pub enum DenialSource {
Policy,
Invariant,
ReadOnly,
}Expand description
Which layer refused. Absent from the guest ABI: the guest sees
caller/capability/reason as before. It selects the closing paragraph of
the rendered message and, for a denial that escapes the program, the
source the embedder reports.
Variants§
Policy
The operator’s configured policy said no.
Invariant
A runtime invariant refused ahead of the policy. No rule can grant it, so the message must not suggest asking for one.
ReadOnly
The path is in a volume mounted read-only. Unlike a policy decision, writing somewhere else is a legitimate response.
Implementations§
Trait Implementations§
Source§impl Clone for DenialSource
impl Clone for DenialSource
impl Copy for DenialSource
Source§impl Debug for DenialSource
impl Debug for DenialSource
impl Eq for DenialSource
Source§impl PartialEq for DenialSource
impl PartialEq for DenialSource
impl StructuralPartialEq for DenialSource
Auto Trait Implementations§
impl Freeze for DenialSource
impl RefUnwindSafe for DenialSource
impl Send for DenialSource
impl Sync for DenialSource
impl Unpin for DenialSource
impl UnsafeUnpin for DenialSource
impl UnwindSafe for DenialSource
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Mutably borrows from an owned value. Read more
Source§impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> CloneToUninit for Twhere
T: Clone,
Source§impl<Q, K> Equivalent<K> for Q
impl<Q, K> Equivalent<K> for Q
Source§fn equivalent(&self, key: &K) -> bool
fn equivalent(&self, key: &K) -> bool
Compare self to
key and return true if they are equal.