pub enum ManagedDbPrivilege {
Rootless,
Caps,
}Expand description
How a managed database (PLAN-managed-compute-sql) runs its stock image on a
shared-kernel backend, whose entrypoint would otherwise fail under the dropped-ALL
hardening. rootless (the default) needs no capabilities and works under any
posture; caps is the fallback for an image that won’t run rootless.
Variants§
Rootless
Run the DB as its image’s user (999:999 for the official postgres/mysql
images) against a pre-owned volume — no added capabilities, any posture.
Caps
Add the minimal capability set the entrypoint needs (CHOWN, DAC_OVERRIDE,
FOWNER, SETUID, SETGID). Honored only under the single-tenant posture.
Trait Implementations§
Source§impl Clone for ManagedDbPrivilege
impl Clone for ManagedDbPrivilege
Source§fn clone(&self) -> ManagedDbPrivilege
fn clone(&self) -> ManagedDbPrivilege
Returns a duplicate of the value. Read more
1.0.0 (const: unstable) · Source§fn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
Performs copy-assignment from
source. Read moreimpl Copy for ManagedDbPrivilege
Source§impl Debug for ManagedDbPrivilege
impl Debug for ManagedDbPrivilege
Source§impl Default for ManagedDbPrivilege
impl Default for ManagedDbPrivilege
Source§fn default() -> ManagedDbPrivilege
fn default() -> ManagedDbPrivilege
Returns the “default value” for a type. Read more
Source§impl<'de> Deserialize<'de> for ManagedDbPrivilege
impl<'de> Deserialize<'de> for ManagedDbPrivilege
Source§fn deserialize<__D>(__deserializer: __D) -> Result<Self, __D::Error>where
__D: Deserializer<'de>,
fn deserialize<__D>(__deserializer: __D) -> Result<Self, __D::Error>where
__D: Deserializer<'de>,
Deserialize this value from the given Serde deserializer. Read more
impl Eq for ManagedDbPrivilege
Source§impl PartialEq for ManagedDbPrivilege
impl PartialEq for ManagedDbPrivilege
impl StructuralPartialEq for ManagedDbPrivilege
Auto Trait Implementations§
impl Freeze for ManagedDbPrivilege
impl RefUnwindSafe for ManagedDbPrivilege
impl Send for ManagedDbPrivilege
impl Sync for ManagedDbPrivilege
impl Unpin for ManagedDbPrivilege
impl UnsafeUnpin for ManagedDbPrivilege
impl UnwindSafe for ManagedDbPrivilege
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Mutably borrows from an owned value. Read more
impl<ST, DT> CastableFrom<ST, Initialized, Initialized> for DT
impl<ST, DT> CastableFrom<ST, Uninit, Uninit> for DT
Source§impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> DeserializeOwned for Twhere
T: for<'de> Deserialize<'de>,
Source§impl<Q, K> Equivalent<K> for Q
impl<Q, K> Equivalent<K> for Q
Source§impl<Q, K> Equivalent<K> for Q
impl<Q, K> Equivalent<K> for Q
Source§fn equivalent(&self, key: &K) -> bool
fn equivalent(&self, key: &K) -> bool
Compare self to
key and return true if they are equal.impl<A, B, T> HttpServerConnExec<A, B> for Twhere
B: Body,
Source§impl<T> Instrument for T
impl<T> Instrument for T
Source§fn instrument(self, span: Span) -> Instrumented<Self> ⓘ
fn instrument(self, span: Span) -> Instrumented<Self> ⓘ
Source§fn in_current_span(self) -> Instrumented<Self> ⓘ
fn in_current_span(self) -> Instrumented<Self> ⓘ
Source§impl<T> IntoEither for T
impl<T> IntoEither for T
Source§fn into_either(self, into_left: bool) -> Either<Self, Self> ⓘ
fn into_either(self, into_left: bool) -> Either<Self, Self> ⓘ
Converts
self into a Left variant of Either<Self, Self>
if into_left is true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§fn into_either_with<F>(self, into_left: F) -> Either<Self, Self> ⓘ
fn into_either_with<F>(self, into_left: F) -> Either<Self, Self> ⓘ
Converts
self into a Left variant of Either<Self, Self>
if into_left(&self) returns true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read more