Skip to main content

RootAccessError

Enum RootAccessError 

Source
pub enum RootAccessError {
    Resolve {
        source: Box<RunnerRootError>,
    },
    Identity {
        source: Error,
    },
    BroadExistingAccess {
        path: PathBuf,
        dacl: String,
        volume: PathBuf,
        remediation: String,
    },
    Create {
        path: PathBuf,
        source: Error,
        remediation: String,
    },
    Inspect {
        path: PathBuf,
        source: Error,
        remediation: String,
    },
    Apply {
        path: PathBuf,
        source: Error,
        remediation: String,
    },
}
Expand description

Why the default runner root could not be created, inspected, or reconciled.

Every variant is printed straight at an operator, so each says what to do next. None carries an account SID: a message an operator pastes into an issue should not be the thing that publishes their machine’s identifiers, which is what redact is applied for before a descriptor reaches one of these.

Variants§

§

Resolve

The default root could not be resolved, or failed b1’s preflight.

Fields

§source: Box<RunnerRootError>

What b1 reported.

§

Identity

This process’s own account could not be identified.

Fields

§source: Error

What reading the process token reported.

§

BroadExistingAccess

The root already exists and is open to ordinary local users.

The refusal is the point. Tightening the directory instead would silently adopt whatever is already inside one that any local account could have created and filled, and a runner root’s contents are executed.

Fields

§path: PathBuf

The root.

§dacl: String

Its DACL, in SDDL, with account SIDs redacted.

§volume: PathBuf

The volume the inherited grant would have come from.

§remediation: String

The command that configures a different root.

§

Create

The root does not exist and could not be created.

Fields

§path: PathBuf

The root.

§source: Error

What the operating system reported.

§remediation: String

The command that configures a different root.

§

Inspect

The root exists but its access control could not be read.

Fields

§path: PathBuf

The root.

§source: Error

What the operating system reported.

§remediation: String

The command that configures a different root.

§

Apply

The root exists and is not open, but could not be reconciled.

Fields

§path: PathBuf

The root.

§source: Error

What the operating system reported.

§remediation: String

The command that configures a different root.

Implementations§

Source§

impl RootAccessError

Source

pub fn path(&self) -> Option<&Path>

The root the failure is about, when it is about one.

Trait Implementations§

Source§

impl Debug for RootAccessError

Source§

fn fmt(&self, f: &mut Formatter<'_>) -> Result

Formats the value using the given formatter. Read more
Source§

impl Display for RootAccessError

Source§

fn fmt(&self, __formatter: &mut Formatter<'_>) -> Result

Formats the value using the given formatter. Read more
Source§

impl Error for RootAccessError

Source§

fn source(&self) -> Option<&(dyn Error + 'static)>

Returns the lower-level source of this error, if any. Read more
1.0.0 · Source§

fn description(&self) -> &str

👎Deprecated since 1.42.0:

use the Display impl or to_string()

1.0.0 · Source§

fn cause(&self) -> Option<&dyn Error>

👎Deprecated since 1.33.0:

replaced by Error::source, which can support downcasting

Source§

fn provide<'a>(&'a self, request: &mut Request<'a>)

🔬This is a nightly-only experimental API. (error_generic_member_access)
Provides type-based access to context intended for error reports. Read more

Auto Trait Implementations§

Blanket Implementations§

Source§

impl<T> Any for T
where T: 'static + ?Sized,

Source§

fn type_id(&self) -> TypeId

Gets the TypeId of self. Read more
Source§

impl<T> Borrow<T> for T
where T: ?Sized,

Source§

fn borrow(&self) -> &T

Immutably borrows from an owned value. Read more
Source§

impl<T> BorrowMut<T> for T
where T: ?Sized,

Source§

fn borrow_mut(&mut self) -> &mut T

Mutably borrows from an owned value. Read more
Source§

impl<T> From<T> for T

Source§

fn from(t: T) -> T

Returns the argument unchanged.

Source§

impl<T> Instrument for T

Source§

fn instrument(self, span: Span) -> Instrumented<Self>

Instruments this type with the provided Span, returning an Instrumented wrapper. Read more
Source§

fn in_current_span(self) -> Instrumented<Self>

Instruments this type with the current Span, returning an Instrumented wrapper. Read more
Source§

impl<T, U> Into<U> for T
where U: From<T>,

Source§

fn into(self) -> U

Calls U::from(self).

That is, this conversion is whatever the implementation of From<T> for U chooses to do.

Source§

impl<T> Same for T

Source§

type Output = T

Should always be Self
Source§

impl<T> ToString for T
where T: Display + ?Sized,

Source§

fn to_string(&self) -> String

Converts the given value to a String. Read more
Source§

impl<T, U> TryFrom<U> for T
where U: Into<T>,

Source§

type Error = !

The type returned in the event of a conversion error.
Source§

fn try_from(value: U) -> Result<T, !>

Performs the conversion.
Source§

impl<T, U> TryInto<U> for T
where U: TryFrom<T>,

Source§

type Error = <U as TryFrom<T>>::Error

The type returned in the event of a conversion error.
Source§

fn try_into(self) -> Result<U, <U as TryFrom<T>>::Error>

Performs the conversion.
Source§

impl<T> WithSubscriber for T

Source§

fn with_subscriber<S>(self, subscriber: S) -> WithDispatch<Self>
where S: Into<Dispatch>,

Attaches the provided Subscriber to this type, returning a WithDispatch wrapper. Read more
Source§

fn with_current_subscriber(self) -> WithDispatch<Self>

Attaches the current default Subscriber to this type, returning a WithDispatch wrapper. Read more