Represents a {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role vault_token_auth_backend_role}.
import { tokenAuthBackendRole } from '@cdktf/provider-vault'
new tokenAuthBackendRole.TokenAuthBackendRole(scope: Construct, id: string, config: TokenAuthBackendRoleConfig)
Name | Type | Description |
---|---|---|
scope |
constructs.Construct |
The scope in which to define this construct. |
id |
string |
The scoped construct ID. |
config |
TokenAuthBackendRoleConfig |
No description. |
- Type: constructs.Construct
The scope in which to define this construct.
- Type: string
The scoped construct ID.
Must be unique amongst siblings in the same scope
Name | Description |
---|---|
toString |
Returns a string representation of this construct. |
addOverride |
No description. |
overrideLogicalId |
Overrides the auto-generated logical ID with a specific ID. |
resetOverrideLogicalId |
Resets a previously passed logical Id to use the auto-generated logical id again. |
toHclTerraform |
No description. |
toMetadata |
No description. |
toTerraform |
Adds this resource to the terraform JSON output. |
addMoveTarget |
Adds a user defined moveTarget string to this resource to be later used in .moveTo(moveTarget) to resolve the location of the move. |
getAnyMapAttribute |
No description. |
getBooleanAttribute |
No description. |
getBooleanMapAttribute |
No description. |
getListAttribute |
No description. |
getNumberAttribute |
No description. |
getNumberListAttribute |
No description. |
getNumberMapAttribute |
No description. |
getStringAttribute |
No description. |
getStringMapAttribute |
No description. |
hasResourceMove |
No description. |
importFrom |
No description. |
interpolationForAttribute |
No description. |
moveFromId |
Move the resource corresponding to "id" to this resource. |
moveTo |
Moves this resource to the target resource given by moveTarget. |
moveToId |
Moves this resource to the resource corresponding to "id". |
resetAllowedEntityAliases |
No description. |
resetAllowedPolicies |
No description. |
resetAllowedPoliciesGlob |
No description. |
resetDisallowedPolicies |
No description. |
resetDisallowedPoliciesGlob |
No description. |
resetId |
No description. |
resetNamespace |
No description. |
resetOrphan |
No description. |
resetPathSuffix |
No description. |
resetRenewable |
No description. |
resetTokenBoundCidrs |
No description. |
resetTokenExplicitMaxTtl |
No description. |
resetTokenMaxTtl |
No description. |
resetTokenNoDefaultPolicy |
No description. |
resetTokenNumUses |
No description. |
resetTokenPeriod |
No description. |
resetTokenPolicies |
No description. |
resetTokenTtl |
No description. |
resetTokenType |
No description. |
public toString(): string
Returns a string representation of this construct.
public addOverride(path: string, value: any): void
- Type: string
- Type: any
public overrideLogicalId(newLogicalId: string): void
Overrides the auto-generated logical ID with a specific ID.
- Type: string
The new logical ID to use for this stack element.
public resetOverrideLogicalId(): void
Resets a previously passed logical Id to use the auto-generated logical id again.
public toHclTerraform(): any
public toMetadata(): any
public toTerraform(): any
Adds this resource to the terraform JSON output.
public addMoveTarget(moveTarget: string): void
Adds a user defined moveTarget string to this resource to be later used in .moveTo(moveTarget) to resolve the location of the move.
- Type: string
The string move target that will correspond to this resource.
public getAnyMapAttribute(terraformAttribute: string): {[ key: string ]: any}
- Type: string
public getBooleanAttribute(terraformAttribute: string): IResolvable
- Type: string
public getBooleanMapAttribute(terraformAttribute: string): {[ key: string ]: boolean}
- Type: string
public getListAttribute(terraformAttribute: string): string[]
- Type: string
public getNumberAttribute(terraformAttribute: string): number
- Type: string
public getNumberListAttribute(terraformAttribute: string): number[]
- Type: string
public getNumberMapAttribute(terraformAttribute: string): {[ key: string ]: number}
- Type: string
public getStringAttribute(terraformAttribute: string): string
- Type: string
public getStringMapAttribute(terraformAttribute: string): {[ key: string ]: string}
- Type: string
public hasResourceMove(): TerraformResourceMoveByTarget | TerraformResourceMoveById
public importFrom(id: string, provider?: TerraformProvider): void
- Type: string
- Type: cdktf.TerraformProvider
public interpolationForAttribute(terraformAttribute: string): IResolvable
- Type: string
public moveFromId(id: string): void
Move the resource corresponding to "id" to this resource.
Note that the resource being moved from must be marked as moved using it's instance function.
- Type: string
Full id of resource being moved from, e.g. "aws_s3_bucket.example".
public moveTo(moveTarget: string, index?: string | number): void
Moves this resource to the target resource given by moveTarget.
- Type: string
The previously set user defined string set by .addMoveTarget() corresponding to the resource to move to.
- Type: string | number
Optional The index corresponding to the key the resource is to appear in the foreach of a resource to move to.
public moveToId(id: string): void
Moves this resource to the resource corresponding to "id".
- Type: string
Full id of resource to move to, e.g. "aws_s3_bucket.example".
public resetAllowedEntityAliases(): void
public resetAllowedPolicies(): void
public resetAllowedPoliciesGlob(): void
public resetDisallowedPolicies(): void
public resetDisallowedPoliciesGlob(): void
public resetId(): void
public resetNamespace(): void
public resetOrphan(): void
public resetPathSuffix(): void
public resetRenewable(): void
public resetTokenBoundCidrs(): void
public resetTokenExplicitMaxTtl(): void
public resetTokenMaxTtl(): void
public resetTokenNoDefaultPolicy(): void
public resetTokenNumUses(): void
public resetTokenPeriod(): void
public resetTokenPolicies(): void
public resetTokenTtl(): void
public resetTokenType(): void
Name | Description |
---|---|
isConstruct |
Checks if x is a construct. |
isTerraformElement |
No description. |
isTerraformResource |
No description. |
generateConfigForImport |
Generates CDKTF code for importing a TokenAuthBackendRole resource upon running "cdktf plan ". |
import { tokenAuthBackendRole } from '@cdktf/provider-vault'
tokenAuthBackendRole.TokenAuthBackendRole.isConstruct(x: any)
Checks if x
is a construct.
Use this method instead of instanceof
to properly detect Construct
instances, even when the construct library is symlinked.
Explanation: in JavaScript, multiple copies of the constructs
library on
disk are seen as independent, completely different libraries. As a
consequence, the class Construct
in each copy of the constructs
library
is seen as a different class, and an instance of one class will not test as
instanceof
the other class. npm install
will not create installations
like this, but users may manually symlink construct libraries together or
use a monorepo tool: in those cases, multiple copies of the constructs
library can be accidentally installed, and instanceof
will behave
unpredictably. It is safest to avoid using instanceof
, and using
this type-testing method instead.
- Type: any
Any object.
import { tokenAuthBackendRole } from '@cdktf/provider-vault'
tokenAuthBackendRole.TokenAuthBackendRole.isTerraformElement(x: any)
- Type: any
import { tokenAuthBackendRole } from '@cdktf/provider-vault'
tokenAuthBackendRole.TokenAuthBackendRole.isTerraformResource(x: any)
- Type: any
import { tokenAuthBackendRole } from '@cdktf/provider-vault'
tokenAuthBackendRole.TokenAuthBackendRole.generateConfigForImport(scope: Construct, importToId: string, importFromId: string, provider?: TerraformProvider)
Generates CDKTF code for importing a TokenAuthBackendRole resource upon running "cdktf plan ".
- Type: constructs.Construct
The scope in which to define this construct.
- Type: string
The construct id used in the generated config for the TokenAuthBackendRole to import.
- Type: string
The id of the existing TokenAuthBackendRole that should be imported.
Refer to the {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#import import section} in the documentation of this resource for the id to use
- Type: cdktf.TerraformProvider
? Optional instance of the provider where the TokenAuthBackendRole to import is found.
Name | Type | Description |
---|---|---|
node |
constructs.Node |
The tree node. |
cdktfStack |
cdktf.TerraformStack |
No description. |
fqn |
string |
No description. |
friendlyUniqueId |
string |
No description. |
terraformMetaArguments |
{[ key: string ]: any} |
No description. |
terraformResourceType |
string |
No description. |
terraformGeneratorMetadata |
cdktf.TerraformProviderGeneratorMetadata |
No description. |
connection |
cdktf.SSHProvisionerConnection | cdktf.WinrmProvisionerConnection |
No description. |
count |
number | cdktf.TerraformCount |
No description. |
dependsOn |
string[] |
No description. |
forEach |
cdktf.ITerraformIterator |
No description. |
lifecycle |
cdktf.TerraformResourceLifecycle |
No description. |
provider |
cdktf.TerraformProvider |
No description. |
provisioners |
cdktf.FileProvisioner | cdktf.LocalExecProvisioner | cdktf.RemoteExecProvisioner[] |
No description. |
allowedEntityAliasesInput |
string[] |
No description. |
allowedPoliciesGlobInput |
string[] |
No description. |
allowedPoliciesInput |
string[] |
No description. |
disallowedPoliciesGlobInput |
string[] |
No description. |
disallowedPoliciesInput |
string[] |
No description. |
idInput |
string |
No description. |
namespaceInput |
string |
No description. |
orphanInput |
boolean | cdktf.IResolvable |
No description. |
pathSuffixInput |
string |
No description. |
renewableInput |
boolean | cdktf.IResolvable |
No description. |
roleNameInput |
string |
No description. |
tokenBoundCidrsInput |
string[] |
No description. |
tokenExplicitMaxTtlInput |
number |
No description. |
tokenMaxTtlInput |
number |
No description. |
tokenNoDefaultPolicyInput |
boolean | cdktf.IResolvable |
No description. |
tokenNumUsesInput |
number |
No description. |
tokenPeriodInput |
number |
No description. |
tokenPoliciesInput |
string[] |
No description. |
tokenTtlInput |
number |
No description. |
tokenTypeInput |
string |
No description. |
allowedEntityAliases |
string[] |
No description. |
allowedPolicies |
string[] |
No description. |
allowedPoliciesGlob |
string[] |
No description. |
disallowedPolicies |
string[] |
No description. |
disallowedPoliciesGlob |
string[] |
No description. |
id |
string |
No description. |
namespace |
string |
No description. |
orphan |
boolean | cdktf.IResolvable |
No description. |
pathSuffix |
string |
No description. |
renewable |
boolean | cdktf.IResolvable |
No description. |
roleName |
string |
No description. |
tokenBoundCidrs |
string[] |
No description. |
tokenExplicitMaxTtl |
number |
No description. |
tokenMaxTtl |
number |
No description. |
tokenNoDefaultPolicy |
boolean | cdktf.IResolvable |
No description. |
tokenNumUses |
number |
No description. |
tokenPeriod |
number |
No description. |
tokenPolicies |
string[] |
No description. |
tokenTtl |
number |
No description. |
tokenType |
string |
No description. |
public readonly node: Node;
- Type: constructs.Node
The tree node.
public readonly cdktfStack: TerraformStack;
- Type: cdktf.TerraformStack
public readonly fqn: string;
- Type: string
public readonly friendlyUniqueId: string;
- Type: string
public readonly terraformMetaArguments: {[ key: string ]: any};
- Type: {[ key: string ]: any}
public readonly terraformResourceType: string;
- Type: string
public readonly terraformGeneratorMetadata: TerraformProviderGeneratorMetadata;
- Type: cdktf.TerraformProviderGeneratorMetadata
public readonly connection: SSHProvisionerConnection | WinrmProvisionerConnection;
- Type: cdktf.SSHProvisionerConnection | cdktf.WinrmProvisionerConnection
public readonly count: number | TerraformCount;
- Type: number | cdktf.TerraformCount
public readonly dependsOn: string[];
- Type: string[]
public readonly forEach: ITerraformIterator;
- Type: cdktf.ITerraformIterator
public readonly lifecycle: TerraformResourceLifecycle;
- Type: cdktf.TerraformResourceLifecycle
public readonly provider: TerraformProvider;
- Type: cdktf.TerraformProvider
public readonly provisioners: FileProvisioner | LocalExecProvisioner | RemoteExecProvisioner[];
- Type: cdktf.FileProvisioner | cdktf.LocalExecProvisioner | cdktf.RemoteExecProvisioner[]
public readonly allowedEntityAliasesInput: string[];
- Type: string[]
public readonly allowedPoliciesGlobInput: string[];
- Type: string[]
public readonly allowedPoliciesInput: string[];
- Type: string[]
public readonly disallowedPoliciesGlobInput: string[];
- Type: string[]
public readonly disallowedPoliciesInput: string[];
- Type: string[]
public readonly idInput: string;
- Type: string
public readonly namespaceInput: string;
- Type: string
public readonly orphanInput: boolean | IResolvable;
- Type: boolean | cdktf.IResolvable
public readonly pathSuffixInput: string;
- Type: string
public readonly renewableInput: boolean | IResolvable;
- Type: boolean | cdktf.IResolvable
public readonly roleNameInput: string;
- Type: string
public readonly tokenBoundCidrsInput: string[];
- Type: string[]
public readonly tokenExplicitMaxTtlInput: number;
- Type: number
public readonly tokenMaxTtlInput: number;
- Type: number
public readonly tokenNoDefaultPolicyInput: boolean | IResolvable;
- Type: boolean | cdktf.IResolvable
public readonly tokenNumUsesInput: number;
- Type: number
public readonly tokenPeriodInput: number;
- Type: number
public readonly tokenPoliciesInput: string[];
- Type: string[]
public readonly tokenTtlInput: number;
- Type: number
public readonly tokenTypeInput: string;
- Type: string
public readonly allowedEntityAliases: string[];
- Type: string[]
public readonly allowedPolicies: string[];
- Type: string[]
public readonly allowedPoliciesGlob: string[];
- Type: string[]
public readonly disallowedPolicies: string[];
- Type: string[]
public readonly disallowedPoliciesGlob: string[];
- Type: string[]
public readonly id: string;
- Type: string
public readonly namespace: string;
- Type: string
public readonly orphan: boolean | IResolvable;
- Type: boolean | cdktf.IResolvable
public readonly pathSuffix: string;
- Type: string
public readonly renewable: boolean | IResolvable;
- Type: boolean | cdktf.IResolvable
public readonly roleName: string;
- Type: string
public readonly tokenBoundCidrs: string[];
- Type: string[]
public readonly tokenExplicitMaxTtl: number;
- Type: number
public readonly tokenMaxTtl: number;
- Type: number
public readonly tokenNoDefaultPolicy: boolean | IResolvable;
- Type: boolean | cdktf.IResolvable
public readonly tokenNumUses: number;
- Type: number
public readonly tokenPeriod: number;
- Type: number
public readonly tokenPolicies: string[];
- Type: string[]
public readonly tokenTtl: number;
- Type: number
public readonly tokenType: string;
- Type: string
Name | Type | Description |
---|---|---|
tfResourceType |
string |
No description. |
public readonly tfResourceType: string;
- Type: string
import { tokenAuthBackendRole } from '@cdktf/provider-vault'
const tokenAuthBackendRoleConfig: tokenAuthBackendRole.TokenAuthBackendRoleConfig = { ... }
Name | Type | Description |
---|---|---|
connection |
cdktf.SSHProvisionerConnection | cdktf.WinrmProvisionerConnection |
No description. |
count |
number | cdktf.TerraformCount |
No description. |
dependsOn |
cdktf.ITerraformDependable[] |
No description. |
forEach |
cdktf.ITerraformIterator |
No description. |
lifecycle |
cdktf.TerraformResourceLifecycle |
No description. |
provider |
cdktf.TerraformProvider |
No description. |
provisioners |
cdktf.FileProvisioner | cdktf.LocalExecProvisioner | cdktf.RemoteExecProvisioner[] |
No description. |
roleName |
string |
Name of the role. |
allowedEntityAliases |
string[] |
Set of allowed entity aliases for this role. |
allowedPolicies |
string[] |
List of allowed policies for given role. |
allowedPoliciesGlob |
string[] |
Set of allowed policies with glob match for given role. |
disallowedPolicies |
string[] |
List of disallowed policies for given role. |
disallowedPoliciesGlob |
string[] |
Set of disallowed policies with glob match for given role. |
id |
string |
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#id TokenAuthBackendRole#id}. |
namespace |
string |
Target namespace. (requires Enterprise). |
orphan |
boolean | cdktf.IResolvable |
If true, tokens created against this policy will be orphan tokens. |
pathSuffix |
string |
Tokens created against this role will have the given suffix as part of their path in addition to the role name. |
renewable |
boolean | cdktf.IResolvable |
Whether to disable the ability of the token to be renewed past its initial TTL. |
tokenBoundCidrs |
string[] |
Specifies the blocks of IP addresses which are allowed to use the generated token. |
tokenExplicitMaxTtl |
number |
Generated Token's Explicit Maximum TTL in seconds. |
tokenMaxTtl |
number |
The maximum lifetime of the generated token. |
tokenNoDefaultPolicy |
boolean | cdktf.IResolvable |
If true, the 'default' policy will not automatically be added to generated tokens. |
tokenNumUses |
number |
The maximum number of times a token may be used, a value of zero means unlimited. |
tokenPeriod |
number |
Generated Token's Period. |
tokenPolicies |
string[] |
Generated Token's Policies. |
tokenTtl |
number |
The initial ttl of the token to generate in seconds. |
tokenType |
string |
The type of token to generate, service or batch. |
public readonly connection: SSHProvisionerConnection | WinrmProvisionerConnection;
- Type: cdktf.SSHProvisionerConnection | cdktf.WinrmProvisionerConnection
public readonly count: number | TerraformCount;
- Type: number | cdktf.TerraformCount
public readonly dependsOn: ITerraformDependable[];
- Type: cdktf.ITerraformDependable[]
public readonly forEach: ITerraformIterator;
- Type: cdktf.ITerraformIterator
public readonly lifecycle: TerraformResourceLifecycle;
- Type: cdktf.TerraformResourceLifecycle
public readonly provider: TerraformProvider;
- Type: cdktf.TerraformProvider
public readonly provisioners: FileProvisioner | LocalExecProvisioner | RemoteExecProvisioner[];
- Type: cdktf.FileProvisioner | cdktf.LocalExecProvisioner | cdktf.RemoteExecProvisioner[]
public readonly roleName: string;
- Type: string
Name of the role.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#role_name TokenAuthBackendRole#role_name}
public readonly allowedEntityAliases: string[];
- Type: string[]
Set of allowed entity aliases for this role.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#allowed_entity_aliases TokenAuthBackendRole#allowed_entity_aliases}
public readonly allowedPolicies: string[];
- Type: string[]
List of allowed policies for given role.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#allowed_policies TokenAuthBackendRole#allowed_policies}
public readonly allowedPoliciesGlob: string[];
- Type: string[]
Set of allowed policies with glob match for given role.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#allowed_policies_glob TokenAuthBackendRole#allowed_policies_glob}
public readonly disallowedPolicies: string[];
- Type: string[]
List of disallowed policies for given role.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#disallowed_policies TokenAuthBackendRole#disallowed_policies}
public readonly disallowedPoliciesGlob: string[];
- Type: string[]
Set of disallowed policies with glob match for given role.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#disallowed_policies_glob TokenAuthBackendRole#disallowed_policies_glob}
public readonly id: string;
- Type: string
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#id TokenAuthBackendRole#id}.
Please be aware that the id field is automatically added to all resources in Terraform providers using a Terraform provider SDK version below 2. If you experience problems setting this value it might not be settable. Please take a look at the provider documentation to ensure it should be settable.
public readonly namespace: string;
- Type: string
Target namespace. (requires Enterprise).
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#namespace TokenAuthBackendRole#namespace}
public readonly orphan: boolean | IResolvable;
- Type: boolean | cdktf.IResolvable
If true, tokens created against this policy will be orphan tokens.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#orphan TokenAuthBackendRole#orphan}
public readonly pathSuffix: string;
- Type: string
Tokens created against this role will have the given suffix as part of their path in addition to the role name.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#path_suffix TokenAuthBackendRole#path_suffix}
public readonly renewable: boolean | IResolvable;
- Type: boolean | cdktf.IResolvable
Whether to disable the ability of the token to be renewed past its initial TTL.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#renewable TokenAuthBackendRole#renewable}
public readonly tokenBoundCidrs: string[];
- Type: string[]
Specifies the blocks of IP addresses which are allowed to use the generated token.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#token_bound_cidrs TokenAuthBackendRole#token_bound_cidrs}
public readonly tokenExplicitMaxTtl: number;
- Type: number
Generated Token's Explicit Maximum TTL in seconds.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#token_explicit_max_ttl TokenAuthBackendRole#token_explicit_max_ttl}
public readonly tokenMaxTtl: number;
- Type: number
The maximum lifetime of the generated token.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#token_max_ttl TokenAuthBackendRole#token_max_ttl}
public readonly tokenNoDefaultPolicy: boolean | IResolvable;
- Type: boolean | cdktf.IResolvable
If true, the 'default' policy will not automatically be added to generated tokens.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#token_no_default_policy TokenAuthBackendRole#token_no_default_policy}
public readonly tokenNumUses: number;
- Type: number
The maximum number of times a token may be used, a value of zero means unlimited.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#token_num_uses TokenAuthBackendRole#token_num_uses}
public readonly tokenPeriod: number;
- Type: number
Generated Token's Period.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#token_period TokenAuthBackendRole#token_period}
public readonly tokenPolicies: string[];
- Type: string[]
Generated Token's Policies.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#token_policies TokenAuthBackendRole#token_policies}
public readonly tokenTtl: number;
- Type: number
The initial ttl of the token to generate in seconds.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#token_ttl TokenAuthBackendRole#token_ttl}
public readonly tokenType: string;
- Type: string
The type of token to generate, service or batch.
Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.6.0/docs/resources/token_auth_backend_role#token_type TokenAuthBackendRole#token_type}