code wiki / _hdl_build / nx_vault_auth_test.nx

nx_vault_auth_test.nx

buildroot/runtime/_hdl_build/nx_vault_auth_test.nx

4830 B65 linesdepth 4pulls 5 transitivereach 0 importersview sourcekind gate/prooftopic vault
docsdependenciesstructsconstsfunctions

about

nx_vault_auth_test.nx -- AUTHGATE: proves multi-auth methods end-to-end. Principals: a token, a userpass user, an approle role -- each mapped to a policy. GREEN iff: each method logs in to its correct policy; wrong secret / wrong method / unknown id all DENY; and the issued session is BOTH lease-bound (valid in ttl, expired after -- composes nx_vault_lease) AND policy-bound (its ACL policy actually gates a path -- composes nx_vault_acl). exit 0 on 7/7.

dependencies 3 imports · 0 importers

nx_vault_auth.nx nx_vault_acl.nx nx_syscalls.nx nx_vault_auth_test.nx

imports: nx_vault_auth.nxnx_vault_acl.nxnx_syscalls.nx

imported by: nobody (leaf or entry point)

call flow from main pre-order; caps 40 nodes / depth 6 declared; ↻ = already shown

main ug_puts sys_write sys_mmap auth_login auth_session_valid lease_valid acl_eval acl_is_prefix ug_num sys_mmap ↻ sys_write ↻ sys_exit

structs

none

consts

none

functions

10func ug_puts(s: *u8) -> i64 { var n: i64 = 0; while s[n] != (0 as u8) { n = n + 1 } sys_write(1, s, n); return 0 }
called by 1: main calls 1: sys_write
11func ug_num(v: i64) -> i64 { let b: *u8 = sys_mmap(28); var m: i64=v; if m<0 {m=0-m;sys_write(1,"-" as *u8,1)}; let t: *u8 = sys_mmap(28); var k: i64=0; if m==0 {t[0]=48;k=1}; while m>0 {t[k]=48+(m%10); m=m/10; k=k+1}; var i: i64=0; while i<k {b[i]=t[k-1-i]; i=i+1}; sys_write(1,b,k); return 0 }
called by 1: main calls 2: sys_mmapsys_write
13func main() -> i64