1{ 2 "version":"2.0", 3 "metadata":{ 4 "apiVersion":"2017-10-01", 5 "endpointPrefix":"workmail", 6 "jsonVersion":"1.1", 7 "protocol":"json", 8 "serviceFullName":"Amazon WorkMail", 9 "serviceId":"WorkMail", 10 "signatureVersion":"v4", 11 "targetPrefix":"WorkMailService", 12 "uid":"workmail-2017-10-01" 13 }, 14 "operations":{ 15 "AssociateDelegateToResource":{ 16 "name":"AssociateDelegateToResource", 17 "http":{ 18 "method":"POST", 19 "requestUri":"/" 20 }, 21 "input":{"shape":"AssociateDelegateToResourceRequest"}, 22 "output":{"shape":"AssociateDelegateToResourceResponse"}, 23 "errors":[ 24 {"shape":"EntityNotFoundException"}, 25 {"shape":"EntityStateException"}, 26 {"shape":"InvalidParameterException"}, 27 {"shape":"OrganizationNotFoundException"}, 28 {"shape":"OrganizationStateException"}, 29 {"shape":"UnsupportedOperationException"} 30 ], 31 "documentation":"<p>Adds a member (user or group) to the resource's set of delegates.</p>", 32 "idempotent":true 33 }, 34 "AssociateMemberToGroup":{ 35 "name":"AssociateMemberToGroup", 36 "http":{ 37 "method":"POST", 38 "requestUri":"/" 39 }, 40 "input":{"shape":"AssociateMemberToGroupRequest"}, 41 "output":{"shape":"AssociateMemberToGroupResponse"}, 42 "errors":[ 43 {"shape":"DirectoryServiceAuthenticationFailedException"}, 44 {"shape":"DirectoryUnavailableException"}, 45 {"shape":"EntityNotFoundException"}, 46 {"shape":"EntityStateException"}, 47 {"shape":"InvalidParameterException"}, 48 {"shape":"OrganizationNotFoundException"}, 49 {"shape":"OrganizationStateException"}, 50 {"shape":"UnsupportedOperationException"} 51 ], 52 "documentation":"<p>Adds a member (user or group) to the group's set.</p>", 53 "idempotent":true 54 }, 55 "AssumeImpersonationRole":{ 56 "name":"AssumeImpersonationRole", 57 "http":{ 58 "method":"POST", 59 "requestUri":"/" 60 }, 61 "input":{"shape":"AssumeImpersonationRoleRequest"}, 62 "output":{"shape":"AssumeImpersonationRoleResponse"}, 63 "errors":[ 64 {"shape":"InvalidParameterException"}, 65 {"shape":"OrganizationNotFoundException"}, 66 {"shape":"OrganizationStateException"}, 67 {"shape":"ResourceNotFoundException"} 68 ], 69 "documentation":"<p>Assumes an impersonation role for the given WorkMail organization. This method returns an authentication token you can use to make impersonated calls.</p>" 70 }, 71 "CancelMailboxExportJob":{ 72 "name":"CancelMailboxExportJob", 73 "http":{ 74 "method":"POST", 75 "requestUri":"/" 76 }, 77 "input":{"shape":"CancelMailboxExportJobRequest"}, 78 "output":{"shape":"CancelMailboxExportJobResponse"}, 79 "errors":[ 80 {"shape":"InvalidParameterException"}, 81 {"shape":"OrganizationNotFoundException"}, 82 {"shape":"OrganizationStateException"}, 83 {"shape":"EntityNotFoundException"} 84 ], 85 "documentation":"<p>Cancels a mailbox export job.</p> <note> <p>If the mailbox export job is near completion, it might not be possible to cancel it.</p> </note>", 86 "idempotent":true 87 }, 88 "CreateAlias":{ 89 "name":"CreateAlias", 90 "http":{ 91 "method":"POST", 92 "requestUri":"/" 93 }, 94 "input":{"shape":"CreateAliasRequest"}, 95 "output":{"shape":"CreateAliasResponse"}, 96 "errors":[ 97 {"shape":"EmailAddressInUseException"}, 98 {"shape":"EntityNotFoundException"}, 99 {"shape":"EntityStateException"}, 100 {"shape":"InvalidParameterException"}, 101 {"shape":"MailDomainNotFoundException"}, 102 {"shape":"MailDomainStateException"}, 103 {"shape":"OrganizationNotFoundException"}, 104 {"shape":"OrganizationStateException"}, 105 {"shape":"LimitExceededException"} 106 ], 107 "documentation":"<p>Adds an alias to the set of a given member (user or group) of WorkMail.</p>", 108 "idempotent":true 109 }, 110 "CreateAvailabilityConfiguration":{ 111 "name":"CreateAvailabilityConfiguration", 112 "http":{ 113 "method":"POST", 114 "requestUri":"/" 115 }, 116 "input":{"shape":"CreateAvailabilityConfigurationRequest"}, 117 "output":{"shape":"CreateAvailabilityConfigurationResponse"}, 118 "errors":[ 119 {"shape":"OrganizationNotFoundException"}, 120 {"shape":"OrganizationStateException"}, 121 {"shape":"NameAvailabilityException"}, 122 {"shape":"InvalidParameterException"}, 123 {"shape":"LimitExceededException"} 124 ], 125 "documentation":"<p>Creates an <code>AvailabilityConfiguration</code> for the given WorkMail organization and domain.</p>", 126 "idempotent":true 127 }, 128 "CreateGroup":{ 129 "name":"CreateGroup", 130 "http":{ 131 "method":"POST", 132 "requestUri":"/" 133 }, 134 "input":{"shape":"CreateGroupRequest"}, 135 "output":{"shape":"CreateGroupResponse"}, 136 "errors":[ 137 {"shape":"DirectoryServiceAuthenticationFailedException"}, 138 {"shape":"DirectoryUnavailableException"}, 139 {"shape":"InvalidParameterException"}, 140 {"shape":"NameAvailabilityException"}, 141 {"shape":"OrganizationNotFoundException"}, 142 {"shape":"OrganizationStateException"}, 143 {"shape":"ReservedNameException"}, 144 {"shape":"UnsupportedOperationException"} 145 ], 146 "documentation":"<p>Creates a group that can be used in WorkMail by calling the <a>RegisterToWorkMail</a> operation.</p>", 147 "idempotent":true 148 }, 149 "CreateImpersonationRole":{ 150 "name":"CreateImpersonationRole", 151 "http":{ 152 "method":"POST", 153 "requestUri":"/" 154 }, 155 "input":{"shape":"CreateImpersonationRoleRequest"}, 156 "output":{"shape":"CreateImpersonationRoleResponse"}, 157 "errors":[ 158 {"shape":"InvalidParameterException"}, 159 {"shape":"OrganizationNotFoundException"}, 160 {"shape":"OrganizationStateException"}, 161 {"shape":"EntityNotFoundException"}, 162 {"shape":"EntityStateException"}, 163 {"shape":"LimitExceededException"} 164 ], 165 "documentation":"<p>Creates an impersonation role for the given WorkMail organization.</p> <p> <i>Idempotency</i> ensures that an API request completes no more than one time. With an idempotent request, if the original request completes successfully, any subsequent retries also complete successfully without performing any further actions.</p>" 166 }, 167 "CreateMobileDeviceAccessRule":{ 168 "name":"CreateMobileDeviceAccessRule", 169 "http":{ 170 "method":"POST", 171 "requestUri":"/" 172 }, 173 "input":{"shape":"CreateMobileDeviceAccessRuleRequest"}, 174 "output":{"shape":"CreateMobileDeviceAccessRuleResponse"}, 175 "errors":[ 176 {"shape":"InvalidParameterException"}, 177 {"shape":"LimitExceededException"}, 178 {"shape":"OrganizationNotFoundException"}, 179 {"shape":"OrganizationStateException"} 180 ], 181 "documentation":"<p>Creates a new mobile device access rule for the specified WorkMail organization.</p>" 182 }, 183 "CreateOrganization":{ 184 "name":"CreateOrganization", 185 "http":{ 186 "method":"POST", 187 "requestUri":"/" 188 }, 189 "input":{"shape":"CreateOrganizationRequest"}, 190 "output":{"shape":"CreateOrganizationResponse"}, 191 "errors":[ 192 {"shape":"InvalidParameterException"}, 193 {"shape":"DirectoryInUseException"}, 194 {"shape":"DirectoryUnavailableException"}, 195 {"shape":"LimitExceededException"}, 196 {"shape":"NameAvailabilityException"} 197 ], 198 "documentation":"<p>Creates a new WorkMail organization. Optionally, you can choose to associate an existing AWS Directory Service directory with your organization. If an AWS Directory Service directory ID is specified, the organization alias must match the directory alias. If you choose not to associate an existing directory with your organization, then we create a new WorkMail directory for you. For more information, see <a href=\"https://docs.aws.amazon.com/workmail/latest/adminguide/add_new_organization.html\">Adding an organization</a> in the <i>WorkMail Administrator Guide</i>.</p> <p>You can associate multiple email domains with an organization, then choose your default email domain from the WorkMail console. You can also associate a domain that is managed in an Amazon Route 53 public hosted zone. For more information, see <a href=\"https://docs.aws.amazon.com/workmail/latest/adminguide/add_domain.html\">Adding a domain</a> and <a href=\"https://docs.aws.amazon.com/workmail/latest/adminguide/default_domain.html\">Choosing the default domain</a> in the <i>WorkMail Administrator Guide</i>.</p> <p>Optionally, you can use a customer managed key from AWS Key Management Service (AWS KMS) to encrypt email for your organization. If you don't associate an AWS KMS key, WorkMail creates a default, AWS managed key for you.</p>", 199 "idempotent":true 200 }, 201 "CreateResource":{ 202 "name":"CreateResource", 203 "http":{ 204 "method":"POST", 205 "requestUri":"/" 206 }, 207 "input":{"shape":"CreateResourceRequest"}, 208 "output":{"shape":"CreateResourceResponse"}, 209 "errors":[ 210 {"shape":"DirectoryServiceAuthenticationFailedException"}, 211 {"shape":"DirectoryUnavailableException"}, 212 {"shape":"InvalidParameterException"}, 213 {"shape":"NameAvailabilityException"}, 214 {"shape":"OrganizationNotFoundException"}, 215 {"shape":"OrganizationStateException"}, 216 {"shape":"ReservedNameException"}, 217 {"shape":"UnsupportedOperationException"} 218 ], 219 "documentation":"<p>Creates a new WorkMail resource.</p>", 220 "idempotent":true 221 }, 222 "CreateUser":{ 223 "name":"CreateUser", 224 "http":{ 225 "method":"POST", 226 "requestUri":"/" 227 }, 228 "input":{"shape":"CreateUserRequest"}, 229 "output":{"shape":"CreateUserResponse"}, 230 "errors":[ 231 {"shape":"DirectoryServiceAuthenticationFailedException"}, 232 {"shape":"DirectoryUnavailableException"}, 233 {"shape":"InvalidParameterException"}, 234 {"shape":"InvalidPasswordException"}, 235 {"shape":"NameAvailabilityException"}, 236 {"shape":"OrganizationNotFoundException"}, 237 {"shape":"OrganizationStateException"}, 238 {"shape":"ReservedNameException"}, 239 {"shape":"UnsupportedOperationException"} 240 ], 241 "documentation":"<p>Creates a user who can be used in WorkMail by calling the <a>RegisterToWorkMail</a> operation.</p>", 242 "idempotent":true 243 }, 244 "DeleteAccessControlRule":{ 245 "name":"DeleteAccessControlRule", 246 "http":{ 247 "method":"POST", 248 "requestUri":"/" 249 }, 250 "input":{"shape":"DeleteAccessControlRuleRequest"}, 251 "output":{"shape":"DeleteAccessControlRuleResponse"}, 252 "errors":[ 253 {"shape":"OrganizationNotFoundException"}, 254 {"shape":"OrganizationStateException"} 255 ], 256 "documentation":"<p>Deletes an access control rule for the specified WorkMail organization.</p> <note> <p>Deleting already deleted and non-existing rules does not produce an error. In those cases, the service sends back an HTTP 200 response with an empty HTTP body.</p> </note>" 257 }, 258 "DeleteAlias":{ 259 "name":"DeleteAlias", 260 "http":{ 261 "method":"POST", 262 "requestUri":"/" 263 }, 264 "input":{"shape":"DeleteAliasRequest"}, 265 "output":{"shape":"DeleteAliasResponse"}, 266 "errors":[ 267 {"shape":"EntityNotFoundException"}, 268 {"shape":"EntityStateException"}, 269 {"shape":"InvalidParameterException"}, 270 {"shape":"OrganizationNotFoundException"}, 271 {"shape":"OrganizationStateException"} 272 ], 273 "documentation":"<p>Remove one or more specified aliases from a set of aliases for a given user.</p>", 274 "idempotent":true 275 }, 276 "DeleteAvailabilityConfiguration":{ 277 "name":"DeleteAvailabilityConfiguration", 278 "http":{ 279 "method":"POST", 280 "requestUri":"/" 281 }, 282 "input":{"shape":"DeleteAvailabilityConfigurationRequest"}, 283 "output":{"shape":"DeleteAvailabilityConfigurationResponse"}, 284 "errors":[ 285 {"shape":"OrganizationNotFoundException"}, 286 {"shape":"OrganizationStateException"} 287 ], 288 "documentation":"<p>Deletes the <code>AvailabilityConfiguration</code> for the given WorkMail organization and domain.</p>", 289 "idempotent":true 290 }, 291 "DeleteEmailMonitoringConfiguration":{ 292 "name":"DeleteEmailMonitoringConfiguration", 293 "http":{ 294 "method":"POST", 295 "requestUri":"/" 296 }, 297 "input":{"shape":"DeleteEmailMonitoringConfigurationRequest"}, 298 "output":{"shape":"DeleteEmailMonitoringConfigurationResponse"}, 299 "errors":[ 300 {"shape":"InvalidParameterException"}, 301 {"shape":"OrganizationNotFoundException"}, 302 {"shape":"OrganizationStateException"} 303 ], 304 "documentation":"<p>Deletes the email monitoring configuration for a specified organization.</p>", 305 "idempotent":true 306 }, 307 "DeleteGroup":{ 308 "name":"DeleteGroup", 309 "http":{ 310 "method":"POST", 311 "requestUri":"/" 312 }, 313 "input":{"shape":"DeleteGroupRequest"}, 314 "output":{"shape":"DeleteGroupResponse"}, 315 "errors":[ 316 {"shape":"DirectoryServiceAuthenticationFailedException"}, 317 {"shape":"DirectoryUnavailableException"}, 318 {"shape":"EntityStateException"}, 319 {"shape":"InvalidParameterException"}, 320 {"shape":"OrganizationNotFoundException"}, 321 {"shape":"OrganizationStateException"}, 322 {"shape":"UnsupportedOperationException"} 323 ], 324 "documentation":"<p>Deletes a group from WorkMail.</p>", 325 "idempotent":true 326 }, 327 "DeleteImpersonationRole":{ 328 "name":"DeleteImpersonationRole", 329 "http":{ 330 "method":"POST", 331 "requestUri":"/" 332 }, 333 "input":{"shape":"DeleteImpersonationRoleRequest"}, 334 "output":{"shape":"DeleteImpersonationRoleResponse"}, 335 "errors":[ 336 {"shape":"InvalidParameterException"}, 337 {"shape":"OrganizationNotFoundException"}, 338 {"shape":"OrganizationStateException"} 339 ], 340 "documentation":"<p>Deletes an impersonation role for the given WorkMail organization.</p>" 341 }, 342 "DeleteMailboxPermissions":{ 343 "name":"DeleteMailboxPermissions", 344 "http":{ 345 "method":"POST", 346 "requestUri":"/" 347 }, 348 "input":{"shape":"DeleteMailboxPermissionsRequest"}, 349 "output":{"shape":"DeleteMailboxPermissionsResponse"}, 350 "errors":[ 351 {"shape":"EntityNotFoundException"}, 352 {"shape":"EntityStateException"}, 353 {"shape":"InvalidParameterException"}, 354 {"shape":"OrganizationNotFoundException"}, 355 {"shape":"OrganizationStateException"} 356 ], 357 "documentation":"<p>Deletes permissions granted to a member (user or group).</p>", 358 "idempotent":true 359 }, 360 "DeleteMobileDeviceAccessOverride":{ 361 "name":"DeleteMobileDeviceAccessOverride", 362 "http":{ 363 "method":"POST", 364 "requestUri":"/" 365 }, 366 "input":{"shape":"DeleteMobileDeviceAccessOverrideRequest"}, 367 "output":{"shape":"DeleteMobileDeviceAccessOverrideResponse"}, 368 "errors":[ 369 {"shape":"InvalidParameterException"}, 370 {"shape":"OrganizationNotFoundException"}, 371 {"shape":"OrganizationStateException"}, 372 {"shape":"EntityNotFoundException"} 373 ], 374 "documentation":"<p>Deletes the mobile device access override for the given WorkMail organization, user, and device.</p> <note> <p>Deleting already deleted and non-existing overrides does not produce an error. In those cases, the service sends back an HTTP 200 response with an empty HTTP body.</p> </note>" 375 }, 376 "DeleteMobileDeviceAccessRule":{ 377 "name":"DeleteMobileDeviceAccessRule", 378 "http":{ 379 "method":"POST", 380 "requestUri":"/" 381 }, 382 "input":{"shape":"DeleteMobileDeviceAccessRuleRequest"}, 383 "output":{"shape":"DeleteMobileDeviceAccessRuleResponse"}, 384 "errors":[ 385 {"shape":"InvalidParameterException"}, 386 {"shape":"OrganizationNotFoundException"}, 387 {"shape":"OrganizationStateException"} 388 ], 389 "documentation":"<p>Deletes a mobile device access rule for the specified WorkMail organization.</p> <note> <p>Deleting already deleted and non-existing rules does not produce an error. In those cases, the service sends back an HTTP 200 response with an empty HTTP body.</p> </note>" 390 }, 391 "DeleteOrganization":{ 392 "name":"DeleteOrganization", 393 "http":{ 394 "method":"POST", 395 "requestUri":"/" 396 }, 397 "input":{"shape":"DeleteOrganizationRequest"}, 398 "output":{"shape":"DeleteOrganizationResponse"}, 399 "errors":[ 400 {"shape":"InvalidParameterException"}, 401 {"shape":"OrganizationNotFoundException"}, 402 {"shape":"OrganizationStateException"} 403 ], 404 "documentation":"<p>Deletes an WorkMail organization and all underlying AWS resources managed by WorkMail as part of the organization. You can choose whether to delete the associated directory. For more information, see <a href=\"https://docs.aws.amazon.com/workmail/latest/adminguide/remove_organization.html\">Removing an organization</a> in the <i>WorkMail Administrator Guide</i>.</p>", 405 "idempotent":true 406 }, 407 "DeleteResource":{ 408 "name":"DeleteResource", 409 "http":{ 410 "method":"POST", 411 "requestUri":"/" 412 }, 413 "input":{"shape":"DeleteResourceRequest"}, 414 "output":{"shape":"DeleteResourceResponse"}, 415 "errors":[ 416 {"shape":"EntityStateException"}, 417 {"shape":"InvalidParameterException"}, 418 {"shape":"OrganizationNotFoundException"}, 419 {"shape":"OrganizationStateException"}, 420 {"shape":"UnsupportedOperationException"} 421 ], 422 "documentation":"<p>Deletes the specified resource.</p>", 423 "idempotent":true 424 }, 425 "DeleteRetentionPolicy":{ 426 "name":"DeleteRetentionPolicy", 427 "http":{ 428 "method":"POST", 429 "requestUri":"/" 430 }, 431 "input":{"shape":"DeleteRetentionPolicyRequest"}, 432 "output":{"shape":"DeleteRetentionPolicyResponse"}, 433 "errors":[ 434 {"shape":"InvalidParameterException"}, 435 {"shape":"OrganizationNotFoundException"}, 436 {"shape":"OrganizationStateException"} 437 ], 438 "documentation":"<p>Deletes the specified retention policy from the specified organization.</p>", 439 "idempotent":true 440 }, 441 "DeleteUser":{ 442 "name":"DeleteUser", 443 "http":{ 444 "method":"POST", 445 "requestUri":"/" 446 }, 447 "input":{"shape":"DeleteUserRequest"}, 448 "output":{"shape":"DeleteUserResponse"}, 449 "errors":[ 450 {"shape":"DirectoryServiceAuthenticationFailedException"}, 451 {"shape":"DirectoryUnavailableException"}, 452 {"shape":"EntityStateException"}, 453 {"shape":"InvalidParameterException"}, 454 {"shape":"OrganizationNotFoundException"}, 455 {"shape":"OrganizationStateException"}, 456 {"shape":"UnsupportedOperationException"} 457 ], 458 "documentation":"<p>Deletes a user from WorkMail and all subsequent systems. Before you can delete a user, the user state must be <code>DISABLED</code>. Use the <a>DescribeUser</a> action to confirm the user state.</p> <p>Deleting a user is permanent and cannot be undone. WorkMail archives user mailboxes for 30 days before they are permanently removed.</p>", 459 "idempotent":true 460 }, 461 "DeregisterFromWorkMail":{ 462 "name":"DeregisterFromWorkMail", 463 "http":{ 464 "method":"POST", 465 "requestUri":"/" 466 }, 467 "input":{"shape":"DeregisterFromWorkMailRequest"}, 468 "output":{"shape":"DeregisterFromWorkMailResponse"}, 469 "errors":[ 470 {"shape":"EntityNotFoundException"}, 471 {"shape":"EntityStateException"}, 472 {"shape":"InvalidParameterException"}, 473 {"shape":"OrganizationNotFoundException"}, 474 {"shape":"OrganizationStateException"} 475 ], 476 "documentation":"<p>Mark a user, group, or resource as no longer used in WorkMail. This action disassociates the mailbox and schedules it for clean-up. WorkMail keeps mailboxes for 30 days before they are permanently removed. The functionality in the console is <i>Disable</i>.</p>", 477 "idempotent":true 478 }, 479 "DeregisterMailDomain":{ 480 "name":"DeregisterMailDomain", 481 "http":{ 482 "method":"POST", 483 "requestUri":"/" 484 }, 485 "input":{"shape":"DeregisterMailDomainRequest"}, 486 "output":{"shape":"DeregisterMailDomainResponse"}, 487 "errors":[ 488 {"shape":"MailDomainInUseException"}, 489 {"shape":"OrganizationNotFoundException"}, 490 {"shape":"OrganizationStateException"}, 491 {"shape":"InvalidParameterException"}, 492 {"shape":"InvalidCustomSesConfigurationException"} 493 ], 494 "documentation":"<p>Removes a domain from WorkMail, stops email routing to WorkMail, and removes the authorization allowing WorkMail use. SES keeps the domain because other applications may use it. You must first remove any email address used by WorkMail entities before you remove the domain.</p>", 495 "idempotent":true 496 }, 497 "DescribeEmailMonitoringConfiguration":{ 498 "name":"DescribeEmailMonitoringConfiguration", 499 "http":{ 500 "method":"POST", 501 "requestUri":"/" 502 }, 503 "input":{"shape":"DescribeEmailMonitoringConfigurationRequest"}, 504 "output":{"shape":"DescribeEmailMonitoringConfigurationResponse"}, 505 "errors":[ 506 {"shape":"ResourceNotFoundException"}, 507 {"shape":"InvalidParameterException"}, 508 {"shape":"OrganizationNotFoundException"}, 509 {"shape":"OrganizationStateException"} 510 ], 511 "documentation":"<p>Describes the current email monitoring configuration for a specified organization.</p>", 512 "idempotent":true 513 }, 514 "DescribeEntity":{ 515 "name":"DescribeEntity", 516 "http":{ 517 "method":"POST", 518 "requestUri":"/" 519 }, 520 "input":{"shape":"DescribeEntityRequest"}, 521 "output":{"shape":"DescribeEntityResponse"}, 522 "errors":[ 523 {"shape":"EntityNotFoundException"}, 524 {"shape":"InvalidParameterException"}, 525 {"shape":"OrganizationNotFoundException"}, 526 {"shape":"OrganizationStateException"} 527 ], 528 "documentation":"<p>Returns basic details about an entity in WorkMail. </p>", 529 "idempotent":true 530 }, 531 "DescribeGroup":{ 532 "name":"DescribeGroup", 533 "http":{ 534 "method":"POST", 535 "requestUri":"/" 536 }, 537 "input":{"shape":"DescribeGroupRequest"}, 538 "output":{"shape":"DescribeGroupResponse"}, 539 "errors":[ 540 {"shape":"EntityNotFoundException"}, 541 {"shape":"InvalidParameterException"}, 542 {"shape":"OrganizationNotFoundException"}, 543 {"shape":"OrganizationStateException"} 544 ], 545 "documentation":"<p>Returns the data available for the group.</p>", 546 "idempotent":true 547 }, 548 "DescribeInboundDmarcSettings":{ 549 "name":"DescribeInboundDmarcSettings", 550 "http":{ 551 "method":"POST", 552 "requestUri":"/" 553 }, 554 "input":{"shape":"DescribeInboundDmarcSettingsRequest"}, 555 "output":{"shape":"DescribeInboundDmarcSettingsResponse"}, 556 "errors":[ 557 {"shape":"OrganizationNotFoundException"}, 558 {"shape":"OrganizationStateException"} 559 ], 560 "documentation":"<p>Lists the settings in a DMARC policy for a specified organization.</p>", 561 "idempotent":true 562 }, 563 "DescribeMailboxExportJob":{ 564 "name":"DescribeMailboxExportJob", 565 "http":{ 566 "method":"POST", 567 "requestUri":"/" 568 }, 569 "input":{"shape":"DescribeMailboxExportJobRequest"}, 570 "output":{"shape":"DescribeMailboxExportJobResponse"}, 571 "errors":[ 572 {"shape":"InvalidParameterException"}, 573 {"shape":"OrganizationNotFoundException"}, 574 {"shape":"OrganizationStateException"}, 575 {"shape":"EntityNotFoundException"} 576 ], 577 "documentation":"<p>Describes the current status of a mailbox export job.</p>", 578 "idempotent":true 579 }, 580 "DescribeOrganization":{ 581 "name":"DescribeOrganization", 582 "http":{ 583 "method":"POST", 584 "requestUri":"/" 585 }, 586 "input":{"shape":"DescribeOrganizationRequest"}, 587 "output":{"shape":"DescribeOrganizationResponse"}, 588 "errors":[ 589 {"shape":"InvalidParameterException"}, 590 {"shape":"OrganizationNotFoundException"} 591 ], 592 "documentation":"<p>Provides more information regarding a given organization based on its identifier.</p>", 593 "idempotent":true 594 }, 595 "DescribeResource":{ 596 "name":"DescribeResource", 597 "http":{ 598 "method":"POST", 599 "requestUri":"/" 600 }, 601 "input":{"shape":"DescribeResourceRequest"}, 602 "output":{"shape":"DescribeResourceResponse"}, 603 "errors":[ 604 {"shape":"EntityNotFoundException"}, 605 {"shape":"InvalidParameterException"}, 606 {"shape":"OrganizationNotFoundException"}, 607 {"shape":"OrganizationStateException"}, 608 {"shape":"UnsupportedOperationException"} 609 ], 610 "documentation":"<p>Returns the data available for the resource.</p>", 611 "idempotent":true 612 }, 613 "DescribeUser":{ 614 "name":"DescribeUser", 615 "http":{ 616 "method":"POST", 617 "requestUri":"/" 618 }, 619 "input":{"shape":"DescribeUserRequest"}, 620 "output":{"shape":"DescribeUserResponse"}, 621 "errors":[ 622 {"shape":"EntityNotFoundException"}, 623 {"shape":"InvalidParameterException"}, 624 {"shape":"OrganizationNotFoundException"}, 625 {"shape":"OrganizationStateException"} 626 ], 627 "documentation":"<p>Provides information regarding the user.</p>", 628 "idempotent":true 629 }, 630 "DisassociateDelegateFromResource":{ 631 "name":"DisassociateDelegateFromResource", 632 "http":{ 633 "method":"POST", 634 "requestUri":"/" 635 }, 636 "input":{"shape":"DisassociateDelegateFromResourceRequest"}, 637 "output":{"shape":"DisassociateDelegateFromResourceResponse"}, 638 "errors":[ 639 {"shape":"EntityNotFoundException"}, 640 {"shape":"EntityStateException"}, 641 {"shape":"InvalidParameterException"}, 642 {"shape":"OrganizationNotFoundException"}, 643 {"shape":"OrganizationStateException"}, 644 {"shape":"UnsupportedOperationException"} 645 ], 646 "documentation":"<p>Removes a member from the resource's set of delegates.</p>", 647 "idempotent":true 648 }, 649 "DisassociateMemberFromGroup":{ 650 "name":"DisassociateMemberFromGroup", 651 "http":{ 652 "method":"POST", 653 "requestUri":"/" 654 }, 655 "input":{"shape":"DisassociateMemberFromGroupRequest"}, 656 "output":{"shape":"DisassociateMemberFromGroupResponse"}, 657 "errors":[ 658 {"shape":"DirectoryServiceAuthenticationFailedException"}, 659 {"shape":"DirectoryUnavailableException"}, 660 {"shape":"EntityNotFoundException"}, 661 {"shape":"EntityStateException"}, 662 {"shape":"InvalidParameterException"}, 663 {"shape":"OrganizationNotFoundException"}, 664 {"shape":"OrganizationStateException"}, 665 {"shape":"UnsupportedOperationException"} 666 ], 667 "documentation":"<p>Removes a member from a group.</p>", 668 "idempotent":true 669 }, 670 "GetAccessControlEffect":{ 671 "name":"GetAccessControlEffect", 672 "http":{ 673 "method":"POST", 674 "requestUri":"/" 675 }, 676 "input":{"shape":"GetAccessControlEffectRequest"}, 677 "output":{"shape":"GetAccessControlEffectResponse"}, 678 "errors":[ 679 {"shape":"EntityNotFoundException"}, 680 {"shape":"ResourceNotFoundException"}, 681 {"shape":"InvalidParameterException"}, 682 {"shape":"OrganizationNotFoundException"}, 683 {"shape":"OrganizationStateException"} 684 ], 685 "documentation":"<p>Gets the effects of an organization's access control rules as they apply to a specified IPv4 address, access protocol action, and user ID or impersonation role ID. You must provide either the user ID or impersonation role ID. Impersonation role ID can only be used with Action EWS.</p>" 686 }, 687 "GetDefaultRetentionPolicy":{ 688 "name":"GetDefaultRetentionPolicy", 689 "http":{ 690 "method":"POST", 691 "requestUri":"/" 692 }, 693 "input":{"shape":"GetDefaultRetentionPolicyRequest"}, 694 "output":{"shape":"GetDefaultRetentionPolicyResponse"}, 695 "errors":[ 696 {"shape":"InvalidParameterException"}, 697 {"shape":"OrganizationNotFoundException"}, 698 {"shape":"OrganizationStateException"}, 699 {"shape":"EntityNotFoundException"} 700 ], 701 "documentation":"<p>Gets the default retention policy details for the specified organization.</p>", 702 "idempotent":true 703 }, 704 "GetImpersonationRole":{ 705 "name":"GetImpersonationRole", 706 "http":{ 707 "method":"POST", 708 "requestUri":"/" 709 }, 710 "input":{"shape":"GetImpersonationRoleRequest"}, 711 "output":{"shape":"GetImpersonationRoleResponse"}, 712 "errors":[ 713 {"shape":"InvalidParameterException"}, 714 {"shape":"OrganizationNotFoundException"}, 715 {"shape":"OrganizationStateException"}, 716 {"shape":"ResourceNotFoundException"} 717 ], 718 "documentation":"<p>Gets the impersonation role details for the given WorkMail organization.</p>" 719 }, 720 "GetImpersonationRoleEffect":{ 721 "name":"GetImpersonationRoleEffect", 722 "http":{ 723 "method":"POST", 724 "requestUri":"/" 725 }, 726 "input":{"shape":"GetImpersonationRoleEffectRequest"}, 727 "output":{"shape":"GetImpersonationRoleEffectResponse"}, 728 "errors":[ 729 {"shape":"InvalidParameterException"}, 730 {"shape":"OrganizationNotFoundException"}, 731 {"shape":"OrganizationStateException"}, 732 {"shape":"ResourceNotFoundException"}, 733 {"shape":"EntityNotFoundException"}, 734 {"shape":"EntityStateException"} 735 ], 736 "documentation":"<p>Tests whether the given impersonation role can impersonate a target user.</p>" 737 }, 738 "GetMailDomain":{ 739 "name":"GetMailDomain", 740 "http":{ 741 "method":"POST", 742 "requestUri":"/" 743 }, 744 "input":{"shape":"GetMailDomainRequest"}, 745 "output":{"shape":"GetMailDomainResponse"}, 746 "errors":[ 747 {"shape":"MailDomainNotFoundException"}, 748 {"shape":"OrganizationNotFoundException"}, 749 {"shape":"OrganizationStateException"}, 750 {"shape":"InvalidParameterException"} 751 ], 752 "documentation":"<p>Gets details for a mail domain, including domain records required to configure your domain with recommended security.</p>", 753 "idempotent":true 754 }, 755 "GetMailboxDetails":{ 756 "name":"GetMailboxDetails", 757 "http":{ 758 "method":"POST", 759 "requestUri":"/" 760 }, 761 "input":{"shape":"GetMailboxDetailsRequest"}, 762 "output":{"shape":"GetMailboxDetailsResponse"}, 763 "errors":[ 764 {"shape":"InvalidParameterException"}, 765 {"shape":"OrganizationNotFoundException"}, 766 {"shape":"OrganizationStateException"}, 767 {"shape":"EntityNotFoundException"} 768 ], 769 "documentation":"<p>Requests a user's mailbox details for a specified organization and user.</p>", 770 "idempotent":true 771 }, 772 "GetMobileDeviceAccessEffect":{ 773 "name":"GetMobileDeviceAccessEffect", 774 "http":{ 775 "method":"POST", 776 "requestUri":"/" 777 }, 778 "input":{"shape":"GetMobileDeviceAccessEffectRequest"}, 779 "output":{"shape":"GetMobileDeviceAccessEffectResponse"}, 780 "errors":[ 781 {"shape":"InvalidParameterException"}, 782 {"shape":"OrganizationNotFoundException"}, 783 {"shape":"OrganizationStateException"} 784 ], 785 "documentation":"<p>Simulates the effect of the mobile device access rules for the given attributes of a sample access event. Use this method to test the effects of the current set of mobile device access rules for the WorkMail organization for a particular user's attributes.</p>" 786 }, 787 "GetMobileDeviceAccessOverride":{ 788 "name":"GetMobileDeviceAccessOverride", 789 "http":{ 790 "method":"POST", 791 "requestUri":"/" 792 }, 793 "input":{"shape":"GetMobileDeviceAccessOverrideRequest"}, 794 "output":{"shape":"GetMobileDeviceAccessOverrideResponse"}, 795 "errors":[ 796 {"shape":"InvalidParameterException"}, 797 {"shape":"OrganizationNotFoundException"}, 798 {"shape":"OrganizationStateException"}, 799 {"shape":"EntityNotFoundException"}, 800 {"shape":"ResourceNotFoundException"} 801 ], 802 "documentation":"<p>Gets the mobile device access override for the given WorkMail organization, user, and device.</p>" 803 }, 804 "ListAccessControlRules":{ 805 "name":"ListAccessControlRules", 806 "http":{ 807 "method":"POST", 808 "requestUri":"/" 809 }, 810 "input":{"shape":"ListAccessControlRulesRequest"}, 811 "output":{"shape":"ListAccessControlRulesResponse"}, 812 "errors":[ 813 {"shape":"OrganizationNotFoundException"}, 814 {"shape":"OrganizationStateException"} 815 ], 816 "documentation":"<p>Lists the access control rules for the specified organization.</p>" 817 }, 818 "ListAliases":{ 819 "name":"ListAliases", 820 "http":{ 821 "method":"POST", 822 "requestUri":"/" 823 }, 824 "input":{"shape":"ListAliasesRequest"}, 825 "output":{"shape":"ListAliasesResponse"}, 826 "errors":[ 827 {"shape":"EntityNotFoundException"}, 828 {"shape":"EntityStateException"}, 829 {"shape":"InvalidParameterException"}, 830 {"shape":"OrganizationNotFoundException"}, 831 {"shape":"OrganizationStateException"} 832 ], 833 "documentation":"<p>Creates a paginated call to list the aliases associated with a given entity.</p>", 834 "idempotent":true 835 }, 836 "ListAvailabilityConfigurations":{ 837 "name":"ListAvailabilityConfigurations", 838 "http":{ 839 "method":"POST", 840 "requestUri":"/" 841 }, 842 "input":{"shape":"ListAvailabilityConfigurationsRequest"}, 843 "output":{"shape":"ListAvailabilityConfigurationsResponse"}, 844 "errors":[ 845 {"shape":"OrganizationNotFoundException"}, 846 {"shape":"OrganizationStateException"} 847 ], 848 "documentation":"<p>List all the <code>AvailabilityConfiguration</code>'s for the given WorkMail organization.</p>" 849 }, 850 "ListGroupMembers":{ 851 "name":"ListGroupMembers", 852 "http":{ 853 "method":"POST", 854 "requestUri":"/" 855 }, 856 "input":{"shape":"ListGroupMembersRequest"}, 857 "output":{"shape":"ListGroupMembersResponse"}, 858 "errors":[ 859 {"shape":"EntityNotFoundException"}, 860 {"shape":"EntityStateException"}, 861 {"shape":"InvalidParameterException"}, 862 {"shape":"OrganizationNotFoundException"}, 863 {"shape":"OrganizationStateException"} 864 ], 865 "documentation":"<p>Returns an overview of the members of a group. Users and groups can be members of a group.</p>", 866 "idempotent":true 867 }, 868 "ListGroups":{ 869 "name":"ListGroups", 870 "http":{ 871 "method":"POST", 872 "requestUri":"/" 873 }, 874 "input":{"shape":"ListGroupsRequest"}, 875 "output":{"shape":"ListGroupsResponse"}, 876 "errors":[ 877 {"shape":"EntityNotFoundException"}, 878 {"shape":"InvalidParameterException"}, 879 {"shape":"OrganizationNotFoundException"}, 880 {"shape":"OrganizationStateException"} 881 ], 882 "documentation":"<p>Returns summaries of the organization's groups.</p>", 883 "idempotent":true 884 }, 885 "ListGroupsForEntity":{ 886 "name":"ListGroupsForEntity", 887 "http":{ 888 "method":"POST", 889 "requestUri":"/" 890 }, 891 "input":{"shape":"ListGroupsForEntityRequest"}, 892 "output":{"shape":"ListGroupsForEntityResponse"}, 893 "errors":[ 894 {"shape":"EntityNotFoundException"}, 895 {"shape":"EntityStateException"}, 896 {"shape":"OrganizationNotFoundException"}, 897 {"shape":"OrganizationStateException"}, 898 {"shape":"InvalidParameterException"} 899 ], 900 "documentation":"<p>Returns all the groups to which an entity belongs.</p>", 901 "idempotent":true 902 }, 903 "ListImpersonationRoles":{ 904 "name":"ListImpersonationRoles", 905 "http":{ 906 "method":"POST", 907 "requestUri":"/" 908 }, 909 "input":{"shape":"ListImpersonationRolesRequest"}, 910 "output":{"shape":"ListImpersonationRolesResponse"}, 911 "errors":[ 912 {"shape":"InvalidParameterException"}, 913 {"shape":"OrganizationNotFoundException"}, 914 {"shape":"OrganizationStateException"} 915 ], 916 "documentation":"<p>Lists all the impersonation roles for the given WorkMail organization.</p>" 917 }, 918 "ListMailDomains":{ 919 "name":"ListMailDomains", 920 "http":{ 921 "method":"POST", 922 "requestUri":"/" 923 }, 924 "input":{"shape":"ListMailDomainsRequest"}, 925 "output":{"shape":"ListMailDomainsResponse"}, 926 "errors":[ 927 {"shape":"InvalidParameterException"}, 928 {"shape":"OrganizationNotFoundException"}, 929 {"shape":"OrganizationStateException"} 930 ], 931 "documentation":"<p>Lists the mail domains in a given WorkMail organization.</p>", 932 "idempotent":true 933 }, 934 "ListMailboxExportJobs":{ 935 "name":"ListMailboxExportJobs", 936 "http":{ 937 "method":"POST", 938 "requestUri":"/" 939 }, 940 "input":{"shape":"ListMailboxExportJobsRequest"}, 941 "output":{"shape":"ListMailboxExportJobsResponse"}, 942 "errors":[ 943 {"shape":"InvalidParameterException"}, 944 {"shape":"OrganizationNotFoundException"}, 945 {"shape":"OrganizationStateException"} 946 ], 947 "documentation":"<p>Lists the mailbox export jobs started for the specified organization within the last seven days.</p>", 948 "idempotent":true 949 }, 950 "ListMailboxPermissions":{ 951 "name":"ListMailboxPermissions", 952 "http":{ 953 "method":"POST", 954 "requestUri":"/" 955 }, 956 "input":{"shape":"ListMailboxPermissionsRequest"}, 957 "output":{"shape":"ListMailboxPermissionsResponse"}, 958 "errors":[ 959 {"shape":"EntityNotFoundException"}, 960 {"shape":"InvalidParameterException"}, 961 {"shape":"OrganizationNotFoundException"}, 962 {"shape":"OrganizationStateException"} 963 ], 964 "documentation":"<p>Lists the mailbox permissions associated with a user, group, or resource mailbox.</p>", 965 "idempotent":true 966 }, 967 "ListMobileDeviceAccessOverrides":{ 968 "name":"ListMobileDeviceAccessOverrides", 969 "http":{ 970 "method":"POST", 971 "requestUri":"/" 972 }, 973 "input":{"shape":"ListMobileDeviceAccessOverridesRequest"}, 974 "output":{"shape":"ListMobileDeviceAccessOverridesResponse"}, 975 "errors":[ 976 {"shape":"InvalidParameterException"}, 977 {"shape":"OrganizationNotFoundException"}, 978 {"shape":"OrganizationStateException"}, 979 {"shape":"EntityNotFoundException"} 980 ], 981 "documentation":"<p>Lists all the mobile device access overrides for any given combination of WorkMail organization, user, or device.</p>" 982 }, 983 "ListMobileDeviceAccessRules":{ 984 "name":"ListMobileDeviceAccessRules", 985 "http":{ 986 "method":"POST", 987 "requestUri":"/" 988 }, 989 "input":{"shape":"ListMobileDeviceAccessRulesRequest"}, 990 "output":{"shape":"ListMobileDeviceAccessRulesResponse"}, 991 "errors":[ 992 {"shape":"InvalidParameterException"}, 993 {"shape":"OrganizationNotFoundException"}, 994 {"shape":"OrganizationStateException"} 995 ], 996 "documentation":"<p>Lists the mobile device access rules for the specified WorkMail organization.</p>" 997 }, 998 "ListOrganizations":{ 999 "name":"ListOrganizations", 1000 "http":{ 1001 "method":"POST", 1002 "requestUri":"/" 1003 }, 1004 "input":{"shape":"ListOrganizationsRequest"}, 1005 "output":{"shape":"ListOrganizationsResponse"}, 1006 "errors":[ 1007 {"shape":"InvalidParameterException"} 1008 ], 1009 "documentation":"<p>Returns summaries of the customer's organizations.</p>", 1010 "idempotent":true 1011 }, 1012 "ListResourceDelegates":{ 1013 "name":"ListResourceDelegates", 1014 "http":{ 1015 "method":"POST", 1016 "requestUri":"/" 1017 }, 1018 "input":{"shape":"ListResourceDelegatesRequest"}, 1019 "output":{"shape":"ListResourceDelegatesResponse"}, 1020 "errors":[ 1021 {"shape":"EntityNotFoundException"}, 1022 {"shape":"EntityStateException"}, 1023 {"shape":"InvalidParameterException"}, 1024 {"shape":"OrganizationNotFoundException"}, 1025 {"shape":"OrganizationStateException"}, 1026 {"shape":"UnsupportedOperationException"} 1027 ], 1028 "documentation":"<p>Lists the delegates associated with a resource. Users and groups can be resource delegates and answer requests on behalf of the resource.</p>", 1029 "idempotent":true 1030 }, 1031 "ListResources":{ 1032 "name":"ListResources", 1033 "http":{ 1034 "method":"POST", 1035 "requestUri":"/" 1036 }, 1037 "input":{"shape":"ListResourcesRequest"}, 1038 "output":{"shape":"ListResourcesResponse"}, 1039 "errors":[ 1040 {"shape":"InvalidParameterException"}, 1041 {"shape":"OrganizationNotFoundException"}, 1042 {"shape":"OrganizationStateException"}, 1043 {"shape":"UnsupportedOperationException"} 1044 ], 1045 "documentation":"<p>Returns summaries of the organization's resources.</p>", 1046 "idempotent":true 1047 }, 1048 "ListTagsForResource":{ 1049 "name":"ListTagsForResource", 1050 "http":{ 1051 "method":"POST", 1052 "requestUri":"/" 1053 }, 1054 "input":{"shape":"ListTagsForResourceRequest"}, 1055 "output":{"shape":"ListTagsForResourceResponse"}, 1056 "errors":[ 1057 {"shape":"ResourceNotFoundException"} 1058 ], 1059 "documentation":"<p>Lists the tags applied to an WorkMail organization resource.</p>" 1060 }, 1061 "ListUsers":{ 1062 "name":"ListUsers", 1063 "http":{ 1064 "method":"POST", 1065 "requestUri":"/" 1066 }, 1067 "input":{"shape":"ListUsersRequest"}, 1068 "output":{"shape":"ListUsersResponse"}, 1069 "errors":[ 1070 {"shape":"InvalidParameterException"}, 1071 {"shape":"OrganizationNotFoundException"}, 1072 {"shape":"OrganizationStateException"} 1073 ], 1074 "documentation":"<p>Returns summaries of the organization's users.</p>", 1075 "idempotent":true 1076 }, 1077 "PutAccessControlRule":{ 1078 "name":"PutAccessControlRule", 1079 "http":{ 1080 "method":"POST", 1081 "requestUri":"/" 1082 }, 1083 "input":{"shape":"PutAccessControlRuleRequest"}, 1084 "output":{"shape":"PutAccessControlRuleResponse"}, 1085 "errors":[ 1086 {"shape":"LimitExceededException"}, 1087 {"shape":"InvalidParameterException"}, 1088 {"shape":"EntityNotFoundException"}, 1089 {"shape":"ResourceNotFoundException"}, 1090 {"shape":"OrganizationNotFoundException"}, 1091 {"shape":"OrganizationStateException"} 1092 ], 1093 "documentation":"<p>Adds a new access control rule for the specified organization. The rule allows or denies access to the organization for the specified IPv4 addresses, access protocol actions, user IDs and impersonation IDs. Adding a new rule with the same name as an existing rule replaces the older rule.</p>" 1094 }, 1095 "PutEmailMonitoringConfiguration":{ 1096 "name":"PutEmailMonitoringConfiguration", 1097 "http":{ 1098 "method":"POST", 1099 "requestUri":"/" 1100 }, 1101 "input":{"shape":"PutEmailMonitoringConfigurationRequest"}, 1102 "output":{"shape":"PutEmailMonitoringConfigurationResponse"}, 1103 "errors":[ 1104 {"shape":"ResourceNotFoundException"}, 1105 {"shape":"InvalidParameterException"}, 1106 {"shape":"OrganizationNotFoundException"}, 1107 {"shape":"OrganizationStateException"} 1108 ], 1109 "documentation":"<p>Creates or updates the email monitoring configuration for a specified organization.</p>", 1110 "idempotent":true 1111 }, 1112 "PutInboundDmarcSettings":{ 1113 "name":"PutInboundDmarcSettings", 1114 "http":{ 1115 "method":"POST", 1116 "requestUri":"/" 1117 }, 1118 "input":{"shape":"PutInboundDmarcSettingsRequest"}, 1119 "output":{"shape":"PutInboundDmarcSettingsResponse"}, 1120 "errors":[ 1121 {"shape":"OrganizationNotFoundException"}, 1122 {"shape":"OrganizationStateException"} 1123 ], 1124 "documentation":"<p>Enables or disables a DMARC policy for a given organization.</p>", 1125 "idempotent":true 1126 }, 1127 "PutMailboxPermissions":{ 1128 "name":"PutMailboxPermissions", 1129 "http":{ 1130 "method":"POST", 1131 "requestUri":"/" 1132 }, 1133 "input":{"shape":"PutMailboxPermissionsRequest"}, 1134 "output":{"shape":"PutMailboxPermissionsResponse"}, 1135 "errors":[ 1136 {"shape":"EntityNotFoundException"}, 1137 {"shape":"EntityStateException"}, 1138 {"shape":"InvalidParameterException"}, 1139 {"shape":"OrganizationNotFoundException"}, 1140 {"shape":"OrganizationStateException"} 1141 ], 1142 "documentation":"<p>Sets permissions for a user, group, or resource. This replaces any pre-existing permissions.</p>", 1143 "idempotent":true 1144 }, 1145 "PutMobileDeviceAccessOverride":{ 1146 "name":"PutMobileDeviceAccessOverride", 1147 "http":{ 1148 "method":"POST", 1149 "requestUri":"/" 1150 }, 1151 "input":{"shape":"PutMobileDeviceAccessOverrideRequest"}, 1152 "output":{"shape":"PutMobileDeviceAccessOverrideResponse"}, 1153 "errors":[ 1154 {"shape":"InvalidParameterException"}, 1155 {"shape":"OrganizationNotFoundException"}, 1156 {"shape":"OrganizationStateException"}, 1157 {"shape":"EntityNotFoundException"}, 1158 {"shape":"EntityStateException"} 1159 ], 1160 "documentation":"<p>Creates or updates a mobile device access override for the given WorkMail organization, user, and device.</p>" 1161 }, 1162 "PutRetentionPolicy":{ 1163 "name":"PutRetentionPolicy", 1164 "http":{ 1165 "method":"POST", 1166 "requestUri":"/" 1167 }, 1168 "input":{"shape":"PutRetentionPolicyRequest"}, 1169 "output":{"shape":"PutRetentionPolicyResponse"}, 1170 "errors":[ 1171 {"shape":"InvalidParameterException"}, 1172 {"shape":"OrganizationNotFoundException"}, 1173 {"shape":"OrganizationStateException"}, 1174 {"shape":"LimitExceededException"} 1175 ], 1176 "documentation":"<p>Puts a retention policy to the specified organization.</p>", 1177 "idempotent":true 1178 }, 1179 "RegisterMailDomain":{ 1180 "name":"RegisterMailDomain", 1181 "http":{ 1182 "method":"POST", 1183 "requestUri":"/" 1184 }, 1185 "input":{"shape":"RegisterMailDomainRequest"}, 1186 "output":{"shape":"RegisterMailDomainResponse"}, 1187 "errors":[ 1188 {"shape":"MailDomainInUseException"}, 1189 {"shape":"OrganizationNotFoundException"}, 1190 {"shape":"OrganizationStateException"}, 1191 {"shape":"LimitExceededException"}, 1192 {"shape":"InvalidParameterException"} 1193 ], 1194 "documentation":"<p>Registers a new domain in WorkMail and SES, and configures it for use by WorkMail. Emails received by SES for this domain are routed to the specified WorkMail organization, and WorkMail has permanent permission to use the specified domain for sending your users' emails.</p>", 1195 "idempotent":true 1196 }, 1197 "RegisterToWorkMail":{ 1198 "name":"RegisterToWorkMail", 1199 "http":{ 1200 "method":"POST", 1201 "requestUri":"/" 1202 }, 1203 "input":{"shape":"RegisterToWorkMailRequest"}, 1204 "output":{"shape":"RegisterToWorkMailResponse"}, 1205 "errors":[ 1206 {"shape":"DirectoryServiceAuthenticationFailedException"}, 1207 {"shape":"DirectoryUnavailableException"}, 1208 {"shape":"EmailAddressInUseException"}, 1209 {"shape":"EntityNotFoundException"}, 1210 {"shape":"EntityStateException"}, 1211 {"shape":"EntityAlreadyRegisteredException"}, 1212 {"shape":"InvalidParameterException"}, 1213 {"shape":"MailDomainNotFoundException"}, 1214 {"shape":"MailDomainStateException"}, 1215 {"shape":"OrganizationNotFoundException"}, 1216 {"shape":"OrganizationStateException"} 1217 ], 1218 "documentation":"<p>Registers an existing and disabled user, group, or resource for WorkMail use by associating a mailbox and calendaring capabilities. It performs no change if the user, group, or resource is enabled and fails if the user, group, or resource is deleted. This operation results in the accumulation of costs. For more information, see <a href=\"https://aws.amazon.com/workmail/pricing\">Pricing</a>. The equivalent console functionality for this operation is <i>Enable</i>.</p> <p>Users can either be created by calling the <a>CreateUser</a> API operation or they can be synchronized from your directory. For more information, see <a>DeregisterFromWorkMail</a>.</p>", 1219 "idempotent":true 1220 }, 1221 "ResetPassword":{ 1222 "name":"ResetPassword", 1223 "http":{ 1224 "method":"POST", 1225 "requestUri":"/" 1226 }, 1227 "input":{"shape":"ResetPasswordRequest"}, 1228 "output":{"shape":"ResetPasswordResponse"}, 1229 "errors":[ 1230 {"shape":"DirectoryServiceAuthenticationFailedException"}, 1231 {"shape":"DirectoryUnavailableException"}, 1232 {"shape":"EntityNotFoundException"}, 1233 {"shape":"EntityStateException"}, 1234 {"shape":"InvalidParameterException"}, 1235 {"shape":"InvalidPasswordException"}, 1236 {"shape":"OrganizationNotFoundException"}, 1237 {"shape":"OrganizationStateException"}, 1238 {"shape":"UnsupportedOperationException"} 1239 ], 1240 "documentation":"<p>Allows the administrator to reset the password for a user.</p>", 1241 "idempotent":true 1242 }, 1243 "StartMailboxExportJob":{ 1244 "name":"StartMailboxExportJob", 1245 "http":{ 1246 "method":"POST", 1247 "requestUri":"/" 1248 }, 1249 "input":{"shape":"StartMailboxExportJobRequest"}, 1250 "output":{"shape":"StartMailboxExportJobResponse"}, 1251 "errors":[ 1252 {"shape":"InvalidParameterException"}, 1253 {"shape":"OrganizationNotFoundException"}, 1254 {"shape":"OrganizationStateException"}, 1255 {"shape":"EntityNotFoundException"}, 1256 {"shape":"LimitExceededException"} 1257 ], 1258 "documentation":"<p>Starts a mailbox export job to export MIME-format email messages and calendar items from the specified mailbox to the specified Amazon Simple Storage Service (Amazon S3) bucket. For more information, see <a href=\"https://docs.aws.amazon.com/workmail/latest/adminguide/mail-export.html\">Exporting mailbox content</a> in the <i>WorkMail Administrator Guide</i>.</p>", 1259 "idempotent":true 1260 }, 1261 "TagResource":{ 1262 "name":"TagResource", 1263 "http":{ 1264 "method":"POST", 1265 "requestUri":"/" 1266 }, 1267 "input":{"shape":"TagResourceRequest"}, 1268 "output":{"shape":"TagResourceResponse"}, 1269 "errors":[ 1270 {"shape":"InvalidParameterException"}, 1271 {"shape":"ResourceNotFoundException"}, 1272 {"shape":"TooManyTagsException"}, 1273 {"shape":"OrganizationStateException"} 1274 ], 1275 "documentation":"<p>Applies the specified tags to the specified WorkMailorganization resource.</p>" 1276 }, 1277 "TestAvailabilityConfiguration":{ 1278 "name":"TestAvailabilityConfiguration", 1279 "http":{ 1280 "method":"POST", 1281 "requestUri":"/" 1282 }, 1283 "input":{"shape":"TestAvailabilityConfigurationRequest"}, 1284 "output":{"shape":"TestAvailabilityConfigurationResponse"}, 1285 "errors":[ 1286 {"shape":"OrganizationNotFoundException"}, 1287 {"shape":"OrganizationStateException"}, 1288 {"shape":"ResourceNotFoundException"}, 1289 {"shape":"InvalidParameterException"} 1290 ], 1291 "documentation":"<p>Performs a test on an availability provider to ensure that access is allowed. For EWS, it verifies the provided credentials can be used to successfully log in. For Lambda, it verifies that the Lambda function can be invoked and that the resource access policy was configured to deny anonymous access. An anonymous invocation is one done without providing either a <code>SourceArn</code> or <code>SourceAccount</code> header.</p> <note> <p>The request must contain either one provider definition (<code>EwsProvider</code> or <code>LambdaProvider</code>) or the <code>DomainName</code> parameter. If the <code>DomainName</code> parameter is provided, the configuration stored under the <code>DomainName</code> will be tested.</p> </note>" 1292 }, 1293 "UntagResource":{ 1294 "name":"UntagResource", 1295 "http":{ 1296 "method":"POST", 1297 "requestUri":"/" 1298 }, 1299 "input":{"shape":"UntagResourceRequest"}, 1300 "output":{"shape":"UntagResourceResponse"}, 1301 "errors":[ 1302 {"shape":"ResourceNotFoundException"} 1303 ], 1304 "documentation":"<p>Untags the specified tags from the specified WorkMail organization resource.</p>" 1305 }, 1306 "UpdateAvailabilityConfiguration":{ 1307 "name":"UpdateAvailabilityConfiguration", 1308 "http":{ 1309 "method":"POST", 1310 "requestUri":"/" 1311 }, 1312 "input":{"shape":"UpdateAvailabilityConfigurationRequest"}, 1313 "output":{"shape":"UpdateAvailabilityConfigurationResponse"}, 1314 "errors":[ 1315 {"shape":"OrganizationNotFoundException"}, 1316 {"shape":"OrganizationStateException"}, 1317 {"shape":"ResourceNotFoundException"}, 1318 {"shape":"InvalidParameterException"} 1319 ], 1320 "documentation":"<p>Updates an existing <code>AvailabilityConfiguration</code> for the given WorkMail organization and domain.</p>", 1321 "idempotent":true 1322 }, 1323 "UpdateDefaultMailDomain":{ 1324 "name":"UpdateDefaultMailDomain", 1325 "http":{ 1326 "method":"POST", 1327 "requestUri":"/" 1328 }, 1329 "input":{"shape":"UpdateDefaultMailDomainRequest"}, 1330 "output":{"shape":"UpdateDefaultMailDomainResponse"}, 1331 "errors":[ 1332 {"shape":"MailDomainNotFoundException"}, 1333 {"shape":"MailDomainStateException"}, 1334 {"shape":"OrganizationNotFoundException"}, 1335 {"shape":"OrganizationStateException"}, 1336 {"shape":"InvalidParameterException"} 1337 ], 1338 "documentation":"<p>Updates the default mail domain for an organization. The default mail domain is used by the WorkMail AWS Console to suggest an email address when enabling a mail user. You can only have one default domain.</p>", 1339 "idempotent":true 1340 }, 1341 "UpdateGroup":{ 1342 "name":"UpdateGroup", 1343 "http":{ 1344 "method":"POST", 1345 "requestUri":"/" 1346 }, 1347 "input":{"shape":"UpdateGroupRequest"}, 1348 "output":{"shape":"UpdateGroupResponse"}, 1349 "errors":[ 1350 {"shape":"EntityNotFoundException"}, 1351 {"shape":"EntityStateException"}, 1352 {"shape":"OrganizationNotFoundException"}, 1353 {"shape":"OrganizationStateException"}, 1354 {"shape":"UnsupportedOperationException"}, 1355 {"shape":"InvalidParameterException"} 1356 ], 1357 "documentation":"<p>Updates attibutes in a group.</p>", 1358 "idempotent":true 1359 }, 1360 "UpdateImpersonationRole":{ 1361 "name":"UpdateImpersonationRole", 1362 "http":{ 1363 "method":"POST", 1364 "requestUri":"/" 1365 }, 1366 "input":{"shape":"UpdateImpersonationRoleRequest"}, 1367 "output":{"shape":"UpdateImpersonationRoleResponse"}, 1368 "errors":[ 1369 {"shape":"InvalidParameterException"}, 1370 {"shape":"OrganizationNotFoundException"}, 1371 {"shape":"OrganizationStateException"}, 1372 {"shape":"ResourceNotFoundException"}, 1373 {"shape":"EntityNotFoundException"}, 1374 {"shape":"EntityStateException"}, 1375 {"shape":"LimitExceededException"} 1376 ], 1377 "documentation":"<p>Updates an impersonation role for the given WorkMail organization.</p>" 1378 }, 1379 "UpdateMailboxQuota":{ 1380 "name":"UpdateMailboxQuota", 1381 "http":{ 1382 "method":"POST", 1383 "requestUri":"/" 1384 }, 1385 "input":{"shape":"UpdateMailboxQuotaRequest"}, 1386 "output":{"shape":"UpdateMailboxQuotaResponse"}, 1387 "errors":[ 1388 {"shape":"InvalidParameterException"}, 1389 {"shape":"OrganizationNotFoundException"}, 1390 {"shape":"OrganizationStateException"}, 1391 {"shape":"EntityNotFoundException"}, 1392 {"shape":"EntityStateException"} 1393 ], 1394 "documentation":"<p>Updates a user's current mailbox quota for a specified organization and user.</p>", 1395 "idempotent":true 1396 }, 1397 "UpdateMobileDeviceAccessRule":{ 1398 "name":"UpdateMobileDeviceAccessRule", 1399 "http":{ 1400 "method":"POST", 1401 "requestUri":"/" 1402 }, 1403 "input":{"shape":"UpdateMobileDeviceAccessRuleRequest"}, 1404 "output":{"shape":"UpdateMobileDeviceAccessRuleResponse"}, 1405 "errors":[ 1406 {"shape":"InvalidParameterException"}, 1407 {"shape":"EntityNotFoundException"}, 1408 {"shape":"OrganizationNotFoundException"}, 1409 {"shape":"OrganizationStateException"} 1410 ], 1411 "documentation":"<p>Updates a mobile device access rule for the specified WorkMail organization.</p>" 1412 }, 1413 "UpdatePrimaryEmailAddress":{ 1414 "name":"UpdatePrimaryEmailAddress", 1415 "http":{ 1416 "method":"POST", 1417 "requestUri":"/" 1418 }, 1419 "input":{"shape":"UpdatePrimaryEmailAddressRequest"}, 1420 "output":{"shape":"UpdatePrimaryEmailAddressResponse"}, 1421 "errors":[ 1422 {"shape":"DirectoryServiceAuthenticationFailedException"}, 1423 {"shape":"DirectoryUnavailableException"}, 1424 {"shape":"EmailAddressInUseException"}, 1425 {"shape":"EntityNotFoundException"}, 1426 {"shape":"EntityStateException"}, 1427 {"shape":"InvalidParameterException"}, 1428 {"shape":"MailDomainNotFoundException"}, 1429 {"shape":"MailDomainStateException"}, 1430 {"shape":"InvalidParameterException"}, 1431 {"shape":"OrganizationNotFoundException"}, 1432 {"shape":"OrganizationStateException"}, 1433 {"shape":"UnsupportedOperationException"} 1434 ], 1435 "documentation":"<p>Updates the primary email for a user, group, or resource. The current email is moved into the list of aliases (or swapped between an existing alias and the current primary email), and the email provided in the input is promoted as the primary.</p>", 1436 "idempotent":true 1437 }, 1438 "UpdateResource":{ 1439 "name":"UpdateResource", 1440 "http":{ 1441 "method":"POST", 1442 "requestUri":"/" 1443 }, 1444 "input":{"shape":"UpdateResourceRequest"}, 1445 "output":{"shape":"UpdateResourceResponse"}, 1446 "errors":[ 1447 {"shape":"DirectoryUnavailableException"}, 1448 {"shape":"EntityNotFoundException"}, 1449 {"shape":"EntityStateException"}, 1450 {"shape":"InvalidConfigurationException"}, 1451 {"shape":"EmailAddressInUseException"}, 1452 {"shape":"MailDomainNotFoundException"}, 1453 {"shape":"MailDomainStateException"}, 1454 {"shape":"NameAvailabilityException"}, 1455 {"shape":"OrganizationNotFoundException"}, 1456 {"shape":"OrganizationStateException"}, 1457 {"shape":"UnsupportedOperationException"}, 1458 {"shape":"InvalidParameterException"} 1459 ], 1460 "documentation":"<p>Updates data for the resource. To have the latest information, it must be preceded by a <a>DescribeResource</a> call. The dataset in the request should be the one expected when performing another <code>DescribeResource</code> call.</p>", 1461 "idempotent":true 1462 }, 1463 "UpdateUser":{ 1464 "name":"UpdateUser", 1465 "http":{ 1466 "method":"POST", 1467 "requestUri":"/" 1468 }, 1469 "input":{"shape":"UpdateUserRequest"}, 1470 "output":{"shape":"UpdateUserResponse"}, 1471 "errors":[ 1472 {"shape":"DirectoryServiceAuthenticationFailedException"}, 1473 {"shape":"DirectoryUnavailableException"}, 1474 {"shape":"EntityNotFoundException"}, 1475 {"shape":"InvalidParameterException"}, 1476 {"shape":"OrganizationNotFoundException"}, 1477 {"shape":"OrganizationStateException"}, 1478 {"shape":"UnsupportedOperationException"}, 1479 {"shape":"EntityStateException"} 1480 ], 1481 "documentation":"<p>Updates data for the user. To have the latest information, it must be preceded by a <a>DescribeUser</a> call. The dataset in the request should be the one expected when performing another <code>DescribeUser</code> call.</p>", 1482 "idempotent":true 1483 } 1484 }, 1485 "shapes":{ 1486 "AccessControlRule":{ 1487 "type":"structure", 1488 "members":{ 1489 "Name":{ 1490 "shape":"AccessControlRuleName", 1491 "documentation":"<p>The rule name.</p>" 1492 }, 1493 "Effect":{ 1494 "shape":"AccessControlRuleEffect", 1495 "documentation":"<p>The rule effect.</p>" 1496 }, 1497 "Description":{ 1498 "shape":"AccessControlRuleDescription", 1499 "documentation":"<p>The rule description.</p>" 1500 }, 1501 "IpRanges":{ 1502 "shape":"IpRangeList", 1503 "documentation":"<p>IPv4 CIDR ranges to include in the rule.</p>" 1504 }, 1505 "NotIpRanges":{ 1506 "shape":"IpRangeList", 1507 "documentation":"<p>IPv4 CIDR ranges to exclude from the rule.</p>" 1508 }, 1509 "Actions":{ 1510 "shape":"ActionsList", 1511 "documentation":"<p>Access protocol actions to include in the rule. Valid values include <code>ActiveSync</code>, <code>AutoDiscover</code>, <code>EWS</code>, <code>IMAP</code>, <code>SMTP</code>, <code>WindowsOutlook</code>, and <code>WebMail</code>.</p>" 1512 }, 1513 "NotActions":{ 1514 "shape":"ActionsList", 1515 "documentation":"<p>Access protocol actions to exclude from the rule. Valid values include <code>ActiveSync</code>, <code>AutoDiscover</code>, <code>EWS</code>, <code>IMAP</code>, <code>SMTP</code>, <code>WindowsOutlook</code>, and <code>WebMail</code>.</p>" 1516 }, 1517 "UserIds":{ 1518 "shape":"UserIdList", 1519 "documentation":"<p>User IDs to include in the rule.</p>" 1520 }, 1521 "NotUserIds":{ 1522 "shape":"UserIdList", 1523 "documentation":"<p>User IDs to exclude from the rule.</p>" 1524 }, 1525 "DateCreated":{ 1526 "shape":"Timestamp", 1527 "documentation":"<p>The date that the rule was created.</p>" 1528 }, 1529 "DateModified":{ 1530 "shape":"Timestamp", 1531 "documentation":"<p>The date that the rule was modified.</p>" 1532 }, 1533 "ImpersonationRoleIds":{ 1534 "shape":"ImpersonationRoleIdList", 1535 "documentation":"<p>Impersonation role IDs to include in the rule.</p>" 1536 }, 1537 "NotImpersonationRoleIds":{ 1538 "shape":"ImpersonationRoleIdList", 1539 "documentation":"<p>Impersonation role IDs to exclude from the rule.</p>" 1540 } 1541 }, 1542 "documentation":"<p>A rule that controls access to an WorkMail organization.</p>" 1543 }, 1544 "AccessControlRuleAction":{ 1545 "type":"string", 1546 "max":64, 1547 "min":1, 1548 "pattern":"[a-zA-Z]+" 1549 }, 1550 "AccessControlRuleDescription":{ 1551 "type":"string", 1552 "max":255, 1553 "min":0, 1554 "pattern":"[\\u0020-\\u00FF]+" 1555 }, 1556 "AccessControlRuleEffect":{ 1557 "type":"string", 1558 "enum":[ 1559 "ALLOW", 1560 "DENY" 1561 ] 1562 }, 1563 "AccessControlRuleName":{ 1564 "type":"string", 1565 "max":64, 1566 "min":1, 1567 "pattern":"[a-zA-Z0-9_-]+" 1568 }, 1569 "AccessControlRuleNameList":{ 1570 "type":"list", 1571 "member":{"shape":"AccessControlRuleName"}, 1572 "max":10, 1573 "min":0 1574 }, 1575 "AccessControlRulesList":{ 1576 "type":"list", 1577 "member":{"shape":"AccessControlRule"}, 1578 "max":10, 1579 "min":0 1580 }, 1581 "AccessEffect":{ 1582 "type":"string", 1583 "enum":[ 1584 "ALLOW", 1585 "DENY" 1586 ] 1587 }, 1588 "ActionsList":{ 1589 "type":"list", 1590 "member":{"shape":"AccessControlRuleAction"}, 1591 "max":10, 1592 "min":0 1593 }, 1594 "Aliases":{ 1595 "type":"list", 1596 "member":{"shape":"EmailAddress"} 1597 }, 1598 "AmazonResourceName":{ 1599 "type":"string", 1600 "max":1011, 1601 "min":1, 1602 "pattern":"arn:aws:workmail:[a-z0-9-]*:[a-z0-9-]+:[A-Za-z0-9][A-Za-z0-9:_/+=,@.-]{0,1023}" 1603 }, 1604 "AssociateDelegateToResourceRequest":{ 1605 "type":"structure", 1606 "required":[ 1607 "OrganizationId", 1608 "ResourceId", 1609 "EntityId" 1610 ], 1611 "members":{ 1612 "OrganizationId":{ 1613 "shape":"OrganizationId", 1614 "documentation":"<p>The organization under which the resource exists.</p>" 1615 }, 1616 "ResourceId":{ 1617 "shape":"EntityIdentifier", 1618 "documentation":"<p>The resource for which members (users or groups) are associated.</p> <p>The identifier can accept <i>ResourceId</i>, <i>Resourcename</i>, or <i>email</i>. The following identity formats are available:</p> <ul> <li> <p>Resource ID: r-0123456789a0123456789b0123456789</p> </li> <li> <p>Email address: resource@domain.tld</p> </li> <li> <p>Resource name: resource</p> </li> </ul>" 1619 }, 1620 "EntityId":{ 1621 "shape":"EntityIdentifier", 1622 "documentation":"<p>The member (user or group) to associate to the resource.</p> <p>The entity ID can accept <i>UserId or GroupID</i>, <i>Username or Groupname</i>, or <i>email</i>.</p> <ul> <li> <p>Entity: 12345678-1234-1234-1234-123456789012 or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: entity@domain.tld</p> </li> <li> <p>Entity: entity</p> </li> </ul>" 1623 } 1624 } 1625 }, 1626 "AssociateDelegateToResourceResponse":{ 1627 "type":"structure", 1628 "members":{ 1629 } 1630 }, 1631 "AssociateMemberToGroupRequest":{ 1632 "type":"structure", 1633 "required":[ 1634 "OrganizationId", 1635 "GroupId", 1636 "MemberId" 1637 ], 1638 "members":{ 1639 "OrganizationId":{ 1640 "shape":"OrganizationId", 1641 "documentation":"<p>The organization under which the group exists.</p>" 1642 }, 1643 "GroupId":{ 1644 "shape":"EntityIdentifier", 1645 "documentation":"<p>The group to which the member (user or group) is associated.</p> <p>The identifier can accept <i>GroupId</i>, <i>Groupname</i>, or <i>email</i>. The following identity formats are available:</p> <ul> <li> <p>Group ID: 12345678-1234-1234-1234-123456789012 or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: group@domain.tld</p> </li> <li> <p>Group name: group</p> </li> </ul>" 1646 }, 1647 "MemberId":{ 1648 "shape":"EntityIdentifier", 1649 "documentation":"<p>The member (user or group) to associate to the group.</p> <p>The member ID can accept <i>UserID or GroupId</i>, <i>Username or Groupname</i>, or <i>email</i>.</p> <ul> <li> <p>Member: 12345678-1234-1234-1234-123456789012 or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: member@domain.tld</p> </li> <li> <p>Member name: member</p> </li> </ul>" 1650 } 1651 } 1652 }, 1653 "AssociateMemberToGroupResponse":{ 1654 "type":"structure", 1655 "members":{ 1656 } 1657 }, 1658 "AssumeImpersonationRoleRequest":{ 1659 "type":"structure", 1660 "required":[ 1661 "OrganizationId", 1662 "ImpersonationRoleId" 1663 ], 1664 "members":{ 1665 "OrganizationId":{ 1666 "shape":"OrganizationId", 1667 "documentation":"<p>The WorkMail organization under which the impersonation role will be assumed.</p>" 1668 }, 1669 "ImpersonationRoleId":{ 1670 "shape":"ImpersonationRoleId", 1671 "documentation":"<p>The impersonation role ID to assume.</p>" 1672 } 1673 } 1674 }, 1675 "AssumeImpersonationRoleResponse":{ 1676 "type":"structure", 1677 "members":{ 1678 "Token":{ 1679 "shape":"ImpersonationToken", 1680 "documentation":"<p>The authentication token for the impersonation role.</p>" 1681 }, 1682 "ExpiresIn":{ 1683 "shape":"ExpiresIn", 1684 "documentation":"<p>The authentication token's validity, in seconds.</p>" 1685 } 1686 } 1687 }, 1688 "AvailabilityConfiguration":{ 1689 "type":"structure", 1690 "members":{ 1691 "DomainName":{ 1692 "shape":"DomainName", 1693 "documentation":"<p>Displays the domain to which the provider applies.</p>" 1694 }, 1695 "ProviderType":{ 1696 "shape":"AvailabilityProviderType", 1697 "documentation":"<p>Displays the provider type that applies to this domain.</p>" 1698 }, 1699 "EwsProvider":{ 1700 "shape":"RedactedEwsAvailabilityProvider", 1701 "documentation":"<p>If <code>ProviderType</code> is <code>EWS</code>, then this field contains <code>RedactedEwsAvailabilityProvider</code>. Otherwise, it is not required.</p>" 1702 }, 1703 "LambdaProvider":{ 1704 "shape":"LambdaAvailabilityProvider", 1705 "documentation":"<p>If ProviderType is <code>LAMBDA</code> then this field contains <code>LambdaAvailabilityProvider</code>. Otherwise, it is not required.</p>" 1706 }, 1707 "DateCreated":{ 1708 "shape":"Timestamp", 1709 "documentation":"<p>The date and time at which the availability configuration was created.</p>" 1710 }, 1711 "DateModified":{ 1712 "shape":"Timestamp", 1713 "documentation":"<p>The date and time at which the availability configuration was last modified.</p>" 1714 } 1715 }, 1716 "documentation":"<p>List all the <code>AvailabilityConfiguration</code>'s for the given WorkMail organization.</p>" 1717 }, 1718 "AvailabilityConfigurationList":{ 1719 "type":"list", 1720 "member":{"shape":"AvailabilityConfiguration"} 1721 }, 1722 "AvailabilityProviderType":{ 1723 "type":"string", 1724 "enum":[ 1725 "EWS", 1726 "LAMBDA" 1727 ] 1728 }, 1729 "BookingOptions":{ 1730 "type":"structure", 1731 "members":{ 1732 "AutoAcceptRequests":{ 1733 "shape":"Boolean", 1734 "documentation":"<p>The resource's ability to automatically reply to requests. If disabled, delegates must be associated to the resource.</p>" 1735 }, 1736 "AutoDeclineRecurringRequests":{ 1737 "shape":"Boolean", 1738 "documentation":"<p>The resource's ability to automatically decline any recurring requests.</p>" 1739 }, 1740 "AutoDeclineConflictingRequests":{ 1741 "shape":"Boolean", 1742 "documentation":"<p>The resource's ability to automatically decline any conflicting requests.</p>" 1743 } 1744 }, 1745 "documentation":"<p>At least one delegate must be associated to the resource to disable automatic replies from the resource.</p>" 1746 }, 1747 "Boolean":{"type":"boolean"}, 1748 "BooleanObject":{"type":"boolean"}, 1749 "CancelMailboxExportJobRequest":{ 1750 "type":"structure", 1751 "required":[ 1752 "ClientToken", 1753 "JobId", 1754 "OrganizationId" 1755 ], 1756 "members":{ 1757 "ClientToken":{ 1758 "shape":"IdempotencyClientToken", 1759 "documentation":"<p>The idempotency token for the client request.</p>", 1760 "idempotencyToken":true 1761 }, 1762 "JobId":{ 1763 "shape":"MailboxExportJobId", 1764 "documentation":"<p>The job ID.</p>" 1765 }, 1766 "OrganizationId":{ 1767 "shape":"OrganizationId", 1768 "documentation":"<p>The organization ID.</p>" 1769 } 1770 } 1771 }, 1772 "CancelMailboxExportJobResponse":{ 1773 "type":"structure", 1774 "members":{ 1775 } 1776 }, 1777 "CreateAliasRequest":{ 1778 "type":"structure", 1779 "required":[ 1780 "OrganizationId", 1781 "EntityId", 1782 "Alias" 1783 ], 1784 "members":{ 1785 "OrganizationId":{ 1786 "shape":"OrganizationId", 1787 "documentation":"<p>The organization under which the member (user or group) exists.</p>" 1788 }, 1789 "EntityId":{ 1790 "shape":"WorkMailIdentifier", 1791 "documentation":"<p>The member (user or group) to which this alias is added.</p>" 1792 }, 1793 "Alias":{ 1794 "shape":"EmailAddress", 1795 "documentation":"<p>The alias to add to the member set.</p>" 1796 } 1797 } 1798 }, 1799 "CreateAliasResponse":{ 1800 "type":"structure", 1801 "members":{ 1802 } 1803 }, 1804 "CreateAvailabilityConfigurationRequest":{ 1805 "type":"structure", 1806 "required":[ 1807 "OrganizationId", 1808 "DomainName" 1809 ], 1810 "members":{ 1811 "ClientToken":{ 1812 "shape":"IdempotencyClientToken", 1813 "documentation":"<p>An idempotent token that ensures that an API request is executed only once.</p>", 1814 "idempotencyToken":true 1815 }, 1816 "OrganizationId":{ 1817 "shape":"OrganizationId", 1818 "documentation":"<p>The WorkMail organization for which the <code>AvailabilityConfiguration</code> will be created.</p>" 1819 }, 1820 "DomainName":{ 1821 "shape":"DomainName", 1822 "documentation":"<p>The domain to which the provider applies.</p>" 1823 }, 1824 "EwsProvider":{ 1825 "shape":"EwsAvailabilityProvider", 1826 "documentation":"<p>Exchange Web Services (EWS) availability provider definition. The request must contain exactly one provider definition, either <code>EwsProvider</code> or <code>LambdaProvider</code>.</p>" 1827 }, 1828 "LambdaProvider":{ 1829 "shape":"LambdaAvailabilityProvider", 1830 "documentation":"<p>Lambda availability provider definition. The request must contain exactly one provider definition, either <code>EwsProvider</code> or <code>LambdaProvider</code>.</p>" 1831 } 1832 } 1833 }, 1834 "CreateAvailabilityConfigurationResponse":{ 1835 "type":"structure", 1836 "members":{ 1837 } 1838 }, 1839 "CreateGroupRequest":{ 1840 "type":"structure", 1841 "required":[ 1842 "OrganizationId", 1843 "Name" 1844 ], 1845 "members":{ 1846 "OrganizationId":{ 1847 "shape":"OrganizationId", 1848 "documentation":"<p>The organization under which the group is to be created.</p>" 1849 }, 1850 "Name":{ 1851 "shape":"GroupName", 1852 "documentation":"<p>The name of the group.</p>" 1853 }, 1854 "HiddenFromGlobalAddressList":{ 1855 "shape":"Boolean", 1856 "documentation":"<p>If this parameter is enabled, the group will be hidden from the address book.</p>" 1857 } 1858 } 1859 }, 1860 "CreateGroupResponse":{ 1861 "type":"structure", 1862 "members":{ 1863 "GroupId":{ 1864 "shape":"WorkMailIdentifier", 1865 "documentation":"<p>The identifier of the group.</p>" 1866 } 1867 } 1868 }, 1869 "CreateImpersonationRoleRequest":{ 1870 "type":"structure", 1871 "required":[ 1872 "OrganizationId", 1873 "Name", 1874 "Type", 1875 "Rules" 1876 ], 1877 "members":{ 1878 "ClientToken":{ 1879 "shape":"IdempotencyClientToken", 1880 "documentation":"<p>The idempotency token for the client request.</p>", 1881 "idempotencyToken":true 1882 }, 1883 "OrganizationId":{ 1884 "shape":"OrganizationId", 1885 "documentation":"<p>The WorkMail organization to create the new impersonation role within.</p>" 1886 }, 1887 "Name":{ 1888 "shape":"ImpersonationRoleName", 1889 "documentation":"<p>The name of the new impersonation role.</p>" 1890 }, 1891 "Type":{ 1892 "shape":"ImpersonationRoleType", 1893 "documentation":"<p>The impersonation role's type. The available impersonation role types are <code>READ_ONLY</code> or <code>FULL_ACCESS</code>.</p>" 1894 }, 1895 "Description":{ 1896 "shape":"ImpersonationRoleDescription", 1897 "documentation":"<p>The description of the new impersonation role.</p>" 1898 }, 1899 "Rules":{ 1900 "shape":"ImpersonationRuleList", 1901 "documentation":"<p>The list of rules for the impersonation role.</p>" 1902 } 1903 } 1904 }, 1905 "CreateImpersonationRoleResponse":{ 1906 "type":"structure", 1907 "members":{ 1908 "ImpersonationRoleId":{ 1909 "shape":"ImpersonationRoleId", 1910 "documentation":"<p>The new impersonation role ID.</p>" 1911 } 1912 } 1913 }, 1914 "CreateMobileDeviceAccessRuleRequest":{ 1915 "type":"structure", 1916 "required":[ 1917 "OrganizationId", 1918 "Name", 1919 "Effect" 1920 ], 1921 "members":{ 1922 "OrganizationId":{ 1923 "shape":"OrganizationId", 1924 "documentation":"<p>The WorkMail organization under which the rule will be created.</p>" 1925 }, 1926 "ClientToken":{ 1927 "shape":"IdempotencyClientToken", 1928 "documentation":"<p>The idempotency token for the client request.</p>", 1929 "idempotencyToken":true 1930 }, 1931 "Name":{ 1932 "shape":"MobileDeviceAccessRuleName", 1933 "documentation":"<p>The rule name.</p>" 1934 }, 1935 "Description":{ 1936 "shape":"MobileDeviceAccessRuleDescription", 1937 "documentation":"<p>The rule description.</p>" 1938 }, 1939 "Effect":{ 1940 "shape":"MobileDeviceAccessRuleEffect", 1941 "documentation":"<p>The effect of the rule when it matches. Allowed values are <code>ALLOW</code> or <code>DENY</code>.</p>" 1942 }, 1943 "DeviceTypes":{ 1944 "shape":"DeviceTypeList", 1945 "documentation":"<p>Device types that the rule will match.</p>" 1946 }, 1947 "NotDeviceTypes":{ 1948 "shape":"DeviceTypeList", 1949 "documentation":"<p>Device types that the rule <b>will not</b> match. All other device types will match.</p>" 1950 }, 1951 "DeviceModels":{ 1952 "shape":"DeviceModelList", 1953 "documentation":"<p>Device models that the rule will match.</p>" 1954 }, 1955 "NotDeviceModels":{ 1956 "shape":"DeviceModelList", 1957 "documentation":"<p>Device models that the rule <b>will not</b> match. All other device models will match.</p>" 1958 }, 1959 "DeviceOperatingSystems":{ 1960 "shape":"DeviceOperatingSystemList", 1961 "documentation":"<p>Device operating systems that the rule will match.</p>" 1962 }, 1963 "NotDeviceOperatingSystems":{ 1964 "shape":"DeviceOperatingSystemList", 1965 "documentation":"<p>Device operating systems that the rule <b>will not</b> match. All other device operating systems will match.</p>" 1966 }, 1967 "DeviceUserAgents":{ 1968 "shape":"DeviceUserAgentList", 1969 "documentation":"<p>Device user agents that the rule will match.</p>" 1970 }, 1971 "NotDeviceUserAgents":{ 1972 "shape":"DeviceUserAgentList", 1973 "documentation":"<p>Device user agents that the rule <b>will not</b> match. All other device user agents will match.</p>" 1974 } 1975 } 1976 }, 1977 "CreateMobileDeviceAccessRuleResponse":{ 1978 "type":"structure", 1979 "members":{ 1980 "MobileDeviceAccessRuleId":{ 1981 "shape":"MobileDeviceAccessRuleId", 1982 "documentation":"<p>The identifier for the newly created mobile device access rule.</p>" 1983 } 1984 } 1985 }, 1986 "CreateOrganizationRequest":{ 1987 "type":"structure", 1988 "required":["Alias"], 1989 "members":{ 1990 "DirectoryId":{ 1991 "shape":"DirectoryId", 1992 "documentation":"<p>The AWS Directory Service directory ID.</p>" 1993 }, 1994 "Alias":{ 1995 "shape":"OrganizationName", 1996 "documentation":"<p>The organization alias.</p>" 1997 }, 1998 "ClientToken":{ 1999 "shape":"IdempotencyClientToken", 2000 "documentation":"<p>The idempotency token associated with the request.</p>", 2001 "idempotencyToken":true 2002 }, 2003 "Domains":{ 2004 "shape":"Domains", 2005 "documentation":"<p>The email domains to associate with the organization.</p>" 2006 }, 2007 "KmsKeyArn":{ 2008 "shape":"KmsKeyArn", 2009 "documentation":"<p>The Amazon Resource Name (ARN) of a customer managed key from AWS KMS.</p>" 2010 }, 2011 "EnableInteroperability":{ 2012 "shape":"Boolean", 2013 "documentation":"<p>When <code>true</code>, allows organization interoperability between WorkMail and Microsoft Exchange. If <code>true</code>, you must include a AD Connector directory ID in the request.</p>" 2014 } 2015 } 2016 }, 2017 "CreateOrganizationResponse":{ 2018 "type":"structure", 2019 "members":{ 2020 "OrganizationId":{ 2021 "shape":"OrganizationId", 2022 "documentation":"<p>The organization ID.</p>" 2023 } 2024 } 2025 }, 2026 "CreateResourceRequest":{ 2027 "type":"structure", 2028 "required":[ 2029 "OrganizationId", 2030 "Name", 2031 "Type" 2032 ], 2033 "members":{ 2034 "OrganizationId":{ 2035 "shape":"OrganizationId", 2036 "documentation":"<p>The identifier associated with the organization for which the resource is created.</p>" 2037 }, 2038 "Name":{ 2039 "shape":"ResourceName", 2040 "documentation":"<p>The name of the new resource.</p>" 2041 }, 2042 "Type":{ 2043 "shape":"ResourceType", 2044 "documentation":"<p>The type of the new resource. The available types are <code>equipment</code> and <code>room</code>.</p>" 2045 }, 2046 "Description":{ 2047 "shape":"ResourceDescription", 2048 "documentation":"<p>Resource description.</p>" 2049 }, 2050 "HiddenFromGlobalAddressList":{ 2051 "shape":"Boolean", 2052 "documentation":"<p>If this parameter is enabled, the resource will be hidden from the address book.</p>" 2053 } 2054 } 2055 }, 2056 "CreateResourceResponse":{ 2057 "type":"structure", 2058 "members":{ 2059 "ResourceId":{ 2060 "shape":"ResourceId", 2061 "documentation":"<p>The identifier of the new resource.</p>" 2062 } 2063 } 2064 }, 2065 "CreateUserRequest":{ 2066 "type":"structure", 2067 "required":[ 2068 "OrganizationId", 2069 "Name", 2070 "DisplayName" 2071 ], 2072 "members":{ 2073 "OrganizationId":{ 2074 "shape":"OrganizationId", 2075 "documentation":"<p>The identifier of the organization for which the user is created.</p>" 2076 }, 2077 "Name":{ 2078 "shape":"UserName", 2079 "documentation":"<p>The name for the new user. WorkMail directory user names have a maximum length of 64. All others have a maximum length of 20.</p>" 2080 }, 2081 "DisplayName":{ 2082 "shape":"UserAttribute", 2083 "documentation":"<p>The display name for the new user.</p>" 2084 }, 2085 "Password":{ 2086 "shape":"Password", 2087 "documentation":"<p>The password for the new user.</p>" 2088 }, 2089 "Role":{ 2090 "shape":"UserRole", 2091 "documentation":"<p>The role of the new user.</p> <p>You cannot pass <i>SYSTEM_USER</i> or <i>RESOURCE</i> role in a single request. When a user role is not selected, the default role of <i>USER</i> is selected.</p>" 2092 }, 2093 "FirstName":{ 2094 "shape":"UserAttribute", 2095 "documentation":"<p>The first name of the new user.</p>" 2096 }, 2097 "LastName":{ 2098 "shape":"UserAttribute", 2099 "documentation":"<p>The last name of the new user. </p>" 2100 }, 2101 "HiddenFromGlobalAddressList":{ 2102 "shape":"Boolean", 2103 "documentation":"<p>If this parameter is enabled, the user will be hidden from the address book.</p>" 2104 } 2105 } 2106 }, 2107 "CreateUserResponse":{ 2108 "type":"structure", 2109 "members":{ 2110 "UserId":{ 2111 "shape":"WorkMailIdentifier", 2112 "documentation":"<p>The identifier for the new user.</p>" 2113 } 2114 } 2115 }, 2116 "Delegate":{ 2117 "type":"structure", 2118 "required":[ 2119 "Id", 2120 "Type" 2121 ], 2122 "members":{ 2123 "Id":{ 2124 "shape":"String", 2125 "documentation":"<p>The identifier for the user or group associated as the resource's delegate.</p>" 2126 }, 2127 "Type":{ 2128 "shape":"MemberType", 2129 "documentation":"<p>The type of the delegate: user or group.</p>" 2130 } 2131 }, 2132 "documentation":"<p>The name of the attribute, which is one of the values defined in the UserAttribute enumeration.</p>" 2133 }, 2134 "DeleteAccessControlRuleRequest":{ 2135 "type":"structure", 2136 "required":[ 2137 "OrganizationId", 2138 "Name" 2139 ], 2140 "members":{ 2141 "OrganizationId":{ 2142 "shape":"OrganizationId", 2143 "documentation":"<p>The identifier for the organization.</p>" 2144 }, 2145 "Name":{ 2146 "shape":"AccessControlRuleName", 2147 "documentation":"<p>The name of the access control rule.</p>" 2148 } 2149 } 2150 }, 2151 "DeleteAccessControlRuleResponse":{ 2152 "type":"structure", 2153 "members":{ 2154 } 2155 }, 2156 "DeleteAliasRequest":{ 2157 "type":"structure", 2158 "required":[ 2159 "OrganizationId", 2160 "EntityId", 2161 "Alias" 2162 ], 2163 "members":{ 2164 "OrganizationId":{ 2165 "shape":"OrganizationId", 2166 "documentation":"<p>The identifier for the organization under which the user exists.</p>" 2167 }, 2168 "EntityId":{ 2169 "shape":"WorkMailIdentifier", 2170 "documentation":"<p>The identifier for the member (user or group) from which to have the aliases removed.</p>" 2171 }, 2172 "Alias":{ 2173 "shape":"EmailAddress", 2174 "documentation":"<p>The aliases to be removed from the user's set of aliases. Duplicate entries in the list are collapsed into single entries (the list is transformed into a set).</p>" 2175 } 2176 } 2177 }, 2178 "DeleteAliasResponse":{ 2179 "type":"structure", 2180 "members":{ 2181 } 2182 }, 2183 "DeleteAvailabilityConfigurationRequest":{ 2184 "type":"structure", 2185 "required":[ 2186 "OrganizationId", 2187 "DomainName" 2188 ], 2189 "members":{ 2190 "OrganizationId":{ 2191 "shape":"OrganizationId", 2192 "documentation":"<p>The WorkMail organization for which the <code>AvailabilityConfiguration</code> will be deleted.</p>" 2193 }, 2194 "DomainName":{ 2195 "shape":"DomainName", 2196 "documentation":"<p>The domain for which the <code>AvailabilityConfiguration</code> will be deleted.</p>" 2197 } 2198 } 2199 }, 2200 "DeleteAvailabilityConfigurationResponse":{ 2201 "type":"structure", 2202 "members":{ 2203 } 2204 }, 2205 "DeleteEmailMonitoringConfigurationRequest":{ 2206 "type":"structure", 2207 "required":["OrganizationId"], 2208 "members":{ 2209 "OrganizationId":{ 2210 "shape":"OrganizationId", 2211 "documentation":"<p>The ID of the organization from which the email monitoring configuration is deleted.</p>" 2212 } 2213 } 2214 }, 2215 "DeleteEmailMonitoringConfigurationResponse":{ 2216 "type":"structure", 2217 "members":{ 2218 } 2219 }, 2220 "DeleteGroupRequest":{ 2221 "type":"structure", 2222 "required":[ 2223 "OrganizationId", 2224 "GroupId" 2225 ], 2226 "members":{ 2227 "OrganizationId":{ 2228 "shape":"OrganizationId", 2229 "documentation":"<p>The organization that contains the group.</p>" 2230 }, 2231 "GroupId":{ 2232 "shape":"EntityIdentifier", 2233 "documentation":"<p>The identifier of the group to be deleted.</p> <p>The identifier can be the <i>GroupId</i>, or <i>Groupname</i>. The following identity formats are available:</p> <ul> <li> <p>Group ID: 12345678-1234-1234-1234-123456789012 or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Group name: group</p> </li> </ul>" 2234 } 2235 } 2236 }, 2237 "DeleteGroupResponse":{ 2238 "type":"structure", 2239 "members":{ 2240 } 2241 }, 2242 "DeleteImpersonationRoleRequest":{ 2243 "type":"structure", 2244 "required":[ 2245 "OrganizationId", 2246 "ImpersonationRoleId" 2247 ], 2248 "members":{ 2249 "OrganizationId":{ 2250 "shape":"OrganizationId", 2251 "documentation":"<p>The WorkMail organization from which to delete the impersonation role.</p>" 2252 }, 2253 "ImpersonationRoleId":{ 2254 "shape":"ImpersonationRoleId", 2255 "documentation":"<p>The ID of the impersonation role to delete.</p>" 2256 } 2257 } 2258 }, 2259 "DeleteImpersonationRoleResponse":{ 2260 "type":"structure", 2261 "members":{ 2262 } 2263 }, 2264 "DeleteMailboxPermissionsRequest":{ 2265 "type":"structure", 2266 "required":[ 2267 "OrganizationId", 2268 "EntityId", 2269 "GranteeId" 2270 ], 2271 "members":{ 2272 "OrganizationId":{ 2273 "shape":"OrganizationId", 2274 "documentation":"<p>The identifier of the organization under which the member (user or group) exists.</p>" 2275 }, 2276 "EntityId":{ 2277 "shape":"EntityIdentifier", 2278 "documentation":"<p>The identifier of the entity that owns the mailbox.</p> <p>The identifier can be <i>UserId or Group Id</i>, <i>Username or Groupname</i>, or <i>email</i>.</p> <ul> <li> <p>Entity ID: 12345678-1234-1234-1234-123456789012, r-0123456789a0123456789b0123456789, or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: entity@domain.tld</p> </li> <li> <p>Entity name: entity</p> </li> </ul>" 2279 }, 2280 "GranteeId":{ 2281 "shape":"EntityIdentifier", 2282 "documentation":"<p>The identifier of the entity for which to delete granted permissions.</p> <p>The identifier can be <i>UserId, ResourceID, or Group Id</i>, <i>Username or Groupname</i>, or <i>email</i>.</p> <ul> <li> <p>Grantee ID: 12345678-1234-1234-1234-123456789012,r-0123456789a0123456789b0123456789, or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: grantee@domain.tld</p> </li> <li> <p>Grantee name: grantee</p> </li> </ul>" 2283 } 2284 } 2285 }, 2286 "DeleteMailboxPermissionsResponse":{ 2287 "type":"structure", 2288 "members":{ 2289 } 2290 }, 2291 "DeleteMobileDeviceAccessOverrideRequest":{ 2292 "type":"structure", 2293 "required":[ 2294 "OrganizationId", 2295 "UserId", 2296 "DeviceId" 2297 ], 2298 "members":{ 2299 "OrganizationId":{ 2300 "shape":"OrganizationId", 2301 "documentation":"<p>The WorkMail organization for which the access override will be deleted.</p>" 2302 }, 2303 "UserId":{ 2304 "shape":"EntityIdentifier", 2305 "documentation":"<p>The WorkMail user for which you want to delete the override. Accepts the following types of user identities:</p> <ul> <li> <p>User ID: <code>12345678-1234-1234-1234-123456789012</code> or <code>S-1-1-12-1234567890-123456789-123456789-1234</code> </p> </li> <li> <p>Email address: <code>user@domain.tld</code> </p> </li> <li> <p>User name: <code>user</code> </p> </li> </ul>" 2306 }, 2307 "DeviceId":{ 2308 "shape":"DeviceId", 2309 "documentation":"<p>The mobile device for which you delete the override. <code>DeviceId</code> is case insensitive.</p>" 2310 } 2311 } 2312 }, 2313 "DeleteMobileDeviceAccessOverrideResponse":{ 2314 "type":"structure", 2315 "members":{ 2316 } 2317 }, 2318 "DeleteMobileDeviceAccessRuleRequest":{ 2319 "type":"structure", 2320 "required":[ 2321 "OrganizationId", 2322 "MobileDeviceAccessRuleId" 2323 ], 2324 "members":{ 2325 "OrganizationId":{ 2326 "shape":"OrganizationId", 2327 "documentation":"<p>The WorkMail organization under which the rule will be deleted.</p>" 2328 }, 2329 "MobileDeviceAccessRuleId":{ 2330 "shape":"MobileDeviceAccessRuleId", 2331 "documentation":"<p>The identifier of the rule to be deleted.</p>" 2332 } 2333 } 2334 }, 2335 "DeleteMobileDeviceAccessRuleResponse":{ 2336 "type":"structure", 2337 "members":{ 2338 } 2339 }, 2340 "DeleteOrganizationRequest":{ 2341 "type":"structure", 2342 "required":[ 2343 "OrganizationId", 2344 "DeleteDirectory" 2345 ], 2346 "members":{ 2347 "ClientToken":{ 2348 "shape":"IdempotencyClientToken", 2349 "documentation":"<p>The idempotency token associated with the request.</p>", 2350 "idempotencyToken":true 2351 }, 2352 "OrganizationId":{ 2353 "shape":"OrganizationId", 2354 "documentation":"<p>The organization ID.</p>" 2355 }, 2356 "DeleteDirectory":{ 2357 "shape":"Boolean", 2358 "documentation":"<p>If true, deletes the AWS Directory Service directory associated with the organization.</p>" 2359 }, 2360 "ForceDelete":{ 2361 "shape":"Boolean", 2362 "documentation":"<p>Deletes a WorkMail organization even if the organization has enabled users.</p>" 2363 } 2364 } 2365 }, 2366 "DeleteOrganizationResponse":{ 2367 "type":"structure", 2368 "members":{ 2369 "OrganizationId":{ 2370 "shape":"OrganizationId", 2371 "documentation":"<p>The organization ID.</p>" 2372 }, 2373 "State":{ 2374 "shape":"String", 2375 "documentation":"<p>The state of the organization.</p>" 2376 } 2377 } 2378 }, 2379 "DeleteResourceRequest":{ 2380 "type":"structure", 2381 "required":[ 2382 "OrganizationId", 2383 "ResourceId" 2384 ], 2385 "members":{ 2386 "OrganizationId":{ 2387 "shape":"OrganizationId", 2388 "documentation":"<p>The identifier associated with the organization from which the resource is deleted.</p>" 2389 }, 2390 "ResourceId":{ 2391 "shape":"EntityIdentifier", 2392 "documentation":"<p>The identifier of the resource to be deleted.</p> <p>The identifier can accept <i>ResourceId</i>, or <i>Resourcename</i>. The following identity formats are available:</p> <ul> <li> <p>Resource ID: r-0123456789a0123456789b0123456789</p> </li> <li> <p>Resource name: resource</p> </li> </ul>" 2393 } 2394 } 2395 }, 2396 "DeleteResourceResponse":{ 2397 "type":"structure", 2398 "members":{ 2399 } 2400 }, 2401 "DeleteRetentionPolicyRequest":{ 2402 "type":"structure", 2403 "required":[ 2404 "OrganizationId", 2405 "Id" 2406 ], 2407 "members":{ 2408 "OrganizationId":{ 2409 "shape":"OrganizationId", 2410 "documentation":"<p>The organization ID.</p>" 2411 }, 2412 "Id":{ 2413 "shape":"ShortString", 2414 "documentation":"<p>The retention policy ID.</p>" 2415 } 2416 } 2417 }, 2418 "DeleteRetentionPolicyResponse":{ 2419 "type":"structure", 2420 "members":{ 2421 } 2422 }, 2423 "DeleteUserRequest":{ 2424 "type":"structure", 2425 "required":[ 2426 "OrganizationId", 2427 "UserId" 2428 ], 2429 "members":{ 2430 "OrganizationId":{ 2431 "shape":"OrganizationId", 2432 "documentation":"<p>The organization that contains the user to be deleted.</p>" 2433 }, 2434 "UserId":{ 2435 "shape":"EntityIdentifier", 2436 "documentation":"<p>The identifier of the user to be deleted.</p> <p>The identifier can be the <i>UserId</i> or <i>Username</i>. The following identity formats are available:</p> <ul> <li> <p>User ID: 12345678-1234-1234-1234-123456789012 or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>User name: user</p> </li> </ul>" 2437 } 2438 } 2439 }, 2440 "DeleteUserResponse":{ 2441 "type":"structure", 2442 "members":{ 2443 } 2444 }, 2445 "DeregisterFromWorkMailRequest":{ 2446 "type":"structure", 2447 "required":[ 2448 "OrganizationId", 2449 "EntityId" 2450 ], 2451 "members":{ 2452 "OrganizationId":{ 2453 "shape":"OrganizationId", 2454 "documentation":"<p>The identifier for the organization under which the WorkMail entity exists.</p>" 2455 }, 2456 "EntityId":{ 2457 "shape":"EntityIdentifier", 2458 "documentation":"<p>The identifier for the member to be updated.</p> <p>The identifier can be <i>UserId, ResourceId, or Group Id</i>, <i>Username, Resourcename, or Groupname</i>, or <i>email</i>.</p> <ul> <li> <p>Entity ID: 12345678-1234-1234-1234-123456789012, r-0123456789a0123456789b0123456789, or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: entity@domain.tld</p> </li> <li> <p>Entity name: entity</p> </li> </ul>" 2459 } 2460 } 2461 }, 2462 "DeregisterFromWorkMailResponse":{ 2463 "type":"structure", 2464 "members":{ 2465 } 2466 }, 2467 "DeregisterMailDomainRequest":{ 2468 "type":"structure", 2469 "required":[ 2470 "OrganizationId", 2471 "DomainName" 2472 ], 2473 "members":{ 2474 "OrganizationId":{ 2475 "shape":"OrganizationId", 2476 "documentation":"<p>The WorkMail organization for which the domain will be deregistered.</p>" 2477 }, 2478 "DomainName":{ 2479 "shape":"WorkMailDomainName", 2480 "documentation":"<p>The domain to deregister in WorkMail and SES.</p>" 2481 } 2482 } 2483 }, 2484 "DeregisterMailDomainResponse":{ 2485 "type":"structure", 2486 "members":{ 2487 } 2488 }, 2489 "DescribeEmailMonitoringConfigurationRequest":{ 2490 "type":"structure", 2491 "required":["OrganizationId"], 2492 "members":{ 2493 "OrganizationId":{ 2494 "shape":"OrganizationId", 2495 "documentation":"<p>The ID of the organization for which the email monitoring configuration is described.</p>" 2496 } 2497 } 2498 }, 2499 "DescribeEmailMonitoringConfigurationResponse":{ 2500 "type":"structure", 2501 "members":{ 2502 "RoleArn":{ 2503 "shape":"RoleArn", 2504 "documentation":"<p>The Amazon Resource Name (ARN) of the IAM Role associated with the email monitoring configuration.</p>" 2505 }, 2506 "LogGroupArn":{ 2507 "shape":"LogGroupArn", 2508 "documentation":"<p>The Amazon Resource Name (ARN) of the CloudWatch Log group associated with the email monitoring configuration.</p>" 2509 } 2510 } 2511 }, 2512 "DescribeEntityRequest":{ 2513 "type":"structure", 2514 "required":[ 2515 "OrganizationId", 2516 "Email" 2517 ], 2518 "members":{ 2519 "OrganizationId":{ 2520 "shape":"OrganizationId", 2521 "documentation":"<p>The identifier for the organization under which the entity exists.</p>" 2522 }, 2523 "Email":{ 2524 "shape":"EmailAddress", 2525 "documentation":"<p>The email under which the entity exists.</p>" 2526 } 2527 } 2528 }, 2529 "DescribeEntityResponse":{ 2530 "type":"structure", 2531 "members":{ 2532 "EntityId":{ 2533 "shape":"WorkMailIdentifier", 2534 "documentation":"<p>The entity ID under which the entity exists.</p>" 2535 }, 2536 "Name":{ 2537 "shape":"String", 2538 "documentation":"<p>Username, GroupName, or ResourceName based on entity type.</p>" 2539 }, 2540 "Type":{ 2541 "shape":"EntityType", 2542 "documentation":"<p>Entity type.</p>" 2543 } 2544 } 2545 }, 2546 "DescribeGroupRequest":{ 2547 "type":"structure", 2548 "required":[ 2549 "OrganizationId", 2550 "GroupId" 2551 ], 2552 "members":{ 2553 "OrganizationId":{ 2554 "shape":"OrganizationId", 2555 "documentation":"<p>The identifier for the organization under which the group exists.</p>" 2556 }, 2557 "GroupId":{ 2558 "shape":"EntityIdentifier", 2559 "documentation":"<p>The identifier for the group to be described.</p> <p>The identifier can accept <i>GroupId</i>, <i>Groupname</i>, or <i>email</i>. The following identity formats are available:</p> <ul> <li> <p>Group ID: 12345678-1234-1234-1234-123456789012 or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: group@domain.tld</p> </li> <li> <p>Group name: group</p> </li> </ul>" 2560 } 2561 } 2562 }, 2563 "DescribeGroupResponse":{ 2564 "type":"structure", 2565 "members":{ 2566 "GroupId":{ 2567 "shape":"WorkMailIdentifier", 2568 "documentation":"<p>The identifier of the described group.</p>" 2569 }, 2570 "Name":{ 2571 "shape":"GroupName", 2572 "documentation":"<p>The name of the described group.</p>" 2573 }, 2574 "Email":{ 2575 "shape":"EmailAddress", 2576 "documentation":"<p>The email of the described group.</p>" 2577 }, 2578 "State":{ 2579 "shape":"EntityState", 2580 "documentation":"<p>The state of the user: enabled (registered to WorkMail) or disabled (deregistered or never registered to WorkMail).</p>" 2581 }, 2582 "EnabledDate":{ 2583 "shape":"Timestamp", 2584 "documentation":"<p>The date and time when a user was registered to WorkMail, in UNIX epoch time format.</p>" 2585 }, 2586 "DisabledDate":{ 2587 "shape":"Timestamp", 2588 "documentation":"<p>The date and time when a user was deregistered from WorkMail, in UNIX epoch time format.</p>" 2589 }, 2590 "HiddenFromGlobalAddressList":{ 2591 "shape":"Boolean", 2592 "documentation":"<p>If the value is set to <i>true</i>, the group is hidden from the address book.</p>" 2593 } 2594 } 2595 }, 2596 "DescribeInboundDmarcSettingsRequest":{ 2597 "type":"structure", 2598 "required":["OrganizationId"], 2599 "members":{ 2600 "OrganizationId":{ 2601 "shape":"OrganizationId", 2602 "documentation":"<p>Lists the ID of the given organization.</p>" 2603 } 2604 } 2605 }, 2606 "DescribeInboundDmarcSettingsResponse":{ 2607 "type":"structure", 2608 "members":{ 2609 "Enforced":{ 2610 "shape":"Boolean", 2611 "documentation":"<p>Lists the enforcement setting of the applied policy.</p>" 2612 } 2613 } 2614 }, 2615 "DescribeMailboxExportJobRequest":{ 2616 "type":"structure", 2617 "required":[ 2618 "JobId", 2619 "OrganizationId" 2620 ], 2621 "members":{ 2622 "JobId":{ 2623 "shape":"MailboxExportJobId", 2624 "documentation":"<p>The mailbox export job ID.</p>" 2625 }, 2626 "OrganizationId":{ 2627 "shape":"OrganizationId", 2628 "documentation":"<p>The organization ID.</p>" 2629 } 2630 } 2631 }, 2632 "DescribeMailboxExportJobResponse":{ 2633 "type":"structure", 2634 "members":{ 2635 "EntityId":{ 2636 "shape":"WorkMailIdentifier", 2637 "documentation":"<p>The identifier of the user or resource associated with the mailbox.</p>" 2638 }, 2639 "Description":{ 2640 "shape":"Description", 2641 "documentation":"<p>The mailbox export job description.</p>" 2642 }, 2643 "RoleArn":{ 2644 "shape":"RoleArn", 2645 "documentation":"<p>The ARN of the AWS Identity and Access Management (IAM) role that grants write permission to the Amazon Simple Storage Service (Amazon S3) bucket.</p>" 2646 }, 2647 "KmsKeyArn":{ 2648 "shape":"KmsKeyArn", 2649 "documentation":"<p>The Amazon Resource Name (ARN) of the symmetric AWS Key Management Service (AWS KMS) key that encrypts the exported mailbox content.</p>" 2650 }, 2651 "S3BucketName":{ 2652 "shape":"S3BucketName", 2653 "documentation":"<p>The name of the S3 bucket.</p>" 2654 }, 2655 "S3Prefix":{ 2656 "shape":"S3ObjectKey", 2657 "documentation":"<p>The S3 bucket prefix.</p>" 2658 }, 2659 "S3Path":{ 2660 "shape":"S3ObjectKey", 2661 "documentation":"<p>The path to the S3 bucket and file that the mailbox export job is exporting to.</p>" 2662 }, 2663 "EstimatedProgress":{ 2664 "shape":"Percentage", 2665 "documentation":"<p>The estimated progress of the mailbox export job, in percentage points.</p>" 2666 }, 2667 "State":{ 2668 "shape":"MailboxExportJobState", 2669 "documentation":"<p>The state of the mailbox export job.</p>" 2670 }, 2671 "ErrorInfo":{ 2672 "shape":"MailboxExportErrorInfo", 2673 "documentation":"<p>Error information for failed mailbox export jobs.</p>" 2674 }, 2675 "StartTime":{ 2676 "shape":"Timestamp", 2677 "documentation":"<p>The mailbox export job start timestamp.</p>" 2678 }, 2679 "EndTime":{ 2680 "shape":"Timestamp", 2681 "documentation":"<p>The mailbox export job end timestamp.</p>" 2682 } 2683 } 2684 }, 2685 "DescribeOrganizationRequest":{ 2686 "type":"structure", 2687 "required":["OrganizationId"], 2688 "members":{ 2689 "OrganizationId":{ 2690 "shape":"OrganizationId", 2691 "documentation":"<p>The identifier for the organization to be described.</p>" 2692 } 2693 } 2694 }, 2695 "DescribeOrganizationResponse":{ 2696 "type":"structure", 2697 "members":{ 2698 "OrganizationId":{ 2699 "shape":"OrganizationId", 2700 "documentation":"<p>The identifier of an organization.</p>" 2701 }, 2702 "Alias":{ 2703 "shape":"OrganizationName", 2704 "documentation":"<p>The alias for an organization.</p>" 2705 }, 2706 "State":{ 2707 "shape":"String", 2708 "documentation":"<p>The state of an organization.</p>" 2709 }, 2710 "DirectoryId":{ 2711 "shape":"String", 2712 "documentation":"<p>The identifier for the directory associated with an WorkMail organization.</p>" 2713 }, 2714 "DirectoryType":{ 2715 "shape":"String", 2716 "documentation":"<p>The type of directory associated with the WorkMail organization.</p>" 2717 }, 2718 "DefaultMailDomain":{ 2719 "shape":"String", 2720 "documentation":"<p>The default mail domain associated with the organization.</p>" 2721 }, 2722 "CompletedDate":{ 2723 "shape":"Timestamp", 2724 "documentation":"<p>The date at which the organization became usable in the WorkMail context, in UNIX epoch time format.</p>" 2725 }, 2726 "ErrorMessage":{ 2727 "shape":"String", 2728 "documentation":"<p>(Optional) The error message indicating if unexpected behavior was encountered with regards to the organization.</p>" 2729 }, 2730 "ARN":{ 2731 "shape":"AmazonResourceName", 2732 "documentation":"<p>The Amazon Resource Name (ARN) of the organization.</p>" 2733 }, 2734 "MigrationAdmin":{ 2735 "shape":"WorkMailIdentifier", 2736 "documentation":"<p>The user ID of the migration admin if migration is enabled for the organization.</p>" 2737 }, 2738 "InteroperabilityEnabled":{ 2739 "shape":"Boolean", 2740 "documentation":"<p>Indicates if interoperability is enabled for this organization.</p>" 2741 } 2742 } 2743 }, 2744 "DescribeResourceRequest":{ 2745 "type":"structure", 2746 "required":[ 2747 "OrganizationId", 2748 "ResourceId" 2749 ], 2750 "members":{ 2751 "OrganizationId":{ 2752 "shape":"OrganizationId", 2753 "documentation":"<p>The identifier associated with the organization for which the resource is described.</p>" 2754 }, 2755 "ResourceId":{ 2756 "shape":"EntityIdentifier", 2757 "documentation":"<p>The identifier of the resource to be described.</p> <p>The identifier can accept <i>ResourceId</i>, <i>Resourcename</i>, or <i>email</i>. The following identity formats are available:</p> <ul> <li> <p>Resource ID: r-0123456789a0123456789b0123456789</p> </li> <li> <p>Email address: resource@domain.tld</p> </li> <li> <p>Resource name: resource</p> </li> </ul>" 2758 } 2759 } 2760 }, 2761 "DescribeResourceResponse":{ 2762 "type":"structure", 2763 "members":{ 2764 "ResourceId":{ 2765 "shape":"ResourceId", 2766 "documentation":"<p>The identifier of the described resource.</p>" 2767 }, 2768 "Email":{ 2769 "shape":"EmailAddress", 2770 "documentation":"<p>The email of the described resource.</p>" 2771 }, 2772 "Name":{ 2773 "shape":"ResourceName", 2774 "documentation":"<p>The name of the described resource.</p>" 2775 }, 2776 "Type":{ 2777 "shape":"ResourceType", 2778 "documentation":"<p>The type of the described resource.</p>" 2779 }, 2780 "BookingOptions":{ 2781 "shape":"BookingOptions", 2782 "documentation":"<p>The booking options for the described resource.</p>" 2783 }, 2784 "State":{ 2785 "shape":"EntityState", 2786 "documentation":"<p>The state of the resource: enabled (registered to WorkMail), disabled (deregistered or never registered to WorkMail), or deleted.</p>" 2787 }, 2788 "EnabledDate":{ 2789 "shape":"Timestamp", 2790 "documentation":"<p>The date and time when a resource was enabled for WorkMail, in UNIX epoch time format.</p>" 2791 }, 2792 "DisabledDate":{ 2793 "shape":"Timestamp", 2794 "documentation":"<p>The date and time when a resource was disabled from WorkMail, in UNIX epoch time format.</p>" 2795 }, 2796 "Description":{ 2797 "shape":"ResourceDescription", 2798 "documentation":"<p>Description of the resource.</p>" 2799 }, 2800 "HiddenFromGlobalAddressList":{ 2801 "shape":"Boolean", 2802 "documentation":"<p>If enabled, the resource is hidden from the global address list.</p>" 2803 } 2804 } 2805 }, 2806 "DescribeUserRequest":{ 2807 "type":"structure", 2808 "required":[ 2809 "OrganizationId", 2810 "UserId" 2811 ], 2812 "members":{ 2813 "OrganizationId":{ 2814 "shape":"OrganizationId", 2815 "documentation":"<p>The identifier for the organization under which the user exists.</p>" 2816 }, 2817 "UserId":{ 2818 "shape":"EntityIdentifier", 2819 "documentation":"<p>The identifier for the user to be described.</p> <p>The identifier can be the <i>UserId</i>, <i>Username</i>, or <i>email</i>. The following identity formats are available:</p> <ul> <li> <p>User ID: 12345678-1234-1234-1234-123456789012 or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: user@domain.tld</p> </li> <li> <p>User name: user</p> </li> </ul> <p/>" 2820 } 2821 } 2822 }, 2823 "DescribeUserResponse":{ 2824 "type":"structure", 2825 "members":{ 2826 "UserId":{ 2827 "shape":"WorkMailIdentifier", 2828 "documentation":"<p>The identifier for the described user.</p>" 2829 }, 2830 "Name":{ 2831 "shape":"UserName", 2832 "documentation":"<p>The name for the user.</p>" 2833 }, 2834 "Email":{ 2835 "shape":"EmailAddress", 2836 "documentation":"<p>The email of the user.</p>" 2837 }, 2838 "DisplayName":{ 2839 "shape":"UserAttribute", 2840 "documentation":"<p>The display name of the user.</p>" 2841 }, 2842 "State":{ 2843 "shape":"EntityState", 2844 "documentation":"<p>The state of a user: enabled (registered to WorkMail) or disabled (deregistered or never registered to WorkMail).</p>" 2845 }, 2846 "UserRole":{ 2847 "shape":"UserRole", 2848 "documentation":"<p>In certain cases, other entities are modeled as users. If interoperability is enabled, resources are imported into WorkMail as users. Because different WorkMail organizations rely on different directory types, administrators can distinguish between an unregistered user (account is disabled and has a user role) and the directory administrators. The values are USER, RESOURCE, SYSTEM_USER, and REMOTE_USER.</p>" 2849 }, 2850 "EnabledDate":{ 2851 "shape":"Timestamp", 2852 "documentation":"<p>The date and time at which the user was enabled for WorkMailusage, in UNIX epoch time format.</p>" 2853 }, 2854 "DisabledDate":{ 2855 "shape":"Timestamp", 2856 "documentation":"<p>The date and time at which the user was disabled for WorkMail usage, in UNIX epoch time format.</p>" 2857 }, 2858 "MailboxProvisionedDate":{ 2859 "shape":"Timestamp", 2860 "documentation":"<p>The date when the mailbox was created for the user.</p>" 2861 }, 2862 "MailboxDeprovisionedDate":{ 2863 "shape":"Timestamp", 2864 "documentation":"<p>The date when the mailbox was removed for the user.</p>" 2865 }, 2866 "FirstName":{ 2867 "shape":"UserAttribute", 2868 "documentation":"<p>First name of the user.</p>" 2869 }, 2870 "LastName":{ 2871 "shape":"UserAttribute", 2872 "documentation":"<p>Last name of the user.</p>" 2873 }, 2874 "HiddenFromGlobalAddressList":{ 2875 "shape":"Boolean", 2876 "documentation":"<p>If enabled, the user is hidden from the global address list.</p>" 2877 }, 2878 "Initials":{ 2879 "shape":"UserAttribute", 2880 "documentation":"<p>Initials of the user.</p>" 2881 }, 2882 "Telephone":{ 2883 "shape":"UserAttribute", 2884 "documentation":"<p>User's contact number.</p>" 2885 }, 2886 "Street":{ 2887 "shape":"UserAttribute", 2888 "documentation":"<p>Street where the user is located.</p>" 2889 }, 2890 "JobTitle":{ 2891 "shape":"UserAttribute", 2892 "documentation":"<p>Job title of the user.</p>" 2893 }, 2894 "City":{ 2895 "shape":"UserAttribute", 2896 "documentation":"<p>City where the user is located.</p>" 2897 }, 2898 "Company":{ 2899 "shape":"UserAttribute", 2900 "documentation":"<p>Company of the user.</p>" 2901 }, 2902 "ZipCode":{ 2903 "shape":"UserAttribute", 2904 "documentation":"<p>Zip code of the user.</p>" 2905 }, 2906 "Department":{ 2907 "shape":"UserAttribute", 2908 "documentation":"<p>Department of the user.</p>" 2909 }, 2910 "Country":{ 2911 "shape":"UserAttribute", 2912 "documentation":"<p>Country where the user is located.</p>" 2913 }, 2914 "Office":{ 2915 "shape":"UserAttribute", 2916 "documentation":"<p>Office where the user is located.</p>" 2917 } 2918 } 2919 }, 2920 "Description":{ 2921 "type":"string", 2922 "max":1023, 2923 "min":0, 2924 "pattern":"[\\S\\s]*" 2925 }, 2926 "DeviceId":{ 2927 "type":"string", 2928 "max":32, 2929 "min":1, 2930 "pattern":"[A-Za-z0-9]+" 2931 }, 2932 "DeviceModel":{ 2933 "type":"string", 2934 "max":256, 2935 "min":1, 2936 "pattern":"[\\u0020-\\u00FF]+" 2937 }, 2938 "DeviceModelList":{ 2939 "type":"list", 2940 "member":{"shape":"DeviceModel"}, 2941 "max":10, 2942 "min":1 2943 }, 2944 "DeviceOperatingSystem":{ 2945 "type":"string", 2946 "max":256, 2947 "min":1, 2948 "pattern":"[\\u0020-\\u00FF]+" 2949 }, 2950 "DeviceOperatingSystemList":{ 2951 "type":"list", 2952 "member":{"shape":"DeviceOperatingSystem"}, 2953 "max":10, 2954 "min":1 2955 }, 2956 "DeviceType":{ 2957 "type":"string", 2958 "max":256, 2959 "min":1, 2960 "pattern":"[\\u0020-\\u00FF]+" 2961 }, 2962 "DeviceTypeList":{ 2963 "type":"list", 2964 "member":{"shape":"DeviceType"}, 2965 "max":10, 2966 "min":1 2967 }, 2968 "DeviceUserAgent":{ 2969 "type":"string", 2970 "max":256, 2971 "min":1, 2972 "pattern":"[\\u0020-\\u00FF]+" 2973 }, 2974 "DeviceUserAgentList":{ 2975 "type":"list", 2976 "member":{"shape":"DeviceUserAgent"}, 2977 "max":10, 2978 "min":1 2979 }, 2980 "DirectoryId":{ 2981 "type":"string", 2982 "max":12, 2983 "min":12, 2984 "pattern":"^d-[0-9a-f]{10}$" 2985 }, 2986 "DirectoryInUseException":{ 2987 "type":"structure", 2988 "members":{ 2989 "Message":{"shape":"String"} 2990 }, 2991 "documentation":"<p>The directory is already in use by another WorkMail organization in the same account and Region.</p>", 2992 "exception":true 2993 }, 2994 "DirectoryServiceAuthenticationFailedException":{ 2995 "type":"structure", 2996 "members":{ 2997 "Message":{"shape":"String"} 2998 }, 2999 "documentation":"<p>The directory service doesn't recognize the credentials supplied by WorkMail.</p>", 3000 "exception":true 3001 }, 3002 "DirectoryUnavailableException":{ 3003 "type":"structure", 3004 "members":{ 3005 "Message":{"shape":"String"} 3006 }, 3007 "documentation":"<p>The directory is unavailable. It might be located in another Region or deleted.</p>", 3008 "exception":true 3009 }, 3010 "DisassociateDelegateFromResourceRequest":{ 3011 "type":"structure", 3012 "required":[ 3013 "OrganizationId", 3014 "ResourceId", 3015 "EntityId" 3016 ], 3017 "members":{ 3018 "OrganizationId":{ 3019 "shape":"OrganizationId", 3020 "documentation":"<p>The identifier for the organization under which the resource exists.</p>" 3021 }, 3022 "ResourceId":{ 3023 "shape":"EntityIdentifier", 3024 "documentation":"<p>The identifier of the resource from which delegates' set members are removed. </p> <p>The identifier can accept <i>ResourceId</i>, <i>Resourcename</i>, or <i>email</i>. The following identity formats are available:</p> <ul> <li> <p>Resource ID: r-0123456789a0123456789b0123456789</p> </li> <li> <p>Email address: resource@domain.tld</p> </li> <li> <p>Resource name: resource</p> </li> </ul>" 3025 }, 3026 "EntityId":{ 3027 "shape":"EntityIdentifier", 3028 "documentation":"<p>The identifier for the member (user, group) to be removed from the resource's delegates.</p> <p>The entity ID can accept <i>UserId or GroupID</i>, <i>Username or Groupname</i>, or <i>email</i>.</p> <ul> <li> <p>Entity: 12345678-1234-1234-1234-123456789012 or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: entity@domain.tld</p> </li> <li> <p>Entity: entity</p> </li> </ul>" 3029 } 3030 } 3031 }, 3032 "DisassociateDelegateFromResourceResponse":{ 3033 "type":"structure", 3034 "members":{ 3035 } 3036 }, 3037 "DisassociateMemberFromGroupRequest":{ 3038 "type":"structure", 3039 "required":[ 3040 "OrganizationId", 3041 "GroupId", 3042 "MemberId" 3043 ], 3044 "members":{ 3045 "OrganizationId":{ 3046 "shape":"OrganizationId", 3047 "documentation":"<p>The identifier for the organization under which the group exists.</p>" 3048 }, 3049 "GroupId":{ 3050 "shape":"EntityIdentifier", 3051 "documentation":"<p>The identifier for the group from which members are removed.</p> <p>The identifier can accept <i>GroupId</i>, <i>Groupname</i>, or <i>email</i>. The following identity formats are available:</p> <ul> <li> <p>Group ID: 12345678-1234-1234-1234-123456789012 or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: group@domain.tld</p> </li> <li> <p>Group name: group</p> </li> </ul>" 3052 }, 3053 "MemberId":{ 3054 "shape":"EntityIdentifier", 3055 "documentation":"<p>The identifier for the member to be removed from the group.</p> <p>The member ID can accept <i>UserID or GroupId</i>, <i>Username or Groupname</i>, or <i>email</i>.</p> <ul> <li> <p>Member ID: 12345678-1234-1234-1234-123456789012 or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: member@domain.tld</p> </li> <li> <p>Member name: member</p> </li> </ul>" 3056 } 3057 } 3058 }, 3059 "DisassociateMemberFromGroupResponse":{ 3060 "type":"structure", 3061 "members":{ 3062 } 3063 }, 3064 "DnsRecord":{ 3065 "type":"structure", 3066 "members":{ 3067 "Type":{ 3068 "shape":"String", 3069 "documentation":"<p>The RFC 1035 record type. Possible values: <code>CNAME</code>, <code>A</code>, <code>MX</code>.</p>" 3070 }, 3071 "Hostname":{ 3072 "shape":"String", 3073 "documentation":"<p>The DNS hostname.- For example, <code>domain.example.com</code>.</p>" 3074 }, 3075 "Value":{ 3076 "shape":"String", 3077 "documentation":"<p>The value returned by the DNS for a query to that hostname and record type.</p>" 3078 } 3079 }, 3080 "documentation":"<p>A DNS record uploaded to your DNS provider.</p>" 3081 }, 3082 "DnsRecordVerificationStatus":{ 3083 "type":"string", 3084 "enum":[ 3085 "PENDING", 3086 "VERIFIED", 3087 "FAILED" 3088 ] 3089 }, 3090 "DnsRecords":{ 3091 "type":"list", 3092 "member":{"shape":"DnsRecord"} 3093 }, 3094 "Domain":{ 3095 "type":"structure", 3096 "required":["DomainName"], 3097 "members":{ 3098 "DomainName":{ 3099 "shape":"DomainName", 3100 "documentation":"<p>The fully qualified domain name.</p>" 3101 }, 3102 "HostedZoneId":{ 3103 "shape":"HostedZoneId", 3104 "documentation":"<p>The hosted zone ID for a domain hosted in Route 53. Required when configuring a domain hosted in Route 53.</p>" 3105 } 3106 }, 3107 "documentation":"<p>The domain to associate with an WorkMail organization.</p> <p>When you configure a domain hosted in Amazon Route 53 (Route 53), all recommended DNS records are added to the organization when you create it. For more information, see <a href=\"https://docs.aws.amazon.com/workmail/latest/adminguide/add_domain.html\">Adding a domain</a> in the <i>WorkMail Administrator Guide</i>.</p>" 3108 }, 3109 "DomainName":{ 3110 "type":"string", 3111 "max":255, 3112 "min":3, 3113 "pattern":"[a-zA-Z0-9.-]+" 3114 }, 3115 "Domains":{ 3116 "type":"list", 3117 "member":{"shape":"Domain"}, 3118 "max":5, 3119 "min":0 3120 }, 3121 "EmailAddress":{ 3122 "type":"string", 3123 "max":254, 3124 "min":1, 3125 "pattern":"[a-zA-Z0-9._%+-]{1,64}@[a-zA-Z0-9.-]+\\.[a-zA-Z-]{2,}" 3126 }, 3127 "EmailAddressInUseException":{ 3128 "type":"structure", 3129 "members":{ 3130 "Message":{"shape":"String"} 3131 }, 3132 "documentation":"<p>The email address that you're trying to assign is already created for a different user, group, or resource.</p>", 3133 "exception":true 3134 }, 3135 "EntityAlreadyRegisteredException":{ 3136 "type":"structure", 3137 "members":{ 3138 "Message":{"shape":"String"} 3139 }, 3140 "documentation":"<p>The user, group, or resource that you're trying to register is already registered.</p>", 3141 "exception":true 3142 }, 3143 "EntityIdentifier":{ 3144 "type":"string", 3145 "max":256, 3146 "min":1, 3147 "pattern":"[a-zA-Z0-9._%+@-]+" 3148 }, 3149 "EntityNotFoundException":{ 3150 "type":"structure", 3151 "members":{ 3152 "Message":{"shape":"String"} 3153 }, 3154 "documentation":"<p>The identifier supplied for the user, group, or resource does not exist in your organization.</p>", 3155 "exception":true 3156 }, 3157 "EntityState":{ 3158 "type":"string", 3159 "enum":[ 3160 "ENABLED", 3161 "DISABLED", 3162 "DELETED" 3163 ] 3164 }, 3165 "EntityStateException":{ 3166 "type":"structure", 3167 "members":{ 3168 "Message":{"shape":"String"} 3169 }, 3170 "documentation":"<p>You are performing an operation on a user, group, or resource that isn't in the expected state, such as trying to delete an active user.</p>", 3171 "exception":true 3172 }, 3173 "EntityType":{ 3174 "type":"string", 3175 "enum":[ 3176 "GROUP", 3177 "USER", 3178 "RESOURCE" 3179 ] 3180 }, 3181 "EwsAvailabilityProvider":{ 3182 "type":"structure", 3183 "required":[ 3184 "EwsEndpoint", 3185 "EwsUsername", 3186 "EwsPassword" 3187 ], 3188 "members":{ 3189 "EwsEndpoint":{ 3190 "shape":"Url", 3191 "documentation":"<p>The endpoint of the remote EWS server.</p>" 3192 }, 3193 "EwsUsername":{ 3194 "shape":"ExternalUserName", 3195 "documentation":"<p>The username used to authenticate the remote EWS server.</p>" 3196 }, 3197 "EwsPassword":{ 3198 "shape":"Password", 3199 "documentation":"<p>The password used to authenticate the remote EWS server.</p>" 3200 } 3201 }, 3202 "documentation":"<p>Describes an EWS based availability provider. This is only used as input to the service.</p>" 3203 }, 3204 "ExpiresIn":{ 3205 "type":"long", 3206 "box":true 3207 }, 3208 "ExternalUserName":{ 3209 "type":"string", 3210 "max":256, 3211 "pattern":"[\\u0020-\\u00FF]+" 3212 }, 3213 "FolderConfiguration":{ 3214 "type":"structure", 3215 "required":[ 3216 "Name", 3217 "Action" 3218 ], 3219 "members":{ 3220 "Name":{ 3221 "shape":"FolderName", 3222 "documentation":"<p>The folder name.</p>" 3223 }, 3224 "Action":{ 3225 "shape":"RetentionAction", 3226 "documentation":"<p>The action to take on the folder contents at the end of the folder configuration period.</p>" 3227 }, 3228 "Period":{ 3229 "shape":"RetentionPeriod", 3230 "documentation":"<p>The number of days for which the folder-configuration action applies.</p>" 3231 } 3232 }, 3233 "documentation":"<p>The configuration applied to an organization's folders by its retention policy.</p>" 3234 }, 3235 "FolderConfigurations":{ 3236 "type":"list", 3237 "member":{"shape":"FolderConfiguration"} 3238 }, 3239 "FolderName":{ 3240 "type":"string", 3241 "enum":[ 3242 "INBOX", 3243 "DELETED_ITEMS", 3244 "SENT_ITEMS", 3245 "DRAFTS", 3246 "JUNK_EMAIL" 3247 ] 3248 }, 3249 "GetAccessControlEffectRequest":{ 3250 "type":"structure", 3251 "required":[ 3252 "OrganizationId", 3253 "IpAddress", 3254 "Action" 3255 ], 3256 "members":{ 3257 "OrganizationId":{ 3258 "shape":"OrganizationId", 3259 "documentation":"<p>The identifier for the organization.</p>" 3260 }, 3261 "IpAddress":{ 3262 "shape":"IpAddress", 3263 "documentation":"<p>The IPv4 address.</p>" 3264 }, 3265 "Action":{ 3266 "shape":"AccessControlRuleAction", 3267 "documentation":"<p>The access protocol action. Valid values include <code>ActiveSync</code>, <code>AutoDiscover</code>, <code>EWS</code>, <code>IMAP</code>, <code>SMTP</code>, <code>WindowsOutlook</code>, and <code>WebMail</code>.</p>" 3268 }, 3269 "UserId":{ 3270 "shape":"WorkMailIdentifier", 3271 "documentation":"<p>The user ID.</p>" 3272 }, 3273 "ImpersonationRoleId":{ 3274 "shape":"ImpersonationRoleId", 3275 "documentation":"<p>The impersonation role ID.</p>" 3276 } 3277 } 3278 }, 3279 "GetAccessControlEffectResponse":{ 3280 "type":"structure", 3281 "members":{ 3282 "Effect":{ 3283 "shape":"AccessControlRuleEffect", 3284 "documentation":"<p>The rule effect.</p>" 3285 }, 3286 "MatchedRules":{ 3287 "shape":"AccessControlRuleNameList", 3288 "documentation":"<p>The rules that match the given parameters, resulting in an effect.</p>" 3289 } 3290 } 3291 }, 3292 "GetDefaultRetentionPolicyRequest":{ 3293 "type":"structure", 3294 "required":["OrganizationId"], 3295 "members":{ 3296 "OrganizationId":{ 3297 "shape":"OrganizationId", 3298 "documentation":"<p>The organization ID.</p>" 3299 } 3300 } 3301 }, 3302 "GetDefaultRetentionPolicyResponse":{ 3303 "type":"structure", 3304 "members":{ 3305 "Id":{ 3306 "shape":"ShortString", 3307 "documentation":"<p>The retention policy ID.</p>" 3308 }, 3309 "Name":{ 3310 "shape":"ShortString", 3311 "documentation":"<p>The retention policy name.</p>" 3312 }, 3313 "Description":{ 3314 "shape":"String", 3315 "documentation":"<p>The retention policy description.</p>" 3316 }, 3317 "FolderConfigurations":{ 3318 "shape":"FolderConfigurations", 3319 "documentation":"<p>The retention policy folder configurations.</p>" 3320 } 3321 } 3322 }, 3323 "GetImpersonationRoleEffectRequest":{ 3324 "type":"structure", 3325 "required":[ 3326 "OrganizationId", 3327 "ImpersonationRoleId", 3328 "TargetUser" 3329 ], 3330 "members":{ 3331 "OrganizationId":{ 3332 "shape":"OrganizationId", 3333 "documentation":"<p>The WorkMail organization where the impersonation role is defined.</p>" 3334 }, 3335 "ImpersonationRoleId":{ 3336 "shape":"ImpersonationRoleId", 3337 "documentation":"<p>The impersonation role ID to test.</p>" 3338 }, 3339 "TargetUser":{ 3340 "shape":"EntityIdentifier", 3341 "documentation":"<p>The WorkMail organization user chosen to test the impersonation role. The following identity formats are available:</p> <ul> <li> <p>User ID: <code>12345678-1234-1234-1234-123456789012</code> or <code>S-1-1-12-1234567890-123456789-123456789-1234</code> </p> </li> <li> <p>Email address: <code>user@domain.tld</code> </p> </li> <li> <p>User name: <code>user</code> </p> </li> </ul>" 3342 } 3343 } 3344 }, 3345 "GetImpersonationRoleEffectResponse":{ 3346 "type":"structure", 3347 "members":{ 3348 "Type":{ 3349 "shape":"ImpersonationRoleType", 3350 "documentation":"<p>The impersonation role type.</p>" 3351 }, 3352 "Effect":{ 3353 "shape":"AccessEffect", 3354 "documentation":"<p> <code/>Effect of the impersonation role on the target user based on its rules. Available effects are <code>ALLOW</code> or <code>DENY</code>.</p>" 3355 }, 3356 "MatchedRules":{ 3357 "shape":"ImpersonationMatchedRuleList", 3358 "documentation":"<p>A list of the rules that match the input and produce the configured effect.</p>" 3359 } 3360 } 3361 }, 3362 "GetImpersonationRoleRequest":{ 3363 "type":"structure", 3364 "required":[ 3365 "OrganizationId", 3366 "ImpersonationRoleId" 3367 ], 3368 "members":{ 3369 "OrganizationId":{ 3370 "shape":"OrganizationId", 3371 "documentation":"<p>The WorkMail organization from which to retrieve the impersonation role.</p>" 3372 }, 3373 "ImpersonationRoleId":{ 3374 "shape":"ImpersonationRoleId", 3375 "documentation":"<p>The impersonation role ID to retrieve.</p>" 3376 } 3377 } 3378 }, 3379 "GetImpersonationRoleResponse":{ 3380 "type":"structure", 3381 "members":{ 3382 "ImpersonationRoleId":{ 3383 "shape":"ImpersonationRoleId", 3384 "documentation":"<p>The impersonation role ID.</p>" 3385 }, 3386 "Name":{ 3387 "shape":"ImpersonationRoleName", 3388 "documentation":"<p>The impersonation role name.</p>" 3389 }, 3390 "Type":{ 3391 "shape":"ImpersonationRoleType", 3392 "documentation":"<p>The impersonation role type.</p>" 3393 }, 3394 "Description":{ 3395 "shape":"ImpersonationRoleDescription", 3396 "documentation":"<p>The impersonation role description.</p>" 3397 }, 3398 "Rules":{ 3399 "shape":"ImpersonationRuleList", 3400 "documentation":"<p>The list of rules for the given impersonation role.</p>" 3401 }, 3402 "DateCreated":{ 3403 "shape":"Timestamp", 3404 "documentation":"<p>The date when the impersonation role was created.</p>" 3405 }, 3406 "DateModified":{ 3407 "shape":"Timestamp", 3408 "documentation":"<p>The date when the impersonation role was last modified.</p>" 3409 } 3410 } 3411 }, 3412 "GetMailDomainRequest":{ 3413 "type":"structure", 3414 "required":[ 3415 "OrganizationId", 3416 "DomainName" 3417 ], 3418 "members":{ 3419 "OrganizationId":{ 3420 "shape":"OrganizationId", 3421 "documentation":"<p>The WorkMail organization for which the domain is retrieved.</p>" 3422 }, 3423 "DomainName":{ 3424 "shape":"WorkMailDomainName", 3425 "documentation":"<p>The domain from which you want to retrieve details.</p>" 3426 } 3427 } 3428 }, 3429 "GetMailDomainResponse":{ 3430 "type":"structure", 3431 "members":{ 3432 "Records":{ 3433 "shape":"DnsRecords", 3434 "documentation":"<p>A list of the DNS records that WorkMail recommends adding in your DNS provider for the best user experience. The records configure your domain with DMARC, SPF, DKIM, and direct incoming email traffic to SES. See admin guide for more details.</p>" 3435 }, 3436 "IsTestDomain":{ 3437 "shape":"Boolean", 3438 "documentation":"<p>Specifies whether the domain is a test domain provided by WorkMail, or a custom domain.</p>" 3439 }, 3440 "IsDefault":{ 3441 "shape":"Boolean", 3442 "documentation":"<p>Specifies whether the domain is the default domain for your organization.</p>" 3443 }, 3444 "OwnershipVerificationStatus":{ 3445 "shape":"DnsRecordVerificationStatus", 3446 "documentation":"<p> Indicates the status of the domain ownership verification.</p>" 3447 }, 3448 "DkimVerificationStatus":{ 3449 "shape":"DnsRecordVerificationStatus", 3450 "documentation":"<p>Indicates the status of a DKIM verification.</p>" 3451 } 3452 } 3453 }, 3454 "GetMailboxDetailsRequest":{ 3455 "type":"structure", 3456 "required":[ 3457 "OrganizationId", 3458 "UserId" 3459 ], 3460 "members":{ 3461 "OrganizationId":{ 3462 "shape":"OrganizationId", 3463 "documentation":"<p>The identifier for the organization that contains the user whose mailbox details are being requested.</p>" 3464 }, 3465 "UserId":{ 3466 "shape":"EntityIdentifier", 3467 "documentation":"<p>The identifier for the user whose mailbox details are being requested.</p> <p>The identifier can be the <i>UserId</i>, <i>Username</i>, or <i>email</i>. The following identity formats are available:</p> <ul> <li> <p>User ID: 12345678-1234-1234-1234-123456789012 or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: user@domain.tld</p> </li> <li> <p>User name: user</p> </li> </ul>" 3468 } 3469 } 3470 }, 3471 "GetMailboxDetailsResponse":{ 3472 "type":"structure", 3473 "members":{ 3474 "MailboxQuota":{ 3475 "shape":"MailboxQuota", 3476 "documentation":"<p>The maximum allowed mailbox size, in MB, for the specified user.</p>" 3477 }, 3478 "MailboxSize":{ 3479 "shape":"MailboxSize", 3480 "documentation":"<p>The current mailbox size, in MB, for the specified user.</p>" 3481 } 3482 } 3483 }, 3484 "GetMobileDeviceAccessEffectRequest":{ 3485 "type":"structure", 3486 "required":["OrganizationId"], 3487 "members":{ 3488 "OrganizationId":{ 3489 "shape":"OrganizationId", 3490 "documentation":"<p>The WorkMail organization to simulate the access effect for.</p>" 3491 }, 3492 "DeviceType":{ 3493 "shape":"DeviceType", 3494 "documentation":"<p>Device type the simulated user will report.</p>" 3495 }, 3496 "DeviceModel":{ 3497 "shape":"DeviceModel", 3498 "documentation":"<p>Device model the simulated user will report.</p>" 3499 }, 3500 "DeviceOperatingSystem":{ 3501 "shape":"DeviceOperatingSystem", 3502 "documentation":"<p>Device operating system the simulated user will report.</p>" 3503 }, 3504 "DeviceUserAgent":{ 3505 "shape":"DeviceUserAgent", 3506 "documentation":"<p>Device user agent the simulated user will report.</p>" 3507 } 3508 } 3509 }, 3510 "GetMobileDeviceAccessEffectResponse":{ 3511 "type":"structure", 3512 "members":{ 3513 "Effect":{ 3514 "shape":"MobileDeviceAccessRuleEffect", 3515 "documentation":"<p>The effect of the simulated access, <code>ALLOW</code> or <code>DENY</code>, after evaluating mobile device access rules in the WorkMail organization for the simulated user parameters.</p>" 3516 }, 3517 "MatchedRules":{ 3518 "shape":"MobileDeviceAccessMatchedRuleList", 3519 "documentation":"<p>A list of the rules which matched the simulated user input and produced the effect.</p>" 3520 } 3521 } 3522 }, 3523 "GetMobileDeviceAccessOverrideRequest":{ 3524 "type":"structure", 3525 "required":[ 3526 "OrganizationId", 3527 "UserId", 3528 "DeviceId" 3529 ], 3530 "members":{ 3531 "OrganizationId":{ 3532 "shape":"OrganizationId", 3533 "documentation":"<p>The WorkMail organization to which you want to apply the override.</p>" 3534 }, 3535 "UserId":{ 3536 "shape":"EntityIdentifier", 3537 "documentation":"<p>Identifies the WorkMail user for the override. Accepts the following types of user identities: </p> <ul> <li> <p>User ID: <code>12345678-1234-1234-1234-123456789012</code> or <code>S-1-1-12-1234567890-123456789-123456789-1234</code> </p> </li> <li> <p>Email address: <code>user@domain.tld</code> </p> </li> <li> <p>User name: <code>user</code> </p> </li> </ul>" 3538 }, 3539 "DeviceId":{ 3540 "shape":"DeviceId", 3541 "documentation":"<p>The mobile device to which the override applies. <code>DeviceId</code> is case insensitive.</p>" 3542 } 3543 } 3544 }, 3545 "GetMobileDeviceAccessOverrideResponse":{ 3546 "type":"structure", 3547 "members":{ 3548 "UserId":{ 3549 "shape":"WorkMailIdentifier", 3550 "documentation":"<p>The WorkMail user to which the access override applies.</p>" 3551 }, 3552 "DeviceId":{ 3553 "shape":"DeviceId", 3554 "documentation":"<p>The device to which the access override applies.</p>" 3555 }, 3556 "Effect":{ 3557 "shape":"MobileDeviceAccessRuleEffect", 3558 "documentation":"<p>The effect of the override, <code>ALLOW</code> or <code>DENY</code>.</p>" 3559 }, 3560 "Description":{ 3561 "shape":"MobileDeviceAccessRuleDescription", 3562 "documentation":"<p>A description of the override.</p>" 3563 }, 3564 "DateCreated":{ 3565 "shape":"Timestamp", 3566 "documentation":"<p>The date the override was first created.</p>" 3567 }, 3568 "DateModified":{ 3569 "shape":"Timestamp", 3570 "documentation":"<p>The date the description was last modified.</p>" 3571 } 3572 } 3573 }, 3574 "Group":{ 3575 "type":"structure", 3576 "members":{ 3577 "Id":{ 3578 "shape":"WorkMailIdentifier", 3579 "documentation":"<p>The identifier of the group.</p>" 3580 }, 3581 "Email":{ 3582 "shape":"EmailAddress", 3583 "documentation":"<p>The email of the group.</p>" 3584 }, 3585 "Name":{ 3586 "shape":"GroupName", 3587 "documentation":"<p>The name of the group.</p>" 3588 }, 3589 "State":{ 3590 "shape":"EntityState", 3591 "documentation":"<p>The state of the group, which can be ENABLED, DISABLED, or DELETED.</p>" 3592 }, 3593 "EnabledDate":{ 3594 "shape":"Timestamp", 3595 "documentation":"<p>The date indicating when the group was enabled for WorkMail use.</p>" 3596 }, 3597 "DisabledDate":{ 3598 "shape":"Timestamp", 3599 "documentation":"<p>The date indicating when the group was disabled from WorkMail use.</p>" 3600 } 3601 }, 3602 "documentation":"<p>The representation of an WorkMail group.</p>" 3603 }, 3604 "GroupIdentifier":{ 3605 "type":"structure", 3606 "members":{ 3607 "GroupId":{ 3608 "shape":"WorkMailIdentifier", 3609 "documentation":"<p>Group ID that matched the group.</p>" 3610 }, 3611 "GroupName":{ 3612 "shape":"GroupName", 3613 "documentation":"<p>Group name that matched the group.</p>" 3614 } 3615 }, 3616 "documentation":"<p>The identifier that contains the Group ID and name of a group.</p>" 3617 }, 3618 "GroupIdentifiers":{ 3619 "type":"list", 3620 "member":{"shape":"GroupIdentifier"} 3621 }, 3622 "GroupName":{ 3623 "type":"string", 3624 "max":256, 3625 "min":1, 3626 "pattern":"[\\u0020-\\u00FF]+" 3627 }, 3628 "Groups":{ 3629 "type":"list", 3630 "member":{"shape":"Group"} 3631 }, 3632 "HostedZoneId":{ 3633 "type":"string", 3634 "max":32, 3635 "min":1, 3636 "pattern":"[^/\\\\]*" 3637 }, 3638 "IdempotencyClientToken":{ 3639 "type":"string", 3640 "max":128, 3641 "min":1, 3642 "pattern":"[\\x21-\\x7e]+" 3643 }, 3644 "ImpersonationMatchedRule":{ 3645 "type":"structure", 3646 "members":{ 3647 "ImpersonationRuleId":{ 3648 "shape":"ImpersonationRuleId", 3649 "documentation":"<p>The ID of the rule that matched the input</p>" 3650 }, 3651 "Name":{ 3652 "shape":"ImpersonationRuleName", 3653 "documentation":"<p>The name of the rule that matched the input.</p>" 3654 } 3655 }, 3656 "documentation":"<p>The impersonation rule that matched the input.</p>" 3657 }, 3658 "ImpersonationMatchedRuleList":{ 3659 "type":"list", 3660 "member":{"shape":"ImpersonationMatchedRule"}, 3661 "max":10, 3662 "min":0 3663 }, 3664 "ImpersonationRole":{ 3665 "type":"structure", 3666 "members":{ 3667 "ImpersonationRoleId":{ 3668 "shape":"ImpersonationRoleId", 3669 "documentation":"<p>The identifier of the impersonation role.</p>" 3670 }, 3671 "Name":{ 3672 "shape":"ImpersonationRoleName", 3673 "documentation":"<p>The impersonation role name.</p>" 3674 }, 3675 "Type":{ 3676 "shape":"ImpersonationRoleType", 3677 "documentation":"<p>The impersonation role type.</p>" 3678 }, 3679 "DateCreated":{ 3680 "shape":"Timestamp", 3681 "documentation":"<p>The date when the impersonation role was created.</p>" 3682 }, 3683 "DateModified":{ 3684 "shape":"Timestamp", 3685 "documentation":"<p>The date when the impersonation role was last modified.</p>" 3686 } 3687 }, 3688 "documentation":"<p>An impersonation role for the given WorkMail organization.</p>" 3689 }, 3690 "ImpersonationRoleDescription":{ 3691 "type":"string", 3692 "max":256, 3693 "min":1, 3694 "pattern":"[^\\x00-\\x09\\x0B\\x0C\\x0E-\\x1F\\x7F\\x3C\\x3E\\x5C]+" 3695 }, 3696 "ImpersonationRoleId":{ 3697 "type":"string", 3698 "max":64, 3699 "min":1, 3700 "pattern":"[a-zA-Z0-9_-]+" 3701 }, 3702 "ImpersonationRoleIdList":{ 3703 "type":"list", 3704 "member":{"shape":"ImpersonationRoleId"}, 3705 "max":10, 3706 "min":0 3707 }, 3708 "ImpersonationRoleList":{ 3709 "type":"list", 3710 "member":{"shape":"ImpersonationRole"}, 3711 "max":20, 3712 "min":0 3713 }, 3714 "ImpersonationRoleName":{ 3715 "type":"string", 3716 "max":64, 3717 "min":1, 3718 "pattern":"[^\\x00-\\x1F\\x7F\\x3C\\x3E\\x5C]+" 3719 }, 3720 "ImpersonationRoleType":{ 3721 "type":"string", 3722 "enum":[ 3723 "FULL_ACCESS", 3724 "READ_ONLY" 3725 ] 3726 }, 3727 "ImpersonationRule":{ 3728 "type":"structure", 3729 "required":[ 3730 "ImpersonationRuleId", 3731 "Effect" 3732 ], 3733 "members":{ 3734 "ImpersonationRuleId":{ 3735 "shape":"ImpersonationRuleId", 3736 "documentation":"<p>The identifier of the rule.</p>" 3737 }, 3738 "Name":{ 3739 "shape":"ImpersonationRuleName", 3740 "documentation":"<p>The rule name.</p>" 3741 }, 3742 "Description":{ 3743 "shape":"ImpersonationRuleDescription", 3744 "documentation":"<p>The rule description.</p>" 3745 }, 3746 "Effect":{ 3747 "shape":"AccessEffect", 3748 "documentation":"<p>The effect of the rule when it matches the input. Allowed effect values are <code>ALLOW</code> or <code>DENY</code>.</p>" 3749 }, 3750 "TargetUsers":{ 3751 "shape":"TargetUsers", 3752 "documentation":"<p>A list of user IDs that match the rule.</p>" 3753 }, 3754 "NotTargetUsers":{ 3755 "shape":"TargetUsers", 3756 "documentation":"<p>A list of user IDs that don't match the rule.</p>" 3757 } 3758 }, 3759 "documentation":"<p>The rules for the given impersonation role.</p>" 3760 }, 3761 "ImpersonationRuleDescription":{ 3762 "type":"string", 3763 "max":256, 3764 "min":1, 3765 "pattern":"[^\\x00-\\x09\\x0B\\x0C\\x0E-\\x1F\\x7F\\x3C\\x3E\\x5C]+" 3766 }, 3767 "ImpersonationRuleId":{ 3768 "type":"string", 3769 "max":64, 3770 "min":1, 3771 "pattern":"[a-zA-Z0-9_-]+" 3772 }, 3773 "ImpersonationRuleList":{ 3774 "type":"list", 3775 "member":{"shape":"ImpersonationRule"}, 3776 "max":10, 3777 "min":0 3778 }, 3779 "ImpersonationRuleName":{ 3780 "type":"string", 3781 "max":64, 3782 "min":1, 3783 "pattern":"[^\\x00-\\x1F\\x7F\\x3C\\x3E\\x5C]+" 3784 }, 3785 "ImpersonationToken":{ 3786 "type":"string", 3787 "max":256, 3788 "min":1, 3789 "pattern":"[\\x21-\\x7e]+" 3790 }, 3791 "InvalidConfigurationException":{ 3792 "type":"structure", 3793 "members":{ 3794 "Message":{"shape":"String"} 3795 }, 3796 "documentation":"<p>The configuration for a resource isn't valid. A resource must either be able to auto-respond to requests or have at least one delegate associated that can do so on its behalf.</p>", 3797 "exception":true 3798 }, 3799 "InvalidCustomSesConfigurationException":{ 3800 "type":"structure", 3801 "members":{ 3802 "Message":{"shape":"String"} 3803 }, 3804 "documentation":"<p>You SES configuration has customizations that WorkMail cannot save. The error message lists the invalid setting. For examples of invalid settings, refer to <a href=\"https://docs.aws.amazon.com/ses/latest/APIReference/API_CreateReceiptRule.html\">CreateReceiptRule</a>.</p>", 3805 "exception":true 3806 }, 3807 "InvalidParameterException":{ 3808 "type":"structure", 3809 "members":{ 3810 "Message":{"shape":"String"} 3811 }, 3812 "documentation":"<p>One or more of the input parameters don't match the service's restrictions.</p>", 3813 "exception":true 3814 }, 3815 "InvalidPasswordException":{ 3816 "type":"structure", 3817 "members":{ 3818 "Message":{"shape":"String"} 3819 }, 3820 "documentation":"<p>The supplied password doesn't match the minimum security constraints, such as length or use of special characters.</p>", 3821 "exception":true 3822 }, 3823 "IpAddress":{ 3824 "type":"string", 3825 "max":15, 3826 "min":1, 3827 "pattern":"^(([0-9]|[1-9][0-9]|1[0-9]{2}|2[0-4][0-9]|25[0-5])\\.){3}([0-9]|[1-9][0-9]|1[0-9]{2}|2[0-4][0-9]|25[0-5])$" 3828 }, 3829 "IpRange":{ 3830 "type":"string", 3831 "max":18, 3832 "min":1, 3833 "pattern":"^(([0-9]|[1-9][0-9]|1[0-9]{2}|2[0-4][0-9]|25[0-5])\\.){3}([0-9]|[1-9][0-9]|1[0-9]{2}|2[0-4][0-9]|25[0-5])/([0-9]|[12][0-9]|3[0-2])$" 3834 }, 3835 "IpRangeList":{ 3836 "type":"list", 3837 "member":{"shape":"IpRange"}, 3838 "max":1024, 3839 "min":0 3840 }, 3841 "Jobs":{ 3842 "type":"list", 3843 "member":{"shape":"MailboxExportJob"} 3844 }, 3845 "KmsKeyArn":{ 3846 "type":"string", 3847 "max":2048, 3848 "min":20, 3849 "pattern":"arn:aws:kms:[a-z0-9-]*:[a-z0-9-]+:[A-Za-z0-9][A-Za-z0-9:_/+=,@.-]{0,1023}" 3850 }, 3851 "LambdaArn":{ 3852 "type":"string", 3853 "max":256, 3854 "min":49, 3855 "pattern":"arn:aws:lambda:[a-z]{2}-[a-z]+-\\d{1}:\\d{12}:function:[a-zA-Z0-9\\-_\\.]+(:(\\$LATEST|[a-zA-Z0-9\\-_]+))?" 3856 }, 3857 "LambdaAvailabilityProvider":{ 3858 "type":"structure", 3859 "required":["LambdaArn"], 3860 "members":{ 3861 "LambdaArn":{ 3862 "shape":"LambdaArn", 3863 "documentation":"<p>The Amazon Resource Name (ARN) of the Lambda that acts as the availability provider.</p>" 3864 } 3865 }, 3866 "documentation":"<p>Describes a Lambda based availability provider.</p>" 3867 }, 3868 "LimitExceededException":{ 3869 "type":"structure", 3870 "members":{ 3871 "Message":{"shape":"String"} 3872 }, 3873 "documentation":"<p>The request exceeds the limit of the resource.</p>", 3874 "exception":true 3875 }, 3876 "ListAccessControlRulesRequest":{ 3877 "type":"structure", 3878 "required":["OrganizationId"], 3879 "members":{ 3880 "OrganizationId":{ 3881 "shape":"OrganizationId", 3882 "documentation":"<p>The identifier for the organization.</p>" 3883 } 3884 } 3885 }, 3886 "ListAccessControlRulesResponse":{ 3887 "type":"structure", 3888 "members":{ 3889 "Rules":{ 3890 "shape":"AccessControlRulesList", 3891 "documentation":"<p>The access control rules.</p>" 3892 } 3893 } 3894 }, 3895 "ListAliasesRequest":{ 3896 "type":"structure", 3897 "required":[ 3898 "OrganizationId", 3899 "EntityId" 3900 ], 3901 "members":{ 3902 "OrganizationId":{ 3903 "shape":"OrganizationId", 3904 "documentation":"<p>The identifier for the organization under which the entity exists.</p>" 3905 }, 3906 "EntityId":{ 3907 "shape":"WorkMailIdentifier", 3908 "documentation":"<p>The identifier for the entity for which to list the aliases.</p>" 3909 }, 3910 "NextToken":{ 3911 "shape":"NextToken", 3912 "documentation":"<p>The token to use to retrieve the next page of results. The first call does not contain any tokens.</p>" 3913 }, 3914 "MaxResults":{ 3915 "shape":"MaxResults", 3916 "documentation":"<p>The maximum number of results to return in a single call.</p>" 3917 } 3918 } 3919 }, 3920 "ListAliasesResponse":{ 3921 "type":"structure", 3922 "members":{ 3923 "Aliases":{ 3924 "shape":"Aliases", 3925 "documentation":"<p>The entity's paginated aliases.</p>" 3926 }, 3927 "NextToken":{ 3928 "shape":"NextToken", 3929 "documentation":"<p>The token to use to retrieve the next page of results. The value is \"null\" when there are no more results to return.</p>" 3930 } 3931 } 3932 }, 3933 "ListAvailabilityConfigurationsRequest":{ 3934 "type":"structure", 3935 "required":["OrganizationId"], 3936 "members":{ 3937 "OrganizationId":{ 3938 "shape":"OrganizationId", 3939 "documentation":"<p>The WorkMail organization for which the <code>AvailabilityConfiguration</code>'s will be listed.</p>" 3940 }, 3941 "MaxResults":{ 3942 "shape":"MaxResults", 3943 "documentation":"<p>The maximum number of results to return in a single call.</p>" 3944 }, 3945 "NextToken":{ 3946 "shape":"NextToken", 3947 "documentation":"<p>The token to use to retrieve the next page of results. The first call does not require a token.</p>" 3948 } 3949 } 3950 }, 3951 "ListAvailabilityConfigurationsResponse":{ 3952 "type":"structure", 3953 "members":{ 3954 "AvailabilityConfigurations":{ 3955 "shape":"AvailabilityConfigurationList", 3956 "documentation":"<p>The list of <code>AvailabilityConfiguration</code>'s that exist for the specified WorkMail organization.</p>" 3957 }, 3958 "NextToken":{ 3959 "shape":"NextToken", 3960 "documentation":"<p>The token to use to retrieve the next page of results. The value is <code>null</code> when there are no further results to return.</p>" 3961 } 3962 } 3963 }, 3964 "ListGroupMembersRequest":{ 3965 "type":"structure", 3966 "required":[ 3967 "OrganizationId", 3968 "GroupId" 3969 ], 3970 "members":{ 3971 "OrganizationId":{ 3972 "shape":"OrganizationId", 3973 "documentation":"<p>The identifier for the organization under which the group exists.</p>" 3974 }, 3975 "GroupId":{ 3976 "shape":"EntityIdentifier", 3977 "documentation":"<p>The identifier for the group to which the members (users or groups) are associated.</p> <p>The identifier can accept <i>GroupId</i>, <i>Groupname</i>, or <i>email</i>. The following identity formats are available:</p> <ul> <li> <p>Group ID: 12345678-1234-1234-1234-123456789012 or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: group@domain.tld</p> </li> <li> <p>Group name: group</p> </li> </ul>" 3978 }, 3979 "NextToken":{ 3980 "shape":"NextToken", 3981 "documentation":"<p> The token to use to retrieve the next page of results. The first call does not contain any tokens.</p>" 3982 }, 3983 "MaxResults":{ 3984 "shape":"MaxResults", 3985 "documentation":"<p>The maximum number of results to return in a single call.</p>" 3986 } 3987 } 3988 }, 3989 "ListGroupMembersResponse":{ 3990 "type":"structure", 3991 "members":{ 3992 "Members":{ 3993 "shape":"Members", 3994 "documentation":"<p>The members associated to the group.</p>" 3995 }, 3996 "NextToken":{ 3997 "shape":"NextToken", 3998 "documentation":"<p>The token to use to retrieve the next page of results. The first call does not contain any tokens.</p>" 3999 } 4000 } 4001 }, 4002 "ListGroupsFilters":{ 4003 "type":"structure", 4004 "members":{ 4005 "NamePrefix":{ 4006 "shape":"String", 4007 "documentation":"<p>Filters only groups with the provided name prefix.</p>" 4008 }, 4009 "PrimaryEmailPrefix":{ 4010 "shape":"String", 4011 "documentation":"<p>Filters only groups with the provided primary email prefix.</p>" 4012 }, 4013 "State":{ 4014 "shape":"EntityState", 4015 "documentation":"<p>Filters only groups with the provided state.</p>" 4016 } 4017 }, 4018 "documentation":"<p> Filtering options for <i>ListGroups</i> operation. This is only used as input to Operation.</p>" 4019 }, 4020 "ListGroupsForEntityFilters":{ 4021 "type":"structure", 4022 "members":{ 4023 "GroupNamePrefix":{ 4024 "shape":"String", 4025 "documentation":"<p>Filters only group names that start with the provided name prefix.</p>" 4026 } 4027 }, 4028 "documentation":"<p> Filtering options for <i>ListGroupsForEntity</i> operation. This is only used as input to Operation.</p>" 4029 }, 4030 "ListGroupsForEntityRequest":{ 4031 "type":"structure", 4032 "required":[ 4033 "OrganizationId", 4034 "EntityId" 4035 ], 4036 "members":{ 4037 "OrganizationId":{ 4038 "shape":"OrganizationId", 4039 "documentation":"<p>The identifier for the organization under which the entity exists.</p>" 4040 }, 4041 "EntityId":{ 4042 "shape":"EntityIdentifier", 4043 "documentation":"<p>The identifier for the entity.</p> <p>The entity ID can accept <i>UserId or GroupID</i>, <i>Username or Groupname</i>, or <i>email</i>.</p> <ul> <li> <p>Entity ID: 12345678-1234-1234-1234-123456789012 or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: entity@domain.tld</p> </li> <li> <p>Entity name: entity</p> </li> </ul>" 4044 }, 4045 "Filters":{ 4046 "shape":"ListGroupsForEntityFilters", 4047 "documentation":"<p>Limit the search results based on the filter criteria.</p>" 4048 }, 4049 "NextToken":{ 4050 "shape":"NextToken", 4051 "documentation":"<p>The token to use to retrieve the next page of results. The first call does not contain any tokens.</p>" 4052 }, 4053 "MaxResults":{ 4054 "shape":"MaxResults", 4055 "documentation":"<p>The maximum number of results to return in a single call.</p>" 4056 } 4057 } 4058 }, 4059 "ListGroupsForEntityResponse":{ 4060 "type":"structure", 4061 "members":{ 4062 "Groups":{ 4063 "shape":"GroupIdentifiers", 4064 "documentation":"<p>The overview of groups in an organization.</p>" 4065 }, 4066 "NextToken":{ 4067 "shape":"NextToken", 4068 "documentation":"<p>The token to use to retrieve the next page of results. This value is `null` when there are no more results to return.</p>" 4069 } 4070 } 4071 }, 4072 "ListGroupsRequest":{ 4073 "type":"structure", 4074 "required":["OrganizationId"], 4075 "members":{ 4076 "OrganizationId":{ 4077 "shape":"OrganizationId", 4078 "documentation":"<p>The identifier for the organization under which the groups exist.</p>" 4079 }, 4080 "NextToken":{ 4081 "shape":"NextToken", 4082 "documentation":"<p>The token to use to retrieve the next page of results. The first call does not contain any tokens.</p>" 4083 }, 4084 "MaxResults":{ 4085 "shape":"MaxResults", 4086 "documentation":"<p>The maximum number of results to return in a single call.</p>" 4087 }, 4088 "Filters":{ 4089 "shape":"ListGroupsFilters", 4090 "documentation":"<p>Limit the search results based on the filter criteria. Only one filter per request is supported.</p>" 4091 } 4092 } 4093 }, 4094 "ListGroupsResponse":{ 4095 "type":"structure", 4096 "members":{ 4097 "Groups":{ 4098 "shape":"Groups", 4099 "documentation":"<p>The overview of groups for an organization.</p>" 4100 }, 4101 "NextToken":{ 4102 "shape":"NextToken", 4103 "documentation":"<p>The token to use to retrieve the next page of results. The value is \"null\" when there are no more results to return.</p>" 4104 } 4105 } 4106 }, 4107 "ListImpersonationRolesRequest":{ 4108 "type":"structure", 4109 "required":["OrganizationId"], 4110 "members":{ 4111 "OrganizationId":{ 4112 "shape":"OrganizationId", 4113 "documentation":"<p>The WorkMail organization to which the listed impersonation roles belong.</p>" 4114 }, 4115 "NextToken":{ 4116 "shape":"NextToken", 4117 "documentation":"<p>The token used to retrieve the next page of results. The first call doesn't require a token.</p>" 4118 }, 4119 "MaxResults":{ 4120 "shape":"MaxResults", 4121 "documentation":"<p>The maximum number of results returned in a single call.</p>" 4122 } 4123 } 4124 }, 4125 "ListImpersonationRolesResponse":{ 4126 "type":"structure", 4127 "members":{ 4128 "Roles":{ 4129 "shape":"ImpersonationRoleList", 4130 "documentation":"<p>The list of impersonation roles under the given WorkMail organization.</p>" 4131 }, 4132 "NextToken":{ 4133 "shape":"NextToken", 4134 "documentation":"<p>The token to retrieve the next page of results. The value is <code>null</code> when there are no results to return.</p>" 4135 } 4136 } 4137 }, 4138 "ListMailDomainsRequest":{ 4139 "type":"structure", 4140 "required":["OrganizationId"], 4141 "members":{ 4142 "OrganizationId":{ 4143 "shape":"OrganizationId", 4144 "documentation":"<p>The WorkMail organization for which to list domains.</p>" 4145 }, 4146 "MaxResults":{ 4147 "shape":"MaxResults", 4148 "documentation":"<p>The maximum number of results to return in a single call.</p>" 4149 }, 4150 "NextToken":{ 4151 "shape":"NextToken", 4152 "documentation":"<p>The token to use to retrieve the next page of results. The first call does not require a token.</p>" 4153 } 4154 } 4155 }, 4156 "ListMailDomainsResponse":{ 4157 "type":"structure", 4158 "members":{ 4159 "MailDomains":{ 4160 "shape":"MailDomains", 4161 "documentation":"<p>The list of mail domain summaries, specifying domains that exist in the specified WorkMail organization, along with the information about whether the domain is or isn't the default.</p>" 4162 }, 4163 "NextToken":{ 4164 "shape":"NextToken", 4165 "documentation":"<p>The token to use to retrieve the next page of results. The value becomes <code>null</code> when there are no more results to return.</p>" 4166 } 4167 } 4168 }, 4169 "ListMailboxExportJobsRequest":{ 4170 "type":"structure", 4171 "required":["OrganizationId"], 4172 "members":{ 4173 "OrganizationId":{ 4174 "shape":"OrganizationId", 4175 "documentation":"<p>The organization ID.</p>" 4176 }, 4177 "NextToken":{ 4178 "shape":"NextToken", 4179 "documentation":"<p>The token to use to retrieve the next page of results.</p>" 4180 }, 4181 "MaxResults":{ 4182 "shape":"MaxResults", 4183 "documentation":"<p>The maximum number of results to return in a single call.</p>" 4184 } 4185 } 4186 }, 4187 "ListMailboxExportJobsResponse":{ 4188 "type":"structure", 4189 "members":{ 4190 "Jobs":{ 4191 "shape":"Jobs", 4192 "documentation":"<p>The mailbox export job details.</p>" 4193 }, 4194 "NextToken":{ 4195 "shape":"NextToken", 4196 "documentation":"<p>The token to use to retrieve the next page of results.</p>" 4197 } 4198 } 4199 }, 4200 "ListMailboxPermissionsRequest":{ 4201 "type":"structure", 4202 "required":[ 4203 "OrganizationId", 4204 "EntityId" 4205 ], 4206 "members":{ 4207 "OrganizationId":{ 4208 "shape":"OrganizationId", 4209 "documentation":"<p>The identifier of the organization under which the user, group, or resource exists.</p>" 4210 }, 4211 "EntityId":{ 4212 "shape":"EntityIdentifier", 4213 "documentation":"<p>The identifier of the user, or resource for which to list mailbox permissions.</p> <p>The entity ID can accept <i>UserId or ResourceId</i>, <i>Username or Resourcename</i>, or <i>email</i>.</p> <ul> <li> <p>Entity ID: 12345678-1234-1234-1234-123456789012, or r-0123456789a0123456789b0123456789</p> </li> <li> <p>Email address: entity@domain.tld</p> </li> <li> <p>Entity name: entity</p> </li> </ul>" 4214 }, 4215 "NextToken":{ 4216 "shape":"NextToken", 4217 "documentation":"<p>The token to use to retrieve the next page of results. The first call does not contain any tokens.</p>" 4218 }, 4219 "MaxResults":{ 4220 "shape":"MaxResults", 4221 "documentation":"<p>The maximum number of results to return in a single call.</p>" 4222 } 4223 } 4224 }, 4225 "ListMailboxPermissionsResponse":{ 4226 "type":"structure", 4227 "members":{ 4228 "Permissions":{ 4229 "shape":"Permissions", 4230 "documentation":"<p>One page of the user, group, or resource mailbox permissions.</p>" 4231 }, 4232 "NextToken":{ 4233 "shape":"NextToken", 4234 "documentation":"<p>The token to use to retrieve the next page of results. The value is \"null\" when there are no more results to return.</p>" 4235 } 4236 } 4237 }, 4238 "ListMobileDeviceAccessOverridesRequest":{ 4239 "type":"structure", 4240 "required":["OrganizationId"], 4241 "members":{ 4242 "OrganizationId":{ 4243 "shape":"OrganizationId", 4244 "documentation":"<p>The WorkMail organization under which to list mobile device access overrides.</p>" 4245 }, 4246 "UserId":{ 4247 "shape":"EntityIdentifier", 4248 "documentation":"<p>The WorkMail user under which you list the mobile device access overrides. Accepts the following types of user identities:</p> <ul> <li> <p>User ID: <code>12345678-1234-1234-1234-123456789012</code> or <code>S-1-1-12-1234567890-123456789-123456789-1234</code> </p> </li> <li> <p>Email address: <code>user@domain.tld</code> </p> </li> <li> <p>User name: <code>user</code> </p> </li> </ul>" 4249 }, 4250 "DeviceId":{ 4251 "shape":"DeviceId", 4252 "documentation":"<p>The mobile device to which the access override applies.</p>" 4253 }, 4254 "NextToken":{ 4255 "shape":"NextToken", 4256 "documentation":"<p>The token to use to retrieve the next page of results. The first call does not require a token.</p>" 4257 }, 4258 "MaxResults":{ 4259 "shape":"MaxResults", 4260 "documentation":"<p>The maximum number of results to return in a single call.</p>" 4261 } 4262 } 4263 }, 4264 "ListMobileDeviceAccessOverridesResponse":{ 4265 "type":"structure", 4266 "members":{ 4267 "Overrides":{ 4268 "shape":"MobileDeviceAccessOverridesList", 4269 "documentation":"<p>The list of mobile device access overrides that exist for the specified WorkMail organization and user.</p>" 4270 }, 4271 "NextToken":{ 4272 "shape":"NextToken", 4273 "documentation":"<p>The token to use to retrieve the next page of results. The value is “null” when there are no more results to return.</p>" 4274 } 4275 } 4276 }, 4277 "ListMobileDeviceAccessRulesRequest":{ 4278 "type":"structure", 4279 "required":["OrganizationId"], 4280 "members":{ 4281 "OrganizationId":{ 4282 "shape":"OrganizationId", 4283 "documentation":"<p>The WorkMail organization for which to list the rules.</p>" 4284 } 4285 } 4286 }, 4287 "ListMobileDeviceAccessRulesResponse":{ 4288 "type":"structure", 4289 "members":{ 4290 "Rules":{ 4291 "shape":"MobileDeviceAccessRulesList", 4292 "documentation":"<p>The list of mobile device access rules that exist under the specified WorkMail organization.</p>" 4293 } 4294 } 4295 }, 4296 "ListOrganizationsRequest":{ 4297 "type":"structure", 4298 "members":{ 4299 "NextToken":{ 4300 "shape":"NextToken", 4301 "documentation":"<p>The token to use to retrieve the next page of results. The first call does not contain any tokens.</p>" 4302 }, 4303 "MaxResults":{ 4304 "shape":"MaxResults", 4305 "documentation":"<p>The maximum number of results to return in a single call.</p>" 4306 } 4307 } 4308 }, 4309 "ListOrganizationsResponse":{ 4310 "type":"structure", 4311 "members":{ 4312 "OrganizationSummaries":{ 4313 "shape":"OrganizationSummaries", 4314 "documentation":"<p>The overview of owned organizations presented as a list of organization summaries.</p>" 4315 }, 4316 "NextToken":{ 4317 "shape":"NextToken", 4318 "documentation":"<p>The token to use to retrieve the next page of results. The value is \"null\" when there are no more results to return.</p>" 4319 } 4320 } 4321 }, 4322 "ListResourceDelegatesRequest":{ 4323 "type":"structure", 4324 "required":[ 4325 "OrganizationId", 4326 "ResourceId" 4327 ], 4328 "members":{ 4329 "OrganizationId":{ 4330 "shape":"OrganizationId", 4331 "documentation":"<p>The identifier for the organization that contains the resource for which delegates are listed.</p>" 4332 }, 4333 "ResourceId":{ 4334 "shape":"EntityIdentifier", 4335 "documentation":"<p>The identifier for the resource whose delegates are listed.</p> <p>The identifier can accept <i>ResourceId</i>, <i>Resourcename</i>, or <i>email</i>. The following identity formats are available:</p> <ul> <li> <p>Resource ID: r-0123456789a0123456789b0123456789</p> </li> <li> <p>Email address: resource@domain.tld</p> </li> <li> <p>Resource name: resource</p> </li> </ul>" 4336 }, 4337 "NextToken":{ 4338 "shape":"NextToken", 4339 "documentation":"<p>The token used to paginate through the delegates associated with a resource.</p>" 4340 }, 4341 "MaxResults":{ 4342 "shape":"MaxResults", 4343 "documentation":"<p>The number of maximum results in a page.</p>" 4344 } 4345 } 4346 }, 4347 "ListResourceDelegatesResponse":{ 4348 "type":"structure", 4349 "members":{ 4350 "Delegates":{ 4351 "shape":"ResourceDelegates", 4352 "documentation":"<p>One page of the resource's delegates.</p>" 4353 }, 4354 "NextToken":{ 4355 "shape":"NextToken", 4356 "documentation":"<p>The token used to paginate through the delegates associated with a resource. While results are still available, it has an associated value. When the last page is reached, the token is empty.</p>" 4357 } 4358 } 4359 }, 4360 "ListResourcesFilters":{ 4361 "type":"structure", 4362 "members":{ 4363 "NamePrefix":{ 4364 "shape":"String", 4365 "documentation":"<p>Filters only resource that start with the entered name prefix .</p>" 4366 }, 4367 "PrimaryEmailPrefix":{ 4368 "shape":"String", 4369 "documentation":"<p>Filters only resource with the provided primary email prefix.</p>" 4370 }, 4371 "State":{ 4372 "shape":"EntityState", 4373 "documentation":"<p>Filters only resource with the provided state.</p>" 4374 } 4375 }, 4376 "documentation":"<p>Filtering options for <i>ListResources</i> operation. This is only used as input to Operation.</p>" 4377 }, 4378 "ListResourcesRequest":{ 4379 "type":"structure", 4380 "required":["OrganizationId"], 4381 "members":{ 4382 "OrganizationId":{ 4383 "shape":"OrganizationId", 4384 "documentation":"<p>The identifier for the organization under which the resources exist.</p>" 4385 }, 4386 "NextToken":{ 4387 "shape":"NextToken", 4388 "documentation":"<p>The token to use to retrieve the next page of results. The first call does not contain any tokens.</p>" 4389 }, 4390 "MaxResults":{ 4391 "shape":"MaxResults", 4392 "documentation":"<p>The maximum number of results to return in a single call.</p>" 4393 }, 4394 "Filters":{ 4395 "shape":"ListResourcesFilters", 4396 "documentation":"<p>Limit the resource search results based on the filter criteria. You can only use one filter per request.</p>" 4397 } 4398 } 4399 }, 4400 "ListResourcesResponse":{ 4401 "type":"structure", 4402 "members":{ 4403 "Resources":{ 4404 "shape":"Resources", 4405 "documentation":"<p>One page of the organization's resource representation.</p>" 4406 }, 4407 "NextToken":{ 4408 "shape":"NextToken", 4409 "documentation":"<p> The token used to paginate through all the organization's resources. While results are still available, it has an associated value. When the last page is reached, the token is empty.</p>" 4410 } 4411 } 4412 }, 4413 "ListTagsForResourceRequest":{ 4414 "type":"structure", 4415 "required":["ResourceARN"], 4416 "members":{ 4417 "ResourceARN":{ 4418 "shape":"AmazonResourceName", 4419 "documentation":"<p>The resource ARN.</p>" 4420 } 4421 } 4422 }, 4423 "ListTagsForResourceResponse":{ 4424 "type":"structure", 4425 "members":{ 4426 "Tags":{ 4427 "shape":"TagList", 4428 "documentation":"<p>A list of tag key-value pairs.</p>" 4429 } 4430 } 4431 }, 4432 "ListUsersFilters":{ 4433 "type":"structure", 4434 "members":{ 4435 "UsernamePrefix":{ 4436 "shape":"String", 4437 "documentation":"<p>Filters only users with the provided username prefix.</p>" 4438 }, 4439 "DisplayNamePrefix":{ 4440 "shape":"UserAttribute", 4441 "documentation":"<p>Filters only users with the provided display name prefix.</p>" 4442 }, 4443 "PrimaryEmailPrefix":{ 4444 "shape":"String", 4445 "documentation":"<p>Filters only users with the provided email prefix.</p>" 4446 }, 4447 "State":{ 4448 "shape":"EntityState", 4449 "documentation":"<p>Filters only users with the provided state.</p>" 4450 } 4451 }, 4452 "documentation":"<p> Filtering options for <i>ListUsers</i> operation. This is only used as input to Operation.</p>" 4453 }, 4454 "ListUsersRequest":{ 4455 "type":"structure", 4456 "required":["OrganizationId"], 4457 "members":{ 4458 "OrganizationId":{ 4459 "shape":"OrganizationId", 4460 "documentation":"<p>The identifier for the organization under which the users exist.</p>" 4461 }, 4462 "NextToken":{ 4463 "shape":"NextToken", 4464 "documentation":"<p>The token to use to retrieve the next page of results. The first call does not contain any tokens.</p>" 4465 }, 4466 "MaxResults":{ 4467 "shape":"MaxResults", 4468 "documentation":"<p>The maximum number of results to return in a single call.</p>" 4469 }, 4470 "Filters":{ 4471 "shape":"ListUsersFilters", 4472 "documentation":"<p>Limit the user search results based on the filter criteria. You can only use one filter per request.</p>" 4473 } 4474 } 4475 }, 4476 "ListUsersResponse":{ 4477 "type":"structure", 4478 "members":{ 4479 "Users":{ 4480 "shape":"Users", 4481 "documentation":"<p>The overview of users for an organization.</p>" 4482 }, 4483 "NextToken":{ 4484 "shape":"NextToken", 4485 "documentation":"<p> The token to use to retrieve the next page of results. This value is `null` when there are no more results to return.</p>" 4486 } 4487 } 4488 }, 4489 "LogGroupArn":{ 4490 "type":"string", 4491 "max":562, 4492 "min":47, 4493 "pattern":"arn:aws:logs:[a-z\\-0-9]*:[0-9]{12}:log-group:([\\.\\-_/#A-Za-z0-9]+):\\*$" 4494 }, 4495 "MailDomainInUseException":{ 4496 "type":"structure", 4497 "members":{ 4498 "Message":{"shape":"String"} 4499 }, 4500 "documentation":"<p>The domain you're trying to change is in use by another user or organization in your account. See the error message for details.</p>", 4501 "exception":true 4502 }, 4503 "MailDomainNotFoundException":{ 4504 "type":"structure", 4505 "members":{ 4506 "Message":{"shape":"String"} 4507 }, 4508 "documentation":"<p>The domain specified is not found in your organization.</p>", 4509 "exception":true 4510 }, 4511 "MailDomainStateException":{ 4512 "type":"structure", 4513 "members":{ 4514 "Message":{"shape":"String"} 4515 }, 4516 "documentation":"<p>After a domain has been added to the organization, it must be verified. The domain is not yet verified.</p>", 4517 "exception":true 4518 }, 4519 "MailDomainSummary":{ 4520 "type":"structure", 4521 "members":{ 4522 "DomainName":{ 4523 "shape":"DomainName", 4524 "documentation":"<p>The domain name.</p>" 4525 }, 4526 "DefaultDomain":{ 4527 "shape":"Boolean", 4528 "documentation":"<p>Whether the domain is default or not.</p>" 4529 } 4530 }, 4531 "documentation":"<p>The data for a given domain.</p>" 4532 }, 4533 "MailDomains":{ 4534 "type":"list", 4535 "member":{"shape":"MailDomainSummary"} 4536 }, 4537 "MailboxExportErrorInfo":{ 4538 "type":"string", 4539 "max":1024, 4540 "min":1, 4541 "pattern":"[\\S\\s]*" 4542 }, 4543 "MailboxExportJob":{ 4544 "type":"structure", 4545 "members":{ 4546 "JobId":{ 4547 "shape":"MailboxExportJobId", 4548 "documentation":"<p>The identifier of the mailbox export job.</p>" 4549 }, 4550 "EntityId":{ 4551 "shape":"WorkMailIdentifier", 4552 "documentation":"<p>The identifier of the user or resource associated with the mailbox.</p>" 4553 }, 4554 "Description":{ 4555 "shape":"Description", 4556 "documentation":"<p>The mailbox export job description.</p>" 4557 }, 4558 "S3BucketName":{ 4559 "shape":"S3BucketName", 4560 "documentation":"<p>The name of the S3 bucket.</p>" 4561 }, 4562 "S3Path":{ 4563 "shape":"S3ObjectKey", 4564 "documentation":"<p>The path to the S3 bucket and file that the mailbox export job exports to.</p>" 4565 }, 4566 "EstimatedProgress":{ 4567 "shape":"Percentage", 4568 "documentation":"<p>The estimated progress of the mailbox export job, in percentage points.</p>" 4569 }, 4570 "State":{ 4571 "shape":"MailboxExportJobState", 4572 "documentation":"<p>The state of the mailbox export job.</p>" 4573 }, 4574 "StartTime":{ 4575 "shape":"Timestamp", 4576 "documentation":"<p>The mailbox export job start timestamp.</p>" 4577 }, 4578 "EndTime":{ 4579 "shape":"Timestamp", 4580 "documentation":"<p>The mailbox export job end timestamp.</p>" 4581 } 4582 }, 4583 "documentation":"<p>The details of a mailbox export job, including the user or resource ID associated with the mailbox and the S3 bucket that the mailbox contents are exported to.</p>" 4584 }, 4585 "MailboxExportJobId":{ 4586 "type":"string", 4587 "max":63, 4588 "min":1, 4589 "pattern":"[A-Za-z0-9-]+" 4590 }, 4591 "MailboxExportJobState":{ 4592 "type":"string", 4593 "enum":[ 4594 "RUNNING", 4595 "COMPLETED", 4596 "FAILED", 4597 "CANCELLED" 4598 ] 4599 }, 4600 "MailboxQuota":{ 4601 "type":"integer", 4602 "box":true, 4603 "min":1 4604 }, 4605 "MailboxSize":{ 4606 "type":"double", 4607 "min":0 4608 }, 4609 "MaxResults":{ 4610 "type":"integer", 4611 "box":true, 4612 "max":100, 4613 "min":1 4614 }, 4615 "Member":{ 4616 "type":"structure", 4617 "members":{ 4618 "Id":{ 4619 "shape":"String", 4620 "documentation":"<p>The identifier of the member.</p>" 4621 }, 4622 "Name":{ 4623 "shape":"String", 4624 "documentation":"<p>The name of the member.</p>" 4625 }, 4626 "Type":{ 4627 "shape":"MemberType", 4628 "documentation":"<p>A member can be a user or group.</p>" 4629 }, 4630 "State":{ 4631 "shape":"EntityState", 4632 "documentation":"<p>The state of the member, which can be ENABLED, DISABLED, or DELETED.</p>" 4633 }, 4634 "EnabledDate":{ 4635 "shape":"Timestamp", 4636 "documentation":"<p>The date indicating when the member was enabled for WorkMail use.</p>" 4637 }, 4638 "DisabledDate":{ 4639 "shape":"Timestamp", 4640 "documentation":"<p>The date indicating when the member was disabled from WorkMail use.</p>" 4641 } 4642 }, 4643 "documentation":"<p>The representation of a user or group.</p>" 4644 }, 4645 "MemberType":{ 4646 "type":"string", 4647 "enum":[ 4648 "GROUP", 4649 "USER" 4650 ] 4651 }, 4652 "Members":{ 4653 "type":"list", 4654 "member":{"shape":"Member"} 4655 }, 4656 "MobileDeviceAccessMatchedRule":{ 4657 "type":"structure", 4658 "members":{ 4659 "MobileDeviceAccessRuleId":{ 4660 "shape":"MobileDeviceAccessRuleId", 4661 "documentation":"<p>Identifier of the rule that a simulated user matches.</p>" 4662 }, 4663 "Name":{ 4664 "shape":"MobileDeviceAccessRuleName", 4665 "documentation":"<p>Name of a rule that a simulated user matches.</p>" 4666 } 4667 }, 4668 "documentation":"<p>The rule that a simulated user matches.</p>" 4669 }, 4670 "MobileDeviceAccessMatchedRuleList":{ 4671 "type":"list", 4672 "member":{"shape":"MobileDeviceAccessMatchedRule"}, 4673 "max":10, 4674 "min":0 4675 }, 4676 "MobileDeviceAccessOverride":{ 4677 "type":"structure", 4678 "members":{ 4679 "UserId":{ 4680 "shape":"WorkMailIdentifier", 4681 "documentation":"<p>The WorkMail user to which the access override applies.</p>" 4682 }, 4683 "DeviceId":{ 4684 "shape":"DeviceId", 4685 "documentation":"<p>The device to which the override applies.</p>" 4686 }, 4687 "Effect":{ 4688 "shape":"MobileDeviceAccessRuleEffect", 4689 "documentation":"<p>The effect of the override, <code>ALLOW</code> or <code>DENY</code>.</p>" 4690 }, 4691 "Description":{ 4692 "shape":"MobileDeviceAccessRuleDescription", 4693 "documentation":"<p>A description of the override.</p>" 4694 }, 4695 "DateCreated":{ 4696 "shape":"Timestamp", 4697 "documentation":"<p>The date the override was first created.</p>" 4698 }, 4699 "DateModified":{ 4700 "shape":"Timestamp", 4701 "documentation":"<p>The date the override was last modified.</p>" 4702 } 4703 }, 4704 "documentation":"<p>The override object.</p>" 4705 }, 4706 "MobileDeviceAccessOverridesList":{ 4707 "type":"list", 4708 "member":{"shape":"MobileDeviceAccessOverride"} 4709 }, 4710 "MobileDeviceAccessRule":{ 4711 "type":"structure", 4712 "members":{ 4713 "MobileDeviceAccessRuleId":{ 4714 "shape":"MobileDeviceAccessRuleId", 4715 "documentation":"<p>The ID assigned to a mobile access rule.</p>" 4716 }, 4717 "Name":{ 4718 "shape":"MobileDeviceAccessRuleName", 4719 "documentation":"<p>The name of a mobile access rule.</p>" 4720 }, 4721 "Description":{ 4722 "shape":"MobileDeviceAccessRuleDescription", 4723 "documentation":"<p>The description of a mobile access rule.</p>" 4724 }, 4725 "Effect":{ 4726 "shape":"MobileDeviceAccessRuleEffect", 4727 "documentation":"<p>The effect of the rule when it matches. Allowed values are <code>ALLOW</code> or <code>DENY</code>.</p>" 4728 }, 4729 "DeviceTypes":{ 4730 "shape":"DeviceTypeList", 4731 "documentation":"<p>Device types that a rule will match.</p>" 4732 }, 4733 "NotDeviceTypes":{ 4734 "shape":"DeviceTypeList", 4735 "documentation":"<p>Device types that a rule <b>will not</b> match. All other device types will match.</p>" 4736 }, 4737 "DeviceModels":{ 4738 "shape":"DeviceModelList", 4739 "documentation":"<p>Device models that a rule will match.</p>" 4740 }, 4741 "NotDeviceModels":{ 4742 "shape":"DeviceModelList", 4743 "documentation":"<p>Device models that a rule <b>will not</b> match. All other device models will match.</p>" 4744 }, 4745 "DeviceOperatingSystems":{ 4746 "shape":"DeviceOperatingSystemList", 4747 "documentation":"<p>Device operating systems that a rule will match.</p>" 4748 }, 4749 "NotDeviceOperatingSystems":{ 4750 "shape":"DeviceOperatingSystemList", 4751 "documentation":"<p>Device operating systems that a rule <b>will not</b> match. All other device types will match.</p>" 4752 }, 4753 "DeviceUserAgents":{ 4754 "shape":"DeviceUserAgentList", 4755 "documentation":"<p>Device user agents that a rule will match.</p>" 4756 }, 4757 "NotDeviceUserAgents":{ 4758 "shape":"DeviceUserAgentList", 4759 "documentation":"<p>Device user agents that a rule <b>will not</b> match. All other device user agents will match.</p>" 4760 }, 4761 "DateCreated":{ 4762 "shape":"Timestamp", 4763 "documentation":"<p>The date and time at which an access rule was created.</p>" 4764 }, 4765 "DateModified":{ 4766 "shape":"Timestamp", 4767 "documentation":"<p>The date and time at which an access rule was modified.</p>" 4768 } 4769 }, 4770 "documentation":"<p>A rule that controls access to mobile devices for an WorkMail group.</p>" 4771 }, 4772 "MobileDeviceAccessRuleDescription":{ 4773 "type":"string", 4774 "max":256, 4775 "min":1, 4776 "pattern":"[\\S\\s]+" 4777 }, 4778 "MobileDeviceAccessRuleEffect":{ 4779 "type":"string", 4780 "enum":[ 4781 "ALLOW", 4782 "DENY" 4783 ] 4784 }, 4785 "MobileDeviceAccessRuleId":{ 4786 "type":"string", 4787 "max":64, 4788 "min":1, 4789 "pattern":"[a-zA-Z0-9_-]+" 4790 }, 4791 "MobileDeviceAccessRuleName":{ 4792 "type":"string", 4793 "max":64, 4794 "min":1, 4795 "pattern":"[\\S\\s]+" 4796 }, 4797 "MobileDeviceAccessRulesList":{ 4798 "type":"list", 4799 "member":{"shape":"MobileDeviceAccessRule"}, 4800 "max":10, 4801 "min":0 4802 }, 4803 "NameAvailabilityException":{ 4804 "type":"structure", 4805 "members":{ 4806 "Message":{"shape":"String"} 4807 }, 4808 "documentation":"<p>The user, group, or resource name isn't unique in WorkMail.</p>", 4809 "exception":true 4810 }, 4811 "NewResourceDescription":{ 4812 "type":"string", 4813 "max":64, 4814 "min":0 4815 }, 4816 "NextToken":{ 4817 "type":"string", 4818 "max":1024, 4819 "min":1, 4820 "pattern":"[\\S\\s]*|[a-zA-Z0-9/+=]{1,1024}" 4821 }, 4822 "OrganizationId":{ 4823 "type":"string", 4824 "max":34, 4825 "min":34, 4826 "pattern":"^m-[0-9a-f]{32}$" 4827 }, 4828 "OrganizationName":{ 4829 "type":"string", 4830 "max":62, 4831 "min":1, 4832 "pattern":"^(?!d-)([\\da-zA-Z]+)([-][\\da-zA-Z]+)*" 4833 }, 4834 "OrganizationNotFoundException":{ 4835 "type":"structure", 4836 "members":{ 4837 "Message":{"shape":"String"} 4838 }, 4839 "documentation":"<p>An operation received a valid organization identifier that either doesn't belong or exist in the system.</p>", 4840 "exception":true 4841 }, 4842 "OrganizationStateException":{ 4843 "type":"structure", 4844 "members":{ 4845 "Message":{"shape":"String"} 4846 }, 4847 "documentation":"<p>The organization must have a valid state to perform certain operations on the organization or its members.</p>", 4848 "exception":true 4849 }, 4850 "OrganizationSummaries":{ 4851 "type":"list", 4852 "member":{"shape":"OrganizationSummary"} 4853 }, 4854 "OrganizationSummary":{ 4855 "type":"structure", 4856 "members":{ 4857 "OrganizationId":{ 4858 "shape":"OrganizationId", 4859 "documentation":"<p>The identifier associated with the organization.</p>" 4860 }, 4861 "Alias":{ 4862 "shape":"OrganizationName", 4863 "documentation":"<p>The alias associated with the organization.</p>" 4864 }, 4865 "DefaultMailDomain":{ 4866 "shape":"DomainName", 4867 "documentation":"<p>The default email domain associated with the organization.</p>" 4868 }, 4869 "ErrorMessage":{ 4870 "shape":"String", 4871 "documentation":"<p>The error message associated with the organization. It is only present if unexpected behavior has occurred with regards to the organization. It provides insight or solutions regarding unexpected behavior.</p>" 4872 }, 4873 "State":{ 4874 "shape":"String", 4875 "documentation":"<p>The state associated with the organization.</p>" 4876 } 4877 }, 4878 "documentation":"<p>The representation of an organization.</p>" 4879 }, 4880 "Password":{ 4881 "type":"string", 4882 "max":256, 4883 "pattern":"[\\u0020-\\u00FF]+", 4884 "sensitive":true 4885 }, 4886 "Percentage":{ 4887 "type":"integer", 4888 "max":100, 4889 "min":0 4890 }, 4891 "Permission":{ 4892 "type":"structure", 4893 "required":[ 4894 "GranteeId", 4895 "GranteeType", 4896 "PermissionValues" 4897 ], 4898 "members":{ 4899 "GranteeId":{ 4900 "shape":"WorkMailIdentifier", 4901 "documentation":"<p>The identifier of the user, group, or resource to which the permissions are granted.</p>" 4902 }, 4903 "GranteeType":{ 4904 "shape":"MemberType", 4905 "documentation":"<p>The type of user, group, or resource referred to in GranteeId.</p>" 4906 }, 4907 "PermissionValues":{ 4908 "shape":"PermissionValues", 4909 "documentation":"<p>The permissions granted to the grantee. SEND_AS allows the grantee to send email as the owner of the mailbox (the grantee is not mentioned on these emails). SEND_ON_BEHALF allows the grantee to send email on behalf of the owner of the mailbox (the grantee is not mentioned as the physical sender of these emails). FULL_ACCESS allows the grantee full access to the mailbox, irrespective of other folder-level permissions set on the mailbox.</p>" 4910 } 4911 }, 4912 "documentation":"<p>Permission granted to a user, group, or resource to access a certain aspect of another user, group, or resource mailbox.</p>" 4913 }, 4914 "PermissionType":{ 4915 "type":"string", 4916 "enum":[ 4917 "FULL_ACCESS", 4918 "SEND_AS", 4919 "SEND_ON_BEHALF" 4920 ] 4921 }, 4922 "PermissionValues":{ 4923 "type":"list", 4924 "member":{"shape":"PermissionType"} 4925 }, 4926 "Permissions":{ 4927 "type":"list", 4928 "member":{"shape":"Permission"} 4929 }, 4930 "PolicyDescription":{ 4931 "type":"string", 4932 "max":256, 4933 "pattern":"[\\w\\d\\s\\S\\-!?=,.;:'_]+", 4934 "sensitive":true 4935 }, 4936 "PutAccessControlRuleRequest":{ 4937 "type":"structure", 4938 "required":[ 4939 "Name", 4940 "Effect", 4941 "Description", 4942 "OrganizationId" 4943 ], 4944 "members":{ 4945 "Name":{ 4946 "shape":"AccessControlRuleName", 4947 "documentation":"<p>The rule name.</p>" 4948 }, 4949 "Effect":{ 4950 "shape":"AccessControlRuleEffect", 4951 "documentation":"<p>The rule effect.</p>" 4952 }, 4953 "Description":{ 4954 "shape":"AccessControlRuleDescription", 4955 "documentation":"<p>The rule description.</p>" 4956 }, 4957 "IpRanges":{ 4958 "shape":"IpRangeList", 4959 "documentation":"<p>IPv4 CIDR ranges to include in the rule.</p>" 4960 }, 4961 "NotIpRanges":{ 4962 "shape":"IpRangeList", 4963 "documentation":"<p>IPv4 CIDR ranges to exclude from the rule.</p>" 4964 }, 4965 "Actions":{ 4966 "shape":"ActionsList", 4967 "documentation":"<p>Access protocol actions to include in the rule. Valid values include <code>ActiveSync</code>, <code>AutoDiscover</code>, <code>EWS</code>, <code>IMAP</code>, <code>SMTP</code>, <code>WindowsOutlook</code>, and <code>WebMail</code>.</p>" 4968 }, 4969 "NotActions":{ 4970 "shape":"ActionsList", 4971 "documentation":"<p>Access protocol actions to exclude from the rule. Valid values include <code>ActiveSync</code>, <code>AutoDiscover</code>, <code>EWS</code>, <code>IMAP</code>, <code>SMTP</code>, <code>WindowsOutlook</code>, and <code>WebMail</code>.</p>" 4972 }, 4973 "UserIds":{ 4974 "shape":"UserIdList", 4975 "documentation":"<p>User IDs to include in the rule.</p>" 4976 }, 4977 "NotUserIds":{ 4978 "shape":"UserIdList", 4979 "documentation":"<p>User IDs to exclude from the rule.</p>" 4980 }, 4981 "OrganizationId":{ 4982 "shape":"OrganizationId", 4983 "documentation":"<p>The identifier of the organization.</p>" 4984 }, 4985 "ImpersonationRoleIds":{ 4986 "shape":"ImpersonationRoleIdList", 4987 "documentation":"<p>Impersonation role IDs to include in the rule.</p>" 4988 }, 4989 "NotImpersonationRoleIds":{ 4990 "shape":"ImpersonationRoleIdList", 4991 "documentation":"<p>Impersonation role IDs to exclude from the rule.</p>" 4992 } 4993 } 4994 }, 4995 "PutAccessControlRuleResponse":{ 4996 "type":"structure", 4997 "members":{ 4998 } 4999 }, 5000 "PutEmailMonitoringConfigurationRequest":{ 5001 "type":"structure", 5002 "required":[ 5003 "OrganizationId", 5004 "RoleArn", 5005 "LogGroupArn" 5006 ], 5007 "members":{ 5008 "OrganizationId":{ 5009 "shape":"OrganizationId", 5010 "documentation":"<p>The ID of the organization for which the email monitoring configuration is set.</p>" 5011 }, 5012 "RoleArn":{ 5013 "shape":"RoleArn", 5014 "documentation":"<p>The Amazon Resource Name (ARN) of the IAM Role associated with the email monitoring configuration.</p>" 5015 }, 5016 "LogGroupArn":{ 5017 "shape":"LogGroupArn", 5018 "documentation":"<p>The Amazon Resource Name (ARN) of the CloudWatch Log group associated with the email monitoring configuration.</p>" 5019 } 5020 } 5021 }, 5022 "PutEmailMonitoringConfigurationResponse":{ 5023 "type":"structure", 5024 "members":{ 5025 } 5026 }, 5027 "PutInboundDmarcSettingsRequest":{ 5028 "type":"structure", 5029 "required":[ 5030 "OrganizationId", 5031 "Enforced" 5032 ], 5033 "members":{ 5034 "OrganizationId":{ 5035 "shape":"OrganizationId", 5036 "documentation":"<p>The ID of the organization that you are applying the DMARC policy to.</p>" 5037 }, 5038 "Enforced":{ 5039 "shape":"BooleanObject", 5040 "documentation":"<p>Enforces or suspends a policy after it's applied.</p>" 5041 } 5042 } 5043 }, 5044 "PutInboundDmarcSettingsResponse":{ 5045 "type":"structure", 5046 "members":{ 5047 } 5048 }, 5049 "PutMailboxPermissionsRequest":{ 5050 "type":"structure", 5051 "required":[ 5052 "OrganizationId", 5053 "EntityId", 5054 "GranteeId", 5055 "PermissionValues" 5056 ], 5057 "members":{ 5058 "OrganizationId":{ 5059 "shape":"OrganizationId", 5060 "documentation":"<p>The identifier of the organization under which the user, group, or resource exists.</p>" 5061 }, 5062 "EntityId":{ 5063 "shape":"EntityIdentifier", 5064 "documentation":"<p>The identifier of the user or resource for which to update mailbox permissions.</p> <p>The identifier can be <i>UserId, ResourceID, or Group Id</i>, <i>Username, Resourcename, or Groupname</i>, or <i>email</i>.</p> <ul> <li> <p>Entity ID: 12345678-1234-1234-1234-123456789012, r-0123456789a0123456789b0123456789, or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: entity@domain.tld</p> </li> <li> <p>Entity name: entity</p> </li> </ul>" 5065 }, 5066 "GranteeId":{ 5067 "shape":"EntityIdentifier", 5068 "documentation":"<p>The identifier of the user, group, or resource to which to grant the permissions.</p> <p>The identifier can be <i>UserId, ResourceID, or Group Id</i>, <i>Username, Resourcename, or Groupname</i>, or <i>email</i>.</p> <ul> <li> <p>Grantee ID: 12345678-1234-1234-1234-123456789012, r-0123456789a0123456789b0123456789, or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: grantee@domain.tld</p> </li> <li> <p>Grantee name: grantee</p> </li> </ul>" 5069 }, 5070 "PermissionValues":{ 5071 "shape":"PermissionValues", 5072 "documentation":"<p>The permissions granted to the grantee. SEND_AS allows the grantee to send email as the owner of the mailbox (the grantee is not mentioned on these emails). SEND_ON_BEHALF allows the grantee to send email on behalf of the owner of the mailbox (the grantee is not mentioned as the physical sender of these emails). FULL_ACCESS allows the grantee full access to the mailbox, irrespective of other folder-level permissions set on the mailbox.</p>" 5073 } 5074 } 5075 }, 5076 "PutMailboxPermissionsResponse":{ 5077 "type":"structure", 5078 "members":{ 5079 } 5080 }, 5081 "PutMobileDeviceAccessOverrideRequest":{ 5082 "type":"structure", 5083 "required":[ 5084 "OrganizationId", 5085 "UserId", 5086 "DeviceId", 5087 "Effect" 5088 ], 5089 "members":{ 5090 "OrganizationId":{ 5091 "shape":"OrganizationId", 5092 "documentation":"<p>Identifies the WorkMail organization for which you create the override.</p>" 5093 }, 5094 "UserId":{ 5095 "shape":"EntityIdentifier", 5096 "documentation":"<p>The WorkMail user for which you create the override. Accepts the following types of user identities:</p> <ul> <li> <p>User ID: <code>12345678-1234-1234-1234-123456789012</code> or <code>S-1-1-12-1234567890-123456789-123456789-1234</code> </p> </li> <li> <p>Email address: <code>user@domain.tld</code> </p> </li> <li> <p>User name: <code>user</code> </p> </li> </ul>" 5097 }, 5098 "DeviceId":{ 5099 "shape":"DeviceId", 5100 "documentation":"<p>The mobile device for which you create the override. <code>DeviceId</code> is case insensitive.</p>" 5101 }, 5102 "Effect":{ 5103 "shape":"MobileDeviceAccessRuleEffect", 5104 "documentation":"<p>The effect of the override, <code>ALLOW</code> or <code>DENY</code>.</p>" 5105 }, 5106 "Description":{ 5107 "shape":"MobileDeviceAccessRuleDescription", 5108 "documentation":"<p>A description of the override.</p>" 5109 } 5110 } 5111 }, 5112 "PutMobileDeviceAccessOverrideResponse":{ 5113 "type":"structure", 5114 "members":{ 5115 } 5116 }, 5117 "PutRetentionPolicyRequest":{ 5118 "type":"structure", 5119 "required":[ 5120 "OrganizationId", 5121 "Name", 5122 "FolderConfigurations" 5123 ], 5124 "members":{ 5125 "OrganizationId":{ 5126 "shape":"OrganizationId", 5127 "documentation":"<p>The organization ID.</p>" 5128 }, 5129 "Id":{ 5130 "shape":"ShortString", 5131 "documentation":"<p>The retention policy ID.</p>" 5132 }, 5133 "Name":{ 5134 "shape":"ShortString", 5135 "documentation":"<p>The retention policy name.</p>" 5136 }, 5137 "Description":{ 5138 "shape":"PolicyDescription", 5139 "documentation":"<p>The retention policy description.</p>" 5140 }, 5141 "FolderConfigurations":{ 5142 "shape":"FolderConfigurations", 5143 "documentation":"<p>The retention policy folder configurations.</p>" 5144 } 5145 } 5146 }, 5147 "PutRetentionPolicyResponse":{ 5148 "type":"structure", 5149 "members":{ 5150 } 5151 }, 5152 "RedactedEwsAvailabilityProvider":{ 5153 "type":"structure", 5154 "members":{ 5155 "EwsEndpoint":{ 5156 "shape":"Url", 5157 "documentation":"<p>The endpoint of the remote EWS server.</p>" 5158 }, 5159 "EwsUsername":{ 5160 "shape":"ExternalUserName", 5161 "documentation":"<p>The username used to authenticate the remote EWS server.</p>" 5162 } 5163 }, 5164 "documentation":"<p>Describes an EWS based availability provider when returned from the service. It does not contain the password of the endpoint.</p>" 5165 }, 5166 "RegisterMailDomainRequest":{ 5167 "type":"structure", 5168 "required":[ 5169 "OrganizationId", 5170 "DomainName" 5171 ], 5172 "members":{ 5173 "ClientToken":{ 5174 "shape":"IdempotencyClientToken", 5175 "documentation":"<p>Idempotency token used when retrying requests.</p>", 5176 "idempotencyToken":true 5177 }, 5178 "OrganizationId":{ 5179 "shape":"OrganizationId", 5180 "documentation":"<p>The WorkMail organization under which you're creating the domain.</p>" 5181 }, 5182 "DomainName":{ 5183 "shape":"WorkMailDomainName", 5184 "documentation":"<p>The name of the mail domain to create in WorkMail and SES.</p>" 5185 } 5186 } 5187 }, 5188 "RegisterMailDomainResponse":{ 5189 "type":"structure", 5190 "members":{ 5191 } 5192 }, 5193 "RegisterToWorkMailRequest":{ 5194 "type":"structure", 5195 "required":[ 5196 "OrganizationId", 5197 "EntityId", 5198 "Email" 5199 ], 5200 "members":{ 5201 "OrganizationId":{ 5202 "shape":"OrganizationId", 5203 "documentation":"<p>The identifier for the organization under which the user, group, or resource exists.</p>" 5204 }, 5205 "EntityId":{ 5206 "shape":"EntityIdentifier", 5207 "documentation":"<p>The identifier for the user, group, or resource to be updated.</p> <p>The identifier can accept <i>UserId, ResourceId, or GroupId</i>, or <i>Username, Resourcename, or Groupname</i>. The following identity formats are available:</p> <ul> <li> <p>Entity ID: 12345678-1234-1234-1234-123456789012, r-0123456789a0123456789b0123456789, or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Entity name: entity</p> </li> </ul>" 5208 }, 5209 "Email":{ 5210 "shape":"EmailAddress", 5211 "documentation":"<p>The email for the user, group, or resource to be updated.</p>" 5212 } 5213 } 5214 }, 5215 "RegisterToWorkMailResponse":{ 5216 "type":"structure", 5217 "members":{ 5218 } 5219 }, 5220 "ReservedNameException":{ 5221 "type":"structure", 5222 "members":{ 5223 "Message":{"shape":"String"} 5224 }, 5225 "documentation":"<p>This user, group, or resource name is not allowed in WorkMail.</p>", 5226 "exception":true 5227 }, 5228 "ResetPasswordRequest":{ 5229 "type":"structure", 5230 "required":[ 5231 "OrganizationId", 5232 "UserId", 5233 "Password" 5234 ], 5235 "members":{ 5236 "OrganizationId":{ 5237 "shape":"OrganizationId", 5238 "documentation":"<p>The identifier of the organization that contains the user for which the password is reset.</p>" 5239 }, 5240 "UserId":{ 5241 "shape":"WorkMailIdentifier", 5242 "documentation":"<p>The identifier of the user for whom the password is reset.</p>" 5243 }, 5244 "Password":{ 5245 "shape":"Password", 5246 "documentation":"<p>The new password for the user.</p>" 5247 } 5248 } 5249 }, 5250 "ResetPasswordResponse":{ 5251 "type":"structure", 5252 "members":{ 5253 } 5254 }, 5255 "Resource":{ 5256 "type":"structure", 5257 "members":{ 5258 "Id":{ 5259 "shape":"WorkMailIdentifier", 5260 "documentation":"<p>The identifier of the resource.</p>" 5261 }, 5262 "Email":{ 5263 "shape":"EmailAddress", 5264 "documentation":"<p>The email of the resource.</p>" 5265 }, 5266 "Name":{ 5267 "shape":"ResourceName", 5268 "documentation":"<p>The name of the resource.</p>" 5269 }, 5270 "Type":{ 5271 "shape":"ResourceType", 5272 "documentation":"<p>The type of the resource: equipment or room.</p>" 5273 }, 5274 "State":{ 5275 "shape":"EntityState", 5276 "documentation":"<p>The state of the resource, which can be ENABLED, DISABLED, or DELETED.</p>" 5277 }, 5278 "EnabledDate":{ 5279 "shape":"Timestamp", 5280 "documentation":"<p>The date indicating when the resource was enabled for WorkMail use.</p>" 5281 }, 5282 "DisabledDate":{ 5283 "shape":"Timestamp", 5284 "documentation":"<p>The date indicating when the resource was disabled from WorkMail use.</p>" 5285 }, 5286 "Description":{ 5287 "shape":"ResourceDescription", 5288 "documentation":"<p>Resource description.</p>" 5289 } 5290 }, 5291 "documentation":"<p>The representation of a resource.</p>" 5292 }, 5293 "ResourceDelegates":{ 5294 "type":"list", 5295 "member":{"shape":"Delegate"} 5296 }, 5297 "ResourceDescription":{ 5298 "type":"string", 5299 "max":64, 5300 "min":1 5301 }, 5302 "ResourceId":{ 5303 "type":"string", 5304 "max":34, 5305 "min":34, 5306 "pattern":"^r-[0-9a-f]{32}$" 5307 }, 5308 "ResourceName":{ 5309 "type":"string", 5310 "max":20, 5311 "min":1, 5312 "pattern":"[\\w\\-.]+(@[a-zA-Z0-9.\\-]+\\.[a-zA-Z0-9-]{2,})?" 5313 }, 5314 "ResourceNotFoundException":{ 5315 "type":"structure", 5316 "members":{ 5317 "Message":{"shape":"String"} 5318 }, 5319 "documentation":"<p>The resource cannot be found.</p>", 5320 "exception":true 5321 }, 5322 "ResourceType":{ 5323 "type":"string", 5324 "enum":[ 5325 "ROOM", 5326 "EQUIPMENT" 5327 ] 5328 }, 5329 "Resources":{ 5330 "type":"list", 5331 "member":{"shape":"Resource"} 5332 }, 5333 "RetentionAction":{ 5334 "type":"string", 5335 "enum":[ 5336 "NONE", 5337 "DELETE", 5338 "PERMANENTLY_DELETE" 5339 ] 5340 }, 5341 "RetentionPeriod":{ 5342 "type":"integer", 5343 "box":true, 5344 "max":730, 5345 "min":1 5346 }, 5347 "RoleArn":{ 5348 "type":"string", 5349 "max":2048, 5350 "min":20, 5351 "pattern":"arn:aws:iam:[a-z0-9-]*:[a-z0-9-]+:[A-Za-z0-9][A-Za-z0-9:_/+=,@.-]{0,1023}" 5352 }, 5353 "S3BucketName":{ 5354 "type":"string", 5355 "max":63, 5356 "min":1, 5357 "pattern":"[A-Za-z0-9.-]+" 5358 }, 5359 "S3ObjectKey":{ 5360 "type":"string", 5361 "max":1023, 5362 "min":1, 5363 "pattern":"[A-Za-z0-9!_.*'()/-]+" 5364 }, 5365 "ShortString":{ 5366 "type":"string", 5367 "max":64, 5368 "min":1, 5369 "pattern":"[a-zA-Z0-9_-]+" 5370 }, 5371 "StartMailboxExportJobRequest":{ 5372 "type":"structure", 5373 "required":[ 5374 "ClientToken", 5375 "OrganizationId", 5376 "EntityId", 5377 "RoleArn", 5378 "KmsKeyArn", 5379 "S3BucketName", 5380 "S3Prefix" 5381 ], 5382 "members":{ 5383 "ClientToken":{ 5384 "shape":"IdempotencyClientToken", 5385 "documentation":"<p>The idempotency token for the client request.</p>", 5386 "idempotencyToken":true 5387 }, 5388 "OrganizationId":{ 5389 "shape":"OrganizationId", 5390 "documentation":"<p>The identifier associated with the organization.</p>" 5391 }, 5392 "EntityId":{ 5393 "shape":"EntityIdentifier", 5394 "documentation":"<p>The identifier of the user or resource associated with the mailbox.</p> <p>The identifier can accept <i>UserId or ResourceId</i>, <i>Username or Resourcename</i>, or <i>email</i>. The following identity formats are available:</p> <ul> <li> <p>Entity ID: 12345678-1234-1234-1234-123456789012, r-0123456789a0123456789b0123456789 , or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: entity@domain.tld</p> </li> <li> <p>Entity name: entity</p> </li> </ul>" 5395 }, 5396 "Description":{ 5397 "shape":"Description", 5398 "documentation":"<p>The mailbox export job description.</p>" 5399 }, 5400 "RoleArn":{ 5401 "shape":"RoleArn", 5402 "documentation":"<p>The ARN of the AWS Identity and Access Management (IAM) role that grants write permission to the S3 bucket.</p>" 5403 }, 5404 "KmsKeyArn":{ 5405 "shape":"KmsKeyArn", 5406 "documentation":"<p>The Amazon Resource Name (ARN) of the symmetric AWS Key Management Service (AWS KMS) key that encrypts the exported mailbox content.</p>" 5407 }, 5408 "S3BucketName":{ 5409 "shape":"S3BucketName", 5410 "documentation":"<p>The name of the S3 bucket.</p>" 5411 }, 5412 "S3Prefix":{ 5413 "shape":"S3ObjectKey", 5414 "documentation":"<p>The S3 bucket prefix.</p>" 5415 } 5416 } 5417 }, 5418 "StartMailboxExportJobResponse":{ 5419 "type":"structure", 5420 "members":{ 5421 "JobId":{ 5422 "shape":"MailboxExportJobId", 5423 "documentation":"<p>The job ID.</p>" 5424 } 5425 } 5426 }, 5427 "String":{ 5428 "type":"string", 5429 "max":256 5430 }, 5431 "Tag":{ 5432 "type":"structure", 5433 "required":[ 5434 "Key", 5435 "Value" 5436 ], 5437 "members":{ 5438 "Key":{ 5439 "shape":"TagKey", 5440 "documentation":"<p>The key of the tag.</p>" 5441 }, 5442 "Value":{ 5443 "shape":"TagValue", 5444 "documentation":"<p>The value of the tag.</p>" 5445 } 5446 }, 5447 "documentation":"<p>Describes a tag applied to a resource.</p>" 5448 }, 5449 "TagKey":{ 5450 "type":"string", 5451 "max":128, 5452 "min":1 5453 }, 5454 "TagKeyList":{ 5455 "type":"list", 5456 "member":{"shape":"TagKey"}, 5457 "max":50, 5458 "min":0 5459 }, 5460 "TagList":{ 5461 "type":"list", 5462 "member":{"shape":"Tag"}, 5463 "max":50, 5464 "min":0 5465 }, 5466 "TagResourceRequest":{ 5467 "type":"structure", 5468 "required":[ 5469 "ResourceARN", 5470 "Tags" 5471 ], 5472 "members":{ 5473 "ResourceARN":{ 5474 "shape":"AmazonResourceName", 5475 "documentation":"<p>The resource ARN.</p>" 5476 }, 5477 "Tags":{ 5478 "shape":"TagList", 5479 "documentation":"<p>The tag key-value pairs.</p>" 5480 } 5481 } 5482 }, 5483 "TagResourceResponse":{ 5484 "type":"structure", 5485 "members":{ 5486 } 5487 }, 5488 "TagValue":{ 5489 "type":"string", 5490 "max":256, 5491 "min":0 5492 }, 5493 "TargetUsers":{ 5494 "type":"list", 5495 "member":{"shape":"EntityIdentifier"}, 5496 "max":10, 5497 "min":1 5498 }, 5499 "TestAvailabilityConfigurationRequest":{ 5500 "type":"structure", 5501 "required":["OrganizationId"], 5502 "members":{ 5503 "OrganizationId":{ 5504 "shape":"OrganizationId", 5505 "documentation":"<p>The WorkMail organization where the availability provider will be tested.</p>" 5506 }, 5507 "DomainName":{ 5508 "shape":"DomainName", 5509 "documentation":"<p>The domain to which the provider applies. If this field is provided, a stored availability provider associated to this domain name will be tested.</p>" 5510 }, 5511 "EwsProvider":{"shape":"EwsAvailabilityProvider"}, 5512 "LambdaProvider":{"shape":"LambdaAvailabilityProvider"} 5513 } 5514 }, 5515 "TestAvailabilityConfigurationResponse":{ 5516 "type":"structure", 5517 "members":{ 5518 "TestPassed":{ 5519 "shape":"Boolean", 5520 "documentation":"<p>Boolean indicating whether the test passed or failed.</p>" 5521 }, 5522 "FailureReason":{ 5523 "shape":"String", 5524 "documentation":"<p>String containing the reason for a failed test if <code>TestPassed</code> is false.</p>" 5525 } 5526 } 5527 }, 5528 "Timestamp":{"type":"timestamp"}, 5529 "TooManyTagsException":{ 5530 "type":"structure", 5531 "members":{ 5532 "Message":{"shape":"String"} 5533 }, 5534 "documentation":"<p>The resource can have up to 50 user-applied tags.</p>", 5535 "exception":true 5536 }, 5537 "UnsupportedOperationException":{ 5538 "type":"structure", 5539 "members":{ 5540 "Message":{"shape":"String"} 5541 }, 5542 "documentation":"<p>You can't perform a write operation against a read-only directory.</p>", 5543 "exception":true 5544 }, 5545 "UntagResourceRequest":{ 5546 "type":"structure", 5547 "required":[ 5548 "ResourceARN", 5549 "TagKeys" 5550 ], 5551 "members":{ 5552 "ResourceARN":{ 5553 "shape":"AmazonResourceName", 5554 "documentation":"<p>The resource ARN.</p>" 5555 }, 5556 "TagKeys":{ 5557 "shape":"TagKeyList", 5558 "documentation":"<p>The tag keys.</p>" 5559 } 5560 } 5561 }, 5562 "UntagResourceResponse":{ 5563 "type":"structure", 5564 "members":{ 5565 } 5566 }, 5567 "UpdateAvailabilityConfigurationRequest":{ 5568 "type":"structure", 5569 "required":[ 5570 "OrganizationId", 5571 "DomainName" 5572 ], 5573 "members":{ 5574 "OrganizationId":{ 5575 "shape":"OrganizationId", 5576 "documentation":"<p>The WorkMail organization for which the <code>AvailabilityConfiguration</code> will be updated.</p>" 5577 }, 5578 "DomainName":{ 5579 "shape":"DomainName", 5580 "documentation":"<p>The domain to which the provider applies the availability configuration.</p>" 5581 }, 5582 "EwsProvider":{ 5583 "shape":"EwsAvailabilityProvider", 5584 "documentation":"<p>The EWS availability provider definition. The request must contain exactly one provider definition, either <code>EwsProvider</code> or <code>LambdaProvider</code>. The previously stored provider will be overridden by the one provided.</p>" 5585 }, 5586 "LambdaProvider":{ 5587 "shape":"LambdaAvailabilityProvider", 5588 "documentation":"<p>The Lambda availability provider definition. The request must contain exactly one provider definition, either <code>EwsProvider</code> or <code>LambdaProvider</code>. The previously stored provider will be overridden by the one provided.</p>" 5589 } 5590 } 5591 }, 5592 "UpdateAvailabilityConfigurationResponse":{ 5593 "type":"structure", 5594 "members":{ 5595 } 5596 }, 5597 "UpdateDefaultMailDomainRequest":{ 5598 "type":"structure", 5599 "required":[ 5600 "OrganizationId", 5601 "DomainName" 5602 ], 5603 "members":{ 5604 "OrganizationId":{ 5605 "shape":"OrganizationId", 5606 "documentation":"<p>The WorkMail organization for which to list domains.</p>" 5607 }, 5608 "DomainName":{ 5609 "shape":"WorkMailDomainName", 5610 "documentation":"<p>The domain name that will become the default domain.</p>" 5611 } 5612 } 5613 }, 5614 "UpdateDefaultMailDomainResponse":{ 5615 "type":"structure", 5616 "members":{ 5617 } 5618 }, 5619 "UpdateGroupRequest":{ 5620 "type":"structure", 5621 "required":[ 5622 "OrganizationId", 5623 "GroupId" 5624 ], 5625 "members":{ 5626 "OrganizationId":{ 5627 "shape":"OrganizationId", 5628 "documentation":"<p>The identifier for the organization under which the group exists.</p>" 5629 }, 5630 "GroupId":{ 5631 "shape":"EntityIdentifier", 5632 "documentation":"<p>The identifier for the group to be updated.</p> <p>The identifier can accept <i>GroupId</i>, <i>Groupname</i>, or <i>email</i>. The following identity formats are available:</p> <ul> <li> <p>Group ID: 12345678-1234-1234-1234-123456789012 or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: group@domain.tld</p> </li> <li> <p>Group name: group</p> </li> </ul>" 5633 }, 5634 "HiddenFromGlobalAddressList":{ 5635 "shape":"BooleanObject", 5636 "documentation":"<p>If enabled, the group is hidden from the global address list.</p>" 5637 } 5638 } 5639 }, 5640 "UpdateGroupResponse":{ 5641 "type":"structure", 5642 "members":{ 5643 } 5644 }, 5645 "UpdateImpersonationRoleRequest":{ 5646 "type":"structure", 5647 "required":[ 5648 "OrganizationId", 5649 "ImpersonationRoleId", 5650 "Name", 5651 "Type", 5652 "Rules" 5653 ], 5654 "members":{ 5655 "OrganizationId":{ 5656 "shape":"OrganizationId", 5657 "documentation":"<p>The WorkMail organization that contains the impersonation role to update.</p>" 5658 }, 5659 "ImpersonationRoleId":{ 5660 "shape":"ImpersonationRoleId", 5661 "documentation":"<p>The ID of the impersonation role to update.</p>" 5662 }, 5663 "Name":{ 5664 "shape":"ImpersonationRoleName", 5665 "documentation":"<p>The updated impersonation role name.</p>" 5666 }, 5667 "Type":{ 5668 "shape":"ImpersonationRoleType", 5669 "documentation":"<p>The updated impersonation role type.</p>" 5670 }, 5671 "Description":{ 5672 "shape":"ImpersonationRoleDescription", 5673 "documentation":"<p>The updated impersonation role description.</p>" 5674 }, 5675 "Rules":{ 5676 "shape":"ImpersonationRuleList", 5677 "documentation":"<p>The updated list of rules.</p>" 5678 } 5679 } 5680 }, 5681 "UpdateImpersonationRoleResponse":{ 5682 "type":"structure", 5683 "members":{ 5684 } 5685 }, 5686 "UpdateMailboxQuotaRequest":{ 5687 "type":"structure", 5688 "required":[ 5689 "OrganizationId", 5690 "UserId", 5691 "MailboxQuota" 5692 ], 5693 "members":{ 5694 "OrganizationId":{ 5695 "shape":"OrganizationId", 5696 "documentation":"<p>The identifier for the organization that contains the user for whom to update the mailbox quota.</p>" 5697 }, 5698 "UserId":{ 5699 "shape":"EntityIdentifier", 5700 "documentation":"<p>The identifer for the user for whom to update the mailbox quota.</p> <p>The identifier can be the <i>UserId</i>, <i>Username</i>, or <i>email</i>. The following identity formats are available:</p> <ul> <li> <p>User ID: 12345678-1234-1234-1234-123456789012 or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: user@domain.tld</p> </li> <li> <p>User name: user</p> </li> </ul>" 5701 }, 5702 "MailboxQuota":{ 5703 "shape":"MailboxQuota", 5704 "documentation":"<p>The updated mailbox quota, in MB, for the specified user.</p>" 5705 } 5706 } 5707 }, 5708 "UpdateMailboxQuotaResponse":{ 5709 "type":"structure", 5710 "members":{ 5711 } 5712 }, 5713 "UpdateMobileDeviceAccessRuleRequest":{ 5714 "type":"structure", 5715 "required":[ 5716 "OrganizationId", 5717 "MobileDeviceAccessRuleId", 5718 "Name", 5719 "Effect" 5720 ], 5721 "members":{ 5722 "OrganizationId":{ 5723 "shape":"OrganizationId", 5724 "documentation":"<p>The WorkMail organization under which the rule will be updated.</p>" 5725 }, 5726 "MobileDeviceAccessRuleId":{ 5727 "shape":"MobileDeviceAccessRuleId", 5728 "documentation":"<p>The identifier of the rule to be updated.</p>" 5729 }, 5730 "Name":{ 5731 "shape":"MobileDeviceAccessRuleName", 5732 "documentation":"<p>The updated rule name.</p>" 5733 }, 5734 "Description":{ 5735 "shape":"MobileDeviceAccessRuleDescription", 5736 "documentation":"<p>The updated rule description.</p>" 5737 }, 5738 "Effect":{ 5739 "shape":"MobileDeviceAccessRuleEffect", 5740 "documentation":"<p>The effect of the rule when it matches. Allowed values are <code>ALLOW</code> or <code>DENY</code>.</p>" 5741 }, 5742 "DeviceTypes":{ 5743 "shape":"DeviceTypeList", 5744 "documentation":"<p>Device types that the updated rule will match.</p>" 5745 }, 5746 "NotDeviceTypes":{ 5747 "shape":"DeviceTypeList", 5748 "documentation":"<p>Device types that the updated rule <b>will not</b> match. All other device types will match.</p>" 5749 }, 5750 "DeviceModels":{ 5751 "shape":"DeviceModelList", 5752 "documentation":"<p>Device models that the updated rule will match.</p>" 5753 }, 5754 "NotDeviceModels":{ 5755 "shape":"DeviceModelList", 5756 "documentation":"<p>Device models that the updated rule <b>will not</b> match. All other device models will match.</p>" 5757 }, 5758 "DeviceOperatingSystems":{ 5759 "shape":"DeviceOperatingSystemList", 5760 "documentation":"<p>Device operating systems that the updated rule will match.</p>" 5761 }, 5762 "NotDeviceOperatingSystems":{ 5763 "shape":"DeviceOperatingSystemList", 5764 "documentation":"<p>Device operating systems that the updated rule <b>will not</b> match. All other device operating systems will match.</p>" 5765 }, 5766 "DeviceUserAgents":{ 5767 "shape":"DeviceUserAgentList", 5768 "documentation":"<p>User agents that the updated rule will match.</p>" 5769 }, 5770 "NotDeviceUserAgents":{ 5771 "shape":"DeviceUserAgentList", 5772 "documentation":"<p>User agents that the updated rule <b>will not</b> match. All other user agents will match.</p>" 5773 } 5774 } 5775 }, 5776 "UpdateMobileDeviceAccessRuleResponse":{ 5777 "type":"structure", 5778 "members":{ 5779 } 5780 }, 5781 "UpdatePrimaryEmailAddressRequest":{ 5782 "type":"structure", 5783 "required":[ 5784 "OrganizationId", 5785 "EntityId", 5786 "Email" 5787 ], 5788 "members":{ 5789 "OrganizationId":{ 5790 "shape":"OrganizationId", 5791 "documentation":"<p>The organization that contains the user, group, or resource to update.</p>" 5792 }, 5793 "EntityId":{ 5794 "shape":"EntityIdentifier", 5795 "documentation":"<p>The user, group, or resource to update.</p> <p>The identifier can accept <i>UseriD, ResourceId, or GroupId</i>, <i>Username, Resourcename, or Groupname</i>, or <i>email</i>. The following identity formats are available:</p> <ul> <li> <p>Entity ID: 12345678-1234-1234-1234-123456789012, r-0123456789a0123456789b0123456789, or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: entity@domain.tld</p> </li> <li> <p>Entity name: entity</p> </li> </ul>" 5796 }, 5797 "Email":{ 5798 "shape":"EmailAddress", 5799 "documentation":"<p>The value of the email to be updated as primary.</p>" 5800 } 5801 } 5802 }, 5803 "UpdatePrimaryEmailAddressResponse":{ 5804 "type":"structure", 5805 "members":{ 5806 } 5807 }, 5808 "UpdateResourceRequest":{ 5809 "type":"structure", 5810 "required":[ 5811 "OrganizationId", 5812 "ResourceId" 5813 ], 5814 "members":{ 5815 "OrganizationId":{ 5816 "shape":"OrganizationId", 5817 "documentation":"<p>The identifier associated with the organization for which the resource is updated.</p>" 5818 }, 5819 "ResourceId":{ 5820 "shape":"EntityIdentifier", 5821 "documentation":"<p>The identifier of the resource to be updated.</p> <p>The identifier can accept <i>ResourceId</i>, <i>Resourcename</i>, or <i>email</i>. The following identity formats are available:</p> <ul> <li> <p>Resource ID: r-0123456789a0123456789b0123456789</p> </li> <li> <p>Email address: resource@domain.tld</p> </li> <li> <p>Resource name: resource</p> </li> </ul>" 5822 }, 5823 "Name":{ 5824 "shape":"ResourceName", 5825 "documentation":"<p>The name of the resource to be updated.</p>" 5826 }, 5827 "BookingOptions":{ 5828 "shape":"BookingOptions", 5829 "documentation":"<p>The resource's booking options to be updated.</p>" 5830 }, 5831 "Description":{ 5832 "shape":"NewResourceDescription", 5833 "documentation":"<p>Updates the resource description.</p>" 5834 }, 5835 "Type":{ 5836 "shape":"ResourceType", 5837 "documentation":"<p>Updates the resource type.</p>" 5838 }, 5839 "HiddenFromGlobalAddressList":{ 5840 "shape":"BooleanObject", 5841 "documentation":"<p>If enabled, the resource is hidden from the global address list.</p>" 5842 } 5843 } 5844 }, 5845 "UpdateResourceResponse":{ 5846 "type":"structure", 5847 "members":{ 5848 } 5849 }, 5850 "UpdateUserRequest":{ 5851 "type":"structure", 5852 "required":[ 5853 "OrganizationId", 5854 "UserId" 5855 ], 5856 "members":{ 5857 "OrganizationId":{ 5858 "shape":"OrganizationId", 5859 "documentation":"<p>The identifier for the organization under which the user exists.</p>" 5860 }, 5861 "UserId":{ 5862 "shape":"EntityIdentifier", 5863 "documentation":"<p>The identifier for the user to be updated.</p> <p>The identifier can be the <i>UserId</i>, <i>Username</i>, or <i>email</i>. The following identity formats are available:</p> <ul> <li> <p>User ID: 12345678-1234-1234-1234-123456789012 or S-1-1-12-1234567890-123456789-123456789-1234</p> </li> <li> <p>Email address: user@domain.tld</p> </li> <li> <p>User name: user</p> </li> </ul>" 5864 }, 5865 "Role":{ 5866 "shape":"UserRole", 5867 "documentation":"<p>Updates the user role.</p> <p>You cannot pass <i>SYSTEM_USER</i> or <i>RESOURCE</i>.</p>" 5868 }, 5869 "DisplayName":{ 5870 "shape":"UserAttribute", 5871 "documentation":"<p>Updates the display name of the user.</p>" 5872 }, 5873 "FirstName":{ 5874 "shape":"UserAttribute", 5875 "documentation":"<p>Updates the user's first name.</p>" 5876 }, 5877 "LastName":{ 5878 "shape":"UserAttribute", 5879 "documentation":"<p>Updates the user's last name.</p>" 5880 }, 5881 "HiddenFromGlobalAddressList":{ 5882 "shape":"BooleanObject", 5883 "documentation":"<p>If enabled, the user is hidden from the global address list.</p>" 5884 }, 5885 "Initials":{ 5886 "shape":"UserAttribute", 5887 "documentation":"<p>Updates the user's initials.</p>" 5888 }, 5889 "Telephone":{ 5890 "shape":"UserAttribute", 5891 "documentation":"<p>Updates the user's contact details.</p>" 5892 }, 5893 "Street":{ 5894 "shape":"UserAttribute", 5895 "documentation":"<p>Updates the user's street address.</p>" 5896 }, 5897 "JobTitle":{ 5898 "shape":"UserAttribute", 5899 "documentation":"<p>Updates the user's job title.</p>" 5900 }, 5901 "City":{ 5902 "shape":"UserAttribute", 5903 "documentation":"<p>Updates the user's city.</p>" 5904 }, 5905 "Company":{ 5906 "shape":"UserAttribute", 5907 "documentation":"<p>Updates the user's company.</p>" 5908 }, 5909 "ZipCode":{ 5910 "shape":"UserAttribute", 5911 "documentation":"<p>Updates the user's zipcode.</p>" 5912 }, 5913 "Department":{ 5914 "shape":"UserAttribute", 5915 "documentation":"<p>Updates the user's department.</p>" 5916 }, 5917 "Country":{ 5918 "shape":"UserAttribute", 5919 "documentation":"<p>Updates the user's country.</p>" 5920 }, 5921 "Office":{ 5922 "shape":"UserAttribute", 5923 "documentation":"<p>Updates the user's office.</p>" 5924 } 5925 } 5926 }, 5927 "UpdateUserResponse":{ 5928 "type":"structure", 5929 "members":{ 5930 } 5931 }, 5932 "Url":{ 5933 "type":"string", 5934 "max":256, 5935 "pattern":"https?://[A-Za-z0-9.-]+(:[0-9]+)?/.*" 5936 }, 5937 "User":{ 5938 "type":"structure", 5939 "members":{ 5940 "Id":{ 5941 "shape":"WorkMailIdentifier", 5942 "documentation":"<p>The identifier of the user.</p>" 5943 }, 5944 "Email":{ 5945 "shape":"EmailAddress", 5946 "documentation":"<p>The email of the user.</p>" 5947 }, 5948 "Name":{ 5949 "shape":"UserName", 5950 "documentation":"<p>The name of the user.</p>" 5951 }, 5952 "DisplayName":{ 5953 "shape":"String", 5954 "documentation":"<p>The display name of the user.</p>" 5955 }, 5956 "State":{ 5957 "shape":"EntityState", 5958 "documentation":"<p>The state of the user, which can be ENABLED, DISABLED, or DELETED.</p>" 5959 }, 5960 "UserRole":{ 5961 "shape":"UserRole", 5962 "documentation":"<p>The role of the user.</p>" 5963 }, 5964 "EnabledDate":{ 5965 "shape":"Timestamp", 5966 "documentation":"<p>The date indicating when the user was enabled for WorkMail use.</p>" 5967 }, 5968 "DisabledDate":{ 5969 "shape":"Timestamp", 5970 "documentation":"<p>The date indicating when the user was disabled from WorkMail use.</p>" 5971 } 5972 }, 5973 "documentation":"<p>The representation of an WorkMail user.</p>" 5974 }, 5975 "UserAttribute":{ 5976 "type":"string", 5977 "max":256, 5978 "sensitive":true 5979 }, 5980 "UserIdList":{ 5981 "type":"list", 5982 "member":{"shape":"WorkMailIdentifier"}, 5983 "max":10, 5984 "min":0 5985 }, 5986 "UserName":{ 5987 "type":"string", 5988 "max":64, 5989 "min":1, 5990 "pattern":"[\\w\\-.]+(@[a-zA-Z0-9.\\-]+\\.[a-zA-Z0-9-]{2,})?" 5991 }, 5992 "UserRole":{ 5993 "type":"string", 5994 "enum":[ 5995 "USER", 5996 "RESOURCE", 5997 "SYSTEM_USER", 5998 "REMOTE_USER" 5999 ] 6000 }, 6001 "Users":{ 6002 "type":"list", 6003 "member":{"shape":"User"} 6004 }, 6005 "WorkMailDomainName":{ 6006 "type":"string", 6007 "max":209, 6008 "min":3, 6009 "pattern":"[a-zA-Z0-9.-]+" 6010 }, 6011 "WorkMailIdentifier":{ 6012 "type":"string", 6013 "max":256, 6014 "min":12 6015 } 6016 }, 6017 "documentation":"<p>WorkMail is a secure, managed business email and calendaring service with support for existing desktop and mobile email clients. You can access your email, contacts, and calendars using Microsoft Outlook, your browser, or other native iOS and Android email applications. You can integrate WorkMail with your existing corporate directory and control both the keys that encrypt your data and the location in which your data is stored.</p> <p>The WorkMail API is designed for the following scenarios:</p> <ul> <li> <p>Listing and describing organizations</p> </li> </ul> <ul> <li> <p>Managing users</p> </li> </ul> <ul> <li> <p>Managing groups</p> </li> </ul> <ul> <li> <p>Managing resources</p> </li> </ul> <p>All WorkMail API operations are Amazon-authenticated and certificate-signed. They not only require the use of the AWS SDK, but also allow for the exclusive use of AWS Identity and Access Management users and roles to help facilitate access, trust, and permission policies. By creating a role and allowing an IAM user to access the WorkMail site, the IAM user gains full administrative visibility into the entire WorkMail organization (or as set in the IAM policy). This includes, but is not limited to, the ability to create, update, and delete users, groups, and resources. This allows developers to perform the scenarios listed above, as well as give users the ability to grant access on a selective basis using the IAM model.</p>" 6018} 6019