
com.daedafusion.security.admin.impl.SessionAdminImpl Maven / Gradle / Ivy
Go to download
Show more of this group Show more artifacts with this name
Show all versions of security-framework Show documentation
Show all versions of security-framework Show documentation
A pluggable security framework "inspired" by the OWASP ESAPI framework
The newest version!
package com.daedafusion.security.admin.impl;
import com.daedafusion.sf.AbstractService;
import com.daedafusion.security.admin.SessionAdmin;
import com.daedafusion.security.admin.providers.SessionAdminProvider;
import com.daedafusion.security.authentication.Subject;
import com.daedafusion.security.authorization.Authorization;
import com.daedafusion.security.common.Context;
import com.daedafusion.security.common.Session;
import com.daedafusion.security.common.impl.DefaultContext;
import com.daedafusion.security.exceptions.NotFoundException;
import com.daedafusion.security.exceptions.UnauthorizedException;
import org.apache.log4j.Logger;
import java.util.List;
/**
* Created by mphilpot on 7/21/14.
*/
public class SessionAdminImpl extends AbstractService implements SessionAdmin
{
private static final Logger log = Logger.getLogger(SessionAdminImpl.class);
@Override
public List getSessions(Subject subject) throws NotFoundException, UnauthorizedException
{
Authorization auth = getServiceRegistry().getService(Authorization.class);
Context context = new DefaultContext();
if(auth.isAuthorized(subject, java.net.URI.create("session"), "GET", context))
{
return getSingleProvider().getSessions();
}
else
{
throw new UnauthorizedException();
}
}
@Override
public void expireSession(Subject subject, String id) throws UnauthorizedException, NotFoundException
{
Authorization auth = getServiceRegistry().getService(Authorization.class);
Context context = new DefaultContext();
if(auth.isAuthorized(subject, java.net.URI.create("session"), "DELETE", context))
{
getSingleProvider().expireSession(id);
}
else
{
throw new UnauthorizedException();
}
}
@Override
public Class getProviderInterface()
{
return SessionAdminProvider.class;
}
}
© 2015 - 2025 Weber Informatics LLC | Privacy Policy