Wire formats reference
Byte-level layouts are specified normatively in the PCSA books and in the kernel manual's ABI appendices. This page is the map.
Security descriptors and their parts #
| Structure | Where |
|---|---|
| Security descriptor header, self-relative | PCDS §5.1 |
| ACL header and ACE array | PCDS §5.2 |
| ACE header and per-type body layouts | PCDS §5.4 |
| Access mask layout | PCDS §5.3 |
Claim entry — CLAIM_SECURITY_ATTRIBUTE_RELATIVE_V1 | PCDS §5.9 |
| Conditional-ACE bytecode, with the full opcode table | PCDS §5.11 |
| Resource attribute ACEs | PCDS §5.10 |
See also Security descriptors.
Identifiers #
| Structure | Where |
|---|---|
| SID binary format | PCDS §4.1 |
| SID string format | PCDS §4.2 |
| GUID | PCDS §2 |
| LUID | PCDS §3 |
Kernel interfaces #
| Structure | Where |
|---|---|
| Token and session wire specs | Peios Kernel TRM §3.A — see Token and session specs |
| CAAP wire format | See CAAP format |
| Registry ABI, including watch record layout | Peios Kernel TRM §5.A |
| Token query class payloads | Peios Kernel TRM §3.A |
Event stream #
| Structure | Where |
|---|---|
| KMES event header, field by field | PSPK §2 |
| Event envelope, in summary | Events Index §1.2 |
| Per-event payload schemas | Events Index, chapters 3 to 8 |
Packages and repositories #
The package container, manifest, signature and repository index formats are PSPU §5.