Skip to main content

hsm_clusters

Creates, updates, deletes, gets or lists a hsm_clusters resource.

Overview​

Namehsm_clusters
TypeResource
Idoci.kms.hsm_clusters

Fields​

The following fields are returned by SELECT queries:

The specified HSM Cluster resource.

NameDatatypeDescription
idstringThe OCID of the HSMCluster resource.
compartmentIdstringThe OCID of the compartment that contains this HSMCluster resource.
definedTagsobjectDefined tags for this resource. Each key is predefined and scoped to a namespace. For more information, see [Resource Tags](/Content/General/Concepts/resourcetags.htm). Example: {"Operations": {"CostCenter": "42"}}
displayNamestringA user-friendly display name for the HSMCluster resource. It does not have to be unique, and it is changeable. Avoid entering confidential information.
dnsNamestringDNS name for the HSM Cluster -- this will contain information about the region as well.
freeformTagsobjectFree-form tags for this resource. Each tag is a simple key-value pair with no predefined name, type, or namespace. For more information, see [Resource Tags](/Content/General/Concepts/resourcetags.htm). Example: {"Department": "Finance"}
lifecycleStatestringThe HSMCluster's current state. Example: ACTIVE (CREATING, INITIALIZATION_REQUIRED, INITIALIZING, ACTIVATION_REQUIRED, ACTIVATING, ACTIVE, DELETING, DELETED, PENDING_DELETION, SCHEDULING_DELETION, CANCELLING_DELETION)
timeCreatedstring (date-time)The date and time this HSM resource was created, expressed in [RFC 3339](https:​//tools.ietf.org/html/rfc3339) timestamp format. Example: 2023-04-03T21:10:29.600Z
timeOfDeletionstring (date-time)An optional property indicating when to delete the key, expressed in [RFC 3339](https:​//tools.ietf.org/html/rfc3339) timestamp format. Example: 2019-04-03T21:10:29.600Z
timeUpdatedstring (date-time)The date and time this HSM resource was updated, expressed in [RFC 3339](https:​//tools.ietf.org/html/rfc3339) timestamp format. Example: 2023-04-03T21:10:29.600Z

Methods​

The following methods are available for this resource:

NameAccessible byRequired ParamsOptional ParamsDescription
getselecthsmClusterId, regionopc-request-idRetrieves configuration details for the specified HSM Cluster resource.<br /><br />As a provisioning operation, this call is subject to a Key Management limit that applies to<br />the total number of requests across all provisioning read operations. Key Management might<br />throttle this call to reject an otherwise valid request when the total rate of provisioning<br />read operations exceeds 10 requests per second for a given tenancy.<br />
listselectcompartmentId, regionlimit, page, opc-request-id, sortBy, sortOrderLists all HSM cluster resources contained within the specified compartment.<br /><br />As a provisioning operation, this call is subject to a Key Management limit that applies to<br />the total number of requests across all provisioning read operations. Key Management might<br />throttle this call to reject an otherwise valid request when the total rate of provisioning<br />read operations exceeds 10 requests per second for a given tenancy.<br />
createinsertregion, compartmentId, displayNameopc-request-id, opc-retry-tokenCreates a new HSM cluster resource.<br />
updateupdatehsmClusterId, regionif-match, opc-request-idModifies properties of an HSM cluster resource, including displayName, freeformTags and definedTags.<br /><br />As a provisioning operation, this call is subject to a Key Management limit that applies to<br />the total number of requests across all provisioning write operations. Key Management might<br />throttle this call to reject an otherwise valid request when the total rate of provisioning<br />write operations exceeds 10 requests per second for a given tenancy.<br />
cancel_hsm_cluster_deletionexechsmClusterId, regionif-match, opc-request-id, opc-retry-tokenCancels deletion of specified HSM Cluster, restores it and associated HSM partitions to pre-deletion states.
change_compartmentexechsmClusterId, region, compartmentIdif-match, opc-request-id, opc-retry-tokenMoves a HSM Cluster resource to a different compartment within the same tenancy.<br />
download_certificate_signing_requestexechsmClusterId, regionopc-request-id, opc-retry-token, if-matchRetrieves the certificate signing request for the designated HSM Cluster resource.<br />
schedule_hsm_cluster_deletionexechsmClusterId, regionif-match, opc-request-id, opc-retry-tokenSchedules HSM cluster for deletion, update its lifecycle state to 'PENDING_DELETION' <br />and deletes it after the retention period.<br />
upload_partition_certificatesexechsmClusterId, region, partitionCertificate, partitionOwnerCertificateopc-request-id, opc-retry-token, if-matchUploads the partition owner certificates to the HSM Cluster resource.<br />

Parameters​

Parameters can be passed in the WHERE clause of a query. Check the Methods section to see which parameters are required or optional for each operation.

NameDatatypeDescription
compartmentIdstringThe OCID of the compartment.
hsmClusterIdstringThe OCID of the HSM Cluster. This is a unique identifier assigned to each hsmCluster.
regionstringOCI region identifier (e.g. us-ashburn-1, ap-sydney-1); resolves from OCI_REGION when not supplied in the query. (default: us-ashburn-1, x-stackQL-envVar: OCI_REGION)
if-matchstringFor optimistic concurrency control. In the PUT or DELETE call for a resource, set the if-match parameter to the value of the etag from a previous GET or POST response for that resource. The resource will be updated or deleted only if the etag you provide matches the resource's current etag value.
limitintegerThe maximum number of items to return in a paginated "List" call.
opc-request-idstringUnique identifier for the request. If provided, the returned request ID will include this value. Otherwise, a random request ID will be generated by the service.
opc-retry-tokenstringA token that uniquely identifies a request so it can be retried in case of a timeout or server error without risk of executing that same action again. Retry tokens expire after 24 hours, but can be invalidated before then due to conflicting operations (e.g., if a resource has been deleted and purged from the system, then a retry of the original creation request may be rejected).
pagestringThe value of the opc-next-page response header from the previous "List" call.
sortBystringThe field to sort by. You can specify only one sort order. The default order for TIMECREATED is descending. The default order for DISPLAYNAME is ascending.
sortOrderstringThe sort order to use, either ascending (ASC) or descending (DESC).

SELECT examples​

Retrieves configuration details for the specified HSM Cluster resource.<br /><br />As a provisioning operation, this call is subject to a Key Management limit that applies to<br />the total number of requests across all provisioning read operations. Key Management might<br />throttle this call to reject an otherwise valid request when the total rate of provisioning<br />read operations exceeds 10 requests per second for a given tenancy.<br />

SELECT
id,
compartmentId,
definedTags,
displayName,
dnsName,
freeformTags,
lifecycleState,
timeCreated,
timeOfDeletion,
timeUpdated
FROM oci.kms.hsm_clusters
WHERE hsmClusterId = '{{ hsmClusterId }}' -- required
AND region = '{{ region }}' -- required
AND opc-request-id = '{{ opc-request-id }}'
;

INSERT examples​

Creates a new HSM cluster resource.<br />

INSERT INTO oci.kms.hsm_clusters (
compartmentId,
definedTags,
displayName,
freeformTags,
region,
opc-request-id,
opc-retry-token
)
SELECT
'{{ compartmentId }}' /* required */,
'{{ definedTags }}',
'{{ displayName }}' /* required */,
'{{ freeformTags }}',
'{{ region }}',
'{{ opc-request-id }}',
'{{ opc-retry-token }}'
RETURNING
id,
compartmentId,
definedTags,
displayName,
dnsName,
freeformTags,
lifecycleState,
timeCreated,
timeOfDeletion,
timeUpdated
;

UPDATE examples​

Modifies properties of an HSM cluster resource, including displayName, freeformTags and definedTags.<br /><br />As a provisioning operation, this call is subject to a Key Management limit that applies to<br />the total number of requests across all provisioning write operations. Key Management might<br />throttle this call to reject an otherwise valid request when the total rate of provisioning<br />write operations exceeds 10 requests per second for a given tenancy.<br />

UPDATE oci.kms.hsm_clusters
SET
definedTags = '{{ definedTags }}',
displayName = '{{ displayName }}',
freeformTags = '{{ freeformTags }}'
WHERE
hsmClusterId = '{{ hsmClusterId }}' --required
AND region = '{{ region }}' --required
AND if-match = '{{ if-match}}'
AND opc-request-id = '{{ opc-request-id}}'
RETURNING
id,
compartmentId,
definedTags,
displayName,
dnsName,
freeformTags,
lifecycleState,
timeCreated,
timeOfDeletion,
timeUpdated;

Lifecycle Methods​

Cancels deletion of specified HSM Cluster, restores it and associated HSM partitions to pre-deletion states.

EXEC oci.kms.hsm_clusters.cancel_hsm_cluster_deletion
@hsmClusterId='{{ hsmClusterId }}' --required,
@region='{{ region }}' --required,
@if-match='{{ if-match }}',
@opc-request-id='{{ opc-request-id }}',
@opc-retry-token='{{ opc-retry-token }}'
;