Class Headers
- All Implemented Interfaces:
Serializable,SdkPojo,ToCopyableBuilder<Headers.Builder,Headers>
Inspect all headers in the web request. You can specify the parts of the headers to inspect and you can narrow the set of headers to inspect by including or excluding specific keys.
This is used to indicate the web request component to inspect, in the FieldToMatch specification.
If you want to inspect just the value of a single header, use the SingleHeader FieldToMatch
setting instead.
Example JSON:
"Headers": { "MatchPattern": { "All": {} }, "MatchScope": "KEY", "OversizeHandling": "MATCH" }
- See Also:
-
Nested Class Summary
Nested Classes -
Method Summary
Modifier and TypeMethodDescriptionstatic Headers.Builderbuilder()final booleanfinal booleanequalsBySdkFields(Object obj) final <T> Optional<T>getValueForField(String fieldName, Class<T> clazz) final inthashCode()final HeaderMatchPatternThe filter to use to identify the subset of headers to inspect in a web request.final MapMatchScopeThe parts of the headers to match with the rule inspection criteria.final StringThe parts of the headers to match with the rule inspection criteria.final OversizeHandlingWhat WAF should do if the headers determined by your match scope are more numerous or larger than WAF can inspect.final StringWhat WAF should do if the headers determined by your match scope are more numerous or larger than WAF can inspect.static Class<? extends Headers.Builder>final StringtoString()Returns a string representation of this object.Methods inherited from class java.lang.Object
clone, finalize, getClass, notify, notifyAll, wait, wait, waitMethods inherited from interface software.amazon.awssdk.utils.builder.ToCopyableBuilder
copy
-
Method Details
-
matchPattern
The filter to use to identify the subset of headers to inspect in a web request.
You must specify exactly one setting: either
All,IncludedHeaders, orExcludedHeaders.Example JSON:
"MatchPattern": { "ExcludedHeaders": [ "KeyToExclude1", "KeyToExclude2" ] }- Returns:
- The filter to use to identify the subset of headers to inspect in a web request.
You must specify exactly one setting: either
All,IncludedHeaders, orExcludedHeaders.Example JSON:
"MatchPattern": { "ExcludedHeaders": [ "KeyToExclude1", "KeyToExclude2" ] }
-
matchScope
The parts of the headers to match with the rule inspection criteria. If you specify
ALL, WAF inspects both keys and values.Alldoes not require a match to be found in the keys and a match to be found in the values. It requires a match to be found in the keys or the values or both. To require a match in the keys and in the values, use a logicalANDstatement to combine two match rules, one that inspects the keys and another that inspects the values.If the service returns an enum value that is not available in the current SDK version,
matchScopewill returnMapMatchScope.UNKNOWN_TO_SDK_VERSION. The raw value returned by the service is available frommatchScopeAsString().- Returns:
- The parts of the headers to match with the rule inspection criteria. If you specify
ALL, WAF inspects both keys and values.Alldoes not require a match to be found in the keys and a match to be found in the values. It requires a match to be found in the keys or the values or both. To require a match in the keys and in the values, use a logicalANDstatement to combine two match rules, one that inspects the keys and another that inspects the values. - See Also:
-
matchScopeAsString
The parts of the headers to match with the rule inspection criteria. If you specify
ALL, WAF inspects both keys and values.Alldoes not require a match to be found in the keys and a match to be found in the values. It requires a match to be found in the keys or the values or both. To require a match in the keys and in the values, use a logicalANDstatement to combine two match rules, one that inspects the keys and another that inspects the values.If the service returns an enum value that is not available in the current SDK version,
matchScopewill returnMapMatchScope.UNKNOWN_TO_SDK_VERSION. The raw value returned by the service is available frommatchScopeAsString().- Returns:
- The parts of the headers to match with the rule inspection criteria. If you specify
ALL, WAF inspects both keys and values.Alldoes not require a match to be found in the keys and a match to be found in the values. It requires a match to be found in the keys or the values or both. To require a match in the keys and in the values, use a logicalANDstatement to combine two match rules, one that inspects the keys and another that inspects the values. - See Also:
-
oversizeHandling
What WAF should do if the headers determined by your match scope are more numerous or larger than WAF can inspect. WAF does not support inspecting the entire contents of request headers when they exceed 8 KB (8192 bytes) or 200 total headers. The underlying host service forwards a maximum of 200 headers and at most 8 KB of header contents to WAF.
The options for oversize handling are the following:
-
CONTINUE- Inspect the available headers normally, according to the rule inspection criteria. -
MATCH- Treat the web request as matching the rule statement. WAF applies the rule action to the request. -
NO_MATCH- Treat the web request as not matching the rule statement.
If the service returns an enum value that is not available in the current SDK version,
oversizeHandlingwill returnOversizeHandling.UNKNOWN_TO_SDK_VERSION. The raw value returned by the service is available fromoversizeHandlingAsString().- Returns:
- What WAF should do if the headers determined by your match scope are more numerous or larger than WAF can
inspect. WAF does not support inspecting the entire contents of request headers when they exceed 8 KB
(8192 bytes) or 200 total headers. The underlying host service forwards a maximum of 200 headers and at
most 8 KB of header contents to WAF.
The options for oversize handling are the following:
-
CONTINUE- Inspect the available headers normally, according to the rule inspection criteria. -
MATCH- Treat the web request as matching the rule statement. WAF applies the rule action to the request. -
NO_MATCH- Treat the web request as not matching the rule statement.
-
- See Also:
-
-
oversizeHandlingAsString
What WAF should do if the headers determined by your match scope are more numerous or larger than WAF can inspect. WAF does not support inspecting the entire contents of request headers when they exceed 8 KB (8192 bytes) or 200 total headers. The underlying host service forwards a maximum of 200 headers and at most 8 KB of header contents to WAF.
The options for oversize handling are the following:
-
CONTINUE- Inspect the available headers normally, according to the rule inspection criteria. -
MATCH- Treat the web request as matching the rule statement. WAF applies the rule action to the request. -
NO_MATCH- Treat the web request as not matching the rule statement.
If the service returns an enum value that is not available in the current SDK version,
oversizeHandlingwill returnOversizeHandling.UNKNOWN_TO_SDK_VERSION. The raw value returned by the service is available fromoversizeHandlingAsString().- Returns:
- What WAF should do if the headers determined by your match scope are more numerous or larger than WAF can
inspect. WAF does not support inspecting the entire contents of request headers when they exceed 8 KB
(8192 bytes) or 200 total headers. The underlying host service forwards a maximum of 200 headers and at
most 8 KB of header contents to WAF.
The options for oversize handling are the following:
-
CONTINUE- Inspect the available headers normally, according to the rule inspection criteria. -
MATCH- Treat the web request as matching the rule statement. WAF applies the rule action to the request. -
NO_MATCH- Treat the web request as not matching the rule statement.
-
- See Also:
-
-
toBuilder
- Specified by:
toBuilderin interfaceToCopyableBuilder<Headers.Builder,Headers>
-
builder
-
serializableBuilderClass
-
hashCode
public final int hashCode() -
equals
-
equalsBySdkFields
- Specified by:
equalsBySdkFieldsin interfaceSdkPojo
-
toString
Returns a string representation of this object. This is useful for testing and debugging. Sensitive data will be redacted from this string using a placeholder value. -
getValueForField
-
sdkFields
-
sdkFieldNameToField
- Specified by:
sdkFieldNameToFieldin interfaceSdkPojo
-