Struct EncryptedEntry
pub struct EncryptedEntry<const N: usize> {
pub tokenized_selector: TokenizedSelector<N>,
pub term: Option<EncryptedSteVecTerm>,
pub ciphertext: Vec<u8>,
pub parent_is_array: bool,
}Expand description
One SteVec wire entry: {s, c} plus an optional orderable term.
- Path entries carry the node’s ciphertext in
cand, for number/string nodes only, the orderable term (opin Compat mode,ocin Standard mode). - Value entries (value-inclusive selectors — the exact-match half of
the design) and non-orderable path entries carry no term at all; their
cis the encryption of the value-entry sentinel for value entries, or the node’s ciphertext for path entries. Exact matching is selector presence, so no per-value MAC term (hm) exists on any entry.
c is the raw AEAD output only (base85 on the wire): the key
material lives once in the document’s crate::zerokms::KeyHeader, and
the entry’s nonce is derived from its selector
(TokenizedSelector::aead_nonce) rather than stored. An entry is
therefore not self-decryptable — decryption reassembles header + c +
selector nonce.
Fields§
§tokenized_selector: TokenizedSelector<N>§term: Option<EncryptedSteVecTerm>§ciphertext: Vec<u8>§parent_is_array: boolTrait Implementations§
§impl<const N: usize> Debug for EncryptedEntry<N>
impl<const N: usize> Debug for EncryptedEntry<N>
§impl<'de, const N: usize> Deserialize<'de> for EncryptedEntry<N>
impl<'de, const N: usize> Deserialize<'de> for EncryptedEntry<N>
§fn deserialize<__D>(__deserializer: __D) -> Result<Self, __D::Error>where
__D: Deserializer<'de>,
fn deserialize<__D>(__deserializer: __D) -> Result<Self, __D::Error>where
__D: Deserializer<'de>,
Deserialize this value from the given Serde deserializer. Read more
Auto Trait Implementations§
impl<const N: usize> Freeze for EncryptedEntry<N>
impl<const N: usize> RefUnwindSafe for EncryptedEntry<N>
impl<const N: usize> Send for EncryptedEntry<N>
impl<const N: usize> Sync for EncryptedEntry<N>
impl<const N: usize> Unpin for EncryptedEntry<N>
impl<const N: usize> UnsafeUnpin for EncryptedEntry<N>
impl<const N: usize> UnwindSafe for EncryptedEntry<N>
Blanket Implementations§
impl<T> AuthStrategyBounds for T
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Mutably borrows from an owned value. Read more
impl<T> DeserializeOwned for Twhere
T: for<'de> Deserialize<'de>,
Source§impl<T> Instrument for T
impl<T> Instrument for T
Source§fn instrument(self, span: Span) -> Instrumented<Self>
fn instrument(self, span: Span) -> Instrumented<Self>
Source§fn in_current_span(self) -> Instrumented<Self>
fn in_current_span(self) -> Instrumented<Self>
Source§impl<T> IntoEither for T
impl<T> IntoEither for T
Source§fn into_either(self, into_left: bool) -> Either<Self, Self>
fn into_either(self, into_left: bool) -> Either<Self, Self>
Converts
self into a Left variant of Either<Self, Self>
if into_left is true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
Converts
self into a Left variant of Either<Self, Self>
if into_left(&self) returns true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read more