pub struct Limits {Show 14 fields
pub max_input_bytes: u64,
pub max_output_bytes: u64,
pub max_replay_bytes: u64,
pub max_record_len: u32,
pub max_record_count: u32,
pub max_object_count: u32,
pub max_graph_ops: u32,
pub max_repeat_count: u64,
pub max_channel_symbols: u64,
pub max_model_count: u32,
pub max_channel_count: u32,
pub max_entropy_model_bytes: u32,
pub max_pdf_spans: u32,
pub max_index_selectors: u32,
}Expand description
Hard upper bounds applied while parsing and materializing a descriptor.
Fields§
§max_input_bytes: u64Maximum accepted source/descriptor input size.
max_output_bytes: u64Maximum reconstructed output size for a single materialization.
max_replay_bytes: u64Admission cap on the output of a single DEFLATE_REPLAY.
This is a VOLE replay-profile policy limit, not an RFC 1951 maximum.
RFC 1951 permits arbitrarily many empty non-final stored blocks, so it
gives no finite f(decompressed_size) bound on compressed_size; a
bitstream that inflates to zero bytes may be arbitrarily large. VOLE
therefore declines to replay a descriptor whose declared output exceeds
this policy cap (see ADR-0016).
max_record_len: u32Maximum length of a single record payload.
max_record_count: u32Maximum number of records in a container.
max_object_count: u32Maximum number of distinct byte objects (OBJECT records).
max_graph_ops: u32Maximum number of DRA instructions in a reconstruction graph.
max_repeat_count: u64Maximum repeat count for a single REPEAT_LAST instruction.
max_channel_symbols: u64Maximum number of symbols in a single entropy channel.
max_model_count: u32Maximum number of distinct entropy models (MODEL records).
max_channel_count: u32Maximum number of entropy channels (ENTROPY_CHANNEL records).
max_entropy_model_bytes: u32Maximum encoded size of a single entropy model payload.
max_pdf_spans: u32Maximum number of lexical spans produced for a PDF input.
max_index_selectors: u32Maximum number of selectors in a single OBSERVATION_INDEX record.
Bounds the admissions of the optional partial-decode index (Phase 7.3) before allocation: an index whose selector table would exceed this is rejected at parse and declined by the index builder. It mirrors the object/graph scale so the table cannot dwarf the document it describes.