Struct rustix::thread::prctl::CapabilitiesSecureBits
source · #[repr(transparent)]pub struct CapabilitiesSecureBits(<CapabilitiesSecureBits as PublicFlags>::Internal);
Expand description
SECBIT_*
.
Tuple Fields§
§0: <CapabilitiesSecureBits as PublicFlags>::Internal
Implementations§
source§impl CapabilitiesSecureBits
impl CapabilitiesSecureBits
sourcepub const NO_ROOT: Self = _
pub const NO_ROOT: Self = _
If this bit is set, then the kernel does not grant capabilities
when a set-user-ID-root
program is executed, or when a process
with an effective or real UID of 0 calls execve
.
sourcepub const NO_ROOT_LOCKED: Self = _
pub const NO_ROOT_LOCKED: Self = _
Set NO_ROOT
irreversibly.
sourcepub const NO_SETUID_FIXUP: Self = _
pub const NO_SETUID_FIXUP: Self = _
Setting this flag stops the kernel from adjusting the process’ permitted, effective, and ambient capability sets when the thread’s effective and filesystem UIDs are switched between zero and nonzero values.
sourcepub const NO_SETUID_FIXUP_LOCKED: Self = _
pub const NO_SETUID_FIXUP_LOCKED: Self = _
Set NO_SETUID_FIXUP
irreversibly.
sourcepub const KEEP_CAPS: Self = _
pub const KEEP_CAPS: Self = _
Setting this flag allows a thread that has one or more 0 UIDs to retain capabilities in its permitted set when it switches all of its UIDs to nonzero values.
sourcepub const KEEP_CAPS_LOCKED: Self = _
pub const KEEP_CAPS_LOCKED: Self = _
Set KEEP_CAPS
irreversibly.
sourcepub const NO_CAP_AMBIENT_RAISE: Self = _
pub const NO_CAP_AMBIENT_RAISE: Self = _
Setting this flag disallows raising ambient capabilities via the
prctl
’s PR_CAP_AMBIENT_RAISE
operation.
sourcepub const NO_CAP_AMBIENT_RAISE_LOCKED: Self = _
pub const NO_CAP_AMBIENT_RAISE_LOCKED: Self = _
Set NO_CAP_AMBIENT_RAISE
irreversibly.
source§impl CapabilitiesSecureBits
impl CapabilitiesSecureBits
sourcepub const fn bits(&self) -> u32
pub const fn bits(&self) -> u32
Get the underlying bits value.
The returned value is exactly the bits set in this flags value.
sourcepub const fn from_bits(bits: u32) -> Option<Self>
pub const fn from_bits(bits: u32) -> Option<Self>
Convert from a bits value.
This method will return None
if any unknown bits are set.
sourcepub const fn from_bits_truncate(bits: u32) -> Self
pub const fn from_bits_truncate(bits: u32) -> Self
Convert from a bits value, unsetting any unknown bits.
sourcepub const fn from_bits_retain(bits: u32) -> Self
pub const fn from_bits_retain(bits: u32) -> Self
Convert from a bits value exactly.
sourcepub fn from_name(name: &str) -> Option<Self>
pub fn from_name(name: &str) -> Option<Self>
Get a flags value with the bits of a flag with the given name set.
This method will return None
if name
is empty or doesn’t
correspond to any named flag.
sourcepub const fn intersects(&self, other: Self) -> bool
pub const fn intersects(&self, other: Self) -> bool
Whether any set bits in a source flags value are also set in a target flags value.
sourcepub const fn contains(&self, other: Self) -> bool
pub const fn contains(&self, other: Self) -> bool
Whether all set bits in a source flags value are also set in a target flags value.
sourcepub fn remove(&mut self, other: Self)
pub fn remove(&mut self, other: Self)
The intersection of a source flags value with the complement of a target flags value (&!
).
This method is not equivalent to self & !other
when other
has unknown bits set.
remove
won’t truncate other
, but the !
operator will.
sourcepub fn toggle(&mut self, other: Self)
pub fn toggle(&mut self, other: Self)
The bitwise exclusive-or (^
) of the bits in two flags values.
sourcepub fn set(&mut self, other: Self, value: bool)
pub fn set(&mut self, other: Self, value: bool)
Call insert
when value
is true
or remove
when value
is false
.
sourcepub const fn intersection(self, other: Self) -> Self
pub const fn intersection(self, other: Self) -> Self
The bitwise and (&
) of the bits in two flags values.
sourcepub const fn union(self, other: Self) -> Self
pub const fn union(self, other: Self) -> Self
The bitwise or (|
) of the bits in two flags values.
sourcepub const fn difference(self, other: Self) -> Self
pub const fn difference(self, other: Self) -> Self
The intersection of a source flags value with the complement of a target flags value (&!
).
This method is not equivalent to self & !other
when other
has unknown bits set.
difference
won’t truncate other
, but the !
operator will.
sourcepub const fn symmetric_difference(self, other: Self) -> Self
pub const fn symmetric_difference(self, other: Self) -> Self
The bitwise exclusive-or (^
) of the bits in two flags values.
sourcepub const fn complement(self) -> Self
pub const fn complement(self) -> Self
The bitwise negation (!
) of the bits in a flags value, truncating the result.
source§impl CapabilitiesSecureBits
impl CapabilitiesSecureBits
sourcepub const fn iter(&self) -> Iter<CapabilitiesSecureBits>
pub const fn iter(&self) -> Iter<CapabilitiesSecureBits>
Yield a set of contained flags values.
Each yielded flags value will correspond to a defined named flag. Any unknown bits will be yielded together as a final flags value.
sourcepub const fn iter_names(&self) -> IterNames<CapabilitiesSecureBits>
pub const fn iter_names(&self) -> IterNames<CapabilitiesSecureBits>
Yield a set of contained named flags values.
This method is like iter
, except only yields bits in contained named flags.
Any unknown bits, or bits not corresponding to a contained flag will not be yielded.
Trait Implementations§
source§impl Binary for CapabilitiesSecureBits
impl Binary for CapabilitiesSecureBits
source§impl BitAnd for CapabilitiesSecureBits
impl BitAnd for CapabilitiesSecureBits
source§impl BitAndAssign for CapabilitiesSecureBits
impl BitAndAssign for CapabilitiesSecureBits
source§fn bitand_assign(&mut self, other: Self)
fn bitand_assign(&mut self, other: Self)
The bitwise and (&
) of the bits in two flags values.
source§impl BitOr for CapabilitiesSecureBits
impl BitOr for CapabilitiesSecureBits
source§fn bitor(self, other: CapabilitiesSecureBits) -> Self
fn bitor(self, other: CapabilitiesSecureBits) -> Self
The bitwise or (|
) of the bits in two flags values.
§type Output = CapabilitiesSecureBits
type Output = CapabilitiesSecureBits
|
operator.source§impl BitOrAssign for CapabilitiesSecureBits
impl BitOrAssign for CapabilitiesSecureBits
source§fn bitor_assign(&mut self, other: Self)
fn bitor_assign(&mut self, other: Self)
The bitwise or (|
) of the bits in two flags values.
source§impl BitXor for CapabilitiesSecureBits
impl BitXor for CapabilitiesSecureBits
source§impl BitXorAssign for CapabilitiesSecureBits
impl BitXorAssign for CapabilitiesSecureBits
source§fn bitxor_assign(&mut self, other: Self)
fn bitxor_assign(&mut self, other: Self)
The bitwise exclusive-or (^
) of the bits in two flags values.
source§impl Clone for CapabilitiesSecureBits
impl Clone for CapabilitiesSecureBits
source§fn clone(&self) -> CapabilitiesSecureBits
fn clone(&self) -> CapabilitiesSecureBits
1.0.0 · source§fn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
source
. Read moresource§impl Debug for CapabilitiesSecureBits
impl Debug for CapabilitiesSecureBits
source§impl Extend<CapabilitiesSecureBits> for CapabilitiesSecureBits
impl Extend<CapabilitiesSecureBits> for CapabilitiesSecureBits
source§fn extend<T: IntoIterator<Item = Self>>(&mut self, iterator: T)
fn extend<T: IntoIterator<Item = Self>>(&mut self, iterator: T)
The bitwise or (|
) of the bits in each flags value.
source§fn extend_one(&mut self, item: A)
fn extend_one(&mut self, item: A)
extend_one
)source§fn extend_reserve(&mut self, additional: usize)
fn extend_reserve(&mut self, additional: usize)
extend_one
)source§impl Flags for CapabilitiesSecureBits
impl Flags for CapabilitiesSecureBits
source§const FLAGS: &'static [Flag<CapabilitiesSecureBits>] = _
const FLAGS: &'static [Flag<CapabilitiesSecureBits>] = _
source§fn from_bits_retain(bits: u32) -> CapabilitiesSecureBits
fn from_bits_retain(bits: u32) -> CapabilitiesSecureBits
source§fn from_bits_truncate(bits: Self::Bits) -> Self
fn from_bits_truncate(bits: Self::Bits) -> Self
source§fn from_name(name: &str) -> Option<Self>
fn from_name(name: &str) -> Option<Self>
source§fn iter_names(&self) -> IterNames<Self>
fn iter_names(&self) -> IterNames<Self>
source§fn intersects(&self, other: Self) -> boolwhere
Self: Sized,
fn intersects(&self, other: Self) -> boolwhere
Self: Sized,
source§fn contains(&self, other: Self) -> boolwhere
Self: Sized,
fn contains(&self, other: Self) -> boolwhere
Self: Sized,
source§fn insert(&mut self, other: Self)where
Self: Sized,
fn insert(&mut self, other: Self)where
Self: Sized,
|
) of the bits in two flags values.source§fn remove(&mut self, other: Self)where
Self: Sized,
fn remove(&mut self, other: Self)where
Self: Sized,
&!
). Read moresource§fn toggle(&mut self, other: Self)where
Self: Sized,
fn toggle(&mut self, other: Self)where
Self: Sized,
^
) of the bits in two flags values.source§fn intersection(self, other: Self) -> Self
fn intersection(self, other: Self) -> Self
&
) of the bits in two flags values.source§fn difference(self, other: Self) -> Self
fn difference(self, other: Self) -> Self
&!
). Read moresource§fn symmetric_difference(self, other: Self) -> Self
fn symmetric_difference(self, other: Self) -> Self
^
) of the bits in two flags values.source§fn complement(self) -> Self
fn complement(self) -> Self
!
) of the bits in a flags value, truncating the result.source§impl FromIterator<CapabilitiesSecureBits> for CapabilitiesSecureBits
impl FromIterator<CapabilitiesSecureBits> for CapabilitiesSecureBits
source§fn from_iter<T: IntoIterator<Item = Self>>(iterator: T) -> Self
fn from_iter<T: IntoIterator<Item = Self>>(iterator: T) -> Self
The bitwise or (|
) of the bits in each flags value.
source§impl Hash for CapabilitiesSecureBits
impl Hash for CapabilitiesSecureBits
source§impl LowerHex for CapabilitiesSecureBits
impl LowerHex for CapabilitiesSecureBits
source§impl Not for CapabilitiesSecureBits
impl Not for CapabilitiesSecureBits
source§impl Octal for CapabilitiesSecureBits
impl Octal for CapabilitiesSecureBits
source§impl PartialEq for CapabilitiesSecureBits
impl PartialEq for CapabilitiesSecureBits
source§fn eq(&self, other: &CapabilitiesSecureBits) -> bool
fn eq(&self, other: &CapabilitiesSecureBits) -> bool
self
and other
values to be equal, and is used
by ==
.source§impl PublicFlags for CapabilitiesSecureBits
impl PublicFlags for CapabilitiesSecureBits
source§impl Sub for CapabilitiesSecureBits
impl Sub for CapabilitiesSecureBits
source§fn sub(self, other: Self) -> Self
fn sub(self, other: Self) -> Self
The intersection of a source flags value with the complement of a target flags value (&!
).
This method is not equivalent to self & !other
when other
has unknown bits set.
difference
won’t truncate other
, but the !
operator will.
§type Output = CapabilitiesSecureBits
type Output = CapabilitiesSecureBits
-
operator.source§impl SubAssign for CapabilitiesSecureBits
impl SubAssign for CapabilitiesSecureBits
source§fn sub_assign(&mut self, other: Self)
fn sub_assign(&mut self, other: Self)
The intersection of a source flags value with the complement of a target flags value (&!
).
This method is not equivalent to self & !other
when other
has unknown bits set.
difference
won’t truncate other
, but the !
operator will.