Skip to main content

StepUpFailure

Enum StepUpFailure 

Source
#[non_exhaustive]
pub enum StepUpFailure { NotReported, Stale, AcrNotMet, }
Available on crate feature consent only.
Expand description

Why a host’s reported authentication did not satisfy an AuthenticationRequirement.

Fieldless on purpose, and not only for the size of it. The error_description these produce goes back to the CLIENT through the authorization response redirect (RFC 6749 section 4.1.2.1), and the client is not entitled to learn when the user last logged in or which acr they hold; “not fresh enough” is the whole of what it needs in order to decide to ask again.

Variants (Non-exhaustive)§

This enum is marked as non-exhaustive
Non-exhaustive enums could have additional variants added in future. Therefore, when matching against variants of non-exhaustive enums, an extra wildcard arm must be added to account for any future variants.
§

NotReported

The host reported no authentication at all, and the request asked about one.

§

Stale

The authentication is older than the request’s max_age.

§

AcrNotMet

The reported acr is not one of the requested acr_values (or none was reported).

Implementations§

Source§

impl StepUpFailure

Source

pub fn description(self) -> &'static str

The developer-facing description this failure carries onto the wire.

&'static str, so a refusal allocates nothing for it. The authorization endpoint is a path whose rate an unauthenticated caller sets, and an allocation per refusal there is a cost an attacker chooses.

Source

pub fn error_response(self) -> ErrorResponse

The RFC 9470 section 3 error this failure is reported as.

insufficient_user_authentication is registered by RFC 9470 for the RESOURCE server’s challenge, and section 4 names no code for the authorization server’s own refusal. This crate uses the same one, deliberately, because it is the code the client has just been handed by the resource server and re-sending it says exactly the true thing: the authentication is still not sufficient. The alternative, a bare invalid_request, tells a client its parameters were malformed and invites it to retry the identical request.

Trait Implementations§

Source§

impl Clone for StepUpFailure

Source§

fn clone(&self) -> StepUpFailure

Returns a duplicate of the value. Read more
1.0.0 (const: unstable) · Source§

fn clone_from(&mut self, source: &Self)

Performs copy-assignment from source. Read more
Source§

impl Copy for StepUpFailure

Source§

impl Debug for StepUpFailure

Source§

fn fmt(&self, f: &mut Formatter<'_>) -> Result

Formats the value using the given formatter. Read more
Source§

impl Display for StepUpFailure

Source§

fn fmt(&self, f: &mut Formatter<'_>) -> Result

Formats the value using the given formatter. Read more
Source§

impl Eq for StepUpFailure

Source§

impl Error for StepUpFailure

The other error-shaped types in this crate (crate::dpop::DpopFailure, crate::client_assertion::AssertionFailure, crate::mtls::MtlsRegistrationError) are all std::error::Error, and a host that puts one of them behind ? or in a Box<dyn Error> has to be able to do the same with this one. Display above is the whole implementation.

1.30.0 · Source§

fn source(&self) -> Option<&(dyn Error + 'static)>

Returns the lower-level source of this error, if any. Read more
1.0.0 · Source§

fn description(&self) -> &str

👎Deprecated since 1.42.0:

use the Display impl or to_string()

1.0.0 · Source§

fn cause(&self) -> Option<&dyn Error>

👎Deprecated since 1.33.0:

replaced by Error::source, which can support downcasting

Source§

fn provide<'a>(&'a self, request: &mut Request<'a>)

🔬This is a nightly-only experimental API. (error_generic_member_access)
Provides type-based access to context intended for error reports. Read more
Source§

impl From<StepUpFailure> for ErrorResponse

Source§

fn from(failure: StepUpFailure) -> ErrorResponse

Converts to this type from the input type.
Source§

impl Hash for StepUpFailure

Source§

fn hash<__H: Hasher>(&self, state: &mut __H)

Feeds this value into the given Hasher. Read more
1.3.0 · Source§

fn hash_slice<H>(data: &[Self], state: &mut H)
where H: Hasher, Self: Sized,

Feeds a slice of this type into the given Hasher. Read more
Source§

impl PartialEq for StepUpFailure

Source§

fn eq(&self, other: &StepUpFailure) -> bool

Equality operator ==. Read more
1.0.0 (const: unstable) · Source§

fn ne(&self, other: &Rhs) -> bool

Inequality operator !=. Read more
Source§

impl StructuralPartialEq for StepUpFailure

Auto Trait Implementations§

Blanket Implementations§

Source§

impl<T> Any for T
where T: 'static + ?Sized,

Source§

fn type_id(&self) -> TypeId

Gets the TypeId of self. Read more
Source§

impl<T> Borrow<T> for T
where T: ?Sized,

Source§

fn borrow(&self) -> &T

Immutably borrows from an owned value. Read more
Source§

impl<T> BorrowMut<T> for T
where T: ?Sized,

Source§

fn borrow_mut(&mut self) -> &mut T

Mutably borrows from an owned value. Read more
Source§

impl<T> CloneToUninit for T
where T: Clone,

Source§

unsafe fn clone_to_uninit(&self, dest: *mut u8)

🔬This is a nightly-only experimental API. (clone_to_uninit)
Performs copy-assignment from self to dest. Read more
Source§

impl<T> From<T> for T

Source§

fn from(t: T) -> T

Returns the argument unchanged.

Source§

impl<T> FromRef<T> for T
where T: Clone,

Source§

fn from_ref(input: &T) -> T

Converts to this type from a reference to the input type.
Source§

impl<A, B, T> HttpServerConnExec<A, B> for T
where B: Body,

Source§

impl<T, U> Into<U> for T
where U: From<T>,

Source§

fn into(self) -> U

Calls U::from(self).

That is, this conversion is whatever the implementation of From<T> for U chooses to do.

Source§

impl<T> Same for T

Source§

type Output = T

Should always be Self
Source§

impl<T> ToOwned for T
where T: Clone,

Source§

type Owned = T

The resulting type after obtaining ownership.
Source§

fn to_owned(&self) -> T

Creates owned data from borrowed data, usually by cloning. Read more
Source§

fn clone_into(&self, target: &mut T)

Uses borrowed data to replace owned data, usually by cloning. Read more
Source§

impl<T> ToString for T
where T: Display + ?Sized,

Source§

fn to_string(&self) -> String

Converts the given value to a String. Read more
Source§

impl<T, U> TryFrom<U> for T
where U: Into<T>,

Source§

type Error = Infallible

The type returned in the event of a conversion error.
Source§

fn try_from(value: U) -> Result<T, <T as TryFrom<U>>::Error>

Performs the conversion.
Source§

impl<T, U> TryInto<U> for T
where U: TryFrom<T>,

Source§

type Error = <U as TryFrom<T>>::Error

The type returned in the event of a conversion error.
Source§

fn try_into(self) -> Result<U, <U as TryFrom<T>>::Error>

Performs the conversion.