Struct mls_rs::identity::x509::X509IdentityProvider
source · #[non_exhaustive]pub struct X509IdentityProvider<IE, V, IEP> {
pub identity_extractor: IE,
pub validator: V,
pub warning_provider: IEP,
}
Expand description
A customizable generic X.509 certificate identity provider.
This provider forwards its individual IdentityProvider
behavior to its generic sub-components.
Only X509 credentials are supported by this provider.
Fields (Non-exhaustive)§
This struct is marked as non-exhaustive
Non-exhaustive structs could have additional fields added in future. Therefore, non-exhaustive structs cannot be constructed in external crates using the traditional
Struct { .. }
syntax; cannot be matched against without a wildcard ..
; and struct update syntax will not work.identity_extractor: IE
§validator: V
§warning_provider: IEP
Implementations§
source§impl<IE, V, IEP> X509IdentityProvider<IE, V, IEP>where
IE: X509IdentityExtractor,
V: X509CredentialValidator,
IEP: X509WarningProvider,
impl<IE, V, IEP> X509IdentityProvider<IE, V, IEP>where IE: X509IdentityExtractor, V: X509CredentialValidator, IEP: X509WarningProvider,
sourcepub fn new(
identity_extractor: IE,
validator: V,
warning_provider: IEP
) -> X509IdentityProvider<IE, V, IEP>
pub fn new( identity_extractor: IE, validator: V, warning_provider: IEP ) -> X509IdentityProvider<IE, V, IEP>
Create a new identity provider.
sourcepub fn validate(
&self,
signing_identity: &SigningIdentity,
timestamp: Option<MlsTime>
) -> Result<(), X509IdentityError>
pub fn validate( &self, signing_identity: &SigningIdentity, timestamp: Option<MlsTime> ) -> Result<(), X509IdentityError>
Determine if a certificate is valid based on the behavior of the underlying validator provided.
sourcepub fn identity(
&self,
signing_id: &SigningIdentity
) -> Result<Vec<u8>, X509IdentityError>
pub fn identity( &self, signing_id: &SigningIdentity ) -> Result<Vec<u8>, X509IdentityError>
Produce a unique identity value to represent the entity controlling a certificate credential within an MLS group.
sourcepub fn valid_successor(
&self,
predecessor: &SigningIdentity,
successor: &SigningIdentity
) -> Result<bool, X509IdentityError>
pub fn valid_successor( &self, predecessor: &SigningIdentity, successor: &SigningIdentity ) -> Result<bool, X509IdentityError>
Determine if successor
is controlled by the same entity as
predecessor
based on the behavior of the underlying identity
extractor provided.
sourcepub fn supported_types(&self) -> Vec<CredentialType>
pub fn supported_types(&self) -> Vec<CredentialType>
Supported credential types.
Only CredentialType::X509
is supported.
sourcepub fn identity_warnings(
&self,
update: &RosterUpdate
) -> Result<Vec<IdentityWarning>, X509IdentityError>
pub fn identity_warnings( &self, update: &RosterUpdate ) -> Result<Vec<IdentityWarning>, X509IdentityError>
Gather identity warnings based on the rules provided by the underlying warning provider.
Trait Implementations§
source§impl<IE, V, IEP> Clone for X509IdentityProvider<IE, V, IEP>where
IE: Clone,
V: Clone,
IEP: Clone,
impl<IE, V, IEP> Clone for X509IdentityProvider<IE, V, IEP>where IE: Clone, V: Clone, IEP: Clone,
source§fn clone(&self) -> X509IdentityProvider<IE, V, IEP>
fn clone(&self) -> X509IdentityProvider<IE, V, IEP>
Returns a copy of the value. Read more
1.0.0 · source§fn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
Performs copy-assignment from
source
. Read moresource§impl<IE, V, IEP> Debug for X509IdentityProvider<IE, V, IEP>where
IE: Debug,
V: Debug,
IEP: Debug,
impl<IE, V, IEP> Debug for X509IdentityProvider<IE, V, IEP>where IE: Debug, V: Debug, IEP: Debug,
source§impl<IE, V, IEP> IdentityProvider for X509IdentityProvider<IE, V, IEP>where
IE: X509IdentityExtractor + Send + Sync,
V: X509CredentialValidator + Send + Sync,
IEP: X509WarningProvider + Send + Sync,
impl<IE, V, IEP> IdentityProvider for X509IdentityProvider<IE, V, IEP>where IE: X509IdentityExtractor + Send + Sync, V: X509CredentialValidator + Send + Sync, IEP: X509WarningProvider + Send + Sync,
§type Error = X509IdentityError
type Error = X509IdentityError
Error type that this provider returns on internal failure.
source§fn validate_member(
&self,
signing_identity: &SigningIdentity,
timestamp: Option<MlsTime>,
_extensions: Option<&ExtensionList>
) -> Result<(), <X509IdentityProvider<IE, V, IEP> as IdentityProvider>::Error>
fn validate_member( &self, signing_identity: &SigningIdentity, timestamp: Option<MlsTime>, _extensions: Option<&ExtensionList> ) -> Result<(), <X509IdentityProvider<IE, V, IEP> as IdentityProvider>::Error>
Determine if
signing_identity
is valid for a group member. Read moresource§fn validate_external_sender(
&self,
signing_identity: &SigningIdentity,
timestamp: Option<MlsTime>,
_extensions: Option<&ExtensionList>
) -> Result<(), <X509IdentityProvider<IE, V, IEP> as IdentityProvider>::Error>
fn validate_external_sender( &self, signing_identity: &SigningIdentity, timestamp: Option<MlsTime>, _extensions: Option<&ExtensionList> ) -> Result<(), <X509IdentityProvider<IE, V, IEP> as IdentityProvider>::Error>
Determine if
signing_identity
is valid for an external sender in
the ExternalSendersExtension stored in the group context. Read moresource§fn identity(
&self,
signing_id: &SigningIdentity
) -> Result<Vec<u8>, <X509IdentityProvider<IE, V, IEP> as IdentityProvider>::Error>
fn identity( &self, signing_id: &SigningIdentity ) -> Result<Vec<u8>, <X509IdentityProvider<IE, V, IEP> as IdentityProvider>::Error>
A unique identifier for
signing_identity
. Read moresource§fn valid_successor(
&self,
predecessor: &SigningIdentity,
successor: &SigningIdentity
) -> Result<bool, <X509IdentityProvider<IE, V, IEP> as IdentityProvider>::Error>
fn valid_successor( &self, predecessor: &SigningIdentity, successor: &SigningIdentity ) -> Result<bool, <X509IdentityProvider<IE, V, IEP> as IdentityProvider>::Error>
source§fn supported_types(&self) -> Vec<CredentialType>
fn supported_types(&self) -> Vec<CredentialType>
Credential types that are supported by this provider.
source§fn identity_warnings(
&self,
update: &RosterUpdate
) -> Result<Vec<IdentityWarning>, <X509IdentityProvider<IE, V, IEP> as IdentityProvider>::Error>
fn identity_warnings( &self, update: &RosterUpdate ) -> Result<Vec<IdentityWarning>, <X509IdentityProvider<IE, V, IEP> as IdentityProvider>::Error>
Throw warnings based on changes to a group roster. Read more
Auto Trait Implementations§
impl<IE, V, IEP> RefUnwindSafe for X509IdentityProvider<IE, V, IEP>where IE: RefUnwindSafe, IEP: RefUnwindSafe, V: RefUnwindSafe,
impl<IE, V, IEP> Send for X509IdentityProvider<IE, V, IEP>where IE: Send, IEP: Send, V: Send,
impl<IE, V, IEP> Sync for X509IdentityProvider<IE, V, IEP>where IE: Sync, IEP: Sync, V: Sync,
impl<IE, V, IEP> Unpin for X509IdentityProvider<IE, V, IEP>where IE: Unpin, IEP: Unpin, V: Unpin,
impl<IE, V, IEP> UnwindSafe for X509IdentityProvider<IE, V, IEP>where IE: UnwindSafe, IEP: UnwindSafe, V: UnwindSafe,
Blanket Implementations§
source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere T: ?Sized,
source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Mutably borrows from an owned value. Read more