Struct SystemProxyLayer
pub struct SystemProxyLayer<P = SystemProxyPacDisabled> { /* private fields */ }net only.Expand description
Apply the operating system’s proxy settings to client service inputs.
Existing ProxyRoute or ProxyRoutes extensions win by default. This
makes the layer safe to place below explicit CLI/application proxy layers:
a common priority chain is NoProxyEnvLayer,
an explicit option, ProxyEnvLayer, then
this system layer. Use
with_overwrite only when the system policy must
replace a route already chosen by the caller.
Environment proxy variables are intentionally out of scope. Use
ProxyEnvLayer for proxy variables and
NoProxyEnvLayer for bypass variables.
Configuration discovery is lazy. macOS, Windows, and Linux install a
private native change monitor with the first load; the cache TTL remains a
fallback on every platform. Applications can replace that monitor through
with_config_change_trigger, retain
TTL-only refreshes through
without_config_change_trigger, or
make the first snapshot immutable through
with_config_refresh(false).
Fixed proxies and bypass decisions publish one ProxyRoute. PAC verdicts
retain their ordered ProxyRoutes plan even when it contains one entry.
Compose ProxyRoutesLayer after all route
selectors and before route-aware middleware.
A configured PAC URI is used only after a service is supplied through
with_pac_service. Without one the layer uses a
fixed proxy from the same system snapshot when available, or leaves the
request unchanged. Factory, fetch, or evaluation errors fail the request
instead of silently bypassing the system proxy.
Implementations§
§impl SystemProxyLayer
impl SystemProxyLayer
pub fn new() -> SystemProxyLayer
pub fn new() -> SystemProxyLayer
Create a lazy system-proxy layer without reading platform settings.
The first unrouted request loads the settings. Call
warm_up to perform that asynchronous load eagerly.
pub fn new_with_ttl(ttl: Duration) -> SystemProxyLayer
pub fn new_with_ttl(ttl: Duration) -> SystemProxyLayer
Create a lazy system-proxy layer with a custom cache TTL.
pub fn new_with_ttl_and_invalid_bypass_rule_policy(
ttl: Duration,
policy: SystemProxyInvalidBypassRulePolicy,
) -> SystemProxyLayer
pub fn new_with_ttl_and_invalid_bypass_rule_policy( ttl: Duration, policy: SystemProxyInvalidBypassRulePolicy, ) -> SystemProxyLayer
Create a lazy layer with explicit refresh and bypass-rule policies.
pub fn from_cached(config: SystemProxyConfig) -> SystemProxyLayer
pub fn from_cached(config: SystemProxyConfig) -> SystemProxyLayer
Create a layer from a cached operating-system proxy snapshot.
The supplied snapshot is used immediately and refreshed from the
operating system after DEFAULT_SYSTEM_PROXY_CONFIG_TTL. Use
try_from_system to start with a fresh read.
pub fn from_cached_with_invalid_bypass_rule_policy(
config: SystemProxyConfig,
policy: SystemProxyInvalidBypassRulePolicy,
) -> SystemProxyLayer
pub fn from_cached_with_invalid_bypass_rule_policy( config: SystemProxyConfig, policy: SystemProxyInvalidBypassRulePolicy, ) -> SystemProxyLayer
Create a layer from a cached operating-system proxy snapshot with an explicit invalid bypass-rule policy for subsequent refreshes.
pub async fn try_from_system() -> Result<SystemProxyLayer, Box<dyn Error + Sync + Send>>
pub async fn try_from_system() -> Result<SystemProxyLayer, Box<dyn Error + Sync + Send>>
Create a layer and asynchronously warm its system proxy snapshot.
pub async fn try_from_system_with_invalid_bypass_rule_policy(
policy: SystemProxyInvalidBypassRulePolicy,
) -> Result<SystemProxyLayer, Box<dyn Error + Sync + Send>>
pub async fn try_from_system_with_invalid_bypass_rule_policy( policy: SystemProxyInvalidBypassRulePolicy, ) -> Result<SystemProxyLayer, Box<dyn Error + Sync + Send>>
Create a layer from the current operating system proxy settings using an explicit invalid bypass-rule policy.
pub async fn try_from_system_with_ttl(
ttl: Duration,
) -> Result<SystemProxyLayer, Box<dyn Error + Sync + Send>>
pub async fn try_from_system_with_ttl( ttl: Duration, ) -> Result<SystemProxyLayer, Box<dyn Error + Sync + Send>>
Create a refreshing layer from the current operating system settings.
The initial read is awaited. Once ttl has elapsed, one request awaits
the refresh while concurrent requests continue using the prior
snapshot. A failed refresh retains that snapshot and is retried after
another ttl interval.
pub async fn try_from_system_with_ttl_and_invalid_bypass_rule_policy(
ttl: Duration,
policy: SystemProxyInvalidBypassRulePolicy,
) -> Result<SystemProxyLayer, Box<dyn Error + Sync + Send>>
pub async fn try_from_system_with_ttl_and_invalid_bypass_rule_policy( ttl: Duration, policy: SystemProxyInvalidBypassRulePolicy, ) -> Result<SystemProxyLayer, Box<dyn Error + Sync + Send>>
Create a refreshing layer with explicit refresh and invalid bypass-rule policies.
§impl<P> SystemProxyLayer<P>
impl<P> SystemProxyLayer<P>
pub async fn config(
&self,
) -> Result<Arc<SystemProxyConfig>, Box<dyn Error + Sync + Send>>
pub async fn config( &self, ) -> Result<Arc<SystemProxyConfig>, Box<dyn Error + Sync + Send>>
Load and return the current operating system proxy configuration.
The first call performs lazy discovery. A native or custom change trigger can request an early refresh. Once the cache TTL expires, one caller awaits a refresh while concurrent callers use the stale snapshot.
pub fn cached_config(&self) -> Option<Arc<SystemProxyConfig>>
pub fn cached_config(&self) -> Option<Arc<SystemProxyConfig>>
Return the cached snapshot without loading or refreshing it.
pub async fn warm_up(&self) -> Result<(), Box<dyn Error + Sync + Send>>
pub async fn warm_up(&self) -> Result<(), Box<dyn Error + Sync + Send>>
Asynchronously populate the cache before serving requests.
pub fn with_pac_service<Q>(self, pac: Q) -> SystemProxyLayer<Q>
pub fn with_pac_service<Q>(self, pac: Q) -> SystemProxyLayer<Q>
Supply a PAC resolver factory.
The factory can be consulted for every request selected for PAC evaluation. Implementations should therefore reuse resolver state for the same script URI. Factory and resolver errors fail the request.
pub fn with_load_error_sink(
self,
error_sink: impl ErrorSink,
) -> SystemProxyLayer<P>
pub fn with_load_error_sink( self, error_sink: impl ErrorSink, ) -> SystemProxyLayer<P>
Handle system configuration load errors with a sink.
By default, an initial discovery failure rejects the request. With
this opt-in policy, the error is sent to error_sink and an empty
snapshot is cached for the configured TTL. Refresh failures retain
the previous snapshot and are sent to the same sink.
pub fn set_load_error_sink(
&mut self,
error_sink: impl ErrorSink,
) -> &mut SystemProxyLayer<P>
pub fn set_load_error_sink( &mut self, error_sink: impl ErrorSink, ) -> &mut SystemProxyLayer<P>
Handle system configuration load errors with a sink.
By default, an initial discovery failure rejects the request. With
this opt-in policy, the error is sent to error_sink and an empty
snapshot is cached for the configured TTL. Refresh failures retain
the previous snapshot and are sent to the same sink.
pub fn with_config_refresh(self, config_refresh: bool) -> SystemProxyLayer<P>
pub fn with_config_refresh(self, config_refresh: bool) -> SystemProxyLayer<P>
Enable periodic and change-triggered configuration refreshes.
Disabling refresh keeps the first loaded snapshot immutable. A
layer created with from_cached therefore
performs no operating-system reads when refresh is disabled.
pub fn set_config_refresh(
&mut self,
config_refresh: bool,
) -> &mut SystemProxyLayer<P>
pub fn set_config_refresh( &mut self, config_refresh: bool, ) -> &mut SystemProxyLayer<P>
Enable periodic and change-triggered configuration refreshes.
Disabling refresh keeps the first loaded snapshot immutable. A
layer created with from_cached therefore
performs no operating-system reads when refresh is disabled.
pub fn with_config_change_trigger(
self,
trigger: impl Service<(), Output = bool, Error : Into>,
) -> SystemProxyLayer<P>
pub fn with_config_change_trigger(
self,
trigger: impl Service<(), Output = bool, Error : Into>,
) -> SystemProxyLayer<P>
Replace the default platform configuration-change trigger.
The service is polled before configuration access. Returning true
requests an immediate refresh of an existing snapshot; returning
false leaves the TTL as the fallback. Trigger errors are sent to the
configured error sink and also fall back to the TTL.
pub fn set_config_change_trigger(
&mut self,
trigger: impl Service<(), Output = bool, Error : Into>,
) -> &mut SystemProxyLayer<P>
pub fn set_config_change_trigger(
&mut self,
trigger: impl Service<(), Output = bool, Error : Into>,
) -> &mut SystemProxyLayer<P>
Replace the default platform configuration-change trigger.
The service is polled before configuration access. Returning true
requests an immediate refresh of an existing snapshot; returning
false leaves the TTL as the fallback. Trigger errors are sent to the
configured error sink and also fall back to the TTL.
pub fn without_config_change_trigger(self) -> SystemProxyLayer<P>
pub fn without_config_change_trigger(self) -> SystemProxyLayer<P>
Disable early change notifications while retaining TTL refreshes.
pub fn unset_config_change_trigger(&mut self) -> &mut SystemProxyLayer<P>
pub fn unset_config_change_trigger(&mut self) -> &mut SystemProxyLayer<P>
Disable early change notifications while retaining TTL refreshes.
pub fn with_config_change_trigger_error_sink(
self,
error_sink: impl ErrorSink,
) -> SystemProxyLayer<P>
pub fn with_config_change_trigger_error_sink( self, error_sink: impl ErrorSink, ) -> SystemProxyLayer<P>
Replace the sink for configuration-change trigger errors.
pub fn set_config_change_trigger_error_sink(
&mut self,
error_sink: impl ErrorSink,
) -> &mut SystemProxyLayer<P>
pub fn set_config_change_trigger_error_sink( &mut self, error_sink: impl ErrorSink, ) -> &mut SystemProxyLayer<P>
Replace the sink for configuration-change trigger errors.
pub fn with_overwrite(self, overwrite: bool) -> SystemProxyLayer<P>
pub fn with_overwrite(self, overwrite: bool) -> SystemProxyLayer<P>
Replace an existing route decision (defaults to false).
pub fn set_overwrite(&mut self, overwrite: bool) -> &mut SystemProxyLayer<P>
pub fn set_overwrite(&mut self, overwrite: bool) -> &mut SystemProxyLayer<P>
Replace an existing route decision (defaults to false).
Trait Implementations§
§impl<P> Clone for SystemProxyLayer<P>where
P: Clone,
impl<P> Clone for SystemProxyLayer<P>where
P: Clone,
§fn clone(&self) -> SystemProxyLayer<P>
fn clone(&self) -> SystemProxyLayer<P>
1.0.0 (const: unstable) · Source§fn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
source. Read more§impl<P> Debug for SystemProxyLayer<P>where
P: Debug,
impl<P> Debug for SystemProxyLayer<P>where
P: Debug,
§impl Default for SystemProxyLayer
impl Default for SystemProxyLayer
§fn default() -> SystemProxyLayer
fn default() -> SystemProxyLayer
§impl<S, P> Layer<S> for SystemProxyLayer<P>where
P: Clone,
impl<S, P> Layer<S> for SystemProxyLayer<P>where
P: Clone,
§type Service = SystemProxyService<S, P>
type Service = SystemProxyService<S, P>
§fn layer(&self, inner: S) -> <SystemProxyLayer<P> as Layer<S>>::Service
fn layer(&self, inner: S) -> <SystemProxyLayer<P> as Layer<S>>::Service
§fn into_layer(self, inner: S) -> <SystemProxyLayer<P> as Layer<S>>::Service
fn into_layer(self, inner: S) -> <SystemProxyLayer<P> as Layer<S>>::Service
layer but consuming self after the service was created. Read moreAuto Trait Implementations§
impl<P = SystemProxyPacDisabled> !RefUnwindSafe for SystemProxyLayer<P>
impl<P = SystemProxyPacDisabled> !UnwindSafe for SystemProxyLayer<P>
impl<P> Freeze for SystemProxyLayer<P>where
P: Freeze,
impl<P> Send for SystemProxyLayer<P>where
P: Send,
impl<P> Sync for SystemProxyLayer<P>where
P: Sync,
impl<P> Unpin for SystemProxyLayer<P>where
P: Unpin,
impl<P> UnsafeUnpin for SystemProxyLayer<P>where
P: UnsafeUnpin,
Blanket Implementations§
§impl<'a, T, E> AsTaggedExplicit<'a, E> for Twhere
T: 'a,
impl<'a, T, E> AsTaggedExplicit<'a, E> for Twhere
T: 'a,
§impl<'a, T, E> AsTaggedImplicit<'a, E> for Twhere
T: 'a,
impl<'a, T, E> AsTaggedImplicit<'a, E> for Twhere
T: 'a,
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
impl<ST, DT> CastableFrom<ST, Initialized, Initialized> for DT
impl<ST, DT> CastableFrom<ST, Uninit, Uninit> for DT
Source§impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> CloneToUninit for Twhere
T: Clone,
§impl<T> FutureExt for T
impl<T> FutureExt for T
§fn with_context(self, otel_cx: Context) -> WithContext<Self> ⓘ
fn with_context(self, otel_cx: Context) -> WithContext<Self> ⓘ
§fn with_current_context(self) -> WithContext<Self> ⓘ
fn with_current_context(self) -> WithContext<Self> ⓘ
§impl<T> Instrument for T
impl<T> Instrument for T
§fn instrument(self, span: Span) -> Instrumented<Self> ⓘ
fn instrument(self, span: Span) -> Instrumented<Self> ⓘ
§fn in_current_span(self) -> Instrumented<Self> ⓘ
fn in_current_span(self) -> Instrumented<Self> ⓘ
Source§impl<T> IntoEither for T
impl<T> IntoEither for T
Source§fn into_either(self, into_left: bool) -> Either<Self, Self> ⓘ
fn into_either(self, into_left: bool) -> Either<Self, Self> ⓘ
self into a Left variant of Either<Self, Self>
if into_left is true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§fn into_either_with<F>(self, into_left: F) -> Either<Self, Self> ⓘ
fn into_either_with<F>(self, into_left: F) -> Either<Self, Self> ⓘ
self into a Left variant of Either<Self, Self>
if into_left(&self) returns true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read more§impl<T> IntoRequest<T> for T
impl<T> IntoRequest<T> for T
§fn into_request(self) -> Request<T>
fn into_request(self) -> Request<T>
T in a rama_grpc::Request§impl<T> Pointable for T
impl<T> Pointable for T
§impl<T> PolicyExt for Twhere
T: ?Sized,
impl<T> PolicyExt for Twhere
T: ?Sized,
§fn and<P, B, E>(self, other: P) -> And<T, P>
fn and<P, B, E>(self, other: P) -> And<T, P>
Policy that returns Action::Follow only if self and other return
Action::Follow. Read more