pub enum PluginTrustError {
MissingManifest,
InvalidDigest,
DigestMismatch,
MissingSignature,
MissingRevocationList,
MissingOfficialKey,
UntrustedOfficialKey,
SignatureNotVerified,
Revoked,
SignatureLaneRequired,
}Expand description
Why plugin trust verification refused an artifact. 插件信任校验拒绝某个工件的原因。
Variants§
MissingManifest
Artifact carried no plugin manifest. 工件没有携带插件 manifest。
InvalidDigest
Checksum is not a SHA-256 digest while a digest is required. 要求摘要时,校验和却不是 SHA-256 值。
DigestMismatch
Bytes do not hash to the manifest checksum. 字节的散列与 manifest 摘要不符。
MissingSignature
Official plugin has no non-empty signature. 官方插件没有非空签名。
MissingRevocationList
Official plugin has no revocation-list snapshot. 官方插件没有撤销列表快照。
MissingOfficialKey
No signing-key fingerprint was available to check. 没有可用于校验的签名密钥指纹。
UntrustedOfficialKey
Signing key is not in the policy’s trusted list. 签名密钥不在策略的信任列表中。
SignatureNotVerified
Host verifier rejected the signature. 宿主验证器拒绝了该签名。
Revoked
Package version appears in the revocation list. 包版本出现在撤销列表中。
SignatureLaneRequired
Signature assurance was requested for a source no verifier is consulted for. 对一个不会咨询验证器的来源请求了签名保证。
PluginTrustPolicy::verify_with consults a verifier only for the official
lane, so recording PluginAssurance::Signature for a user artifact would
make the field — documented as the strongest check actually performed — false.
The refusal is explicit instead of a silent downgrade, because the caller
asked for a check this lane cannot perform; the digest path stays available.
PluginTrustPolicy::verify_with 只为官方通道咨询验证器,因此对用户工件记录
PluginAssurance::Signature 会让那个“实际执行过的最强检查“字段变成假话。这里显式
拒绝而不是静默降级,因为调用方请求的是本通道做不到的检查;纯摘要路径仍然可用。
Trait Implementations§
Source§impl Clone for PluginTrustError
impl Clone for PluginTrustError
Source§fn clone(&self) -> PluginTrustError
fn clone(&self) -> PluginTrustError
1.0.0 (const: unstable) · Source§fn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
source. Read moreimpl Copy for PluginTrustError
Source§impl Debug for PluginTrustError
impl Debug for PluginTrustError
Source§impl Display for PluginTrustError
impl Display for PluginTrustError
impl Eq for PluginTrustError
Source§impl Error for PluginTrustError
impl Error for PluginTrustError
1.30.0 · Source§fn source(&self) -> Option<&(dyn Error + 'static)>
fn source(&self) -> Option<&(dyn Error + 'static)>
1.0.0 · Source§fn description(&self) -> &str
fn description(&self) -> &str
use the Display impl or to_string()