Re-exports§
Modules§
- registration
- Single, machine-bound, encrypted store for this host’s canopy enrollment.
- schema
- Wire types generated at build time from canopy’s OpenAPI document.
Structs§
- Canopy
Client - Typed client for canopy’s API.
- Canopy
Http Error - A non-2xx response from a canopy endpoint.
- Container
Creds - Creds in the ECS container-credentials shape kopia’s minio-go provider polls
for: note
Token(notSessionToken), andExpirationas RFC3339Z. - Redacted
- Wraps a sensitive value so its
Debugoutput doesn’t leak the contents. - Reqwest
Transport - The default canopy transport: HTTP with auth configured for talking to a canopy server.
Enums§
- Target
Outcome - Result of
GET /backup-target: a live target, or the benign dormant state (the device is not yet authorised for backups —412/409).
Constants§
- CERT_
RENEW_ AFTER - How long to wait between scheduled cert renewals.
- DEFAULT_
CANOPY_ URL - TAILSCALE_
URL - Base URL for the tailscale-internal canopy endpoint.
Traits§
- Canopy
Transport - The HTTP transport a
CanopyClientsends through.
Functions§
- device_
identity - Build a short-lived self-signed client certificate from a P-256 device key
PEM and wrap it as a reqwest mTLS
Identity. - tailscale_
client - Probe the canopy tailnet endpoint, returning a client routed to it if reachable.
Type Aliases§
- Canopy
Request - A request built by
CanopyClient, ready for aCanopyTransportto send. - Canopy
Response - A response handed back to
CanopyClientby aCanopyTransport, with its body buffered. - Client
Builder Factory - Factory producing the base
reqwest::ClientBuilderfor canopy’s clients.