pub struct ContainerSecurity {
pub seccomp: ContainerSeccomp,
pub capabilities_drop: Vec<String>,
pub capabilities_add: Vec<String>,
pub no_new_privileges: bool,
pub run_as_user: Option<u32>,
pub run_as_group: Option<u32>,
}Expand description
Security parameters for the container.
Fields§
§seccomp: ContainerSeccompSeccomp profile to apply.
capabilities_drop: Vec<String>Capabilities to drop (e.g. ["ALL"]).
capabilities_add: Vec<String>Capabilities to add after dropping.
no_new_privileges: boolSet PR_SET_NO_NEW_PRIVS before exec.
run_as_user: Option<u32>Run as this UID (None = inherit).
run_as_group: Option<u32>Run as this GID (None = inherit).
Trait Implementations§
Source§impl Clone for ContainerSecurity
impl Clone for ContainerSecurity
Source§fn clone(&self) -> ContainerSecurity
fn clone(&self) -> ContainerSecurity
Returns a duplicate of the value. Read more
1.0.0 · Source§fn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
Performs copy-assignment from
source. Read moreSource§impl Debug for ContainerSecurity
impl Debug for ContainerSecurity
Source§impl<'de> Deserialize<'de> for ContainerSecurity
impl<'de> Deserialize<'de> for ContainerSecurity
Source§fn deserialize<__D>(__deserializer: __D) -> Result<Self, __D::Error>where
__D: Deserializer<'de>,
fn deserialize<__D>(__deserializer: __D) -> Result<Self, __D::Error>where
__D: Deserializer<'de>,
Deserialize this value from the given Serde deserializer. Read more
Auto Trait Implementations§
impl Freeze for ContainerSecurity
impl RefUnwindSafe for ContainerSecurity
impl Send for ContainerSecurity
impl Sync for ContainerSecurity
impl Unpin for ContainerSecurity
impl UnsafeUnpin for ContainerSecurity
impl UnwindSafe for ContainerSecurity
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Mutably borrows from an owned value. Read more
Source§impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> CloneToUninit for Twhere
T: Clone,
Source§impl<T> FutureExt for T
impl<T> FutureExt for T
Source§fn with_context(self, otel_cx: Context) -> WithContext<Self>
fn with_context(self, otel_cx: Context) -> WithContext<Self>
Source§fn with_current_context(self) -> WithContext<Self>
fn with_current_context(self) -> WithContext<Self>
Source§impl<T> Instrument for T
impl<T> Instrument for T
Source§fn instrument(self, span: Span) -> Instrumented<Self>
fn instrument(self, span: Span) -> Instrumented<Self>
Source§fn in_current_span(self) -> Instrumented<Self>
fn in_current_span(self) -> Instrumented<Self>
Source§impl<T> IntoEither for T
impl<T> IntoEither for T
Source§fn into_either(self, into_left: bool) -> Either<Self, Self>
fn into_either(self, into_left: bool) -> Either<Self, Self>
Converts
self into a Left variant of Either<Self, Self>
if into_left is true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
Converts
self into a Left variant of Either<Self, Self>
if into_left(&self) returns true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read more