Skip to main content

IsolationCapability

Enum IsolationCapability 

Source
pub enum IsolationCapability {
Show 19 variants ReadOnlyRoot, WritableLayer, MountReadOnlyEnforcement, SingleFileMountExpansionAudit, NoNetworkGuarantee, EgressAllowlist, SecretIsolation, SecretMount, SecretRedaction, ProcessTimeout, ProcessSignal, ProcessRlimits, ContentRefIo, IoRedaction, ProcessStats, Cleanup, Detach, Reclaim, AuditLog,
}
Expand description

Enumerates the finite isolation capability cases. Serialized names are part of the SDK contract; update fixtures when variants change.

Variants§

§

ReadOnlyRoot

Use this variant when the contract needs to represent read only root; selecting it has no side effect by itself.

§

WritableLayer

Use this variant when the contract needs to represent writable layer; selecting it has no side effect by itself.

§

MountReadOnlyEnforcement

Use this variant when the contract needs to represent mount read only enforcement; selecting it has no side effect by itself.

§

SingleFileMountExpansionAudit

Use this variant when the contract needs to represent single file mount expansion audit; selecting it has no side effect by itself.

§

NoNetworkGuarantee

Use this variant when the contract needs to represent no network guarantee; selecting it has no side effect by itself.

§

EgressAllowlist

Use this variant when the contract needs to represent egress allowlist; selecting it has no side effect by itself.

§

SecretIsolation

Use this variant when the contract needs to represent secret isolation; selecting it has no side effect by itself.

§

SecretMount

Use this variant when the contract needs to represent secret mount; selecting it has no side effect by itself.

§

SecretRedaction

Use this variant when the contract needs to represent secret redaction; selecting it has no side effect by itself.

§

ProcessTimeout

Use this variant when the contract needs to represent process timeout; selecting it has no side effect by itself.

§

ProcessSignal

Use this variant when the contract needs to represent process signal; selecting it has no side effect by itself.

§

ProcessRlimits

Use this variant when the contract needs to represent process rlimits; selecting it has no side effect by itself.

§

ContentRefIo

Use this variant when the contract needs to represent content ref io; selecting it has no side effect by itself.

§

IoRedaction

Use this variant when the contract needs to represent io redaction; selecting it has no side effect by itself.

§

ProcessStats

Use this variant when the contract needs to represent process stats; selecting it has no side effect by itself.

§

Cleanup

Use this variant when the contract needs to represent cleanup; selecting it has no side effect by itself.

§

Detach

Use this variant when the contract needs to represent detach; selecting it has no side effect by itself.

§

Reclaim

Use this variant when the contract needs to represent reclaim; selecting it has no side effect by itself.

§

AuditLog

Use this variant when the contract needs to represent audit log; selecting it has no side effect by itself.

Trait Implementations§

Source§

impl Clone for IsolationCapability

Source§

fn clone(&self) -> IsolationCapability

Returns a duplicate of the value. Read more
1.0.0 (const: unstable) · Source§

fn clone_from(&mut self, source: &Self)

Performs copy-assignment from source. Read more
Source§

impl Debug for IsolationCapability

Source§

fn fmt(&self, f: &mut Formatter<'_>) -> Result

Formats the value using the given formatter. Read more
Source§

impl<'de> Deserialize<'de> for IsolationCapability

Source§

fn deserialize<__D>(__deserializer: __D) -> Result<Self, __D::Error>
where __D: Deserializer<'de>,

Deserialize this value from the given Serde deserializer. Read more
Source§

impl FromIterator<IsolationCapability> for IsolationCapabilitySet

Source§

fn from_iter<T: IntoIterator<Item = IsolationCapability>>(iter: T) -> Self

Creates a value from an iterator. Read more
Source§

impl Hash for IsolationCapability

Source§

fn hash<__H: Hasher>(&self, state: &mut __H)

Feeds this value into the given Hasher. Read more
1.3.0 · Source§

fn hash_slice<H>(data: &[Self], state: &mut H)
where H: Hasher, Self: Sized,

Feeds a slice of this type into the given Hasher. Read more
Source§

impl Ord for IsolationCapability

Source§

fn cmp(&self, other: &IsolationCapability) -> Ordering

This method returns an Ordering between self and other. Read more
1.21.0 (const: unstable) · Source§

fn max(self, other: Self) -> Self
where Self: Sized,

Compares and returns the maximum of two values. Read more
1.21.0 (const: unstable) · Source§

fn min(self, other: Self) -> Self
where Self: Sized,

Compares and returns the minimum of two values. Read more
1.50.0 (const: unstable) · Source§

fn clamp(self, min: Self, max: Self) -> Self
where Self: Sized,

Restrict a value to a certain interval. Read more
Source§

impl PartialEq for IsolationCapability

Source§

fn eq(&self, other: &IsolationCapability) -> bool

Tests for self and other values to be equal, and is used by ==.
1.0.0 (const: unstable) · Source§

fn ne(&self, other: &Rhs) -> bool

Tests for !=. The default implementation is almost always sufficient, and should not be overridden without very good reason.
Source§

impl PartialOrd for IsolationCapability

Source§

fn partial_cmp(&self, other: &IsolationCapability) -> Option<Ordering>

This method returns an ordering between self and other values if one exists. Read more
1.0.0 (const: unstable) · Source§

fn lt(&self, other: &Rhs) -> bool

Tests less than (for self and other) and is used by the < operator. Read more
1.0.0 (const: unstable) · Source§

fn le(&self, other: &Rhs) -> bool

Tests less than or equal to (for self and other) and is used by the <= operator. Read more
1.0.0 (const: unstable) · Source§

fn gt(&self, other: &Rhs) -> bool

Tests greater than (for self and other) and is used by the > operator. Read more
1.0.0 (const: unstable) · Source§

fn ge(&self, other: &Rhs) -> bool

Tests greater than or equal to (for self and other) and is used by the >= operator. Read more
Source§

impl Serialize for IsolationCapability

Source§

fn serialize<__S>(&self, __serializer: __S) -> Result<__S::Ok, __S::Error>
where __S: Serializer,

Serialize this value into the given Serde serializer. Read more
Source§

impl Copy for IsolationCapability

Source§

impl Eq for IsolationCapability

Source§

impl StructuralPartialEq for IsolationCapability

Auto Trait Implementations§

Blanket Implementations§

Source§

impl<T> Any for T
where T: 'static + ?Sized,

Source§

fn type_id(&self) -> TypeId

Gets the TypeId of self. Read more
Source§

impl<T> Borrow<T> for T
where T: ?Sized,

Source§

fn borrow(&self) -> &T

Immutably borrows from an owned value. Read more
Source§

impl<T> BorrowMut<T> for T
where T: ?Sized,

Source§

fn borrow_mut(&mut self) -> &mut T

Mutably borrows from an owned value. Read more
Source§

impl<T> CloneToUninit for T
where T: Clone,

Source§

unsafe fn clone_to_uninit(&self, dest: *mut u8)

🔬This is a nightly-only experimental API. (clone_to_uninit)
Performs copy-assignment from self to dest. Read more
Source§

impl<T> From<T> for T

Source§

fn from(t: T) -> T

Returns the argument unchanged.

Source§

impl<T, U> Into<U> for T
where U: From<T>,

Source§

fn into(self) -> U

Calls U::from(self).

That is, this conversion is whatever the implementation of From<T> for U chooses to do.

Source§

impl<T> Same for T

Source§

type Output = T

Should always be Self
Source§

impl<T> ToOwned for T
where T: Clone,

Source§

type Owned = T

The resulting type after obtaining ownership.
Source§

fn to_owned(&self) -> T

Creates owned data from borrowed data, usually by cloning. Read more
Source§

fn clone_into(&self, target: &mut T)

Uses borrowed data to replace owned data, usually by cloning. Read more
Source§

impl<T, U> TryFrom<U> for T
where U: Into<T>,

Source§

type Error = Infallible

The type returned in the event of a conversion error.
Source§

fn try_from(value: U) -> Result<T, <T as TryFrom<U>>::Error>

Performs the conversion.
Source§

impl<T, U> TryInto<U> for T
where U: TryFrom<T>,

Source§

type Error = <U as TryFrom<T>>::Error

The type returned in the event of a conversion error.
Source§

fn try_into(self) -> Result<U, <U as TryFrom<T>>::Error>

Performs the conversion.
Source§

impl<T> DeserializeOwned for T
where T: for<'de> Deserialize<'de>,