Creates a Lambda function. To create a function, you need a deployment package and an execution role. The deployment package is a .zip file archive or container image that contains your function code. The execution role grants the function permission to use AWS services, such as Amazon CloudWatch Logs for log streaming and AWS X-Ray for request tracing.
When you create a function, Lambda provisions an instance of the
function and its supporting resources. If your function connects to a
VPC, this process can take a minute or so. During this time, you can't
invoke or modify the function. The State
, StateReason
, and
StateReasonCode
fields in the response from
get_function_configuration
indicate when the function is ready to invoke. For more information, see
Function States.
A function has an unpublished version, and can have published versions
and aliases. The unpublished version changes when you update your
function's code and configuration. A published version is a snapshot of
your function code and configuration that can't be changed. An alias is
a named resource that maps to a version, and can be changed to map to a
different version. Use the Publish
parameter to create version 1
of
your function from its initial configuration.
The other parameters let you configure version-specific and
function-level settings. You can modify version-specific settings later
with
update_function_configuration
.
Function-level settings apply to both the unpublished and published
versions of the function, and include tags
(tag_resource
) and per-function concurrency
limits (put_function_concurrency
).
You can use code signing if your deployment package is a .zip file
archive. To enable code signing for this function, specify the ARN of a
code-signing configuration. When a user attempts to deploy a code
package with update_function_code
,
Lambda checks that the code package has a valid signature from a trusted
publisher. The code-signing configuration includes set set of signing
profiles, which define the trusted publishers for this function.
If another account or an AWS service invokes your function, use
add_permission
to grant permission by
creating a resource-based IAM policy. You can grant permissions at the
function level, on a version, or on an alias.
To invoke your function directly, use invoke
. To
invoke your function in response to events in other AWS services, create
an event source mapping
(create_event_source_mapping
),
or configure a function trigger in the other service. For more
information, see Invoking Functions.
lambda_create_function(FunctionName, Runtime, Role, Handler, Code,
Description, Timeout, MemorySize, Publish, VpcConfig, PackageType,
DeadLetterConfig, Environment, KMSKeyArn, TracingConfig, Tags, Layers,
FileSystemConfigs, ImageConfig, CodeSigningConfigArn)
A list with the following syntax:
list(
FunctionName = "string",
FunctionArn = "string",
Runtime = "nodejs"|"nodejs4.3"|"nodejs6.10"|"nodejs8.10"|"nodejs10.x"|"nodejs12.x"|"java8"|"java8.al2"|"java11"|"python2.7"|"python3.6"|"python3.7"|"python3.8"|"dotnetcore1.0"|"dotnetcore2.0"|"dotnetcore2.1"|"dotnetcore3.1"|"nodejs4.3-edge"|"go1.x"|"ruby2.5"|"ruby2.7"|"provided"|"provided.al2",
Role = "string",
Handler = "string",
CodeSize = 123,
Description = "string",
Timeout = 123,
MemorySize = 123,
LastModified = "string",
CodeSha256 = "string",
Version = "string",
VpcConfig = list(
SubnetIds = list(
"string"
),
SecurityGroupIds = list(
"string"
),
VpcId = "string"
),
DeadLetterConfig = list(
TargetArn = "string"
),
Environment = list(
Variables = list(
"string"
),
Error = list(
ErrorCode = "string",
Message = "string"
)
),
KMSKeyArn = "string",
TracingConfig = list(
Mode = "Active"|"PassThrough"
),
MasterArn = "string",
RevisionId = "string",
Layers = list(
list(
Arn = "string",
CodeSize = 123,
SigningProfileVersionArn = "string",
SigningJobArn = "string"
)
),
State = "Pending"|"Active"|"Inactive"|"Failed",
StateReason = "string",
StateReasonCode = "Idle"|"Creating"|"Restoring"|"EniLimitExceeded"|"InsufficientRolePermissions"|"InvalidConfiguration"|"InternalError"|"SubnetOutOfIPAddresses"|"InvalidSubnet"|"InvalidSecurityGroup"|"ImageDeleted"|"ImageAccessDenied"|"InvalidImage",
LastUpdateStatus = "Successful"|"Failed"|"InProgress",
LastUpdateStatusReason = "string",
LastUpdateStatusReasonCode = "EniLimitExceeded"|"InsufficientRolePermissions"|"InvalidConfiguration"|"InternalError"|"SubnetOutOfIPAddresses"|"InvalidSubnet"|"InvalidSecurityGroup"|"ImageDeleted"|"ImageAccessDenied"|"InvalidImage",
FileSystemConfigs = list(
list(
Arn = "string",
LocalMountPath = "string"
)
),
PackageType = "Zip"|"Image",
ImageConfigResponse = list(
ImageConfig = list(
EntryPoint = list(
"string"
),
Command = list(
"string"
),
WorkingDirectory = "string"
),
Error = list(
ErrorCode = "string",
Message = "string"
)
),
SigningProfileVersionArn = "string",
SigningJobArn = "string"
)
[required] The name of the Lambda function.
Name formats
Function name - my-function
.
Function ARN -
arn:aws:lambda:us-west-2:123456789012:function:my-function
.
Partial ARN - 123456789012:function:my-function
.
The length constraint applies only to the full ARN. If you specify only the function name, it is limited to 64 characters in length.
The identifier of the function's runtime.
[required] The Amazon Resource Name (ARN) of the function's execution role.
The name of the method within your code that Lambda calls to execute your function. The format includes the file name. It can also include namespaces and other qualifiers, depending on the runtime. For more information, see Programming Model.
[required] The code for the function.
A description of the function.
The amount of time that Lambda allows a function to run before stopping it. The default is 3 seconds. The maximum allowed value is 900 seconds.
The amount of memory available to the function at runtime. Increasing the function's memory also increases its CPU allocation. The default value is 128 MB. The value can be any multiple of 1 MB.
Set to true to publish the first version of the function during creation.
For network connectivity to AWS resources in a VPC, specify a list of security groups and subnets in the VPC. When you connect a function to a VPC, it can only access resources and the internet through that VPC. For more information, see VPC Settings.
The type of deployment package. Set to Image
for container image and
set Zip
for ZIP archive.
A dead letter queue configuration that specifies the queue or topic where Lambda sends asynchronous events when they fail processing. For more information, see Dead Letter Queues.
Environment variables that are accessible from function code during execution.
The ARN of the AWS Key Management Service (AWS KMS) key that's used to encrypt your function's environment variables. If it's not provided, AWS Lambda uses a default service key.
Set Mode
to Active
to sample and trace a subset of incoming requests
with AWS X-Ray.
A list of tags to apply to the function.
A list of function layers to add to the function's execution environment. Specify each layer by its ARN, including the version.
Connection settings for an Amazon EFS file system.
Configuration values that override the container image Dockerfile.
To enable code signing for this function, specify the ARN of a code-signing configuration. A code-signing configuration includes a set of signing profiles, which define the trusted publishers for this function.
svc$create_function(
FunctionName = "string",
Runtime = "nodejs"|"nodejs4.3"|"nodejs6.10"|"nodejs8.10"|"nodejs10.x"|"nodejs12.x"|"java8"|"java8.al2"|"java11"|"python2.7"|"python3.6"|"python3.7"|"python3.8"|"dotnetcore1.0"|"dotnetcore2.0"|"dotnetcore2.1"|"dotnetcore3.1"|"nodejs4.3-edge"|"go1.x"|"ruby2.5"|"ruby2.7"|"provided"|"provided.al2",
Role = "string",
Handler = "string",
Code = list(
ZipFile = raw,
S3Bucket = "string",
S3Key = "string",
S3ObjectVersion = "string",
ImageUri = "string"
),
Description = "string",
Timeout = 123,
MemorySize = 123,
Publish = TRUE|FALSE,
VpcConfig = list(
SubnetIds = list(
"string"
),
SecurityGroupIds = list(
"string"
)
),
PackageType = "Zip"|"Image",
DeadLetterConfig = list(
TargetArn = "string"
),
Environment = list(
Variables = list(
"string"
)
),
KMSKeyArn = "string",
TracingConfig = list(
Mode = "Active"|"PassThrough"
),
Tags = list(
"string"
),
Layers = list(
"string"
),
FileSystemConfigs = list(
list(
Arn = "string",
LocalMountPath = "string"
)
),
ImageConfig = list(
EntryPoint = list(
"string"
),
Command = list(
"string"
),
WorkingDirectory = "string"
),
CodeSigningConfigArn = "string"
)
if (FALSE) {
# The following example creates a function with a deployment package in
# Amazon S3 and enables X-Ray tracing and environment variable encryption.
svc$create_function(
Code = list(
S3Bucket = "my-bucket-1xpuxmplzrlbh",
S3Key = "function.zip"
),
Description = "Process image objects from Amazon S3.",
Environment = list(
Variables = list(
BUCKET = "my-bucket-1xpuxmplzrlbh",
PREFIX = "inbound"
)
),
FunctionName = "my-function",
Handler = "index.handler",
KMSKeyArn = "arn:aws:kms:us-west-2:123456789012:key/b0844d6c-xmpl-4463-97a4-d49f50839966",
MemorySize = 256L,
Publish = TRUE,
Role = "arn:aws:iam::123456789012:role/lambda-role",
Runtime = "nodejs12.x",
Tags = list(
DEPARTMENT = "Assets"
),
Timeout = 15L,
TracingConfig = list(
Mode = "Active"
)
)
}
Run the code above in your browser using DataLab