Skip to main content

AuthManager

Struct AuthManager 

Source
pub struct AuthManager { /* private fields */ }
Expand description

Manages OIDC discovery, token exchange, and the DPoP flow.

Implementations§

Source§

impl AuthManager

Source

pub async fn discover( oidc_config: OidcConfig, resource: String, vault: Vault, resource_metadata_url: Option<&str>, ) -> Result<Self>

Resolves the authorization server endpoints for resource.

resource_metadata_url is the (already validated) RFC 9728 metadata URL taken from a WWW-Authenticate challenge, if any.

Source

pub async fn set_internal_url_tx(&self, tx: Sender<String>)

Delivers the next authorization URL to tx instead of opening a browser (for automation and tests).

Source

pub async fn set_internal_callback_tx(&self, tx: Sender<SocketAddr>)

Reports the address the next loopback callback server binds to.

Source

pub async fn reauthenticate( &self, user_id: &str, scopes: Option<Vec<String>>, url_tx: Option<Sender<String>>, ) -> Result<()>

Full re-authentication flow: PAR -> Loopback Callback -> Token Exchange

Source

pub async fn refresh(&self, user_id: &str) -> Result<bool>

Renews the access token with the stored refresh token (RFC 6749 §6), without user interaction.

Returns Ok(false) when there is nothing to refresh with or the authorization server rejects the refresh token (which is then deleted), so the caller can fall back to the interactive flow.

Source

pub fn enforce_issuer_binding(&self, user_id: &str) -> Result<()>

Discards stored credentials issued by a different authorization server than the one discovered now. Credentials are bound to their issuer.

Source

pub fn get_token(&self, user_id: &str) -> Result<Option<String>>

Retrieves the current access token for a user from the vault.

Trait Implementations§

Source§

impl Clone for AuthManager

Source§

fn clone(&self) -> AuthManager

Returns a duplicate of the value. Read more
1.0.0 (const: unstable) · Source§

fn clone_from(&mut self, source: &Self)

Performs copy-assignment from source. Read more

Auto Trait Implementations§

Blanket Implementations§

Source§

impl<T> Any for T
where T: 'static + ?Sized,

Source§

fn type_id(&self) -> TypeId

Gets the TypeId of self. Read more
Source§

impl<T> Borrow<T> for T
where T: ?Sized,

Source§

fn borrow(&self) -> &T

Immutably borrows from an owned value. Read more
Source§

impl<T> BorrowMut<T> for T
where T: ?Sized,

Source§

fn borrow_mut(&mut self) -> &mut T

Mutably borrows from an owned value. Read more
Source§

impl<T> CloneToUninit for T
where T: Clone,

Source§

unsafe fn clone_to_uninit(&self, dest: *mut u8)

🔬This is a nightly-only experimental API. (clone_to_uninit)
Performs copy-assignment from self to dest. Read more
Source§

impl<T> From<T> for T

Source§

fn from(t: T) -> T

Returns the argument unchanged.

§

impl<T> FromRef<T> for T
where T: Clone,

§

fn from_ref(input: &T) -> T

Converts to this type from a reference to the input type.
§

impl<T> Instrument for T

§

fn instrument(self, span: Span) -> Instrumented<Self> ⓘ

Instruments this type with the provided [Span], returning an Instrumented wrapper. Read more
§

fn in_current_span(self) -> Instrumented<Self> ⓘ

Instruments this type with the current Span, returning an Instrumented wrapper. Read more
Source§

impl<T, U> Into<U> for T
where U: From<T>,

Source§

fn into(self) -> U

Calls U::from(self).

That is, this conversion is whatever the implementation of From<T> for U chooses to do.

§

impl<T> PolicyExt for T
where T: ?Sized,

§

fn and<P, B, E>(self, other: P) -> And<T, P>
where T: Sized + Policy<B, E>, P: Policy<B, E>,

Create a new Policy that returns [Action::Follow] only if self and other return Action::Follow. Read more
§

fn or<P, B, E>(self, other: P) -> Or<T, P>
where T: Sized + Policy<B, E>, P: Policy<B, E>,

Create a new Policy that returns [Action::Follow] if either self or other returns Action::Follow. Read more
Source§

impl<T> Same for T

Source§

type Output = T

Should always be Self
Source§

impl<T> ToOwned for T
where T: Clone,

Source§

type Owned = T

The resulting type after obtaining ownership.
Source§

fn to_owned(&self) -> T

Creates owned data from borrowed data, usually by cloning. Read more
Source§

fn clone_into(&self, target: &mut T)

Uses borrowed data to replace owned data, usually by cloning. Read more
Source§

impl<T, U> TryFrom<U> for T
where U: Into<T>,

Source§

type Error = Infallible

The type returned in the event of a conversion error.
Source§

fn try_from(value: U) -> Result<T, <T as TryFrom<U>>::Error>

Performs the conversion.
Source§

impl<T, U> TryInto<U> for T
where U: TryFrom<T>,

Source§

type Error = <U as TryFrom<T>>::Error

The type returned in the event of a conversion error.
Source§

fn try_into(self) -> Result<U, <U as TryFrom<T>>::Error>

Performs the conversion.
§

impl<V, T> VZip<V> for T
where V: MultiLane<T>,

§

fn vzip(self) -> V

§

impl<T> WithSubscriber for T

§

fn with_subscriber<S>(self, subscriber: S) -> WithDispatch<Self> ⓘ
where S: Into<Dispatch>,

Attaches the provided Subscriber to this type, returning a [WithDispatch] wrapper. Read more
§

fn with_current_subscriber(self) -> WithDispatch<Self> ⓘ

Attaches the current default Subscriber to this type, returning a [WithDispatch] wrapper. Read more