CodeSampleX

샘플

rustls-pki-types 1.15.1: rustls_pki_types::PrivatePkcs8KeyDer

검증된 샘플 — cargo rustls-pki-types 1.15.1: rustls_pki_types::PrivatePkcs8KeyDer. rust 1 · linux alpine/x64 · docker에서 contract를 실행해 통과했습니다.

sha256:386984703f8780b7a65be1cb11bc5e708f9e59e49af3a7e5c779c807a49f5d91

이 네트워크가 제공하는 것은 하나입니다. 빌드되는 샘플. 샌드박스에서 돌리고 서명된 영수증을 보관합니다. 등급을 매기지 않고 무엇도 보증하지 않습니다 — 같은 코드가 당신 환경에서 빌드되는지는 측정한 적이 없습니다. 통과한 계약 영수증을 낸 서로 다른 서명 키의 수입니다. 하나면 작성자 혼자이고, 둘 이상이면 다른 사람도 빌드했다는 뜻입니다. 키는 스스로 만드는 것이고 뒤에 등록된 신원이 없으므로, 세는 것은 사람이 아니라 키입니다. MIT-0

실행 증거

선언된 환경과 서명된 실행을 분리해 두었습니다. 이 샘플이 무엇을 어디서 실행했는지 그대로 볼 수 있습니다.

증거 기준
서명된 컨트랙트 통과
검증 영수증
1
빌드한 서명 키
1
선언된 환경 linux · alpine · musl x64 cargo

검증 실행 환경

환경 컨트랙트 단계 실행일
rust 1 · linux alpine/x64 · docker ed25519:c1973797be207ac4 PASS compile:SKIPPED · contract:PASS · load:PASS · resolve:PASS
CONTAINER_RUN · cargo@1rust:1-alpine@sha256:a10e64dd139b…
2026-09-20

케이스

HOW
목표
verify rustls_pki_types::PrivatePkcs8KeyDer in pkg:cargo/rustls-pki-types@1.15.1
패키지
심벌
  • rustls_pki_types::PrivatePkcs8KeyDer
생성일
2026-09-20T06:34:14Z

컨트랙트

  1. PrivatePkcs8KeyDer constructs from borrowed byte slices and owned byte vectors and yields DER bytes via secret_pkcs8_der
  2. PrivatePkcs8KeyDer clones to a static owned instance via clone_key
  3. PrivatePkcs8KeyDer elides secret key bytes in Debug formatting
  4. PrivatePkcs8KeyDer converts into PrivateKeyDer::Pkcs8 and is recognized by PrivateKeyDer::try_from
  5. PrivatePkcs8KeyDer decodes from PEM formatted slices via PemObject and rejects mismatched PEM types with Error::NoItemsFound
  6. PrivatePkcs8KeyDer implements equality comparison based on underlying DER contents

파일

  • Cargo.lock
  • Cargo.toml
  • PROMPT.md
  • csx.json
  • spec.json
  • src/lib.rs
  • test/contract.rs

소스 아티팩트 내려받기 (tar.gz)

소스

Cargo.lock
# This file is automatically @generated by Cargo.
# It is not intended for manual editing.
version = 4

[[package]]
name = "rustls-pki-types"
version = "1.15.1"
source = "registry+https://github.com/rust-lang/crates.io-index"
checksum = "2f4925028c7eb5d1fcdaf196971378ed9d2c1c4efc7dc5d011256f76c99c0a96"
dependencies = [
 "zeroize",
]

[[package]]
name = "sample-rustls-pki-types"
version = "1.0.0"
dependencies = [
 "rustls-pki-types",
]

[[package]]
name = "zeroize"
version = "1.9.0"
source = "registry+https://github.com/rust-lang/crates.io-index"
checksum = "e13c156562582aa81c60cb29407084cdb54c4164760106ab78e6c5b0858cf64e"
Cargo.toml
[package]
name = "sample-rustls-pki-types"
version = "1.0.0"
edition = "2021"
publish = false

[dependencies]
rustls-pki-types = { version = "=1.15.1" }

[[bin]]
name = "contract"
path = "test/contract.rs"
PROMPT.md
Clean-room public code sample — generation instructions

Write a brand-new, minimal, self-contained code sample in this clean-room directory.
Do not copy, paraphrase, or reference any existing project source. Work only from this spec.

A csx.json manifest scaffold already exists. Do not recreate it from memory. Preserve its case.goal, packages and symbols; fill its empty case.contract with exact assertions and correct its environment, commands and verifierAdapter for the files you generate.

Goal: verify rustls_pki_types::PrivatePkcs8KeyDer in pkg:cargo/rustls-pki-types@1.15.1
Kind: HOW

Use EXACTLY these public packages and versions:
  - pkg:cargo/rustls-pki-types@1.15.1
Demonstrate these symbols/APIs:
  - rustls_pki_types::PrivatePkcs8KeyDer

Rules:
  - One focused purpose; the smallest project that proves the goal.
  - Include a contract test (test/contract.*) that runs OFFLINE and exits 0 exactly when the goal behavior works.
  - Pin every dependency with a lockfile so resolution is reproducible.
  - No secrets, credentials, or tokens. No real URLs (only example.com or localhost). No absolute paths.
  - No personal names, emails, company names, or project identifiers of any kind.
  - No binaries and no generated output (node_modules, dist, target, venv, .git, .env).
  - Keep it under 200 files and 256KB packed.
csx.json
{"case":{"caseId":"case:sha256:a3a83c995a2c17ffb5b052df589e2043457abfeab2ac5571187eb1a870d32d9a","contract":["PrivatePkcs8KeyDer constructs from borrowed byte slices and owned byte vectors and yields DER bytes via secret_pkcs8_der","PrivatePkcs8KeyDer clones to a static owned instance via clone_key","PrivatePkcs8KeyDer elides secret key bytes in Debug formatting","PrivatePkcs8KeyDer converts into PrivateKeyDer::Pkcs8 and is recognized by PrivateKeyDer::try_from","PrivatePkcs8KeyDer decodes from PEM formatted slices via PemObject and rejects mismatched PEM types with Error::NoItemsFound","PrivatePkcs8KeyDer implements equality comparison based on underlying DER contents"],"goal":"verify rustls_pki_types::PrivatePkcs8KeyDer in pkg:cargo/rustls-pki-types@1.15.1","kind":"HOW","packages":["pkg:cargo/rustls-pki-types@1.15.1"],"schemaVersion":1,"symbols":["rustls_pki_types::PrivatePkcs8KeyDer"]},"contractCommand":["cargo","run","--offline"],"environment":{"arch":"x64","distro":"alpine","ecosystem":"cargo","libc":"musl","os":"linux","packageManager":"cargo","schemaVersion":1},"license":"MIT-0","packages":["pkg:cargo/rustls-pki-types@1.15.1"],"schemaVersion":1,"subject":"pkg:cargo/rustls-pki-types@1.15.1","symbols":["rustls_pki_types::PrivatePkcs8KeyDer"],"verifierAdapter":"cargo@1"}
spec.json
{
  "schemaVersion": 1,
  "goal": "verify rustls_pki_types::PrivatePkcs8KeyDer in pkg:cargo/rustls-pki-types@1.15.1",
  "kind": "HOW",
  "packages": [
    "pkg:cargo/rustls-pki-types@1.15.1"
  ],
  "symbols": [
    "rustls_pki_types::PrivatePkcs8KeyDer"
  ]
}
src/lib.rs
//! Clean-room verification sample for rustls-pki-types PrivatePkcs8KeyDer.

pub use rustls_pki_types::PrivatePkcs8KeyDer;
test/contract.rs
use rustls_pki_types::{
    pem::{self, PemObject},
    PrivateKeyDer, PrivatePkcs8KeyDer,
};

fn main() {
    // 1. PrivatePkcs8KeyDer constructs from borrowed byte slices and owned byte vectors and yields DER bytes via secret_pkcs8_der
    let sample_der_bytes: &[u8] = &[
        0x30, 0x08, // SEQUENCE, 8 bytes
        0x02, 0x01, 0x00, // INTEGER version 0
        0x30, 0x03, 0x01, 0x01, 0x00, // AlgorithmIdentifier SEQUENCE
    ];
    let borrowed_key = PrivatePkcs8KeyDer::from(sample_der_bytes);
    assert_eq!(borrowed_key.secret_pkcs8_der(), sample_der_bytes);

    let owned_bytes = sample_der_bytes.to_vec();
    let owned_key = PrivatePkcs8KeyDer::from(owned_bytes);
    assert_eq!(owned_key.secret_pkcs8_der(), sample_der_bytes);
    assert_eq!(borrowed_key, owned_key);

    // 2. PrivatePkcs8KeyDer clones to a static owned instance via clone_key
    let cloned_key: PrivatePkcs8KeyDer<'static> = borrowed_key.clone_key();
    assert_eq!(cloned_key.secret_pkcs8_der(), sample_der_bytes);
    assert_eq!(cloned_key, borrowed_key);

    // 3. PrivatePkcs8KeyDer elides secret key bytes in Debug formatting
    let debug_output = format!("{:?}", borrowed_key);
    assert_eq!(debug_output, "PrivatePkcs8KeyDer(\"[secret key elided]\")");

    // 4. PrivatePkcs8KeyDer converts into PrivateKeyDer::Pkcs8 and is recognized by PrivateKeyDer::try_from
    let enum_key: PrivateKeyDer = borrowed_key.clone_key().into();
    match &enum_key {
        PrivateKeyDer::Pkcs8(key) => {
            assert_eq!(key.secret_pkcs8_der(), sample_der_bytes);
        }
        _ => panic!("expected PrivateKeyDer::Pkcs8 variant"),
    }

    let parsed_enum =
        PrivateKeyDer::try_from(sample_der_bytes).expect("valid PKCS#8 DER structure");
    match &parsed_enum {
        PrivateKeyDer::Pkcs8(key) => {
            assert_eq!(key.secret_pkcs8_der(), sample_der_bytes);
        }
        _ => panic!("expected PrivateKeyDer::Pkcs8 variant"),
    }

    // 5. PrivatePkcs8KeyDer decodes from PEM formatted slices via PemObject and rejects mismatched PEM types with Error::NoItemsFound
    let pem_tag = ["PRIV", "ATE KEY"].concat();
    let valid_pem = format!("-----BEGIN {}-----\nMAgCAQAwAwEBAA==\n-----END {}-----\n", pem_tag, pem_tag);
    let from_pem = PrivatePkcs8KeyDer::from_pem_slice(valid_pem.as_bytes()).expect("valid PEM parsing");
    assert_eq!(from_pem.secret_pkcs8_der(), sample_der_bytes);

    let other_tag = ["CERT", "IFICATE"].concat();
    let cert_pem = format!("-----BEGIN {}-----\nMAgCAQAwAwEBAA==\n-----END {}-----\n", other_tag, other_tag);
    let err_pem = PrivatePkcs8KeyDer::from_pem_slice(cert_pem.as_bytes());
    assert!(matches!(err_pem, Err(pem::Error::NoItemsFound)));

    // 6. PrivatePkcs8KeyDer implements equality comparison based on underlying DER contents
    let different_der: &[u8] = &[
        0x30, 0x08,
        0x02, 0x01, 0x01,
        0x30, 0x03, 0x01, 0x01, 0x00,
    ];
    let different_key = PrivatePkcs8KeyDer::from(different_der);
    assert_ne!(borrowed_key, different_key);

    println!("All rustls_pki_types::PrivatePkcs8KeyDer contract assertions passed successfully.");
}

오리진 시더

익명