#[non_exhaustive]pub struct X509IdentityProvider<IE, V> {
pub identity_extractor: IE,
pub validator: V,
}
Expand description
A customizable generic X.509 certificate identity provider.
This provider forwards its individual IdentityProvider
behavior to its generic sub-components.
Only X509 credentials are supported by this provider.
Fields (Non-exhaustive)§
This struct is marked as non-exhaustive
Non-exhaustive structs could have additional fields added in future. Therefore, non-exhaustive structs cannot be constructed in external crates using the traditional
Struct { .. }
syntax; cannot be matched against without a wildcard ..
; and struct update syntax will not work.identity_extractor: IE
§validator: V
Implementations§
Source§impl<IE, V> X509IdentityProvider<IE, V>where
IE: X509IdentityExtractor,
V: X509CredentialValidator,
impl<IE, V> X509IdentityProvider<IE, V>where
IE: X509IdentityExtractor,
V: X509CredentialValidator,
Sourcepub fn new(identity_extractor: IE, validator: V) -> X509IdentityProvider<IE, V>
pub fn new(identity_extractor: IE, validator: V) -> X509IdentityProvider<IE, V>
Create a new identity provider.
Sourcepub fn validate(
&self,
signing_identity: &SigningIdentity,
timestamp: Option<MlsTime>,
) -> Result<(), X509IdentityError>
pub fn validate( &self, signing_identity: &SigningIdentity, timestamp: Option<MlsTime>, ) -> Result<(), X509IdentityError>
Determine if a certificate is valid based on the behavior of the underlying validator provided.
Sourcepub fn identity(
&self,
signing_id: &SigningIdentity,
) -> Result<Vec<u8>, X509IdentityError>
pub fn identity( &self, signing_id: &SigningIdentity, ) -> Result<Vec<u8>, X509IdentityError>
Produce a unique identity value to represent the entity controlling a certificate credential within an MLS group.
Sourcepub fn valid_successor(
&self,
predecessor: &SigningIdentity,
successor: &SigningIdentity,
) -> Result<bool, X509IdentityError>
pub fn valid_successor( &self, predecessor: &SigningIdentity, successor: &SigningIdentity, ) -> Result<bool, X509IdentityError>
Determine if successor
is controlled by the same entity as
predecessor
based on the behavior of the underlying identity
extractor provided.
Sourcepub fn supported_types(&self) -> Vec<CredentialType>
pub fn supported_types(&self) -> Vec<CredentialType>
Supported credential types.
Only CredentialType::X509
is supported.
Trait Implementations§
Source§impl<IE, V> Clone for X509IdentityProvider<IE, V>
impl<IE, V> Clone for X509IdentityProvider<IE, V>
Source§fn clone(&self) -> X509IdentityProvider<IE, V>
fn clone(&self) -> X509IdentityProvider<IE, V>
Returns a copy of the value. Read more
1.0.0 · Source§fn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
Performs copy-assignment from
source
. Read moreSource§impl<IE, V> Debug for X509IdentityProvider<IE, V>
impl<IE, V> Debug for X509IdentityProvider<IE, V>
Source§impl<IE, V> IdentityProvider for X509IdentityProvider<IE, V>
impl<IE, V> IdentityProvider for X509IdentityProvider<IE, V>
Source§type Error = X509IdentityError
type Error = X509IdentityError
Error type that this provider returns on internal failure.
Source§fn validate_member(
&self,
signing_identity: &SigningIdentity,
timestamp: Option<MlsTime>,
_: MemberValidationContext<'_>,
) -> Result<(), <X509IdentityProvider<IE, V> as IdentityProvider>::Error>
fn validate_member( &self, signing_identity: &SigningIdentity, timestamp: Option<MlsTime>, _: MemberValidationContext<'_>, ) -> Result<(), <X509IdentityProvider<IE, V> as IdentityProvider>::Error>
Determine if
signing_identity
is valid for a group member. Read moreSource§fn validate_external_sender(
&self,
signing_identity: &SigningIdentity,
timestamp: Option<MlsTime>,
_extensions: Option<&ExtensionList>,
) -> Result<(), <X509IdentityProvider<IE, V> as IdentityProvider>::Error>
fn validate_external_sender( &self, signing_identity: &SigningIdentity, timestamp: Option<MlsTime>, _extensions: Option<&ExtensionList>, ) -> Result<(), <X509IdentityProvider<IE, V> as IdentityProvider>::Error>
Determine if
signing_identity
is valid for an external sender in
the ExternalSendersExtension stored in the group context. Read moreSource§fn identity(
&self,
signing_id: &SigningIdentity,
_extensions: &ExtensionList,
) -> Result<Vec<u8>, <X509IdentityProvider<IE, V> as IdentityProvider>::Error>
fn identity( &self, signing_id: &SigningIdentity, _extensions: &ExtensionList, ) -> Result<Vec<u8>, <X509IdentityProvider<IE, V> as IdentityProvider>::Error>
A unique identifier for
signing_identity
. Read moreSource§fn valid_successor(
&self,
predecessor: &SigningIdentity,
successor: &SigningIdentity,
_extensions: &ExtensionList,
) -> Result<bool, <X509IdentityProvider<IE, V> as IdentityProvider>::Error>
fn valid_successor( &self, predecessor: &SigningIdentity, successor: &SigningIdentity, _extensions: &ExtensionList, ) -> Result<bool, <X509IdentityProvider<IE, V> as IdentityProvider>::Error>
Source§fn supported_types(&self) -> Vec<CredentialType>
fn supported_types(&self) -> Vec<CredentialType>
Credential types that are supported by this provider.
Auto Trait Implementations§
impl<IE, V> Freeze for X509IdentityProvider<IE, V>
impl<IE, V> RefUnwindSafe for X509IdentityProvider<IE, V>where
IE: RefUnwindSafe,
V: RefUnwindSafe,
impl<IE, V> Send for X509IdentityProvider<IE, V>
impl<IE, V> Sync for X509IdentityProvider<IE, V>
impl<IE, V> Unpin for X509IdentityProvider<IE, V>
impl<IE, V> UnwindSafe for X509IdentityProvider<IE, V>where
IE: UnwindSafe,
V: UnwindSafe,
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Mutably borrows from an owned value. Read more
Source§impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> CloneToUninit for Twhere
T: Clone,
Source§impl<T> IntoEither for T
impl<T> IntoEither for T
Source§fn into_either(self, into_left: bool) -> Either<Self, Self>
fn into_either(self, into_left: bool) -> Either<Self, Self>
Converts
self
into a Left
variant of Either<Self, Self>
if into_left
is true
.
Converts self
into a Right
variant of Either<Self, Self>
otherwise. Read moreSource§fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
Converts
self
into a Left
variant of Either<Self, Self>
if into_left(&self)
returns true
.
Converts self
into a Right
variant of Either<Self, Self>
otherwise. Read more