pub struct FirewallEnforcer { /* private fields */ }Expand description
Host firewall enforcement for security groups + NACLs (#1745 phase 3).
The network-driver abstraction the issue asks for: today there is one real
driver (nftables) plus the degraded no-op, selected once at construction.
Branching on podman vs docker isn’t needed explicitly — rootless podman
can’t touch the host firewall, so the nft list ruleset capability probe
already degrades it; rootful podman with netavark passes the same probe.
Implementations§
Trait Implementations§
Source§impl Clone for FirewallEnforcer
impl Clone for FirewallEnforcer
Source§fn clone(&self) -> FirewallEnforcer
fn clone(&self) -> FirewallEnforcer
Returns a duplicate of the value. Read more
1.0.0 (const: unstable) · Source§fn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
Performs copy-assignment from
source. Read moreAuto Trait Implementations§
impl Freeze for FirewallEnforcer
impl RefUnwindSafe for FirewallEnforcer
impl Send for FirewallEnforcer
impl Sync for FirewallEnforcer
impl Unpin for FirewallEnforcer
impl UnsafeUnpin for FirewallEnforcer
impl UnwindSafe for FirewallEnforcer
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Mutably borrows from an owned value. Read more
Source§impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> ErasedDestructor for Twhere
T: 'static,
Source§impl<T> Instrument for T
impl<T> Instrument for T
Source§fn instrument(self, span: Span) -> Instrumented<Self>
fn instrument(self, span: Span) -> Instrumented<Self>
Source§fn in_current_span(self) -> Instrumented<Self>
fn in_current_span(self) -> Instrumented<Self>
Source§impl<T> IntoEither for T
impl<T> IntoEither for T
Source§fn into_either(self, into_left: bool) -> Either<Self, Self>
fn into_either(self, into_left: bool) -> Either<Self, Self>
Converts
self into a Left variant of Either<Self, Self>
if into_left is true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
Converts
self into a Left variant of Either<Self, Self>
if into_left(&self) returns true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read more