yera.creds.windows_file_protection

Windows ACL protection for credential-store paths.

Symbols

def protect_windows_path — Apply a protected ACL to a credential-store path.
def windows_path_is_private — Return whether a path has Yera's protected Windows ACL.
def windows_path_is_reparse_point — Return whether a path is backed by a Windows reparse point.

protect_windows_path

protect_windows_path(
    path: Path,
) → None

Apply a protected ACL to a credential-store path.

Parameters

path
type: Path

Existing file or directory to protect.

Raises

SecretStoreUnavailableError

If Windows ACL support is unavailable.

windows_path_is_private

windows_path_is_private(
    path: Path,
) → bool

Return whether a path has Yera's protected Windows ACL.

Parameters

path
type: Path

Existing file or directory to inspect.

Returns

type: bool

Whether the owner and every allowed trustee are trusted.

Raises

SecretStoreUnavailableError

If Windows ACL support is unavailable.

windows_path_is_reparse_point

windows_path_is_reparse_point(
    path: Path,
) → bool

Return whether a path is backed by a Windows reparse point.

Parameters

path
type: Path

Existing filesystem path to inspect.

Returns

type: bool

Whether Windows marks the path as a reparse point.