Every Go-identifier reference in // and /* */ comments now uses
godoc's [Name] linking syntax so pkg.go.dev and `go doc` render
them as clickable cross-references. No behaviour change.
Pattern applied across the tree:
In-package [Foo], [Foo.Bar]
Cross-package [pkg.Foo], [pkg.Foo.Bar]
Stdlib [netip.Prefix], [errors.Is], [context.Context]
Tailscale [tailcfg.MapResponse], [tailcfg.Node.CapMap],
[tailcfg.NodeAttrSuggestExitNode]
Skip rules:
- File:line refs left as plain text
- HuJSON wire keys inside backtick raw strings untouched
- ACL/policy syntax tokens (tag:foo, autogroup:self, ...) not Go
symbols, left as plain text
- JSON/OIDC wire keys, gorm tags, RFC IPv6 placeholders, markdown
link tags, decorative dividers — all left as-is
10 lines
419 B
Go
10 lines
419 B
Go
// Package policyutil contains pure functions that transform compiled
|
|
// policy rules for a specific node. The headline function is
|
|
// [ReduceFilterRules], which filters global rules down to those relevant
|
|
// to one node.
|
|
//
|
|
// A node's [types.NodeView.SubnetRoutes] (approved, non-exit) participate
|
|
// in rule matching so subnet routers receive filter rules for
|
|
// destinations their subnets cover.
|
|
package policyutil
|