Skip to main content

SecurityContext

Struct SecurityContext 

Source
pub struct SecurityContext {
    pub policy: Option<Arc<dyn SecurityPolicy>>,
    pub credential_sources: Vec<CredentialSource>,
    pub plan: Option<RouteSecurityPlan>,
    pub providers: Option<Arc<ProviderRegistry>>,
}
Expand description

Security context passed to a consumer before start().

Carries the route’s security classification so consumers can register auth state before accepting connections. Declared routes carry the SecurityPolicy from the route controller; plan-only contexts (routes without a policy declaration) carry just the compiled [RouteSecurityPlan] (policy = None). Authentication itself runs through the kernel fields (plan + providers).

Fields§

§policy: Option<Arc<dyn SecurityPolicy>>

Route policy, when the route declared one. None for plan-only contexts built via SecurityContext::from_plan.

§credential_sources: Vec<CredentialSource>§plan: Option<RouteSecurityPlan>

Compiled RouteSecurityPlan for the route, when one has been compiled.

Phase-2 transports read the plan from here to drive per-route dispatch enforcement. None until Task 1.8 compiles plans into the context.

§providers: Option<Arc<ProviderRegistry>>

Provider registry carrying the route’s named authenticators.

Phase-2 transports read providers from here (grpc 2.1, mcp 2.6, ws 2.8, http 2.9) instead of holding their own authenticator. None for routes built before the registry injection path lands.

Implementations§

Source§

impl SecurityContext

Source

pub fn new(policy: impl SecurityPolicy + 'static) -> Self

Source

pub fn from_arc(policy: Arc<dyn SecurityPolicy>) -> Self

Source

pub fn from_plan(plan: RouteSecurityPlan) -> Self

Build a plan-only context: no policy, no providers, empty credential sources. The controller delivers a route’s compiled classification (e.g. the Public default for an undeclared server route) through this form.

Source

pub fn with_credential_sources(self, sources: Vec<CredentialSource>) -> Self

Source

pub fn with_plan(self, plan: RouteSecurityPlan) -> Self

Attach the compiled RouteSecurityPlan for this route.

Source

pub fn with_providers(self, providers: Arc<ProviderRegistry>) -> Self

Attach the provider registry carrying this route’s named authenticators.

Trait Implementations§

Source§

impl Clone for SecurityContext

Source§

fn clone(&self) -> Self

Returns a duplicate of the value. Read more
1.0.0 (const: unstable) · Source§

fn clone_from(&mut self, source: &Self)

Performs copy-assignment from source. Read more
Source§

impl Debug for SecurityContext

Source§

fn fmt(&self, f: &mut Formatter<'_>) -> Result

Formats the value using the given formatter. Read more

Auto Trait Implementations§

Blanket Implementations§

Source§

impl<T> Any for T
where T: 'static + ?Sized,

Source§

fn type_id(&self) -> TypeId

Gets the TypeId of self. Read more
Source§

impl<T> Borrow<T> for T
where T: ?Sized,

Source§

fn borrow(&self) -> &T

Immutably borrows from an owned value. Read more
Source§

impl<T> BorrowMut<T> for T
where T: ?Sized,

Source§

fn borrow_mut(&mut self) -> &mut T

Mutably borrows from an owned value. Read more
Source§

impl<T> CloneToUninit for T
where T: Clone,

Source§

unsafe fn clone_to_uninit(&self, dest: *mut u8)

🔬This is a nightly-only experimental API. (clone_to_uninit)
Performs copy-assignment from self to dest. Read more
Source§

impl<T> DynClone for T
where T: Clone,

Source§

fn __clone_box(&self, _: Private) -> *mut ()

Source§

impl<T> ErasedDestructor for T
where T: 'static,

Source§

impl<T> From<T> for T

Source§

fn from(t: T) -> T

Returns the argument unchanged.

Source§

impl<T> FutureExt for T

Source§

fn with_context(self, otel_cx: Context) -> WithContext<Self>

Attaches the provided Context to this type, returning a WithContext wrapper. Read more
Source§

fn with_current_context(self) -> WithContext<Self>

Attaches the current Context to this type, returning a WithContext wrapper. Read more
Source§

impl<T> Instrument for T

Source§

fn instrument(self, span: Span) -> Instrumented<Self>

Instruments this type with the provided Span, returning an Instrumented wrapper. Read more
Source§

fn in_current_span(self) -> Instrumented<Self>

Instruments this type with the current Span, returning an Instrumented wrapper. Read more
Source§

impl<T, U> Into<U> for T
where U: From<T>,

Source§

fn into(self) -> U

Calls U::from(self).

That is, this conversion is whatever the implementation of From<T> for U chooses to do.

Source§

impl<T> PolicyExt for T
where T: ?Sized,

Source§

fn and<P, B, E>(self, other: P) -> And<T, P>
where T: Sized + Policy<B, E>, P: Policy<B, E>,

Create a new Policy that returns Action::Follow only if self and other return Action::Follow. Read more
Source§

fn or<P, B, E>(self, other: P) -> Or<T, P>
where T: Sized + Policy<B, E>, P: Policy<B, E>,

Create a new Policy that returns Action::Follow if either self or other returns Action::Follow. Read more
Source§

impl<T> Same for T

Source§

type Output = T

Should always be Self
Source§

impl<T> ToOwned for T
where T: Clone,

Source§

type Owned = T

The resulting type after obtaining ownership.
Source§

fn to_owned(&self) -> T

Creates owned data from borrowed data, usually by cloning. Read more
Source§

fn clone_into(&self, target: &mut T)

Uses borrowed data to replace owned data, usually by cloning. Read more
Source§

impl<T, U> TryFrom<U> for T
where U: Into<T>,

Source§

type Error = !

The type returned in the event of a conversion error.
Source§

fn try_from(value: U) -> Result<T, <T as TryFrom<U>>::Error>

Performs the conversion.
Source§

impl<T, U> TryInto<U> for T
where U: TryFrom<T>,

Source§

type Error = <U as TryFrom<T>>::Error

The type returned in the event of a conversion error.
Source§

fn try_into(self) -> Result<U, <U as TryFrom<T>>::Error>

Performs the conversion.
Source§

impl<T> WithSubscriber for T

Source§

fn with_subscriber<S>(self, subscriber: S) -> WithDispatch<Self>
where S: Into<Dispatch>,

Attaches the provided Subscriber to this type, returning a WithDispatch wrapper. Read more
Source§

fn with_current_subscriber(self) -> WithDispatch<Self>

Attaches the current default Subscriber to this type, returning a WithDispatch wrapper. Read more