Expand description
Control-plane identities, route authorization, and operator-approved provisioner policies.
Structs§
- Control
Identity - A stable, non-secret audit identity chosen by the deployment.
- Provisioner
Limits - What a provisioner identity may grant beyond its fixed route scope.
- Provisioner
Policy Template - The exact policy an operator permits a provisioner to publish.
- Security
Error - A refused security configuration, credential file, TLS material or key set.
- Security
Policy - An immutable, validated mapping. Publish verification and authorization together; rotating one without the other would temporarily assign old credentials new roles.
- Server
Security - Shared by the listener and router. A request pins one complete generation.
Enums§
- Role
- Roles are disjoint. An operator credential cannot fund an instance, and a provisioner reaches only the self-service subset of the admin API (#39).