pub enum SandboxCapability {
Show 13 variants
Files,
Reconnect,
Jobs,
Preview,
PauseResume,
Snapshot,
DomainEgressRules,
EgressDeny,
EnforcedLimits,
ProcessLimit,
SandboxLifetime,
SupervisorPidNamespace,
SupervisorIsolation,
}Expand description
Names a single sandbox capability, so an unsupported call can report which one it needed.
Variants§
Files
Moving files in and out of a sandbox
Reconnect
Reaching a sandbox created by an earlier call
Jobs
Starting, polling and cancelling a command across separate calls
Preview
An authenticated, port-scoped ingress capability
PauseResume
Pausing and resuming sandbox state
Snapshot
Capturing full sandbox state
DomainEgressRules
Restricting egress to a hostname allowlist
EgressDeny
Refusing outbound access when a sandbox declares none
EnforcedLimits
Platform-enforced resource ceilings
ProcessLimit
A ceiling on the number of processes a sandbox may run
SandboxLifetime
A wall-clock ceiling on a sandbox, applied by the platform rather than by a caller
SupervisorPidNamespace
A command runs in its own PID namespace, isolated from the agent supervising it
SupervisorIsolation
A command runs under a different identity than the process supervising it
Implementations§
Trait Implementations§
Source§impl Clone for SandboxCapability
impl Clone for SandboxCapability
impl Copy for SandboxCapability
Source§impl Debug for SandboxCapability
impl Debug for SandboxCapability
Source§impl<'de> Deserialize<'de> for SandboxCapability
impl<'de> Deserialize<'de> for SandboxCapability
Source§fn deserialize<__D>(__deserializer: __D) -> Result<Self, __D::Error>where
__D: Deserializer<'de>,
fn deserialize<__D>(__deserializer: __D) -> Result<Self, __D::Error>where
__D: Deserializer<'de>,
impl Eq for SandboxCapability
Source§impl PartialEq for SandboxCapability
impl PartialEq for SandboxCapability
Source§impl Serialize for SandboxCapability
impl Serialize for SandboxCapability
impl StructuralPartialEq for SandboxCapability
Auto Trait Implementations§
impl Freeze for SandboxCapability
impl RefUnwindSafe for SandboxCapability
impl Send for SandboxCapability
impl Sync for SandboxCapability
impl Unpin for SandboxCapability
impl UnsafeUnpin for SandboxCapability
impl UnwindSafe for SandboxCapability
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
impl<ST, DT> CastableFrom<ST, Initialized, Initialized> for DT
impl<ST, DT> CastableFrom<ST, Uninit, Uninit> for DT
Source§impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> DeserializeOwned for Twhere
T: for<'de> Deserialize<'de>,
Source§impl<Q, K> Equivalent<K> for Q
impl<Q, K> Equivalent<K> for Q
Source§impl<Q, K> Equivalent<K> for Q
impl<Q, K> Equivalent<K> for Q
Source§fn equivalent(&self, key: &K) -> bool
fn equivalent(&self, key: &K) -> bool
key and return true if they are equal.