pub struct NevisConfig {
pub enabled: bool,
pub instance_url: String,
pub realm: String,
pub client_id: String,
pub client_secret: Option<String>,
pub token_validation: String,
pub jwks_url: Option<String>,
pub role_mapping: Vec<NevisRoleMappingConfig>,
pub require_mfa: bool,
pub session_timeout_secs: u64,
}Expand description
Nevis IAM integration configuration.
When enabled is true, Construct validates incoming requests against a Nevis
Security Suite instance and maps Nevis roles to tool/workspace permissions.
Fields§
§enabled: boolEnable Nevis IAM integration. Defaults to false for backward compatibility.
instance_url: StringBase URL of the Nevis instance (e.g. https://nevis.example.com).
realm: StringNevis realm to authenticate against.
client_id: StringOAuth2 client ID registered in Nevis.
client_secret: Option<String>OAuth2 client secret. Encrypted via SecretStore when stored on disk.
token_validation: StringToken validation strategy: "local" (JWKS) or "remote" (introspection).
jwks_url: Option<String>JWKS endpoint URL for local token validation.
role_mapping: Vec<NevisRoleMappingConfig>Nevis role to Construct permission mappings.
require_mfa: boolRequire MFA verification for all Nevis-authenticated requests.
session_timeout_secs: u64Session timeout in seconds.
Implementations§
Trait Implementations§
Source§impl Clone for NevisConfig
impl Clone for NevisConfig
Source§fn clone(&self) -> NevisConfig
fn clone(&self) -> NevisConfig
Returns a duplicate of the value. Read more
1.0.0 · Source§fn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
Performs copy-assignment from
source. Read moreSource§impl Debug for NevisConfig
impl Debug for NevisConfig
Source§impl Default for NevisConfig
impl Default for NevisConfig
Source§impl<'de> Deserialize<'de> for NevisConfig
impl<'de> Deserialize<'de> for NevisConfig
Source§fn deserialize<__D>(__deserializer: __D) -> Result<Self, __D::Error>where
__D: Deserializer<'de>,
fn deserialize<__D>(__deserializer: __D) -> Result<Self, __D::Error>where
__D: Deserializer<'de>,
Deserialize this value from the given Serde deserializer. Read more
Source§impl JsonSchema for NevisConfig
impl JsonSchema for NevisConfig
Source§fn schema_id() -> Cow<'static, str>
fn schema_id() -> Cow<'static, str>
Returns a string that uniquely identifies the schema produced by this type. Read more
Source§fn json_schema(generator: &mut SchemaGenerator) -> Schema
fn json_schema(generator: &mut SchemaGenerator) -> Schema
Generates a JSON Schema for this type. Read more
Source§fn inline_schema() -> bool
fn inline_schema() -> bool
Whether JSON Schemas generated for this type should be included directly in parent schemas,
rather than being re-used where possible using the
$ref keyword. Read moreAuto Trait Implementations§
impl Freeze for NevisConfig
impl RefUnwindSafe for NevisConfig
impl Send for NevisConfig
impl Sync for NevisConfig
impl Unpin for NevisConfig
impl UnsafeUnpin for NevisConfig
impl UnwindSafe for NevisConfig
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Mutably borrows from an owned value. Read more
Source§impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> CloneToUninit for Twhere
T: Clone,
Source§impl<T> Downcast for Twhere
T: Any,
impl<T> Downcast for Twhere
T: Any,
Source§fn into_any(self: Box<T>) -> Box<dyn Any>
fn into_any(self: Box<T>) -> Box<dyn Any>
Convert
Box<dyn Trait> (where Trait: Downcast) to Box<dyn Any>. Box<dyn Any> can
then be further downcast into Box<ConcreteType> where ConcreteType implements Trait.Source§fn into_any_rc(self: Rc<T>) -> Rc<dyn Any>
fn into_any_rc(self: Rc<T>) -> Rc<dyn Any>
Convert
Rc<Trait> (where Trait: Downcast) to Rc<Any>. Rc<Any> can then be
further downcast into Rc<ConcreteType> where ConcreteType implements Trait.Source§fn as_any(&self) -> &(dyn Any + 'static)
fn as_any(&self) -> &(dyn Any + 'static)
Convert
&Trait (where Trait: Downcast) to &Any. This is needed since Rust cannot
generate &Any’s vtable from &Trait’s.Source§fn as_any_mut(&mut self) -> &mut (dyn Any + 'static)
fn as_any_mut(&mut self) -> &mut (dyn Any + 'static)
Convert
&mut Trait (where Trait: Downcast) to &Any. This is needed since Rust cannot
generate &mut Any’s vtable from &mut Trait’s.Source§impl<T> DowncastSync for T
impl<T> DowncastSync for T
Source§impl<T> Instrument for T
impl<T> Instrument for T
Source§fn instrument(self, span: Span) -> Instrumented<Self>
fn instrument(self, span: Span) -> Instrumented<Self>
Source§fn in_current_span(self) -> Instrumented<Self>
fn in_current_span(self) -> Instrumented<Self>
Source§impl<T> IntoEither for T
impl<T> IntoEither for T
Source§fn into_either(self, into_left: bool) -> Either<Self, Self>
fn into_either(self, into_left: bool) -> Either<Self, Self>
Converts
self into a Left variant of Either<Self, Self>
if into_left is true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
Converts
self into a Left variant of Either<Self, Self>
if into_left(&self) returns true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read more