From 843ed483fc9134ea4b8f1d71d2c146b59c2faeb1 Mon Sep 17 00:00:00 2001
From: aws-sdk-python-automation Invokes an alias of a flow to run the inputs that you specify and return the output of each node as a stream. If there's an error, the error is returned. For more information, see Test a flow in Amazon Bedrock in the Amazon Bedrock User Guide. Invokes an alias of a flow to run the inputs that you specify and return the output of each node as a stream. If there's an error, the error is returned. For more information, see Test a flow in Amazon Bedrock in the Amazon Bedrock User Guide. The CLI doesn't support streaming operations in Amazon Bedrock, including Contains information about an input into the flow. Contains information about an input into the prompt flow. A name for the input of the flow input node. The name of the flow input node that begins the prompt flow. A name for the output of the flow input node. The name of the output from the flow input node that begins the prompt flow. Contains information about an input into the flow and what to do with it. This data type is used in the following API operations: Contains information about an input into the prompt flow and where to send it. This data type is used in the following API operations: The input for the flow input node. The input to send to the prompt flow input node. Contains information about an input into the flow. This data type is used in the following API operations: A name for the output of the flow. The content in the output. Contains information about the output node. This data type is used in the following API operations: Contains information about the content in an output from prompt flow invocation. This data type is used in the following API operations: The output of the node. The content in the output. The name of the node to which input was provided. The name of the flow output node that the output is from. The type of node to which input was provided. The type of the node that the output is from. Contains information about an output from flow invoction. This data type is used in the following API operations: Contains information about an output from prompt flow invoction. This data type is used in the following API operations: While generating a response, the model determines the probability of the following token at each point of generation. The value that you set for While generating a response, the model determines the probability of the following token at each point of generation. The value that you set for Specifications about the inference parameters that were provided alongside the prompt. These are specified in the PromptOverrideConfiguration object that was set when the agent was created or updated. For more information, see Inference parameters for foundation models. Contains details of the foundation model usage. Provides details of the foundation model. Settings for how the model processes the prompt prior to retrieval and generation. Contains information about the foundation model output. Contains details of the raw response from the foundation model output. The unique identifier of the trace. The foundation model output from the orchestration step. The input for the orchestration step. The The The Contains information pertaining to the output from the foundation model that is being invoked. Details about the observation (the output of the action group Lambda or knowledge base) made by the agent. The foundation model's raw output content. Contains the raw output from the foundation model. Contains information about the input tokens from the foundation model usage. Contains information about the output tokens from the foundation model usage. Contains information of the usage of the foundation model. This IAM-authenticated API operation provides a code that Amazon Cognito sent to your user when they signed up in your user pool. After your user enters their code, they confirm ownership of the email address or phone number that they provided, and their user account becomes active. Depending on your user pool configuration, your users will receive their confirmation code in an email or SMS message. Local users who signed up in your user pool are the only type of user who can confirm sign-up with a code. Users who federate through an external identity provider (IdP) have already been confirmed by their IdP. Administrator-created users confirm their accounts when they respond to their invitation email message and choose a password. Amazon Cognito evaluates Identity and Access Management (IAM) policies in requests for this API operation. For this operation, you must use IAM credentials to authorize requests, and you must grant yourself the corresponding IAM permission in a policy. Learn more This IAM-authenticated API operation confirms user sign-up as an administrator. Unlike ConfirmSignUp, your IAM credentials authorize user account confirmation. No confirmation code is required. This request sets a user account active in a user pool that requires confirmation of new user accounts before they can sign in. You can configure your user pool to not send confirmation codes to new users and instead confirm them with this API operation on the back end. Amazon Cognito evaluates Identity and Access Management (IAM) policies in requests for this API operation. For this operation, you must use IAM credentials to authorize requests, and you must grant yourself the corresponding IAM permission in a policy. Learn more Sets the specified user's password in a user pool as an administrator. Works on any user. The password can be temporary or permanent. If it is temporary, the user status enters the Once the user has set a new password, or the password is permanent, the user status is set to Amazon Cognito evaluates Identity and Access Management (IAM) policies in requests for this API operation. For this operation, you must use IAM credentials to authorize requests, and you must grant yourself the corresponding IAM permission in a policy. Learn more Begins setup of time-based one-time password (TOTP) multi-factor authentication (MFA) for a user, with a unique private key that Amazon Cognito generates and returns in the API response. You can authorize an Amazon Cognito disassociates an existing software token when you verify the new token in a VerifySoftwareToken API request. If you don't verify the software token and your user pool doesn't require MFA, the user can then authenticate with user name and password credentials alone. If your user pool requires TOTP MFA, Amazon Cognito generates an After you set up software token MFA for your user, Amazon Cognito generates a Amazon Cognito doesn't evaluate Identity and Access Management (IAM) policies in requests for this API operation. For this operation, you can't use IAM credentials to authorize requests, and you can't grant IAM permissions in policies. For more information about authorization models in Amazon Cognito, see Using the Amazon Cognito user pools API and user pool endpoints. Begins setup of time-based one-time password (TOTP) multi-factor authentication (MFA) for a user, with a unique private key that Amazon Cognito generates and returns in the API response. You can authorize an Amazon Cognito disassociates an existing software token when you verify the new token in a VerifySoftwareToken API request. If you don't verify the software token and your user pool doesn't require MFA, the user can then authenticate with user name and password credentials alone. If your user pool requires TOTP MFA, Amazon Cognito generates an After you set up software token MFA for your user, Amazon Cognito generates a Amazon Cognito doesn't evaluate Identity and Access Management (IAM) policies in requests for this API operation. For this operation, you can't use IAM credentials to authorize requests, and you can't grant IAM permissions in policies. For more information about authorization models in Amazon Cognito, see Using the Amazon Cognito user pools API and user pool endpoints. Gets the detailed activity logging configuration for a user pool. Gets the logging configuration of a user pool. Sets up or modifies the detailed activity logging configuration of a user pool. Sets up or modifies the logging configuration of a user pool. User pools can export user notification logs and advanced security features user activity logs. The Amazon Resource Name (arn) of a CloudWatch Logs log group where your user pool sends logs. The log group must not be encrypted with Key Management Service and must be in the same Amazon Web Services account as your user pool. To send logs to log groups with a resource policy of a size greater than 5120 characters, configure a log group with a path that starts with The CloudWatch logging destination of a user pool detailed activity logging configuration. Configuration for the CloudWatch log group destination of user pool detailed activity logging, or of user activity log export with advanced security features. Errors and responses that you want Amazon Cognito APIs to return during authentication, account confirmation, and password recovery when the user doesn't exist in the user pool. When set to Valid values include: Errors and responses that you want Amazon Cognito APIs to return during authentication, account confirmation, and password recovery when the user doesn't exist in the user pool. When set to Valid values include: Defaults to The ARN of an Amazon Data Firehose stream that's the destination for advanced security features log export. Configuration for the Amazon Data Firehose stream destination of user activity log export with advanced security features. The ID of the user pool where you want to view detailed activity logging configuration. The ID of the user pool that has the logging configuration that you want to view. The detailed activity logging configuration of the requested user pool. The logging configuration of the requested user pool. The The The source of events that your user pool sends for detailed activity logging. The source of events that your user pool sends for logging. To send error-level logs about user notification activity, set to The CloudWatch logging destination of a user pool. The CloudWatch log group destination of user pool detailed activity logs, or of user activity log export with advanced security features. The Amazon S3 bucket destination of user activity log export with advanced security features. To activate this setting, advanced security features must be active in your user pool. The Amazon Data Firehose stream destination of user activity log export with advanced security features. To activate this setting, advanced security features must be active in your user pool. The logging parameters of a user pool. The ID of the user pool where you configured detailed activity logging. The ID of the user pool where you configured logging. The detailed activity logging destination of a user pool. A logging destination of a user pool. User pools can have multiple logging destinations for message-delivery and user-activity logs. The logging parameters of a user pool. The logging parameters of a user pool returned in response to The message returned when a user's new password matches a previous password and doesn't comply with the password-history policy. In the password policy that you have set, refers to whether you have required users to use at least one symbol in their password. The number of previous passwords that you want Amazon Cognito to restrict each user from reusing. Users can't set a password that matches any of Password history isn't enforced and isn't displayed in DescribeUserPool responses when you set this value to The number of days a temporary password is valid in the password policy. If the user doesn't sign in during this time, an administrator must reset their password. Defaults to When you set InvokeFlow
.Top P
determines the number of most-likely candidates from which the model chooses the next token in the sequence. For example, if you set topP
to 80, the model only selects the next token from the top 80% of the probability distribution of next tokens.Top P
determines the number of most-likely candidates from which the model chooses the next token in the sequence. For example, if you set topP
to 0.8, the model only selects the next token from the top 80% of the probability distribution of next tokens.
"
},
+ "modelInvocationOutput":{
+ "shape":"OrchestrationModelInvocationOutput",
+ "documentation":"type
is ORCHESTRATION
.text
contains the prompt.inferenceConfiguration
, parserMode
, and overrideLambda
values are set in the PromptOverrideConfiguration object that was set when the agent was created or updated.FORCE_CHANGE_PASSWORD
state. When the user next tries to sign in, the InitiateAuth/AdminInitiateAuth response will contain the NEW_PASSWORD_REQUIRED
challenge. If the user doesn't sign in before it expires, the user won't be able to sign in, and an administrator must reset their password. Confirmed
.AdminSetUserPassword
can set a password for the user profile that Amazon Cognito creates for third-party federated users. When you set a password, the federated user's status changes from EXTERNAL_PROVIDER
to CONFIRMED
. A user in this state can sign in as a federated user, and initiate authentication flows in the API like a linked native user. They can also modify their password and attributes in token-authenticated API requests like ChangePassword
and UpdateUserAttributes
. As a best security practice and to keep users in sync with your external IdP, don't set passwords on federated user profiles. To set up a federated user for native sign-in with a linked native user, refer to Linking federated users to an existing user profile.AssociateSoftwareToken
request with either the user's access token, or a session string from a challenge response that you received from Amazon Cognito.MFA_SETUP
or SOFTWARE_TOKEN_SETUP
challenge each time your user signs. Complete setup with AssociateSoftwareToken
and VerifySoftwareToken
.SOFTWARE_TOKEN_MFA
challenge when they authenticate. Respond to this challenge with your user's TOTP.AssociateSoftwareToken
request with either the user's access token, or a session string from a challenge response that you received from Amazon Cognito.MFA_SETUP
or SOFTWARE_TOKEN_SETUP
challenge each time your user signs in. Complete setup with AssociateSoftwareToken
and VerifySoftwareToken
.SOFTWARE_TOKEN_MFA
challenge when they authenticate. Respond to this challenge with your user's TOTP./aws/vendedlogs
. For more information, see Enabling logging from certain Amazon Web Services services.ENABLED
and the user doesn't exist, authentication returns an error indicating either the username or password was incorrect. Account confirmation and password recovery return a response indicating a code was sent to a simulated destination. When set to LEGACY
, those APIs return a UserNotFoundException
exception if the user doesn't exist in the user pool.
"
+ "documentation":"ENABLED
- This prevents user existence-related errors.LEGACY
- This represents the early behavior of Amazon Cognito where user existence related errors aren't prevented.ENABLED
and the user doesn't exist, authentication returns an error indicating either the username or password was incorrect. Account confirmation and password recovery return a response indicating a code was sent to a simulated destination. When set to LEGACY
, those APIs return a UserNotFoundException
exception if the user doesn't exist in the user pool.
ENABLED
- This prevents user existence-related errors.LEGACY
- This represents the early behavior of Amazon Cognito where user existence related errors aren't prevented.LEGACY
when you don't provide a value.errorlevel
selection of logs that a user pool sends for detailed activity logging.errorlevel
selection of logs that a user pool sends for detailed activity logging. To send userNotification
activity with information about message delivery, choose ERROR
with CloudWatchLogsConfiguration
. To send userAuthEvents
activity with user logs from advanced security features, choose INFO
with one of CloudWatchLogsConfiguration
, FirehoseConfiguration
, or S3Configuration
.userNotification
. To send info-level logs about advanced security features user activity, set to userAuthEvents
.GetLogDeliveryConfiguration
.n
previous passwords, where n
is the value of PasswordHistorySize
.0
or don't provide it. To activate this setting, advanced security features must be active in your user pool.7
. If you submit a value of 0
, Amazon Cognito treats it as a null value and sets TemporaryPasswordValidityDays
to its default value.TemporaryPasswordValidityDays
for a user pool, you can no longer set a value for the legacy UnusedAccountValidityDays
parameter in that user pool.
Configuration for the Amazon S3 bucket destination of user activity log export with advanced security features.
" + }, "SESConfigurationSet":{ "type":"string", "max":64, @@ -6877,11 +6939,11 @@ "members":{ "UserPoolId":{ "shape":"UserPoolIdType", - "documentation":"The ID of the user pool where you want to configure detailed activity logging .
" + "documentation":"The ID of the user pool where you want to configure logging.
" }, "LogConfigurations":{ "shape":"LogConfigurationListType", - "documentation":"A collection of all of the detailed activity logging configurations for a user pool.
" + "documentation":"A collection of the logging configurations for a user pool.
" } } }, @@ -7112,7 +7174,7 @@ }, "UserSub":{ "shape":"StringType", - "documentation":"The UUID of the authenticated user. This isn't the same as username
.
The 128-bit ID of the authenticated user. This isn't the same as username
.
The response from the server for a registration request.
" @@ -7778,7 +7840,7 @@ }, "PreventUserExistenceErrors":{ "shape":"PreventUserExistenceErrorTypes", - "documentation":"Errors and responses that you want Amazon Cognito APIs to return during authentication, account confirmation, and password recovery when the user doesn't exist in the user pool. When set to ENABLED
and the user doesn't exist, authentication returns an error indicating either the username or password was incorrect. Account confirmation and password recovery return a response indicating a code was sent to a simulated destination. When set to LEGACY
, those APIs return a UserNotFoundException
exception if the user doesn't exist in the user pool.
Valid values include:
ENABLED
- This prevents user existence-related errors.
LEGACY
- This represents the early behavior of Amazon Cognito where user existence related errors aren't prevented.
Errors and responses that you want Amazon Cognito APIs to return during authentication, account confirmation, and password recovery when the user doesn't exist in the user pool. When set to ENABLED
and the user doesn't exist, authentication returns an error indicating either the username or password was incorrect. Account confirmation and password recovery return a response indicating a code was sent to a simulated destination. When set to LEGACY
, those APIs return a UserNotFoundException
exception if the user doesn't exist in the user pool.
Valid values include:
ENABLED
- This prevents user existence-related errors.
LEGACY
- This represents the early behavior of Amazon Cognito where user existence related errors aren't prevented.
Defaults to LEGACY
when you don't provide a value.
Errors and responses that you want Amazon Cognito APIs to return during authentication, account confirmation, and password recovery when the user doesn't exist in the user pool. When set to ENABLED
and the user doesn't exist, authentication returns an error indicating either the username or password was incorrect. Account confirmation and password recovery return a response indicating a code was sent to a simulated destination. When set to LEGACY
, those APIs return a UserNotFoundException
exception if the user doesn't exist in the user pool.
Valid values include:
ENABLED
- This prevents user existence-related errors.
LEGACY
- This represents the old behavior of Amazon Cognito where user existence related errors aren't prevented.
Errors and responses that you want Amazon Cognito APIs to return during authentication, account confirmation, and password recovery when the user doesn't exist in the user pool. When set to ENABLED
and the user doesn't exist, authentication returns an error indicating either the username or password was incorrect. Account confirmation and password recovery return a response indicating a code was sent to a simulated destination. When set to LEGACY
, those APIs return a UserNotFoundException
exception if the user doesn't exist in the user pool.
Valid values include:
ENABLED
- This prevents user existence-related errors.
LEGACY
- This represents the early behavior of Amazon Cognito where user existence related errors aren't prevented.
Defaults to LEGACY
when you don't provide a value.
Updates the enrollment (opt in and opt out) status of an account to the Cost Optimization Hub service.
If the account is a management account of an organization, this action can also be used to enroll member accounts of the organization.
You must have the appropriate permissions to opt in to Cost Optimization Hub and to view its recommendations. When you opt in, Cost Optimization Hub automatically creates a service-linked role in your account to access its data.
" + "documentation":"Updates the enrollment (opt in and opt out) status of an account to the Cost Optimization Hub service.
If the account is a management account or delegated administrator of an organization, this action can also be used to enroll member accounts of the organization.
You must have the appropriate permissions to opt in to Cost Optimization Hub and to view its recommendations. When you opt in, Cost Optimization Hub automatically creates a service-linked role in your account to access its data.
" }, "UpdatePreferences":{ "name":"UpdatePreferences", @@ -881,7 +881,7 @@ }, "includeMemberAccounts":{ "shape":"Boolean", - "documentation":"The enrollment status of all member accounts in the organization if the account is the management account.
" + "documentation":"The enrollment status of all member accounts in the organization if the account is the management account or delegated administrator.
" }, "nextToken":{ "shape":"String", @@ -900,7 +900,11 @@ }, "maxResults":{ "shape":"ListRecommendationSummariesRequestMaxResultsInteger", - "documentation":"The maximum number of recommendations that are returned for the request.
" + "documentation":"The maximum number of recommendations to be returned for the request.
" + }, + "metrics":{ + "shape":"SummaryMetricsList", + "documentation":"Additional metrics to be returned for the request. The only valid value is savingsPercentage
.
List of all savings recommendations.
" + "documentation":"A list of all savings recommendations.
" }, "groupBy":{ "shape":"String", @@ -933,6 +937,10 @@ "shape":"String", "documentation":"The currency code used for the recommendation.
" }, + "metrics":{ + "shape":"SummaryMetricsResult", + "documentation":"The results or descriptions for the additional metrics, based on whether the metrics were or were not requested.
" + }, "nextToken":{ "shape":"String", "documentation":"The token to retrieve the next set of results.
" @@ -1714,6 +1722,26 @@ "documentation":"The storage configuration used for recommendations.
" }, "String":{"type":"string"}, + "SummaryMetrics":{ + "type":"string", + "enum":["SavingsPercentage"] + }, + "SummaryMetricsList":{ + "type":"list", + "member":{"shape":"SummaryMetrics"}, + "max":100, + "min":1 + }, + "SummaryMetricsResult":{ + "type":"structure", + "members":{ + "savingsPercentage":{ + "shape":"String", + "documentation":"The savings percentage based on your Amazon Web Services spend over the past 30 days.
Savings percentage is only supported when filtering by Region, account ID, or tags.
The results or descriptions for the additional metrics, based on whether the metrics were or were not requested.
" + }, "Tag":{ "type":"structure", "members":{ @@ -1753,7 +1781,7 @@ }, "includeMemberAccounts":{ "shape":"Boolean", - "documentation":"Indicates whether to enroll member accounts of the organization if the account is the management account.
" + "documentation":"Indicates whether to enroll member accounts of the organization if the account is the management account or delegated administrator.
" } } }, diff --git a/botocore/data/workspaces/2015-04-08/service-2.json b/botocore/data/workspaces/2015-04-08/service-2.json index baa446a4c5..306e6faafa 100644 --- a/botocore/data/workspaces/2015-04-08/service-2.json +++ b/botocore/data/workspaces/2015-04-08/service-2.json @@ -4171,7 +4171,7 @@ }, "Applications":{ "shape":"ApplicationList", - "documentation":"If specified, the version of Microsoft Office to subscribe to. Valid only for Windows 10 and 11 BYOL images. For more information about subscribing to Office for BYOL images, see Bring Your Own Windows Desktop Licenses.
Although this parameter is an array, only one item is allowed at this time.
Windows 11 only supports Microsoft_Office_2019
.
If specified, the version of Microsoft Office to subscribe to. Valid only for Windows 10 and 11 BYOL images. For more information about subscribing to Office for BYOL images, see Bring Your Own Windows Desktop Licenses.
Although this parameter is an array, only one item is allowed at this time.
During the image import process, non-GPU WSP WorkSpaces with Windows 11 support only Microsoft_Office_2019
. GPU WSP WorkSpaces with Windows 11 do not support Office installation.