pub struct PolicyTrigger {
pub tool: Option<String>,
pub host_glob: Option<String>,
pub target_path_glob: Option<String>,
pub command_glob: Option<String>,
}Expand description
Declarative action predicate stored on a local policy.
This is the persisted shape consumed by the pure policy matcher.
Unknown fields are rejected: every field is optional and an absent one is a
wildcard, so a misspelled key would otherwise deserialize into an all-None
trigger that matches every governed action.
Fields§
§tool: Option<String>§host_glob: Option<String>§target_path_glob: Option<String>§command_glob: Option<String>Glob matched against the normalized command tokens joined by single
spaces (action.argv, after wrapper stripping and sh -c unwrap). The
only predicate that can gate a pathless verb (dd, terraform destroy,
git reset --hard). Lexical and best-effort: quoting, variable
expansion, and aliases bypass it, so a block on it is a tripwire, never
a guarantee.
Trait Implementations§
Source§impl Clone for PolicyTrigger
impl Clone for PolicyTrigger
Source§fn clone(&self) -> PolicyTrigger
fn clone(&self) -> PolicyTrigger
Returns a duplicate of the value. Read more
1.0.0 (const: unstable) · Source§fn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
Performs copy-assignment from
source. Read moreSource§impl Debug for PolicyTrigger
impl Debug for PolicyTrigger
Source§impl Default for PolicyTrigger
impl Default for PolicyTrigger
Source§fn default() -> PolicyTrigger
fn default() -> PolicyTrigger
Returns the “default value” for a type. Read more
Source§impl<'de> Deserialize<'de> for PolicyTrigger
impl<'de> Deserialize<'de> for PolicyTrigger
Source§fn deserialize<__D>(__deserializer: __D) -> Result<Self, __D::Error>where
__D: Deserializer<'de>,
fn deserialize<__D>(__deserializer: __D) -> Result<Self, __D::Error>where
__D: Deserializer<'de>,
Deserialize this value from the given Serde deserializer. Read more
impl Eq for PolicyTrigger
Source§impl PartialEq for PolicyTrigger
impl PartialEq for PolicyTrigger
Source§impl Serialize for PolicyTrigger
impl Serialize for PolicyTrigger
impl StructuralPartialEq for PolicyTrigger
Auto Trait Implementations§
impl Freeze for PolicyTrigger
impl RefUnwindSafe for PolicyTrigger
impl Send for PolicyTrigger
impl Sync for PolicyTrigger
impl Unpin for PolicyTrigger
impl UnsafeUnpin for PolicyTrigger
impl UnwindSafe for PolicyTrigger
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Mutably borrows from an owned value. Read more
Source§impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> DeserializeOwned for Twhere
T: for<'de> Deserialize<'de>,
Source§impl<T> Downcast for Twhere
T: Any,
impl<T> Downcast for Twhere
T: Any,
Source§fn into_any(self: Box<T>) -> Box<dyn Any>
fn into_any(self: Box<T>) -> Box<dyn Any>
Converts
Box<dyn Trait> (where Trait: Downcast) to Box<dyn Any>, which can then be
downcast into Box<dyn ConcreteType> where ConcreteType implements Trait.Source§fn into_any_rc(self: Rc<T>) -> Rc<dyn Any>
fn into_any_rc(self: Rc<T>) -> Rc<dyn Any>
Converts
Rc<Trait> (where Trait: Downcast) to Rc<Any>, which can then be further
downcast into Rc<ConcreteType> where ConcreteType implements Trait.Source§fn as_any(&self) -> &(dyn Any + 'static)
fn as_any(&self) -> &(dyn Any + 'static)
Converts
&Trait (where Trait: Downcast) to &Any. This is needed since Rust cannot
generate &Any’s vtable from &Trait’s.Source§fn as_any_mut(&mut self) -> &mut (dyn Any + 'static)
fn as_any_mut(&mut self) -> &mut (dyn Any + 'static)
Converts
&mut Trait (where Trait: Downcast) to &Any. This is needed since Rust cannot
generate &mut Any’s vtable from &mut Trait’s.Source§impl<T> DowncastSend for T
impl<T> DowncastSend for T
Source§impl<T> DowncastSync for T
impl<T> DowncastSync for T
Source§impl<Q, K> Equivalent<K> for Q
impl<Q, K> Equivalent<K> for Q
Source§impl<Q, K> Equivalent<K> for Q
impl<Q, K> Equivalent<K> for Q
Source§fn equivalent(&self, key: &K) -> bool
fn equivalent(&self, key: &K) -> bool
Compare self to
key and return true if they are equal.impl<T> Fruit for T
Source§impl<T> Instrument for T
impl<T> Instrument for T
Source§fn instrument(self, span: Span) -> Instrumented<Self> ⓘ
fn instrument(self, span: Span) -> Instrumented<Self> ⓘ
Source§fn in_current_span(self) -> Instrumented<Self> ⓘ
fn in_current_span(self) -> Instrumented<Self> ⓘ
Source§impl<T> IntoEither for T
impl<T> IntoEither for T
Source§fn into_either(self, into_left: bool) -> Either<Self, Self> ⓘ
fn into_either(self, into_left: bool) -> Either<Self, Self> ⓘ
Converts
self into a Left variant of Either<Self, Self>
if into_left is true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§fn into_either_with<F>(self, into_left: F) -> Either<Self, Self> ⓘ
fn into_either_with<F>(self, into_left: F) -> Either<Self, Self> ⓘ
Converts
self into a Left variant of Either<Self, Self>
if into_left(&self) returns true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read more