pub trait DatastoreSecretResolver {
// Required method
fn resolve_catalog_credential(
&self,
binding: &DatastoreIdentityBinding,
reference: &ManagedSecretReference,
) -> Result<ResolvedManagedSecret, AppError>;
// Provided methods
fn dataset_maintenance(
&self,
_plan: &DatastoreSessionPlan,
_binding: &DatastoreIdentityBinding,
) -> Result<PgDatasetMaintenance, AppError> { ... }
fn resolve_storage_credential(
&self,
_plan: &DatastoreSessionPlan,
_configured: &ConfiguredSecret,
) -> Result<ResolvedOperationSecret, AppError> { ... }
fn retain_session_reference_snapshot(
&self,
_reference: &ConfiguredSessionReference,
_resolved_versions: &[ResolvedSecretVersion],
) -> Result<(), AppError> { ... }
}Expand description
Trusted operation capability that resolves only the binding-owned catalog credential.
Required Methods§
fn resolve_catalog_credential( &self, binding: &DatastoreIdentityBinding, reference: &ManagedSecretReference, ) -> Result<ResolvedManagedSecret, AppError>
Provided Methods§
Sourcefn dataset_maintenance(
&self,
_plan: &DatastoreSessionPlan,
_binding: &DatastoreIdentityBinding,
) -> Result<PgDatasetMaintenance, AppError>
fn dataset_maintenance( &self, _plan: &DatastoreSessionPlan, _binding: &DatastoreIdentityBinding, ) -> Result<PgDatasetMaintenance, AppError>
Authorizes one cleanup operation using immutable configuration and the existing Secret resolver. The adapter exposes no materialization API.