endpoint_sec/event/
event_authorization_judgement.rs1use std::ffi::OsStr;
4
5use endpoint_sec_sys::{es_authorization_result_t, es_authorization_rule_class_t, es_event_authorization_judgement_t};
6
7use crate::{AuditToken, Process};
8
9#[doc(alias = "es_event_authorization_judgement_t")]
11pub struct EventAuthorizationJudgement<'a> {
12 pub(crate) raw: &'a es_event_authorization_judgement_t,
14 pub(crate) version: u32,
16}
17
18impl<'a> EventAuthorizationJudgement<'a> {
19 #[inline(always)]
21 pub fn instigator(&self) -> Option<Process<'a>> {
22 let process = unsafe { self.raw.instigator()? };
24 Some(Process::new(process, self.version))
25 }
26
27 pub fn instigator_token(&self) -> AuditToken {
29 #[cfg(feature = "macos_15_0_0")]
30 if self.version >= 8 {
31 return AuditToken(self.raw.instigator_token);
32 }
33
34 self.instigator().unwrap().audit_token()
37 }
38
39 #[inline(always)]
41 pub fn petitioner(&self) -> Option<Process<'a>> {
42 Some(Process::new(
43 unsafe { self.raw.petitioner.as_ref()? },
45 self.version,
46 ))
47 }
48
49 pub fn petitioner_token(&self) -> AuditToken {
51 #[cfg(feature = "macos_15_0_0")]
52 if self.version >= 8 {
53 return AuditToken(self.raw.petitioner_token);
54 }
55
56 self.petitioner().unwrap().audit_token()
59 }
60
61 #[inline(always)]
65 pub fn return_code(&self) -> i32 {
66 self.raw.return_code
67 }
68
69 #[inline(always)]
71 pub fn result_count(&self) -> usize {
72 self.raw.result_count
73 }
74
75 #[inline(always)]
77 pub fn rights<'event>(&'event self) -> AuthorizationJudgementResults<'event, 'a> {
78 AuthorizationJudgementResults::new(self)
79 }
80}
81
82unsafe impl Send for EventAuthorizationJudgement<'_> {}
84unsafe impl Sync for EventAuthorizationJudgement<'_> {}
86
87impl_debug_eq_hash_with_functions!(EventAuthorizationJudgement<'a> with version; instigator, instigator_token, petitioner, petitioner_token, return_code, result_count);
88
89#[doc(alias = "es_authorization_result_t")]
91pub struct AuthorizationResult<'a> {
92 pub(crate) raw: &'a es_authorization_result_t,
94}
95
96impl<'a> AuthorizationResult<'a> {
97 #[inline(always)]
99 pub fn right_name(&self) -> &'a OsStr {
100 unsafe { self.raw.right_name.as_os_str() }
102 }
103
104 #[inline(always)]
108 pub fn rule_class(&self) -> es_authorization_rule_class_t {
109 self.raw.rule_class
110 }
111
112 #[inline(always)]
114 pub fn granted(&self) -> bool {
115 self.raw.granted
116 }
117}
118
119unsafe impl Send for AuthorizationResult<'_> {}
121
122impl_debug_eq_hash_with_functions!(AuthorizationResult<'a>; right_name, rule_class, granted);
123
124unsafe fn read_nth_result(raw: &es_event_authorization_judgement_t, idx: usize) -> *const es_authorization_result_t {
130 unsafe { raw.results.add(idx).cast_const() }
134}
135
136unsafe fn make_result<'a>(result: *const es_authorization_result_t) -> AuthorizationResult<'a> {
138 assert!(!result.is_null());
139 AuthorizationResult {
140 raw: unsafe { &*result },
141 }
142}
143
144make_event_data_iterator!(
145 EventAuthorizationJudgement;
146 AuthorizationJudgementResults with result_count (usize);
148 AuthorizationResult<'raw>;
149 read_nth_result,
150 make_result,
151);