pub struct ContextCache<'a> {
pub handles: HashMap<u32, TpmHandle>,
pub writer: &'a mut dyn Write,
pub contexts: HashMap<String, Vec<u8>>,
pub session_map: SessionCache,
/* private fields */
}Fields§
§handles: HashMap<u32, TpmHandle>§writer: &'a mut dyn Write§contexts: HashMap<String, Vec<u8>>§session_map: SessionCacheImplementations§
Source§impl<'a> ContextCache<'a>
impl<'a> ContextCache<'a>
Sourcepub fn teardown(&mut self, device: Option<Rc<RefCell<Device>>>)
pub fn teardown(&mut self, device: Option<Rc<RefCell<Device>>>)
Flushes transient handles and saves dirty contexts, printing errors to stderr.
Sourcepub fn execute<C: TpmCommandObject>(
&mut self,
device: &mut Device,
command: &C,
handles: &[u32],
auths: &[Auth],
) -> Result<(TpmResponseBody, TpmAuthResponses), ContextError>
pub fn execute<C: TpmCommandObject>( &mut self, device: &mut Device, command: &C, handles: &[u32], auths: &[Auth], ) -> Result<(TpmResponseBody, TpmAuthResponses), ContextError>
Executes a TPM command with full authorization session handling.
This function encapsulates the prepare, build, execute, and teardown sequence for authorized commands.
§Errors
Returns a ContextError if any stage of the session management or
command execution fails.
Sourcepub fn new(
device: Option<&mut Device>,
cache_dir: &Path,
writer: &'a mut dyn Write,
session_map: SessionCache,
) -> Result<ContextCache<'a>, ContextError>
pub fn new( device: Option<&mut Device>, cache_dir: &Path, writer: &'a mut dyn Write, session_map: SessionCache, ) -> Result<ContextCache<'a>, ContextError>
Creates a new Context, loads and refreshes saved contexts from disk.
§Errors
Returns a ContextError if loading or refreshing contexts fails.
Sourcepub fn loaded_contexts(
&self,
device: Rc<RefCell<Device>>,
) -> ContextIterator<'_> ⓘ
pub fn loaded_contexts( &self, device: Rc<RefCell<Device>>, ) -> ContextIterator<'_> ⓘ
Creates an iterator that loads each saved context and yields a Context guard.
Sourcepub fn remove_context(&mut self, grip: &str) -> Result<(), ContextError>
pub fn remove_context(&mut self, grip: &str) -> Result<(), ContextError>
Removes a context from the cache.
§Errors
Returns an I/O error if the context file cannot be removed from disk.
Sourcepub fn reset(&mut self) -> Result<(), ContextError>
pub fn reset(&mut self) -> Result<(), ContextError>
Deletes all cached contexts from disk and memory.
§Errors
Returns an I/O error if any context file cannot be removed.
Sourcepub fn new_context(
&mut self,
device: &mut Device,
handle: TpmHandle,
name: &Tpm2bName,
) -> Result<(), ContextError>
pub fn new_context( &mut self, device: &mut Device, handle: TpmHandle, name: &Tpm2bName, ) -> Result<(), ContextError>
Creates and saves a new managed transient context.
§Errors
Returns an error if the TPM context cannot be saved or if the new context cannot be written to the writer.
Sourcepub fn mark_dirty(&mut self, grip: String)
pub fn mark_dirty(&mut self, grip: String)
Marks a saved context as needing to be written to disk.
pub fn cache_dir(&self) -> &Path
Sourcepub fn import_key(
&mut self,
device: &mut Device,
parent_handle: TpmHandle,
input_bytes: &[u8],
auths: &[Auth],
) -> Result<TpmKey, ContextError>
pub fn import_key( &mut self, device: &mut Device, parent_handle: TpmHandle, input_bytes: &[u8], auths: &[Auth], ) -> Result<TpmKey, ContextError>
Imports an external key under a TPM parent, creating a new TpmKey.
§Errors
Returns an error if the TPM import operation fails.
Sourcepub fn load_context_from_bytes(
&mut self,
device: &mut Device,
blob: &[u8],
) -> Result<(TpmHandle, Tpm2bName), ContextError>
pub fn load_context_from_bytes( &mut self, device: &mut Device, blob: &[u8], ) -> Result<(TpmHandle, Tpm2bName), ContextError>
Loads a TPM context from a byte slice.
§Errors
Returns a ContextError on parsing or TPM command failure.
Sourcepub fn load_parent(
&mut self,
device: &mut Device,
uri: &Uri,
) -> Result<TpmHandle, ContextError>
pub fn load_parent( &mut self, device: &mut Device, uri: &Uri, ) -> Result<TpmHandle, ContextError>
Validates a URI for a parent object and loads its context.
§Errors
Returns an error if the URI is not a valid parent type (tpm:// or key://)
or if context loading fails.
Sourcepub fn load_context(
&mut self,
device: &mut Device,
uri: &Uri,
) -> Result<TpmHandle, ContextError>
pub fn load_context( &mut self, device: &mut Device, uri: &Uri, ) -> Result<TpmHandle, ContextError>
Loads a TPM context from a URI.
If the URI points to a transient context, the context is loaded into the
TPM and its handle is tracked for automatic cleanup. Persistent handles
from tpm:// URIs are returned directly and are not tracked.
§Errors
Returns a ContextError on parsing or TPM command failure.
Sourcepub fn delete(
&mut self,
device: &mut Device,
uri: &Uri,
auths: &[Auth],
) -> Result<u32, ContextError>
pub fn delete( &mut self, device: &mut Device, uri: &Uri, auths: &[Auth], ) -> Result<u32, ContextError>
Deletes a persistent or transient object by URI.
§Errors
Returns a ContextError if the handle is invalid or the delete operation fails.
Sourcepub fn track(&mut self, handle: TpmHandle) -> Result<(), ContextError>
pub fn track(&mut self, handle: TpmHandle) -> Result<(), ContextError>
Tracks a transient handle for automatic cleanup at the end of execution.
§Errors
Returns a ContextError if the handle is invalid or does not exist.
Sourcepub fn flush(&mut self, device: &mut Device) -> Result<(), ContextError>
pub fn flush(&mut self, device: &mut Device) -> Result<(), ContextError>
Flushes all tracked transient handles out of the TPM device.
§Errors
Returns ContextError if the device mutex is poisoned or if flushing a
handle fails. It returns the first error encountered.
Sourcepub fn write_key_data(
&mut self,
output_uri: Option<&Uri>,
key: &TpmKey,
) -> Result<(), ContextError>
pub fn write_key_data( &mut self, output_uri: Option<&Uri>, key: &TpmKey, ) -> Result<(), ContextError>
Handles the output of a TpmKey, choosing PEM or DER format based on the URI.
§Errors
Returns a ContextError on failure.
Sourcepub fn write_data(
&mut self,
output_uri: Option<&Uri>,
data: &[u8],
) -> Result<(), ContextError>
pub fn write_data( &mut self, output_uri: Option<&Uri>, data: &[u8], ) -> Result<(), ContextError>
Writes data to a file path or stdout.
§Errors
This function will return an error if writing to a file fails.
Sourcepub fn read_certificate(
&mut self,
device: &mut Device,
auths: &[Auth],
handle: u32,
max_read_size: usize,
) -> Result<Option<Vec<u8>>, ContextError>
pub fn read_certificate( &mut self, device: &mut Device, auths: &[Auth], handle: u32, max_read_size: usize, ) -> Result<Option<Vec<u8>>, ContextError>
Reads a certificate from a given NV index.
§Errors
Returns a ContextError if the TPM commands fail or if the response is invalid.
Sourcepub fn evict_key(
&mut self,
device: &mut Device,
transient_handle: TpmHandle,
persistent_handle: TpmHandle,
auths: &[Auth],
) -> Result<(), ContextError>
pub fn evict_key( &mut self, device: &mut Device, transient_handle: TpmHandle, persistent_handle: TpmHandle, auths: &[Auth], ) -> Result<(), ContextError>
Makes a transient key persistent.
§Errors
Returns a ContextError if the transient handle is not being tracked by
the context, or if the underlying TPM2_EvictControl command fails.
Trait Implementations§
Auto Trait Implementations§
impl<'a> Freeze for ContextCache<'a>
impl<'a> !RefUnwindSafe for ContextCache<'a>
impl<'a> !Send for ContextCache<'a>
impl<'a> !Sync for ContextCache<'a>
impl<'a> Unpin for ContextCache<'a>
impl<'a> !UnwindSafe for ContextCache<'a>
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Source§impl<T> FmtForward for T
impl<T> FmtForward for T
Source§fn fmt_binary(self) -> FmtBinary<Self>where
Self: Binary,
fn fmt_binary(self) -> FmtBinary<Self>where
Self: Binary,
self to use its Binary implementation when Debug-formatted.Source§fn fmt_display(self) -> FmtDisplay<Self>where
Self: Display,
fn fmt_display(self) -> FmtDisplay<Self>where
Self: Display,
self to use its Display implementation when
Debug-formatted.Source§fn fmt_lower_exp(self) -> FmtLowerExp<Self>where
Self: LowerExp,
fn fmt_lower_exp(self) -> FmtLowerExp<Self>where
Self: LowerExp,
self to use its LowerExp implementation when
Debug-formatted.Source§fn fmt_lower_hex(self) -> FmtLowerHex<Self>where
Self: LowerHex,
fn fmt_lower_hex(self) -> FmtLowerHex<Self>where
Self: LowerHex,
self to use its LowerHex implementation when
Debug-formatted.Source§fn fmt_octal(self) -> FmtOctal<Self>where
Self: Octal,
fn fmt_octal(self) -> FmtOctal<Self>where
Self: Octal,
self to use its Octal implementation when Debug-formatted.Source§fn fmt_pointer(self) -> FmtPointer<Self>where
Self: Pointer,
fn fmt_pointer(self) -> FmtPointer<Self>where
Self: Pointer,
self to use its Pointer implementation when
Debug-formatted.Source§fn fmt_upper_exp(self) -> FmtUpperExp<Self>where
Self: UpperExp,
fn fmt_upper_exp(self) -> FmtUpperExp<Self>where
Self: UpperExp,
self to use its UpperExp implementation when
Debug-formatted.Source§fn fmt_upper_hex(self) -> FmtUpperHex<Self>where
Self: UpperHex,
fn fmt_upper_hex(self) -> FmtUpperHex<Self>where
Self: UpperHex,
self to use its UpperHex implementation when
Debug-formatted.Source§impl<T> IntoEither for T
impl<T> IntoEither for T
Source§fn into_either(self, into_left: bool) -> Either<Self, Self>
fn into_either(self, into_left: bool) -> Either<Self, Self>
self into a Left variant of Either<Self, Self>
if into_left is true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
self into a Left variant of Either<Self, Self>
if into_left(&self) returns true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§impl<T> Pipe for Twhere
T: ?Sized,
impl<T> Pipe for Twhere
T: ?Sized,
Source§fn pipe<R>(self, func: impl FnOnce(Self) -> R) -> Rwhere
Self: Sized,
fn pipe<R>(self, func: impl FnOnce(Self) -> R) -> Rwhere
Self: Sized,
Source§fn pipe_ref<'a, R>(&'a self, func: impl FnOnce(&'a Self) -> R) -> Rwhere
R: 'a,
fn pipe_ref<'a, R>(&'a self, func: impl FnOnce(&'a Self) -> R) -> Rwhere
R: 'a,
self and passes that borrow into the pipe function. Read moreSource§fn pipe_ref_mut<'a, R>(&'a mut self, func: impl FnOnce(&'a mut Self) -> R) -> Rwhere
R: 'a,
fn pipe_ref_mut<'a, R>(&'a mut self, func: impl FnOnce(&'a mut Self) -> R) -> Rwhere
R: 'a,
self and passes that borrow into the pipe function. Read moreSource§fn pipe_borrow<'a, B, R>(&'a self, func: impl FnOnce(&'a B) -> R) -> R
fn pipe_borrow<'a, B, R>(&'a self, func: impl FnOnce(&'a B) -> R) -> R
Source§fn pipe_borrow_mut<'a, B, R>(
&'a mut self,
func: impl FnOnce(&'a mut B) -> R,
) -> R
fn pipe_borrow_mut<'a, B, R>( &'a mut self, func: impl FnOnce(&'a mut B) -> R, ) -> R
Source§fn pipe_as_ref<'a, U, R>(&'a self, func: impl FnOnce(&'a U) -> R) -> R
fn pipe_as_ref<'a, U, R>(&'a self, func: impl FnOnce(&'a U) -> R) -> R
self, then passes self.as_ref() into the pipe function.Source§fn pipe_as_mut<'a, U, R>(&'a mut self, func: impl FnOnce(&'a mut U) -> R) -> R
fn pipe_as_mut<'a, U, R>(&'a mut self, func: impl FnOnce(&'a mut U) -> R) -> R
self, then passes self.as_mut() into the pipe
function.Source§fn pipe_deref<'a, T, R>(&'a self, func: impl FnOnce(&'a T) -> R) -> R
fn pipe_deref<'a, T, R>(&'a self, func: impl FnOnce(&'a T) -> R) -> R
self, then passes self.deref() into the pipe function.Source§impl<T> Tap for T
impl<T> Tap for T
Source§fn tap_borrow<B>(self, func: impl FnOnce(&B)) -> Self
fn tap_borrow<B>(self, func: impl FnOnce(&B)) -> Self
Borrow<B> of a value. Read moreSource§fn tap_borrow_mut<B>(self, func: impl FnOnce(&mut B)) -> Self
fn tap_borrow_mut<B>(self, func: impl FnOnce(&mut B)) -> Self
BorrowMut<B> of a value. Read moreSource§fn tap_ref<R>(self, func: impl FnOnce(&R)) -> Self
fn tap_ref<R>(self, func: impl FnOnce(&R)) -> Self
AsRef<R> view of a value. Read moreSource§fn tap_ref_mut<R>(self, func: impl FnOnce(&mut R)) -> Self
fn tap_ref_mut<R>(self, func: impl FnOnce(&mut R)) -> Self
AsMut<R> view of a value. Read moreSource§fn tap_deref<T>(self, func: impl FnOnce(&T)) -> Self
fn tap_deref<T>(self, func: impl FnOnce(&T)) -> Self
Deref::Target of a value. Read moreSource§fn tap_deref_mut<T>(self, func: impl FnOnce(&mut T)) -> Self
fn tap_deref_mut<T>(self, func: impl FnOnce(&mut T)) -> Self
Deref::Target of a value. Read moreSource§fn tap_dbg(self, func: impl FnOnce(&Self)) -> Self
fn tap_dbg(self, func: impl FnOnce(&Self)) -> Self
.tap() only in debug builds, and is erased in release builds.Source§fn tap_mut_dbg(self, func: impl FnOnce(&mut Self)) -> Self
fn tap_mut_dbg(self, func: impl FnOnce(&mut Self)) -> Self
.tap_mut() only in debug builds, and is erased in release
builds.Source§fn tap_borrow_dbg<B>(self, func: impl FnOnce(&B)) -> Self
fn tap_borrow_dbg<B>(self, func: impl FnOnce(&B)) -> Self
.tap_borrow() only in debug builds, and is erased in release
builds.Source§fn tap_borrow_mut_dbg<B>(self, func: impl FnOnce(&mut B)) -> Self
fn tap_borrow_mut_dbg<B>(self, func: impl FnOnce(&mut B)) -> Self
.tap_borrow_mut() only in debug builds, and is erased in release
builds.Source§fn tap_ref_dbg<R>(self, func: impl FnOnce(&R)) -> Self
fn tap_ref_dbg<R>(self, func: impl FnOnce(&R)) -> Self
.tap_ref() only in debug builds, and is erased in release
builds.Source§fn tap_ref_mut_dbg<R>(self, func: impl FnOnce(&mut R)) -> Self
fn tap_ref_mut_dbg<R>(self, func: impl FnOnce(&mut R)) -> Self
.tap_ref_mut() only in debug builds, and is erased in release
builds.Source§fn tap_deref_dbg<T>(self, func: impl FnOnce(&T)) -> Self
fn tap_deref_dbg<T>(self, func: impl FnOnce(&T)) -> Self
.tap_deref() only in debug builds, and is erased in release
builds.