringLess Than - An RFC 3339 timestamp that states all returned resources were created before the indicated time.
- tsig
Key stringId - Search for zones that are associated with a TSIG key.
- view
Id string - The OCID of the view the resource is associated with.
- zone
Type string - Search by zone type,
PRIMARY
orSECONDARY
. Will match any zone whose type equals the provided value.
- compartment_
id str - The OCID of the compartment the resource belongs to.
- dnssec_
state str - Search for zones that have the given
DnssecState
. - filters
Sequence[dns.
Get Zones Filter] - name str
- A case-sensitive filter for zone names. Will match any zone with a name that equals the provided value.
- name_
contains str - Search by zone name. Will match any zone whose name (case-insensitive) contains the provided value.
- scope str
- Specifies to operate only on resources that have a matching DNS scope.
- sort_
by str - The field by which to sort zones. Allowed values are: name|zoneType|timeCreated
- sort_
order str - The order to sort the resources. Allowed values are: ASC|DESC
- state str
- The state of a resource.
- time_
created_ strgreater_ than_ or_ equal_ to - An RFC 3339 timestamp that states all returned resources were created on or after the indicated time.
- time_
created_ strless_ than - An RFC 3339 timestamp that states all returned resources were created before the indicated time.
- tsig_
key_ strid - Search for zones that are associated with a TSIG key.
- view_
id str - The OCID of the view the resource is associated with.
- zone_
type str - Search by zone type,
PRIMARY
orSECONDARY
. Will match any zone whose type equals the provided value.
- compartment
Id String - The OCID of the compartment the resource belongs to.
- dnssec
State String - Search for zones that have the given
DnssecState
. - filters List<Property Map>
- name String
- A case-sensitive filter for zone names. Will match any zone with a name that equals the provided value.
- name
Contains String - Search by zone name. Will match any zone whose name (case-insensitive) contains the provided value.
- scope String
- Specifies to operate only on resources that have a matching DNS scope.
- sort
By String - The field by which to sort zones. Allowed values are: name|zoneType|timeCreated
- sort
Order String - The order to sort the resources. Allowed values are: ASC|DESC
- state String
- The state of a resource.
- time
Created StringGreater Than Or Equal To - An RFC 3339 timestamp that states all returned resources were created on or after the indicated time.
- time
Created StringLess Than - An RFC 3339 timestamp that states all returned resources were created before the indicated time.
- tsig
Key StringId - Search for zones that are associated with a TSIG key.
- view
Id String - The OCID of the view the resource is associated with.
- zone
Type String - Search by zone type,
PRIMARY
orSECONDARY
. Will match any zone whose type equals the provided value.
getZones Result
The following output properties are available:
- Compartment
Id string - The OCID of the compartment containing the zone.
- Id string
- The provider-assigned unique ID for this managed resource.
- Zones
List<Get
Zones Zone> - The list of zones.
- Dnssec
State string - The state of DNSSEC on the zone.
- Filters
List<Get
Zones Filter> - Name string
- The name of the zone.
- Name
Contains string - Scope string
- The scope of the zone.
- Sort
By string - Sort
Order string - State string
- The current state of the zone resource.
- Time
Created stringGreater Than Or Equal To - Time
Created stringLess Than - Tsig
Key stringId - The OCID of the TSIG key.
- View
Id string - The OCID of the private view containing the zone. This value will be null for zones in the global DNS, which are publicly resolvable and not part of a private view.
- Zone
Type string - The type of the zone. Must be either
PRIMARY
orSECONDARY
.SECONDARY
is only supported for GLOBAL zones.
- Compartment
Id string - The OCID of the compartment containing the zone.
- Id string
- The provider-assigned unique ID for this managed resource.
- Zones
[]Get
Zones Zone - The list of zones.
- Dnssec
State string - The state of DNSSEC on the zone.
- Filters
[]Get
Zones Filter - Name string
- The name of the zone.
- Name
Contains string - Scope string
- The scope of the zone.
- Sort
By string - Sort
Order string - State string
- The current state of the zone resource.
- Time
Created stringGreater Than Or Equal To - Time
Created stringLess Than - Tsig
Key stringId - The OCID of the TSIG key.
- View
Id string - The OCID of the private view containing the zone. This value will be null for zones in the global DNS, which are publicly resolvable and not part of a private view.
- Zone
Type string - The type of the zone. Must be either
PRIMARY
orSECONDARY
.SECONDARY
is only supported for GLOBAL zones.
- compartment
Id String - The OCID of the compartment containing the zone.
- id String
- The provider-assigned unique ID for this managed resource.
- zones
List<Get
Zones Zone> - The list of zones.
- dnssec
State String - The state of DNSSEC on the zone.
- filters
List<Get
Zones Filter> - name String
- The name of the zone.
- name
Contains String - scope String
- The scope of the zone.
- sort
By String - sort
Order String - state String
- The current state of the zone resource.
- time
Created StringGreater Than Or Equal To - time
Created StringLess Than - tsig
Key StringId - The OCID of the TSIG key.
- view
Id String - The OCID of the private view containing the zone. This value will be null for zones in the global DNS, which are publicly resolvable and not part of a private view.
- zone
Type String - The type of the zone. Must be either
PRIMARY
orSECONDARY
.SECONDARY
is only supported for GLOBAL zones.
- compartment
Id string - The OCID of the compartment containing the zone.
- id string
- The provider-assigned unique ID for this managed resource.
- zones
Get
Zones Zone[] - The list of zones.
- dnssec
State string - The state of DNSSEC on the zone.
- filters
Get
Zones Filter[] - name string
- The name of the zone.
- name
Contains string - scope string
- The scope of the zone.
- sort
By string - sort
Order string - state string
- The current state of the zone resource.
- time
Created stringGreater Than Or Equal To - time
Created stringLess Than - tsig
Key stringId - The OCID of the TSIG key.
- view
Id string - The OCID of the private view containing the zone. This value will be null for zones in the global DNS, which are publicly resolvable and not part of a private view.
- zone
Type string - The type of the zone. Must be either
PRIMARY
orSECONDARY
.SECONDARY
is only supported for GLOBAL zones.
- compartment_
id str - The OCID of the compartment containing the zone.
- id str
- The provider-assigned unique ID for this managed resource.
- zones
Sequence[dns.
Get Zones Zone] - The list of zones.
- dnssec_
state str - The state of DNSSEC on the zone.
- filters
Sequence[dns.
Get Zones Filter] - name str
- The name of the zone.
- name_
contains str - scope str
- The scope of the zone.
- sort_
by str - sort_
order str - state str
- The current state of the zone resource.
- time_
created_ strgreater_ than_ or_ equal_ to - time_
created_ strless_ than - tsig_
key_ strid - The OCID of the TSIG key.
- view_
id str - The OCID of the private view containing the zone. This value will be null for zones in the global DNS, which are publicly resolvable and not part of a private view.
- zone_
type str - The type of the zone. Must be either
PRIMARY
orSECONDARY
.SECONDARY
is only supported for GLOBAL zones.
- compartment
Id String - The OCID of the compartment containing the zone.
- id String
- The provider-assigned unique ID for this managed resource.
- zones List<Property Map>
- The list of zones.
- dnssec
State String - The state of DNSSEC on the zone.
- filters List<Property Map>
- name String
- The name of the zone.
- name
Contains String - scope String
- The scope of the zone.
- sort
By String - sort
Order String - state String
- The current state of the zone resource.
- time
Created StringGreater Than Or Equal To - time
Created StringLess Than - tsig
Key StringId - The OCID of the TSIG key.
- view
Id String - The OCID of the private view containing the zone. This value will be null for zones in the global DNS, which are publicly resolvable and not part of a private view.
- zone
Type String - The type of the zone. Must be either
PRIMARY
orSECONDARY
.SECONDARY
is only supported for GLOBAL zones.
Supporting Types
GetZonesFilter
GetZonesZone
- Compartment
Id string - The OCID of the compartment the resource belongs to.
- Dictionary<string, string>
- Defined tags for this resource. Each key is predefined and scoped to a namespace. For more information, see Resource Tags.
- Dnssec
Configs List<GetZones Zone Dnssec Config> - DNSSEC configuration data.
- Dnssec
State string - Search for zones that have the given
DnssecState
. - External
Downstreams List<GetZones Zone External Downstream> - External secondary servers for the zone. This field is currently not supported when
zoneType
isSECONDARY
orscope
isPRIVATE
. - External
Masters List<GetZones Zone External Master> - External master servers for the zone.
externalMasters
becomes a required parameter when thezoneType
value isSECONDARY
. - Dictionary<string, string>
- Free-form tags for this resource. Each tag is a simple key-value pair with no predefined name, type, or namespace. For more information, see Resource Tags.
- Id string
- The OCID of the zone.
- Is
Protected bool - A Boolean flag indicating whether or not parts of the resource are unable to be explicitly managed.
- Name string
- A case-sensitive filter for zone names. Will match any zone with a name that equals the provided value.
- Nameservers
List<Get
Zones Zone Nameserver> - The authoritative nameservers for the zone.
- Scope string
- Specifies to operate only on resources that have a matching DNS scope.
- Self string
- The canonical absolute URL of the resource.
- Serial int
- The current serial of the zone. As seen in the zone's SOA record.
- State string
- The state of a resource.
- Time
Created string - The date and time the resource was created in "YYYY-MM-ddThh:mm:ssZ" format with a Z offset, as defined by RFC 3339.
- Version string
- Version is the never-repeating, totally-orderable, version of the zone, from which the serial field of the zone's SOA record is derived.
- View
Id string - The OCID of the view the resource is associated with.
- Zone
Transfer List<GetServers Zones Zone Zone Transfer Server> - The Oracle Cloud Infrastructure nameservers that transfer the zone data with external nameservers.
- Zone
Type string - Search by zone type,
PRIMARY
orSECONDARY
. Will match any zone whose type equals the provided value.
- Compartment
Id string - The OCID of the compartment the resource belongs to.
- map[string]string
- Defined tags for this resource. Each key is predefined and scoped to a namespace. For more information, see Resource Tags.
- Dnssec
Configs []GetZones Zone Dnssec Config - DNSSEC configuration data.
- Dnssec
State string - Search for zones that have the given
DnssecState
. - External
Downstreams []GetZones Zone External Downstream - External secondary servers for the zone. This field is currently not supported when
zoneType
isSECONDARY
orscope
isPRIVATE
. - External
Masters []GetZones Zone External Master - External master servers for the zone.
externalMasters
becomes a required parameter when thezoneType
value isSECONDARY
. - map[string]string
- Free-form tags for this resource. Each tag is a simple key-value pair with no predefined name, type, or namespace. For more information, see Resource Tags.
- Id string
- The OCID of the zone.
- Is
Protected bool - A Boolean flag indicating whether or not parts of the resource are unable to be explicitly managed.
- Name string
- A case-sensitive filter for zone names. Will match any zone with a name that equals the provided value.
- Nameservers
[]Get
Zones Zone Nameserver - The authoritative nameservers for the zone.
- Scope string
- Specifies to operate only on resources that have a matching DNS scope.
- Self string
- The canonical absolute URL of the resource.
- Serial int
- The current serial of the zone. As seen in the zone's SOA record.
- State string
- The state of a resource.
- Time
Created string - The date and time the resource was created in "YYYY-MM-ddThh:mm:ssZ" format with a Z offset, as defined by RFC 3339.
- Version string
- Version is the never-repeating, totally-orderable, version of the zone, from which the serial field of the zone's SOA record is derived.
- View
Id string - The OCID of the view the resource is associated with.
- Zone
Transfer []GetServers Zones Zone Zone Transfer Server - The Oracle Cloud Infrastructure nameservers that transfer the zone data with external nameservers.
- Zone
Type string - Search by zone type,
PRIMARY
orSECONDARY
. Will match any zone whose type equals the provided value.
- compartment
Id String - The OCID of the compartment the resource belongs to.
- Map<String,String>
- Defined tags for this resource. Each key is predefined and scoped to a namespace. For more information, see Resource Tags.
- dnssec
Configs List<GetZones Zonesec Config> - DNSSEC configuration data.
- dnssec
State String - Search for zones that have the given
DnssecState
. - external
Downstreams List<GetZones Zone External Downstream> - External secondary servers for the zone. This field is currently not supported when
zoneType
isSECONDARY
orscope
isPRIVATE
. - external
Masters List<GetZones Zone External Master> - External master servers for the zone.
externalMasters
becomes a required parameter when thezoneType
value isSECONDARY
. - Map<String,String>
- Free-form tags for this resource. Each tag is a simple key-value pair with no predefined name, type, or namespace. For more information, see Resource Tags.
- id String
- The OCID of the zone.
- is
Protected Boolean - A Boolean flag indicating whether or not parts of the resource are unable to be explicitly managed.
- name String
- A case-sensitive filter for zone names. Will match any zone with a name that equals the provided value.
- nameservers
List<Get
Zones Zone Nameserver> - The authoritative nameservers for the zone.
- scope String
- Specifies to operate only on resources that have a matching DNS scope.
- self String
- The canonical absolute URL of the resource.
- serial Integer
- The current serial of the zone. As seen in the zone's SOA record.
- state String
- The state of a resource.
- time
Created String - The date and time the resource was created in "YYYY-MM-ddThh:mm:ssZ" format with a Z offset, as defined by RFC 3339.
- version String
- Version is the never-repeating, totally-orderable, version of the zone, from which the serial field of the zone's SOA record is derived.
- view
Id String - The OCID of the view the resource is associated with.
- zone
Transfer List<GetServers Zones Zone Zone Transfer Server> - The Oracle Cloud Infrastructure nameservers that transfer the zone data with external nameservers.
- zone
Type String - Search by zone type,
PRIMARY
orSECONDARY
. Will match any zone whose type equals the provided value.
- compartment
Id string - The OCID of the compartment the resource belongs to.
- {[key: string]: string}
- Defined tags for this resource. Each key is predefined and scoped to a namespace. For more information, see Resource Tags.
- dnssec
Configs GetZones Zone Dnssec Config[] - DNSSEC configuration data.
- dnssec
State string - Search for zones that have the given
DnssecState
. - external
Downstreams GetZones Zone External Downstream[] - External secondary servers for the zone. This field is currently not supported when
zoneType
isSECONDARY
orscope
isPRIVATE
. - external
Masters GetZones Zone External Master[] - External master servers for the zone.
externalMasters
becomes a required parameter when thezoneType
value isSECONDARY
. - {[key: string]: string}
- Free-form tags for this resource. Each tag is a simple key-value pair with no predefined name, type, or namespace. For more information, see Resource Tags.
- id string
- The OCID of the zone.
- is
Protected boolean - A Boolean flag indicating whether or not parts of the resource are unable to be explicitly managed.
- name string
- A case-sensitive filter for zone names. Will match any zone with a name that equals the provided value.
- nameservers
Get
Zones Zone Nameserver[] - The authoritative nameservers for the zone.
- scope string
- Specifies to operate only on resources that have a matching DNS scope.
- self string
- The canonical absolute URL of the resource.
- serial number
- The current serial of the zone. As seen in the zone's SOA record.
- state string
- The state of a resource.
- time
Created string - The date and time the resource was created in "YYYY-MM-ddThh:mm:ssZ" format with a Z offset, as defined by RFC 3339.
- version string
- Version is the never-repeating, totally-orderable, version of the zone, from which the serial field of the zone's SOA record is derived.
- view
Id string - The OCID of the view the resource is associated with.
- zone
Transfer GetServers Zones Zone Zone Transfer Server[] - The Oracle Cloud Infrastructure nameservers that transfer the zone data with external nameservers.
- zone
Type string - Search by zone type,
PRIMARY
orSECONDARY
. Will match any zone whose type equals the provided value.
- compartment_
id str - The OCID of the compartment the resource belongs to.
- Mapping[str, str]
- Defined tags for this resource. Each key is predefined and scoped to a namespace. For more information, see Resource Tags.
- dnssec_
configs Sequence[dns.Get Zones Zone Dnssec Config] - DNSSEC configuration data.
- dnssec_
state str - Search for zones that have the given
DnssecState
. - external_
downstreams Sequence[dns.Get Zones Zone External Downstream] - External secondary servers for the zone. This field is currently not supported when
zoneType
isSECONDARY
orscope
isPRIVATE
. - external_
masters Sequence[dns.Get Zones Zone External Master] - External master servers for the zone.
externalMasters
becomes a required parameter when thezoneType
value isSECONDARY
. - Mapping[str, str]
- Free-form tags for this resource. Each tag is a simple key-value pair with no predefined name, type, or namespace. For more information, see Resource Tags.
- id str
- The OCID of the zone.
- is_
protected bool - A Boolean flag indicating whether or not parts of the resource are unable to be explicitly managed.
- name str
- A case-sensitive filter for zone names. Will match any zone with a name that equals the provided value.
- nameservers
Sequence[dns.
Get Zones Zone Nameserver] - The authoritative nameservers for the zone.
- scope str
- Specifies to operate only on resources that have a matching DNS scope.
- self str
- The canonical absolute URL of the resource.
- serial int
- The current serial of the zone. As seen in the zone's SOA record.
- state str
- The state of a resource.
- time_
created str - The date and time the resource was created in "YYYY-MM-ddThh:mm:ssZ" format with a Z offset, as defined by RFC 3339.
- version str
- Version is the never-repeating, totally-orderable, version of the zone, from which the serial field of the zone's SOA record is derived.
- view_
id str - The OCID of the view the resource is associated with.
- zone_
transfer_ Sequence[dns.servers Get Zones Zone Zone Transfer Server] - The Oracle Cloud Infrastructure nameservers that transfer the zone data with external nameservers.
- zone_
type str - Search by zone type,
PRIMARY
orSECONDARY
. Will match any zone whose type equals the provided value.
- compartment
Id String - The OCID of the compartment the resource belongs to.
- Map<String>
- Defined tags for this resource. Each key is predefined and scoped to a namespace. For more information, see Resource Tags.
- dnssec
Configs List<Property Map> - DNSSEC configuration data.
- dnssec
State String - Search for zones that have the given
DnssecState
. - external
Downstreams List<Property Map> - External secondary servers for the zone. This field is currently not supported when
zoneType
isSECONDARY
orscope
isPRIVATE
. - external
Masters List<Property Map> - External master servers for the zone.
externalMasters
becomes a required parameter when thezoneType
value isSECONDARY
. - Map<String>
- Free-form tags for this resource. Each tag is a simple key-value pair with no predefined name, type, or namespace. For more information, see Resource Tags.
- id String
- The OCID of the zone.
- is
Protected Boolean - A Boolean flag indicating whether or not parts of the resource are unable to be explicitly managed.
- name String
- A case-sensitive filter for zone names. Will match any zone with a name that equals the provided value.
- nameservers List<Property Map>
- The authoritative nameservers for the zone.
- scope String
- Specifies to operate only on resources that have a matching DNS scope.
- self String
- The canonical absolute URL of the resource.
- serial Number
- The current serial of the zone. As seen in the zone's SOA record.
- state String
- The state of a resource.
- time
Created String - The date and time the resource was created in "YYYY-MM-ddThh:mm:ssZ" format with a Z offset, as defined by RFC 3339.
- version String
- Version is the never-repeating, totally-orderable, version of the zone, from which the serial field of the zone's SOA record is derived.
- view
Id String - The OCID of the view the resource is associated with.
- zone
Transfer List<Property Map>Servers - The Oracle Cloud Infrastructure nameservers that transfer the zone data with external nameservers.
- zone
Type String - Search by zone type,
PRIMARY
orSECONDARY
. Will match any zone whose type equals the provided value.
GetZonesZoneDnssecConfig
- Ksk
Dnssec List<GetKey Versions Zones Zone Dnssec Config Ksk Dnssec Key Version> - A read-only array of key signing key (KSK) versions.
- Zsk
Dnssec List<GetKey Versions Zones Zone Dnssec Config Zsk Dnssec Key Version> - A read-only array of zone signing key (ZSK) versions.
- Ksk
Dnssec []GetKey Versions Zones Zone Dnssec Config Ksk Dnssec Key Version - A read-only array of key signing key (KSK) versions.
- Zsk
Dnssec []GetKey Versions Zones Zone Dnssec Config Zsk Dnssec Key Version - A read-only array of zone signing key (ZSK) versions.
- ksk
Dnssec List<GetKey Versions Zones Zonesec Config Ksksec Key Version> - A read-only array of key signing key (KSK) versions.
- zsk
Dnssec List<GetKey Versions Zones Zonesec Config Zsksec Key Version> - A read-only array of zone signing key (ZSK) versions.
- ksk
Dnssec GetKey Versions Zones Zone Dnssec Config Ksk Dnssec Key Version[] - A read-only array of key signing key (KSK) versions.
- zsk
Dnssec GetKey Versions Zones Zone Dnssec Config Zsk Dnssec Key Version[] - A read-only array of zone signing key (ZSK) versions.
- ksk_
dnssec_ Sequence[dns.key_ versions Get Zones Zone Dnssec Config Ksk Dnssec Key Version] - A read-only array of key signing key (KSK) versions.
- zsk_
dnssec_ Sequence[dns.key_ versions Get Zones Zone Dnssec Config Zsk Dnssec Key Version] - A read-only array of zone signing key (ZSK) versions.
- ksk
Dnssec List<Property Map>Key Versions - A read-only array of key signing key (KSK) versions.
- zsk
Dnssec List<Property Map>Key Versions - A read-only array of zone signing key (ZSK) versions.
GetZonesZoneDnssecConfigKskDnssecKeyVersion
- Algorithm string
- The signing algorithm used for the key.
- Ds
Datas List<GetZones Zone Dnssec Config Ksk Dnssec Key Version Ds Data> - An array of data for DS records corresponding with this key version. An entry will exist for each supported DS digest algorithm.
- Key
Tag int - The key tag associated with the
DnssecKeyVersion
. This key tag will be present in the RRSIG and DS records associated with the key material for thisDnssecKeyVersion
. For more information about key tags, see RFC 4034. - Length
In intBytes - The length of the corresponding private key in bytes, expressed as an integer.
- Predecessor
Dnssec stringKey Version Uuid - When populated, this is the UUID of the
DnssecKeyVersion
that thisDnssecKeyVersion
will replace or has replaced. - Successor
Dnssec stringKey Version Uuid - When populated, this is the UUID of the
DnssecKeyVersion
that will replace, or has replaced, thisDnssecKeyVersion
. - Time
Activated string - The date and time the key version went, or will go, active, expressed in RFC 3339 timestamp format. This is when the key material will be used to generate RRSIGs.
- Time
Created string - The date and time the resource was created in "YYYY-MM-ddThh:mm:ssZ" format with a Z offset, as defined by RFC 3339.
- Time
Expired string - The date and time at which the recommended key version publication/activation lifetime ends, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY should no longer exist in zone contents and no longer be used to generate RRSIGs. For a key sigining key (KSK), if
PromoteZoneDnssecKeyVersion
has not been called on thisDnssecKeyVersion
's successor then it will remain active for arbitrarily long past its recommended lifetime. This prevents service disruption at the potential increased risk of key compromise. - Time
Inactivated string - The date and time the key version went, or will go, inactive, expressed in RFC 3339 timestamp format. This is when the key material will no longer be used to generate RRSIGs. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - Time
Promoted string - The date and time the key version was promoted expressed in RFC 3339 timestamp format.
- Time
Published string - The date and time the key version was, or will be, published, expressed in RFC 3339 timestamp format. This is when the zone contents will include a DNSKEY record corresponding to the key material.
- Time
Unpublished string - The date and time the key version was, or will be, unpublished, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY will be removed from zone contents. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - Uuid string
- The UUID of the
DnssecKeyVersion
.
- Algorithm string
- The signing algorithm used for the key.
- Ds
Datas []GetZones Zone Dnssec Config Ksk Dnssec Key Version Ds Data - An array of data for DS records corresponding with this key version. An entry will exist for each supported DS digest algorithm.
- Key
Tag int - The key tag associated with the
DnssecKeyVersion
. This key tag will be present in the RRSIG and DS records associated with the key material for thisDnssecKeyVersion
. For more information about key tags, see RFC 4034. - Length
In intBytes - The length of the corresponding private key in bytes, expressed as an integer.
- Predecessor
Dnssec stringKey Version Uuid - When populated, this is the UUID of the
DnssecKeyVersion
that thisDnssecKeyVersion
will replace or has replaced. - Successor
Dnssec stringKey Version Uuid - When populated, this is the UUID of the
DnssecKeyVersion
that will replace, or has replaced, thisDnssecKeyVersion
. - Time
Activated string - The date and time the key version went, or will go, active, expressed in RFC 3339 timestamp format. This is when the key material will be used to generate RRSIGs.
- Time
Created string - The date and time the resource was created in "YYYY-MM-ddThh:mm:ssZ" format with a Z offset, as defined by RFC 3339.
- Time
Expired string - The date and time at which the recommended key version publication/activation lifetime ends, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY should no longer exist in zone contents and no longer be used to generate RRSIGs. For a key sigining key (KSK), if
PromoteZoneDnssecKeyVersion
has not been called on thisDnssecKeyVersion
's successor then it will remain active for arbitrarily long past its recommended lifetime. This prevents service disruption at the potential increased risk of key compromise. - Time
Inactivated string - The date and time the key version went, or will go, inactive, expressed in RFC 3339 timestamp format. This is when the key material will no longer be used to generate RRSIGs. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - Time
Promoted string - The date and time the key version was promoted expressed in RFC 3339 timestamp format.
- Time
Published string - The date and time the key version was, or will be, published, expressed in RFC 3339 timestamp format. This is when the zone contents will include a DNSKEY record corresponding to the key material.
- Time
Unpublished string - The date and time the key version was, or will be, unpublished, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY will be removed from zone contents. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - Uuid string
- The UUID of the
DnssecKeyVersion
.
- algorithm String
- The signing algorithm used for the key.
- ds
Datas List<GetZones Zonesec Config Ksksec Key Version Ds Data> - An array of data for DS records corresponding with this key version. An entry will exist for each supported DS digest algorithm.
- key
Tag Integer - The key tag associated with the
DnssecKeyVersion
. This key tag will be present in the RRSIG and DS records associated with the key material for thisDnssecKeyVersion
. For more information about key tags, see RFC 4034. - length
In IntegerBytes - The length of the corresponding private key in bytes, expressed as an integer.
- predecessor
Dnssec StringKey Version Uuid - When populated, this is the UUID of the
DnssecKeyVersion
that thisDnssecKeyVersion
will replace or has replaced. - successor
Dnssec StringKey Version Uuid - When populated, this is the UUID of the
DnssecKeyVersion
that will replace, or has replaced, thisDnssecKeyVersion
. - time
Activated String - The date and time the key version went, or will go, active, expressed in RFC 3339 timestamp format. This is when the key material will be used to generate RRSIGs.
- time
Created String - The date and time the resource was created in "YYYY-MM-ddThh:mm:ssZ" format with a Z offset, as defined by RFC 3339.
- time
Expired String - The date and time at which the recommended key version publication/activation lifetime ends, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY should no longer exist in zone contents and no longer be used to generate RRSIGs. For a key sigining key (KSK), if
PromoteZoneDnssecKeyVersion
has not been called on thisDnssecKeyVersion
's successor then it will remain active for arbitrarily long past its recommended lifetime. This prevents service disruption at the potential increased risk of key compromise. - time
Inactivated String - The date and time the key version went, or will go, inactive, expressed in RFC 3339 timestamp format. This is when the key material will no longer be used to generate RRSIGs. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - time
Promoted String - The date and time the key version was promoted expressed in RFC 3339 timestamp format.
- time
Published String - The date and time the key version was, or will be, published, expressed in RFC 3339 timestamp format. This is when the zone contents will include a DNSKEY record corresponding to the key material.
- time
Unpublished String - The date and time the key version was, or will be, unpublished, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY will be removed from zone contents. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - uuid String
- The UUID of the
DnssecKeyVersion
.
- algorithm string
- The signing algorithm used for the key.
- ds
Datas GetZones Zone Dnssec Config Ksk Dnssec Key Version Ds Data[] - An array of data for DS records corresponding with this key version. An entry will exist for each supported DS digest algorithm.
- key
Tag number - The key tag associated with the
DnssecKeyVersion
. This key tag will be present in the RRSIG and DS records associated with the key material for thisDnssecKeyVersion
. For more information about key tags, see RFC 4034. - length
In numberBytes - The length of the corresponding private key in bytes, expressed as an integer.
- predecessor
Dnssec stringKey Version Uuid - When populated, this is the UUID of the
DnssecKeyVersion
that thisDnssecKeyVersion
will replace or has replaced. - successor
Dnssec stringKey Version Uuid - When populated, this is the UUID of the
DnssecKeyVersion
that will replace, or has replaced, thisDnssecKeyVersion
. - time
Activated string - The date and time the key version went, or will go, active, expressed in RFC 3339 timestamp format. This is when the key material will be used to generate RRSIGs.
- time
Created string - The date and time the resource was created in "YYYY-MM-ddThh:mm:ssZ" format with a Z offset, as defined by RFC 3339.
- time
Expired string - The date and time at which the recommended key version publication/activation lifetime ends, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY should no longer exist in zone contents and no longer be used to generate RRSIGs. For a key sigining key (KSK), if
PromoteZoneDnssecKeyVersion
has not been called on thisDnssecKeyVersion
's successor then it will remain active for arbitrarily long past its recommended lifetime. This prevents service disruption at the potential increased risk of key compromise. - time
Inactivated string - The date and time the key version went, or will go, inactive, expressed in RFC 3339 timestamp format. This is when the key material will no longer be used to generate RRSIGs. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - time
Promoted string - The date and time the key version was promoted expressed in RFC 3339 timestamp format.
- time
Published string - The date and time the key version was, or will be, published, expressed in RFC 3339 timestamp format. This is when the zone contents will include a DNSKEY record corresponding to the key material.
- time
Unpublished string - The date and time the key version was, or will be, unpublished, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY will be removed from zone contents. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - uuid string
- The UUID of the
DnssecKeyVersion
.
- algorithm str
- The signing algorithm used for the key.
- ds_
datas Sequence[dns.Get Zones Zone Dnssec Config Ksk Dnssec Key Version Ds Data] - An array of data for DS records corresponding with this key version. An entry will exist for each supported DS digest algorithm.
- key_
tag int - The key tag associated with the
DnssecKeyVersion
. This key tag will be present in the RRSIG and DS records associated with the key material for thisDnssecKeyVersion
. For more information about key tags, see RFC 4034. - length_
in_ intbytes - The length of the corresponding private key in bytes, expressed as an integer.
- predecessor_
dnssec_ strkey_ version_ uuid - When populated, this is the UUID of the
DnssecKeyVersion
that thisDnssecKeyVersion
will replace or has replaced. - successor_
dnssec_ strkey_ version_ uuid - When populated, this is the UUID of the
DnssecKeyVersion
that will replace, or has replaced, thisDnssecKeyVersion
. - time_
activated str - The date and time the key version went, or will go, active, expressed in RFC 3339 timestamp format. This is when the key material will be used to generate RRSIGs.
- time_
created str - The date and time the resource was created in "YYYY-MM-ddThh:mm:ssZ" format with a Z offset, as defined by RFC 3339.
- time_
expired str - The date and time at which the recommended key version publication/activation lifetime ends, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY should no longer exist in zone contents and no longer be used to generate RRSIGs. For a key sigining key (KSK), if
PromoteZoneDnssecKeyVersion
has not been called on thisDnssecKeyVersion
's successor then it will remain active for arbitrarily long past its recommended lifetime. This prevents service disruption at the potential increased risk of key compromise. - time_
inactivated str - The date and time the key version went, or will go, inactive, expressed in RFC 3339 timestamp format. This is when the key material will no longer be used to generate RRSIGs. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - time_
promoted str - The date and time the key version was promoted expressed in RFC 3339 timestamp format.
- time_
published str - The date and time the key version was, or will be, published, expressed in RFC 3339 timestamp format. This is when the zone contents will include a DNSKEY record corresponding to the key material.
- time_
unpublished str - The date and time the key version was, or will be, unpublished, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY will be removed from zone contents. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - uuid str
- The UUID of the
DnssecKeyVersion
.
- algorithm String
- The signing algorithm used for the key.
- ds
Datas List<Property Map> - An array of data for DS records corresponding with this key version. An entry will exist for each supported DS digest algorithm.
- key
Tag Number - The key tag associated with the
DnssecKeyVersion
. This key tag will be present in the RRSIG and DS records associated with the key material for thisDnssecKeyVersion
. For more information about key tags, see RFC 4034. - length
In NumberBytes - The length of the corresponding private key in bytes, expressed as an integer.
- predecessor
Dnssec StringKey Version Uuid - When populated, this is the UUID of the
DnssecKeyVersion
that thisDnssecKeyVersion
will replace or has replaced. - successor
Dnssec StringKey Version Uuid - When populated, this is the UUID of the
DnssecKeyVersion
that will replace, or has replaced, thisDnssecKeyVersion
. - time
Activated String - The date and time the key version went, or will go, active, expressed in RFC 3339 timestamp format. This is when the key material will be used to generate RRSIGs.
- time
Created String - The date and time the resource was created in "YYYY-MM-ddThh:mm:ssZ" format with a Z offset, as defined by RFC 3339.
- time
Expired String - The date and time at which the recommended key version publication/activation lifetime ends, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY should no longer exist in zone contents and no longer be used to generate RRSIGs. For a key sigining key (KSK), if
PromoteZoneDnssecKeyVersion
has not been called on thisDnssecKeyVersion
's successor then it will remain active for arbitrarily long past its recommended lifetime. This prevents service disruption at the potential increased risk of key compromise. - time
Inactivated String - The date and time the key version went, or will go, inactive, expressed in RFC 3339 timestamp format. This is when the key material will no longer be used to generate RRSIGs. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - time
Promoted String - The date and time the key version was promoted expressed in RFC 3339 timestamp format.
- time
Published String - The date and time the key version was, or will be, published, expressed in RFC 3339 timestamp format. This is when the zone contents will include a DNSKEY record corresponding to the key material.
- time
Unpublished String - The date and time the key version was, or will be, unpublished, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY will be removed from zone contents. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - uuid String
- The UUID of the
DnssecKeyVersion
.
GetZonesZoneDnssecConfigKskDnssecKeyVersionDsData
- Digest
Type string - The type of the digest associated with the rdata.
- Rdata string
- Presentation-format DS record data that must be added to the parent zone. For more information about RDATA, see Supported DNS Resource Record Types
- Digest
Type string - The type of the digest associated with the rdata.
- Rdata string
- Presentation-format DS record data that must be added to the parent zone. For more information about RDATA, see Supported DNS Resource Record Types
- digest
Type String - The type of the digest associated with the rdata.
- rdata String
- Presentation-format DS record data that must be added to the parent zone. For more information about RDATA, see Supported DNS Resource Record Types
- digest
Type string - The type of the digest associated with the rdata.
- rdata string
- Presentation-format DS record data that must be added to the parent zone. For more information about RDATA, see Supported DNS Resource Record Types
- digest_
type str - The type of the digest associated with the rdata.
- rdata str
- Presentation-format DS record data that must be added to the parent zone. For more information about RDATA, see Supported DNS Resource Record Types
- digest
Type String - The type of the digest associated with the rdata.
- rdata String
- Presentation-format DS record data that must be added to the parent zone. For more information about RDATA, see Supported DNS Resource Record Types
GetZonesZoneDnssecConfigZskDnssecKeyVersion
- Algorithm string
- The signing algorithm used for the key.
- Key
Tag int - The key tag associated with the
DnssecKeyVersion
. This key tag will be present in the RRSIG and DS records associated with the key material for thisDnssecKeyVersion
. For more information about key tags, see RFC 4034. - Length
In intBytes - The length of the corresponding private key in bytes, expressed as an integer.
- Predecessor
Dnssec stringKey Version Uuid - When populated, this is the UUID of the
DnssecKeyVersion
that thisDnssecKeyVersion
will replace or has replaced. - Successor
Dnssec stringKey Version Uuid - When populated, this is the UUID of the
DnssecKeyVersion
that will replace, or has replaced, thisDnssecKeyVersion
. - Time
Activated string - The date and time the key version went, or will go, active, expressed in RFC 3339 timestamp format. This is when the key material will be used to generate RRSIGs.
- Time
Created string - The date and time the resource was created in "YYYY-MM-ddThh:mm:ssZ" format with a Z offset, as defined by RFC 3339.
- Time
Expired string - The date and time at which the recommended key version publication/activation lifetime ends, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY should no longer exist in zone contents and no longer be used to generate RRSIGs. For a key sigining key (KSK), if
PromoteZoneDnssecKeyVersion
has not been called on thisDnssecKeyVersion
's successor then it will remain active for arbitrarily long past its recommended lifetime. This prevents service disruption at the potential increased risk of key compromise. - Time
Inactivated string - The date and time the key version went, or will go, inactive, expressed in RFC 3339 timestamp format. This is when the key material will no longer be used to generate RRSIGs. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - Time
Promoted string - The date and time the key version was promoted expressed in RFC 3339 timestamp format.
- Time
Published string - The date and time the key version was, or will be, published, expressed in RFC 3339 timestamp format. This is when the zone contents will include a DNSKEY record corresponding to the key material.
- Time
Unpublished string - The date and time the key version was, or will be, unpublished, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY will be removed from zone contents. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - Uuid string
- The UUID of the
DnssecKeyVersion
.
- Algorithm string
- The signing algorithm used for the key.
- Key
Tag int - The key tag associated with the
DnssecKeyVersion
. This key tag will be present in the RRSIG and DS records associated with the key material for thisDnssecKeyVersion
. For more information about key tags, see RFC 4034. - Length
In intBytes - The length of the corresponding private key in bytes, expressed as an integer.
- Predecessor
Dnssec stringKey Version Uuid - When populated, this is the UUID of the
DnssecKeyVersion
that thisDnssecKeyVersion
will replace or has replaced. - Successor
Dnssec stringKey Version Uuid - When populated, this is the UUID of the
DnssecKeyVersion
that will replace, or has replaced, thisDnssecKeyVersion
. - Time
Activated string - The date and time the key version went, or will go, active, expressed in RFC 3339 timestamp format. This is when the key material will be used to generate RRSIGs.
- Time
Created string - The date and time the resource was created in "YYYY-MM-ddThh:mm:ssZ" format with a Z offset, as defined by RFC 3339.
- Time
Expired string - The date and time at which the recommended key version publication/activation lifetime ends, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY should no longer exist in zone contents and no longer be used to generate RRSIGs. For a key sigining key (KSK), if
PromoteZoneDnssecKeyVersion
has not been called on thisDnssecKeyVersion
's successor then it will remain active for arbitrarily long past its recommended lifetime. This prevents service disruption at the potential increased risk of key compromise. - Time
Inactivated string - The date and time the key version went, or will go, inactive, expressed in RFC 3339 timestamp format. This is when the key material will no longer be used to generate RRSIGs. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - Time
Promoted string - The date and time the key version was promoted expressed in RFC 3339 timestamp format.
- Time
Published string - The date and time the key version was, or will be, published, expressed in RFC 3339 timestamp format. This is when the zone contents will include a DNSKEY record corresponding to the key material.
- Time
Unpublished string - The date and time the key version was, or will be, unpublished, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY will be removed from zone contents. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - Uuid string
- The UUID of the
DnssecKeyVersion
.
- algorithm String
- The signing algorithm used for the key.
- key
Tag Integer - The key tag associated with the
DnssecKeyVersion
. This key tag will be present in the RRSIG and DS records associated with the key material for thisDnssecKeyVersion
. For more information about key tags, see RFC 4034. - length
In IntegerBytes - The length of the corresponding private key in bytes, expressed as an integer.
- predecessor
Dnssec StringKey Version Uuid - When populated, this is the UUID of the
DnssecKeyVersion
that thisDnssecKeyVersion
will replace or has replaced. - successor
Dnssec StringKey Version Uuid - When populated, this is the UUID of the
DnssecKeyVersion
that will replace, or has replaced, thisDnssecKeyVersion
. - time
Activated String - The date and time the key version went, or will go, active, expressed in RFC 3339 timestamp format. This is when the key material will be used to generate RRSIGs.
- time
Created String - The date and time the resource was created in "YYYY-MM-ddThh:mm:ssZ" format with a Z offset, as defined by RFC 3339.
- time
Expired String - The date and time at which the recommended key version publication/activation lifetime ends, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY should no longer exist in zone contents and no longer be used to generate RRSIGs. For a key sigining key (KSK), if
PromoteZoneDnssecKeyVersion
has not been called on thisDnssecKeyVersion
's successor then it will remain active for arbitrarily long past its recommended lifetime. This prevents service disruption at the potential increased risk of key compromise. - time
Inactivated String - The date and time the key version went, or will go, inactive, expressed in RFC 3339 timestamp format. This is when the key material will no longer be used to generate RRSIGs. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - time
Promoted String - The date and time the key version was promoted expressed in RFC 3339 timestamp format.
- time
Published String - The date and time the key version was, or will be, published, expressed in RFC 3339 timestamp format. This is when the zone contents will include a DNSKEY record corresponding to the key material.
- time
Unpublished String - The date and time the key version was, or will be, unpublished, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY will be removed from zone contents. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - uuid String
- The UUID of the
DnssecKeyVersion
.
- algorithm string
- The signing algorithm used for the key.
- key
Tag number - The key tag associated with the
DnssecKeyVersion
. This key tag will be present in the RRSIG and DS records associated with the key material for thisDnssecKeyVersion
. For more information about key tags, see RFC 4034. - length
In numberBytes - The length of the corresponding private key in bytes, expressed as an integer.
- predecessor
Dnssec stringKey Version Uuid - When populated, this is the UUID of the
DnssecKeyVersion
that thisDnssecKeyVersion
will replace or has replaced. - successor
Dnssec stringKey Version Uuid - When populated, this is the UUID of the
DnssecKeyVersion
that will replace, or has replaced, thisDnssecKeyVersion
. - time
Activated string - The date and time the key version went, or will go, active, expressed in RFC 3339 timestamp format. This is when the key material will be used to generate RRSIGs.
- time
Created string - The date and time the resource was created in "YYYY-MM-ddThh:mm:ssZ" format with a Z offset, as defined by RFC 3339.
- time
Expired string - The date and time at which the recommended key version publication/activation lifetime ends, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY should no longer exist in zone contents and no longer be used to generate RRSIGs. For a key sigining key (KSK), if
PromoteZoneDnssecKeyVersion
has not been called on thisDnssecKeyVersion
's successor then it will remain active for arbitrarily long past its recommended lifetime. This prevents service disruption at the potential increased risk of key compromise. - time
Inactivated string - The date and time the key version went, or will go, inactive, expressed in RFC 3339 timestamp format. This is when the key material will no longer be used to generate RRSIGs. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - time
Promoted string - The date and time the key version was promoted expressed in RFC 3339 timestamp format.
- time
Published string - The date and time the key version was, or will be, published, expressed in RFC 3339 timestamp format. This is when the zone contents will include a DNSKEY record corresponding to the key material.
- time
Unpublished string - The date and time the key version was, or will be, unpublished, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY will be removed from zone contents. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - uuid string
- The UUID of the
DnssecKeyVersion
.
- algorithm str
- The signing algorithm used for the key.
- key_
tag int - The key tag associated with the
DnssecKeyVersion
. This key tag will be present in the RRSIG and DS records associated with the key material for thisDnssecKeyVersion
. For more information about key tags, see RFC 4034. - length_
in_ intbytes - The length of the corresponding private key in bytes, expressed as an integer.
- predecessor_
dnssec_ strkey_ version_ uuid - When populated, this is the UUID of the
DnssecKeyVersion
that thisDnssecKeyVersion
will replace or has replaced. - successor_
dnssec_ strkey_ version_ uuid - When populated, this is the UUID of the
DnssecKeyVersion
that will replace, or has replaced, thisDnssecKeyVersion
. - time_
activated str - The date and time the key version went, or will go, active, expressed in RFC 3339 timestamp format. This is when the key material will be used to generate RRSIGs.
- time_
created str - The date and time the resource was created in "YYYY-MM-ddThh:mm:ssZ" format with a Z offset, as defined by RFC 3339.
- time_
expired str - The date and time at which the recommended key version publication/activation lifetime ends, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY should no longer exist in zone contents and no longer be used to generate RRSIGs. For a key sigining key (KSK), if
PromoteZoneDnssecKeyVersion
has not been called on thisDnssecKeyVersion
's successor then it will remain active for arbitrarily long past its recommended lifetime. This prevents service disruption at the potential increased risk of key compromise. - time_
inactivated str - The date and time the key version went, or will go, inactive, expressed in RFC 3339 timestamp format. This is when the key material will no longer be used to generate RRSIGs. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - time_
promoted str - The date and time the key version was promoted expressed in RFC 3339 timestamp format.
- time_
published str - The date and time the key version was, or will be, published, expressed in RFC 3339 timestamp format. This is when the zone contents will include a DNSKEY record corresponding to the key material.
- time_
unpublished str - The date and time the key version was, or will be, unpublished, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY will be removed from zone contents. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - uuid str
- The UUID of the
DnssecKeyVersion
.
- algorithm String
- The signing algorithm used for the key.
- key
Tag Number - The key tag associated with the
DnssecKeyVersion
. This key tag will be present in the RRSIG and DS records associated with the key material for thisDnssecKeyVersion
. For more information about key tags, see RFC 4034. - length
In NumberBytes - The length of the corresponding private key in bytes, expressed as an integer.
- predecessor
Dnssec StringKey Version Uuid - When populated, this is the UUID of the
DnssecKeyVersion
that thisDnssecKeyVersion
will replace or has replaced. - successor
Dnssec StringKey Version Uuid - When populated, this is the UUID of the
DnssecKeyVersion
that will replace, or has replaced, thisDnssecKeyVersion
. - time
Activated String - The date and time the key version went, or will go, active, expressed in RFC 3339 timestamp format. This is when the key material will be used to generate RRSIGs.
- time
Created String - The date and time the resource was created in "YYYY-MM-ddThh:mm:ssZ" format with a Z offset, as defined by RFC 3339.
- time
Expired String - The date and time at which the recommended key version publication/activation lifetime ends, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY should no longer exist in zone contents and no longer be used to generate RRSIGs. For a key sigining key (KSK), if
PromoteZoneDnssecKeyVersion
has not been called on thisDnssecKeyVersion
's successor then it will remain active for arbitrarily long past its recommended lifetime. This prevents service disruption at the potential increased risk of key compromise. - time
Inactivated String - The date and time the key version went, or will go, inactive, expressed in RFC 3339 timestamp format. This is when the key material will no longer be used to generate RRSIGs. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - time
Promoted String - The date and time the key version was promoted expressed in RFC 3339 timestamp format.
- time
Published String - The date and time the key version was, or will be, published, expressed in RFC 3339 timestamp format. This is when the zone contents will include a DNSKEY record corresponding to the key material.
- time
Unpublished String - The date and time the key version was, or will be, unpublished, expressed in RFC 3339 timestamp format. This is when the corresponding DNSKEY will be removed from zone contents. For a key signing key (KSK)
DnssecKeyVersion
, this is populated afterPromoteZoneDnssecKeyVersion
has been called on its successorDnssecKeyVersion
. - uuid String
- The UUID of the
DnssecKeyVersion
.
GetZonesZoneExternalDownstream
- address str
- The server's IP address (IPv4 or IPv6).
- port int
- The server's port. Port value must be a value of 53, otherwise omit the port value.
- tsig_
key_ strid - Search for zones that are associated with a TSIG key.
GetZonesZoneExternalMaster
- address str
- The server's IP address (IPv4 or IPv6).
- port int
- The server's port. Port value must be a value of 53, otherwise omit the port value.
- tsig_
key_ strid - Search for zones that are associated with a TSIG key.
GetZonesZoneNameserver
- Hostname string
- The hostname of the nameserver.
- Hostname string
- The hostname of the nameserver.
- hostname String
- The hostname of the nameserver.
- hostname string
- The hostname of the nameserver.
- hostname str
- The hostname of the nameserver.
- hostname String
- The hostname of the nameserver.
GetZonesZoneZoneTransferServer
- Address string
- The server's IP address (IPv4 or IPv6).
- Is
Transfer boolDestination - A Boolean flag indicating whether or not the server is a zone data transfer destination.
- Is
Transfer boolSource - A Boolean flag indicating whether or not the server is a zone data transfer source.
- Port int
- The server's port. Port value must be a value of 53, otherwise omit the port value.
- Address string
- The server's IP address (IPv4 or IPv6).
- Is
Transfer boolDestination - A Boolean flag indicating whether or not the server is a zone data transfer destination.
- Is
Transfer boolSource - A Boolean flag indicating whether or not the server is a zone data transfer source.
- Port int
- The server's port. Port value must be a value of 53, otherwise omit the port value.
- address String
- The server's IP address (IPv4 or IPv6).
- is
Transfer BooleanDestination - A Boolean flag indicating whether or not the server is a zone data transfer destination.
- is
Transfer BooleanSource - A Boolean flag indicating whether or not the server is a zone data transfer source.
- port Integer
- The server's port. Port value must be a value of 53, otherwise omit the port value.
- address string
- The server's IP address (IPv4 or IPv6).
- is
Transfer booleanDestination - A Boolean flag indicating whether or not the server is a zone data transfer destination.
- is
Transfer booleanSource - A Boolean flag indicating whether or not the server is a zone data transfer source.
- port number
- The server's port. Port value must be a value of 53, otherwise omit the port value.
- address str
- The server's IP address (IPv4 or IPv6).
- is_
transfer_ booldestination - A Boolean flag indicating whether or not the server is a zone data transfer destination.
- is_
transfer_ boolsource - A Boolean flag indicating whether or not the server is a zone data transfer source.
- port int
- The server's port. Port value must be a value of 53, otherwise omit the port value.
- address String
- The server's IP address (IPv4 or IPv6).
- is
Transfer BooleanDestination - A Boolean flag indicating whether or not the server is a zone data transfer destination.
- is
Transfer BooleanSource - A Boolean flag indicating whether or not the server is a zone data transfer source.
- port Number
- The server's port. Port value must be a value of 53, otherwise omit the port value.
Package Details
- Repository
- oci pulumi/pulumi-oci
- License
- Apache-2.0
- Notes
- This Pulumi package is based on the
oci
Terraform Provider.