Skip to main content

TlsServerConfig

Struct TlsServerConfig 

pub struct TlsServerConfig(/* private fields */);
Available on crate feature tls only.
Expand description

A backend agnostic TLS server config

It holds a set of fine-grained config pieces (e.g. TlsServerAuth, TlsAlpn) and exposes typed setters for the settings both TLS backends support. Backend crates add setters for their backend-specific pieces (e.g. dynamic cert issuance + caching, or a native escape hatch) via extension traits (RustlsServerConfigExt / BoringServerConfigExt).

Implementations§

§

impl TlsServerConfig

pub fn new() -> TlsServerConfig

Create an empty config.

pub fn default_http() -> Result<TlsServerConfig, Box<dyn Error + Sync + Send>>

Create a new config using with:

pub fn self_signed_http_auto() -> Result<TlsServerConfig, Box<dyn Error + Sync + Send>>

Create a config that serves a freshly generated self-signed identity and offers HTTP/2 + HTTP/1.1 via ALPN.

pub fn write_to(&self, extensions: &Extensions)

Transfer this config’s pieces onto extensions (appending, so they override existing entries of the same type — newest-wins).

pub fn with_server_auth(self, auth: ServerAuthData) -> TlsServerConfig

Set the server auth: the certificate chain + private key to serve.

Dynamic / on-the-fly cert issuance (with caching) is backend-specific; configure it via the backend’s server-config extension trait.

pub fn set_server_auth(&mut self, auth: ServerAuthData) -> &mut TlsServerConfig

Set the server auth: the certificate chain + private key to serve.

Dynamic / on-the-fly cert issuance (with caching) is backend-specific; configure it via the backend’s server-config extension trait.

pub fn try_with_self_signed( self, data: SelfSignedData, ) -> Result<TlsServerConfig, Box<dyn Error + Sync + Send>>

Generate a fresh self-signed identity and serve it.

pub fn try_set_self_signed( &mut self, data: SelfSignedData, ) -> Result<&mut TlsServerConfig, Box<dyn Error + Sync + Send>>

Generate a fresh self-signed identity and serve it.

pub fn with_single_cert(self, data: ServerAuthData) -> TlsServerConfig

Serve the provided certificate chain + private key.

pub fn set_single_cert(&mut self, data: ServerAuthData) -> &mut TlsServerConfig

Serve the provided certificate chain + private key.

pub fn with_alpn( self, protocols: SmallVec<[ApplicationProtocol; 2]>, ) -> TlsServerConfig

Set the ALPN protocols accepted (in preference order).

pub fn set_alpn( &mut self, protocols: SmallVec<[ApplicationProtocol; 2]>, ) -> &mut TlsServerConfig

Set the ALPN protocols accepted (in preference order).

pub fn with_alpn_http_auto(self) -> TlsServerConfig

Accept HTTP/2 and HTTP/1.1 via ALPN.

pub fn set_alpn_http_auto(&mut self) -> &mut TlsServerConfig

Accept HTTP/2 and HTTP/1.1 via ALPN.

pub fn with_alpn_http_1(self) -> TlsServerConfig

Accept HTTP/1.1 only via ALPN.

pub fn set_alpn_http_1(&mut self) -> &mut TlsServerConfig

Accept HTTP/1.1 only via ALPN.

pub fn with_alpn_http_2(self) -> TlsServerConfig

Accept HTTP/2 only via ALPN.

pub fn set_alpn_http_2(&mut self) -> &mut TlsServerConfig

Accept HTTP/2 only via ALPN.

pub fn with_supported_versions( self, versions: Vec<ProtocolVersion>, ) -> TlsServerConfig

Set the supported protocol versions.

pub fn set_supported_versions( &mut self, versions: Vec<ProtocolVersion>, ) -> &mut TlsServerConfig

Set the supported protocol versions.

pub fn with_keylog(self, intent: KeyLogIntent) -> TlsServerConfig

Set the keylog intent.

pub fn set_keylog(&mut self, intent: KeyLogIntent) -> &mut TlsServerConfig

Set the keylog intent.

pub fn with_client_verify(self, mode: ClientVerifyMode) -> TlsServerConfig

Set how the client is verified (mTLS).

pub fn set_client_verify( &mut self, mode: ClientVerifyMode, ) -> &mut TlsServerConfig

Set how the client is verified (mTLS).

pub fn with_store_client_cert_chain(self, store: bool) -> TlsServerConfig

Set whether the client certificate chain is captured into NegotiatedTlsParameters.

pub fn set_store_client_cert_chain( &mut self, store: bool, ) -> &mut TlsServerConfig

Set whether the client certificate chain is captured into NegotiatedTlsParameters.

pub fn as_extensions(&self) -> &Extensions

Trait Implementations§

§

impl BoringServerConfigExt for TlsServerConfig

§

fn with_cert_issuer(self, data: ServerCertIssuerData) -> TlsServerConfig

Issue server certs on the fly (from a CA or a custom [DynamicCertIssuer]), with optional in-memory caching.
§

fn set_cert_issuer( &mut self, data: ServerCertIssuerData, ) -> &mut TlsServerConfig

Issue server certs on the fly (from a CA or a custom [DynamicCertIssuer]), with optional in-memory caching.
§

impl Clone for TlsServerConfig

§

fn clone(&self) -> TlsServerConfig

Returns a duplicate of the value. Read more
1.0.0 (const: unstable) · Source§

fn clone_from(&mut self, source: &Self)

Performs copy-assignment from source. Read more
§

impl Debug for TlsServerConfig

§

fn fmt(&self, f: &mut Formatter<'_>) -> Result<(), Error>

Formats the value using the given formatter. Read more
§

impl Default for TlsServerConfig

§

fn default() -> TlsServerConfig

Returns the “default value” for a type. Read more
§

impl RamaTryFrom<&TlsServerConfig, RamaTlsRustlsCrateMarker> for ServerConfig

§

impl RamaTryFrom<TlsServerConfig, RamaTlsRustlsCrateMarker> for ServerConfig

§

impl RustlsServerConfigExt for TlsServerConfig

§

fn with_modify_rustls_config( self, modify: impl Fn(ServerConfig) -> Result<ServerConfig, Box<dyn Error + Sync + Send>> + Send + Sync + 'static, ) -> TlsServerConfig

Take over the final rustls ServerConfig build: see ModifyRustlsServerConfig.
§

fn set_modify_rustls_config( &mut self, modify: impl Fn(ServerConfig) -> Result<ServerConfig, Box<dyn Error + Sync + Send>> + Send + Sync + 'static, ) -> &mut TlsServerConfig

Take over the final rustls ServerConfig build: see ModifyRustlsServerConfig.
§

fn with_dynamic_config( self, provider: Arc<impl DynamicConfigProvider>, ) -> TlsServerConfig

Resolve a full rustls::ServerConfig per ClientHello via a DynamicConfigProvider Read more
§

fn set_dynamic_config( &mut self, provider: Arc<impl DynamicConfigProvider>, ) -> &mut TlsServerConfig

Resolve a full rustls::ServerConfig per ClientHello via a DynamicConfigProvider Read more
§

impl TryFrom<&TlsServerConfig> for TlsAcceptorData

§

type Error = Box<dyn Error + Sync + Send>

The type returned in the event of a conversion error.
§

fn try_from( value: &TlsServerConfig, ) -> Result<TlsAcceptorData, <TlsAcceptorData as TryFrom<&TlsServerConfig>>::Error>

Performs the conversion.
§

impl TryFrom<&TlsServerConfig> for TlsAcceptorData

§

type Error = Box<dyn Error + Sync + Send>

The type returned in the event of a conversion error.
§

fn try_from( value: &TlsServerConfig, ) -> Result<TlsAcceptorData, <TlsAcceptorData as TryFrom<&TlsServerConfig>>::Error>

Performs the conversion.

Auto Trait Implementations§

Blanket Implementations§

Source§

impl<T> Any for T
where T: 'static + ?Sized,

Source§

fn type_id(&self) -> TypeId

Gets the TypeId of self. Read more
§

impl<'a, T, E> AsTaggedExplicit<'a, E> for T
where T: 'a,

§

fn explicit(self, class: Class, tag: u32) -> TaggedParser<'a, Explicit, Self, E>

§

impl<'a, T, E> AsTaggedImplicit<'a, E> for T
where T: 'a,

§

fn implicit( self, class: Class, constructed: bool, tag: u32, ) -> TaggedParser<'a, Implicit, Self, E>

Source§

impl<T> Borrow<T> for T
where T: ?Sized,

Source§

fn borrow(&self) -> &T

Immutably borrows from an owned value. Read more
Source§

impl<T> BorrowMut<T> for T
where T: ?Sized,

Source§

fn borrow_mut(&mut self) -> &mut T

Mutably borrows from an owned value. Read more
§

impl<ST, DT> CastableFrom<ST, Initialized, Initialized> for DT
where ST: ?Sized, DT: ?Sized,

§

impl<ST, DT> CastableFrom<ST, Uninit, Uninit> for DT
where ST: ?Sized, DT: ?Sized,

Source§

impl<T> CloneToUninit for T
where T: Clone,

Source§

unsafe fn clone_to_uninit(&self, dest: *mut u8)

🔬This is a nightly-only experimental API. (clone_to_uninit)
Performs copy-assignment from self to dest. Read more
Source§

impl<T> From<T> for T

Source§

fn from(t: T) -> T

Returns the argument unchanged.

§

impl<T> FromRef<T> for T
where T: Clone,

§

fn from_ref(input: &T) -> T

Converts to this type from a reference to the input type.
§

impl<T> FutureExt for T

§

fn with_context(self, otel_cx: Context) -> WithContext<Self>

Attaches the provided Context to this type, returning a WithContext wrapper. Read more
§

fn with_current_context(self) -> WithContext<Self>

Attaches the current Context to this type, returning a WithContext wrapper. Read more
§

impl<T> Instrument for T

§

fn instrument(self, span: Span) -> Instrumented<Self>

Instruments this type with the provided Span, returning an Instrumented wrapper. Read more
§

fn in_current_span(self) -> Instrumented<Self>

Instruments this type with the current Span, returning an Instrumented wrapper. Read more
Source§

impl<T, U> Into<U> for T
where U: From<T>,

Source§

fn into(self) -> U

Calls U::from(self).

That is, this conversion is whatever the implementation of From<T> for U chooses to do.

Source§

impl<T> IntoEither for T

Source§

fn into_either(self, into_left: bool) -> Either<Self, Self>

Converts self into a Left variant of Either<Self, Self> if into_left is true. Converts self into a Right variant of Either<Self, Self> otherwise. Read more
Source§

fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
where F: FnOnce(&Self) -> bool,

Converts self into a Left variant of Either<Self, Self> if into_left(&self) returns true. Converts self into a Right variant of Either<Self, Self> otherwise. Read more
§

impl<T> IntoRequest<T> for T

§

fn into_request(self) -> Request<T>

Wrap the input message T in a rama_grpc::Request
§

impl<L> LayerExt<L> for L

§

fn named_layer<S>(&self, service: S) -> Layered<<L as Layer<S>>::Service, S>
where L: Layer<S>,

Applies the layer to a service and wraps it in Layered.
§

impl<T> Pointable for T

§

const ALIGN: usize

The alignment of pointer.
§

type Init = T

The type for initializers.
§

unsafe fn init(init: <T as Pointable>::Init) -> usize

Initializes a with the given initializer. Read more
§

unsafe fn deref<'a>(ptr: usize) -> &'a T

Dereferences the given pointer. Read more
§

unsafe fn deref_mut<'a>(ptr: usize) -> &'a mut T

Mutably dereferences the given pointer. Read more
§

unsafe fn drop(ptr: usize)

Drops the object pointed to by the given pointer. Read more
§

impl<T> PolicyExt for T
where T: ?Sized,

§

fn and<P, B, E>(self, other: P) -> And<T, P>
where T: Sized + Policy<B, E>, P: Policy<B, E>,

Create a new Policy that returns Action::Follow only if self and other return Action::Follow. Read more
§

fn or<P, B, E>(self, other: P) -> Or<T, P>
where T: Sized + Policy<B, E>, P: Policy<B, E>,

Create a new Policy that returns Action::Follow if either self or other returns Action::Follow. Read more
§

impl<T, U> RamaFrom<T> for U
where U: From<T>,

§

fn rama_from(value: T) -> U

§

impl<T, U, CrateMarker> RamaInto<U, CrateMarker> for T
where U: RamaFrom<T, CrateMarker>,

§

fn rama_into(self) -> U

§

impl<T, U> RamaTryFrom<T> for U
where U: TryFrom<T>,

§

type Error = <U as TryFrom<T>>::Error

§

fn rama_try_from(value: T) -> Result<U, <U as RamaTryFrom<T>>::Error>

§

impl<T, U, CrateMarker> RamaTryInto<U, CrateMarker> for T
where U: RamaTryFrom<T, CrateMarker>,

§

type Error = <U as RamaTryFrom<T, CrateMarker>>::Error

§

fn rama_try_into(self) -> Result<U, <U as RamaTryFrom<T, CrateMarker>>::Error>

§

impl<T> Read<Exclusive, BecauseExclusive> for T
where T: ?Sized,

Source§

impl<T> Same for T

Source§

type Output = T

Should always be Self
Source§

impl<T> ToOwned for T
where T: Clone,

Source§

type Owned = T

The resulting type after obtaining ownership.
Source§

fn to_owned(&self) -> T

Creates owned data from borrowed data, usually by cloning. Read more
Source§

fn clone_into(&self, target: &mut T)

Uses borrowed data to replace owned data, usually by cloning. Read more
Source§

impl<T, U> TryFrom<U> for T
where U: Into<T>,

Source§

type Error = Infallible

The type returned in the event of a conversion error.
Source§

fn try_from(value: U) -> Result<T, <T as TryFrom<U>>::Error>

Performs the conversion.
Source§

impl<T, U> TryInto<U> for T
where U: TryFrom<T>,

Source§

type Error = <U as TryFrom<T>>::Error

The type returned in the event of a conversion error.
Source§

fn try_into(self) -> Result<U, <U as TryFrom<T>>::Error>

Performs the conversion.
§

impl<V, T> VZip<V> for T
where V: MultiLane<T>,

§

fn vzip(self) -> V

§

impl<V, F> ValueFormatter<&V> for F
where F: ValueFormatter<V> + ?Sized, V: ?Sized,

§

fn format_value(writer: impl ValueWriter, value: &&V)

Write value to writer
§

impl<V, F> ValueFormatter<Arc<V>> for F
where F: ValueFormatter<V> + ?Sized, V: ?Sized,

§

fn format_value(writer: impl ValueWriter, value: &Arc<V>)

Write value to writer
§

impl<V, F> ValueFormatter<Box<V>> for F
where F: ValueFormatter<V> + ?Sized, V: ?Sized,

§

fn format_value(writer: impl ValueWriter, value: &Box<V>)

Write value to writer
§

impl<V, F> ValueFormatter<Cow<'_, V>> for F
where V: ToOwned + ?Sized, F: ValueFormatter<V> + ?Sized,

§

fn format_value(writer: impl ValueWriter, value: &Cow<'_, V>)

Write value to writer
§

impl<V, F> ValueFormatter<Option<V>> for F
where F: ValueFormatter<V> + ?Sized,

§

fn format_value(writer: impl ValueWriter, value: &Option<V>)

Write value to writer
§

impl<T> WithSubscriber for T

§

fn with_subscriber<S>(self, subscriber: S) -> WithDispatch<Self>
where S: Into<Dispatch>,

Attaches the provided Subscriber to this type, returning a WithDispatch wrapper. Read more
§

fn with_current_subscriber(self) -> WithDispatch<Self>

Attaches the current default Subscriber to this type, returning a WithDispatch wrapper. Read more