
                           S r SSKJr  SSKJr  SSKJr  SSKJr  Sr	 " S S\R                  5      r " S	 S
\R                  5      r " S S\R                  5      r " S S\R                  5      r " S S\R                  5      r " S S\R                  5      r " S S\R                  5      r " S S\R                  5      r " S S\R                  5      r " S S\R                  5      r " S S\R                  5      r " S S\R                  5      r " S S \R                  5      r " S! S"\R                  5      r " S# S$\R                  5      r " S% S&\R                  5      r " S' S(\R                  5      r " S) S*\R                  5      r " S+ S,\R                  5      r " S- S.\R                  5      r " S/ S0\R                  5      r " S1 S2\R                  5      r  " S3 S4\R                  5      r! " S5 S6\R                  5      r" " S7 S8\R                  5      r# " S9 S:\R                  5      r$ " S; S<\R                  5      r% " S= S>\R                  5      r& " S? S@\R                  5      r' " SA SB\R                  5      r( " SC SD\R                  5      r) " SE SF\R                  5      r* " SG SH\R                  5      r+ " SI SJ\R                  5      r, " SK SL\R                  5      r- " SM SN\R                  5      r. " SO SP\R                  5      r/ " SQ SR\R                  5      r0 " SS ST\R                  5      r1 " SU SV\R                  5      r2 " SW SX\R                  5      r3 " SY SZ\R                  5      r4 " S[ S\\R                  5      r5 " S] S^\R                  5      r6 " S_ S`\R                  5      r7 " Sa Sb\R                  5      r8 " Sc Sd\R                  5      r9 " Se Sf\R                  5      r: " Sg Sh\R                  5      r; " Si Sj\R                  5      r< " Sk Sl\R                  5      r= " Sm Sn\R                  5      r> " So Sp\R                  5      r? " Sq Sr\R                  5      r@ " Ss St\R                  5      rA " Su Sv\R                  5      rB " Sw Sx\R                  5      rC " Sy Sz\R                  5      rD " S{ S|\R                  5      rE " S} S~\R                  5      rF " S S\R                  5      rG " S S\R                  5      rH " S S\R                  5      rI " S S\R                  5      rJ " S S\R                  5      rK " S S\R                  5      rL " S S\R                  5      rM " S S\R                  5      rN " S S\R                  5      rO " S S\R                  5      rP " S S\R                  5      rQ " S S\R                  5      rR " S S\R                  5      rS " S S\R                  5      rT " S S\R                  5      rU " S S\R                  5      rV " S S\R                  5      rW " S S\R                  5      rX " S S\R                  5      rY " S S\R                  5      rZ " S S\R                  5      r[ " S S\R                  5      r\ " S S\R                  5      r] " S S\R                  5      r^ " S S\R                  5      r_ " S S\R                  5      r` " S S\R                  5      ra " S S\R                  5      rb " S S\R                  5      rc " S S\R                  5      rd\R                  " \4SS5        \R                  " \]SS5        \R                  " \]R                  SS5        \R                  " \]R                  SS5        g)zGenerated message classes for osconfig version v1alpha.

OS management tools that can be used for patch management, patch compliance,
and configuration management on VM instances.
    )absolute_import)messages)encoding)extra_typesosconfigc                   v   \ rS rSrSr " S S\R                  5      r " S S\R                  5      r " S S\R                  5      r	 " S	 S
\R                  5      r
 " S S\R                  5      r " S S\R                  5      r " S S\R                  5      r " S S\R                  5      r\R                  " SS5      r\R                  " SS5      r\R                  " SS5      r\R&                  " S\R(                  R*                  S9r\R                  " S
S5      r\R&                  " S\R(                  R*                  S9r\R&                  " S\R(                  R*                  S9r\R                  " SS5      r\R                  " SS5      r\R                  " SS5      r\R                  " SS5      rSrg )!CVSSv3   a  Common Vulnerability Scoring System version 3. For details, see
https://www.first.org/cvss/specification-document

Enums:
  AttackComplexityValueValuesEnum: This metric describes the conditions
    beyond the attacker's control that must exist in order to exploit the
    vulnerability.
  AttackVectorValueValuesEnum: This metric reflects the context by which
    vulnerability exploitation is possible.
  AvailabilityImpactValueValuesEnum: This metric measures the impact to the
    availability of the impacted component resulting from a successfully
    exploited vulnerability.
  ConfidentialityImpactValueValuesEnum: This metric measures the impact to
    the confidentiality of the information resources managed by a software
    component due to a successfully exploited vulnerability.
  IntegrityImpactValueValuesEnum: This metric measures the impact to
    integrity of a successfully exploited vulnerability.
  PrivilegesRequiredValueValuesEnum: This metric describes the level of
    privileges an attacker must possess before successfully exploiting the
    vulnerability.
  ScopeValueValuesEnum: The Scope metric captures whether a vulnerability in
    one vulnerable component impacts resources in components beyond its
    security scope.
  UserInteractionValueValuesEnum: This metric captures the requirement for a
    human user, other than the attacker, to participate in the successful
    compromise of the vulnerable component.

Fields:
  attackComplexity: This metric describes the conditions beyond the
    attacker's control that must exist in order to exploit the
    vulnerability.
  attackVector: This metric reflects the context by which vulnerability
    exploitation is possible.
  availabilityImpact: This metric measures the impact to the availability of
    the impacted component resulting from a successfully exploited
    vulnerability.
  baseScore: The base score is a function of the base metric scores.
    https://www.first.org/cvss/specification-document#Base-Metrics
  confidentialityImpact: This metric measures the impact to the
    confidentiality of the information resources managed by a software
    component due to a successfully exploited vulnerability.
  exploitabilityScore: The Exploitability sub-score equation is derived from
    the Base Exploitability metrics.
    https://www.first.org/cvss/specification-document#2-1-Exploitability-
    Metrics
  impactScore: The Impact sub-score equation is derived from the Base Impact
    metrics.
  integrityImpact: This metric measures the impact to integrity of a
    successfully exploited vulnerability.
  privilegesRequired: This metric describes the level of privileges an
    attacker must possess before successfully exploiting the vulnerability.
  scope: The Scope metric captures whether a vulnerability in one vulnerable
    component impacts resources in components beyond its security scope.
  userInteraction: This metric captures the requirement for a human user,
    other than the attacker, to participate in the successful compromise of
    the vulnerable component.
c                   $    \ rS rSrSrSrSrSrSrg)&CVSSv3.AttackComplexityValueValuesEnumM   a  This metric describes the conditions beyond the attacker's control
that must exist in order to exploit the vulnerability.

Values:
  ATTACK_COMPLEXITY_UNSPECIFIED: Invalid value.
  ATTACK_COMPLEXITY_LOW: Specialized access conditions or extenuating
    circumstances do not exist. An attacker can expect repeatable success
    when attacking the vulnerable component.
  ATTACK_COMPLEXITY_HIGH: A successful attack depends on conditions beyond
    the attacker's control. That is, a successful attack cannot be
    accomplished at will, but requires the attacker to invest in some
    measurable amount of effort in preparation or execution against the
    vulnerable component before a successful attack can be expected.
r          N)	__name__
__module____qualname____firstlineno____doc__ATTACK_COMPLEXITY_UNSPECIFIEDATTACK_COMPLEXITY_LOWATTACK_COMPLEXITY_HIGH__static_attributes__r       Wlib/googlecloudsdk/generated_clients/apis/osconfig/v1alpha/osconfig_v1alpha_messages.pyAttackComplexityValueValuesEnumr   M   s     %&!r   r   c                   ,    \ rS rSrSrSrSrSrSrSr	Sr
g	)
"CVSSv3.AttackVectorValueValuesEnum`   a  This metric reflects the context by which vulnerability exploitation
is possible.

Values:
  ATTACK_VECTOR_UNSPECIFIED: Invalid value.
  ATTACK_VECTOR_NETWORK: The vulnerable component is bound to the network
    stack and the set of possible attackers extends beyond the other
    options listed below, up to and including the entire Internet.
  ATTACK_VECTOR_ADJACENT: The vulnerable component is bound to the network
    stack, but the attack is limited at the protocol level to a logically
    adjacent topology.
  ATTACK_VECTOR_LOCAL: The vulnerable component is not bound to the
    network stack and the attacker's path is via read/write/execute
    capabilities.
  ATTACK_VECTOR_PHYSICAL: The attack requires the attacker to physically
    touch or manipulate the vulnerable component.
r   r   r         r   N)r   r   r   r   r   ATTACK_VECTOR_UNSPECIFIEDATTACK_VECTOR_NETWORKATTACK_VECTOR_ADJACENTATTACK_VECTOR_LOCALATTACK_VECTOR_PHYSICALr   r   r   r   AttackVectorValueValuesEnumr   `   s'    " !"r   r'   c                   (    \ rS rSrSrSrSrSrSrSr	g)	(CVSSv3.AvailabilityImpactValueValuesEnumx   a  This metric measures the impact to the availability of the impacted
component resulting from a successfully exploited vulnerability.

Values:
  IMPACT_UNSPECIFIED: Invalid value.
  IMPACT_HIGH: High impact.
  IMPACT_LOW: Low impact.
  IMPACT_NONE: No impact.
r   r   r   r    r   N
r   r   r   r   r   IMPACT_UNSPECIFIEDIMPACT_HIGH
IMPACT_LOWIMPACT_NONEr   r   r   r   !AvailabilityImpactValueValuesEnumr)   x        KJKr   r0   c                   (    \ rS rSrSrSrSrSrSrSr	g)	+CVSSv3.ConfidentialityImpactValueValuesEnum   a!  This metric measures the impact to the confidentiality of the
information resources managed by a software component due to a
successfully exploited vulnerability.

Values:
  IMPACT_UNSPECIFIED: Invalid value.
  IMPACT_HIGH: High impact.
  IMPACT_LOW: Low impact.
  IMPACT_NONE: No impact.
r   r   r   r    r   Nr+   r   r   r   $ConfidentialityImpactValueValuesEnumr3      s    	 KJKr   r5   c                   (    \ rS rSrSrSrSrSrSrSr	g)	%CVSSv3.IntegrityImpactValueValuesEnum   zThis metric measures the impact to integrity of a successfully
exploited vulnerability.

Values:
  IMPACT_UNSPECIFIED: Invalid value.
  IMPACT_HIGH: High impact.
  IMPACT_LOW: Low impact.
  IMPACT_NONE: No impact.
r   r   r   r    r   Nr+   r   r   r   IntegrityImpactValueValuesEnumr7      r1   r   r9   c                   (    \ rS rSrSrSrSrSrSrSr	g)	(CVSSv3.PrivilegesRequiredValueValuesEnum   a_  This metric describes the level of privileges an attacker must possess
before successfully exploiting the vulnerability.

Values:
  PRIVILEGES_REQUIRED_UNSPECIFIED: Invalid value.
  PRIVILEGES_REQUIRED_NONE: The attacker is unauthorized prior to attack,
    and therefore does not require any access to settings or files of the
    vulnerable system to carry out an attack.
  PRIVILEGES_REQUIRED_LOW: The attacker requires privileges that provide
    basic user capabilities that could normally affect only settings and
    files owned by a user. Alternatively, an attacker with Low privileges
    has the ability to access only non-sensitive resources.
  PRIVILEGES_REQUIRED_HIGH: The attacker requires privileges that provide
    significant (e.g., administrative) control over the vulnerable
    component allowing access to component-wide settings and files.
r   r   r   r    r   N)
r   r   r   r   r   PRIVILEGES_REQUIRED_UNSPECIFIEDPRIVILEGES_REQUIRED_NONEPRIVILEGES_REQUIRED_LOWPRIVILEGES_REQUIRED_HIGHr   r   r   r   !PrivilegesRequiredValueValuesEnumr;      s!      '(#  r   rA   c                   $    \ rS rSrSrSrSrSrSrg)CVSSv3.ScopeValueValuesEnum   a  The Scope metric captures whether a vulnerability in one vulnerable
component impacts resources in components beyond its security scope.

Values:
  SCOPE_UNSPECIFIED: Invalid value.
  SCOPE_UNCHANGED: An exploited vulnerability can only affect resources
    managed by the same security authority.
  SCOPE_CHANGED: An exploited vulnerability can affect resources beyond
    the security scope managed by the security authority of the vulnerable
    component.
r   r   r   r   N)	r   r   r   r   r   SCOPE_UNSPECIFIEDSCOPE_UNCHANGEDSCOPE_CHANGEDr   r   r   r   ScopeValueValuesEnumrC      s    
 OMr   rH   c                   $    \ rS rSrSrSrSrSrSrg)%CVSSv3.UserInteractionValueValuesEnum   a  This metric captures the requirement for a human user, other than the
attacker, to participate in the successful compromise of the vulnerable
component.

Values:
  USER_INTERACTION_UNSPECIFIED: Invalid value.
  USER_INTERACTION_NONE: The vulnerable system can be exploited without
    interaction from any user.
  USER_INTERACTION_REQUIRED: Successful exploitation of this vulnerability
    requires a user to take some action before the vulnerability can be
    exploited.
r   r   r   r   N)	r   r   r   r   r   USER_INTERACTION_UNSPECIFIEDUSER_INTERACTION_NONEUSER_INTERACTION_REQUIREDr   r   r   r   UserInteractionValueValuesEnumrJ      s     $%  !r   rO   r   r   r    r!   variant            	   
      r   N)r   r   r   r   r   	_messagesEnumr   r'   r0   r5   r9   rA   rH   rO   	EnumFieldattackComplexityattackVectoravailabilityImpact
FloatFieldVariantFLOAT	baseScoreconfidentialityImpactexploitabilityScoreimpactScoreintegrityImpactprivilegesRequiredscopeuserInteractionr   r   r   r   r	   r	      s   8t	 &INN 0).. Y^^  y~~ !).. !,Y^^  "y~~ "" (()JAN$$%BAF, **+NPQR""1i.?.?.E.EF)#--.TVWX!,,Q	8I8I8O8OP$$Q	0A0A0G0GH+''(H!L/ **+NPQR


4b
9%''(H"M/r   r	   c                       \ rS rSrSrSrg)CancelOperationRequest   z3The request message for Operations.CancelOperation.r   Nr   r   r   r   r   r   r   r   r   rk   rk      s    <r   rk   c                       \ rS rSrSr\R                  " S\R                  R                  S9r	\R                  " S\R                  R                  S9r
\R                  " S\R                  R                  S9rSrg)	Date   a  Represents a whole or partial calendar date, such as a birthday. The
time of day and time zone are either specified elsewhere or are
insignificant. The date is relative to the Gregorian Calendar. This can
represent one of the following: * A full date, with non-zero year, month,
and day values. * A month and day, with a zero year (for example, an
anniversary). * A year on its own, with a zero month and a zero day. * A
year and month, with a zero day (for example, a credit card expiration
date). Related types: * google.type.TimeOfDay * google.type.DateTime *
google.protobuf.Timestamp

Fields:
  day: Day of a month. Must be from 1 to 31 and valid for the year and
    month, or 0 to specify a year by itself or a year and month where the
    day isn't significant.
  month: Month of a year. Must be from 1 to 12, or 0 to specify a year
    without a month and day.
  year: Year of the date. Must be from 1 to 9999, or 0 to specify a date
    without a year.
r   rP   r   r    r   N)r   r   r   r   r   rY   IntegerFieldr`   INT32daymonthyearr   r   r   r   ro   ro      sc    ( 	q)*;*;*A*AB#

 
 I,=,=,C,C
D%			9+<+<+B+B	C$r   ro   c                       \ rS rSrSrSrg)Emptyi  a  A generic empty message that you can re-use to avoid defining duplicated
empty messages in your APIs. A typical example is to use it as the request
or the response type of an API method. For instance: service Foo { rpc
Bar(google.protobuf.Empty) returns (google.protobuf.Empty); }
r   Nrm   r   r   r   rw   rw     s    r   rw   c                       \ rS rSrSr\R                  " S\R                  R                  S9r	\R                  " S\R                  R                  S9r
Srg)FixedOrPercenti  a  Message encapsulating a value that can be either absolute ("fixed") or
relative ("percent") to a value.

Fields:
  fixed: Specifies a fixed value.
  percent: Specifies the relative value defined as a percentage, which will
    be multiplied by a reference value.
r   rP   r   r   N)r   r   r   r   r   rY   rq   r`   rr   fixedpercentr   r   r   r   ry   ry     sE     
 
 I,=,=,C,C
D%""1i.?.?.E.EF'r   ry   c                   $   \ rS rSrSr " S S\R                  5      r " S S\R                  5      r\R                  " SS5      r
\R                  " S5      r\R                  " S	5      r\R                  " SS
5      r\R                  " S5      rSrg)8GoogleCloudOsconfigV1OSPolicyAssignmentOperationMetadatai  m  OS policy assignment operation metadata provided by OS policy assignment
API methods that return long running operations.

Enums:
  ApiMethodValueValuesEnum: The OS policy assignment API method.
  RolloutStateValueValuesEnum: State of the rollout

Fields:
  apiMethod: The OS policy assignment API method.
  osPolicyAssignment: Reference to the `OSPolicyAssignment` API resource.
    Format: `projects/{project_number}/locations/{location}/osPolicyAssignme
    nts/{os_policy_assignment_id@revision_id}`
  rolloutStartTime: Rollout start time
  rolloutState: State of the rollout
  rolloutUpdateTime: Rollout update time
c                   (    \ rS rSrSrSrSrSrSrSr	g)	QGoogleCloudOsconfigV1OSPolicyAssignmentOperationMetadata.ApiMethodValueValuesEnumi1  The OS policy assignment API method.

Values:
  API_METHOD_UNSPECIFIED: Invalid value
  CREATE: Create OS policy assignment API method
  UPDATE: Update OS policy assignment API method
  DELETE: Delete OS policy assignment API method
r   r   r   r    r   N
r   r   r   r   r   API_METHOD_UNSPECIFIEDCREATEUPDATEDELETEr   r   r   r   ApiMethodValueValuesEnumr   1       FFFr   r   c                   ,    \ rS rSrSrSrSrSrSrSr	Sr
g	)
TGoogleCloudOsconfigV1OSPolicyAssignmentOperationMetadata.RolloutStateValueValuesEnumi?  State of the rollout

Values:
  ROLLOUT_STATE_UNSPECIFIED: Invalid value
  IN_PROGRESS: The rollout is in progress.
  CANCELLING: The rollout is being cancelled.
  CANCELLED: The rollout is cancelled.
  SUCCEEDED: The rollout has completed successfully.
r   r   r   r    r!   r   Nr   r   r   r   r   ROLLOUT_STATE_UNSPECIFIEDIN_PROGRESS
CANCELLING	CANCELLED	SUCCEEDEDr   r   r   r   RolloutStateValueValuesEnumr   ?  #     !"KJIIr   r   r   r   r    r!   rR   r   Nr   r   r   r   r   rY   rZ   r   r   r[   	apiMethodStringFieldosPolicyAssignmentrolloutStartTimerolloutStaterolloutUpdateTimer   r   r   r   r}   r}         " INN   !!"<a@) ,,Q/**1-$$%BAF,++A.r   r}   c                      \ rS rSrSr\R                  " S5      r\R                  " S5      r\R                  " S5      r	\R                  " S5      r\R                  " S5      r\R                  " S5      r\R                  " S	5      rS
rg)&GoogleCloudOsconfigV2OperationMetadataiV    Represents the metadata of the long-running operation.

Fields:
  apiVersion: Output only. API version used to start the operation.
  createTime: Output only. The time the operation was created.
  endTime: Output only. The time the operation finished running.
  requestedCancellation: Output only. Identifies whether the user has
    requested cancellation of the operation. Operations that have been
    cancelled successfully have Operation.error value with a
    google.rpc.Status.code of 1, corresponding to `Code.CANCELLED`.
  statusMessage: Output only. Human-readable status of the operation, if
    any.
  target: Output only. Server-defined resource path for the target of the
    operation.
  verb: Output only. Name of the verb executed by the operation.
r   r   r    r!   rR   rS   rT   r   Nr   r   r   r   r   rY   r   
apiVersion
createTimeendTimeBooleanFieldrequestedCancellationstatusMessagetargetverbr   r   r   r   r   r   V  z    " $$Q'*$$Q'*!!!$'#003''*-  #&			q	!$r   r   c                      \ rS rSrSr\R                  " S5      r\R                  " S5      r\R                  " S5      r	\R                  " S5      r\R                  " S5      r\R                  " S5      r\R                  " S	5      rS
rg)*GoogleCloudOsconfigV2betaOperationMetadataiq  r   r   r   r    r!   rR   rS   rT   r   Nr   r   r   r   r   r   q  r   r   r   c                   d   \ rS rSrSr " S S\R                  5      r\R                  " S5      r	\R                  " S5      r
\R                  " S5      r\R                  " S5      r\R                  " S	5      r\R                  " S
5      r\R                  " SSSS9r\R"                  " SS5      rSrg)InstanceOSPoliciesCompliancei  a|  This API resource represents the OS policies compliance data for a
Compute Engine virtual machine (VM) instance at a given point in time. A
Compute Engine VM can have multiple OS policy assignments, and each
assignment can have multiple OS policies. As a result, multiple OS policies
could be applied to a single VM. You can use this API resource to determine
both the compliance state of your VM as well as the compliance state of an
individual OS policy. For more information, see [View
compliance](https://cloud.google.com/compute/docs/os-configuration-
management/view-compliance).

Enums:
  StateValueValuesEnum: Output only. Compliance state of the VM.

Fields:
  detailedState: Output only. Detailed compliance state of the VM. This
    field is populated only when compliance state is `UNKNOWN`. It may
    contain one of the following values: * `no-compliance-data`: Compliance
    data is not available for this VM. * `no-agent-detected`: OS Config
    agent is not detected for this VM. * `config-not-supported-by-agent`:
    The version of the OS Config agent running on this VM does not support
    configuration management. * `inactive`: VM is not running. * `internal-
    service-errors`: There were internal service errors encountered while
    enforcing compliance. * `agent-errors`: OS config agent encountered
    errors while enforcing compliance.
  detailedStateReason: Output only. The reason for the `detailed_state` of
    the VM (if any).
  instance: Output only. The Compute Engine VM instance name.
  lastComplianceCheckTime: Output only. Timestamp of the last compliance
    check for the VM.
  lastComplianceRunId: Output only. Unique identifier for the last
    compliance run. This id will be logged by the OS config agent during a
    compliance run and can be used for debugging and tracing purpose.
  name: Output only. The `InstanceOSPoliciesCompliance` API resource name.
    Format: `projects/{project_number}/locations/{location}/instanceOSPolici
    esCompliances/{instance_id}`
  osPolicyCompliances: Output only. Compliance data for each `OSPolicy` that
    is applied to the VM.
  state: Output only. Compliance state of the VM.
c                   ,    \ rS rSrSrSrSrSrSrSr	Sr
g	)
1InstanceOSPoliciesCompliance.StateValueValuesEnumi  at  Output only. Compliance state of the VM.

Values:
  OS_POLICY_COMPLIANCE_STATE_UNSPECIFIED: Default value. This value is
    unused.
  COMPLIANT: Compliant state.
  NON_COMPLIANT: Non-compliant state
  UNKNOWN: Unknown compliance state.
  NO_OS_POLICIES_APPLICABLE: No applicable OS policies were found for the
    instance. This state is only applicable to the instance.
r   r   r   r    r!   r   Nr   r   r   r   r   &OS_POLICY_COMPLIANCE_STATE_UNSPECIFIED	COMPLIANTNON_COMPLIANTUNKNOWNNO_OS_POLICIES_APPLICABLEr   r   r   r   StateValueValuesEnumr     $    
 ./*IMG !r   r   r   r   r    r!   rR   rS   .InstanceOSPoliciesComplianceOSPolicyCompliancerT   TrepeatedrU   r   N)r   r   r   r   r   rY   rZ   r   r   detailedStatedetailedStateReasoninstancelastComplianceCheckTimelastComplianceRunIdnameMessageFieldosPolicyCompliancesr[   stater   r   r   r   r   r     s    &P"Y^^ "$ ''*-!--a0""1%(%11!4!--a0			q	!$!../_abmqr


4a
8%r   r   c                       \ rS rSrSr " S S\R                  5      r\R                  " S5      r	\R                  " S5      r
\R                  " SSS	S
9r\R                  " SS5      rSrg)r   i  a  Compliance data for an OS policy

Enums:
  StateValueValuesEnum: Compliance state of the OS policy.

Fields:
  osPolicyAssignment: Reference to the `OSPolicyAssignment` API resource
    that the `OSPolicy` belongs to. Format: `projects/{project_number}/locat
    ions/{location}/osPolicyAssignments/{os_policy_assignment_id@revision_id
    }`
  osPolicyId: The OS policy id
  osPolicyResourceCompliances: Compliance data for each `OSPolicyResource`
    that is applied to the VM.
  state: Compliance state of the OS policy.
c                   ,    \ rS rSrSrSrSrSrSrSr	Sr
g	)
CInstanceOSPoliciesComplianceOSPolicyCompliance.StateValueValuesEnumi  an  Compliance state of the OS policy.

Values:
  OS_POLICY_COMPLIANCE_STATE_UNSPECIFIED: Default value. This value is
    unused.
  COMPLIANT: Compliant state.
  NON_COMPLIANT: Non-compliant state
  UNKNOWN: Unknown compliance state.
  NO_OS_POLICIES_APPLICABLE: No applicable OS policies were found for the
    instance. This state is only applicable to the instance.
r   r   r   r    r!   r   Nr   r   r   r   r   r     r   r   r   r   r   OSPolicyResourceCompliancer    Tr   r!   r   N)r   r   r   r   r   rY   rZ   r   r   r   
osPolicyIdr   osPolicyResourceCompliancesr[   r   r   r   r   r   r   r     se     "Y^^ "$ !,,Q/$$Q'* ) 6 67SUVae f


4a
8%r   r   c                       \ rS rSrSr\R                  " S5       " S S\R                  5      5       r	\R                  " SS5      r\R                  " S5      r\R                  " SS	5      r\R                  " S
5      rSrg)	Inventoryi  a  This API resource represents the available inventory data for a Compute
Engine virtual machine (VM) instance at a given point in time. You can use
this API resource to determine the inventory data of your VM. For more
information, see [Information provided by OS inventory
management](https://cloud.google.com/compute/docs/instances/os-inventory-
management#data-collected).

Messages:
  ItemsValue: Output only. Inventory items related to the VM keyed by an
    opaque unique identifier for each inventory item. The identifier is
    unique to each distinct and addressable inventory item and will change,
    when there is a new package version.

Fields:
  items: Output only. Inventory items related to the VM keyed by an opaque
    unique identifier for each inventory item. The identifier is unique to
    each distinct and addressable inventory item and will change, when there
    is a new package version.
  name: Output only. The `Inventory` API resource name. Format: `projects/{p
    roject_number}/locations/{location}/instances/{instance_id}/inventory`
  osInfo: Output only. Base level operating system information for the VM.
  updateTime: Output only. Timestamp of the last reported inventory for the
    VM.
additionalPropertiesc                   f    \ rS rSrSr " S S\R                  5      r\R                  " SSSS9r	Sr
g	)
Inventory.ItemsValuei  a  Output only. Inventory items related to the VM keyed by an opaque
unique identifier for each inventory item. The identifier is unique to
each distinct and addressable inventory item and will change, when there
is a new package version.

Messages:
  AdditionalProperty: An additional property for a ItemsValue object.

Fields:
  additionalProperties: Additional properties of type ItemsValue
c                   b    \ rS rSrSr\R                  " S5      r\R                  " SS5      r	Sr
g)'Inventory.ItemsValue.AdditionalPropertyi"  zAn additional property for a ItemsValue object.

Fields:
  key: Name of the additional property.
  value: A InventoryItem attribute.
r   InventoryItemr   r   Nr   r   r   r   r   rY   r   keyr   valuer   r   r   r   AdditionalPropertyr   "  s+    
 !!!$c$$_a8er   r   r   Tr   r   Nr   r   r   r   r   rY   Messager   r   r   r   r   r   r   
ItemsValuer     s2    
	9Y.. 	9 %112FTXYr   r   r   r   InventoryOsInfor    r!   r   N)r   r   r   r   r   r   MapUnrecognizedFieldsrY   r   r   r   itemsr   r   osInfo
updateTimer   r   r   r   r   r     s~    2 !!"89Z9$$ Z :Z4 
 
 q
1%			q	!$!!"3Q7&$$Q'*r   r   c                   p   \ rS rSrSr " S S\R                  5      r " S S\R                  5      r\R                  " SS5      r
\R                  " S	5      r\R                  " S
5      r\R                  " SS5      r\R                  " SS5      r\R                  " SS5      r\R                  " S5      rSrg)r   i5  a  A single piece of inventory on a VM.

Enums:
  OriginTypeValueValuesEnum: The origin of this inventory item.
  TypeValueValuesEnum: The specific type of inventory, correlating to its
    specific details.

Fields:
  availablePackage: Software package available to be installed on the VM
    instance.
  createTime: When this inventory item was first detected.
  id: Identifier for this item, unique across items for this VM.
  installedPackage: Software package present on the VM instance.
  originType: The origin of this inventory item.
  type: The specific type of inventory, correlating to its specific details.
  updateTime: When this inventory item was last modified.
c                        \ rS rSrSrSrSrSrg)'InventoryItem.OriginTypeValueValuesEnumiH  zThe origin of this inventory item.

Values:
  ORIGIN_TYPE_UNSPECIFIED: Invalid. An origin type must be specified.
  INVENTORY_REPORT: This inventory item was discovered as the result of
    the agent reporting inventory via the reporting API.
r   r   r   N)r   r   r   r   r   ORIGIN_TYPE_UNSPECIFIEDINVENTORY_REPORTr   r   r   r   OriginTypeValueValuesEnumr   H  s      r   r   c                   $    \ rS rSrSrSrSrSrSrg)!InventoryItem.TypeValueValuesEnumiS  a)  The specific type of inventory, correlating to its specific details.

Values:
  TYPE_UNSPECIFIED: Invalid. A type must be specified.
  INSTALLED_PACKAGE: This represents a package that is installed on the
    VM.
  AVAILABLE_PACKAGE: This represents an update that is available for a
    package.
r   r   r   r   N)	r   r   r   r   r   TYPE_UNSPECIFIEDINSTALLED_PACKAGEAVAILABLE_PACKAGEr   r   r   r   TypeValueValuesEnumr   S  s     r   r   InventorySoftwarePackager   r   r    r!   rR   rS   rT   r   N)r   r   r   r   r   rY   rZ   r   r   r   availablePackager   r   idinstalledPackager[   
originTypetyper   r   r   r   r   r   r   5  s    $	).. 	INN  ++,FJ$$Q'*Q"++,FJ""#>B*			2A	6$$$Q'*r   r   c                   8   \ rS rSrSr\R                  " S5      r\R                  " S5      r\R                  " S5      r	\R                  " S5      r
\R                  " S5      r\R                  " S5      r\R                  " S	5      r\R                  " S
5      rSrg)r   ij  ai  Operating system information for the VM.

Fields:
  architecture: The system architecture of the operating system.
  hostname: The VM hostname.
  kernelRelease: The kernel release of the operating system.
  kernelVersion: The kernel version of the operating system.
  longName: The operating system long name. For example 'Debian GNU/Linux 9'
    or 'Microsoft Window Server 2019 Datacenter'.
  osconfigAgentVersion: The current version of the OS Config agent running
    on the VM.
  shortName: The operating system short name. For example, 'windows' or
    'debian'.
  version: The version of the operating system.
r   r   r    r!   rR   rS   rT   rU   r   N)r   r   r   r   r   rY   r   architecturehostnamekernelReleasekernelVersionlongNameosconfigAgentVersion	shortNameversionr   r   r   r   r   r   j  s      &&q),""1%(''*-''*-""1%("..q1##A&)!!!$'r   r   c                   n   \ rS rSrSr\R                  " SS5      r\R                  " SS5      r\R                  " SS5      r	\R                  " SS5      r
\R                  " S	S
5      r\R                  " SS5      r\R                  " SS5      r\R                  " SS5      r\R                  " SS5      rSrg)r   i  a  Software package information of the operating system.

Fields:
  aptPackage: Details of an APT package. For details about the apt package
    manager, see https://wiki.debian.org/Apt.
  cosPackage: Details of a COS package.
  googetPackage: Details of a Googet package. For details about the googet
    package manager, see https://github.com/google/googet.
  qfePackage: Details of a Windows Quick Fix engineering package. See
    https://docs.microsoft.com/en-
    us/windows/win32/cimwin32prov/win32-quickfixengineering for info in
    Windows Quick Fix Engineering.
  windowsApplication: Details of Windows Application.
  wuaPackage: Details of a Windows Update package. See
    https://docs.microsoft.com/en-us/windows/win32/api/_wua/ for information
    about Windows Update.
  yumPackage: Yum package info. For details about the yum package manager,
    see https://access.redhat.com/documentation/en-
    us/red_hat_enterprise_linux/6/html/deployment_guide/ch-yum.
  zypperPackage: Details of a Zypper package. For details about the Zypper
    package manager, see https://en.opensuse.org/SDB:Zypper_manual.
  zypperPatch: Details of a Zypper patch. For details about the Zypper
    package manager, see https://en.opensuse.org/SDB:Zypper_manual.
InventoryVersionedPackager   r   r    *InventoryWindowsQuickFixEngineeringPackager!   InventoryWindowsApplicationrR   InventoryWindowsUpdatePackagerS   rT   rU   InventoryZypperPatchrV   r   N)r   r   r   r   r   rY   r   
aptPackage
cosPackagegoogetPackage
qfePackagewindowsApplication
wuaPackage
yumPackagezypperPackagezypperPatchr   r   r   r   r   r     s    2 %%&A1E*%%&A1E*(()DaH-%%&RTUV* --.KQO%%&EqI*%%&A1E*(()DaH-&&'=qA+r   r   c                       \ rS rSrSr\R                  " S5      r\R                  " S5      r\R                  " S5      r	Sr
g)r   i  a%  Information related to the a standard versioned package. This includes
package info for APT, Yum, Zypper, and Googet package managers.

Fields:
  architecture: The system architecture this package is intended for.
  packageName: The name of the package.
  version: The version of the package.
r   r   r    r   N)r   r   r   r   r   rY   r   r   packageNamer   r   r   r   r   r   r     s9     &&q),%%a(+!!!$'r   r   c                       \ rS rSrSr\R                  " S5      r\R                  " S5      r\R                  " S5      r	\R                  " SS5      r\R                  " S5      rS	rg
)r   i  a  Contains information about a Windows application that is retrieved from
the Windows Registry. For more information about these fields, see:
https://docs.microsoft.com/en-us/windows/win32/msi/uninstall-registry-key

Fields:
  displayName: The name of the application or product.
  displayVersion: The version of the product or application in string
    format.
  helpLink: The internet address for technical support.
  installDate: The last time this product received service. The value of
    this property is replaced each time a patch is applied or removed from
    the product or the command-line option is used to repair the product.
  publisher: The name of the manufacturer for the product or application.
r   r   r    ro   r!   rR   r   N)r   r   r   r   r   rY   r   displayNamedisplayVersionhelpLinkr   installDate	publisherr   r   r   r   r   r     s[     %%a(+((+.""1%(&&vq1+##A&)r   r   c                       \ rS rSrSr\R                  " S5      r\R                  " S5      r\R                  " S5      r	\R                  " S5      r
Srg)	r   i  a  Information related to a Quick Fix Engineering package. Fields are taken
from Windows QuickFixEngineering Interface and match the source names:
https://docs.microsoft.com/en-
us/windows/win32/cimwin32prov/win32-quickfixengineering

Fields:
  caption: A short textual description of the QFE update.
  description: A textual description of the QFE update.
  hotFixId: Unique identifier associated with a particular QFE update.
  installTime: Date that the QFE update was installed. Mapped from
    installed_on field.
r   r   r    r!   r   N)r   r   r   r   r   rY   r   captiondescriptionhotFixIdinstallTimer   r   r   r   r   r     sI     !!!$'%%a(+""1%(%%a(+r   r   c                   ~   \ rS rSrSr\R                  " SSSS9r\R                  " S5      r	\R                  " SSS9r
\R                  " S	5      r\R                  " S
SS9r\R                  " S\R                  R                  S9r\R                  " S5      r\R                  " S5      r\R                  " S5      rSrg)r   i  a  Details related to a Windows Update package. Field data and names are
taken from Windows Update API IUpdate Interface:
https://docs.microsoft.com/en-us/windows/win32/api/_wua/ Descriptive fields
like title, and description are localized based on the locale of the VM
being updated.

Fields:
  categories: The categories that are associated with this update package.
  description: The localized description of the update package.
  kbArticleIds: A collection of Microsoft Knowledge Base article IDs that
    are associated with the update package.
  lastDeploymentChangeTime: The last published date of the update, in (UTC)
    date and time.
  moreInfoUrls: A collection of URLs that provide more information about the
    update package.
  revisionNumber: The revision number of this update package.
  supportUrl: A hyperlink to the language-specific support information for
    the update.
  title: The localized title of the update package.
  updateId: Gets the identifier of an update package. Stays the same across
    revisions.
2InventoryWindowsUpdatePackageWindowsUpdateCategoryr   Tr   r   r    r!   rR   rS   rP   rT   rU   rV   r   N)r   r   r   r   r   rY   r   
categoriesr   r  kbArticleIdslastDeploymentChangeTimemoreInfoUrlsrq   r`   rr   revisionNumber
supportUrltitleupdateIdr   r   r   r   r   r     s    . %%&Z\]hlm*%%a(+&&q48,&2215&&q48,))!Y5F5F5L5LM.$$Q'*



"%""1%(r   r   c                   `    \ rS rSrSr\R                  " S5      r\R                  " S5      rSr	g)r  i  zCategories specified by the Windows Update.

Fields:
  id: The identifier of the windows update category.
  name: The name of the windows update category.
r   r   r   N)
r   r   r   r   r   rY   r   r   r   r   r   r   r   r  r    s)     Q"			q	!$r   r  c                       \ rS rSrSr\R                  " S5      r\R                  " S5      r\R                  " S5      r	\R                  " S5      r
Srg)	r   i  zDetails related to a Zypper Patch.

Fields:
  category: The category of the patch.
  patchName: The name of the patch.
  severity: The severity specified for this patch
  summary: Any summary information provided about this patch.
r   r   r    r!   r   N)r   r   r   r   r   rY   r   category	patchNameseveritysummaryr   r   r   r   r   r     sI     ""1%(##A&)""1%(!!!$'r   r   c                   `    \ rS rSrSr\R                  " SSSS9r\R                  " S5      r	Sr
g	)
)ListInstanceOSPoliciesCompliancesResponsei#  a<  A response message for listing OS policies compliance data for all
Compute Engine VMs in the given location.

Fields:
  instanceOsPoliciesCompliances: List of instance OS policies compliance
    objects.
  nextPageToken: The pagination token to retrieve the next page of instance
    OS policies compliance objects.
r   r   Tr   r   r   N)r   r   r   r   r   rY   r   instanceOsPoliciesCompliancesr   nextPageTokenr   r   r   r   r%  r%  #  s1     #,"8"89WYZei"j''*-r   r%  c                   `    \ rS rSrSr\R                  " SSSS9r\R                  " S5      r	Sr
g	)
ListInventoriesResponsei2  zA response message for listing inventory data for all VMs in a specified
location.

Fields:
  inventories: List of inventory objects.
  nextPageToken: The pagination token to retrieve the next page of inventory
    objects.
r   r   Tr   r   r   N)r   r   r   r   r   rY   r   inventoriesr   r'  r   r   r   r   r)  r)  2  s-     &&{AE+''*-r   r)  c                   `    \ rS rSrSr\R                  " S5      r\R                  " SSSS9r	Sr
g	)
%ListOSPolicyAssignmentReportsResponsei@  a"  A response message for listing OS Policy assignment reports including
the page of results and page token.

Fields:
  nextPageToken: The pagination token to retrieve the next page of OS policy
    assignment report objects.
  osPolicyAssignmentReports: List of OS policy assignment reports.
r   OSPolicyAssignmentReportr   Tr   r   N)r   r   r   r   r   rY   r   r'  r   osPolicyAssignmentReportsr   r   r   r   r,  r,  @  s1     ''*-'445OQR]abr   r,  c                   `    \ rS rSrSr\R                  " S5      r\R                  " SSSS9r	Sr
g	)
'ListOSPolicyAssignmentRevisionsResponseiN  zA response message for listing all revisions for a OS policy assignment.

Fields:
  nextPageToken: The pagination token to retrieve the next page of OS policy
    assignment revisions.
  osPolicyAssignments: The OS policy assignment revisions
r   OSPolicyAssignmentr   Tr   r   Nr   r   r   r   r   rY   r   r'  r   osPolicyAssignmentsr   r   r   r   r0  r0  N  0     ''*-!../CQQUVr   r0  c                   `    \ rS rSrSr\R                  " S5      r\R                  " SSSS9r	Sr
g	)
ListOSPolicyAssignmentsResponsei[  zA response message for listing all assignments under given parent.

Fields:
  nextPageToken: The pagination token to retrieve the next page of OS policy
    assignments.
  osPolicyAssignments: The list of assignments
r   r1  r   Tr   r   Nr2  r   r   r   r6  r6  [  r4  r   r6  c                   `    \ rS rSrSr\R                  " S5      r\R                  " SSSS9r	Sr
g	)
 ListVulnerabilityReportsResponseih  a  A response message for listing vulnerability reports for all VM
instances in the specified location.

Fields:
  nextPageToken: The pagination token to retrieve the next page of
    vulnerabilityReports object.
  vulnerabilityReports: List of vulnerabilityReport objects.
r   VulnerabilityReportr   Tr   r   N)r   r   r   r   r   rY   r   r'  r   vulnerabilityReportsr   r   r   r   r8  r8  h  s0     ''*-"//0EqSWXr   r8  c                       \ rS rSrSrSrg)
MessageSetiv  a  This is proto2's version of MessageSet. DEPRECATED: DO NOT USE FOR NEW
FIELDS. If you are using editions or proto2, please make your own extendable
messages for your use case. If you are using proto3, please use `Any`
instead. MessageSet was the implementation of extensions for proto1. When
proto2 was introduced, extensions were implemented as a first-class feature.
This schema for MessageSet was meant to be a "bridge" solution to migrate
MessageSet-bearing messages from proto1 to proto2. This schema has been
open-sourced only to facilitate the migration of Google products with
MessageSet-bearing messages to open-source environments.
r   Nrm   r   r   r   r<  r<  v  s    	r   r<  c                       \ rS rSrSr " S S\R                  5      r\R                  " S5      r	\R                  " S5      r\R                  " S5      r\R                  " SS5      r\R                  " S	S
SS9rSrg)OSPolicyi  a  An OS policy defines the desired state configuration for a VM.

Enums:
  ModeValueValuesEnum: Required. Policy mode

Fields:
  allowNoResourceGroupMatch: This flag determines the OS policy compliance
    status when none of the resource groups within the policy are applicable
    for a VM. Set this value to `true` if the policy needs to be reported as
    compliant even if the policy has nothing to validate or enforce.
  description: Policy description. Length of the description is limited to
    1024 characters.
  id: Required. The id of the OS policy with the following restrictions: *
    Must contain only lowercase letters, numbers, and hyphens. * Must start
    with a letter. * Must be between 1-63 characters. * Must end with a
    number or a letter. * Must be unique within the assignment.
  mode: Required. Policy mode
  resourceGroups: Required. List of resource groups for the policy. For a
    particular VM, resource groups are evaluated in the order specified and
    the first resource group that is applicable is selected and the rest are
    ignored. If none of the resource groups are applicable for a VM, the VM
    is considered to be non-compliant w.r.t this policy. This behavior can
    be toggled by the flag `allow_no_resource_group_match`
c                   $    \ rS rSrSrSrSrSrSrg)OSPolicy.ModeValueValuesEnumi  a  Required. Policy mode

Values:
  MODE_UNSPECIFIED: Invalid mode
  VALIDATION: This mode checks if the configuration resources in the
    policy are in their desired state. No actions are performed if they
    are not in the desired state. This mode is used for reporting
    purposes.
  ENFORCEMENT: This mode checks if the configuration resources in the
    policy are in their desired state, and if not, enforces the desired
    state.
r   r   r   r   N)	r   r   r   r   r   MODE_UNSPECIFIED
VALIDATIONENFORCEMENTr   r   r   r   ModeValueValuesEnumr@    s     JKr   rD  r   r   r    r!   OSPolicyResourceGrouprR   Tr   r   N)r   r   r   r   r   rY   rZ   rD  r   allowNoResourceGroupMatchr   r  r   r[   moder   resourceGroupsr   r   r   r   r>  r>    sr    2INN " (44Q7%%a(+Q"			2A	6$))*A1tT.r   r>  c                      \ rS rSrSr " S S\R                  5      r\R                  " S5      r	\R                  " S5      r
\R                  " S5      r\R                  " S5      r\R                  " S	S
5      r\R                  " S5      r\R                  " SSSS9r\R                  " S5      r\R                  " S5      r\R                  " S5      r\R                  " SS5      r\R,                  " SS5      r\R                  " S5      rSrg)r1  i  a	  OS policy assignment is an API resource that is used to apply a set of
OS policies to a dynamically targeted group of Compute Engine VM instances.
An OS policy is used to define the desired state configuration for a Compute
Engine VM instance through a set of configuration resources that provide
capabilities such as installing or removing software packages, or executing
a script. For more information, see [OS policy and OS policy
assignment](https://cloud.google.com/compute/docs/os-configuration-
management/working-with-os-policies).

Enums:
  RolloutStateValueValuesEnum: Output only. OS policy assignment rollout
    state

Fields:
  baseline: Output only. Indicates that this revision has been successfully
    rolled out in this zone and new VMs will be assigned OS policies from
    this revision. For a given OS policy assignment, there is only one
    revision with a value of `true` for this field.
  deleted: Output only. Indicates that this revision deletes the OS policy
    assignment.
  description: OS policy assignment description. Length of the description
    is limited to 1024 characters.
  etag: The etag for this OS policy assignment. If this is provided on
    update, it must match the server's etag.
  instanceFilter: Required. Filter to select VMs.
  name: Resource name. Format: `projects/{project_number}/locations/{locatio
    n}/osPolicyAssignments/{os_policy_assignment_id}` This field is ignored
    when you create an OS policy assignment.
  osPolicies: Required. List of OS policies to be applied to the VMs.
  reconciling: Output only. Indicates that reconciliation is in progress for
    the revision. This value is `true` when the `rollout_state` is one of: *
    IN_PROGRESS * CANCELLING
  revisionCreateTime: Output only. The timestamp that the revision was
    created.
  revisionId: Output only. The assignment revision ID A new revision is
    committed whenever a rollout is triggered for a OS policy assignment
  rollout: Required. Rollout to deploy the OS policy assignment. A rollout
    is triggered in the following situations: 1) OSPolicyAssignment is
    created. 2) OSPolicyAssignment is updated and the update contains
    changes to one of the following fields: - instance_filter - os_policies
    3) OSPolicyAssignment is deleted.
  rolloutState: Output only. OS policy assignment rollout state
  uid: Output only. Server generated unique id for the OS policy assignment
    resource.
c                   ,    \ rS rSrSrSrSrSrSrSr	Sr
g	)
.OSPolicyAssignment.RolloutStateValueValuesEnumi  a  Output only. OS policy assignment rollout state

Values:
  ROLLOUT_STATE_UNSPECIFIED: Invalid value
  IN_PROGRESS: The rollout is in progress.
  CANCELLING: The rollout is being cancelled.
  CANCELLED: The rollout is cancelled.
  SUCCEEDED: The rollout has completed successfully.
r   r   r   r    r!   r   Nr   r   r   r   r   rK    r   r   r   r   r   r    r!    OSPolicyAssignmentInstanceFilterrR   rS   r>  rT   Tr   rU   rV   rW   OSPolicyAssignmentRolloutrX         r   N)r   r   r   r   r   rY   rZ   r   r   baselinedeletedr   r  etagr   instanceFilterr   
osPoliciesreconcilingrevisionCreateTime
revisionIdrolloutr[   r   uidr   r   r   r   r1  r1    s    ,\INN   ##A&(""1%'%%a(+			q	!$))*LaP.			q	!$%%j!dC*&&q)+ ,,Q/$$R(*""#>C'$$%BBG,b!#r   r1  c                       \ rS rSrSr\R                  " S5      r\R                  " SSSS9r	\R                  " SSSS9r
\R                  " S	S
SS9r\R                  " SSS9rSrg)rL  i  a  Filters to select target VMs for an assignment. If more than one filter
criteria is specified below, a VM will be selected if and only if it
satisfies all of them.

Fields:
  all: Target all VMs in the project. If true, no other criteria is
    permitted.
  exclusionLabels: List of label sets used for VM exclusion. If the list has
    more than one label set, the VM is excluded if any of the label sets are
    applicable for the VM.
  inclusionLabels: List of label sets used for VM inclusion. If the list has
    more than one `LabelSet`, the VM is included if any of the label sets
    are applicable for the VM.
  inventories: List of inventories to select VMs. A VM is selected if its
    inventory data matches at least one of the following inventories.
  osShortNames: Deprecated. Use the `inventories` field instead. A VM is
    selected if it's OS short name matches with any of the values provided
    in this list.
r   OSPolicyAssignmentLabelSetr   Tr   r    )OSPolicyAssignmentInstanceFilterInventoryr!   rR   r   N)r   r   r   r   r   rY   r   allr   exclusionLabelsinclusionLabelsr*  r   osShortNamesr   r   r   r   rL  rL    sn    ( 	q!#**+GUYZ/**+GUYZ/&&'RTU`de+&&q48,r   rL  c                   `    \ rS rSrSr\R                  " S5      r\R                  " S5      rSr	g)r\  i   a[  VM inventory details.

Fields:
  osShortName: Required. The OS short name
  osVersion: The OS version Prefix matches are supported if asterisk(*) is
    provided as the last character. For example, to match all versions with
    a major version of `7`, specify the following value for this field `7.*`
    An empty string matches all OS versions.
r   r   r   N
r   r   r   r   r   rY   r   osShortName	osVersionr   r   r   r   r\  r\     )     %%a(+##A&)r   r\  c                       \ rS rSrSr\R                  " S5       " S S\R                  5      5       r	\R                  " SS5      rSrg)	r[  i/  a  Message representing label set. * A label is a key value pair set for a
VM. * A LabelSet is a set of labels. * Labels within a LabelSet are ANDed.
In other words, a LabelSet is applicable for a VM only if it matches all the
labels in the LabelSet. * Example: A LabelSet with 2 labels: `env=prod` and
`type=webserver` will only be applicable for those VMs with both labels
present.

Messages:
  LabelsValue: Labels are identified by key/value pairs in this map. A VM
    should contain all the key/value pairs specified in this map to be
    selected.

Fields:
  labels: Labels are identified by key/value pairs in this map. A VM should
    contain all the key/value pairs specified in this map to be selected.
r   c                   f    \ rS rSrSr " S S\R                  5      r\R                  " SSSS9r	Sr
g	)
&OSPolicyAssignmentLabelSet.LabelsValueiA  a%  Labels are identified by key/value pairs in this map. A VM should
contain all the key/value pairs specified in this map to be selected.

Messages:
  AdditionalProperty: An additional property for a LabelsValue object.

Fields:
  additionalProperties: Additional properties of type LabelsValue
c                   `    \ rS rSrSr\R                  " S5      r\R                  " S5      rSr	g)9OSPolicyAssignmentLabelSet.LabelsValue.AdditionalPropertyiM  zAn additional property for a LabelsValue object.

Fields:
  key: Name of the additional property.
  value: A string attribute.
r   r   r   N)
r   r   r   r   r   rY   r   r   r   r   r   r   r   r   rj  M  s)    
 !!!$c##A&er   r   r   Tr   r   Nr   r   r   r   LabelsValuerh  A  s2    	'Y.. 	' %112FTXYr   rk  r   r   N)r   r   r   r   r   r   r   rY   r   rk  r   labelsr   r   r   r   r[  r[  /  sK    " !!"89ZI%% Z :Z0 !!-3&r   r[  c                   $   \ rS rSrSr " S S\R                  5      r " S S\R                  5      r\R                  " SS5      r
\R                  " S5      r\R                  " S	5      r\R                  " SS
5      r\R                  " S5      rSrg)#OSPolicyAssignmentOperationMetadatai]  r~   c                   (    \ rS rSrSrSrSrSrSrSr	g)	<OSPolicyAssignmentOperationMetadata.ApiMethodValueValuesEnumio  r   r   r   r   r    r   Nr   r   r   r   r   rp  o  r   r   r   c                   ,    \ rS rSrSrSrSrSrSrSr	Sr
g	)
?OSPolicyAssignmentOperationMetadata.RolloutStateValueValuesEnumi}  r   r   r   r   r    r!   r   Nr   r   r   r   r   rr  }  r   r   r   r   r   r    r!   rR   r   Nr   r   r   r   rn  rn  ]  r   r   rn  c                       \ rS rSrSr\R                  " S5      r\R                  " S5      r\R                  " S5      r	\R                  " S5      r
\R                  " SSS	S
9r\R                  " S5      rSrg)r-  i  aV  A report of the OS policy assignment status for a given instance.

Fields:
  instance: The Compute Engine VM instance name.
  lastRunId: Unique identifier of the last attempted run to apply the OS
    policies associated with this assignment on the VM. This ID is logged by
    the OS Config agent while applying the OS policies associated with this
    assignment on the VM. NOTE: If the service is unable to successfully
    connect to the agent for this run, then this id will not be available in
    the agent logs.
  name: The `OSPolicyAssignmentReport` API resource name. Format: `projects/
    {project_number}/locations/{location}/instances/{instance_id}/osPolicyAs
    signments/{os_policy_assignment_id}/report`
  osPolicyAssignment: Reference to the `OSPolicyAssignment` API resource
    that the `OSPolicy` belongs to. Format: `projects/{project_number}/locat
    ions/{location}/osPolicyAssignments/{os_policy_assignment_id@revision_id
    }`
  osPolicyCompliances: Compliance data for each `OSPolicy` that is applied
    to the VM.
  updateTime: Timestamp for when the report was last generated.
r   r   r    r!   *OSPolicyAssignmentReportOSPolicyCompliancerR   Tr   rS   r   N)r   r   r   r   r   rY   r   r   	lastRunIdr   r   r   r   r   r   r   r   r   r-  r-    sr    , ""1%(##A&)			q	!$ ,,Q/!../[]^imn$$Q'*r   r-  c                       \ rS rSrSr " S S\R                  5      r\R                  " SS5      r	\R                  " S5      r\R                  " S5      r\R                  " SS	S
S9rSrg)rt  i  a  Compliance data for an OS policy

Enums:
  ComplianceStateValueValuesEnum: The compliance state of the OS policy.

Fields:
  complianceState: The compliance state of the OS policy.
  complianceStateReason: The reason for the OS policy to be in an unknown
    compliance state. This field is always populated when `compliance_state`
    is `UNKNOWN`. If populated, the field can contain one of the following
    values: * `vm-not-running`: The VM was not running. * `os-policies-not-
    supported-by-agent`: The version of the OS Config agent running on the
    VM does not support running OS policies. * `no-agent-detected`: The OS
    Config agent is not detected for the VM. * `resource-execution-errors`:
    The OS Config agent encountered errors while executing one or more
    resources in the policy. See `os_policy_resource_compliances` for
    details. * `task-timeout`: The task sent to the agent to apply the
    policy timed out. * `unexpected-agent-state`: The OS Config agent did
    not report the final status of the task that attempted to apply the
    policy. Instead, the agent unexpectedly started working on a different
    task. This mostly happens when the agent or VM unexpectedly restarts
    while applying OS policies. * `internal-service-errors`: Internal
    service errors were encountered while attempting to apply the policy. *
    `os-policy-execution-pending`: OS policy was assigned to the given VM,
    but was not executed yet. Typically this is a transient condition that
    will go away after the next policy execution cycle.
  osPolicyId: The OS policy id
  osPolicyResourceCompliances: Compliance data for each resource within the
    policy that is applied to the VM.
c                   $    \ rS rSrSrSrSrSrSrg)IOSPolicyAssignmentReportOSPolicyCompliance.ComplianceStateValueValuesEnumi  a  The compliance state of the OS policy.

Values:
  UNKNOWN: The policy is in an unknown compliance state. Refer to the
    field `compliance_state_reason` to learn the exact reason for the
    policy to be in this compliance state.
  COMPLIANT: Policy is compliant. The policy is compliant if all the
    underlying resources are also compliant.
  NON_COMPLIANT: Policy is non-compliant. The policy is non-compliant if
    one or more underlying resources are non-compliant.
r   r   r   r   N	r   r   r   r   r   r   r   r   r   r   r   r   ComplianceStateValueValuesEnumrx    s    
 GIMr   rz  r   r   r    DOSPolicyAssignmentReportOSPolicyComplianceOSPolicyResourceCompliancer!   Tr   r   N)r   r   r   r   r   rY   rZ   rz  r[   complianceStater   complianceStateReasonr   r   r   r   r   r   r   rt  rt    sp    >y~~   ''(H!L/#//2$$Q'* ) 6 67}  @A  LP  !Qr   rt  c                       \ rS rSrSr " S S\R                  5      r\R                  " SS5      r	\R                  " S5      r\R                  " SSS	S
9r\R                  " SS5      r\R                  " S5      rSrg)r{  i  a  Compliance data for an OS policy resource.

Enums:
  ComplianceStateValueValuesEnum: The compliance state of the resource.

Fields:
  complianceState: The compliance state of the resource.
  complianceStateReason: A reason for the resource to be in the given
    compliance state. This field is always populated when `compliance_state`
    is `UNKNOWN`. The following values are supported when `compliance_state
    == UNKNOWN` * `execution-errors`: Errors were encountered by the agent
    while executing the resource and the compliance state couldn't be
    determined. * `execution-skipped-by-agent`: Resource execution was
    skipped by the agent because errors were encountered while executing
    prior resources in the OS policy. * `os-policy-execution-attempt-
    failed`: The execution of the OS policy containing this resource failed
    and the compliance state couldn't be determined. * `os-policy-execution-
    pending`: OS policy that owns this resource was assigned to the given
    VM, but was not executed yet.
  configSteps: Ordered list of configuration completed by the agent for the
    OS policy resource.
  execResourceOutput: ExecResource specific output.
  osPolicyResourceId: The ID of the OS policy resource.
c                   $    \ rS rSrSrSrSrSrSrg)cOSPolicyAssignmentReportOSPolicyComplianceOSPolicyResourceCompliance.ComplianceStateValueValuesEnumi  a7  The compliance state of the resource.

Values:
  UNKNOWN: The resource is in an unknown compliance state. To get more
    details about why the policy is in this state, review the output of
    the `compliance_state_reason` field.
  COMPLIANT: Resource is compliant.
  NON_COMPLIANT: Resource is non-compliant.
r   r   r   r   Nry  r   r   r   rz  r    s     GIMr   rz  r   r   ^OSPolicyAssignmentReportOSPolicyComplianceOSPolicyResourceComplianceOSPolicyResourceConfigStepr    Tr   VOSPolicyAssignmentReportOSPolicyComplianceOSPolicyResourceComplianceExecResourceOutputr!   rR   r   N)r   r   r   r   r   rY   rZ   rz  r[   r|  r   r}  r   configStepsexecResourceOutputosPolicyResourceIdr   r   r   r   r{  r{    s    2y~~  ''(H!L/#//2&&  (H  JK  VZ  [+ --  /G  IJ  K ,,Q/r   r{  c                   <    \ rS rSrSr\R                  " S5      rSrg)r  i  zExecResource specific output.

Fields:
  enforcementOutput: Output from enforcement phase output file (if run).
    Output size is limited to 100K bytes.
r   r   N	r   r   r   r   r   rY   
BytesFieldenforcementOutputr   r   r   r   r  r          **1-r   r  c                       \ rS rSrSr " S S\R                  5      r\R                  " S5      r	\R                  " SS5      rSrg)	r  i#  a\  Step performed by the OS Config agent for configuring an `OSPolicy`
resource to its desired state.

Enums:
  TypeValueValuesEnum: Configuration step type.

Fields:
  errorMessage: An error message recorded during the execution of this step.
    Only populated if errors were encountered during this step execution.
  type: Configuration step type.
c                   ,    \ rS rSrSrSrSrSrSrSr	Sr
g	)
rOSPolicyAssignmentReportOSPolicyComplianceOSPolicyResourceComplianceOSPolicyResourceConfigStep.TypeValueValuesEnumi0  a  Configuration step type.

Values:
  TYPE_UNSPECIFIED: Default value. This value is unused.
  VALIDATION: Checks for resource conflicts such as schema errors.
  DESIRED_STATE_CHECK: Checks the current status of the desired state for
    a resource.
  DESIRED_STATE_ENFORCEMENT: Enforces the desired state for a resource
    that is not in desired state.
  DESIRED_STATE_CHECK_POST_ENFORCEMENT: Re-checks the status of the
    desired state. This check is done for a resource after the enforcement
    of all OS policies. This step is used to determine the final desired
    state status for the resource. It accounts for any resources that
    might have drifted from their desired state due to side effects from
    executing other resources.
r   r   r   r    r!   r   Nr   r   r   r   r   r   rB  DESIRED_STATE_CHECKDESIRED_STATE_ENFORCEMENT$DESIRED_STATE_CHECK_POST_ENFORCEMENTr   r   r   r   r   r  0  &      J !+,(r   r   r   r   r   N)r   r   r   r   r   rY   rZ   r   r   errorMessager[   r   r   r   r   r   r  r  #  s<    
-INN -. &&q),			2A	6$r   r  c                   b    \ rS rSrSr\R                  " SS5      r\R                  " S5      r	Sr
g)rM  iK  a  Message to configure the rollout at the zonal level for the OS policy
assignment.

Fields:
  disruptionBudget: Required. The maximum number (or percentage) of VMs per
    zone to disrupt at any given moment.
  minWaitDuration: Required. This determines the minimum duration of time to
    wait after the configuration changes are applied through the current
    rollout. A VM continues to count towards the `disruption_budget` at
    least until this duration of time has passed after configuration changes
    are applied.
ry   r   r   r   N)r   r   r   r   r   rY   r   disruptionBudgetr   minWaitDurationr   r   r   r   rM  rM  K  s-     ++,<a@))!,/r   rM  c                   `    \ rS rSrSr\R                  " S5      r\R                  " S5      rSr	g)OSPolicyInventoryFilteri]  a  Filtering criteria to select VMs based on inventory details.

Fields:
  osShortName: Required. The OS short name
  osVersion: The OS version Prefix matches are supported if asterisk(*) is
    provided as the last character. For example, to match all versions with
    a major version of `7`, specify the following value for this field `7.*`
    An empty string matches all OS versions.
r   r   r   Nrb  r   r   r   r  r  ]  re  r   r  c                   `    \ rS rSrSr\R                  " S5      r\R                  " S5      rSr	g)OSPolicyOSFilteril  a  Filtering criteria to select VMs based on OS details.

Fields:
  osShortName: This should match OS short name emitted by the OS inventory
    agent. An empty value matches any OS.
  osVersion: This value should match the version emitted by the OS inventory
    agent. Prefix matches are supported if asterisk(*) is provided as the
    last character. For example, to match all versions with a major version
    of `7`, specify the following value for this field `7.*`
r   r   r   Nrb  r   r   r   r  r  l  s)    	 %%a(+##A&)r   r  c                       \ rS rSrSr\R                  " SS5      r\R                  " SS5      r\R                  " S5      r
\R                  " SS	5      r\R                  " S
S5      rSrg)OSPolicyResourcei|  a  An OS policy resource is used to define the desired state configuration
and provides a specific functionality like installing/removing packages,
executing a script etc. The system ensures that resources are always in
their desired state by taking necessary actions if they have drifted from
their desired state.

Fields:
  exec_: Exec resource
  file: File resource
  id: Required. The id of the resource with the following restrictions: *
    Must contain only lowercase letters, numbers, and hyphens. * Must start
    with a letter. * Must be between 1-63 characters. * Must end with a
    number or a letter. * Must be unique within the OS policy.
  pkg: Package resource
  repository: Package repository resource
OSPolicyResourceExecResourcer   OSPolicyResourceFileResourcer   r    OSPolicyResourcePackageResourcer!   "OSPolicyResourceRepositoryResourcerR   r   N)r   r   r   r   r   rY   r   exec_filer   r   pkg
repositoryr   r   r   r   r  r  |  se    " 
 
 !?
C%			 >	B$Q"@!D#%%&JAN*r   r  c                       \ rS rSrSr " S S\R                  5      r\R                  " SSSS9r	\R                  " S	S
5      r
\R                  " S5      r\R                  " SS5      rSrg)r   i  a  Compliance data for an OS policy resource.

Enums:
  StateValueValuesEnum: Compliance state of the OS policy resource.

Fields:
  configSteps: Ordered list of configuration steps taken by the agent for
    the OS policy resource.
  execResourceOutput: ExecResource specific output.
  osPolicyResourceId: The id of the OS policy resource.
  state: Compliance state of the OS policy resource.
c                   ,    \ rS rSrSrSrSrSrSrSr	Sr
g	)
/OSPolicyResourceCompliance.StateValueValuesEnumi  aw  Compliance state of the OS policy resource.

Values:
  OS_POLICY_COMPLIANCE_STATE_UNSPECIFIED: Default value. This value is
    unused.
  COMPLIANT: Compliant state.
  NON_COMPLIANT: Non-compliant state
  UNKNOWN: Unknown compliance state.
  NO_OS_POLICIES_APPLICABLE: No applicable OS policies were found for the
    instance. This state is only applicable to the instance.
r   r   r   r    r!   r   Nr   r   r   r   r   r    r   r   r   OSPolicyResourceConfigStepr   Tr   ,OSPolicyResourceComplianceExecResourceOutputr   r    r!   r   N)r   r   r   r   r   rY   rZ   r   r   r  r  r   r  r[   r   r   r   r   r   r   r     sh    "Y^^ "$ &&'CQQUV+ --.\^_` ,,Q/


4a
8%r   r   c                   <    \ rS rSrSr\R                  " S5      rSrg)r  i  zExecResource specific output.

Fields:
  enforcementOutput: Output from Enforcement phase output file (if run).
    Output size is limited to 100K bytes.
r   r   Nr  r   r   r   r  r    r  r   r  c                       \ rS rSrSr " S S\R                  5      r " S S\R                  5      r\R                  " S5      r
\R                  " SS5      r\R                  " SS	5      rS
rg)r  i  a  Step performed by the OS Config agent for configuring an
`OSPolicyResource` to its desired state.

Enums:
  OutcomeValueValuesEnum: Outcome of the configuration step.
  TypeValueValuesEnum: Configuration step type.

Fields:
  errorMessage: An error message recorded during the execution of this step.
    Only populated when outcome is FAILED.
  outcome: Outcome of the configuration step.
  type: Configuration step type.
c                   $    \ rS rSrSrSrSrSrSrg)1OSPolicyResourceConfigStep.OutcomeValueValuesEnumi  zOutcome of the configuration step.

Values:
  OUTCOME_UNSPECIFIED: Default value. This value is unused.
  SUCCEEDED: The step succeeded.
  FAILED: The step failed.
r   r   r   r   N)	r   r   r   r   r   OUTCOME_UNSPECIFIEDr   FAILEDr   r   r   r   OutcomeValueValuesEnumr    s     IFr   r  c                   ,    \ rS rSrSrSrSrSrSrSr	Sr
g	)
.OSPolicyResourceConfigStep.TypeValueValuesEnumi  a	  Configuration step type.

Values:
  TYPE_UNSPECIFIED: Default value. This value is unused.
  VALIDATION: Validation to detect resource conflicts, schema errors, etc.
  DESIRED_STATE_CHECK: Check the current desired state status of the
    resource.
  DESIRED_STATE_ENFORCEMENT: Enforce the desired state for a resource that
    is not in desired state.
  DESIRED_STATE_CHECK_POST_ENFORCEMENT: Re-check desired state status for
    a resource after enforcement of all resources in the current
    configuration run. This step is used to determine the final desired
    state status for the resource. It accounts for any resources that
    might have drifted from their desired state due to side effects from
    configuring other resources during the current configuration run.
r   r   r   r    r!   r   Nr  r   r   r   r   r    r  r   r   r   r   r    r   N)r   r   r   r   r   rY   rZ   r  r   r   r  r[   outcomer   r   r   r   r   r  r    s_    
y~~ 
-INN -. &&q), 8!<'			2A	6$r   r  c                   d    \ rS rSrSr\R                  " SS5      r\R                  " SS5      rSr	g)r  i  a  A resource that allows executing scripts on the VM. The `ExecResource`
has 2 stages: `validate` and `enforce` and both stages accept a script as an
argument to execute. When the `ExecResource` is applied by the agent, it
first executes the script in the `validate` stage. The `validate` stage can
signal that the `ExecResource` is already in the desired state by returning
an exit code of `100`. If the `ExecResource` is not in the desired state, it
should return an exit code of `101`. Any other exit code returned by this
stage is considered an error. If the `ExecResource` is not in the desired
state based on the exit code from the `validate` stage, the agent proceeds
to execute the script from the `enforce` stage. If the `ExecResource` is
already in the desired state, the `enforce` stage will not be run. Similar
to `validate` stage, the `enforce` stage should return an exit code of `100`
to indicate that the resource in now in its desired state. Any other exit
code is considered an error. NOTE: An exit code of `100` was chosen over `0`
(and `101` vs `1`) to have an explicit indicator of `in desired state`, `not
in desired state` and errors. Because, for example, Powershell will always
return an exit code of `0` unless an `exit` statement is provided in the
script. So, for reasons of consistency and being explicit, exit codes `100`
and `101` were chosen.

Fields:
  enforce: What to run to bring this resource into the desired state. An
    exit code of 100 indicates "success", any other exit code indicates a
    failure running enforce.
  validate: Required. What to run to validate this resource is in the
    desired state. An exit code of 100 indicates "in desired state", and
    exit code of 101 indicates "not in desired state". Any other exit code
    indicates a failure running validate.
 OSPolicyResourceExecResourceExecr   r   r   N)
r   r   r   r   r   rY   r   enforcevalidater   r   r   r   r  r    s/    < ""#EqI'##$FJ(r   r  c                       \ rS rSrSr " S S\R                  5      r\R                  " SSS9r	\R                  " SS	5      r\R                  " SS
5      r\R                  " S5      r\R                  " S5      rSrg)r  i   a  A file or script to execute.

Enums:
  InterpreterValueValuesEnum: Required. The script interpreter to use.

Fields:
  args: Optional arguments to pass to the source during execution.
  file: A remote or local file.
  interpreter: Required. The script interpreter to use.
  outputFilePath: Only recorded for enforce Exec. Path to an output file
    (that is created by this Exec) whose content will be recorded in
    OSPolicyResourceCompliance after a successful run. Absence or failure to
    read this file will result in this ExecResource being non-compliant.
    Output file size is limited to 100K bytes.
  script: An inline script. The size of the script is limited to 32KiB.
c                   (    \ rS rSrSrSrSrSrSrSr	g)	;OSPolicyResourceExecResourceExec.InterpreterValueValuesEnumi2  a  Required. The script interpreter to use.

Values:
  INTERPRETER_UNSPECIFIED: Invalid value, the request will return
    validation error.
  NONE: If an interpreter is not specified, the source is executed
    directly. This execution, without an interpreter, only succeeds for
    executables and scripts that have shebang lines.
  SHELL: Indicates that the script runs with `/bin/sh` on Linux and
    `cmd.exe` on Windows.
  POWERSHELL: Indicates that the script runs with PowerShell.
r   r   r   r    r   N)
r   r   r   r   r   INTERPRETER_UNSPECIFIEDNONESHELL
POWERSHELLr   r   r   r   InterpreterValueValuesEnumr  2  s      DEJr   r  r   Tr   OSPolicyResourceFiler   r    r!   rR   r   N)r   r   r   r   r   rY   rZ   r  r   argsr   r  r[   interpreteroutputFilePathscriptr   r   r   r   r  r     sq    "9>> $ 
		q4	0$			 6	:$##$@!D+((+.  #&r   r  c                       \ rS rSrSr\R                  " S5      r\R                  " SS5      r	\R                  " S5      r\R                  " SS5      rS	rg
)r  iK  af  A remote or local file.

Fields:
  allowInsecure: Defaults to false. When false, files are subject to
    validations based on the file type: Remote: A checksum must be
    specified. Cloud Storage: An object generation number must be specified.
  gcs: A Cloud Storage object.
  localPath: A local path within the VM to use.
  remote: A generic remote file.
r   OSPolicyResourceFileGcsr   r    OSPolicyResourceFileRemoter!   r   N)r   r   r   r   r   rY   r   allowInsecurer   gcsr   	localPathremoter   r   r   r   r  r  K  sO    	 ((+-8!<###A&)!!">B&r   r  c                       \ rS rSrSr\R                  " S5      r\R                  " S5      r	\R                  " S5      r
Srg)r  i]  zSpecifies a file available as a Cloud Storage Object.

Fields:
  bucket: Required. Bucket of the Cloud Storage object.
  generation: Generation number of the Cloud Storage object.
  object: Required. Name of the Cloud Storage object.
r   r   r    r   N)r   r   r   r   r   rY   r   bucketrq   
generationobjectr   r   r   r   r  r  ]  s9       #&%%a(*  #&r   r  c                   `    \ rS rSrSr\R                  " S5      r\R                  " S5      rSr	g)r  ik  zSpecifies a file available via some URI.

Fields:
  sha256Checksum: SHA256 checksum of the remote file.
  uri: Required. URI from which to fetch the object. It should contain both
    the protocol and path following the format `{protocol}://{location}`.
r   r   r   N)
r   r   r   r   r   rY   r   sha256Checksumurir   r   r   r   r  r  k  s)     ((+.a #r   r  c                       \ rS rSrSr " S S\R                  5      r\R                  " S5      r	\R                  " SS5      r\R                  " S5      r\R                  " S	5      r\R                  " SS
5      rSrg)r  ix  a  A resource that manages the state of a file.

Enums:
  StateValueValuesEnum: Required. Desired state of the file.

Fields:
  content: A a file with this content. The size of the content is limited to
    32KiB.
  file: A remote or local source.
  path: Required. The absolute path of the file within the VM.
  permissions: Consists of three octal digits which represent, in order, the
    permissions of the owner, group, and other users for the file (similarly
    to the numeric mode used in the linux chmod utility). Each digit
    represents a three bit number with the 4 bit corresponding to the read
    permissions, the 2 bit corresponds to the write bit, and the one bit
    corresponds to the execute permission. Default behavior is 755. Below
    are some examples of permissions and their associated values: read,
    write, and execute: 7 read and execute: 5 read and write: 6 read only: 4
  state: Required. Desired state of the file.
c                   (    \ rS rSrSrSrSrSrSrSr	g)	1OSPolicyResourceFileResource.StateValueValuesEnumi  a-  Required. Desired state of the file.

Values:
  DESIRED_STATE_UNSPECIFIED: Unspecified is invalid.
  PRESENT: Ensure file at path is present.
  ABSENT: Ensure file at path is absent.
  CONTENTS_MATCH: Ensure the contents of the file at path matches. If the
    file does not exist it will be created.
r   r   r   r    r   N)
r   r   r   r   r   DESIRED_STATE_UNSPECIFIEDPRESENTABSENTCONTENTS_MATCHr   r   r   r   r   r    s     !"GFNr   r   r   r  r   r    r!   rR   r   N)r   r   r   r   r   rY   rZ   r   r   contentr   r  pathpermissionsr[   r   r   r   r   r   r  r  x  so    *Y^^  !!!$'			 6	:$			q	!$%%a(+


4a
8%r   r  c                       \ rS rSrSr\R                  " SSSS9r\R                  " SS5      r\R                  " S	S
SS9r	Sr
g)rE  i  a  Resource groups provide a mechanism to group OS policy resources.
Resource groups enable OS policy authors to create a single OS policy to be
applied to VMs running different operating Systems. When the OS policy is
applied to a target VM, the appropriate resource group within the OS policy
is selected based on the `OSFilter` specified within the resource group.

Fields:
  inventoryFilters: List of inventory filters for the resource group. The
    resources in this resource group are applied to the target VM if it
    satisfies at least one of the following inventory filters. For example,
    to apply this resource group to VMs running either `RHEL` or `CentOS`
    operating systems, specify 2 items for the list with following values:
    inventory_filters[0].os_short_name='rhel' and
    inventory_filters[1].os_short_name='centos' If the list is empty, this
    resource group will be applied to the target VM unconditionally.
  osFilter: Deprecated. Use the `inventory_filters` field instead. Used to
    specify the OS filter for a resource group
  resources: Required. List of resources configured for this resource group.
    The resources are executed in the exact order specified here.
r  r   Tr   r  r   r  r    r   N)r   r   r   r   r   rY   r   inventoryFiltersosFilter	resourcesr   r   r   r   rE  rE    sH    * ++,EqSWX##$6:($$%7TJ)r   rE  c                   r   \ rS rSrSr " S S\R                  5      r\R                  " SS5      r	\R                  " SS5      r
\R                  " SS	5      r\R                  " S
S5      r\R                  " SS5      r\R                  " SS5      r\R                  " SS5      r\R                  " SS5      rSrg)r  i  a  A resource that manages a system package.

Enums:
  DesiredStateValueValuesEnum: Required. The desired state the agent should
    maintain for this package.

Fields:
  apt: A package managed by Apt.
  deb: A deb package file.
  desiredState: Required. The desired state the agent should maintain for
    this package.
  googet: A package managed by GooGet.
  msi: An MSI package.
  rpm: An rpm package file.
  yum: A package managed by YUM.
  zypper: A package managed by Zypper.
c                   $    \ rS rSrSrSrSrSrSrg);OSPolicyResourcePackageResource.DesiredStateValueValuesEnumi  a  Required. The desired state the agent should maintain for this
package.

Values:
  DESIRED_STATE_UNSPECIFIED: Unspecified is invalid.
  INSTALLED: Ensure that the package is installed.
  REMOVED: The agent ensures that the package is not installed and
    uninstalls it if detected.
r   r   r   r   N)	r   r   r   r   r   r  	INSTALLEDREMOVEDr   r   r   r   DesiredStateValueValuesEnumr    s     !"IGr   r  "OSPolicyResourcePackageResourceAPTr   "OSPolicyResourcePackageResourceDebr   r    %OSPolicyResourcePackageResourceGooGetr!   "OSPolicyResourcePackageResourceMSIrR   "OSPolicyResourcePackageResourceRPMrS   "OSPolicyResourcePackageResourceYUMrT   %OSPolicyResourcePackageResourceZypperrU   r   N)r   r   r   r   r   rY   rZ   r  r   aptdebr[   desiredStategoogetmsirpmyumzypperr   r   r   r   r  r    s    $INN  	CQG#CQG#$$%BAF,!!"I1M&CQG#CQG#CQG#!!"I1M&r   r  c                   <    \ rS rSrSr\R                  " S5      rSrg)r  i  zA package managed by APT. - install: `apt-get update && apt-get -y
install [name]` - remove: `apt-get -y remove [name]`

Fields:
  name: Required. Package name.
r   r   N	r   r   r   r   r   rY   r   r   r   r   r   r   r  r         
		q	!$r   r  c                   b    \ rS rSrSr\R                  " S5      r\R                  " SS5      r	Sr
g)r  i  a  A deb package file. dpkg packages only support INSTALLED state.

Fields:
  pullDeps: Whether dependencies should also be installed. - install when
    false: `dpkg -i package` - install when true: `apt-get update && apt-get
    -y install package.deb`
  source: Required. A deb package.
r   r  r   r   Nr   r   r   r   r   rY   r   pullDepsr   sourcer   r   r   r   r  r    ,     ##A&(!!"8!<&r   r  c                   <    \ rS rSrSr\R                  " S5      rSrg)r  i  zA package managed by GooGet. - install: `googet -noconfirm install
package` - remove: `googet -noconfirm remove package`

Fields:
  name: Required. Package name.
r   r   Nr  r   r   r   r  r    r  r   r  c                   `    \ rS rSrSr\R                  " SSS9r\R                  " SS5      r	Sr
g	)
r  i  a'  An MSI package. MSI packages only support INSTALLED state.

Fields:
  properties: Additional properties to use during installation. This should
    be in the format of Property=Setting. Appended to the defaults of
    `ACTION=INSTALL REBOOT=ReallySuppress`.
  source: Required. The MSI package.
r   Tr   r  r   r   N)r   r   r   r   r   rY   r   
propertiesr   r  r   r   r   r   r  r    s.     $$Q6*!!"8!<&r   r  c                   b    \ rS rSrSr\R                  " S5      r\R                  " SS5      r	Sr
g)r  i  aE  An RPM package file. RPM packages only support INSTALLED state.

Fields:
  pullDeps: Whether dependencies should also be installed. - install when
    false: `rpm --upgrade --replacepkgs package.rpm` - install when true:
    `yum -y install package.rpm` or `zypper -y install package.rpm`
  source: Required. An rpm package.
r   r  r   r   Nr  r   r   r   r  r    r  r   r  c                   <    \ rS rSrSr\R                  " S5      rSrg)r  i*  zA package managed by YUM. - install: `yum -y install package` - remove:
`yum -y remove package`

Fields:
  name: Required. Package name.
r   r   Nr  r   r   r   r  r  *  r  r   r  c                   <    \ rS rSrSr\R                  " S5      rSrg)r  i5  zA package managed by Zypper. - install: `zypper -y install package` -
remove: `zypper -y rm package`

Fields:
  name: Required. Package name.
r   r   Nr  r   r   r   r  r  5  r  r   r  c                       \ rS rSrSr\R                  " SS5      r\R                  " SS5      r\R                  " SS5      r	\R                  " S	S
5      r
Srg)r  i@  zA resource that manages a package repository.

Fields:
  apt: An Apt Repository.
  goo: A Goo Repository.
  yum: A Yum Repository.
  zypper: A Zypper Repository.
/OSPolicyResourceRepositoryResourceAptRepositoryr   /OSPolicyResourceRepositoryResourceGooRepositoryr   /OSPolicyResourceRepositoryResourceYumRepositoryr    2OSPolicyResourceRepositoryResourceZypperRepositoryr!   r   N)r   r   r   r   r   rY   r   r  goor  r  r   r   r   r   r  r  @  sY     	PRST#PRST#PRST#!!"VXYZ&r   r  c                       \ rS rSrSr " S S\R                  5      r\R                  " SS5      r	\R                  " SSS9r\R                  " S	5      r\R                  " S
5      r\R                  " S5      rSrg)r  iP  a  Represents a single apt package repository. These will be added to a
repo file that will be managed at
`/etc/apt/sources.list.d/google_osconfig.list`.

Enums:
  ArchiveTypeValueValuesEnum: Required. Type of archive files in this
    repository.

Fields:
  archiveType: Required. Type of archive files in this repository.
  components: Required. List of components for this repository. Must contain
    at least one item.
  distribution: Required. Distribution of this repository.
  gpgKey: URI of the key file for this repository. The agent maintains a
    keyring at `/etc/apt/trusted.gpg.d/osconfig_agent_managed.gpg`.
  uri: Required. URI for this repository.
c                   $    \ rS rSrSrSrSrSrSrg)JOSPolicyResourceRepositoryResourceAptRepository.ArchiveTypeValueValuesEnumic  zRequired. Type of archive files in this repository.

Values:
  ARCHIVE_TYPE_UNSPECIFIED: Unspecified is invalid.
  DEB: Deb indicates that the archive contains binary files.
  DEB_SRC: Deb-src indicates that the archive contains source files.
r   r   r   r   N)	r   r   r   r   r   ARCHIVE_TYPE_UNSPECIFIEDDEBDEB_SRCr   r   r   r   ArchiveTypeValueValuesEnumr  c  s      !
CGr   r  r   r   Tr   r    r!   rR   r   N)r   r   r   r   r   rY   rZ   r  r[   archiveTyper   
componentsdistributiongpgKeyr  r   r   r   r   r  r  P  sn    $
9>> 
 ##$@!D+$$Q6*&&q),  #&a #r   r  c                   `    \ rS rSrSr\R                  " S5      r\R                  " S5      rSr	g)r  iv  zRepresents a Goo package repository. These are added to a repo file that
is managed at `C:/ProgramData/GooGet/repos/google_osconfig.repo`.

Fields:
  name: Required. The name of the repository.
  url: Required. The url of the repository.
r   r   r   N)
r   r   r   r   r   rY   r   r   urlr   r   r   r   r  r  v  s)     
		q	!$a #r   r  c                       \ rS rSrSr\R                  " S5      r\R                  " S5      r\R                  " SSS9r	\R                  " S5      r
S	rg
)r  i  a#  Represents a single yum package repository. These are added to a repo
file that is managed at `/etc/yum.repos.d/google_osconfig.repo`.

Fields:
  baseUrl: Required. The location of the repository directory.
  displayName: The display name of the repository.
  gpgKeys: URIs of GPG keys.
  id: Required. A one word, unique name for this repository. This is the
    `repo id` in the yum config file and also the `display_name` if
    `display_name` is omitted. This id is also used as the unique identifier
    when checking for resource conflicts.
r   r   r    Tr   r!   r   Nr   r   r   r   r   rY   r   baseUrlr
  gpgKeysr   r   r   r   r   r  r    K     !!!$'%%a(+!!!d3'Q"r   r  c                       \ rS rSrSr\R                  " S5      r\R                  " S5      r\R                  " SSS9r	\R                  " S5      r
S	rg
)r  i  a-  Represents a single zypper package repository. These are added to a repo
file that is managed at `/etc/zypp/repos.d/google_osconfig.repo`.

Fields:
  baseUrl: Required. The location of the repository directory.
  displayName: The display name of the repository.
  gpgKeys: URIs of GPG keys.
  id: Required. A one word, unique name for this repository. This is the
    `repo id` in the zypper config file and also the `display_name` if
    `display_name` is omitted. This id is also used as the unique identifier
    when checking for GuestPolicy conflicts.
r   r   r    Tr   r!   r   Nr  r   r   r   r  r    r  r   r  c                   z   \ rS rSrSr\R                  " S5       " S S\R                  5      5       r	\R                  " S5       " S S\R                  5      5       r
\R                  " S5      r\R                  " S	S
5      r\R                  " SS5      r\R                   " S5      r\R                  " SS5      rSrg)	Operationi  a  This resource represents a long-running operation that is the result of
a network API call.

Messages:
  MetadataValue: Service-specific metadata associated with the operation. It
    typically contains progress information and common metadata such as
    create time. Some services might not provide such metadata. Any method
    that returns a long-running operation should document the metadata type,
    if any.
  ResponseValue: The normal, successful response of the operation. If the
    original method returns no data on success, such as `Delete`, the
    response is `google.protobuf.Empty`. If the original method is standard
    `Get`/`Create`/`Update`, the response should be the resource. For other
    methods, the response should have the type `XxxResponse`, where `Xxx` is
    the original method name. For example, if the original method name is
    `TakeSnapshot()`, the inferred response type is `TakeSnapshotResponse`.

Fields:
  done: If the value is `false`, it means the operation is still in
    progress. If `true`, the operation is completed, and either `error` or
    `response` is available.
  error: The error result of the operation in case of failure or
    cancellation.
  metadata: Service-specific metadata associated with the operation. It
    typically contains progress information and common metadata such as
    create time. Some services might not provide such metadata. Any method
    that returns a long-running operation should document the metadata type,
    if any.
  name: The server-assigned name, which is only unique within the same
    service that originally returns it. If you use the default HTTP mapping,
    the `name` should be a resource name ending with
    `operations/{unique_id}`.
  response: The normal, successful response of the operation. If the
    original method returns no data on success, such as `Delete`, the
    response is `google.protobuf.Empty`. If the original method is standard
    `Get`/`Create`/`Update`, the response should be the resource. For other
    methods, the response should have the type `XxxResponse`, where `Xxx` is
    the original method name. For example, if the original method name is
    `TakeSnapshot()`, the inferred response type is `TakeSnapshotResponse`.
r   c                   f    \ rS rSrSr " S S\R                  5      r\R                  " SSSS9r	Sr
g	)
Operation.MetadataValuei  a  Service-specific metadata associated with the operation. It typically
contains progress information and common metadata such as create time.
Some services might not provide such metadata. Any method that returns a
long-running operation should document the metadata type, if any.

Messages:
  AdditionalProperty: An additional property for a MetadataValue object.

Fields:
  additionalProperties: Properties of the object. Contains field @type
    with type URL.
c                   b    \ rS rSrSr\R                  " S5      r\R                  " SS5      r	Sr
g)*Operation.MetadataValue.AdditionalPropertyi  zAn additional property for a MetadataValue object.

Fields:
  key: Name of the additional property.
  value: A extra_types.JsonValue attribute.
r   extra_types.JsonValuer   r   Nr   r   r   r   r   r"    ,    
 !!!$c$$%<a@er   r   r   Tr   r   Nr   r   r   r   MetadataValuer     s4    	AY.. 	A %112FTXYr   r%  c                   f    \ rS rSrSr " S S\R                  5      r\R                  " SSSS9r	Sr
g	)
Operation.ResponseValuei  a  The normal, successful response of the operation. If the original
method returns no data on success, such as `Delete`, the response is
`google.protobuf.Empty`. If the original method is standard
`Get`/`Create`/`Update`, the response should be the resource. For other
methods, the response should have the type `XxxResponse`, where `Xxx` is
the original method name. For example, if the original method name is
`TakeSnapshot()`, the inferred response type is `TakeSnapshotResponse`.

Messages:
  AdditionalProperty: An additional property for a ResponseValue object.

Fields:
  additionalProperties: Properties of the object. Contains field @type
    with type URL.
c                   b    \ rS rSrSr\R                  " S5      r\R                  " SS5      r	Sr
g)*Operation.ResponseValue.AdditionalPropertyi  zAn additional property for a ResponseValue object.

Fields:
  key: Name of the additional property.
  value: A extra_types.JsonValue attribute.
r   r#  r   r   Nr   r   r   r   r   r)    r$  r   r   r   Tr   r   Nr   r   r   r   ResponseValuer'    s4     	AY.. 	A %112FTXYr   r*  r   Statusr   r    r!   rR   r   N)r   r   r   r   r   r   r   rY   r   r%  r*  r   doner   errormetadatar   r   responser   r   r   r   r  r    s    'R !!"89Zi'' Z :Z6 !!"89Zi'' Z :Z< 
			"$

 
 1
-%##OQ7(			q	!$##OQ7(r   r  c                   :    \ rS rSrSr\R                  " SSS9rSrg)@OsconfigProjectsLocationsInstanceOSPoliciesCompliancesGetRequesti  a  A OsconfigProjectsLocationsInstanceOSPoliciesCompliancesGetRequest
object.

Fields:
  name: Required. API resource name for instance OS policies compliance
    resource. Format: `projects/{project}/locations/{location}/instanceOSPol
    iciesCompliances/{instance}` For `{project}`, either Compute Engine
    project-number or project-id can be provided. For `{instance}`, either
    Compute Engine VM instance-id or instance-name can be provided.
r   Trequiredr   Nr  r   r   r   r1  r1        	 
		q4	0$r   r1  c                       \ rS rSrSr\R                  " S5      r\R                  " S\R                  R                  S9r\R                  " S5      r\R                  " SSS	9rS
rg)AOsconfigProjectsLocationsInstanceOSPoliciesCompliancesListRequesti&  a  A OsconfigProjectsLocationsInstanceOSPoliciesCompliancesListRequest
object.

Fields:
  filter: If provided, this field specifies the criteria that must be met by
    a `InstanceOSPoliciesCompliance` API resource to be included in the
    response.
  pageSize: The maximum number of results to return.
  pageToken: A pagination token returned from a previous call to
    `ListInstanceOSPoliciesCompliances` that indicates where this listing
    should continue from.
  parent: Required. The parent resource name. Format:
    `projects/{project}/locations/{location}` For `{project}`, either
    Compute Engine project-number or project-id can be provided.
r   r   rP   r    r!   Tr2  r   Nr   r   r   r   r   rY   r   filterrq   r`   rr   pageSize	pageTokenparentr   r   r   r   r6  r6  &  sY        #&##Ay/@/@/F/FG(##A&)  T2&r   r6  c                       \ rS rSrSr " S S\R                  5      r\R                  " SSS9r	\R                  " SS5      rS	rg
)7OsconfigProjectsLocationsInstancesInventoriesGetRequesti=  a  A OsconfigProjectsLocationsInstancesInventoriesGetRequest object.

Enums:
  ViewValueValuesEnum: Inventory view indicating what information should be
    included in the inventory resource. If unspecified, the default view is
    BASIC.

Fields:
  name: Required. API resource name for inventory resource. Format:
    `projects/{project}/locations/{location}/instances/{instance}/inventory`
    For `{project}`, either `project-number` or `project-id` can be
    provided. For `{instance}`, either Compute Engine `instance-id` or
    `instance-name` can be provided.
  view: Inventory view indicating what information should be included in the
    inventory resource. If unspecified, the default view is BASIC.
c                   $    \ rS rSrSrSrSrSrSrg)KOsconfigProjectsLocationsInstancesInventoriesGetRequest.ViewValueValuesEnumiO  L  Inventory view indicating what information should be included in the
inventory resource. If unspecified, the default view is BASIC.

Values:
  INVENTORY_VIEW_UNSPECIFIED: The default value. The API defaults to the
    BASIC view.
  BASIC: Returns the basic inventory information that includes `os_info`.
  FULL: Returns all fields.
r   r   r   r   N	r   r   r   r   r   INVENTORY_VIEW_UNSPECIFIEDBASICFULLr   r   r   r   ViewValueValuesEnumr?  O       "#EDr   rE  r   Tr2  r   r   N)r   r   r   r   r   rY   rZ   rE  r   r   r[   viewr   r   r   r   r=  r=  =  s>    "INN  
		q4	0$			2A	6$r   r=  c                      \ rS rSrSr " S S\R                  5      r\R                  " S5      r	\R                  " S\R                  R                  S9r\R                  " S5      r\R                  " S	S
S9r\R                   " SS5      rSrg)8OsconfigProjectsLocationsInstancesInventoriesListRequestia  a  A OsconfigProjectsLocationsInstancesInventoriesListRequest object.

Enums:
  ViewValueValuesEnum: Inventory view indicating what information should be
    included in the inventory resource. If unspecified, the default view is
    BASIC.

Fields:
  filter: If provided, this field specifies the criteria that must be met by
    a `Inventory` API resource to be included in the response.
  pageSize: The maximum number of results to return.
  pageToken: A pagination token returned from a previous call to
    `ListInventories` that indicates where this listing should continue
    from.
  parent: Required. The parent resource name. Format:
    `projects/{project}/locations/{location}/instances/-` For `{project}`,
    either `project-number` or `project-id` can be provided.
  view: Inventory view indicating what information should be included in the
    inventory resource. If unspecified, the default view is BASIC.
c                   $    \ rS rSrSrSrSrSrSrg)LOsconfigProjectsLocationsInstancesInventoriesListRequest.ViewValueValuesEnumiw  r@  r   r   r   r   NrA  r   r   r   rE  rK  w  rF  r   rE  r   r   rP   r    r!   Tr2  rR   r   N)r   r   r   r   r   rY   rZ   rE  r   r8  rq   r`   rr   r9  r:  r;  r[   rG  r   r   r   r   rI  rI  a  s|    *INN    #&##Ay/@/@/F/FG(##A&)  T2&			2A	6$r   rI  c                   :    \ rS rSrSr\R                  " SSS9rSrg)FOsconfigProjectsLocationsInstancesOsPolicyAssignmentsReportsGetRequesti  a  A OsconfigProjectsLocationsInstancesOsPolicyAssignmentsReportsGetRequest
object.

Fields:
  name: Required. API resource name for OS policy assignment report. Format:
    `/projects/{project}/locations/{location}/instances/{instance}/osPolicyA
    ssignments/{assignment}/report` For `{project}`, either `project-number`
    or `project-id` can be provided. For `{instance_id}`, either Compute
    Engine `instance-id` or `instance-name` can be provided. For
    `{assignment_id}`, the OSPolicyAssignment id must be provided.
r   Tr2  r   Nr  r   r   r   rM  rM    s    
 
		q4	0$r   rM  c                       \ rS rSrSr\R                  " S5      r\R                  " S\R                  R                  S9r\R                  " S5      r\R                  " SSS	9rS
rg)GOsconfigProjectsLocationsInstancesOsPolicyAssignmentsReportsListRequesti  a  A
OsconfigProjectsLocationsInstancesOsPolicyAssignmentsReportsListRequest
object.

Fields:
  filter: If provided, this field specifies the criteria that must be met by
    the `OSPolicyAssignmentReport` API resource that is included in the
    response.
  pageSize: The maximum number of results to return.
  pageToken: A pagination token returned from a previous call to the
    `ListOSPolicyAssignmentReports` method that indicates where this listing
    should continue from.
  parent: Required. The parent resource name. Format: `projects/{project}/lo
    cations/{location}/instances/{instance}/osPolicyAssignments/{assignment}
    /reports` For `{project}`, either `project-number` or `project-id` can
    be provided. For `{instance}`, either `instance-name`, `instance-id`, or
    `-` can be provided. If '-' is provided, the response will include
    OSPolicyAssignmentReports for all instances in the project/location. For
    `{assignment}`, either `assignment-id` or `-` can be provided. If '-' is
    provided, the response will include OSPolicyAssignmentReports for all
    OSPolicyAssignments in the project/location. Either {instance} or
    {assignment} must be `-`. For example: `projects/{project}/locations/{lo
    cation}/instances/{instance}/osPolicyAssignments/-/reports` returns all
    reports for the instance `projects/{project}/locations/{location}/instan
    ces/-/osPolicyAssignments/{assignment-id}/reports` returns all the
    reports for the given assignment across all instances. `projects/{projec
    t}/locations/{location}/instances/-/osPolicyAssignments/-/reports`
    returns all the reports for all assignments across all instances.
r   r   rP   r    r!   Tr2  r   Nr7  r   r   r   rO  rO    sY    <   #&##Ay/@/@/F/FG(##A&)  T2&r   rO  c                   :    \ rS rSrSr\R                  " SSS9rSrg)@OsconfigProjectsLocationsInstancesVulnerabilityReportsGetRequesti  a  A OsconfigProjectsLocationsInstancesVulnerabilityReportsGetRequest
object.

Fields:
  name: Required. API resource name for vulnerability resource. Format: `pro
    jects/{project}/locations/{location}/instances/{instance}/vulnerabilityR
    eport` For `{project}`, either `project-number` or `project-id` can be
    provided. For `{instance}`, either Compute Engine `instance-id` or
    `instance-name` can be provided.
r   Tr2  r   Nr  r   r   r   rQ  rQ    r4  r   rQ  c                       \ rS rSrSr\R                  " S5      r\R                  " S\R                  R                  S9r\R                  " S5      r\R                  " SSS	9rS
rg)AOsconfigProjectsLocationsInstancesVulnerabilityReportsListRequesti  a/  A OsconfigProjectsLocationsInstancesVulnerabilityReportsListRequest
object.

Fields:
  filter: This field supports filtering by the severity level for the
    vulnerability. For a list of severity levels, see [Severity levels for
    vulnerabilities](https://cloud.google.com/container-
    analysis/docs/container-scanning-
    overview#severity_levels_for_vulnerabilities). The filter field follows
    the rules described in the [AIP-160](https://google.aip.dev/160)
    guidelines as follows: + **Filter for a specific severity type**: you
    can list reports that contain vulnerabilities that are classified as
    medium by specifying `vulnerabilities.details.severity:MEDIUM`. +
    **Filter for a range of severities** : you can list reports that have
    vulnerabilities that are classified as critical or high by specifying
    `vulnerabilities.details.severity:HIGH OR
    vulnerabilities.details.severity:CRITICAL`
  pageSize: The maximum number of results to return.
  pageToken: A pagination token returned from a previous call to
    `ListVulnerabilityReports` that indicates where this listing should
    continue from.
  parent: Required. The parent resource name. Format:
    `projects/{project}/locations/{location}/instances/-` For `{project}`,
    either `project-number` or `project-id` can be provided.
r   r   rP   r    r!   Tr2  r   Nr7  r   r   r   rS  rS    sY    4   #&##Ay/@/@/F/FG(##A&)  T2&r   rS  c                       \ rS rSrSr\R                  " SS5      r\R                  " S5      r	\R                  " SSS9r
\R                  " S	5      rS
rg)9OsconfigProjectsLocationsOsPolicyAssignmentsCreateRequesti  a(  A OsconfigProjectsLocationsOsPolicyAssignmentsCreateRequest object.

Fields:
  oSPolicyAssignment: A OSPolicyAssignment resource to be passed as the
    request body.
  osPolicyAssignmentId: Required. The logical name of the OS policy
    assignment in the project with the following restrictions: * Must
    contain only lowercase letters, numbers, and hyphens. * Must start with
    a letter. * Must be between 1-63 characters. * Must end with a number or
    a letter. * Must be unique within the project.
  parent: Required. The parent resource name in the form:
    projects/{project}/locations/{location}
  requestId: Optional. A unique identifier for this request. Restricted to
    36 ASCII characters. A random UUID is recommended. This request is only
    idempotent if a `request_id` is provided.
r1  r   r   r    Tr2  r!   r   N)r   r   r   r   r   rY   r   oSPolicyAssignmentr   osPolicyAssignmentIdr;  	requestIdr   r   r   r   rU  rU    sP    " !--.BAF"..q1  T2&##A&)r   rU  c                   ^    \ rS rSrSr\R                  " SSS9r\R                  " S5      rSr	g)	9OsconfigProjectsLocationsOsPolicyAssignmentsDeleteRequesti		  aW  A OsconfigProjectsLocationsOsPolicyAssignmentsDeleteRequest object.

Fields:
  name: Required. The name of the OS policy assignment to be deleted
  requestId: Optional. A unique identifier for this request. Restricted to
    36 ASCII characters. A random UUID is recommended. This request is only
    idempotent if a `request_id` is provided.
r   Tr2  r   r   N)
r   r   r   r   r   rY   r   r   rX  r   r   r   r   rZ  rZ  		  s+     
		q4	0$##A&)r   rZ  c                   :    \ rS rSrSr\R                  " SSS9rSrg)6OsconfigProjectsLocationsOsPolicyAssignmentsGetRequesti	  zA OsconfigProjectsLocationsOsPolicyAssignmentsGetRequest object.

Fields:
  name: Required. The resource name of OS policy assignment. Format: `projec
    ts/{project}/locations/{location}/osPolicyAssignments/{os_policy_assignm
    ent}@{revisionId}`
r   Tr2  r   Nr  r   r   r   r\  r\  	  s     
		q4	0$r   r\  c                       \ rS rSrSr\R                  " S\R                  R                  S9r	\R                  " S5      r\R                  " SSS9rS	rg
)7OsconfigProjectsLocationsOsPolicyAssignmentsListRequesti#	  aM  A OsconfigProjectsLocationsOsPolicyAssignmentsListRequest object.

Fields:
  pageSize: The maximum number of assignments to return.
  pageToken: A pagination token returned from a previous call to
    `ListOSPolicyAssignments` that indicates where this listing should
    continue from.
  parent: Required. The parent resource name.
r   rP   r   r    Tr2  r   N)r   r   r   r   r   rY   rq   r`   rr   r9  r   r:  r;  r   r   r   r   r^  r^  #	  sI     ##Ay/@/@/F/FG(##A&)  T2&r   r^  c                       \ rS rSrSr\R                  " SSS9r\R                  " S\R                  R                  S9r\R                  " S5      rS	rg
)@OsconfigProjectsLocationsOsPolicyAssignmentsListRevisionsRequesti3	  a  A OsconfigProjectsLocationsOsPolicyAssignmentsListRevisionsRequest
object.

Fields:
  name: Required. The name of the OS policy assignment to list revisions
    for.
  pageSize: The maximum number of revisions to return.
  pageToken: A pagination token returned from a previous call to
    `ListOSPolicyAssignmentRevisions` that indicates where this listing
    should continue from.
r   Tr2  r   rP   r    r   N)r   r   r   r   r   rY   r   r   rq   r`   rr   r9  r:  r   r   r   r   r`  r`  3	  sI    
 
		q4	0$##Ay/@/@/F/FG(##A&)r   r`  c                   `    \ rS rSrSr\R                  " SS5      r\R                  " SSS9r	Sr
g	)
COsconfigProjectsLocationsOsPolicyAssignmentsOperationsCancelRequestiE	  zA OsconfigProjectsLocationsOsPolicyAssignmentsOperationsCancelRequest
object.

Fields:
  cancelOperationRequest: A CancelOperationRequest resource to be passed as
    the request body.
  name: The name of the operation resource to be cancelled.
rk   r   r   Tr2  r   N)r   r   r   r   r   rY   r   cancelOperationRequestr   r   r   r   r   r   rb  rb  E	  s/     %112JAN			q4	0$r   rb  c                   :    \ rS rSrSr\R                  " SSS9rSrg)@OsconfigProjectsLocationsOsPolicyAssignmentsOperationsGetRequestiS	  zA OsconfigProjectsLocationsOsPolicyAssignmentsOperationsGetRequest
object.

Fields:
  name: The name of the operation resource.
r   Tr2  r   Nr  r   r   r   re  re  S	  s     
		q4	0$r   re  c                       \ rS rSrSr\R                  " S5      r\R                  " SSS9r	\R                  " SS5      r\R                  " S	5      r\R                  " S
5      rSrg)8OsconfigProjectsLocationsOsPolicyAssignmentsPatchRequesti^	  aN  A OsconfigProjectsLocationsOsPolicyAssignmentsPatchRequest object.

Fields:
  allowMissing: Optional. If set to true, and the OS policy assignment is
    not found, a new OS policy assignment will be created. In this
    situation, `update_mask` is ignored.
  name: Resource name. Format: `projects/{project_number}/locations/{locatio
    n}/osPolicyAssignments/{os_policy_assignment_id}` This field is ignored
    when you create an OS policy assignment.
  oSPolicyAssignment: A OSPolicyAssignment resource to be passed as the
    request body.
  requestId: Optional. A unique identifier for this request. Restricted to
    36 ASCII characters. A random UUID is recommended. This request is only
    idempotent if a `request_id` is provided.
  updateMask: Optional. Field mask that controls which fields of the
    assignment should be updated.
r   r   Tr2  r1  r    r!   rR   r   N)r   r   r   r   r   rY   r   allowMissingr   r   r   rV  rX  
updateMaskr   r   r   r   rg  rg  ^	  s_    $ ''*,			q4	0$ --.BAF##A&)$$Q'*r   rg  c                      \ rS rSrSr " S S\R                  5      r " S S\R                  5      r\R                  " SS5      r
\R                  " S5      r\R                  " SS	S
S9r\R                  " S5      r\R                  " S5      r\R                  " S5      r\R                  " S5      r\R$                  " SSS9r\R                  " S5      r\R                  " S5      r\R                  " S5      r\R                  " S5      rSrg)StandardQueryParametersix	  a  Query parameters accepted by all methods.

Enums:
  FXgafvValueValuesEnum: V1 error format.
  AltValueValuesEnum: Data format for response.

Fields:
  f__xgafv: V1 error format.
  access_token: OAuth access token.
  alt: Data format for response.
  callback: JSONP
  fields: Selector specifying which fields to include in a partial response.
  key: API key. Your API key identifies your project and provides you with
    API access, quota, and reports. Required unless you provide an OAuth 2.0
    token.
  oauth_token: OAuth 2.0 token for the current user.
  prettyPrint: Returns response with indentations and line breaks.
  quotaUser: Available to use for quota purposes for server-side
    applications. Can be any arbitrary string assigned to a user, but should
    not exceed 40 characters.
  trace: A tracing token of the form "token:<tokenid>" to include in api
    requests.
  uploadType: Legacy upload protocol for media (e.g. "media", "multipart").
  upload_protocol: Upload protocol for media (e.g. "raw", "multipart").
c                   $    \ rS rSrSrSrSrSrSrg)*StandardQueryParameters.AltValueValuesEnumi	  zData format for response.

Values:
  json: Responses with Content-Type of application/json
  media: Media download with context-dependent Content-Type
  proto: Responses with Content-Type of application/x-protobuf
r   r   r   r   N)	r   r   r   r   r   jsonmediaprotor   r   r   r   AltValueValuesEnumrm  	  s     DEEr   rq  c                        \ rS rSrSrSrSrSrg)-StandardQueryParameters.FXgafvValueValuesEnumi	  zFV1 error format.

Values:
  _1: v1 error format
  _2: v2 error format
r   r   r   N)r   r   r   r   r   _1_2r   r   r   r   FXgafvValueValuesEnumrs  	  s     
B	
Br   rv  r   r   r    rn  )defaultr!   rR   rS   rT   rU   TrV   rW   rX   rN  r   N)r   r   r   r   r   rY   rZ   rq  rv  r[   f__xgafvr   access_tokenaltcallbackfieldsr   oauth_tokenr   prettyPrint	quotaUsertrace
uploadTypeupload_protocolr   r   r   r   rk  rk  x	  s    4
9>> 
inn    !8!<(&&q),0!VD#""1%(  #&a #%%a(+&&q$7+##A&)



#%$$R(*))"-/r   rk  c                       \ rS rSrSr\R                  " S5       " S S\R                  5      5       r	\R                  " S\R                  R                  S9r\R                  " SSS	S
9r\R                   " S5      rSrg)r+  i	  a  The `Status` type defines a logical error model that is suitable for
different programming environments, including REST APIs and RPC APIs. It is
used by [gRPC](https://github.com/grpc). Each `Status` message contains
three pieces of data: error code, error message, and error details. You can
find out more about this error model and how to work with it in the [API
Design Guide](https://cloud.google.com/apis/design/errors).

Messages:
  DetailsValueListEntry: A DetailsValueListEntry object.

Fields:
  code: The status code, which should be an enum value of google.rpc.Code.
  details: A list of messages that carry the error details. There is a
    common set of message types for APIs to use.
  message: A developer-facing error message, which should be in English. Any
    user-facing error message should be localized and sent in the
    google.rpc.Status.details field, or localized by the client.
r   c                   f    \ rS rSrSr " S S\R                  5      r\R                  " SSSS9r	Sr
g	)
Status.DetailsValueListEntryi	  zA DetailsValueListEntry object.

Messages:
  AdditionalProperty: An additional property for a DetailsValueListEntry
    object.

Fields:
  additionalProperties: Properties of the object. Contains field @type
    with type URL.
c                   b    \ rS rSrSr\R                  " S5      r\R                  " SS5      r	Sr
g)/Status.DetailsValueListEntry.AdditionalPropertyi	  zAn additional property for a DetailsValueListEntry object.

Fields:
  key: Name of the additional property.
  value: A extra_types.JsonValue attribute.
r   r#  r   r   Nr   r   r   r   r   r  	  r$  r   r   r   Tr   r   Nr   r   r   r   DetailsValueListEntryr  	  s4    		AY.. 	A %112FTXYr   r  r   rP   r   Tr   r    r   N)r   r   r   r   r   r   r   rY   r   r  rq   r`   rr   coder   detailsr   messager   r   r   r   r+  r+  	  s|    & !!"89Zi// Z :Z2 
		9+<+<+B+B	C$""#:AM'!!!$'r   r+  c                      \ rS rSrSr\R                  " S\R                  R                  S9r	\R                  " S\R                  R                  S9r
\R                  " S5      r\R                  " SS5      r\R                  " S	5      rS
rg)StatusProtoi	  a  Wire-format for a Status object

Fields:
  canonicalCode: copybara:strip_begin(b/383363683)
    copybara:strip_end_and_replace optional int32 canonical_code = 6;
  code: Numeric code drawn from the space specified below. Often, this is
    the canonical error space, and code is drawn from
    google3/util/task/codes.proto copybara:strip_begin(b/383363683)
    copybara:strip_end_and_replace optional int32 code = 1;
  message: Detail message copybara:strip_begin(b/383363683)
    copybara:strip_end_and_replace optional string message = 3;
  messageSet: message_set associates an arbitrary proto message with the
    status. copybara:strip_begin(b/383363683) copybara:strip_end_and_replace
    optional proto2.bridge.MessageSet message_set = 5;
  space: copybara:strip_begin(b/383363683) Space to which this status
    belongs copybara:strip_end_and_replace optional string space = 2; //
    Space to which this status belongs
r   rP   r   r    r<  r!   rR   r   N)r   r   r   r   r   rY   rq   r`   rr   canonicalCoder  r   r  r   
messageSetspacer   r   r   r   r  r  	  sw    & ((I4E4E4K4KL-			9+<+<+B+B	C$!!!$'%%lA6*



"%r   r  c                       \ rS rSrSr " S S\R                  5      r\R                  " SS5      r	\R                  " S5      r\R                  " S5      r\R                  " SS	S
S9rSrg)r9  i
  a  This API resource represents the vulnerability report for a specified
Compute Engine virtual machine (VM) instance at a given point in time. For
more information, see [Vulnerability
reports](https://cloud.google.com/compute/docs/instances/os-inventory-
management#vulnerability-reports).

Enums:
  HighestUpgradableCveSeverityValueValuesEnum: Output only. Highest level of
    severity among all the upgradable vulnerabilities with CVEs attached.

Fields:
  highestUpgradableCveSeverity: Output only. Highest level of severity among
    all the upgradable vulnerabilities with CVEs attached.
  name: Output only. The `vulnerabilityReport` API resource name. Format: `p
    rojects/{project_number}/locations/{location}/instances/{instance_id}/vu
    lnerabilityReport`
  updateTime: Output only. The timestamp for when the last vulnerability
    report was generated for the VM.
  vulnerabilities: Output only. List of vulnerabilities affecting the VM.
c                   4    \ rS rSrSrSrSrSrSrSr	Sr
S	rS
rg)?VulnerabilityReport.HighestUpgradableCveSeverityValueValuesEnumi
  a  Output only. Highest level of severity among all the upgradable
vulnerabilities with CVEs attached.

Values:
  VULNERABILITY_SEVERITY_LEVEL_UNSPECIFIED: Default SeverityLevel. This
    value is unused.
  NONE: Vulnerability has no severity level.
  MINIMAL: Vulnerability severity level is minimal. This is level below
    the low severity level.
  LOW: Vulnerability severity level is low. This is level below the medium
    severity level.
  MEDIUM: Vulnerability severity level is medium. This is level below the
    high severity level.
  HIGH: Vulnerability severity level is high. This is level below the
    critical severity level.
  CRITICAL: Vulnerability severity level is critical. This is the highest
    severity level.
r   r   r   r    r!   rR   rS   r   N)r   r   r   r   r   (VULNERABILITY_SEVERITY_LEVEL_UNSPECIFIEDr  MINIMALLOWMEDIUMHIGHCRITICALr   r   r   r   +HighestUpgradableCveSeverityValueValuesEnumr  
  s-    $ 01,DG
CFDHr   r  r   r   r     VulnerabilityReportVulnerabilityr!   Tr   r   N)r   r   r   r   r   rY   rZ   r  r[   highestUpgradableCveSeverityr   r   r   r   vulnerabilitiesr   r   r   r   r9  r9  
  sd    *INN 6 "+!4!45bde!f			q	!$$$Q'***+Mq[_`/r   r9  c                       \ rS rSrSr\R                  " SSS9r\R                  " S5      r\R                  " SS5      r
\R                  " S	SS9r\R                  " S
SSS9r\R                  " S5      rSrg)r  i<
  aI  A vulnerability affecting the VM instance.

Fields:
  availableInventoryItemIds: Corresponds to the `AVAILABLE_PACKAGE`
    inventory item on the VM. If the vulnerability report was not updated
    after the VM inventory update, these values might not display in VM
    inventory. If there is no available fix, the field is empty. The
    `inventory_item` value specifies the latest `SoftwarePackage` available
    to the VM that fixes the vulnerability.
  createTime: The timestamp for when the vulnerability was first detected.
  details: Contains metadata as per the upstream feed of the operating
    system and NVD.
  installedInventoryItemIds: Corresponds to the `INSTALLED_PACKAGE`
    inventory item on the VM. This field displays the inventory items
    affected by this vulnerability. If the vulnerability report was not
    updated after the VM inventory update, these values might not display in
    VM inventory. For some distros, this field may be empty.
  items: List of items affected by the vulnerability.
  updateTime: The timestamp for when the vulnerability was last modified.
r   Tr   r   'VulnerabilityReportVulnerabilityDetailsr    r!   $VulnerabilityReportVulnerabilityItemrR   rS   r   N)r   r   r   r   r   rY   r   availableInventoryItemIdsr   r   r  installedInventoryItemIdsr   r   r   r   r   r   r  r  <
  sx    * (33AE$$Q'*""#LaP''33AE

 
 !GUY
Z%$$Q'*r   r  c                      \ rS rSrSr\R                  " S5      r\R                  " S\R                  R                  S9r\R                  " SS5      r\R                  " S5      r\R                  " S	S
SS9r\R                  " S5      rSrg)r  iZ
  a  Contains metadata information for the vulnerability. This information is
collected from the upstream feed of the operating system.

Fields:
  cve: The CVE of the vulnerability. CVE cannot be empty and the combination
    of should be unique across vulnerabilities for a VM.
  cvssV2Score: The CVSS V2 score of this vulnerability. CVSS V2 score is on
    a scale of 0 - 10 where 0 indicates low severity and 10 indicates high
    severity.
  cvssV3: The full description of the CVSSv3 for this vulnerability from
    NVD.
  description: The note or description describing the vulnerability from the
    distro.
  references: Corresponds to the references attached to the
    `VulnerabilityDetails`.
  severity: Assigned severity/impact ranking from the distro.
r   r   rP   r	   r    r!   0VulnerabilityReportVulnerabilityDetailsReferencerR   Tr   rS   r   N)r   r   r   r   r   rY   r   cver_   r`   ra   cvssV2Scorer   cvssV3r  
referencesr"  r   r   r   r   r  r  Z
  s    $ 	a #$$Q	0A0A0G0GH+!!(A.&%%a(+%%&XZ[fjk*""1%(r   r  c                   `    \ rS rSrSr\R                  " S5      r\R                  " S5      rSr	g)r  iu
  z~A reference for this vulnerability.

Fields:
  source: The source of the reference e.g. NVD.
  url: The url of the reference.
r   r   r   N)
r   r   r   r   r   rY   r   r  r  r   r   r   r   r  r  u
  s)       #&a #r   r  c                       \ rS rSrSr\R                  " S5      r\R                  " S5      r\R                  " S5      r	\R                  " S5      r
Srg)	r  i
  aB  OS inventory item that is affected by a vulnerability or fixed as a
result of a vulnerability.

Fields:
  availableInventoryItemId: Corresponds to the `AVAILABLE_PACKAGE` inventory
    item on the VM. If the vulnerability report was not updated after the VM
    inventory update, these values might not display in VM inventory. If
    there is no available fix, the field is empty. The `inventory_item`
    value specifies the latest `SoftwarePackage` available to the VM that
    fixes the vulnerability.
  fixedCpeUri: The recommended [CPE
    URI](https://cpe.mitre.org/specification/) update that contains a fix
    for this vulnerability.
  installedInventoryItemId: Corresponds to the `INSTALLED_PACKAGE` inventory
    item on the VM. This field displays the inventory items affected by this
    vulnerability. If the vulnerability report was not updated after the VM
    inventory update, these values might not display in VM inventory. For
    some operating systems, this field might be empty.
  upstreamFix: The upstream OS patch, packages or KB that fixes the
    vulnerability.
r   r   r    r!   r   N)r   r   r   r   r   rY   r   availableInventoryItemIdfixedCpeUriinstalledInventoryItemIdupstreamFixr   r   r   r   r  r  
  sK    , '2215%%a(+&2215%%a(+r   r  r  execrx  z$.xgafvrt  1ru  2N)hr   
__future__r   apitools.base.protorpcliter   rY   apitools.base.pyr   r   packager   r	   rk   ro   rw   ry   r}   r   r   r   r   r   r   r   r   r   r   r   r   r  r   r%  r)  r,  r0  r6  r8  r<  r>  r1  rL  r\  r[  rn  r-  rt  r{  r  r  rM  r  r  r  r   r  r  r  r  r  r  r  r  rE  r  r  r  r  r  r  r  r  r  r  r  r  r  r  r1  r6  r=  rI  rM  rO  rQ  rS  rU  rZ  r\  r^  r`  rb  re  rg  rk  r+  r  r9  r  r  r  r  AddCustomJsonFieldMappingAddCustomJsonEnumMappingrv  r   r   r   <module>r     s   ' < % ( UNY UNp=Y.. =D9 D4I GY&& G4/y?P?P 4/n"Y->-> "6"1B1B "6B99#4#4 B9J&9Y5F5F &9R8(	!! 8(v2(I%% 2(j%i'' %6"By00 "BJ%	 1 1 %')"3"3 '.)1B1B )( &I$5$5  &F	"9J9J 	"%9,, % +	0A0A ++i// +cI,=,= c
Wi.?.? 
W
Wi&7&7 
WYy'8'8 Y
"" 
/Uy   /UdK"** K"\9y'8'8 98'	0A0A '+4!2!2 +4\4/)*;*; 4/n(y00 (>3Q1B1B 3Ql,09K\K\ ,0^.]f]n]n .%7enevev %7P-	 1 1 -$'i// ''y(( ' Oy(( O2#9!2!2 #9L.93D3D .47!2!2 47n K9#4#4  KF($y'8'8 ($VC9,, C$$i// $
!!2!2 
!)99#4#4 )9XKI-- K6(Ni&7&7 (NV"):): "=):): ="I,=,= "=):): ==):): ="):): ""I,=,= "[):): [ #!i6G6G #!L
!i6G6G 
! i6G6G  ( 9J9J  (i8	!! i8X1yGXGX 13	HYHY 3.!7i>O>O !7H(7y?P?P (7V1YM^M^ 1 "3iN_N_ "3J1yGXGX 13	HYHY 3B'	@Q@Q '0'	@Q@Q '	1Y=N=N 	13i>O>O 3 'yGXGX '$1)J[J[ 11yGXGX 1(y?P?P (4<.i// <.~0%Y 0%f#)## #64a)++ 4an(y'8'8 (<&i.?.? &6	!y7H7H 	!)9+<+< ): 	 " "gv'  " "Z4  ! !114>  ! !114>r   