pub enum CapPreset {
None,
Default,
Monitoring,
Admin,
}Expand description
Predefined capability profiles that bundle commonly-needed Linux
capabilities. The profile caps are always emitted; users can add
extra capabilities via security.cap_add.
Variants§
None
No extra capabilities beyond Podman’s defaults.
Default
Sane default: DAC_READ_SEARCH, PERFMON — needed by tools
such as btop and htop for file-descriptor and perf monitoring.
Monitoring
Monitoring / observability: like Default plus SYS_PTRACE,
SYS_NICE, SYSLOG.
Admin
Powerful / dangerous: like Monitoring plus SYS_ADMIN,
NET_ADMIN. Only use when you trust the container fully.
Implementations§
Trait Implementations§
impl Copy for CapPreset
Source§impl<'de> Deserialize<'de> for CapPreset
impl<'de> Deserialize<'de> for CapPreset
Source§fn deserialize<__D>(__deserializer: __D) -> Result<Self, __D::Error>where
__D: Deserializer<'de>,
fn deserialize<__D>(__deserializer: __D) -> Result<Self, __D::Error>where
__D: Deserializer<'de>,
Deserialize this value from the given Serde deserializer. Read more
impl Eq for CapPreset
impl StructuralPartialEq for CapPreset
Auto Trait Implementations§
impl Freeze for CapPreset
impl RefUnwindSafe for CapPreset
impl Send for CapPreset
impl Sync for CapPreset
impl Unpin for CapPreset
impl UnsafeUnpin for CapPreset
impl UnwindSafe for CapPreset
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Mutably borrows from an owned value. Read more
Source§impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> DeserializeOwned for Twhere
T: for<'de> Deserialize<'de>,
Source§impl<Q, K> Equivalent<K> for Q
impl<Q, K> Equivalent<K> for Q
Source§impl<Q, K> Equivalent<K> for Q
impl<Q, K> Equivalent<K> for Q
Source§fn equivalent(&self, key: &K) -> bool
fn equivalent(&self, key: &K) -> bool
Compare self to
key and return true if they are equal.Source§impl<T> Instrument for T
impl<T> Instrument for T
Source§fn instrument(self, span: Span) -> Instrumented<Self> ⓘ
fn instrument(self, span: Span) -> Instrumented<Self> ⓘ
Source§fn in_current_span(self) -> Instrumented<Self> ⓘ
fn in_current_span(self) -> Instrumented<Self> ⓘ
Source§impl<T> IntoEither for T
impl<T> IntoEither for T
Source§fn into_either(self, into_left: bool) -> Either<Self, Self> ⓘ
fn into_either(self, into_left: bool) -> Either<Self, Self> ⓘ
Converts
self into a Left variant of Either<Self, Self>
if into_left is true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§fn into_either_with<F>(self, into_left: F) -> Either<Self, Self> ⓘ
fn into_either_with<F>(self, into_left: F) -> Either<Self, Self> ⓘ
Converts
self into a Left variant of Either<Self, Self>
if into_left(&self) returns true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read more