Skip to main content

SharedCredentialAttemptState

Struct SharedCredentialAttemptState 

Source
pub struct SharedCredentialAttemptState { /* private fields */ }
Expand description

Caller-owned concurrent lockout state for one credential lifecycle.

Cloned clients share this object by reference. Multiple attempt proofs may begin on one open generation, but Self::reserve_dispatch admits only one in-flight request. The first authentication rejection closes that generation for every later execution. Only replacement credentials or an explicit CredentialReconfirmation advance to a new open generation.

Implementations§

Source§

impl SharedCredentialAttemptState

Source

pub const fn new() -> Self

Creates one open initial credential generation.

Source

pub fn observe(&self) -> (CredentialAttemptGeneration, CredentialAttemptStatus)

Returns the current generation and status.

Source

pub fn begin(&self) -> Result<CredentialAttempt<'_>, CredentialAttemptError>

Begins execution only when the current generation remains open.

Source

pub fn validate( &self, attempt: CredentialAttempt<'_>, ) -> Result<(), CredentialAttemptError>

Revalidates an attempt immediately before credential use.

Source

pub fn reserve_dispatch( &self, attempt: CredentialAttempt<'_>, ) -> Result<CredentialDispatchGuard<'_>, CredentialAttemptError>

Exclusively admits one dispatch for the supplied open generation.

Source

pub fn reject( &self, attempt: CredentialAttempt<'_>, ) -> Result<(), CredentialAttemptError>

Closes the exact generation that received authentication rejection.

Repeated concurrent rejection reports for the same generation are idempotent. A stale report cannot close replacement credentials.

Source

pub fn replace( &self, expected: CredentialAttemptGeneration, ) -> Result<CredentialAttemptGeneration, CredentialAttemptError>

Opens a new generation after replacement credentials were admitted.

Source

pub fn reconfirm( &self, expected: CredentialAttemptGeneration, _acknowledgement: CredentialReconfirmation, ) -> Result<CredentialAttemptGeneration, CredentialAttemptError>

Opens a new generation after explicit unchanged-credential confirmation.

Trait Implementations§

Source§

impl Debug for SharedCredentialAttemptState

Source§

fn fmt(&self, formatter: &mut Formatter<'_>) -> Result

Formats the value using the given formatter. Read more
Source§

impl Default for SharedCredentialAttemptState

Source§

fn default() -> Self

Returns the “default value” for a type. Read more

Auto Trait Implementations§

Blanket Implementations§

Source§

impl<T> Any for T
where T: 'static + ?Sized,

Source§

fn type_id(&self) -> TypeId

Gets the TypeId of self. Read more
Source§

impl<T> Borrow<T> for T
where T: ?Sized,

Source§

fn borrow(&self) -> &T

Immutably borrows from an owned value. Read more
Source§

impl<T> BorrowMut<T> for T
where T: ?Sized,

Source§

fn borrow_mut(&mut self) -> &mut T

Mutably borrows from an owned value. Read more
Source§

impl<T> From<T> for T

Source§

fn from(t: T) -> T

Returns the argument unchanged.

Source§

impl<T, U> Into<U> for T
where U: From<T>,

Source§

fn into(self) -> U

Calls U::from(self).

That is, this conversion is whatever the implementation of From<T> for U chooses to do.

Source§

impl<T, U> TryFrom<U> for T
where U: Into<T>,

Source§

type Error = Infallible

The type returned in the event of a conversion error.
Source§

fn try_from(value: U) -> Result<T, <T as TryFrom<U>>::Error>

Performs the conversion.
Source§

impl<T, U> TryInto<U> for T
where U: TryFrom<T>,

Source§

type Error = <U as TryFrom<T>>::Error

The type returned in the event of a conversion error.
Source§

fn try_into(self) -> Result<U, <U as TryFrom<T>>::Error>

Performs the conversion.