Struct secstr::SecureVec

source ·
pub struct SecureVec<T>where
    T: Sized + Copy + Zeroize,{ /* private fields */ }
Expand description

A data type suitable for storing sensitive information such as passwords and private keys in memory, that implements:

  • Automatic zeroing in Drop
  • Constant time comparison in PartialEq (does not short circuit on the first different character; but terminates instantly if strings have different length)
  • Outputting ***SECRET*** to prevent leaking secrets into logs in fmt::Debug and fmt::Display
  • Automatic mlock to protect against leaking into swap (any unix)
  • Automatic madvise(MADV_NOCORE/MADV_DONTDUMP) to protect against leaking into core dumps (FreeBSD, DragonflyBSD, Linux)

Comparisons using the PartialEq implementation are undefined behavior (and most likely wrong) if T has any padding bytes.

Be careful with SecureBytes::from: if you have a borrowed string, it will be copied. Use SecureBytes::new if you have a Vec<u8>.

Implementations§

source§

impl<T> SecureVec<T>where T: Sized + Copy + Zeroize,

source

pub fn new(cont: Vec<T>) -> Self

source

pub fn unsecure(&self) -> &[T]

Borrow the contents of the string.

source

pub fn unsecure_mut(&mut self) -> &mut [T]

Mutably borrow the contents of the string.

source

pub fn resize(&mut self, new_len: usize, value: T)

Resizes the SecureVec in-place so that len is equal to new_len.

If new_len is smaller the inner vector is truncated. If new_len is larger the inner vector will grow, placing value in all new cells.

This ensures that the new memory region is secured if reallocation occurs.

Similar to Vec::resize

source

pub fn zero_out(&mut self)

Overwrite the string with zeros. This is automatically called in the destructor.

This also sets the length to 0.

Trait Implementations§

source§

impl<T> Borrow<[T]> for SecureVec<T>where T: Sized + Copy + Zeroize,

source§

fn borrow(&self) -> &[T]

Immutably borrows from an owned value. Read more
source§

impl<T> BorrowMut<[T]> for SecureVec<T>where T: Sized + Copy + Zeroize,

source§

fn borrow_mut(&mut self) -> &mut [T]

Mutably borrows from an owned value. Read more
source§

impl<T: Copy + Zeroize> Clone for SecureVec<T>

source§

fn clone(&self) -> Self

Returns a copy of the value. Read more
1.0.0 · source§

fn clone_from(&mut self, source: &Self)

Performs copy-assignment from source. Read more
source§

impl<T> Debug for SecureVec<T>where T: Sized + Copy + Zeroize,

source§

fn fmt(&self, f: &mut Formatter<'_>) -> Result

Formats the value using the given formatter. Read more
source§

impl<T> Display for SecureVec<T>where T: Sized + Copy + Zeroize,

source§

fn fmt(&self, f: &mut Formatter<'_>) -> Result

Formats the value using the given formatter. Read more
source§

impl<T> Drop for SecureVec<T>where T: Sized + Copy + Zeroize,

source§

fn drop(&mut self)

Executes the destructor for this type. Read more
source§

impl<T, U> From<U> for SecureVec<T>where U: Into<Vec<T>>, T: Sized + Copy + Zeroize,

source§

fn from(s: U) -> SecureVec<T>

Converts to this type from the input type.
source§

impl FromStr for SecureVec<u8>

§

type Err = Infallible

The associated error which can be returned from parsing.
source§

fn from_str(s: &str) -> Result<Self, Self::Err>

Parses a string s to return a value of this type. Read more
source§

impl<T, U> Index<U> for SecureVec<T>where T: Sized + Copy + Zeroize, Vec<T>: Index<U>,

§

type Output = <Vec<T> as Index<U>>::Output

The returned type after indexing.
source§

fn index(&self, index: U) -> &Self::Output

Performs the indexing (container[index]) operation. Read more
source§

impl<T> PartialEq for SecureVec<T>where T: Sized + Copy + Zeroize + NoPaddingBytes,

source§

fn eq(&self, other: &SecureVec<T>) -> bool

This method tests for self and other values to be equal, and is used by ==.
1.0.0 · source§

fn ne(&self, other: &Rhs) -> bool

This method tests for !=. The default implementation is almost always sufficient, and should not be overridden without very good reason.
source§

impl<T> Eq for SecureVec<T>where T: Sized + Copy + Zeroize + NoPaddingBytes,

Auto Trait Implementations§

§

impl<T> RefUnwindSafe for SecureVec<T>where T: RefUnwindSafe,

§

impl<T> Send for SecureVec<T>where T: Send,

§

impl<T> Sync for SecureVec<T>where T: Sync,

§

impl<T> Unpin for SecureVec<T>where T: Unpin,

§

impl<T> UnwindSafe for SecureVec<T>where T: UnwindSafe,

Blanket Implementations§

source§

impl<T> Any for Twhere T: 'static + ?Sized,

source§

fn type_id(&self) -> TypeId

Gets the TypeId of self. Read more
source§

impl<T> Borrow<T> for Twhere T: ?Sized,

source§

fn borrow(&self) -> &T

Immutably borrows from an owned value. Read more
source§

impl<T> BorrowMut<T> for Twhere T: ?Sized,

source§

fn borrow_mut(&mut self) -> &mut T

Mutably borrows from an owned value. Read more
source§

impl<T> From<T> for T

source§

fn from(t: T) -> T

Returns the argument unchanged.

source§

impl<T, U> Into<U> for Twhere U: From<T>,

source§

fn into(self) -> U

Calls U::from(self).

That is, this conversion is whatever the implementation of From<T> for U chooses to do.

source§

impl<T> ToOwned for Twhere T: Clone,

§

type Owned = T

The resulting type after obtaining ownership.
source§

fn to_owned(&self) -> T

Creates owned data from borrowed data, usually by cloning. Read more
source§

fn clone_into(&self, target: &mut T)

Uses borrowed data to replace owned data, usually by cloning. Read more
source§

impl<T> ToString for Twhere T: Display + ?Sized,

source§

default fn to_string(&self) -> String

Converts the given value to a String. Read more
source§

impl<T, U> TryFrom<U> for Twhere U: Into<T>,

§

type Error = Infallible

The type returned in the event of a conversion error.
source§

fn try_from(value: U) -> Result<T, <T as TryFrom<U>>::Error>

Performs the conversion.
source§

impl<T, U> TryInto<U> for Twhere U: TryFrom<T>,

§

type Error = <U as TryFrom<T>>::Error

The type returned in the event of a conversion error.
source§

fn try_into(self) -> Result<U, <U as TryFrom<T>>::Error>

Performs the conversion.